Select Application Manual
Switch operational guides between Sino Mobile (Android 23 Modules) and Sino Desktop (Windows Modules) target environments.
Android Operational Guide
Comprehensive in-depth manual for Sino for Android (23 Modules).
Dashboard & OmniMirror Library
UI & Instant Loading
For Everyone
Main vault interface displaying your encrypted media library and real-time sync status. Powered by IronCore hardware keys and instant cold-boot snapshots.
Technical Details
The library is a BlindSight FTS4-indexed SQLCipher database utilizing Double-Lock protection (Field-Level Encryption + Whole-File Encryption). Access is gated by IronCore hardware key wrapping (TEE/StrongBox). Vault telemetry is cached in an AES-256-GCM encrypted snapshot, enabling instant UI rendering prior to database mounting.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| OmniMirror Badges | [M][G][S] indicators highlight which cloud targets (MEGA, Google Drive, S3) hold redundant copies. |
| Vault Monitor | Glanceable safety score displaying average redundancy across your OmniMirror RAID array. |
| Synced Badge | Confirms that your global vault snapshot is synchronized across all active cloud targets. |
| Sync Now | Triggers an immediate heartbeat scan across all attached local sync roots. |
BlindSight Indexing & Search
Volatile RAM Decryption
For Everyone
High-performance forensic searching across large encrypted libraries without revealing plaintext metadata to disk or cloud.
Technical Details
Utilizes SQLite FTS4 enhanced with BlindSight Indexing (HMAC-SHA256) for exact match filtering over Obscura Tree encrypted paths. Search remains 100% local and zero-knowledge.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Search Bar | Filter filenames or extensions instantly across the encrypted library index. |
| Conflicts Only | Specialized view isolating files with OmniMirror sync mismatches or cloud transport errors. |
| Clear (X) | Resets search queries and returns to the standard library view. |
Vault Viewer & VolatileStream
Sync Engine & WorkManager
For Everyone
Zero-disk media streaming pipeline for viewing photos and 4K videos directly from encrypted storage.
Technical Details
Powered by VolatileStream and AegisStream (1MB Chunked Streaming with AES-256-GCM counter nonces). Decrypts ranges directly into RAM buffers on-the-fly and immediately zeros memory via SecurityUtils on exit.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Back Arrow | Closes the viewer and immediately purges all volatile stream buffers in RAM. |
| Restore Icon | Decrypts and exports the current file to your local device gallery. |
| Retry | Re-establishes range-request streams if network drops occur. |
Smart Sync & Sino OrbitMesh
Multi-Cloud Array
For Everyone
Ensures seamless background synchronization across your Sino OrbitMesh device network without battery drain.
Technical Details
Synchronizes encrypted media and app preferences across devices via Core Settings Engine. Containers are compressed and signed with Authenticated v2 headers. Operates under WorkManager constraints (UNMETERED, PowerConnected).
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Backup Settings | In Cloud Hub, mirror your app configuration to all active OmniMirror cloud targets. |
| Wi-Fi Only | Restricts heavy background sync operations to unmetered Wi-Fi connections. |
| Charging Only | Suspends background sync until the device is connected to power. |
| Scrub Metadata | Strips sensitive EXIF telemetry (GPS, camera info) prior to encryption. |
| Transcoding | Select between Original, Storage Saver (HEVC), or Max Compression profiles. |
Elite Cloud Hub & OmniMirror
Local-to-Cloud Mapping
For Everyone
Centralized management console for your multi-cloud OmniMirror array and snapshot recovery state.
Technical Details
Synchronously mirrors critical security artifacts (public salt, RMK backup, salt backup) and vault snapshots across all active cloud targets (MEGA, Google Drive, S3). Features an Intelligent RAID Consensus Card and FORCE RE-MIRROR action.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| RAID Telemetry | Real-time consensus health check for your cloud targets with individual provider storage metrics. |
| Push State | Archive your entire vault index to all OmniMirror targets as a signed hardware snapshot. |
| FORCE RE-MIRROR | Force-syncs missing security artifacts and snapshot state across all cloud providers. |
| Instant Restore | Reconstruct your local library index from a cloud snapshot in seconds. |
| Wipe Cloud | Global command to purge all Sino vault data from every connected cloud target. |
Obscura Tree & Sync Roots
Enterprise S3 Engine
For Everyone
Dynamic local folder mounting with Obscura Tree directory path obfuscation.
