惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Security Latest
Security Latest
T
The Exploit Database - CXSecurity.com
Threat Intelligence Blog | Flashpoint
Threat Intelligence Blog | Flashpoint
T
Tor Project blog
Help Net Security
Help Net Security
PCI Perspectives
PCI Perspectives
T
The Blog of Author Tim Ferriss
H
Heimdal Security Blog
The Register - Security
The Register - Security
Schneier on Security
Schneier on Security
宝玉的分享
宝玉的分享
Google DeepMind News
Google DeepMind News
人人都是产品经理
人人都是产品经理
cs.AI updates on arXiv.org
cs.AI updates on arXiv.org
C
CERT Recently Published Vulnerability Notes
L
LangChain Blog
Security Archives - TechRepublic
Security Archives - TechRepublic
MongoDB | Blog
MongoDB | Blog
美团技术团队
S
Security @ Cisco Blogs
Cloudbric
Cloudbric
Cisco Talos Blog
Cisco Talos Blog
C
Cybersecurity and Infrastructure Security Agency CISA
月光博客
月光博客
B
Blog RSS Feed
Cyberwarzone
Cyberwarzone
U
Unit 42
AWS News Blog
AWS News Blog
F
Fortinet All Blogs
L
LINUX DO - 最新话题
GbyAI
GbyAI
T
Threat Research - Cisco Blogs
cs.CV updates on arXiv.org
cs.CV updates on arXiv.org
A
About on SuperTechFans
Hugging Face - Blog
Hugging Face - Blog
Attack and Defense Labs
Attack and Defense Labs
Engineering at Meta
Engineering at Meta
MyScale Blog
MyScale Blog
Hacker News - Newest:
Hacker News - Newest: "LLM"
V2EX - 技术
V2EX - 技术
Y
Y Combinator Blog
T
Tailwind CSS Blog
酷 壳 – CoolShell
酷 壳 – CoolShell
Recorded Future
Recorded Future
TaoSecurity Blog
TaoSecurity Blog
博客园_首页
C
CXSECURITY Database RSS Feed - CXSecurity.com
M
MIT News - Artificial intelligence
K
KPMG report finds enterprise disconnect between AI and its ROI | CIO
H
Hacker News: Front Page

