Skip to content
SKYECONNEX
  • Sovereignty Built on three reinforcing layers Cryptographic isolation. Geometric distribution. Jurisdictional policy. None depends on a single party behaving honestly.
    Platform Overview→ Architecture→ How it works→ Features→ Security→
    Products SkyeBucket→ SkyeGXU→ SkyeMap→ SkyeFlow→ SkyeDATA→ SkyeVault→
  • One architecture Three problems. Solved together. Data sovereignty, multi-cloud durability, ransomware resilience — all addressed by the same substrate.
    All solutions→ Data sovereignty→ Multi-cloud storage→ Ransomware protection→ Sovereign cloud storage→ Secure file sharing→ Compliance-as-a-Service→ Zero-knowledge storage→
  • Regulated buyers Where sovereignty is board-level Government and defence. Healthcare. Finance. Legal. Research. Wherever "trust us" is no longer enough.
    All industries→ Government & Public Sector→ Military & Defence→ Healthcare & Life Sciences→ Financial Services & Fintech→ Legal & Professional Services→ Research & Education→ Media & Digital Assets→ Real Estate & Property Management→ SaaS & Technology→
  • Pricing
  • Reference Read what regulators read The whitepaper, blog, glossary, and FAQ — the technical depth procurement teams cite.
    All resources→ What is data sovereignty?→ Whitepaper v1.2→ Blog→ Glossary→ FAQ→ Sovereignty calculator→ Support→
  • About SkyeConnex Built by operators who have shipped Ottawa, Canada. Patent filed (39 claims). BARC operational reference. Standards Council of Canada engaged.
    About→ Investors→ Investor deck→ Partnerships→ Reseller programme→ Contact→
Sign in Request a briefing →
Platform
  • Platform
  • Overview
  • Architecture
  • How it works
  • Features
  • Security
  • Products
  • SkyeBucket
  • SkyeGXU
  • SkyeMap
  • SkyeFlow
  • SkyeDATA
  • SkyeVault
Solutions
  • All solutions
  • Data sovereignty
  • Multi-cloud storage
  • Ransomware protection
  • Sovereign cloud storage
  • Secure file sharing
  • Compliance-as-a-Service
  • Zero-knowledge storage
Industries
  • All industries
  • Government & Public Sector
  • Military & Defence
  • Healthcare & Life Sciences
  • Financial Services & Fintech
  • Legal & Professional Services
  • Research & Education
  • Media & Digital Assets
  • Real Estate & Property Management
  • SaaS & Technology
  • Pricing
  • Resources
    • All resources
    • What is data sovereignty?
    • Whitepaper v1.2
    • Blog
    • Glossary
    • FAQ
    • Sovereignty calculator
    • Support
    Company
    • About
    • Investors
    • Investor deck
    • Partnerships
    • Reseller programme
    • Contact
    Request a briefing Sign in
    Reference

    SkyeConnex Glossary.

    Every platform-specific term, every cryptographic primitive, every regulatory framework — defined in one place. 38 entries. Skim or search.

    A

    AES-256-GCM

    FIPS 197 + SP 800-38D authenticated encryption used for frame encryption.

    AES Key Wrap (KW)

    NIST SP 800-38F key-wrapping algorithm for wrapping symmetric keys.

    B

    Bill C-26

    Canada's Critical Cyber Systems Protection Act for designated critical-infrastructure operators.

    C

    CLOUD Act

    2018 US law extending US legal reach to data held by US-controlled cloud providers anywhere.

    CloudRAID

    Multi-cloud erasure-coded storage substrate.

    Compelled disclosure

    Government-compelled data surrender — defeated by topology in SkyeConnex.

    Compliance preset pack

    Pre-configured policy bundle that maps a regulatory framework to encryption, geo, retention, and audit settings.

    Confidence-graded endpoint resolution

    SkyeMap pin treatment that distinguishes verified vs. asserted vs. inferred location data.

    Connexion

    SkyeConnex's term for a connected storage-provider integration.