Technical Details
Allows users to attach arbitrary local directories as Sync Roots. Cloud path structures are anonymized using Obscura Tree (Salted HMAC-SHA256 with 16-character truncation) for client-side cloud path obfuscation.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Add Folder | Use system directory picker to add a new sync root to the vault. |
| Cloud Tiering | Assign specific cloud providers to a directory via the Layers interface. |
| Scan Now | Force an immediate recursive scan of a specific local sync root. |
| Remove | Removes sync root mapping without deleting cloud backups. |
Elite S3 RAID Registry
Storage & Redundancy Engine
For Everyone
Connect multiple S3-compatible buckets (AWS, Cloudflare R2, Backblaze B2) for enterprise redundancy.
Technical Details
Implements AWS Signature V4 with SHA-256 signing. Supports granular profile removal via removeProfile(profileId) without affecting other active S3 buckets. Metadata is protected by Authenticated v2 Containers.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Add Bucket | Configure a new aliased S3 target using access keys and custom endpoints. |
| Virtual-Host | Toggle between Path-style and modern Host-style URL structures. |
| Granular Tiering | Assign specific local sync roots to target S3 buckets. |
| Remove Profile | Disconnect an individual S3 profile without affecting other connected S3 stores. |
RAID-Aware Cleanup
OS Integration & Virtual Drive
For Everyone
Safely free up device storage without risking data loss across your zero-trust vault.
Technical Details
Performs a Deep RAID Audit before proposing local file deletion. Local files are only eligible for purging if verified as COMPLETED on 100% of active OmniMirror cloud targets.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| RAID Verified | Safety badge confirming full cloud redundancy across all connected targets. |
| Delete Local | Removes unencrypted local copies after OmniMirror cloud safety is confirmed. |
| Footprint Cleanup | In Cloud Hub, manage Google Drive appDataFolder storage footprint. |
Encrypted Virtual Drive
Universal File Engine
For Everyone
Exposes your SinoVault to the Android OS, enabling third-party apps to access encrypted files securely.
Technical Details
Implements custom Storage Access Framework (SAF) DocumentsProvider with AegisStream self-seeking logic. Decrypts data into volatile RAM streams authenticated per packet.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Enable SAF | Toggle in Settings to expose 'SinoVault' in the system Files picker. |
| Unlock-on-Demand | Accessing the virtual drive while locked launches an IronCore biometric prompt. |
Universal File Support
Universal File Engine
For Everyone
Back up documents, PDFs, archives, and system files alongside media.
Technical Details
The discovery engine queues non-media types into the encrypted sync pipeline, protected by IronCore AES-256-GCM standards.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Restore | Synced documents can be restored individually or during full library recovery. |
Cloud Trash & Lifecycle
Hardware Cryptography & Keystore
For Everyone
Unified trash management across all connected OmniMirror cloud targets.
Technical Details
Trashing performs a simulated move across the Cloud Hub. Permanent deletion executes a total cloud wipe in parallel across providers with Authenticated v2 forensic commands.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Empty Trash | Permanently destroys all trashed file clones across the cloud array. |
| Folder Wipe | Optionally trashes cloud backups corresponding to a removed local folder. |
| Wipe Audit | Warns if cloud targets are offline prior to permanent deletion. |
| Restore | Moves files back from cloud trash to your active library. |
| Auto-Purge | Automatically purges trash items after 30 days. |
IronCore Hardware Security
Resilience & Self-Healing
For Everyone
Anchors encryption keys in physical hardware security chips (TEE / StrongBox).