Show HN

GitHub - flightdeckhq/flightdeck: Observability and control plane for AI agents. CSP Radar GitHub - Light-Heart-Labs/DreamServer: Turn your PC, Mac, or Linux box into an AI server. LLM inference, chat UI, voice, agents, workflows, RAG, and image generation. GitHub - Diplomat-ai/diplomat-agent-ts: What can your TypeScript AI agent do to the real world? Scan your code. See which tool calls have zero checks Code Block Selector - Visual Studio Marketplace Prometheus dependency graph — interactive showcase | Riftmap Show HN: I made a vi-like modal keyboard plugin for Figma GitHub - run-llama/liteparse: A fast, helpful, and open-source document parser GitHub - dalemyers/Roar: A macOS CLI tool for notifications GitHub - district-solutions/open-agent-tools-coder: Enables small-to-large self-hosted ai models to use local source code when running tool-calling agentic workloads. We actively data mine 20,900+ (2+ TB) popular github repos using large and small ai models to create reuseable: json, markdown and parquet files for local-first tool-calling models. GitHub - progapandist/stripeek: A local TUI proxy for real-time Stripe API debugging, built for navigating complex payloads fast. GitHub - sir1st/hermes-desktop: All-in-one cross-platform desktop app for Hermes Agent — bundles Python + hermes-agent + hermes-web-ui GitHub - astefanutti/shaderbang: Shebang for Shaders Show HN: Generate Claude Code Workflows using Spec Driven Development approach GitHub - nixys/nxs-universal-chart: The Helm chart you can use to install any of your applications into Kubernetes/OpenShift Show HN: AI agents for UK GDAD PCF roles and their skills The Two Pillars: Mixer Mode and Meta-Software in the Reorganization of Software Work After AI GitHub - JaiCode08/teleport-env What 1,000+ Harness Experiments Taught Me About Self-Improving Agents Show HN: Liiists, a Markdown-first, iOS and CLI list app SwiperTab – Get this Extension for 🦊 Firefox (en-US) GitHub - kouhxp/fftext: Summarize, explain, fact-check, or translate any text, URL, or file. No GPU. No cloud. One command GitHub - sweetpad-dev/sweetpad: Develop Swift/iOS projects using VSCode GitHub - dogmaticdev/IRON: IRON a.k.a. Intermediate Representation Object Notation is a Interpreter/Database that is used to create Programming Languages. GitHub - sjhalani7/vaen: Package your AI coding harness into a portable .agent file, and share it across repos, teams, & the community without ever having to copy-paste instructions, skills, MCP config, or secrets. Show HN: Gandalf the Grader Show HN: Citadeld – replay any CI failure locally from a single file GitHub - tdortman/cuSBF: High-Performance GPU Super Bloom Filter coral-ai/claude-code-token-xray at main · Coral-Bricks-AI/coral-ai GitHub - ulyssestenn/funes: Funes is a Git-based framework for LLM-managed knowledge work: an AI Librarian ingests raw sources, builds an interlinked Markdown knowledge base, and uses it to produce cited reports, analyses, and other outputs. GitHub - ThatXliner/gah: Git Add Hunk, built for agents to use GitHub - harmont-dev/harmont-cli: Command-line client for the Harmont CI platform GitHub - brooksmcmillin/mcp-authflow: OAuth 2.0 Authorization Server framework for MCP servers GitHub - javaid-codes/audit-supply-chain-agents GitHub - amorey/gochan: A small library of common channel architectures for Go, inspired by Rust GitHub - arifozgun/OpenGem: Free, Open-Source AI API Gateway with Gemini, OpenAI & Anthropic Compatibility in 1 file GitHub - Pranesh950/BioPetals: 🌸 Run BIOxAI models at home, BitTorrent-style. Fine-tuning and inference up to 10x faster than offloading GitHub - cnguyen14/bounty-doctor: Diagnose a GitHub bounty issue before you waste hours: detects honeypot scam repos, AI-bot attempt swarms, and stale contests. Show HN: CoreMCP – MCP Server for On-Prem DBs Show HN: KittyHTML – Render HTML/CSS as an inline image in your terminal GitHub - bingud/filemat: Web-based file manager Show HN: TruthLens – Free multi-signal deepfake image detector GitHub - apexlocal-jz/claude-usage-tray: Windows system-tray app showing your Claude Code rate-limit usage at a glance. Zero deps, ~300 lines of PowerShell. Cross-IDE (works regardless of VS Code, Cursor, plain terminal). Release v0.1.2.1 · kouhxp/yapsnap GitHub - noopolis/moltnet: Self-hostable chat network for AI agents. Pre-built bridges for Claude Code, Codex, and the Claws. Rooms, DMs, history. No Slack bots, no Matrix, no glue code. GitHub - tamerh/enju: Coordinating Humans, AI Agents, and Compute as Peers on a Shared Workflow Graph Show HN: Continuity-auth – Respect-weighted rate limits for the open web GitHub - luml-ai/luml: AI lifecycle platform where engineers and agents track experiments, train models, and ship to production. GitHub - mrdanielcasper/CoreTex: A UNIX-inspired, biomimetic, flat-file AI harness and knowledge engine. GitHub - clemg/pierre-github: Pierre's diffs.com and trees.software for Github GitHub - lyriks-io/unspaghettit: Behavior-driven AI development without prompt spaghetti. GitHub - sofumel/claude-handoff-revive: Resume Claude Code work after rate/usage/context limits without replaying the prior transcript. Auto-saves at 90%/95% usage. Plugin-installable, 10 languages. GitHub - dotexorg/saferpc: Typed, end-to-end encrypted RPC over any bidirectional channel. GitHub - BeeZeeAgent/beezee: Agent harness orchestration Legato Next.js Boilerplate for Internal Tools · CoreUI GitHub - clark-labs-inc/clark-hash: Clark Hash, 32x smaller searchable sketches for embeddings GitHub - ZeroPointRepo/youtube-mcp: The fastest YouTube transcript + YouTube search MCP for AI agents. Try