LOCAL DEFENCE CONTROL PLANE V1.0

Your lock screen
is not the
security boundary.

Kernward coordinates the controls underneath it—boot trust, encrypted-data sealing, session shutdown and device policy—into one explicit, fail-closed state.

KW // CONTROL STATE ARMED
SEALED
BOOT
VERIFIED
KEYS
BOUND
POLICY
ENFORCED
TRUST CHAIN04 / 04
REMOTE DEPENDENCYNONE
LOCK RESPONSEIMMEDIATE
NETWORK MAINNET
VISITORS TODAY
TOTAL VISITORS
PUBLIC REVIEWS
LIVE SOL / USDSYNCING
01

DEFENCE ARCHITECTURE

Four layers.
One unambiguous state.

Kernward does not paint a lock over a running session. Each layer answers a different attack path, then reports into a single local policy decision.

01 / ROOTPRE-SESSION
K

Establish trust before release.

Verified boot, rollback controls and target-specific signing determine what code may reach protected keys.

  • Controlled boot chain
  • Release-bound policy
  • Recovery boundaries
02 / DATAKEY STATE

Seal what matters.

Protected storage is considered locked only after configured key handles and mappings are closed.

03 / SESSIONQUIESCENCE

End every path.

Local, remote and service-held sessions enter the same transactional shutdown contract.

04 / POLICYFAIL-CLOSED

Uncertainty resolves to locked.

Clock rollback, invalid state, helper failure or incomplete enforcement never produces a false “safe” signal.

INPUTVERIFYENFORCELOCKED
02

DESIGN DOCTRINE

Built for the moment
control changes hands.

Threats do not wait for a friendly environment. Kernward’s architecture assumes theft, offline media access, boot replacement, rollback, malicious peripherals and service failure.

See exact assurance boundaries
01

Local ownership

No cloud account, telemetry pipeline or recurring permission check.

LOCAL
02

Cryptographic honesty

Data-key state is the boundary. A graphic lock screen is not evidence.

SEALED
03

Explicit limits

Device Owner, managed Linux and OEM integration remain distinct tiers.

STATED
04

Perpetual control

One licence, permanent v1 builds, both supported platforms.

OWNED
03

ASSURANCE PROFILES

Specific claims.
Visible boundaries.

Choose a platform profile to see what Kernward controls—and what still belongs to the underlying hardware and operating system.

DEPLOYMENT PROFILEMANAGED LINUX

Protected storage, session quiescence and a local control plane.

Designed for controlled Linux images with encrypted volumes, hardened services and a verified boot policy. The convenience install remains clearly distinct from hardware-bound assurance.

CONTROLLOCAL
DEFAULTLOCKED
TELEMETRYNONE
04

LIVE FIELD NOTES

Signal from the field.
Unedited and live.

Public reviews appear as they are submitted. Verified-purchase badges are only applied after an on-chain purchase is matched.

NEW☆☆☆☆☆LIVE PUBLIC FEED
NO PUBLIC FIELD NOTES YET

Be the first signal.

Real feedback belongs here. We do not manufacture social proof.

Leave a field note+

05

PERPETUAL OWNERSHIP

One licence.
Two control planes.

Keep the Kernward v1 Linux and Android builds permanently. The price is fixed in US dollars and converted into an exact, short-lived SOL quote when you create an order.

Linux control planeAndroid management appPublished SHA-256 manifestV1 security maintenance
PAYMENT CONTRACT
REFERENCE-BOUND · FINALIZED
01 QUOTE02 PAY03 UNLOCK
PERPETUAL PERSONAL LICENCEUS$499.00
LIVE SOL EQUIVALENTCalculating…

Fetching current SOL / USD rate…

Loading a live market quote. Checkout fails closed if price data is stale.

FINALIZED RPCONE-TIME REFERENCEINTEGER LAMPORTS