Technical Details
Uses IronCore Machine-Bound Sealing, Dual-Key Wrap (Hardware TEE/StrongBox + Argon2id), and zero-string memory sanitization (SecurityUtils.fillZero) on all keys and tokens.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| LatticeGate Passkey | Register biometric passkeys for phrase-less authentication. |
| Multi-Identity | Manage distinct cloud identities for MEGA, Google Drive, and S3. |
| Biometric Lock | Require fingerprint authentication for app entry and decryption. |
| Master Pass | Argon2id-derived gatekeeper providing mathematical key fallback. |
QuantumShield & LatticeGate (PQC v1)
Post-Quantum Cryptography (NIST FIPS 203 & 204)
For Everyone
Protects your vault against quantum computing threats using NIST FIPS 203 & 204 post-quantum standards.
Technical Details
Engineered with QuantumShield ML-KEM-768 key encapsulation (FIPS 203), ML-DSA-65 digital signatures (FIPS 204), and LatticeGate passkey envelopes. Supports InstantSever device revocation with nuclear self-destruct protection.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Authorized Devices | Manage active QuantumShield enrolled devices. |
| InstantSever Revocation | Revoke a lost or compromised device. Revoked devices automatically trigger Terminus Protocol on detection. |
| Vault Auto-Migration | Legacy manifests auto-upgrade to QuantumShield headers on sync. |
RAID Resilience Testing
Resilience & Consistency Audit
For Everyone
Measure reliability and self-healing effectiveness of your OmniMirror cloud array.
Technical Details
The RAID Stress Manager simulates large sync batches with injected network flakiness. It executes multiple healing cycles to rigorously verify the orchestrator's ability to maintain OmniMirror eventual consistency.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Stress Test | Run a live simulation in Settings to verify your RAID engine's mathematical health. |
| Reliability Score | The percentage of successful sync targets achieved after healing passes. |
Stealth Mode (Calculator)
Stealth & Disguise Protocol
For Everyone
Disguises the Sino Privacy Engine as a fully functional Calculator utility.
Technical Details
Identifies to the OS as a system calculator. Unlocks only when entering a secret salted-hash sequence anchored to IronCore entropy.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Enable Stealth | Activate calculator disguise in Settings. |
| Unlock Code | Secret sequence that morphs the calculator back into the Sino vault. |
PhantomVault (Duress Decoy)
Plausible Deniability & Decoy Vault
For Everyone
Decoy vault safety mechanism that opens a believable fake library under forced entry.
Technical Details
Uses an isDuress flag for complete forensic isolation. Entering the PhantomVault password generates a separate hardware session showing only decoy files.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Setup PhantomVault | Create a secondary duress password in Settings to launch the decoy vault. |
IronSeed & Offline Recovery
Vault Recovery & Snapshot Engine
For Everyone
100% offline BIP-39 recovery using your 24-word IronSeed recovery mnemonic.
Technical Details
Implements restoreRMK for offline key derivation in <100ms without network connectivity. Uses zero-string character comparisons (isValidWord) to prevent transient string allocations in memory.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| IronSeed Recovery | Reconstruct your vault offline using your 24-word phrase. |
| Switch Vault | Mount archived cloud backups (SinoVault_Backup_*) safely. |
| Verify-Then-Commit | Verifies IronSeed validity before committing local state transitions. |
Terminus Protocol (Nuclear Panic)
Emergency Forensic Purge
For Everyone
Emergency wipe protocol to instantly destroy local vault data and hardware keys.
Technical Details
Executes a deterministic 5-step destruction: 1. RAM key sanitization. 2. SQLCipher + FLE database destruction. 3. IronCore hardware key purge. 4. App preferences & token wipe. 5. Process termination.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Terminus Widget | Place the emergency 1x1 widget on your home screen for instant execution. |
Sino Bridge & Legacy Handover
Legacy Succession & Handover
For Everyone
Link identities to trusted beneficiaries for secure automated or manual vault handover.
