Notes from the lab
Engineering deep-dives, security explainers, and product updates from the Atheryx team.
Why hardware-bound licensing still matters in 2026
Crackers move fast, but HWID binding still raises the cost of piracy above what most pirates will pay. Here's how we approach it at Atheryx.
How session rotation keeps long-lived clients safe
Every active call extends your session; every idle period ticks a clock. A deep dive into our 7-day / 72-hour session model.
HMAC request signing, explained without the math
Request signing is just a handshake with a shared secret. A plain-English walkthrough of what it protects and how to enable it.
From dashboard to SDK: shipping your first protected build
A complete end-to-end tutorial: create your app, generate keys, drop in the C++ SDK, and ship — in under an hour.
Bcrypt, salt, and cost factors: password storage done right
Passwords shouldn't look like passwords. Why we hash at cost 12, never store plaintext, and what that means for your users.
Introducing the reseller API: license keys at scale
Programmatic key generation is now one API call away. Here's what resellers asked for and what we shipped.
Why cloud-based licensing beats running your own auth stack
Building and maintaining your own auth and licensing system costs far more than most teams expect. A practical breakdown of what you avoid with a managed platform.
What's in a license level? Roles, tags, and expiry explained
USER, VIP, PREMIUM — levels are just labels until you combine them with tags and expiries. Here's the mental model.