Security

Security controls that reinforce each other.

CertaNox does not rely on one local check. Public-facing security combines controlled delivery, signed software, device-bound licensing, server-side policy and verifiable asset records.

CNX
RELEASE TRUSTDEVICE POLICYASSET VERIFY
01

Signed release chain

Official CertaNox software is distributed through a controlled release path designed to reject unexpected or altered release material.

02

One-device licensing

Every public licence is limited to one active device. Device changes require a valid reset or replacement licence.

03

Server-side policy

Product authorization is not decided only by a local application state; online policy participates in entitlement decisions.

04

Protected asset records

Protection focuses on creating information that can support later verification, rather than relying only on a visual mark.

05

Modern cryptography

The security stack includes strong symmetric cryptography and hybrid post-quantum mechanisms in supported trust paths.

06

Controlled recovery

Licence/device resets and recovery-sensitive actions are designed to stay behind explicit authorization boundaries.

Public security posture

Clear claims. Clear limits.

CertaNox strengthens provenance and authorization, but no desktop application can guarantee that a fully compromised operating system or captured screen can never expose content. The product is built to reduce trust and improve evidence—not to promise the impossible.

SignedOfficial release path
BoundOne active device
VerifiedProtected asset record

Need the public trust overview?

See release-safety guidance and the public CertaNox trust position.