for free. Typing Mastery — climb toward 100+ WPM, deliberately GitHub - Andebugulin/Awareen GitHub - fayzan123/claude-workflow-composer: Visual desktop app for composing multi-agent coding workflows. Drag agents, attach skills and MCPs, wire handoffs, export to .claude/ GitHub - harshaneel/humanize: Best static AI text humanizer. Two research-grounded skills that work in any LLM (Claude, ChatGPT, Gemini, Codex): humanize beats perplexity-based detectors, ai-check produces forensic scoring with evidence-quoted flags. Nine levers, 50+ peer-reviewed sources, 2024-2026 detection literature. GitHub - StackOneHQ/stack-nudge GitHub - nodes-app/swift-markdown-engine: A native AppKit Markdown editor for macOS, built on TextKit 2 and bridged to SwiftUI. We hardened an LLM agent. Each defense we added made it more exploitable. GitHub - alkait/WhatsKept: Agent-queryable WhatsApp history from an iOS backup — a single Go binary. GitHub - octelium/cordium: Open-source, general-purpose sandbox platform for devs and AI agents that provides identity-based secure access to infrastructure without credentials. WAR.GOV/UFO Microfilm5 GitHub - scosman/videowright: Build animated explainer videos with your coding agent GitHub - dipankar/dscode: The code editor you can take apart. GitHub - zoharbabin/web-researcher-mcp: MCP server (Go) for AI assistants: web search, content extraction, academic/patent/news research. Multi-provider routing, 4-tier scraping, search lenses. Works with Claude, Cursor, and any MCP client. GitHub - ruvnet/RuView: π RuView turns commodity WiFi signals into real-time spatial intelligence, vital sign monitoring, and presence detection — all without a single pixel of video. GitHub - scanaislop/aislop: Catch the slop AI coding agents leave in your code: narrative comments, swallowed exceptions, as-any casts, dead code, oversized functions. 50+ rules across 7 languages (TypeScript, JavaScript, Python, Go, Rust, Ruby, PHP). Sub-second, deterministic, no LLM at runtime. MIT-licensed. GitHub - kouhxp/cheap-im: CPU-only voice agent approximating Thinking Machines' Interaction Models demo GitHub - unprovable/OrchidMantis: Orchid Mantis — standalone framework for Zero-Knowledge Proofs of eXploit (ZKPoX). GitHub - MarcellM01/TinySearch: Shrink the web for your local LLMs! GitHub - pileax-ai/pileax: PileaX is an all-in-one AI knowledge base system. 🍀 GitHub - TangibleResearch/Halgorithem: A Algo designed to detect AI Hallucitions GitHub - DO-SAY-GO/freelang: I love freelang GitHub - CarpseDeam/Aura-IDE: An AI coding harness that shaped itself - Planner/Worker agents, repo awareness, surgical edits, validation, recovery, and safe diff approvals. GitHub - chojs23/concord: A feature-rich TUI client for Discord GitHub - tommyjepsen/awesome-ux-skills: UX & AI Product designs skills you can use today in Claude Code GitHub - aerf-spec/aerf: Agent Evidence Receipt Format (AERF) — an open specification for tamper-evident, independently verifiable records of AI agent actions. GitHub - kklimuk/docx-cli: CLI for AI agents (Claude, Codex) to read, edit, and comment on .docx files with full format fidelity. GitHub - Jwrede/tokentoll: Catch LLM cost changes in code review. Infracost for LLM spend. GitHub - samchon/ttsc: A `typescript-go` toolchain for compiler-powered plugins and type-safe execution + 500x faster lint integrated into compiler GitHub - Higangssh/homebutler: 🏠 Manage your homelab from chat. Single binary, zero dependencies. GitHub - olalie/tapmap: See where your computer connects and what stands out on a live world map. GitHub - matisiekpl/neond: DX-focused control plane for Postgres dedicated to non-critical workloads. Your postgres:latest replacement 🐘 GitHub - Diplomat-ai/diplomat-agent: What can your AI agent do to the real world? Scan your code. See which tool calls have zero checks GitHub - Bajusz15/beacon: Open-source agent for secure remote access, monitoring, and deploys across home-lab and self-hosted machines like Raspberry Pi, N100, or any Linux server. Open web based TTY or tunnel Home Assistant and other local services securely without opening ports. BigTech AI News - Chrome 应用商店 GitHub - vinhnx/VTCode: VT Code is an open-source coding agent with LLM-native code understanding and robust shell safety. Supports multiple LLM providers with automatic failover and efficient context management. GitHub - michaelaz774/decision-engine: A decision operating system for startup founders, powered by Claude Code. Synthesizes wisdom from 25+ legendary founders and investors into interactive AI-driven decision frameworks. GitHub - Chrilleweb/dotenv-diff: Validate environment variable usage in your codebase GitHub - Lumen-Labs/brainapi2: BrainAPI is a knowledge graph–powered AI memory layer that transforms unstructured data into structured knowledge, enabling intelligent search, recommendations, and contextual memory for AI agents and applications. GitHub - familiar-software/familiar: Let AI watch you work. Familiar lets your AI update its memory, skills, and knowledge by watching your screen. GitHub - skorotkiewicz/rudo: A small, elegant dock for Wayland GitHub - muxshed/shed: One stream in, or many. Every destination, simultaneously. No cloud middleman, no per-channel fees, no limits. make sidebar/address bar rounded corner toggleable
GitHub - coherentforge/CambiOS: Zero-trust, capability-based Rust microkernel targeting formal verification. Tri-arch (x86_64 / AArch64 / RISC-V). Sovereign and generative: no telemetry, user owns keys and data. Early-stage — see STATUS.md. Inspired by seL4, Hubris, and Redox.
jasonricca · 2026-06-11 · via Show HN

