BetterSign™.

BetterSign™

One name. Forever.

A VLAD is a stable identifier decoupled from key material.

Your identity stays the same for life while the keys securing it rotate freely — like keeping your phone number when you swap the SIM.

A Verifiable Long-lived ADdress binds a nonce to the CID of a WASM verification function. It commits to a verifier, not a key, so it survives unlimited rotations.

  • A name that stays yours for life
  • The keys behind it can change anytime
  • You never have to introduce yourself again
  • nonce + WASM-CID tuple in self-describing multiformat
  • maps through the DHT to the current provenance-log head
  • key history lives in the log; the VLAD never changes

A stable name on the outside, freely changeable keys on the inside.

The picture

A phone number for your identity

A VLAD is like a phone number that stays the same when you get a new phone. You keep the number; the SIM card inside changes. In BetterSign, you keep your name while the keys inside it change.

The VLAD is a nonce + WASM-CID tuple that addresses your provenance log. The keys advertised under /pubkey rotate with every entry, but the identifier the DHT resolves to never changes.

What it fixes

A name anyone can check, anytime

Ordinary identifiers

  • ✕Owned by a company that can revoke or redirect it
  • ✕Proven only when a middleman vouches for you
  • ✕Can be impersonated if the provider is fooled
  • ✕Stops working if the service disappears

A VLAD

  • ✓Owned by you and no one else
  • ✓Proven by math that anyone can check
  • ✓Cannot be forged without breaking the cryptography
  • ✓Still verifiable years later, even offline

How it works

How a VLAD works

You create an identity, which gives you a VLAD — your permanent name

BetterSign starts a signed logbook for it

Every key change adds a new signed page to the logbook

Anyone can replay the logbook and check every page is legitimate

They always end up with your current, correct keys — without asking anyone

The building blocks

Four ideas do all the work

◇

Stable identity

A VLAD remains stable while its keys and protected metadata rotate.

⛓

Self-verifying history

Every state transition is hash-linked and authorized by the previous log state.

⇋

Decentralized discovery

VLADemlia helps peers locate current records without becoming the trust root.

↻

Routine rotation

Key changes become signed updates that followers can verify and apply.

The jargon, translated

Plain-English words for the deep stuff

VLAD
your permanent name; short for Verifiable Long-lived Address
plog
the signed logbook behind a VLAD that records every change
rotation
swapping an old key for a fresh one without changing your identity
revocation
marking a key as no longer usable, for example after it leaks
recovery
using a stronger backup key to fix things if a normal key is lost
VLADemlia
the network address book that helps peers find each other; it never decides who to trust

Questions

The things people ask first

Do I need to understand the cryptography?

No. Point your tools at a VLAD and BetterSign keeps the keys current for you — SSH that doesn't break when keys rotate, TLS that renews itself, API tokens you can rotate freely.

What if I lose my key?

Recovery is built in. A stronger, better-protected backup key can fix things if a normal key is lost or stolen — no out-of-band scramble.

Why is changing keys a good thing?

The longer a single key stays in use, the more chances a copy ends up somewhere it shouldn't. Rotating retires old risk — like changing the locks now and then.

Can a company take my identity away?

No. A VLAD is owned by you and no one else, proven by math anyone can check, and still verifiable years later — even offline.

A name you keep. Keys you can change.

Point your tools at a VLAD and BetterSign keeps the keys current for you.