Manual Platform Target

Select Application Manual

Switch operational guides between Sino Mobile (Android 23 Modules) and Sino Desktop (Windows Modules) target environments.

Sino Mobile Manual

Android Operational Guide

Comprehensive in-depth manual for Sino for Android (23 Modules).

Dashboard & OmniMirror Library

UI & Instant Loading

For Everyone

Main vault interface displaying your encrypted media library and real-time sync status. Powered by IronCore hardware keys and instant cold-boot snapshots.

Technical Details

The library is a BlindSight FTS4-indexed SQLCipher database utilizing Double-Lock protection (Field-Level Encryption + Whole-File Encryption). Access is gated by IronCore hardware key wrapping (TEE/StrongBox). Vault telemetry is cached in an AES-256-GCM encrypted snapshot, enabling instant UI rendering prior to database mounting.

Controls & Buttons

Control Behavior / Action
OmniMirror Badges [M][G][S] indicators highlight which cloud targets (MEGA, Google Drive, S3) hold redundant copies.
Vault Monitor Glanceable safety score displaying average redundancy across your OmniMirror RAID array.
Synced Badge Confirms that your global vault snapshot is synchronized across all active cloud targets.
Sync Now Triggers an immediate heartbeat scan across all attached local sync roots.

Vault Viewer & VolatileStream

Sync Engine & WorkManager

For Everyone

Zero-disk media streaming pipeline for viewing photos and 4K videos directly from encrypted storage.

Technical Details

Powered by VolatileStream and AegisStream (1MB Chunked Streaming with AES-256-GCM counter nonces). Decrypts ranges directly into RAM buffers on-the-fly and immediately zeros memory via SecurityUtils on exit.

Controls & Buttons

Control Behavior / Action
Back Arrow Closes the viewer and immediately purges all volatile stream buffers in RAM.
Restore Icon Decrypts and exports the current file to your local device gallery.
Retry Re-establishes range-request streams if network drops occur.

Smart Sync & Sino OrbitMesh

Multi-Cloud Array

For Everyone

Ensures seamless background synchronization across your Sino OrbitMesh device network without battery drain.

Technical Details

Synchronizes encrypted media and app preferences across devices via Core Settings Engine. Containers are compressed and signed with Authenticated v2 headers. Operates under WorkManager constraints (UNMETERED, PowerConnected).

Controls & Buttons

Control Behavior / Action
Backup Settings In Cloud Hub, mirror your app configuration to all active OmniMirror cloud targets.
Wi-Fi Only Restricts heavy background sync operations to unmetered Wi-Fi connections.
Charging Only Suspends background sync until the device is connected to power.
Scrub Metadata Strips sensitive EXIF telemetry (GPS, camera info) prior to encryption.
Transcoding Select between Original, Storage Saver (HEVC), or Max Compression profiles.

Elite Cloud Hub & OmniMirror

Local-to-Cloud Mapping

For Everyone

Centralized management console for your multi-cloud OmniMirror array and snapshot recovery state.

Technical Details

Synchronously mirrors critical security artifacts (public salt, RMK backup, salt backup) and vault snapshots across all active cloud targets (MEGA, Google Drive, S3). Features an Intelligent RAID Consensus Card and FORCE RE-MIRROR action.

Controls & Buttons

Control Behavior / Action
RAID Telemetry Real-time consensus health check for your cloud targets with individual provider storage metrics.
Push State Archive your entire vault index to all OmniMirror targets as a signed hardware snapshot.
FORCE RE-MIRROR Force-syncs missing security artifacts and snapshot state across all cloud providers.
Instant Restore Reconstruct your local library index from a cloud snapshot in seconds.
Wipe Cloud Global command to purge all Sino vault data from every connected cloud target.

Obscura Tree & Sync Roots

Enterprise S3 Engine

For Everyone

Dynamic local folder mounting with Obscura Tree directory path obfuscation.

Technical Details

Allows users to attach arbitrary local directories as Sync Roots. Cloud path structures are anonymized using Obscura Tree (Salted HMAC-SHA256 with 16-character truncation) for client-side cloud path obfuscation.

Controls & Buttons

Control Behavior / Action
Add Folder Use system directory picker to add a new sync root to the vault.
Cloud Tiering Assign specific cloud providers to a directory via the Layers interface.
Scan Now Force an immediate recursive scan of a specific local sync root.
Remove Removes sync root mapping without deleting cloud backups.

Elite S3 RAID Registry

Storage & Redundancy Engine

For Everyone

Connect multiple S3-compatible buckets (AWS, Cloudflare R2, Backblaze B2) for enterprise redundancy.

Technical Details

Implements AWS Signature V4 with SHA-256 signing. Supports granular profile removal via removeProfile(profileId) without affecting other active S3 buckets. Metadata is protected by Authenticated v2 Containers.

