Login
User Agreement & LicensingPrivacy Policy
FIPS 140-3
Common Criteria EAL5+

Products

  • ProvenHSM
  • ProvenBox
  • Native Security Applications
  • Software Developer Kit (SDK)
  • ProvenCore OS and TEE
  • ProvenVisor

Use Cases

  • Data Protection
  • PQC Migration
  • Key Management & Cloud KMS
  • Confidential Computing
  • Finance Innovation
  • Digital Signature (eIDAS 1.0)
  • Wallet & Identity (eIDAS 2.0)
  • Multi-Party Computation (MPC)
  • Enterprise PKI
  • Strengthening HPC Platforms

Resources

  • Blog and Whitepapers
  • Security and Certifications
  • Integrations

Company

  • Careers
  • About

Type

Tags

ai
Blog PostProvenCoreFormal MethodsSecurity

The HSM Is Step One: Toward Trust Governance for the AI Era

An HSM protects cryptographic keys. But nobody actually wants protected keys; they want the things keys make possible — payments that cannot be forged, identities that cannot be usurped, signatures that stand up in court, updates that cannot be hijacked.

July 6, 2026
RIP Legacy HSM, Enter ProvenHSM
Blog PostHSMBlog

ProvenHSM vs. Legacy HSMs: What "Next-Generation" Actually Means

A side-by-side look at how ProvenHSM compares with legacy network HSMs across operations, cloud readiness, crypto agility, extensibility, multi-tenancy, TCO, and business model

July 4, 2026
Abstract mathematical structures transition through flowing lines into a rack appliance
Blog PostFormal MethodsHSMBlog

Why a Formal-Methods Software Company Built a Cloud Hardware Appliance

ProvenRun spent 15 years proving low-level software correct. Here's why the team behind the world's only EAL7-certified OS decided its next product had to be a cloud-operated hardware security module.

June 30, 2026
generic_partnership_white
Blog PostIoTHSMNews

CryptoNext Security and ProvenRun Integrate Post‑Quantum Cryptography into ProvenRun’s New Hardware Security Module

CryptoNext Security and ProvenRun announce the integration of post‑quantum cryptography into ProvenHSM, reinforcing their shared ambition to deliver a fully integrated, high‑assurance, end‑to‑end security stack built for the post‑quantum era and the most demanding environments.

June 15, 2026
When AI Writes the World's Software, Who Verifies It?
Blog PostSecurityProvenCoreBlog

When AI Writes the World's Software, Who Verifies It?

The rewriting of the global software landscape is no longer a future prediction, it is an active transformation. Tech giants like Google and Microsoft now report that over 30% of their new code is generated by AI. Some industry leaders, including Microsoft’s leadership, predict that by 2030, as much as 95% of all code will be written by AI agents.

June 2, 2026
provencore
Blog PostNewsSecurity

Reconciling Security Certification and Product Introduction

How incremental certification lets teams ship faster without losing the assurance their customers expect.

May 18, 2026
Understanding eIDAS for Qualified Signature Providers
Blog PosteIDASComplianceBlog

Understanding eIDAS for Qualified Signature Providers

A short tour of the eIDAS framework and what QSCD compliance actually requires.

May 12, 2026
chip_to_chip_integration.svg
Blog PostNewsProvenCoreIoT

Trusted Governance Architectures for Secure AI Agents

Autonomous AI agents are increasingly deployed in enterprise environments. This article explores how trusted governance architectures ensure secure decision-making, operational integrity, and compliance for AI systems that interact with sensitive resources.

April 20, 2026
cloud_hardware_appliance.svg
Blog PostWhite PapersHSMIoT

From HSM to Trusted Security Governance Platforms: Programmable Trust Anchors for Complex Digital Systems

Modern infrastructures like cloud and AI introduce complex architectural challenges. This white paper introduces Trusted Security Governance Platforms (TSGP), designed to enforce strict security policies and govern critical operations across partially trusted environments.

