Products

Commercial security products, built complete.

Every product ships with the full feature set, committed support, and engineering behind it. No stripped-down editions, no feature gates — what you buy is the complete product with guarantees.

Proprietary code development

We write software for organisations that need it built to their systems, their security level, and their workflow. Not a product you configure — code you own, tailored to how you actually operate.

Every engagement produces proprietary, closed-source code. It stays closed to prevent scraping, unlicensed self-hosting, and exposure of client-specific infrastructure.

BespokeProprietaryAES-256-GCM + ML-KEM
Discuss your project
Tailored to your systems
Built to integrate with your existing infrastructure, authentication, and tooling — not a generic platform you have to retrofit.
AES-256-GCM + ML-KEM encryption
Post-quantum encryption by default. Data at rest and in transit secured with AES-256-GCM and ML-KEM key exchange.
You own the code
Full source, your repository, your review process from day one. No vendor lock-in, no feature gates.
Security to your standard
Built to your organisation's security classification, threat model, and compliance requirements.
Handover included
Documentation, infrastructure definitions, and working sessions with your engineers so they can maintain it without us.

Irys SSO

Not just single sign-on — Irys is a full identity and access platform. Custom company-specific authentication, utility and resource control, and agents installed on every server for centralized visibility, control, and IDS/IPS.

Standard OIDC and SCIM, so nothing about adopting it is a one-way door. Session and step-up policy is configuration you write and version, not a support ticket you file.

OIDCSCIMWebAuthnAES-256-GCM + ML-KEMIDS/IPS
Talk about Irys
AES-256-GCM + ML-KEM encryption
All server-to-server communication encrypted with AES-256-GCM and ML-KEM post-quantum key exchange. Zero-trust by default.
Custom authentication
Company-specific authentication policies, step-up triggers, and device posture checks — configured as code, versioned and auditable.
Server agents with IDS/IPS
Agents installed on every server provide centralized control, real-time visibility, and intrusion detection and prevention across your entire infrastructure.
Resource and utility control
Fine-grained control over what users can access and what resources they can consume, per team, per environment, per action.
Standards, not lock-in
OIDC and SAML out, SCIM provisioning in. Your users are portable on the day you sign, not just the day you leave.

Managed infrastructure

We operate the Uwitz stack for you — in your cloud account or ours. Hardened baselines, post-quantum TLS, patch windows we commit to in writing, and an on-call rota that answers to a contract rather than a status page.

In your account, you keep the keys and the audit trail. We get scoped, logged, time-bound access — and you can revoke it without opening a ticket.

Your cloudOurs24/7 tier
Scope a deployment
Post-quantum transport
TLS 1.3 with ML-DSA-87 signatures across every edge we operate.
AES-256-GCM + ML-KEM encryption
Server-to-server transport uses AES-256-GCM for symmetric encryption and ML-KEM for post-quantum key exchange. Zero-trust by default — mutual authentication on every connection, no implicit network trust.
Revocable access
Scoped, time-bound, and logged to your side. Cut it off yourself, any time, without asking.
Committed patch windows
Severity-tiered response times written into the contract, with evidence of each applied fix.
Documented exit
Runbooks and infrastructure definitions are yours throughout. Leaving is a handover, not a rebuild.
Pricing

How we charge

Three models, quoted per engagement. We would rather send you an accurate number than publish a misleading one.

Subscriptions
Per seat, annual

Irys is priced per active seat with volume banding. Self-hosted and SaaS are priced the same — where it runs is your call, not a lever.

Services
Fixed-scope engagement

Audits and penetration tests are quoted as a fixed price against a written scope, with the retest included. Overruns on our estimate are ours to absorb.

Support
Annual contract

Tiered by response time and coverage hours. Named engineers on every tier — there is no plan where you reach a queue instead of a person.

Get a quote