A secure bridge from human consciousness to the electron.

That's the dream. We're building a stack that doesn't add to the problem, on hardware that still has the problem, for people who understand what that means. CambiOS is a general-purpose operating system built on a verification-ready microkernel written in Rust. Every process is isolated, every binary is verified before it runs, every IPC message carries an unforgeable cryptographic identity, and nothing in the stack phones home. It targets x86_64, AArch64, and RISC-V (riscv64gc), boots in QEMU on all three, and is designed to eventually run on sovereign silicon. This is an ambitious project, bordering on audacious, but it might be something the world needs now more than ever.


There are two essential problems with modern operating systems. The first we're fixing here. The second is on a longer arc.

The Software Problem

It's an open secret. Modern operating systems — Windows, macOS, Linux — are inherently leaky, buggy, and/or insecure. They were designed for a world that no longer exists: one where vendors are trustworthy, your identity comes from "someone else," a password is adequate to protect it, and code was trusted to swim in one vast pool with no lanes or lifeguards. Every telemetry scandal, every ransomware story, every "a kernel extension crashed my laptop" moment traces back to one of those assumptions. Zero-day exploits come alive here, where memory safety really isn't, privilege equals access, and every attack is an escalation.

CambiOS rejects this, fundamentally, at the design level. Rust itself closes entire classes of memory bugs. The kernel (the "pool") is very small. Drivers and services run isolated in user-space — a crash here is more a hiccup than a blue screen of death. Every process has a cryptographic identity. Every binary is verified before it runs. Every IPC message carries an unforgeable sender. There are no privileges to escalate — no capabilities are given without established credentials. Nothing phones home. This is 99% of what's wrong with modern operating systems — and it's fixable today, in software, without waiting for anyone.

