I don't think they trust Gemini as they run that on-device or on-site, on Apple's own servers.
See also https://security.apple.com/blog/private-cloud-compute/
Newer one:
https://security.apple.com/blog/expanding-pcc/