QuintessenceLabs Trusted Security Foundation

Web · Linux · Self-hosted · API

Freedom report

One barScore 5.5

  • Free tierNo free tier on record
  • Open codeNo open-source code on record
  • Runs widely2 of 6 device platforms
  • DocumentedPlans, terms and facts published

QuintessenceLabs Trusted Security Foundation (TSF) is a centralized, vendor-neutral manager for cryptographic keys and policies across their lifecycle. It is offered as a virtual machine or hardware appliance; TSF 100 virtual appliances can run locally or on AWS, Azure, and GCP. Product materials describe object and user policy management, built-in replication across up to 16 nodes, and support for OASIS KMIP. The TSF range has been tested with products from IBM, HP, Oracle, and NetApp. Listed cryptographic capabilities include one-time pad, symmetric and asymmetric key ciphers, key derivation, random objects, certificates, and some cryptographic operations. Administrators can use web HTTPS or command-line SSH interfaces. The maker says TSF 400 contains an Entrust nShield XC FIPS 140-3 Level 3 validated HSM as a root of trust; TSF is under evaluation for Common Criteria NDcPP compliance. Pricing is on request, with configurations tailored to different needs.

Who it is for

TSF suits organizations managing cryptographic keys and policies across systems that need virtual-machine or appliance deployment. It may interest teams seeking KMIP support, multi-node replication, or HSM-backed keys.

What is good

  • Available as a virtual machine or hardware appliance
  • Supports object and user policies
  • Built-in replication supports up to 16 nodes
  • Offers web HTTPS and command-line SSH interfaces

What to know first

  • Pricing is available only on request
  • TSF is under evaluation for Common Criteria NDcPP compliance

Verdict

TSF provides centralized key and policy management with several deployment options and listed cryptographic capabilities. Contact the maker for pricing and configuration details, and note the stated Common Criteria evaluation status.

Get started with QuintessenceLabs Trusted Security Foundation

  1. Contact QuintessenceLabs through its product website for pricing and configuration information.
  2. Choose between a TSF 100 virtual machine and TSF 200, 300, or 400 hardware appliances.
  3. For TSF 100, select local deployment or AWS, Azure, or GCP.
  4. Manage TSF through its web HTTPS or command-line SSH interface.

Limits to know first

Pricing is available on request, and configurations are tailored to different needs. TSF is under evaluation for Common Criteria NDcPP compliance.

Questions about QuintessenceLabs Trusted Security Foundation

How much does TSF cost?

QuintessenceLabs provides pricing on request.

What deployment options are available?

TSF is offered as a virtual machine or hardware appliance. TSF 100 virtual appliances can run locally or on AWS, Azure, and GCP.

What management interfaces does TSF list?

The specification lists web HTTPS and command-line SSH interfaces.

Which standards or interoperability options are listed?

The TSF range supports OASIS KMIP and has been tested with products from IBM, HP, Oracle, and NetApp. The maker says the key management application complies with NIST SP 800-57 where applicable.

What is TSF 400’s hardware security feature?

The maker says TSF 400 contains an Entrust nShield XC FIPS 140-3 Level 3 validated HSM that acts as a root of trust.

Who makes Trusted Security Foundation?

QuintessenceLabs, founded in 2008 and headquartered in Canberra, Australia.

QuintessenceLabs Trusted Security Foundation plans and pricing

All plans
Trusted Security Foundation (TSF) Not published TSF 100 virtual machine · TSF 200/300/400 hardware appliances · configurations tailored to different needs quintessencelabs.com · 3 Oct 2026

Compared on key management software

Deployment model
hybrid
Key audit logs
Yes

Best QuintessenceLabs Trusted Security Foundation alternatives

See all 17