Technical Details
Uses RSA-2048 asymmetric encryption to generate Legacy Wrappers. Dead Man's Switch monitors user activity; exceeding inactivity thresholds triggers the handover cloud beacon.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Add Beneficiary | Link beneficiaries via QR scan, NFC tap, or bridge link. |
| Readiness Guide | Step-by-step instructions for cloud account preparation. |
| Inactivity Threshold | Configure automated trigger delay from 1 to 12 months. |
| Manual Handover | Trigger the handover beacon immediately with a single tap. |
Dead Man's Switch
Automated Handover Trigger
For Everyone
Automated vault handover if device activity ceases for an extended duration.
Technical Details
A periodic background pulse monitors user activity. Exceeding threshold triggers the handover cloud beacon via Authenticated v2 commands.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Inactivity Delay | Configure automated trigger delay from 1 to 12 months. |
| Status HUD | Inspect Legacy screen for beacon health and remaining days countdown. |
Hierarchical Restoration
Data Recovery & Gallery Export
For Everyone
Surgical control over file restoration in SECURE or PUBLIC modes.
Technical Details
SECURE mode uses secondary device encryption isolated from other apps. PUBLIC mode exports decrypted files to system storage. All SECURE files are purged during Lock or Terminus Protocol.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| SECURE Mode | Restores files to a double-encrypted private sandbox. |
| PUBLIC Mode | Exports decrypted files directly to system Gallery/Downloads. |
| Single Restore | Use the download icon in the Vault Viewer or Dashboard selection mode. |
| Folder Restore | Use the download icon in Folder Settings to recover a specific sync root. |
| Purge Cache | Manually purge local secure clones in Settings. |
Privacy Logs
Forensic & Operational Logs
For Everyone
Local-only diagnostic log engine with automated single-pass regex sanitization.
Technical Details
SinoPrivacyEngine masks file paths, emails, and keys using named capturing groups (?<label>pattern).
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| View Logs | Inspect sanitized background activity and error reports. |
| Export Logs | Share sanitized logs safely. |
| Clear Logs | Purge diagnostic logs from local storage. |
Strict 2FA Mode (Paranoid)
Maximum Security & Ephemeral Session
For Everyone
Maximum security mode preventing 2FA seeds from touching storage.
Technical Details
Prohibits TOTP seed persistence in the vault. Enforces manual MFA entry ceremonies during login.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Strict Toggle | Enable in Settings -> Access Management. |
| MFA Ceremony | Prompt for manual entry of authenticator code during authentication. |
| Health Monitor | Receive system notifications when your cloud session expires and requires a manual re-auth. |
| Paranoid Setup | Toggle Strict Mode during the initial Setup Wizard to ensure seeds are never persisted. |
Desktop Operational Guide
Compose Multiplatform guide for Windows 10/11 (24 Modules).
Dashboard & OmniMirror Library
UI & Cold Boot Engine
For Everyone
Main desktop view displaying your encrypted media library and real-time sync status. Powered by IronCore TPM 2.0 hardware keys and instant cold-boot snapshots.
Technical Details
The library is a BlindSight FTS4-indexed native SqlcipherDriver database utilizing Field-Level Encryption (FLE). Access is gated by IronCore hardware key wrapping (TPM 2.0). Vault telemetry is cached in an AES-256-GCM encrypted snapshot, enabling instant cold-boot UI rendering prior to database mounting.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| OmniMirror Badges | [M][G][S] indicators highlight which cloud targets (MEGA, Google Drive, S3) hold redundant copies. |
| Vault Monitor | Glanceable safety score displaying average redundancy across your OmniMirror RAID array. |
| Sync Now | Triggers an immediate heartbeat scan across all attached local sync roots. |
| More Vert (⋮) | Access advanced file actions: Restore, Trash, or Permanent Delete. |
BlindSight Indexing & Search
UI & Forensic Filtering
For Everyone
High-performance searching for navigating large encrypted libraries on your PC without exposing metadata.
Technical Details
Utilizes SQLite FTS4 combined with BlindSight Indexing (HMAC-SHA256) for exact match filtering over Obscura Tree encrypted paths. Search remains 100% local and zero-knowledge.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Search Bar | Filter filenames or extensions instantly across the encrypted library index. |
| Conflicts Only | Specialized view isolating files with OmniMirror sync mismatches or cloud transport errors. |
| Clear (X) | Resets search queries and returns to the standard library view. |
Vault Viewer & VolatileStream
Volatile RAM Streaming
For Everyone
Zero-disk media streaming pipeline for viewing photos and videos without saving decrypted files to hard drive.
