Private App Access
Publish internal apps through App Vertices instead of VPN. The user gets access to the app surface, not the network.
https://n-v.io/acme/apps/payroll
localhost:8080
internal-payroll.acme.local
10.40.2.18:443
k8s service
private VPC endpoint
JIT Admin Access
Replace standing VPN plus SSH/RDP access with short-lived admin vertices that include approval, MFA, ticket number, session recording, audit, and TTL.
/acme/admin/server-12/ssh
/acme/admin/sql-prod/query
/acme/admin/k8s/prod/action
Agent and Workload Communication
Agents receive scoped read-only or action vertices, not broad VPN access, global API tokens, or permanent secrets.
/acme/agents/helpdesk/read-ticket
/acme/agents/soc/enrich-ip
/acme/agents/secops/request-isolation
/acme/agents/legal/summarize-contract
Secure File and Workflow Exchange
Use secure file drops, legal intake, contractor exchanges, forms, and one-time workflow vertices with policy and lifecycle built in.
/acme/files/legal-drop
/acme/forms/vendor-intake
/acme/workflows/contract-review
Log and Signal Streaming
Publish log stream vertices for secure telemetry ingestion, stream fanout, and named signal paths.
/acme/logs/firewall-stream
/acme/logs/endpoint-alerts
/acme/signals/siem-events