April 9, 2026
trusted_cloud_enclaves_hero_white
Blog PostWhite PapersTEESecurity

Trusted Cloud Enclaves and Security Governance for High-Assurance Cloud Computing

Cloud infrastructures host our most critical workloads—from finance to AI. This white paper explores how Trusted Cloud Enclaves and strict security governance enable high-assurance cloud computing for governments and critical industries.

April 7, 2026
iot_device_security.svg
Blog PostWhite PapersFormal MethodsSecurity

Trusted Security Governance for Secure AI Infrastructure

Explore how Trusted Security Governance Platforms (TSGP) establish verifiable security, regulatory compliance, and operational assurance for AI infrastructure.

March 23, 2026
Why Formal Verification Matters for Modern HSMs
Blog PostHSMFormal MethodsBlog

Why Formal Verification Matters for Modern HSMs

Mathematical proofs of correctness make HSMs safer than traditional testing alone — here is why.

October 30, 2025
data
Blog PostBlogCryptographySecurity

Post-Quantum Readiness for Trusted Platforms

Preparing trusted platforms for the post-quantum transition — what to look at first.

March 5, 2025
From OP-TEE to ProvenCore: Migrating Trusted Applications
Blog PostProvenCoreTEEBlog

From OP-TEE to ProvenCore: Migrating Trusted Applications

A practical migration guide for teams moving from OP-TEE to a fully certified microkernel.

January 3, 2025
Designing Secure IoT Devices From Day One
Blog PostIoTSecurityBlog

Designing Secure IoT Devices From Day One

Security-by-design principles applied to constrained IoT environments.

November 7, 2024
automotive_sdv_security.svg
Blog PostNewsSecurityIoT

ProvenRun Secures On-Board Communications on Ampere SDV Platforms for Autonomous Vehicles

ProvenRun’s security IP, co-developed with Ampere software & systems teams, creates a secure data transfer environment, ensuring reliable vehicle system operations, for high-speed data transfer, crucial for advanced vehicle features like autonomous driving and real-time navigation such as Software Defined Vehicles.

January 7, 2024
series_a_funding.svg
Blog PostNewsSecurityTEE

ProvenRun Raises €15M Series A to Expand Security-by-Design Solutions

Established by serial entrepreneur Dominique Bolignano, ProvenRun offers the world’s most secure operating system (OS) and apps for connected vehicles and smart devices. Their standout product, ProvenCore, is the only OS to attain the highest certification level (EAL7) on Common Criteria, the leading global standard in computer security. Through a rigorous, mathematically verified method, it’s assured to be close to error-free, even in its machine code.

December 5, 2023
cinemo-secure-media-path.png
Blog PostNewsCryptographyFormal Methods

ProvenRun and SiFive Deliver RISC-V Trusted Execution Environment for Embedded Security

ProvenRun, a global leader in embedded security and SiFive, the pioneer and leader of RISC-V computing, will demonstrate a RISC-V-based Trusted Execution Environment (TEE) at Embedded World 2023 in Nürnberg, Germany. The demonstration will feature the combination of ProvenRun’s ultra-secure ProvenCore operating system and SiFive’s WorldGuard hardware isolation solution running on a SiFive Intelligence™ X280 processor. This collaboration delivers best-in-class security for RISC-V based SoCs.

March 7, 2023
risc-v-international-member.png
Blog PostNewsIoT

Data Protection & IoT Security

In case you had not the opportunity to attent the SIDO in Lyon, ProvenRun had a great round table with expert from STMicroelectronics and LACROIX, Electronics about IoT security and data protection of connected objects.

October 10, 2022
provencore_worldguard_riscv.svg
Blog PostSecurityProvenCoreNews

ProvenRun ProvenCore and SiFive WorldGuard: Trusted RISC-V Security Solution

Modern microprocessor SoCs are designed to reduce cost by housing all functionality in a single device. This race for more features, which inevitably increases the size of the code and introduces pieces of code from multiple origins, can lead to security risks when one vulnerable piece of code can affect another, intentionally or not.

