Credential cloning
Hardware-backed, non-exportable keys and platform attestation.
BLE, UWB, a secure hardware boundary, or the server alone is not the product’s security claim. MesaiGo makes attacks across layers visible and auditable.
MesaiGo does not use absolute “unbreakable” language. Credential sharing, replay, live relay, assurance downgrade, key compromise, fake gateways, unauthorized actuation, and administrator misuse are distinct threats.
Hardware-backed, non-exportable keys and platform attestation.
Fresh challenge, durable consumption record, idempotency control, and binding to the final result.
Secure UWB ranging, bound transaction transcript, and physical acceptance tests in High Assurance.
Gateway identity, signed configuration, witness HMAC, mTLS, and an authenticated final result.
Entry policy and capability acceptance with fail-closed behavior when evidence is missing.
Scope-aware RBAC, step-up verification, justification, dual control, and an immutable audit trail.
KMS/HSM key custody, production identity, per-device mTLS, key rotation and revocation, signed OTA, SBOM, anti-rollback, and recovery are governed by the same security contract.
Device enrollment, attestation, transaction key, device replacement, and revocation.
Production provenance, hardware root of trust, certificate, and ownership transfer.
Reproducible output, signed manifest, staged rollout, and rollback.
Testing scope, privacy, vulnerability reporting, service status, and advisories.