Why this environment matters
Modern digital identity credential issuers depend on complex software, external data and remote administration. Here, the system creates and manages high-assurance identity credentials used across public and private services. If trust is misplaced, stolen signing authority or compromised enrolment tools can create fraudulent identities that remain trusted elsewhere. NØNOS could narrow the trusted computing base and give each function only the resources required for its defined job.
The security challenge
The threat model should assume that one component will eventually fail or be exploited. In this case, stolen signing authority or compromised enrolment tools can create fraudulent identities that remain trusted elsewhere. Public-sector systems hold authoritative records and powers that affect identity, liberty, property, emergency response and national security. Endpoint compromise can therefore create consequences far beyond data loss. The aim is to prevent that single failure from automatically gaining the keys, devices, records and network paths of the whole platform.
How the capsule model could help
A candidate NØNOS architecture would isolate enrolment, evidence review, key operations and credential issuance, requiring attested code and explicit human approvals. The design would prioritise controlled removable media and disposable trusted sessions, supported by signed application allow-lists and purpose-bound data access. Each capsule would carry a declared policy for files, networks, devices and secrets, and unknown or altered software would not receive the same authority as an approved component.
Deployment requirements
Government deployment would require formal accreditation, identity and records integration, accessibility testing, procurement assurance and controls appropriate to the information classification and public function.
Current public-beta limitations, hardware support and application availability must be assessed before any pilot. Neither this use case nor an industry source establishes NONOS certification or a current customer deployment.
Who could buy or integrate it?
- National identity authorities commissioning credential-issuance platforms
- Credential technology vendors embedding signing and enrolment software
- Banks or trust-service operators purchasing regulated credential services
Industry examples: Thales, NEC. These are research prospects, not represented as NONOS customers, partners or endorsers.
