Roadmap

From one real phone to a trustworthy platform.

The roadmap separates proven flows from active experiments and longer-term security work.

Working

Reference deployment

GitHub-authenticated console, protected backend wake lease, owner scoping, Cuttlefish WebRTC, lifecycle controls, and audit events.

Experimental

Privacy zones

Browser-local zone rules, location permission UX, automatic phone lock, and reconnect blocking while the console is open.

In progress

Public project surface

User-facing site, docs, demo, API reference, security boundaries, status page, and community launch material.

Next milestones

Work that changes the trust boundary.

Policy

Server-enforced privacy rules

Persistent policies, explicit unlock semantics, trusted signals, multi-client behaviour, false-positive recovery, and auditable enforcement.

Runtimes

Repeatable self-hosting

Documented Cuttlefish install, Waydroid adapter evaluation, health checks, upgrades, backup, and restore.

Community

Open contribution intake

Public repository decision, disclosure channel, issue templates, governance, support expectations, and public artifact distribution.

Not promised yet

No anonymity claim. No magic anti-seizure mode.

Future ideas earn their status through a threat model, implementation, and verification. Until then, they remain proposals.

Read the security model