thakares
227f5ff922
Update README with performance and security details
...
Added performance metrics and security features to README.
2026-06-05 13:59:42 +05:30
thakares
72ae2f4b06
Add runtime footprint section to README
...
Added a section on runtime footprint detailing deployment sizes and benefits.
2026-06-05 13:57:59 +05:30
thakares
3397ca121b
Enhance deployment documentation with security checks
...
Added sections for binary hardening verification, runtime verification, and deployment footprint details.
2026-06-05 13:55:16 +05:30
thakares
1e038901b3
Add ChronoSeal product website
2026-06-05 12:40:10 +05:30
thakares
6c11495892
Fix formatting for protocol request examples
2026-06-04 20:54:41 +05:30
thakares
a1a2e9d571
Update v1.0.2 documentation and security guidance
2026-06-04 20:47:22 +05:30
thakares
f4c4beb6b5
Update testing documentation for v1.0.2
2026-06-04 20:21:39 +05:30
thakares
1004a39667
Bump version to 1.0.2 in Cargo.toml
2026-06-04 20:14:20 +05:30
thakares
a7cc533ed4
Update architecture documentation for v1.0.2
2026-06-04 20:11:43 +05:30
thakares
40877be160
Update README for v1.0.2 release
2026-06-04 20:05:55 +05:30
thakares
8d119ac00e
Harden validation, improve runtime security and refactor core services
Rust / build (push) Canceled after 0s
2026-06-04 19:58:21 +05:30
thakares
aebef4c623
Update version badge to v1.0.1 in README.md
2026-05-30 21:49:11 +05:30
thakares
b81b7b0e15
Remove .personal from .gitignore
...
Remove .personal from .gitignore
2026-05-30 21:31:27 +05:30
thakares
3f445eead5
docs: update TESTING.md for v1.0.1 — 95 tests, proptest section, known gaps
2026-05-30 21:24:29 +05:30
thakares
3225509713
Begin post-v1.0.1 protocol and runtime improvements
2026-05-30 21:00:22 +05:30
thakares
ecb1721ff4
Align crate versions with v1.0.1 release
2026-05-30 20:58:19 +05:30
thakares
d965451d4f
Add missing proptest dev dependency
Rust / build (push) Canceled after 0s
2026-05-30 20:48:46 +05:30
thakares
1a58ef9796
Release v1.0.0: protocol freeze, replay testing, fuzzing and audit readiness
Rust / build (push) Canceled after 0s
2026-05-30 20:09:24 +05:30
thakares
c7873b429d
Enhance v0.6.1 testing documentation
...
- Expand TESTING.md with comprehensive test coverage details
- Document server, WASM, and shared crate test suites
- Highlight critical security and parity tests
- Improve testing philosophy and contributor guidance
- Record current 89-test validation baseline
2026-05-29 23:04:42 +05:30
thakares
3679e6808b
Expand v0.6.1 documentation suite
...
Rust / build (push) Canceled after 0s
- Add COMPARISON.md for architecture and positioning analysis
- Add PERFORMANCE-TUNING.md for mutation engine optimization guidance
- Add TESTING.md documenting the 89-test security-focused test suite
- Document server, WASM, and shared crate test coverage
- Add operational guidance for tuning, validation, and verification
- Improve project maintainability and contributor onboarding
2026-05-29 22:56:08 +05:30
thakares
fc2d693518
Add comparison and performance tuning documentation
Rust / build (push) Canceled after 0s
2026-05-29 22:34:13 +05:30
thakares
0ed3cb444d
Refactor attestation engine and synchronize project documentation
...
- Refine session and storage lifecycle handling
- Improve VM extension architecture across server, shared, and WASM runtimes
- Enhance synthetic gene mutation engine integration and parity guarantees
- Align deterministic state progression between server and browser execution paths
- Update configuration examples and deployment guidance
- Expand architecture, API, threat model, privacy, and WASM build documentation
- Refresh README with comprehensive project overview, operational workflows,
browser integration details, storage backend documentation, and security model
- Document v0.6.0 refactoring outcomes and design rationale
- Improve consistency across documentation, configuration, and implementation
This commit consolidates the v0.6.0 architectural refactoring effort,
strengthening deterministic browser/server parity while improving
maintainability, operational clarity, and project documentation.