Technical Details
Powered by VolatileStream and AegisStream (1MB Chunked Streaming with AES-256-GCM counter nonces). Range requests are decrypted directly into RAM buffers on-the-fly. Native streaming integrates with the S:\ virtual drive bridge.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Close Viewer | Immediately closes the HUD and physically zeros out decryption buffers in RAM. |
| Restore | Decrypts and exports the current file to your designated Downloads folder. |
| Stream Natively | Launch your favorite Windows media player using the S:\ virtual drive bridge. |
Smart Sync & Constraints
Windows Background Constraints
For Everyone
Ensures your files are continuously backed up while respecting PC hardware constraints.
Technical Details
Utilizes JNA bridges to Windows Kernel32 for real-time power and network cost reporting. Background heartbeat monitors trigger sync only when constraints are satisfied. Preferences mirror via Authenticated v2 Containers.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Wi-Fi Only | Restricts heavy background sync operations to unmetered connections. |
| Charging Only | Suspends background sync tasks unless connected to power. |
| Scrub Metadata | Strips sensitive EXIF telemetry (GPS, camera info) prior to encryption. |
Elite Cloud Hub & OmniMirror
Multi-Cloud Mirroring
For Everyone
Centralized management console for your multi-cloud OmniMirror array and snapshot recovery state.
Technical Details
Synchronously mirrors critical security artifacts (public salt, RMK backup, salt backup) and vault snapshots across all active cloud targets (MEGA, Google Drive, S3). Features an Intelligent RAID Consensus Card and FORCE RE-MIRROR action.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| RAID Telemetry | Real-time consensus health check for your cloud targets with individual provider storage metrics. |
| Push State | Archive your entire vault index to all OmniMirror targets as a signed snapshot. |
| FORCE RE-MIRROR | Force-syncs missing security artifacts and snapshot state across all cloud providers. |
| Instant Restore | Reconstruct your local library index from a cloud snapshot in seconds. |
| Purge Cloud | Global command to purge all Sino vault data from every connected cloud target. |
Elite S3 RAID Registry
Enterprise S3 Protocol
For Everyone
Connect multiple S3-compatible buckets (AWS, Cloudflare R2, Backblaze B2) for enterprise redundancy.
Technical Details
Implements AWS Signature V4 with SHA-256 signing. Supports granular profile removal via removeProfile(profileId) without affecting other active S3 buckets. Metadata is protected by Authenticated v2 Containers.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Add Bucket | Configure a new aliased S3 target using access keys and custom endpoints. |
| Virtual-Host | Toggle between Path-style and modern Host-style URL structures. |
| Auto-Region | Sino automatically detects and corrects bucket region settings. |
| Remove Profile | Disconnect an individual S3 profile without affecting other connected S3 stores. |
Obscura Tree & Sync Roots
Local Directory Mapping
For Everyone
Manage multiple local sync roots with Obscura Tree directory path obfuscation on PC.
Technical Details
Allows users to attach arbitrary local directories as Sync Roots. Cloud path structures are anonymized using Obscura Tree (Salted HMAC-SHA256 with 16-character truncation) for client-side cloud path obfuscation.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Add Sync Root | Opens native Windows folder picker to add a new sync directory. |
| Cloud Tiering | Assign specific cloud providers to a directory via the Layers interface. |
| Scan Now | Force an immediate recursive scan of a specific local sync root. |
| Delete Icon | Removes sync root mapping without deleting cloud backups. |
Universal File Support
Universal File Engine
For Everyone
Back up documents, PDFs, archives, and system files alongside media on PC.
Technical Details
The discovery engine queues non-media types into the encrypted sync pipeline, protected by IronCore AES-256-GCM standards.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Restore | Synced documents can be restored individually or during full library recovery. |
Stealth Mode (Calculator)
Stealth & Disguise Protocol
For Everyone
Disguises the Sino Privacy Engine as a fully functional Windows Calculator.
