Truthlocks logo
Knowledge Base

Central
Intelligence.

Everything you need to know about the mathematics and methodology of Truthlock.

Technical & Architecture

What are Zero-Knowledge Proofs (ZKPs) and why are they used?

ZKPs allow one party (the prover) to prove to another party (the verifier) that a statement is true without revealing any information beyond the validity of the statement itself. In Truthlock, we use ZKPs to verify claims (like 'over 21' or 'licensed medical professional') without exposing the underlying private data.

How does the Transparency Network ensure immutability?

Our Transparency Network uses a distributed ledger architecture where every attestation is included in a Merkle tree. Periodic 'checkpoints' are cryptographically signed and witness-anchored across multiple jurisdictions, making it mathematically impossible to alter history without detection.

Does Truthlock require an always-on internet connection for verification?

No. Truthlock Proof Bundles are designed for offline-first environments. A bundle contains all the necessary cryptographic evidence, including inclusion proofs and revocation status (via Bloom filters), to be verified independently without reaching back to our servers.

Compliance & Security

Is Truthlock GDPR and HIPAA compliant?

Truthlock is designed with 'Privacy by Design' at its core. Because we only anchor cryptographic hashes (non-PII) and use ZKPs for verification, no protected health information or personal data ever leaves your secure environment. This makes Truthlock an ideal partner for GDPR, HIPAA, and SOC2-regulated entities.

How are private keys managed?

Truthlock supports Hardware Security Module (HSM) integration, specifically FIPS 140-2 Level 3 certified devices. We also provide automated key rotation, multi-signature authorization for administrative actions, and instantaneous key revocation protocols.

What happens if a private key is compromised?

If a compromise is detected, the key is immediately revoked on our global transparency network. Any attestations signed by that key after the revocation timestamp are instantly flagged as invalid by any Truthlock-enabled verifier worldwide.

Institutional & Business

Can Truthlock scale to millions of users?

Yes. Our minting engine is built for institutional load, capable of handling 10,000+ transactions per second through parallelized worker threads and multi-region active-active clusters.

What is the cost structure for high-volume issuers?

We offer tiered pricing based on attestation volume, with costs for high-volume institutional issuers reaching as low as $0.01 per attestation. Verification is always free and open for the ecosystem to encourage adoption.

How long does it take to integrate?

Most enterprises can achieve a full integration within 2-4 weeks using our high-level SDKs and RESTful APIs. We also provide 'Enterprise Packs' with pre-built implementation guides for SAP, Oracle, and AWS environments.

Still Searching?

Our solution architects are available for deep-dives into your specific architectural requirements.

Contact Deep Intel