Skip to main content

q-armor-proxy

The enterprise runtime of QArmor: a protection proxy that turns a silent harvest into an alert with a timestamp.

PyPI Python Licence

Prevention alone has a hole in it: if somebody copies your traffic today and decrypts it in 2032, nothing in your logs will ever say it happened. Canary tokens close that hole. They are bait that only a decrypted capture can lead anyone to, so the day one is visited you learn two things at once: that the capture existed, and roughly when it was read.

It sits in front of a validator and does three things:

  • Injects canary tokens into the traffic, to detect HNDL harvesting.
  • Blocks origins by list, at the door.
  • Fires the full alert when a canary is visited: SIEM notification, key rotation and blocking, in one path.

Run it

pip install 'q-armor-cli[proxy]'
q-armor proxy --host 0.0.0.0 --port 8080

The proxy extra pulls this package and uvicorn. It is an extra on purpose: an operator who only scans does not need FastAPI installed, and the import lives inside the command so that its absence cannot break scan or vqs.

From a checkout of the workspace:

pip install -e packages/q-armor-lib -e packages/q-armor-proxy

It does not implement cryptography

It consumes q-armor-lib, the same library the CLI and the dashboard consume. A second scanner here would be another surface producing the key_establishment_class axis and diverging in silence (see docs/layer-placement.md §8).

It stays in Python rather than TypeScript for a measured reason, not out of inertia: the proxy has no cryptographic tie of its own (it imports neither ML-KEM nor ML-DSA), but migrating it would force porting the whole of q-armor-lib and would leave three implementations of the same axis instead of two.

The QArmor family

Five packages, one version, published together from a single tag.

Package What it is
q-armor-lib Detection, scoring and the control-plane client
q-armor-cli q-armor, the operator's command line
q-armor-proxy This one: the enterprise runtime
q-armor-chain DVN worker and QArmorDVN.sol
q-armor-pqc Interim ML-DSA-65 primitive

Next

The proxy is the enterprise tier: real-time alerting, SLA and on-premise deployment. idenq.io

Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distributions

No source distribution files available for this release.See tutorial on generating distribution archives.

Built Distributions

If you're not sure about the file name format, learn more about wheel file names.

q_armor_proxy-0.1.2-cp313-none-any.whl (25.7 kB view details)

Uploaded CPython 3.13

q_armor_proxy-0.1.2-cp312-none-any.whl (25.7 kB view details)

Uploaded CPython 3.12

q_armor_proxy-0.1.2-cp311-none-any.whl (25.9 kB view details)

Uploaded CPython 3.11

File details

Details for the file q_armor_proxy-0.1.2-cp313-none-any.whl.

File metadata

  • Download URL: q_armor_proxy-0.1.2-cp313-none-any.whl
  • Upload date:
  • Size: 25.7 kB
  • Tags: CPython 3.13
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/7.0.0 CPython/3.13.14

File hashes

Hashes for q_armor_proxy-0.1.2-cp313-none-any.whl
Algorithm Hash digest
SHA256 8dc4d9a0e8a8ab9918d257c9bbee02d6b7c6fd5d8367f4ca0b85dc884d9d68a4
MD5 a413a0fc68203a094b73bd883854afd9
BLAKE2b-256 194a8e707f2f40edffbe85b4c4063682bdf0b39a9eaf9fe9b30d9a20a7c54e75

See more details on using hashes here.

Provenance

The following attestation bundles were made for q_armor_proxy-0.1.2-cp313-none-any.whl:

Publisher: release.yml on iden-q/iden-q-quantum-armor

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

File details

Details for the file q_armor_proxy-0.1.2-cp312-none-any.whl.

File metadata

  • Download URL: q_armor_proxy-0.1.2-cp312-none-any.whl
  • Upload date:
  • Size: 25.7 kB
  • Tags: CPython 3.12
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/7.0.0 CPython/3.13.14

File hashes

Hashes for q_armor_proxy-0.1.2-cp312-none-any.whl
Algorithm Hash digest
SHA256 b7c8eb044e99e8e165392402eda59f71994cc8921cad4864767ab7a3e5344d1b
MD5 380d81713574053cd4b3c9eff4429b34
BLAKE2b-256 b3f5c151123bf5405b610995a0d3d6c22e0a98623212858736bb83feb48a120b

See more details on using hashes here.

Provenance

The following attestation bundles were made for q_armor_proxy-0.1.2-cp312-none-any.whl:

Publisher: release.yml on iden-q/iden-q-quantum-armor

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

File details

Details for the file q_armor_proxy-0.1.2-cp311-none-any.whl.

File metadata

  • Download URL: q_armor_proxy-0.1.2-cp311-none-any.whl
  • Upload date:
  • Size: 25.9 kB
  • Tags: CPython 3.11
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/7.0.0 CPython/3.13.14

File hashes

Hashes for q_armor_proxy-0.1.2-cp311-none-any.whl
Algorithm Hash digest
SHA256 ed97e6aff7c5b52fb3054ad786ae46e36da1605891babe18bad1b2bfab296b3b
MD5 f7a2935e7c08d627f47d5d111b9f4d21
BLAKE2b-256 ffc6d4b929aaae422a5c371b438dbe945a0280f1e188319d5c43265a3b9e4b30

See more details on using hashes here.

Provenance

The following attestation bundles were made for q_armor_proxy-0.1.2-cp311-none-any.whl:

Publisher: release.yml on iden-q/iden-q-quantum-armor

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

Release history Release notifications | RSS feed

This release

0.1.2 This release

3 files

0.1.1

3 files

0.1.0

3 files

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page