The Hardware Problem

Below all of that sits silicon with coprocessors you don't own. On Intel, the Management Engine: its own processor, its own network stack, its own private keys, DMA access to main memory, running whether the machine is "on" or just plugged in. AMD ships the Platform Security Processor. ARM ships TrustZone. This is documented hardware design, not conspiracy.

CambiOS cannot neutralize those coprocessors. No software can. The long-term answer is open hardware all the way down, and we are building toward it. Until then, most people are running on x86 or ARM, and they deserve a software stack that does not add to the problem. In the not too distant future, our goal is an open architecture from silicon through software. A future where CambiOS runs on top of CamBIOS open source firmware — including the boot path and TPM. Until that day, we close the holes we can.


Status

CambiOS boots to preemptive SMP multitasking on all three target architectures under QEMU. The security model — cryptographic identity, signed-binary verification, capability-checked IPC, content-addressed object store — is implemented and exercised end-to-end. Static analysis and fuzzing are active; formal verification is the destination.

STATUS.md is the canonical account of what is built, in progress, and planned, including phase markers, per-subsystem status, and known issues. Run make stats for current syscall, test, and LOC counts (those numbers live in the source, not in prose).


Building

Host: macOS (Apple Silicon). Kernel binaries run only under QEMU or on bare-metal target hardware — never on the host.

Prerequisites:

  • Rust nightly (pinned in rust-toolchain.toml)
  • Targets: x86_64-unknown-none, aarch64-unknown-none, riscv64gc-unknown-none-elf
  • QEMU (Homebrew)
  • mtools (AArch64 FAT disk images)
  • Limine is auto-cloned; OpenSBI ships with QEMU as -bios default for RISC-V
# Unit tests (host macOS)
RUST_MIN_STACK=8388608 cargo test --lib --target x86_64-apple-darwin

# Tri-architecture regression gate — REQUIRED before any commit
make check-all              # x86_64 + aarch64 + riscv64

# Run in QEMU
make run                    # x86_64
make img-aarch64 && make run-aarch64
make run-riscv64

# Derived counts (syscalls, tests, LOC)
make stats

# Sign a boot module (YubiKey-backed; --seed <hex> for CI without hardware)
./tools/sign-elf/target/aarch64-apple-darwin/release/sign-elf <elf-file>

The full build / test / lint commands and their rationale live in CLAUDE.md. If a command above drifts, CLAUDE.md is authoritative.


Architecture

CambiOS starts with a microkernel. This foundation handles five things: scheduling, memory management, IPC, syscall dispatch, and cryptographic identity. Filesystems, networking, device drivers, window management, and every other service run as isolated user-space processes communicating over capability-checked IPC.

This is structural isolation, rather than policy. A buggy filesystem service cannot corrupt the kernel. A compromised network driver cannot read another process's memory. A malicious module cannot forge the identity of a peer.

Enforcement pipeline

Every piece of code that runs on CambiOS passes through the same sequence of checks, with no bypass:

ELF binary arrives
    → BinaryVerifier: W^X, entry validation, overlap detection, Ed25519 signature
    → IPC send:  capability check, interceptor hook, sender_principal stamp
    → IPC recv:  capability check, interceptor hook
    → Syscall pre-dispatch: interceptor hook before handler
    → ObjectStore: ownership enforced on get / put / delete

The three interceptor hooks collapse into one trait that an out-of-kernel policy service can drive — see ADR-002.

Identity

Every process is bound to a Principal: a 32-byte Ed25519 public key. The kernel stamps the sender's Principal onto every IPC message. It cannot be forged — user-space code never has the opportunity to write that field. Receivers enforce ownership, access control, and audit on the stamped identity rather than on sender claims.

The bootstrap Principal derives from a compiled-in YubiKey public key. No private key ever lives in kernel memory. Quantum-resistant signatures are planned.

Full model: docs/identity.md, ADR-003.