    D

    Data Encryption Key (DEK)

    Per-file unique symmetric key for frame encryption.

    DGSI 100-8

    Canadian sovereign-cloud standard series under the Standards Council of Canada.

    Duress mode

    Secondary password unwraps a limited shadow scope under coercion.

    E

    Erasure coding

    Mathematical technique splitting data into chunks that survive partial loss.

    F

    FedRAMP

    US Federal Risk and Authorization Management Program for cloud-services security.

    FIPS 140-3

    NIST cryptographic-module certification standard required by US federal agencies.

    Frame

    ~5 MB streaming chunk; the unit of encrypt-encode-scatter.

    G

    GDPR

    EU General Data Protection Regulation; the global benchmark for personal-data privacy law.

    Geo-fencing

    Per-account / per-company jurisdiction policy applied at upload time.

    H

    Harvest now, decrypt later (HNDL)

    Strategy of capturing today's encrypted data for future decryption by quantum computers.

    HIPAA-BAA

    Business Associate Agreement under US HIPAA; required for vendors handling PHI.

    HMAC-SHA-256

    FIPS 198-1 keyed message authentication; legacy verify path for signed reports.

    M

    ML-DSA-87

    FIPS 204 post-quantum signature standard (formerly Dilithium).

    ML-KEM-1024

    FIPS 203 post-quantum key encapsulation, finalised August 2024.

    P

    PIPEDA

    Canada's Personal Information Protection and Electronic Documents Act.

    Provenance chain

    Per-file hash chain from upload through every read; tamper-evident.

    R

    Ransomware

    Attack class encrypting victim data and demanding payment; backup targets are the new attack surface.

    Reed-Solomon RS(5,2)

    Erasure code with 5 data + 2 parity shards per frame; tolerates loss of any 2 of 7.

    S

    Schrems II

    2020 CJEU ruling invalidating EU-US Privacy Shield over US surveillance concerns.

    scrypt

    RFC 7914 memory-hard password-based key derivation function.

    SHA-256

    FIPS 180-4 cryptographic hash function; integrity backbone of SkyeConnex.

    SkyeBucket

    S3-compatible drop-in gateway.

    SkyeGXU

    Sovereign on-prem GPU embedding subsystem.

    SkyeMap

    Real-time sovereignty visualisation across account, folder, and file.

    SOC 2 Type II

    AICPA audit of service-organisation controls; the standard cloud-services attestation.

    Split-Authority Decryption

    M-of-N custodian quorum decryption via Shamir Secret Sharing.

    T

    Threat Simulator

    Real-time recompute of exposure under hypothesised provider/jurisdiction loss.

    U

    User Master Key (UMK)

    The key that wraps per-file DEKs; never in unwrapped form on the server.

    Z

    Zero-knowledge

    The server cannot decrypt customer data; enforced cryptographically and topologically.

    SKYECONNEX
    Sovereignty by Architecture

    Data Sovereignty as a Service. Multi-cloud RAID, post-quantum encryption, real-time jurisdictional policy. Built in Ottawa, Canada.

    Solutions
    • Data sovereignty
    • Multi-cloud storage
    • Ransomware protection
    • Secure file sharing
    • Zero-knowledge storage
    • Compliance-as-a-Service
    Platform
    • Architecture
    • How it works
    • Features
    • Security
    • Client-side reconstruction
    • Sovereign cloud storage
    Resources
    • What is data sovereignty?
    • Blog
    • Glossary
    • FAQ
    • Whitepaper
    • Support
    Company
    • About
    • Investors
    • Partnerships
    • Reseller programme
    • Contact
    • [email protected]
    Newsletter

    Sovereignty intel, in your inbox.

    Briefings on post-quantum migration, jurisdictional shifts, and field-tested architecture — once or twice a month, never spam.

    © 2026 SkyeConnex Inc. — Ottawa, Canada. All rights reserved.
    Privacy Terms Security Sitemap