HX-Provenance - Verifiable Evidence and Provenance Appliance
HolonomiX · Cybersecurity & IT
Certification per AWS Marketplace.
Evidence tier Source Confirmed · 4 captures on record
What the publisher says
As described on AWS Marketplace.
Overview
HX-Provenance is a customer-controlled provenance appliance that turns important digital artifacts into verifiable evidence. Running as a CPU-only VM inside your AWS environment, it issues cryptographically signed provenance receipts and exportable evidence bundles - giving regulated, enterprise, and public-sector teams a repeatable proof path for audit, compliance, legal, cyber, AI governance, and critical decision workflows.
Show the rest of the publisher’s description (26 more lines)
Unlike SaaS provenance services that hold signing keys externally or blockchain-based audit trails with latency and cost trade-offs, HX-Provenance keeps the entire operating boundary - keys, data, and verification logic - under your direct control.
Key Capabilities
Signed Provenance Receipts: Issue ML-DSA-65 (post-quantum) signed receipts for registered artifacts including AI outputs, retrieval results, compliance files, legal packets, cyber incident artifacts, procurement materials, board packets, case files, and other critical decision documents.
Evidence Bundle Export: Package receipts, metadata, and verification material into self-describing evidence bundles for legal handoff, audit review, and chain-of-custody workflows.
Online and Offline Verification: Verify receipts through the appliance API or offline using exported verification material - no always-on connectivity required.
100% Artifact Recall: Every registered artifact is retrievable and verifiable, eliminating gaps in audit trails and chain-of-custody records.
Performance
In benchmark testing, HX-Provenance produced signed verification receipts in approximately 240 ms end to end on a cloud CPU instance, achieving approximately 4.17 receipts per second. This gives teams a fast, repeatable proof path without GPU dependencies.
Deployment Requirements
Instance: CPU-only VM. Recommended baseline: 4 vCPUs, 16 GB RAM.
Storage: Minimum 10 GB boot storage, 100 GB persistent data storage for production.
IAM Permissions: Deploy and operate the VM, manage network and firewall access, access serial console or startup credentials as needed.
Optional AWS Integrations: Write evidence bundles to customer-controlled Amazon S3 buckets. Send telemetry to customer-controlled Amazon CloudWatch.
Network: Customer-managed VPC with security group rules for HTTPS/API access.
Integration Points
HX-Provenance integrates with internal applications, AI/ML pipelines, CI/CD systems, compliance tooling, records systems, and evidence workflows through its REST API. Customers can optionally connect the appliance to Amazon S3 for evidence bundle storage and Amazon CloudWatch for operational telemetry, keeping all data within their AWS account.
Security and Cryptography
Signing Algorithm: ML-DSA-65 (post-quantum digital signature).
Deployment Isolation: Runs entirely within the customer's VPC with no external call-home or key escrow.
Key Control: All signing keys remain under customer control within the appliance.
Data Boundary: Artifacts, receipts, and evidence bundles never leave the customer's AWS environment unless explicitly exported.
Use-Case Scenario
A compliance team at a financial institution uses HX-Provenance to register AI-generated risk assessment reports. Each time the ML pipeline produces an output, the appliance issues a signed receipt binding the report content, model version, input data hash, and timestamp into a verifiable record. When auditors request evidence months later, the team exports an offline-verifiable evidence bundle - proving exactly what the model produced, when, and from what inputs - without relying on the appliance being online at audit time.
Getting Started
To evaluate HX-Provenance, launch the AMI on a supported instance (4 vCPUs, 16 GB RAM minimum), complete initial HTTPS and API key configuration, and issue your first signed receipt. For guided evaluation or pilot deployment planning, contact HolonomiX through the support channel.
HolonomiX is the developer of HX-Provenance, focused on verifiable provenance and evidence integrity for organizations that need to prove what happened across AI, compliance, legal, and decision workflows.
Highlights
Highlighted by the publisher on AWS Marketplace.
100% artifact recall with ML-DSA-65 post-quantum signed receipts issued in approximately 240 ms end to end. Unlike SaaS provenance services that hold signing keys externally, HX-Provenance keeps all keys, data, and verification logic inside your AWS VPC - eliminating third-party key escrow risk and giving you direct control over your entire evidence chain for AI outputs, compliance files, legal packets, and decision artifacts.
Export self-describing evidence bundles containing receipts, metadata, and verification material for legal handoff, audit review, and chain-of-custody workflows. Each bundle is independently verifiable without requiring the appliance to be online - removing the always-on connectivity dependency that limits alternative provenance approaches and enabling air-gapped or delayed audit scenarios.
Deploy as a CPU-only VM (4 vCPUs, 16 GB RAM baseline) inside your existing VPC with optional integration to Amazon S3 for evidence storage and Amazon CloudWatch for telemetry. Achieves approximately 4.17 signed receipts per second with no GPU requirement, giving compliance, legal, AI governance, and security teams a production-ready provenance layer without complex infrastructure dependencies.
Agent build and provenance
See the full provenance
The layer-by-layer build, the evidence behind each claim, the risk basis and the cross-marketplace links are open to any account. Some rows are disclosed, some the source leaves Unknown; a free account shows you which.
Plans and pricing as listed
3 listed- Hrs
- Hrs
- Hrs
Refund terms
As stated by the publisher on AWS Marketplace.
A free trial is available to evaluate HX-Provenance before you purchase. Hourly usage is billed as incurred and is non-refundable except for verified billing errors. Annual prepaid subscriptions are fully refundable within 30 days of purchase and non-refundable thereafter. To request a refund or report a billing error, email support@holonomx.com with your AWS account ID and order details. Approved refunds are processed through AWS Marketplace.
Sources
Linked repositories
Unknown means this listing does not publish a repository. It is not a statement that the code is closed, and a linked repository is not a claim that the publisher wrote it: the registry computes that relationship privately and does not publish it.
Evidence risk is the share of the build you cannot see before you deploy, not a security rating. Sign in to see the layer-by-layer basis for this band.

