Client-controlled runtime
The product retains its own local configuration, audit trail, licence state and operational workflow.
Where Trust Begins
Licence authority
Licence generation, entitlement, activation, offline import/export, renewal, and vendor-client licence governance. The product is positioned as a client-controlled security engine with professional deployment, audit and integration boundaries.

Core responsibility
signed licences, entitlements, offline activation and renewal
Roles: Vendor Admin, Licence Admin, Super Admin, Auditor, Client Admin for import/verification
Authentication: Strict admin RBAC with MFA; service authentication for licence validation or signature workflows.
Linked with: Licence backbone for Unified Cyber Security Command Center and all Phylaxis products; optional Unified Cyber Security Command Center adapter for entitlement visibility; Kleidion key custody recommended.
Boundary: If Nomion is offline, products continue using local signed licence cache until expiry or grace policy.
Cybstyx model
The product should be strong alone first. Integration improves visibility and coordination, but it must not become an uncontrolled dependency.
The product retains its own local configuration, audit trail, licence state and operational workflow.
SecOwl can receive approved events and show posture or evidence if the client enables the adapter.
Products may connect to identity, evidence, licence, secrets or timeline services when policy allows.
Administrative changes, service events and proof exports should remain auditable.