BioQCoreTrust-first research infrastructure
Trust Fabric

A layered architecture of trust: Root/Vault, Trust Center, Edge and Client.

Trust Fabric explains how cryptography, policy, auditability and human responsibility connect into a secure research infrastructure.

Root & Vault Layer
Offline root, encrypted storage, key governance, policies
Trust Center Layer
Intermediate/issuing CA, DID registry, audit log, CRL/OCSP, APIs
Edge & Client Layer
Edge node, VPN/mTLS, web clients, future iOS agent
Root of trust → issuance & audit → controlled clients

Security posture

Zero Trust

Least privilege, explicit verification, no implicit trust across layers.

No public secrets

No private keys, seed phrases, banking credentials or sensitive operational details are published.

Auditability

Public-facing status and changelog are separated from internal logs and sensitive telemetry.

Trust Center status

Trust Center is in design/prototype phase. No production certificates are issued to third parties unless explicitly documented.