● v1.0.0 Sovereign Release POSIX Parity: 10 / 10 Zero Ambient Authority Standalone Glibc Executable

oosh

The openOODA Sovereign Shell

The intent-driven, ambient, capability-bounded interactive shell for the AI era. Combining 100% native POSIX execution with sovereign capability security and headless Varlink IPC.

curl -fsSL https://openooda-tools.github.io/oosh/install.sh | bash

Direct glibc-linked standalone binary deployment into /usr/local/bin with cryptographic SHA-256 seal verification. Zero dependencies required.

curl -fsSL https://openooda-tools.github.io/oosh/install.sh | bash -s -- --dnf

Or install RPM directly: sudo dnf install -y https://github.com/openOODA-tools/oosh/releases/download/v1.0.0/oosh-1.0.0-1.x86_64.rpm

curl -fsSL https://openooda-tools.github.io/oosh/install.sh | bash -s -- --apt

Or install DEB directly: curl -fsSL -O https://github.com/openOODA-tools/oosh/releases/download/v1.0.0/oosh_1.0.0-1_amd64.deb && sudo apt install -y ./oosh_1.0.0-1_amd64.deb

curl -fsSL https://openooda-tools.github.io/oosh/install.sh | bash -s -- --auto

Detects whether dnf or apt is present on host and installs the native system package; cleanly falls back to standalone web binary.

git clone https://github.com/openOODA-tools/oosh.git && cd oosh && make all && make install

Compiles native binary via openOODA and verifies all 371 test assertions across unit, smoke, and E2E tiers.

oosh — sovereign@host: ~/Projects/openOODA-tools/oosh
sovereign@host:~ ❯ oosh --version
oosh v1.0.0 (openOODA sovereign shell)
sovereign@host:~ ❯ caps
[CAPS] ProcessCap=ACTIVE FsReadCap=ACTIVE FsWriteCap=ACTIVE EnvCap=ACTIVE TimeCap=ACTIVE
sovereign@host:~ ❯ ? convert all png in images/ to webp
[INTENT CHANNEL]
Query: convert all png in images/ to webp
Action: for f in images/*.png; do ffmpeg -i "$f" "${f%.png}.webp"; done
Safety: SAFE [Y/n/e/?]
sovereign@host:~/Projects/openOODA-tools/oosh ❯ whereami
Location: /home/sovereign/Projects/openOODA-tools/oosh
Branch: main [clean]
⚡ Zero Ambient Authority
Privileged system operations require unforgeable capability tokens (&ProcessCap, &FsReadCap). No accidental ambient filesystem or process leaks.
⚙ POSIX Parity 10 / 10
In-process group redirection { a; b; } > out, subshell environment propagation, native job control (jobs, fg, bg, wait), unary tests, and compound execution.
🛡 5 Proactive Threat Defenses
OSC 52/CSI injection filtering, wildcard -* filename argument injection immunity, private socket SO_PEERCRED authentication, stack ceilings, and 16MB stream quotas.
🧠 Natural Intent Channel
Prefix any natural query with ?, ??, or ai to synthesize precise POSIX commands with safety tier classification (SAFE, MODERATE, HIGH_RISK) before execution.
🔄 Autonomous Recovery
Flight recorder captures failed commands and standard error streams. remedy suggests actionable fixes while autopsy performs postmortem forensic analysis.
🔌 Headless Varlink IPC
Non-blocking Unix domain socket RPC over /run/oosh/control.sock enables autonomous AI sidecars and external applications to query shell posture and stream telemetry.

v1.0.0 Release Packages

Format Artifact Architecture Direct Download
Standalone Binary oosh-linux-x86_64 x86_64 (Linux) Download Binary
SHA-256 Seal oosh-linux-x86_64.sha256 Cryptographic Verify Checksum
DNF / RPM oosh-1.0.0-1.x86_64.rpm Fedora, RHEL, CentOS Download RPM
APT / DEB oosh_1.0.0-1_amd64.deb Ubuntu, Debian Download DEB