2026-05-29 21:55:08 +05:30
thakares
2b8afd54e0
docs: update README and docs for v0.6.0 architecture and deployment, preserve current server/shared/wasm updates
2026-05-29 21:27:11 +05:30
thakares
6067746898
Suppress dead_code warnings for VM execution helpers
2026-05-29 18:13:33 +05:30
thakares
3d2a1a0ad7
Delete LICENSE-MIT
2026-05-29 17:47:49 +05:30
thakares
815d29af4c
fix: correct license badge to MIT OR Apache-2.0
2026-05-29 16:11:40 +05:30
thakares
b2835f454f
docs: update ARCHITECTURE.md for v0.6.0 gene mutation system
2026-05-29 15:55:33 +05:30
thakares
4a64a57347
Update README.md
2026-05-29 15:52:00 +05:30
thakares
9d52828bb6
fix: correct license badge to MIT OR Apache-2.0
2026-05-29 15:44:07 +05:30
thakares
19666bd608
fix: correct license badge to MIT OR Apache-2.0
2026-05-29 15:42:58 +05:30
thakares
089a834f96
docs: comprehensive README with v0.6.0 gene mutation system, contributing & security policy
...
- Add v0.6.0 synthetic gene mutation system section (from REFRACTORING-v0.6.0.md)
- Add contributing guidelines, security policy, language breakdown
- Add badge bar, mutation threat row, topics tags
- No existing content removed
2026-05-29 15:39:39 +05:30
thakares
ba768da58e
feat: implement v0.6.0 mutation engine and db_type runtime selection
Rust / build (push) Canceled after 0s
2026-05-29 14:50:45 +05:30
thakares
217dc5f92b
Improve session privacy handling and cleanup logic
Rust / build (push) Canceled after 0s
2026-05-23 15:57:34 +05:30
thakares
0b43530651
Introduce Unix-native daemon architecture and operational tooling
2026-05-22 19:58:14 +05:30
thakares
e0f6d7c72c
Add systemd service and installation workflow improvements
2026-05-22 19:43:11 +05:30
thakares
9e78daeeba
Refactor ChronoSeal daemon for dynamic configurations, connection pooling, custom error handling, and complete tests (v0.5.0)
Rust / build (push) Canceled after 0s
2026-05-22 18:56:28 +05:30
thakares
60aaf0cd96
Add privacy-first design and policy documentation
Rust / build (push) Canceled after 0s
2026-05-14 12:40:04 +05:30
thakares
90ab322332
Expand design philosophy documentation
2026-05-13 16:32:00 +05:30
thakares
eff782847d
Expand design philosophy documentation
2026-05-13 16:24:51 +05:30
thakares
ed0458633b
Refine architecture and design philosophy documentation
2026-05-13 16:17:17 +05:30
thakares
3edea4bdff
Implement CLI configuration and runtime management
2026-05-13 15:54:15 +05:30
thakares
2ac0afa691
Update copyright name in LICENSE-MIT file
2026-05-12 20:32:39 +05:30
thakares
cbe12bcd49
Delete logo.png
2026-05-12 20:14:21 +05:30
thakares
f21146e2f2
Add ChronoSeal logo to README
2026-05-12 20:05:59 +05:30
thakares
7972123887
Add ChronoSeal logo to README
2026-05-12 20:04:17 +05:30
thakares
630c451688
Refine ChronoSeal logo assets
2026-05-12 19:34:31 +05:30
thakares
8559e023be
Refine ChronoSeal logo assets
2026-05-12 19:33:40 +05:30
thakares
75cb978fba
Add ChronoSeal logo assets
2026-05-12 18:42:52 +05:30
thakares
8d318d5da4
Add Contributor Covenant Code of Conduct
...
Added Contributor Covenant Code of Conduct to promote a harassment-free community.
2026-05-10 14:16:19 +05:30
thakares
d567655645
Update LICENSE
2026-05-09 18:35:56 +05:30
thakares
4fb4022188
fix: correct license link and remove residual LICENSE.md
2026-05-09 18:23:11 +05:30
thakares
256f12023e
docs: add WASM_BUILD.md explaining pkg generation and frontend loading
...
Covers:
- What antibot_wasm.js is and why it is not in the repo
- How wasm-pack compiles wasm/src/ and what wasm/pkg/ contains
- Step-by-step build (rustup target, wasm-pack install, build, mv to frontend/pkg)
- How heartbeat.js loads and initialises the module via await init()
- MIME type requirements for serving .wasm files
- .gitignore rationale for wasm/pkg/ and frontend/pkg/
- Troubleshooting (missing target, wasm-opt, 404, empty string returns)
2026-05-09 18:17:53 +05:30
thakares
2840ddfc58
docs: comprehensive ARCHITECTURE, DEPLOYMENT, API, and THREAT_MODEL
...
