Skip to content
ORTHEON
SYSTEMS LABORATORY
Research archive

Custody Research

Operational Security of Multisignature Custody

Examining the policy and operational systems that surround cryptographic authorization.

12 June 2026Sofia Maren 9 min read

Examining the policy and operational systems that surround cryptographic authorization.

01 / Analysis

Policy before signatures

A valid multisignature proves that a threshold signed. It does not prove that the transaction matched an approved destination, limit, time window or business purpose.

02 / Analysis

Authority separation

Request creation, policy approval, transaction construction and signing should remain distinct. Recovery authority requires the same scrutiny as routine execution.

03 / Analysis

Observable controls

Effective custody systems make policy decisions independently auditable and preserve enough evidence to reconstruct every authorization path.

> research_position:
test assumptions at the boundary;
preserve evidence through failure;
make recovery an explicit system property.