Clea OS
Secure Embedded OS
Clea OS is the Yocto LTS-based foundation of the Clea framework for industrial edge devices. It provides a customizable baseline across multiple architectures, merging long-term maintainability with security-by-design, including secure boot, signed updates, and unified access control.
sync_altInteraction
As the framework's on-device layer, Clea OS enables secure updates, telemetry, and remote management. It natively extends the ecosystem with cybersecurity features like encrypted communication, SBOM generation, and vulnerability monitoring, ensuring alignment with standards like CRA, RED, and IEC 62443.

Feature Availability
Scale your infrastructure with the right feature set for your needs.
| Feature | Starter | Small | Pro | Enterprise | Dedicated |
|---|---|---|---|---|---|
Yocto-based OSEdge-optimized Linux embedded distribution with runtime, networking, and foundation for CLEA containers and agents. | check | check | check | check | check |
TPM / FDO provisioningAutomatic and secure device provisioning (zero-touch onboarding with hardware identity). | close | remove Limited | check | check | check |
Secure bootIt ensures that the device only runs signed and trusted firmware | check | check | check | check | check |
Container runtimeDeploy containerized applications at the edge. | check | check | check | check | check |
AI inference engineRuntime to run on-device AI models (CPU/GPU/NPU). | remove | check | check | check | check |
OS updateRemote OS update. | close | remove Manual | check | check | check |
OS fleet policiesCentralized rules for OS configuration on device groups. | close | close | remove | check | check |
SBOM / auditSoftware component tracking and compliance. | close | close | remove | check | check |
Built-in Core Features
A robust foundation engineered for high-performance edge operations.
Security
Built-in protection with hardware-anchored secure boot, encrypted A/B updates, and automated vulnerability monitoring for long-term field security.
Manageability
Fleet-wide orchestration with remote diagnostic tools, centralized configuration management, and one-click mass deployment capabilities.
Optimized AI workload
Native integration for hardware accelerators (NPU/GPU/TPU) and optimized runtimes like TFLite and ONNX to run intelligence directly on the edge.
Crossplatform
A unified OS foundation for both ARM and x86 architectures, ensuring application portability and a consistent development experience across device families.
Why Choose Clea OS
Multi-architecture
Clea OS is designed to support multiple hardware architectures and device families, helping OEMs and system integrators standardize their software foundation across products while reducing fragmentation and porting effort.
Security
Clea OS embeds security at the operating system level, combining secure boot, firmware validation, encrypted and signed OTA updates, runtime protection and compliance-ready foundations from day one.
Unlock Clea full potential
Clea OS provides a framework-ready operating foundation for remote management, OTA updates, telemetry and application deployment, reducing the effort required to move from device bring-up to production operations.
Manage the lifecycle of the product, not just the initial build
Clea OS supports the full lifecycle of connected products, providing a continuous management loop from initial bring-up to long-term reliability in the field.
Provisioning
Simplified onboarding, secure boot initialization, and hardware-software pairing.
Configuration
Tailored OS blueprints, application layer setup, and service orchestration.
Deployment
Fleet-wide roll-out with zero-touch provisioning and automated field activation.
Maintenance
Proactive health monitoring, automated patching, and secure OTA updates.
Evolution
Scaling to new hardware, AI model updates, and seamless feature enhancements.
Built for secure and compliant edge operations
Clea OS combines operating system flexibility with security-by-design capabilities that help teams build connected products with a stronger cybersecurity baseline. Secure boot, signed updates, encrypted communication, runtime protection and structured vulnerability handling provide a more robust foundation for connected fleets and compliance-oriented deployments.
CRA readiness
RED EN 18031 support
IEC 62443 alignment
SBOM and vulnerability handling capabilities
Built for Every Industry
Deployed across millions of edge nodes globally.
Industrial Automation
Deploy on factory-floor gateways. Collect machine telemetry, manage firmware across lines, and run edge analytics in containers on a hardened, LTS OS.
Energy Management
Equip grid nodes with Clea OS Things. A/B partitioning ensures updates never disrupt critical infrastructure, while system telemetry provides continuous visibility.
Vending & Retail
Power connected kiosks with a minimal, secure footprint. Remote diagnostics and OTA app updates reduce truck rolls and unlock new revenue streams.
EV Charging Infrastructure
Secure boot, encrypted communications, and automated rollback allow managing firmware campaigns across thousands of distributed stations reliably.
Ready to Build Your Edge Foundation?
Start configuring Clea OS for your hardware platform today, or contact us to discuss custom BSP development.