ARCHITECTURE.md
- Full component map with ASCII diagram
- Complete session lifecycle (init + heartbeat + failure path)
- Cryptographic protocol spec (hash chain formula, canonical JSON)
- Stack machine instruction set table with stack effects
- Behavioral validation thresholds
- SQLite schema, threat model summary, module reference
DEPLOYMENT.md
- Build instructions (WASM + server + convenience script)
- native binary, systemd (with hardened sandbox notes), Docker
- nginx, Nginx Proxy Manager, and HAProxy reverse proxy configs
- Integration options (sidecar vs proxy-only)
- Full configuration table with all constants
- Observability (RUST_LOG levels), health check, security checklist
API.md
- Full /init and /hb request/response schemas with field tables
- Canonical signing payload specification
- Complete validation rules table (all 13 rejection conditions)
- Hash chain byte-level specification
- WASM exported function reference
THREAT_MODEL.md
- Four attacker profiles (script kiddie → sophisticated adversary)
- Eight attack vectors with mitigations (replay, forgery, hijack, DoS…)
- Explicit out-of-scope limitations
- Operational security notes (CORS, TLS, log level, SQLite)
2026-05-09 18:11:15 +05:30
thakares
4b27a342d1
docs: comprehensive ARCHITECTURE, DEPLOYMENT, API, and THREAT_MODEL
...
ARCHITECTURE.md
- Full component map with ASCII diagram
- Complete session lifecycle (init + heartbeat + failure path)
- Cryptographic protocol spec (hash chain formula, canonical JSON)
- Stack machine instruction set table with stack effects
- Behavioral validation thresholds
- SQLite schema, threat model summary, module reference
DEPLOYMENT.md
- Build instructions (WASM + server + convenience script)
- native binary, systemd (with hardened sandbox notes), Docker
- nginx, Nginx Proxy Manager, and HAProxy reverse proxy configs
- Integration options (sidecar vs proxy-only)
- Full configuration table with all constants
- Observability (RUST_LOG levels), health check, security checklist
API.md
- Full /init and /hb request/response schemas with field tables
- Canonical signing payload specification
- Complete validation rules table (all 13 rejection conditions)
- Hash chain byte-level specification
- WASM exported function reference
THREAT_MODEL.md
- Four attacker profiles (script kiddie → sophisticated adversary)
- Eight attack vectors with mitigations (replay, forgery, hijack, DoS…)
- Explicit out-of-scope limitations
- Operational security notes (CORS, TLS, log level, SQLite)
2026-05-09 18:04:13 +05:30
thakares
851d3b4876
Further refine architecture documentation
2026-05-08 15:24:49 +05:30
thakares
ac57752ec2
Improve README presentation and project overview
2026-05-08 15:19:33 +05:30
thakares
ebfbbf9901
Refine architecture docs and add project logo
2026-05-08 15:14:27 +05:30
thakares
b866471825
fix: rename LICENSE.md to LICENSE so GitHub detects MIT correctly
...
GitHub license auto-detection requires a file named LICENSE containing
the full license text. LICENSE-MIT and LICENSE-APACHE remain for
dual-license reference.
2026-05-08 15:07:11 +05:30
thakares
f95b3c0d4a
license: switch from GPL-3.0 to MIT OR Apache-2.0 dual license
...
Companies integrating security tooling into proprietary stacks are
blocked by GPL copyleft. MIT/Apache-2.0 dual licensing matches the
convention used by the Rust ecosystem (tokio, axum, serde, etc.) and
removes all adoption friction for commercial users.
- Add LICENSE-MIT
- Add LICENSE-APACHE
- Update LICENSE.md to dual-license declaration
- Add [workspace.package] license field to Cargo.toml
2026-05-08 15:02:02 +05:30
thakares
7df32cd599
docs: rewrite README to reflect refactored codebase
Rust / build (push) Canceled after 0s
2026-05-08 14:32:36 +05:30
thakares
68b181dad2
chore: update Cargo.lock and server/Cargo.toml after compilation
2026-05-08 14:28:36 +05:30
thakares
b75d586b86
fix: correct 7 bugs found in security audit
...
Critical:
- crypto.rs (server): use BTreeMap for canonical JSON so key order
matches JS client's JSON.stringify sort — sig verification was always
failing silently
- heartbeat.js: capture sentSalt before rotating to next_salt so both
sides compute next_chain_hash with the same salt — chain was broken
after the first heartbeat
High:
- trust.rs: avg_speed = total_dist / total_time_ms (px/ms), not
distance/event_count — legitimate users were always rejected
- ratelimit.rs: add evict_stale() to drain expired entries and prevent
unbounded HashMap memory growth
- cleanup.rs: call rl.evict_stale() from the periodic cleanup loop
Medium:
- vm.rs: op 0x08 (NOT) is unary — split from binary-op arm so depth
is not decremented incorrectly
- wasm/crypto.rs: replace unwrap() panics in sign_message /
get_public_key with unwrap_or_default(); add JS-side guard
Low:
- shared/Cargo.toml, wasm/Cargo.toml: remove leftover add-this comments
- Dockerfile: rust:1.88-bookworm -> rust:1.87-bookworm (1.88 non-existent)
2026-05-08 14:27:41 +05:30
thakares
3f779a5295
Update LICENSE.md
2026-05-07 22:08:50 +05:30
thakares
a66debdece
Initial ChronoSeal release
2026-05-07 21:57:47 +05:30