Controls & Buttons

Control Behavior / Action
Add Bucket Configure a new aliased S3 target using access keys and custom endpoints.
Virtual-Host Toggle between Path-style and modern Host-style URL structures.
Granular Tiering Assign specific local sync roots to target S3 buckets.
Remove Profile Disconnect an individual S3 profile without affecting other connected S3 stores.

RAID-Aware Cleanup

OS Integration & Virtual Drive

For Everyone

Safely free up device storage without risking data loss across your zero-trust vault.

Technical Details

Performs a Deep RAID Audit before proposing local file deletion. Local files are only eligible for purging if verified as COMPLETED on 100% of active OmniMirror cloud targets.

Controls & Buttons

Control Behavior / Action
RAID Verified Safety badge confirming full cloud redundancy across all connected targets.
Delete Local Removes unencrypted local copies after OmniMirror cloud safety is confirmed.
Footprint Cleanup In Cloud Hub, manage Google Drive appDataFolder storage footprint.

Encrypted Virtual Drive

Universal File Engine

For Everyone

Exposes your SinoVault to the Android OS, enabling third-party apps to access encrypted files securely.

Technical Details

Implements custom Storage Access Framework (SAF) DocumentsProvider with AegisStream self-seeking logic. Decrypts data into volatile RAM streams authenticated per packet.

Controls & Buttons

Control Behavior / Action
Enable SAF Toggle in Settings to expose 'SinoVault' in the system Files picker.
Unlock-on-Demand Accessing the virtual drive while locked launches an IronCore biometric prompt.

Universal File Support

Universal File Engine

For Everyone

Back up documents, PDFs, archives, and system files alongside media.

Technical Details

The discovery engine queues non-media types into the encrypted sync pipeline, protected by IronCore AES-256-GCM standards.

Controls & Buttons

Control Behavior / Action
Restore Synced documents can be restored individually or during full library recovery.

Cloud Trash & Lifecycle

Hardware Cryptography & Keystore

For Everyone

Unified trash management across all connected OmniMirror cloud targets.

Technical Details

Trashing performs a simulated move across the Cloud Hub. Permanent deletion executes a total cloud wipe in parallel across providers with Authenticated v2 forensic commands.

Controls & Buttons

Control Behavior / Action
Empty Trash Permanently destroys all trashed file clones across the cloud array.
Folder Wipe Optionally trashes cloud backups corresponding to a removed local folder.
Wipe Audit Warns if cloud targets are offline prior to permanent deletion.
Restore Moves files back from cloud trash to your active library.
Auto-Purge Automatically purges trash items after 30 days.

IronCore Hardware Security

Resilience & Self-Healing

For Everyone

Anchors encryption keys in physical hardware security chips (TEE / StrongBox).

Technical Details

Uses IronCore Machine-Bound Sealing, Dual-Key Wrap (Hardware TEE/StrongBox + Argon2id), and zero-string memory sanitization (SecurityUtils.fillZero) on all keys and tokens.

Controls & Buttons

Control Behavior / Action
LatticeGate Passkey Register biometric passkeys for phrase-less authentication.
Multi-Identity Manage distinct cloud identities for MEGA, Google Drive, and S3.
Biometric Lock Require fingerprint authentication for app entry and decryption.
Master Pass Argon2id-derived gatekeeper providing mathematical key fallback.

QuantumShield & LatticeGate (PQC v1)

Post-Quantum Cryptography (NIST FIPS 203 & 204)

For Everyone

Protects your vault against quantum computing threats using NIST FIPS 203 & 204 post-quantum standards.

Technical Details

Engineered with QuantumShield ML-KEM-768 key encapsulation (FIPS 203), ML-DSA-65 digital signatures (FIPS 204), and LatticeGate passkey envelopes. Supports InstantSever device revocation with nuclear self-destruct protection.

Controls & Buttons

Control Behavior / Action
Authorized Devices Manage active QuantumShield enrolled devices.
InstantSever Revocation Revoke a lost or compromised device. Revoked devices automatically trigger Terminus Protocol on detection.
Vault Auto-Migration Legacy manifests auto-upgrade to QuantumShield headers on sync.

RAID Resilience Testing

Resilience & Consistency Audit

For Everyone

Measure reliability and self-healing effectiveness of your OmniMirror cloud array.

Technical Details

The RAID Stress Manager simulates large sync batches with injected network flakiness. It executes multiple healing cycles to rigorously verify the orchestrator's ability to maintain OmniMirror eventual consistency.

Controls & Buttons

Control Behavior / Action
Stress Test Run a live simulation in Settings to verify your RAID engine's mathematical health.
Reliability Score The percentage of successful sync targets achieved after healing passes.

Stealth Mode (Calculator)

Stealth & Disguise Protocol

For Everyone

Disguises the Sino Privacy Engine as a fully functional Calculator utility.

