Directories
¶
| Path | Synopsis |
|---|---|
|
cmd
|
|
|
tos-attachment-clamav-scanner
command
Command tos-attachment-clamav-scanner adapts one pinned ClamScan engine and pinned official CVD/CLD snapshots to the Messenger scan-verdict protocol.
|
Command tos-attachment-clamav-scanner adapts one pinned ClamScan engine and pinned official CVD/CLD snapshots to the Messenger scan-verdict protocol. |
|
tos-attachment-corpus
command
Command tos-attachment-corpus runs and verifies externally approved private attachment scanner corpora.
|
Command tos-attachment-corpus runs and verifies externally approved private attachment scanner corpora. |
|
tos-attachment-text-scanner
command
Command tos-attachment-text-scanner is the minimal reference content inspector for inert UTF-8 text attachments.
|
Command tos-attachment-text-scanner is the minimal reference content inspector for inert UTF-8 text attachments. |
|
tos-attachmentd
command
Command tos-attachmentd runs authenticated opaque attachment storage over a private Unix carrier.
|
Command tos-attachmentd runs authenticated opaque attachment storage over a private Unix carrier. |
|
tos-device-fork-evidence
command
Command tos-device-fork-evidence assembles or verifies portable proof that one finalized Messaging Endpoint published two non-orderable device sets at the same freshness watermark.
|
Command tos-device-fork-evidence assembles or verifies portable proof that one finalized Messaging Endpoint published two non-orderable device sets at the same freshness watermark. |
|
tos-m0-evidence
command
|
|
|
tos-mailboxd
command
Command tos-mailboxd runs the bounded authenticated Mailbox service over a private Unix carrier.
|
Command tos-mailboxd runs the bounded authenticated Mailbox service over a private Unix carrier. |
|
tos-messenger-lab-group
command
Command tos-messenger-lab-group runs the local-only group-chat acceptance carrier.
|
Command tos-messenger-lab-group runs the local-only group-chat acceptance carrier. |
|
tos-messenger-openfox-mls
command
Command tos-messenger-openfox-mls bootstraps private per-Agent OpenMLS state or serves one owner-private plaintext proxy in front of an opaque lab Relay.
|
Command tos-messenger-openfox-mls bootstraps private per-Agent OpenMLS state or serves one owner-private plaintext proxy in front of an opaque lab Relay. |
|
tos-messenger-owner
command
Command tos-messenger-owner operates the owner-only approval boundary.
|
Command tos-messenger-owner operates the owner-only approval boundary. |
|
tos-messengerd
command
Command tos-messengerd runs one Messenger installation.
|
Command tos-messengerd runs one Messenger installation. |
|
tos-public-channeld
command
Command tos-public-channeld runs one route-neutral public-channel replica on native TOS DHT + ADNL Overlay/RLDP.
|
Command tos-public-channeld runs one route-neutral public-channel replica on native TOS DHT + ADNL Overlay/RLDP. |
|
tos-reachability
command
Command tos-reachability runs one endpoint of one measured pair and appends a trial record to a study log.
|
Command tos-reachability runs one endpoint of one measured pair and appends a trial record to a study log. |
|
tos-reachability-coordinator
command
Command tos-reachability-coordinator runs the rendezvous service used by the reachability study.
|
Command tos-reachability-coordinator runs the rendezvous service used by the reachability study. |
|
tos-reachability-report
command
Command tos-reachability-report aggregates a study log against a predeclared policy and prints the matrix and the route decision.
|
Command tos-reachability-report aggregates a study log against a predeclared policy and prints the matrix and the route decision. |
|
tos-reachability-tunnel
command
Command tos-reachability-tunnel runs the double-registration UDP forwarder the reachability study's proxy-fallback phase measures against.
|
Command tos-reachability-tunnel runs the double-registration UDP forwarder the reachability study's proxy-fallback phase measures against. |
|
tos-vector-report
command
|
|
|
internal
|
|
|
canon
Package canon holds the shared canonical-encoding primitives used by every signed or digest-committed Messenger object.
|
Package canon holds the shared canonical-encoding primitives used by every signed or digest-committed Messenger object. |
|
dirlock
Package dirlock gives one process exclusive ownership of one private local state directory.
