Hardened foundation
Built on GrapheneOS and AOSP security engineering rather than relying only on application level privacy settings.
Obris SecureOS is built around explicit security boundaries, signed releases and controls that can be independently checked.
Mobile security is a system of hardware, operating system integrity, authentication, compartmentalisation, networking and user behaviour. No single feature makes a device secure.
Obris SecureOS combines a hardened Android foundation, operational separation, physical activation controls and verified software delivery. Each layer protects a different boundary.
Built on GrapheneOS and AOSP security engineering rather than relying only on application level privacy settings.
The Security User keeps sensitive applications, accounts, sessions and credential protected data separate from everyday Owner use.
An enrolled FIDO2 YubiKey forms part of the protected Security User workflow instead of relying only on another remembered secret.
Signed release metadata and images are verified before installation, and the supported device returns to a locked bootloader state.
The Security User is intended for sensitive work that should not inherit every capability of the everyday Owner environment.
The enrolled physical key is required through the supported workflow to activate the protected Security User.
Cellular SMS and outgoing cellular calls are restricted so sensitive communications can remain inside approved encrypted applications.
The duress workflow removes the protected Security User and returns to the ordinary Owner environment without requiring a reboot.
Obris Chat protects message, voice and video content independently of the VPN transport layer, while the production service is designed to operate through the Obris VPN path.
Message content is end to end encrypted independently of the VPN tunnel.
Calls use encrypted WebRTC media between the communicating endpoints.
Call media is designed around relay candidates rather than intentionally exposing a direct peer to peer media path.
If the required VPN path is unavailable, communications are designed to stop rather than intentionally fall back to direct internet access.
Release authenticity is anchored in cryptographic verification. A compromised download location should not by itself create a valid Obris release.
Security claims are useful only when their limits are stated clearly.
Security critical SecureOS modifications are intended to be inspectable. Independent security review and a formal vulnerability disclosure programme remain roadmap items and are not represented as completed.
See exactly which parts of the Obris platform are intended to be public, which operational systems remain proprietary, and why real secrets never belong in either repository.