Technical Details

Identifies to the OS as a system calculator. Unlocks only when entering a secret salted-hash sequence anchored to IronCore entropy.

Controls & Buttons

Control Behavior / Action
Enable Stealth Activate calculator disguise in Settings.
Unlock Code Secret sequence that morphs the calculator back into the Sino vault.

PhantomVault (Duress Decoy)

Plausible Deniability & Decoy Vault

For Everyone

Decoy vault safety mechanism that opens a believable fake library under forced entry.

Technical Details

Uses an isDuress flag for complete forensic isolation. Entering the PhantomVault password generates a separate hardware session showing only decoy files.

Controls & Buttons

Control Behavior / Action
Setup PhantomVault Create a secondary duress password in Settings to launch the decoy vault.

IronSeed & Offline Recovery

Vault Recovery & Snapshot Engine

For Everyone

100% offline BIP-39 recovery using your 24-word IronSeed recovery mnemonic.

Technical Details

Implements restoreRMK for offline key derivation in <100ms without network connectivity. Uses zero-string character comparisons (isValidWord) to prevent transient string allocations in memory.

Controls & Buttons

Control Behavior / Action
IronSeed Recovery Reconstruct your vault offline using your 24-word phrase.
Switch Vault Mount archived cloud backups (SinoVault_Backup_*) safely.
Verify-Then-Commit Verifies IronSeed validity before committing local state transitions.

Terminus Protocol (Nuclear Panic)

Emergency Forensic Purge

For Everyone

Emergency wipe protocol to instantly destroy local vault data and hardware keys.

Technical Details

Executes a deterministic 5-step destruction: 1. RAM key sanitization. 2. SQLCipher + FLE database destruction. 3. IronCore hardware key purge. 4. App preferences & token wipe. 5. Process termination.

Controls & Buttons

Control Behavior / Action
Terminus Widget Place the emergency 1x1 widget on your home screen for instant execution.

Sino Bridge & Legacy Handover

Legacy Succession & Handover

For Everyone

Link identities to trusted beneficiaries for secure automated or manual vault handover.

Technical Details

Uses RSA-2048 asymmetric encryption to generate Legacy Wrappers. Dead Man's Switch monitors user activity; exceeding inactivity thresholds triggers the handover cloud beacon.

Controls & Buttons

Control Behavior / Action
Add Beneficiary Link beneficiaries via QR scan, NFC tap, or bridge link.
Readiness Guide Step-by-step instructions for cloud account preparation.
Inactivity Threshold Configure automated trigger delay from 1 to 12 months.
Manual Handover Trigger the handover beacon immediately with a single tap.

Dead Man's Switch

Automated Handover Trigger

For Everyone

Automated vault handover if device activity ceases for an extended duration.

Technical Details

A periodic background pulse monitors user activity. Exceeding threshold triggers the handover cloud beacon via Authenticated v2 commands.

Controls & Buttons

Control Behavior / Action
Inactivity Delay Configure automated trigger delay from 1 to 12 months.
Status HUD Inspect Legacy screen for beacon health and remaining days countdown.

Hierarchical Restoration

Data Recovery & Gallery Export

For Everyone

Surgical control over file restoration in SECURE or PUBLIC modes.

Technical Details

SECURE mode uses secondary device encryption isolated from other apps. PUBLIC mode exports decrypted files to system storage. All SECURE files are purged during Lock or Terminus Protocol.

Controls & Buttons

Control Behavior / Action
SECURE Mode Restores files to a double-encrypted private sandbox.
PUBLIC Mode Exports decrypted files directly to system Gallery/Downloads.
Single Restore Use the download icon in the Vault Viewer or Dashboard selection mode.
Folder Restore Use the download icon in Folder Settings to recover a specific sync root.
Purge Cache Manually purge local secure clones in Settings.

Privacy Logs

Forensic & Operational Logs

For Everyone

Local-only diagnostic log engine with automated single-pass regex sanitization.

Technical Details

SinoPrivacyEngine masks file paths, emails, and keys using named capturing groups (?<label>pattern).

Controls & Buttons

Control Behavior / Action
View Logs Inspect sanitized background activity and error reports.
Export Logs Share sanitized logs safely.
Clear Logs Purge diagnostic logs from local storage.

Strict 2FA Mode (Paranoid)

Maximum Security & Ephemeral Session

For Everyone

Maximum security mode preventing 2FA seeds from touching storage.

Technical Details

Prohibits TOTP seed persistence in the vault. Enforces manual MFA entry ceremonies during login.

Controls & Buttons

Control Behavior / Action
Strict Toggle Enable in Settings -> Access Management.
MFA Ceremony Prompt for manual entry of authenticator code during authentication.
Health Monitor Receive system notifications when your cloud session expires and requires a manual re-auth.
Paranoid Setup Toggle Strict Mode during the initial Setup Wizard to ensure seeds are never persisted.