Technical Details
Identifies to Windows as a system calculator. Unlocks only when entering a secret salted-hash sequence anchored to IronCore entropy.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Enable Stealth | Activate calculator disguise in Settings. |
| Unlock Code | Secret sequence that morphs the calculator back into the Sino vault. |
Cloud Trash & Lifecycle
Disposal & Zero-Trace Hygiene
For Everyone
Unified trash management across all connected OmniMirror cloud targets.
Technical Details
Trashing performs a simulated move across the Cloud Hub. Permanent deletion executes a total cloud wipe in parallel across providers with Authenticated v2 forensic commands.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Empty Trash | Permanently destroys all trashed file clones across the cloud array. |
| Restore | Moves files back from cloud trash to active library. |
| Wipe Report | Technical audit showing which cloud targets are online for the deletion ceremony. |
| Delete Forever | Physical destruction of a single file and all its RAID clones. |
QuantumShield & LatticeGate (PQC v1)
Post-Quantum Cryptography (NIST FIPS 203 & 204)
For Everyone
Protects your vault against quantum computing threats using NIST FIPS 203 & 204 post-quantum standards.
Technical Details
Engineered with QuantumShield ML-KEM-768 key encapsulation (FIPS 203), ML-DSA-65 digital signatures (FIPS 204), and LatticeGate passkey envelopes. Supports InstantSever device revocation with nuclear self-destruct protection.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Authorized Devices | Manage active QuantumShield enrolled devices in Cloud Hub. |
| InstantSever Revocation | Revoke a lost or compromised device. Revoked devices automatically trigger Terminus Protocol on detection. |
| Vault Auto-Migration | Legacy manifests auto-upgrade to QuantumShield headers on sync. |
Encrypted Virtual Drive (S:\ Dokany)
Windows Virtual Drive (Dokany)
For Everyone
Mounts your SinoVault as a native Windows drive (S:\), enabling any PC app to access encrypted files.
Technical Details
Powered by Dokany v2 with AegisStream self-seeking logic and counter nonces. Data is decrypted on-demand directly in RAM. Secured by Windows Hello biometrics.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Mount Drive | In Settings, toggle to expose 'SinoVault (S:)' in Windows File Explorer. |
| Unlock-on-Demand | Triggers biometric authentication when accessing the virtual drive while locked. |
IronCore Hardware Security & Identity
Hardware Cryptography (TPM 2.0)
For Everyone
Anchors encryption keys in physical PC hardware security chips (TPM 2.0).
Technical Details
Uses IronCore Machine-Bound Sealing, Registry Consensus (Anti-Hijack), Dual-Key Wrap (TPM 2.0 + Argon2id), and zero-string memory sanitization on all keys.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Windows Hello | Register device biometrics for phrase-less authentication. |
| Master Pass | Argon2id-derived gatekeeper providing mathematical key fallback. |
| TPM Check | Inspect Hardware Security screen to verify Master Key physical protection status. |
Dead Man's Switch
Automated Handover Trigger
For Everyone
Automated vault handover if PC activity ceases for an extended duration.
Technical Details
Periodic background pulse monitors local user activity. Exceeding threshold triggers the handover cloud beacon via Authenticated v2 commands.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Inactivity Delay | Configure automated trigger delay from 1 month to 1 year. |
| Status HUD | Inspect Legacy screen for beacon health and remaining days countdown. |
RAID Resilience Testing
Resilience & Consistency Audit
For Everyone
Measure reliability and self-healing effectiveness of your OmniMirror cloud array.
Technical Details
RAID Stress Manager simulates large sync batches with injected network flakiness, executing healing passes to verify consistency.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Stress Test | Run live RAID simulation in Settings to verify orchestrator consistency. |
Privacy Logs
Forensic & Operational Logs
For Everyone
Local-only diagnostic log engine with automated single-pass regex sanitization.
Technical Details
SinoPrivacyEngine masks file paths, emails, and keys using named capturing groups (?<label>pattern).