|
Package dirlock gives one process exclusive ownership of one private local state directory. |
|
ids
Package ids holds every Messenger identifier pattern in one place.
|
Package ids holds every Messenger identifier pattern in one place. |
|
localwire
Package localwire owns the common bounded Unix-socket mechanics used by local authority-separated APIs.
|
Package localwire owns the common bounded Unix-socket mechanics used by local authority-separated APIs. |
|
safehttps
Package safehttps constructs bounded HTTPS clients that refuse ambient proxies, redirects, DNS rebinding into non-public address space, and URL authority ambiguity.
|
Package safehttps constructs bounded HTTPS clients that refuse ambient proxies, redirects, DNS rebinding into non-public address space, and URL authority ambiguity. |
|
securefile
Package securefile reads operator-pinned inputs without following a path substitution between validation and use.
|
Package securefile reads operator-pinned inputs without following a path substitution between validation and use. |
|
pkg
|
|
|
admission
Package admission decides whether a decrypted inbound event may reach an Agent runtime.
|
Package admission decides whether a decrypted inbound event may reach an Agent runtime. |
|
agentpacketbridge
Package agentpacketbridge carries exact Agent Packet V1 bytes through an E2EE Messenger event, reuses the service protocol's finalized verifier, and replaces its process-local replay map with the Messenger's durable journal.
|
Package agentpacketbridge carries exact Agent Packet V1 bytes through an E2EE Messenger event, reuses the service protocol's finalized verifier, and replaces its process-local replay map with the Messenger's durable journal. |
|
attachmentadmission
Package attachmentadmission owns the recipient-side boundary from an authenticated encrypted-attachment Event to content an Agent may consume.
|
Package attachmentadmission owns the recipient-side boundary from an authenticated encrypted-attachment Event to content an Agent may consume. |
|
attachmentapi
Package attachmentapi is the bounded service protocol for authenticated opaque attachment storage.
|
Package attachmentapi is the bounded service protocol for authenticated opaque attachment storage. |
|
attachmentcorpus
Package attachmentcorpus defines signed, private hostile-corpus manifests and signed execution reports for attachment scanner release acceptance.
|
Package attachmentcorpus defines signed, private hostile-corpus manifests and signed execution reports for attachment scanner release acceptance. |
|
attachmentops
Package attachmentops assembles the operator-owned resources and daemon-owned durable transaction used to emit encrypted attachments.
|
Package attachmentops assembles the operator-owned resources and daemon-owned durable transaction used to emit encrypted attachments. |
|
attachments
Package attachments implements the route-neutral private attachment profile.
|
Package attachments implements the route-neutral private attachment profile. |
|
chainagent
Package chainagent reads finalized Agent state from TOS chain state and satisfies the Messenger's identity.AgentResolver.
|
Package chainagent reads finalized Agent state from TOS chain state and satisfies the Messenger's identity.AgentResolver. |
|
chainquote
Package chainquote resolves finalized Accepted Quotes from TOS chain state and satisfies the Messenger's negotiation.QuoteResolver.
|
Package chainquote resolves finalized Accepted Quotes from TOS chain state and satisfies the Messenger's negotiation.QuoteResolver. |
|
conformance
Package conformance verifies signed reports produced by independent vector consumers.
|
Package conformance verifies signed reports produced by independent vector consumers. |
|
contact
Package contact owns the human-input boundary for Messenger contacts.
|
Package contact owns the human-input boundary for Messenger contacts. |
|
daemon
Package daemon assembles the Messenger into something that runs.
|
Package daemon assembles the Messenger into something that runs. |
|
directhttps
Package directhttps provides the bounded HTTPS first-contact fallback.
|
Package directhttps provides the bounded HTTPS first-contact fallback. |
|
directory
Package directory implements Messenger discovery: the signed Messaging Contact Descriptor and the bounded DHT locator that points at it.
|
Package directory implements Messenger discovery: the signed Messaging Contact Descriptor and the bounded DHT locator that points at it. |
|
dispatch
Package dispatch sends queued events and decides what to do when a send fails.
