Zero-Knowledge Identity Infrastructure
Security is a Physics Problem,
not a Trust Problem.
Verify without knowing. No central identity database. No stored “keys to the kingdom”. Split-knowledge derivation in volatile memory, with offline recovery via printable QR master key.
At a glance
-
Split-KnowledgeThe full key never exists at rest.
-
Analog VaultPrintable offline master key for recovery.
-
Device-Bound IdentityNon-exportable private keys (Secure Enclave / TEE).
Why Aeonian is different
Architecture
Architecture of zero-liability
Most systems fail because they centralize identity secrets. Aeonian removes the single point of failure by design: no central identity database, no persistent “keys to the kingdom”.
Aeonian Identity Layer is an identity provider. It identifies users without requiring email registration, passwords, cookies, or persistent tracking. Identity is created locally and used immediately. Additional data or profiles are unlocked only when required by the client application.
No accounts are stored centrally. No behavioural tracking is performed. Clearing the local cache permanently disconnects the user from their data. Security exists only where and when it is needed.
In identity is not an account and it is not a profile. Identity is a cryptographic identifier used to recognise a user* without storing personal data. Accounts and profiles, when required, remain an application-level choice.
These principles are implemented through a small set of core mechanisms:
Split-knowledge derivation
Device secret plus server fragment recombine in memory only. A breach yields fragments, not a usable key.
Offline recovery vault
Printable QR master key enables recovery without cloud escrow or identity databases.
Anonymous authentication
Challenge-response signatures (Ed25519). Authorisation without revealing identity.
Encrypted portable payloads
QR and PDF payloads remain encrypted offline for labels, documents, and custody chains.
Usage
Use cases
Designed for regulated environments where identity storage becomes the breach target.
License
Licensing & infrastructure partners
We are not looking for gigs. We license the Aeonian layer to products that want anonymous authentication without becoming the custodian of identity secrets.
What we are / what we are not
-
Not an IAM replacement (Okta/Auth0):
We are the missing layer. -
Not a KYC provider:
We enable verifiable flows without custody. -
Not a messaging app:
We support encrypted portable payloads (QR/PDF). - Yes: anonymous auth, offline recovery, split-knowledge key handling.
Contact
For licensing and infrastructure partnerships:
- ae Aeonian Engineering Limited - Hong Kong
- licensing@aeonianengineering.com
For technical documentation available on request.
- WIDE di D.Papa - Naples - Italy
- d.papa@simwide.com
Copyright and Licensing