IPC

Two paths, chosen by workload shape:

  • Control path — fixed-size (256-byte) messages, capability-gated, sharded per endpoint. Predictable for verification; used for commands, replies, and small events.
  • Bulk data path — shared-memory channels with MMU-enforced producer / consumer / bidirectional roles. Creator names the peer Principal; the kernel verifies identity on attach. Used for video frames, file payloads, and any workload where 256 bytes does not fit.

See ADR-005.

Lock ordering and memory layout

Strict lock hierarchy, no exceptions, documented and enforced in source. Every unsafe block carries a // SAFETY: comment. The canonical hierarchy and memory-layout tables live in CLAUDE.md § Lock Ordering and are intentionally not duplicated here — they drift.


Boot Sequence

All three architectures share the same high-level sequence:

  1. Firmware / bootloader loads the kernel ELF and hands over a memory description.
  2. Early MMU and exception-vector setup, heap and frame allocator initialization.
  3. Interrupt controller + timer + per-CPU data structures.
  4. IPC manager, capability manager, zero-trust interceptor.
  5. Bootstrap Principal built from the compiled-in YubiKey public key.
  6. Kernel object tables sized from detected memory and the active tier policy (ADR-008).
  7. Signed ELF boot modules verified and loaded, one per entry in BOOT_MODULE_ORDER.
  8. AP cores come online with per-CPU scheduler state.
  9. Preemptive SMP scheduling begins.

Where the architectures differ:

  • x86_64 / AArch64 boot via Limine (version pinned in the Makefile). x86_64 also parses ACPI + programs the I/O APIC + calibrates the APIC timer via the PIT. AArch64 widens TCR_EL1.T1SZ and maps device MMIO (PL011, GIC) into TTBR1, then initializes GICv3 and the ARM Generic Timer.
  • RISC-V boots via OpenSBI in M-mode, which hands a DTB pointer to a custom S-mode stub in src/boot/riscv.rs. Timer and IPI go through SBI calls; external interrupts arrive via PLIC. No Limine — see ADR-013.

The narrative walkthrough of what actually happens during boot, including the bootstrap paradoxes, is Manual 01: Waking Up.


Project Structure

src/
├── microkernel/main.rs      # Kernel entry, subsystem init sequence
├── arch/                    # Per-architecture backends
│   ├── x86_64/              #   GDT, APIC, SYSCALL/SYSRET, I/O APIC, TLB IPI, SMP
│   ├── aarch64/             #   GICv3, ARM Generic Timer, SVC, TLBI, EL0/EL1
│   └── riscv64/             #   PLIC, SBI timer/IPI, ecall dispatch, Sv48 paging
├── boot/                    # Bootloader-abstracted BootInfo (Limine / OpenSBI adapters)
├── scheduler/               # Priority-band preemptive SMP scheduler (portable)
├── ipc/                     # Capability-based IPC, Principal, channels, interceptor
├── syscalls/                # Syscall dispatch and handlers (list: `make stats`)
├── memory/                  # Frame allocator, buddy allocator, page tables, object tables
├── fs/                      # CambiObject, ObjectStore, Blake3, Ed25519, persistent disk store
├── loader/                  # ELF loader, BinaryVerifier, SignedBinaryVerifier
├── pci/                     # PCI bus scan, device table, BAR decoding
├── audit/                   # Lock-free per-CPU audit buffers + global drain ring
└── config/                  # Tier policy (compile-time deployment-tier selection)

user/                        # User-space services — each one is an isolated boot module
├── libsys/                  # Syscall wrapper library (the only unsafe user-space crate)
├── libfs-proto/ libgui-proto/ libscanout/ libterm/ libflag/   # Service-protocol libraries
├── fs-service/              # Content-addressed object store front-end
├── key-store-service/       # Ed25519 signing service (bootstrap-key holder)
├── policy-service/          # Out-of-kernel policy decisions via interceptor hook
├── virtio-{net,blk}/ i219-net/ udp-stack/ dhcp-client/   # Network + storage drivers / stack
├── compositor/ scanout-{limine,virtio-gpu}/              # Graphics stack (ADR-011/014)
└── shell/                   # Interactive serial shell

tools/sign-elf/              # Host-side ELF signing tool (YubiKey or seed-based)
fuzz/                        # cargo-fuzz targets with shadow-model oracles
docs/                        # Design docs, ADRs, manuals

The authoritative list of what actually builds into the boot image is the BOOT_MODULE_ORDER constant in src/boot_modules.rs and the Makefile's per-target module rules. If the tree above and the Makefile disagree, the Makefile wins.