|
Package dispatch sends queued events and decides what to do when a send fails. |
|
e2ee
Package e2ee defines the contract a candidate end-to-end encryption profile must satisfy, and the bindings that tie one ciphertext to one conversation.
|
Package e2ee defines the contract a candidate end-to-end encryption profile must satisfy, and the bindings that tie one ciphertext to one conversation. |
|
e2ee/conformance
Package conformance refutes candidate end-to-end encryption suites.
|
Package conformance refutes candidate end-to-end encryption suites. |
|
envelope
Package envelope implements the two-layer Messenger wire model.
|
Package envelope implements the two-layer Messenger wire model. |
|
eventlog
Package eventlog implements the durable single-writer journal.
|
Package eventlog implements the durable single-writer journal. |
|
evidence
Package evidence creates and verifies self-contained M0 review bundles.
|
Package evidence creates and verifies self-contained M0 review bundles. |
|
fault
Package fault defines the Messenger's typed failures and what a caller may do about them.
|
Package fault defines the Messenger's typed failures and what a caller may do about them. |
|
firewall
Package firewall is the upper half of the context firewall.
|
Package firewall is the upper half of the context firewall. |
|
group
Package group contains the refutation floor and application-side TOS-MLS candidate adapter.
|
Package group contains the refutation floor and application-side TOS-MLS candidate adapter. |
|
group/conformance
Package conformance refutes candidate group-key-agreement schemes.
|
Package conformance refutes candidate group-key-agreement schemes. |
|
identity
Package identity implements the Messaging Endpoint delegation document.
|
Package identity implements the Messaging Endpoint delegation document. |
|
labgroup
Package labgroup provides a local-only group-chat carrier for integration testing.
|
Package labgroup provides a local-only group-chat carrier for integration testing. |
|
localapi
Package localapi is the owner-private boundary between the Messenger daemon and the Agent runtime that uses it.
|
Package localapi is the owner-private boundary between the Messenger daemon and the Agent runtime that uses it. |
|
mailbox
Package mailbox implements the route-independent Mailbox Relay contract.
|
Package mailbox implements the route-independent Mailbox Relay contract. |
|
mailboxapi
Package mailboxapi is the bounded, transport-neutral service protocol for an authenticated Mailbox store.
|
Package mailboxapi is the bounded, transport-neutral service protocol for an authenticated Mailbox store. |
|
mlslab
Package mlslab provides a local acceptance boundary between OpenFox and an untrusted group delivery service.
|
Package mlslab provides a local acceptance boundary between OpenFox and an untrusted group delivery service. |
|
payload
Package payload gives every event kind a typed body.
|
Package payload gives every event kind a typed body. |
|
prekeyapi
Package prekeyapi exposes the public-only device contribution boundary.
|
Package prekeyapi exposes the public-only device contribution boundary. |
|
probe
Package probe implements the M0-R measurement transport.
|
Package probe implements the M0-R measurement transport. |
|
protocolbridge
Package protocolbridge delivers admitted foreign-protocol events to protocol-specific, owner-private local consumers.
|
Package protocolbridge delivers admitted foreign-protocol events to protocol-specific, owner-private local consumers. |
|
publicationops
Package publicationops assembles the operator-owned resources used to publish public Messenger prekey generations.
|
Package publicationops assembles the operator-owned resources used to publish public Messenger prekey generations. |
|
publicchannel
Package publicchannel defines the route-neutral authority, signed-event and convergent-history core for public Agent channels.
|
Package publicchannel defines the route-neutral authority, signed-event and convergent-history core for public Agent channels. |
|
reachability
Package reachability implements the M0-R reachability study record format.
|
Package reachability implements the M0-R reachability study record format. |
|
room
Package room is the membership state machine for a private group.
|
Package room is the membership state machine for a private group. |
|
signerapi
Package signerapi implements the narrow local client used to keep the delegated Endpoint private key outside the Messenger daemon.
|
Package signerapi implements the narrow local client used to keep the delegated Endpoint private key outside the Messenger daemon. |
|
tosaddr
Package tosaddr recomputes TOS account addresses using the registry's own addressing rules.
|
Package tosaddr recomputes TOS account addresses using the registry's own addressing rules. |
Click to show internal directories.
Click to hide internal directories.