entityOS Security

A staged approach to a closed internet.

The public internet is treated as hostile. Access to entityOS is earned in layers — from network-level allowlisting, to per-connection cryptographic identity, to self-sovereign trust. This is the index to every entityOS security guide, tool and reference.

Closed Internet Staged Access Self-Sovereign Identity AI-Ready

The Model

Three stages. One principle.

Network access is a privilege, not a right. Each stage narrows who can reach entityOS — and proves, with progressively stronger evidence, that they are who they claim to be.

Stage 01 · Where from

IP allowlisting at the network edge. Only known addresses can even reach the door.

Stage 02 · Who

Mutual TLS with X.509 identity. Every connection proves itself cryptographically.

Stage 03 · Every hop

Full zero trust. Never trust, always verify — end to end, request by request.

The Staged Architecture

Start with the stages.

The backbone of entityOS security. Each stage is a self-contained guide you can adopt on its own, or layer together for defence in depth.

The Case

Why the internet must close.

The reasoning behind the architecture — the moment that forced it, the mindset it demands, and the solution it points to.

Build & Operate

Implementation & operations.

From production deployment to the console controls a space administrator uses day to day.

Identity & Cryptography

Proving identity, resisting tomorrow.

Authentication that removes the shared secret, and cryptography built to outlast the quantum threat.

Tools

Offline security tools.

In-browser OpenPGP utilities. Nothing is uploaded — save the page and run it with the network off.

Analysis & References

The moment, made real.

Where the argument meets the record — real incidents, executive briefings and conference references that ground the architecture.

Program & Notices

Work with us on security.

New to this? Start with The Moment for the why, then Stage 01 for the first control you can turn on today. Building on entityOS? Jump to Implementation.