Trust Center

Encryption and key management

SupraOS is designed to support secure handling of workflow data and proof artifacts.

Security overview

Overview

SupraOS is designed to support secure handling of workflow data and proof artifacts. Public statements in this section stay consistent with what is actually deployed.

Public-safe commitments

  • Data is intended to be protected in transit using industry-standard transport encryption.
  • Stored workflow and proof data is intended to be protected using appropriate encryption mechanisms for the deployment model.
  • Key management approaches may vary by deployment model and customer requirements.

Where enterprise deployment design may go deeper

  • Private deployment options
  • Customer-aligned key custody approaches
  • Rotation and operational controls available during enterprise deployment design

What we do not publish as marketing flex

  • Exact algorithms and modes unless operationally relevant and true
  • Customer-managed keys as a public promise unless implemented
  • HSM / KMS claims unless operationally true
Public-safe rule
No unsupported detail
We only publish implementation detail that is actually deployed and supportable.
Last updated: March 3, 2026