Get started

BetterSign™

BetterSign distributes desktop, server, and command-line components. The installer chooses the right binaries for the platform and can wire up local service integration.

Stable identity

A VLAD remains stable while its keys and protected metadata rotate.

Self-verifying history

Every state transition is hash-linked and authorized by the previous log state.

Decentralized discovery

VLADemlia helps peers locate current records without becoming the trust root.

Routine rotation

Key changes become signed updates that followers can verify and apply.

Get started

Install

Download

Native builds for your detected platform appear here. For other systems, headless servers, or CI, use the installer script in the next section.

Components

bs-server is the headless daemon for peer, SSH, TLS, CA, and WireGuard workflows. bs-server-web includes the embedded browser UI.

bs is the command-line client for the daemon. bs-gpg provides a drop-in GPG-style interface for compatible signing and verification workflows.

Installer

On Linux and macOS, the installer is available from sh.bettersign.io and installs into the user’s BetterSign directory by default.

Windows users can use the PowerShell installer from the same distribution host.

curl --proto '=https' --tlsv1.2 -sSf https://sh.bettersign.io/install.sh | shirm https://sh.bettersign.io/install.ps1 | iex

Next Steps

Create or import a VLAD identity, start the daemon, and choose the plog paths you want local services to follow.

For server deployments, configure the peer daemon to track trusted VLADs and apply verified changes to the relevant SSH, TLS, or WireGuard integration points.

From Install to Your First Identity

Install the binaries (installer script or a single download)
Start the peer daemon
Create a VLAD identity — this begins its provenance log
Point a service (SSH, TLS, or WireGuard) at a VLAD to follow
Rotate keys as routine signed updates — followers converge on their own