Secure-by-default infrastructure for Rust

Batteries-included security — plus a source-available provenance stack for trustworthy AI — for anyone shipping software that must be trustworthy on the wire and provable after the fact.

What it is

VERACCORD is an à-la-carte, open-core framework: FIPS-routable cryptography, PKI and CA, ACME, OIDC with passkeys, secure DNS, authenticated time, signed updates, and tamper-evident audit with SIEM export — secure by default, with fail-loud startup guards that turn an insecure setup into a build-time error. On top of that foundation sits an AI-provenance tier: attested memory, training-time governance, and signed attribution. Take one crate or the whole suite; every capability is optional and reachable through a one-line Easy Button.

Who it's for

Anyone shipping software that has to be trustworthy on the wire and provable after the fact:

Our commitment to open source

Source & releases

VERACCORD is in pre-release development; repositories and crates go public as each tier reaches release. When they do, this is where they will live:

Until then, veraccord.com is the front door for Veraccord Labs, the company behind the project.