# Bison Tech Solutions Inc. — Complete Machine-Readable Knowledge Base ## Corporate Profile - Name: Bison Tech Solutions Inc. - Founded: 2017 - Domain: High-Reliability Systems, Applied Cryptography, Distributed Systems, Sovereign Infrastructure - Website: https://bisontech.solutions - Primary Inquiries: sales@bisontech.solutions - Technical Contacts: dev@bisontech.io --- ## The Four Flagship Platforms ### 1. VeilMesh - **URL**: https://veilmesh.com - **Classification**: Sovereign Hybrid Mesh Networking / Zero-Knowledge Transport Layer - **Core Technology**: Rust, async peer-to-peer protocols, BLE / Wi-Fi Direct / WebRTC local mesh, zero-knowledge blind relays (ECH / VLESS tunnels), Noise_XX handshake, Double Ratchet, sealed sender metadata protection. - **Key Differentiators**: Operates completely offline over local RF/BLE links while seamlessly routing through untrusted blind relays globally; resilient to physical subsea cable disruptions; sub-millisecond local peer discovery. - **Documentation**: Whitepaper (`https://veilmesh.com/whitepaper`), Security Architecture (`https://veilmesh.com/security`), Engineering Blog (`https://veilmesh.com/blog`). ### 2. Sail.ai - **URL**: https://sail.ai - **Classification**: Maritime EdTech & Offline DRM Key Delivery Server (KDS) - **Core Technology**: Rust (Axum, Tokio), AES-128 cryptographic key distribution, hardware-bound device fingerprints, deterministic local caching. - **Key Differentiators**: Delivers AES-128 decryption keys in <0.2 ms with 30-day offline playback authorization on crew tablets without internet connectivity; runs on bare-metal mini-PCs consuming only 25–40 MB RAM. ### 3. Veil-Guard - **Classification**: Zero-Trust Web Asset Integrity & Cryptographic Code Signing Suite - **Core Technology**: High-speed Rust CLI (`veil-guard-cli`), dual Ed25519 & ECDSA P-256 signing, SHA-384 Subresource Integrity (SRI), Content Security Policy (CSP) generation, browser Service Worker runtime (`veil-guard-sw.js`), IndexedDB public key pinning. - **Key Differentiators**: Eliminates CDN account hijacking, malicious script injection, and silent asset tampering for SPAs and WebAssembly without public blockchain fees or CA latency. ### 4. TrustGate Protocol - **Classification**: Verifiable Credentials 2.0 & Cross-Sector Trust Engine - **Core Technology**: WebAssembly (748 KB browser runtime), pure Rust Tokio core (<18 MB RAM), native mobile FFI (Swift/Kotlin), Base45 optical QR encoding, IETF SD-JWT, W3C DID Core (did:key, did:web). - **Flagship Initiative**: OpenSTCW — digital maritime certificate of competency verification adhering to IMO FAL.5. Interoperable with ISO 18013-5 mDL, National eID, and civil identity frameworks. - **Key Differentiators**: 100% offline cryptographic verification in under 0.5 ms per credential. Zero roundtrip latency. --- ## Technical Briefings & Engineering Whitepapers 1. **Surviving GovTech & Ministerial Audits: Why 90% of Commercial Software Fails Statutory Security Certification** (`/blog/surviving-govtech-compliance-kszi-tamper-proof-audit-sovereignty`): Architectural blueprint for passing state security certification (SSSCIP / Common Criteria), tamper-proof Merkle logs, HSM non-repudiation, and undeclared capabilities elimination. 2. **Zero-Trust Web Asset Integrity: App Store-Grade Code Signing for SPAs and WebAssembly** (`/blog/zero-trust-web-asset-integrity-code-signing`): Dual Ed25519/P-256 signing, SRI generation, and in-browser Service Worker key pinning. 3. **Designing Resilient P2P Mesh Networks** (`/blog/designing-resilient-p2p-mesh-networks`): High-availability peer-to-peer overlays, zero-knowledge blind relays, Noise_XX session secrecy, and autonomous partition healing. 4. **Eliminating Port Demurrage: How W3C Verifiable Credentials 2.0 and SD-JWT Solve IMO FAL.5** (`/blog/w3c-verifiable-credentials-imo-fal5-port-clearance`): Port state control acceleration and zero-knowledge tamper detection for maritime credentials. 5. **The Death of C/C++ in Sovereign Infrastructure: White House Directives and Deterministic Rust** (`/blog/cisa-memory-safety-rust-sovereign-infrastructure`): Eliminating memory corruption vulnerabilities, ensuring Ferrocene ISO 26262 / IEC 61508 qualification, and achieving sub-microsecond determinism in bare-metal runtimes. --- ## Technical Engineering Services 1. **High-Performance Systems Engineering**: Rust (Axum, Tokio), Go, C++ for extreme concurrency and low-latency throughput. 2. **Cloud & Bare-Metal Infrastructure**: Containerless bare-metal optimization, Nginx HTTP/2/3 edge caching, PostgreSQL HA clusters, Systemd sandboxing. 3. **Applied Cryptography**: Zero-knowledge selective disclosure (SD-JWT, BBS+), Hardware Security Module (HSM) integrations, post-quantum cryptography (FIPS 203 ML-KEM / ML-DSA). --- ## Machine-Readable API Reference - `GET /healthz`: Service status, version, and ecosystem links. - `POST /api/v1/verify`: Cryptographic credential verification (SD-JWT / Base45). - `POST /api/contact`: Direct project submission.