Naylence Advanced Security
Project description
Naylence Advanced Security
Naylence Advanced Security is a high‑assurance extension for the Naylence Agentic Fabric that delivers advanced cryptographic and policy‑driven protections for multi‑agent systems. It is designed for environments where agents, services, and organizations must interact across trust domains while preserving confidentiality, integrity, durability, and policy compliance.
At its core, Naylence already provides a zero‑trust, message‑oriented backbone for federated agents. This package extends that foundation with sealed overlay encryption, SPIFFE/X.509 workload identities, secure sticky sessions, and secure load balancing that make the system resilient in complex, federated, and regulated deployments.
Key Features
-
Overlay end‑to‑end encryption (E2EE) & Sealed Channels Adds a cryptographic layer on top of transport (TLS). Messages remain encrypted and authenticated across multiple hops, even if intermediate sentinels or networks are compromised.
-
Envelope Signing & Identity Assurance Uses X.509/SPIFFE‑style identities (SVIDs) so every envelope is verifiable to its origin—enabling tamper‑resistant audit trails and fine‑grained policy.
-
Secure Sticky Sessions & Load Balancing Cryptographically binds long‑running conversations to the initiating security context, and enables identity‑aware load balancing without sacrificing end‑to‑end protections.
-
Durable Cross‑Domain Trust Enables secure federation across orgs or clouds, where **policies—not perimeter assumptions—**determine who can talk to whom.
Security Profiles
The OSS naylence-runtime package ships the following profiles out of the box:
open– minimal controls for local/dev.gated– OAuth2/JWT‑gated admission (authn/authz at the edge).overlay– message signing for provenance and tamper‑evidence.
This Advanced Security package enables and implements:
-
strict-overlay– maximum assurance profile combining:- SPIFFE/X.509 workload identities (SVIDs)
- sealed overlay encryption (true end‑to‑end, multi‑hop confidentiality)
- identity‑aware, secure load balancing and secure sticky sessions
In short: use
open/gated/overlaywith the OSS runtime; install Naylence Advanced Security to accessstrict‑overlayand the capabilities above.
Why Advanced Security?
Agent orchestration introduces unique risks:
- Messages often cross multiple hops and administrative domains.
- Long‑running jobs and sticky sessions can span hours or days.
- Agents may be mobile, ephemeral, or untrusted in their deployment context.
Advanced Security ensures that security travels with the message, not the perimeter—making zero‑trust the default posture.
Use Cases
- Federated AI Agent Systems — Secure orchestration across departments or partner orgs.
- Cross‑Cloud Workflows — Durable, encrypted communication across cloud providers and trust boundaries.
- Regulated Environments — Fine‑grained, auditable controls for healthcare, finance, or defense.
- Multi‑tenant Platforms — Strong tenant isolation and policy‑based routing in agent platforms.
Links
- Advanced Security (this repo): https://github.com/naylence/naylence-advanced-security-python
- Runtime (OSS profiles & fabric): https://github.com/naylence/naylence-runtime-python
- Agent SDK (build agents/clients): https://github.com/naylence/naylence-agent-sdk-python
- Examples (runnable demos): https://github.com/naylence/naylence-examples-python
License
This package is distributed under the Business Source License (BSL). See LICENSE for full terms.
Project details
Release history Release notifications | RSS feed
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
Built Distribution
Filter files by name, interpreter, ABI, and platform.
If you're not sure about the file name format, learn more about wheel file names.
Copy a direct link to the current filters
File details
Details for the file naylence_advanced_security-0.3.1.tar.gz.
File metadata
- Download URL: naylence_advanced_security-0.3.1.tar.gz
- Upload date:
- Size: 73.8 kB
- Tags: Source
- Uploaded using Trusted Publishing? Yes
- Uploaded via: twine/6.1.0 CPython/3.13.7
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
c6e0a3ad97c451e773dd458e3853980c0ac5d25255263de7aa4e25a271a9e16e
|
|
| MD5 |
5fbb80c858daeac4675ad53d9edcdc25
|
|
| BLAKE2b-256 |
a94bb01d3a3d7bf6b6d66e6f193cb5e9890d524492e87332e29b7ab5a5898c90
|
Provenance
The following attestation bundles were made for naylence_advanced_security-0.3.1.tar.gz:
Publisher:
publish.yml on naylence/naylence-advanced-security-python
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
naylence_advanced_security-0.3.1.tar.gz -
Subject digest:
c6e0a3ad97c451e773dd458e3853980c0ac5d25255263de7aa4e25a271a9e16e - Sigstore transparency entry: 516019479
- Sigstore integration time:
-
Permalink:
naylence/naylence-advanced-security-python@5d9afde412c6197aeadaaaa3c5dfcc1bca2f378d -
Branch / Tag:
refs/heads/main - Owner: https://github.com/naylence
-
Access:
public
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
publish.yml@5d9afde412c6197aeadaaaa3c5dfcc1bca2f378d -
Trigger Event:
workflow_dispatch
-
Statement type:
File details
Details for the file naylence_advanced_security-0.3.1-py3-none-any.whl.
File metadata
- Download URL: naylence_advanced_security-0.3.1-py3-none-any.whl
- Upload date:
- Size: 95.1 kB
- Tags: Python 3
- Uploaded using Trusted Publishing? Yes
- Uploaded via: twine/6.1.0 CPython/3.13.7
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
6aa2a790135dab128b8c952cd98cc979ca22d925c34eb07dc2c41a75a7ec0d89
|
|
| MD5 |
abeef80864e25f9d017c89c9d24fe36e
|
|
| BLAKE2b-256 |
8a905725f4bd3589f1315b8a9b9346b8ba573e90365cab56aeabb18e0b615415
|
Provenance
The following attestation bundles were made for naylence_advanced_security-0.3.1-py3-none-any.whl:
Publisher:
publish.yml on naylence/naylence-advanced-security-python
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
naylence_advanced_security-0.3.1-py3-none-any.whl -
Subject digest:
6aa2a790135dab128b8c952cd98cc979ca22d925c34eb07dc2c41a75a7ec0d89 - Sigstore transparency entry: 516019530
- Sigstore integration time:
-
Permalink:
naylence/naylence-advanced-security-python@5d9afde412c6197aeadaaaa3c5dfcc1bca2f378d -
Branch / Tag:
refs/heads/main - Owner: https://github.com/naylence
-
Access:
public
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
publish.yml@5d9afde412c6197aeadaaaa3c5dfcc1bca2f378d -
Trigger Event:
workflow_dispatch
-
Statement type: