Enclave Logic™
Platform

The authorization chain

One core capability: every piece of software is authorized, enforced, and proven in open and closed environments.

Enclave Logic decides whether software may run. It never installs or moves your software, and it works with the tools you already use to deliver it.

Break any link, and the software doesn't start.

01 · Authorized

Authorized first, for one person, device, or place

Before anything runs, the software and the approval are tied together.

  • The exact software is verified and sealed, so you know what was approved for use.
  • Then the approval names the person, device, or place, and an end date if you want one.
  • The approval covers only that person, device, or place. It is never a blanket "allowed everywhere."
  • On closed networks, a person carries in the sealed approval. Nothing connects back to the outside.
02 · Enforced

Checked at launch

The decision is enforced on the device, not just written down.

  • At launch, the operating system checks the chain.
  • If a link is missing or the software has been changed, it doesn't start.
  • If you revoke the approval, it stays revoked, even after a reboot.
  • It all works with your service desk and deployment tool. No software is repackaged.
03 · Proven

On the record

Because every decision is made up front, the record already exists when someone asks for it.

  • Every authorization, refusal, and revocation is recorded as it happens.
  • From that record, each person is counted once per product, across every network. No double counting.
  • Your answer is ready for an audit, a renewal, or a software publisher's question.
Anonymous enclaves

Closed networks, kept anonymous.

Closed environments get the software they're authorized for, without revealing who or what is inside.

  • Bring a closed environment on board without sharing its details with us.
  • Each person is counted once on the open side, where they're already known. Inside the enclave, users and devices are counted, never named.
  • Authorizations are checked for tampering and reuse when they arrive.
  • It works for a whole network or a single lab.
Where it works

Even air-gapped. Not only air-gapped.

Today: Windows workstations and the desktop software that runs on them, on open and closed networks.

Open networks

Corporate and cloud-connected environments, alongside the tools you already use.

Closed networks

Disconnected and air-gapped environments, with no outside connection required.

Coming next

Servers and other operating systems. Single devices, such as appliances and training simulators, each set up as its own enclave.

See the authorization chain. Check the cryptographic proof.

Live demos for qualified teams under simple demo terms.

Request a demo