September 6, 2022
gaiax_cloud_trust.svg
Blog PostNewsIoTSecurity

ProvenRun Joins RISC-V International as Strategic Member to Strengthen Trusted Security

ProvenRun becomes a strategic member of RISC-V International, contributing to the growth of the RISC-V ecosystem. By integrating its ultra-secure ProvenCore OS into RISC-V architectures, ProvenRun enhances Trusted Execution Environments (TEE) and the Trusted Computing Base (TCB), helping OEMs and device makers achieve top-level security certifications for embedded systems.

June 27, 2022
cinemo_secure_media_path.svg
Blog PostNewsHSMTEE

ProvenRun’s CyberSafeOS Selected for France 2030 to Secure Cyber-Physical Systems

ProvenRun’s CyberSafeOS has been chosen under the France 2030 plan to enhance security for Cyber-Physical Systems (CPS). The project delivers certification kits and integration tools that help designers achieve robust cybersecurity while maintaining functional safety for autonomous vehicles, connected aircraft, and smart industrial networks.

February 21, 2022
atos_scaler_program.svg
Blog PostNewsProvenCoreCompliance

ProvenRun Joins Atos Scaler Program to Deliver Trusted Security Solutions Excerpt: ProvenR

ProvenRun has been selected to join the Atos Scaler Program, providing Trusted Products and Services that help customers embed security within connected device infrastructures. The program supports start-ups that complement Atos’ industry-focused portfolio and accelerate go-to-market opportunities.

July 6, 2021
cybersafeos_france2030
Blog PostNewsProvenCoreCompliance

ProvenRun and Cinemo Deliver World’s First SMP PP Secure Media Path for Automotive

ProvenRun and Cinemo present the world’s first Secure Media Path Protection Profile implementation, leveraging ProvenCore OS and TEE technology to protect premium in-car multimedia content. The solution ensures robust security, Widevine DRM compliance, and seamless high-resolution streaming for modern automotive infotainment systems.

January 2, 2021
riscv_international_membership.svg
Blog PostNewsProvenCoreCompliance

ProvenRun Joins GAIA-X to Raise Security and Trust in Cloud Services

ProvenRun joins GAIA-X as a Day-1 member, working with European partners to deliver auditable and certifiable cloud services. At the GAIA-X Summit, ProvenRun’s founder highlighted technical solutions that provide transparency, trust, and enhanced security for sensitive cloud data.

November 17, 2020
chip_to_chip_integration.svg
Blog PostNewsIoTProvenCore

Embedded Security Risks and Best Practices for IoT and Critical Devices

Embedded systems face unique security risks due to customized hardware, real-time operating systems, and cross-platform development. Threats include malware, physical attacks, and zero-day exploits. This guide outlines strategies for manufacturers to secure IoT devices, industrial control systems, and critical infrastructure.

April 16, 2020
data_protection_iot_security.svg
Blog PostNewsComplianceProvenCore

ProvenRun Nominated for Embedded Award 2020 for ProvenCore Security Excellence

ProvenRun’s ProvenCore OS, the world’s first formally proven OS/TEE with CC EAL7 certification, has been nominated for the 2020 Embedded Award in Safety & Security. ProvenCore delivers unmatched security for ARM and RISC-V processors, protecting connected devices across automotive, industrial, medical, and energy sectors.

February 24, 2020
security_certification_badge.svg
Blog PostNewsProvenCoreIoT

ProvenRun’s ProvenCore Achieves World-First CC EAL7 Certification for Embedded Security

ProvenRun’s ProvenCore OS, a formally proven secure operating system and next-generation TEE, has achieved the first-ever Common Criteria EAL7 certification. It provides high-assurance security for ARM, ARM Cortex-M, and RISC-V devices, reducing attack surfaces and enabling cost-effective secure-by-design development for connected devices across multiple industries.