Contributing

CambiOS is looking for people who understand what's at stake — OS internals, compiler infrastructure, hardware security, ML systems, formal methods. The foundation is real. The work ahead is larger than any one person should do alone.

Before you write code:

  1. Read CLAUDE.md. It is the kernel's technical reference and the contract for how changes get made — conventions, lock ordering, per-subsystem required reading, post-change review protocol. Every non-trivial PR is judged against it.
  2. Read the ADRs for the subsystem you are about to touch. The required-reading map in CLAUDE.md names them.
  3. Check STATUS.md to confirm the work is not already in progress in another phase.

One-time setup (per clone):

Points core.hooksPath at the tracked .githooks/ directory so the pre-commit hook fires on every git commit. The hook enforces banned-paths (files deleted from git must not reappear on disk) and STATUS.md commit-isolation (structural rewrites commit alone). Updates to the hook propagate via git pull — no re-install needed.

Working rules:

  • Tri-architecture regression gate is mandatory. make check-all must pass before any commit — no commit may regress x86_64, aarch64, or riscv64. See ADR-013 § Tri-Architecture Regression Discipline.
  • Commits are PGP-signed. The repo enforces signing at the Git level; unsigned commits will not land.
  • Every unsafe block needs a // SAFETY: comment explaining the invariants that make the operation sound.
  • No panics, unwraps, or expects in kernel code. Every failure is a typed Result.
  • No dynamic dispatch in kernel hot paths. Monomorphized generics only — verifiers cannot reason about trait objects.
  • Design changes warrant an ADR. A new decision or a divergence from an existing ADR is captured in docs/adr/ before or alongside the code change, not after. make check-adrs verifies cross-references.

The full catalog of conventions (numeric-bound discipline, deferral discipline, unsafe minimization, documentation-sync expectations) lives in CLAUDE.md § Development Conventions.


Manuals

Narrative walkthroughs that follow a concrete thing through the system, useful if you are new to the codebase and want the why before the what:


Design Documents

Architecture Decision Records live under docs/adr/. The current set, with titles and status, is auto-generated in docs/adr/INDEX.md by make check-adrs — treat that as authoritative rather than any enumeration in prose (which drifts).


Licensing

CambiOS is dual-licensed.

  • Kernel, services, host tools, and first-party applications: AGPLv3-or-later. Modifications, derivatives, and network-service uses must stay open under AGPL. The "generative, not extractive" posture enforced by a license that keeps the stack visible and the contributions open.
  • User-space syscall library (user/libsys/): MPL-2.0. File-level copyleft — modifications to libsys must stay open, but applications that link libsys are free to ship under any license the application author chooses. Permits proprietary third-party apps on CambiOS without forcing the kernel or services into permissive territory.

Every source file carries an SPDX-License-Identifier: header. Per-crate license fields are set in each Cargo.toml. The bucketing is mechanical: files under user/libsys/ are MPL-2.0; everything else is AGPL-3.0-or-later.

The kernel only loads signed modules. Users control their own trust chain: add signing keys, remove the default, replace it entirely. It's their machine.

Anyone can fork the code — the license permits it. The name CambiOS belongs to the distribution whose security model is intact. Code enforcement is technical; naming enforcement is legal.

CAMBIOS™ is a trademark of Oakland Heritage Builders Inc. Coherent Forge is a reserved corporate name (Delaware).


References


No telemetry. No analytics. No management engine. No compromises on the things that matter.