Aarloven

Trusted software acceptance environment

Test the software before you pay.

A sealed room in Stockholm checks the seller's delivery against your contract, on your data, and stamps PASS or FAIL.

For EU buyers of non-EU software.

Your data is locked, carried into a sealed room in Stockholm, tested clause by clause, and a receipt comes out. The room is then wiped. Your data Locked with an AWS KMS key Sealed room Stockholm · AWS Nitro Enclave C1Access rules C2Duplicate check C3Lead marked converted Workspace wiped. Only the receipt leaves. Refused: the package was altered. Receipt FAIL
Replay of a real run: release v1.3 failed C2.
—
Receipt

No run yet. Run the sealed sample sends a real request to the room, which answers in about 10 seconds.

What your browser checks

Each check runs here, on your machine, not on our word.

  1. ·The room got exactly the package you sent.The room's fingerprint of the locked package is compared with the one your browser makes.
  2. ·The room opened exactly the sealed data.Its fingerprint of what it read is compared with the one this page kept back.
  3. Only the sealed room could open it.NextAn AWS hardware signature on every receipt, checked here.
  4. This receipt cannot be changed later.NextEvery receipt signed by the room and chained to the one before.

Security brief for your procurement team →Want your seller checked like this? Email them an invite or

Technical details, and how to check it yourself

The room's answer

Status
No run yet.

Check it yourself

curl -sO https://aarloven.com/samples/sealed-sample.json
jq -r .Envelope.ct_b64 sealed-sample.json | base64 -d | shasum -a 256
curl -s https://aarloven.com/v1/receipt -H 'content-type: application/json' --data-binary @sealed-sample.json

The second line must print the room's H_ciphertext. With your own package you keep the fingerprint of your data to yourself, so the room can only match it by opening the package.

Check your own sealed package

Three steps, one receipt.

You and the seller agree on the clauses first. The room then settles them on your real data, without either side having to trust the other.

  1. Seal

    Your data is locked with a key that only the room's code can use.

    Key held in AWS KMS, released only to the room.

  2. Test

    The seller's delivery runs against your clauses, inside a sealed room in Stockholm.

    AWS Nitro Enclave: no operator can look inside.

  3. Receipt

    You get PASS or FAIL for each clause. The workspace is wiped; the receipt stays.

    Use it to accept the delivery, or to dispute it.

Selling into the EU? Pass before they ask.

EU buyers worry about where their data goes and whether your release does what the contract says. Check it in the room first, then attach the receipt to your offer.

  • The buyer's data is only ever opened inside the EU
  • Your release is judged on the clauses you both agreed
  • A PASS they can check without taking your word for it
Book a seller pilot

Pay per delivery, not per seat.

Cheaper than paying for a delivery that does not work, and far cheaper than a data-transfer fine.

Sample

Free

as often as you like
  • The sealed sample, run live
  • The same checks as a real run

Pilot

Per delivery

price agreed before the test
  • Your clauses, your data
  • The room in Stockholm (EU)
  • Receipts you can check yourself
Book a pilot

Your own key Next

Per month

for teams that hold the key
  • The key lives in your AWS account
  • Every unlock shows in your own logs
  • Revoke it at any time

One email when it is ready. Kept 365 days.

Book a pilot.

Tell us what is being bought and from whom. We reply by email to set up one delivery check.

We keep only what you type here, to reply about a pilot. It is stored in the EU (Cloudflare D1, EU jurisdiction) and deleted after 90 days. No cookies, no trackers.

What is true today, and what comes next.

Today

  • The room runs in Stockholm (EU)
  • The key is released only to the room (AWS KMS)
  • A changed package is refused
  • Fingerprint check in your browser
  • Every unlock logged by AWS CloudTrail

How each of these was checked: the security brief →