December 30, 2019
firmware_integrity.svg
Blog PostNewsBlogIoT

ProvenRun Collaborates with Xilinx on Whitepaper for Secure Zynq UltraScale+ Applications

ProvenRun, in partnership with Xilinx, has released a whitepaper explaining how to securely isolate critical applications on Zynq UltraScale+ devices. The paper demonstrates the use of ProvenRun’s products to protect sensitive workloads in embedded systems.

December 18, 2019
security_certification (1).svg
Blog PostNewsIoTProvenCore

ProvenRun Joins the European Processor Initiative (EPI) as Security Technology Partner

ProvenRun has been selected as a security technology partner for the European Processor Initiative (EPI), with CEO Dr. Dominique Bolignano appointed as Global Security Technical Leader.

May 13, 2019
psa_certified_partnership.svg
Blog PostNewsTEECompliance

ProvenRun Closely Associated with ARM’s PSA Certified Initiative

ProvenRun plays a critical role in the development of ARM's PSA Certified scheme, contributing to the security framework that drives widespread secure IoT deployment.

February 24, 2019
iot_security (1).svg
Blog PostNewsProvenCoreCompliance

ProvenRun Announces Strategic Partnership with Kalray to Secure Manycore Architectures

ProvenRun and Kalray partner to bring highly certified OS and secure firmware solutions to MPPA™ intelligent processors, protecting the next generation of Cyber Physical Systems (CPS).

February 18, 2019
soc_hardware_isolation (1).svg
Blog PostNewsProvenCoreCompliance

ProvenRun Selected as Security Technology Partner of ES3CAP Project

ProvenRun has been selected as the security technology partner of the Kalray’s ES3CAP project.

February 5, 2019
supply_chain_security.svg
Blog PostNewsIoTCompliance

ProvenCore Secures ARCHOS’ Hardware Wallet for Crypto-Assets

ARCHOS launches the Safe-T Touch hardware wallet, using ProvenCore to isolate the secure transaction environment from the Android OS and provide a trusted display.

September 24, 2018
secure_boot.svg
Blog PostNewsTEE

How Is Embedded Security Unique? ProvenRun Demonstrates ProvenCore-M at ARM TechCon

ProvenRun demonstrates how ProvenCore-M leverages STMicroelectronics’ STM32L5 TrustZone features to secure ultra-low-power connected devices against remote cyberattacks.

September 17, 2018
compliance_audit.svg
Blog PostSecurityProvenCoreWhite Papers

Security Governance Filters for Complex Digital Infrastructures

Securing every component of complex modern infrastructures is unrealistic. This paper by Dominique Bolignano revisits security filters built on formally verified microkernels as the simplest form of programmable security governance anchors (TSGP) for IoT, SDVs, and avionics.

April 7, 2018
riscv_tee_partnership.svg
WhitepaperProvenCoreSecurity

ProvenCore Architecture Overview

A deep dive into the microkernel architecture behind ProvenCore — isolation, integrity, and certification strategy.

July 15, 2026
firmware_integrity.svg
WhitepaperFormal MethodsCryptographyTEE

Hypervisor and Security for Connected Devices

This whitepaper explains how vulnerabilities in the Trusted Computing Base (TCB) of IoT devices can be exploited remotely and why secure operating systems and hypervisors are essential to protect against attacks and extortion attempts.

July 4, 2019
zero_trust_network.svg
WhitepaperComplianceFormal MethodsCertification

Isolate Security-Critical Applications on Zynq Ultrascale+ Devices

Co-authored by Xilinx and ProvenRun, this whitepaper explains how a TEE on Zynq® UltraScale+™ platforms reduces the attack surface for security-critical applications in automotive and data center use cases.

December 18, 2019
compliance_audit.svg
WhitepaperSecurityCertificationIoT

Critical ECUs – Securing Automotive Systems with ProvenCore

Learn how ProvenCore TEE secures critical automotive ECUs. Co-authored with SystemX Institute, this paper details approaches to protect embedded vehicle systems against cyber threats.

October 20, 2021