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| View Logs | Inspect sanitized background activity and error reports. |
| Clear Logs | Purge diagnostic logs from local storage. |
Strict 2FA Mode (Paranoid)
Maximum Security & Ephemeral Session
For Everyone
Maximum security mode preventing 2FA seeds from touching storage.
Technical Details
Prohibits TOTP seed persistence in the vault. Enforces manual MFA entry ceremonies during login.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Strict Toggle | Enable in Settings -> Access Management. |
Forensic Restoration
Data Recovery & Export Engine
For Everyone
Surgical control over file restoration in SECURE or PUBLIC modes on Windows.
Technical Details
SECURE mode uses secondary device encryption isolated from other apps. PUBLIC mode exports decrypted files to Downloads. All SECURE files are purged during Lock or Terminus Protocol.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| SECURE | Decrypts to a hidden, double-encrypted root isolated for private viewing. |
| PUBLIC | Exports unencrypted files to Downloads folder. |
| Purge Cache | Manually destroy local secure clones in Settings. |
Terminus Protocol (Nuclear Panic)
Emergency Destruction Protocol
For Everyone
Emergency wipe protocol to instantly destroy local vault data and hardware keys.
Technical Details
Executes deterministic 5-step destruction: 1. RAM key sanitization. 2. Native database destruction. 3. TPM key purge. 4. Preference & Registry consensus wipe. 5. Process termination.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Panic Button | Located at the bottom of the navigation rail for immediate execution. |
Sino Bridge & Legacy Handover
Legacy Succession & Handover
For Everyone
Link identities to trusted beneficiaries for secure automated or manual vault handover.
Technical Details
Uses RSA-2048 asymmetric encryption to generate Legacy Wrappers. Identities link via QR-based P2P handshakes.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Add Beneficiary | Link beneficiaries via QR scan or bridge link. |
| Readiness Guide | Step-by-step instructions for cloud account preparation. |
| Legacy Kit | Generate technical instruction set for beneficiary claims. |
RAID-Aware Cleanup
Storage Management & Redundancy Audit
For Everyone
Safely free up hard drive storage without risking data loss across your zero-trust vault.
Technical Details
Performs Deep RAID Audit before proposing local deletion. Local files are only eligible if confirmed as COMPLETED on 100% of active OmniMirror cloud targets.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Cleanup | Located in Settings, manually clear local files already mirrored in the cloud. |
| RAID Verified | State indicating file is safely stored on multiple independent clouds. |
IronSeed & Offline Recovery
Vault Recovery & Snapshot Engine
For Everyone
100% offline BIP-39 recovery using your 24-word IronSeed recovery mnemonic.
Technical Details
Implements restoreRMK for offline key derivation in <100ms without network connectivity. Verifies IronSeed validity before committing local state transitions.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Instant Recovery | Primary option in Setup Wizard to rebuild vault in seconds. |
| Switch Vault | Mount archived cloud backups (SinoVault_Backup_*) safely. |
| Safe Switch | Verification-first logic protecting local data until keys are confirmed. |
| RAID Audit | Analyzes mirrors before recovery to ensure data reachability. |
System Tray & Persistence
Windows Engine & System Tray
For Everyone
Background engine operation on Windows for continuous synchronization.
Technical Details
Minimizes to System Tray. Background heartbeat monitor maintains integrity scans and session health checks when main window is closed.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Show Sino | Restore main dashboard from tray context menu. |
| Lock Vault | Immediately secure app and clear session RAM. |
| Exit | Completely terminate Privacy Engine and background workers. |
Glass & Transparency Effects
Windows Aesthetics & Window Effects
For Everyone
Professional Windows aesthetics with hardware-accelerated transparency.
Technical Details
Supports multiple window transparency modes (Glass, Blur, Opaque) utilizing Compose-Desktop window decorations.
Controls & Buttons
| Control | Behavior / Action |
|---|---|
| Glass/Blur | Toggle aesthetic modes in Hardware Security screen. |
| Opaque | Standard high-contrast mode for maximum legibility. |