ShadowWitness

Access decided by a quorum, on the measured posture of the machine asking, with every decision on a tamper-evident record.

What it is

ShadowWitness is an access-control platform. Before a person is let into a system, it checks who they are, measures the security of the computer they are using, and has independent signers agree on the decision. Every decision, and every administrative change, is written to a hash-chained ledger that shows afterwards exactly what was allowed, refused, and why.

It is in private use by a small team. It is not a public service and has no sign-up.

Email from this domain

The platform sends a small number of one-to-one messages from noreply@shadowwitness.ai, only to people an administrator has given access:

No marketing, no newsletters, no lists. Each message is requested by a signed administrative act and recorded, with its recipients, on the platform's ledger. The address does not receive replies. A security platform will never ask you for a password, a one-time code or a registration key by email, and messages from this domain never contain one.

The device agent

The agent reports the security posture of the computer it runs on: disk encryption, firewall, pending security updates, secure boot, and which accounts hold administrative rights. It does not read files, browsing, messages, keystrokes or anything about the person using the machine. What it sends is encrypted with post-quantum cryptography (ML-KEM-768) and signed (ML-DSA-65 and Ed25519), and it talks only to the environment it was installed for.

Contact

To stop receiving messages, or for anything about this platform: kip2shark@gmail.com.