Skip to main content

Assurance

What the assurance pack contains

LayerContentsAudience
A1 — Security & privacy contractPlatform security PRD · client data privacy PRD · auth & key managementSecurity · legal
A2 — Threat & crypto normativeADRs on asset owner domain · off-client boundaries · transfer-link cryptography · circuits threat catalogAuditors · crypto reviewers
A3 — Control mapEngineering controls mapped to threatsSOC-style reviewers
A4 — Claims registerAllowed vs forbidden market languageSales · partners · docs

Full index: assurance/README.md.


Security posture (summary)

PropertyTenebrae stance
Key custodyYour wallet signs — bring-your-own-wallet
Private provingClient-side ZK Proofs (Noir) — not server-side decrypt
Off-client servicesModeled untrusted — no server decrypt of transfer target metadata
On-chain visibilityDeposit and withdraw amounts are public — private settlement between
ComplianceTwo-layer model — institution upstream · Protocol at submit (architecture, not license)

Detail: privacy model · compliance two-layer.


Open risks (disclosed)

We document known gaps — we do not hide them behind marketing language:

RiskStatus
Compliance policy witness binding (T10)Open P0 — do not claim “provably compliant” from circuits alone
Mainnet productionNot shipped — testnet train
Third-party analytics partnershipsRoadmap / GTM-gated until MAP + counsel

Source: circuits threat model · Stack.


Requesting the full pack

ChannelUse
Enterprise diligenceContact team via tenebrae.xyz — reference assurance pack A1–A4
Partner pilotsdemo and testnet gates (partner channel — contact BD) (partner audience)
Integrator self-serveStart with quickstart — full pack on request

PageWhy
StackProduct ceiling for testnet
ArchitectureSystem boundaries
StackOffer layers — wallet · surfaces · Protocol · hosts