Migration guide

Move from AffixIO 1.x to 2.0 beta without guessing the package.

This page exists to remove ambiguity. The canonical npm package remains affixio. Use the beta tag for 2.0 testing and keep production on stable until you are ready.

Old surfaceUse nowWhy it matters
@affix-io/sdk legacyaffixioUse the public canonical package to avoid scoped package ambiguity.
@affix-io/sdk-light legacyaffixio with the selected proof modeHMAC and UltraHonk are proof modes in the public package, not separate current product names.
Legacy Node 18 examplesNode.js 20 or laterNew docs and beta work should target one runtime baseline.
Crypto-first languagePermission-first languageLead with the business decision, then explain ZK, ML-DSA-65 and Merkle audit as implementation evidence.

Recommended framing

Product sentence

AffixIO sits before the action and proves whether an agent should be allowed to act.

KYA sentence

Authentication asks who is calling. KYA asks whether this agent is allowed to do this, here, now.

Payment sentence

Payment systems move money. AffixIO proves the permission and evidence layer before the payment action is attempted.

Capability matrix

CapabilityPackageLicenceRemote service
Local policy decisionAvailable through SDK flowsDepends on account entitlementLicence heartbeat may apply
HMAC evidencePackage modeTier gated where applicableOptional sync
UltraHonk proofPackage capability where bundledTier gated where applicableOptional or required by workflow
ML-DSA-65 attestationNot just a local claimTier gated where applicableRequires AffixIO attestation service
Merkle auditSDK can prepare audit materialTier gated where applicableRequires connected audit service