Cregis

Technology

Trust Vault Security Framework

Trust Vault is Cregis' key-management and authorization infrastructure for institutional custody, payments, pooling, stablecoin/RWA issuance, and on-chain asset governance. It brings key protection, customer governance, independent risk verification, operation authorization, auditability, and on-chain execution into one system.

banner

Private Key Storage Options

SectionA0_1

MPC + TEE

The asset signing key is sharded at creation. ISP and ISV each hold one share in independent TEEs. Signing needs both parties, so no single party can sign alone.

SectionA0_2

HSM

The signing key sits in a local or cloud HSM. TrustCore verifies authorization and the ISV co-signature, then calls the HSM to sign and protect the key.

SectionA0_3

Local TEE

The signing key is generated and sealed inside TrustCore, running in Intel SGX or AWS Nitro Enclave. Signing, derivation and backup decryption run inside the TEE.

Trust Vault Security Framework

Asset Key

Asset Key

Partition

Asset Key

Partition

Locally Stored

Controller Key

SectionC_1

A Zero-Trust Architecture For Your Business

A distributed authority model that eliminates single points of control and ensures institutional sovereignty

Verification

section-a-1

Verification authority can be delegated to local regulatory bodies or industry associations

Processing

section-a-2

Processing authority can be assigned to professional technical service providers

Operational

section-a-3

Operational Command authority remains with the end client

Management That Mirrors Your Business Hierarchy

SectionB_1

Rule-makers and transaction executors operate in separate domains with system-enforced boundaries

  • Policy teams define controls, but cannot access funds
  • Operations teams execute transactions but cannot modify rules

Asset Isolated for

Distributed Risk

Multi-layered separation design that contains and minimizes cross-contamination risks

SectionC_1
SectionC_2

Hot & Cold Storage

Combining protection with agility

SectionD_1

Operational Transparency

Full Audit Trail

SectionD_2

Sign What You See

Secure Every Transaction

SectionD_3

Explore Our Products

Have questions or a specific use case in mind? Our team is here to help you find the right fit.

About Cregis

Learn more about our mission, our team, and the technology securing digital assets for 4,000+ businesses.

Social Media

Copyright © 2025 Cregis. All rights reserved.

These services are provided by our licensed entity in the Autonomous Island of Anjouan, Union of Comoros ("Anjouan"), and/or together with or in collaboration with third-party service providers or vendors. The provision of these services shall be governed by the laws of Anjouan. When using these services, you confirm and consent that you are also responsible for complying with the applicable laws of your domicile and/or incorporation and where your operations are located, should you proceed to subscribe to these services.

Certifications

Security certification Security certification Security certification

Licenses

Security certification Security certification Security certification