Nexuvius logo

Nexuvius

Identity and access security tools, built on open standards and tested before they ship.

We start at the root of trust, the identity provider, and build outward: the gateway that enforces it, and the tools that audit and watch it. Every product carries a Tamil name, a nod to where Nexuvius comes from.

What we're building

Three products are working builds today. Two more are planned. None are publicly released yet; open-source releases will be announced here.

  • ஆதி

    Aadhi "origin"

    Self-hosted OpenID Connect identity provider. Passkeys, MFA, single sign-on and logout across apps, and token exchange for AI agents acting on a user's behalf. Passes the OpenID Foundation's Basic OP conformance tests.

    Working build
  • அரண்

    Aran "fortress"

    Zero Trust access gateway. Sits in front of internal apps and checks identity, device posture, and policy on every request, with mutual TLS to the services behind it.

    Working build
  • விழி

    Vizhi "eye"

    AWS IAM auditor. Finds over-permissive policies and explains each finding in plain English, so teams know what to fix and why.

    Working build
  • காவல்

    Kaval "guard"

    Security monitoring and detection, built to take in the audit trails the other products produce.

    Planned
  • நெறி

    Neri "the right path"

    Compliance engine that maps security controls to the evidence that proves them.

    Planned

How we build

  • Standards firstOpenID Connect, OAuth, and the RFCs around them, implemented as written so our tools work with yours.
  • Reviewed before releaseEvery product gets automated tests, a security review, and fixes for what it finds before anyone else runs it.
  • Open by defaultWe plan to release our tools as open source, so you can read the code that guards your systems.