硬件级安全管控。
云端授权认证。
年龄验证、生物识别认证与遥测内置于硬件,而非后期加装。每台设备和每个耗材均经云端授权且可追溯,在芯片级别完成验证、记录与安全保障。
监管体系中的
合规漏洞
传统年龄核验仅发生在销售环节,而非设备激活时。产品一旦离店,便无任何合规执行机制。XEO 通过硬件级管控,彻底弥合这一缺口。

未成年人获取
设备在售出后无任何管控即可到达未成年人手中
设备转借
转售与共享完全绕过年龄核验
假冒伪劣
回灌与假冒烟弹污染供应链
零监控
售后无任何市场监测机制
Age is verified once against an identity document and the result is issued to the device as an authorisation. What sits in the device is the fingerprint check that binds that authorisation to the person who was verified. 硬件级安全管控。云端授权认证。故障安全设计。

您的指纹。
您的设备。
您的授权。
持有设备的人即为经过验证的人。Authorisation is bound to the enrolled fingerprint and expires: the device re-checks the fingerprint on a configurable schedule, seven days by default, forces a network re-validation every thirty days, and can be made to re-check at any moment from the platform. 无需手机,无需应用。
XEO 运作机制
默认锁定
每台设备出厂即为锁定状态。未完成完整授权链条,一律无法激活。
生物指纹识别
用户直接在设备上完成认证。通过 PWA(渐进式网页应用)一次性注册,初始设置后不再依赖手机。
设备 ID 验证
USB-C 身份芯片提供密码学设备身份,与硬件绑定,无法伪造或在设备间转移。
可选:烟弹认证
User + device is live today. Tri-factor mode (user + device + POD) is on the roadmap and at prototype stage; it will prevent counterfeit consumables from activating the device.
Cloud Issues Authorization Token
The platform verifies every credential and requires the device to prove a hardware identity that cannot be read out, copied or transferred to another device. Only then is an authorization token issued. 无授权凭证,则无法激活设备。
设备激活
任何异常都会让设备回到锁定状态,如 LTE 断连、拆解、不匹配。
XEO的
两种部署方式
两种部署模式共享相同的后端、遥测和安全架构。同一平台,灵活的产品形态。
External Downlink

外置生物识别 + LTE模块(18 × 55 mm,另加 6 mm 插头),通过USB-C供电。插入兼容的一次性雾化器。面向兼容设备平台的大规模改装方案。
- 集成到您现有的产品控制器,其余固件保持不变
- Cloud-based 实时设备授权
- Geofenced 合规监控,含违规告警
- 合规规则在平台上更新,无需发布固件
- API-first 架构(REST + Server-Sent Events)
- 无需改动您现有的生产线;EXT-DL 单元出厂即已预配置
- 兼容现有 MCU 平台
- 18 × 55 mm 另加 6 mm 插头,USB-C 供电,无内置电池
- LTE 与 Wi-Fi,默认每小时与云同步,可配置为 10 分钟至 24 小时,每 30 天强制一次网络重新验证
- 通过平台提供的 web application 完成设置,无需安装 App
- 估计数据量低于每台设备每月 5 MB,尚未在最终硬件上实测
旨在最大限度减少产品侧的额外集成工作。XEO EXT-DL 将可复用的智能保留在 EXT-DL 中,而非在每个兼容的一次性产品中重复部署。保持一次性产品架构简单,将可复用的智能置于可复用的接口中。
设备端

授权硬件直接内置于电子烟设备中。指纹传感器和LTE模块完全集成,无需外部配件。
- 独立 compliance 模块,可集成到您现有的产品控制器
- Biometric 年龄验证:身份核验在云端,指纹验证在设备端
- Tamper-resistant 加密设备身份
- AEAD 加密遥测,带本地缓冲
- Over-the-air 固件更新,适用于已连接 Wi-Fi 的设备
- Design target:认证低于 200 ms,尚未在最终硬件上实测
- Design target:额外电池消耗低于 3 %,尚未在最终硬件上实测
在架构阶段即设计融入。XEO EMB 将身份、认证与授权植入产品本身,从首次设计评审起即掌控硬件、固件与云端。合规层是平台的组成部分,而非附加项。

平台
优势

专利保护。
全程加密。
抗篡改。
每台XEO设备在制造时即将唯一加密身份写入芯片。All telemetry is encrypted and authenticated on the device itself, with a key unique to that device. Every authorisation is bound to the individual device: before a token is issued or renewed, the device must prove a hardware identity that cannot be cloned or transferred. Records are append-only and hash-chained, with a daily signed root that can be verified on request. Any later alteration, backdating or fabrication is detectable.
全栈自主研发
从概念验证到量产,涵盖硬件、固件、云端和应用。Compliance architecture designed, built and owned by XEO.

WHERE XEO
STANDS TODAY
September 2026. The platform runs: device authorisation, age verification, telemetry, the append-only audit log and the regulator portal. Devices are in engineering validation, and firmware for the current board has not yet run on final production hardware. Performance figures on this site are design targets unless stated otherwise, and capabilities still in development are marked as such.
准备好
弥合缺口了吗?
发送消息
联系方式
Kurfürstendamm 15
10719 Berlin, Germany