Sovereign · Secure · Smart

The AI-native OS that's actually yours.

The system disk is read-only and cryptographically verified. Updates are signed with post-quantum cryptography. And the built-in AI can't do anything without your say-so. Your machine answers to you, not to a data centre.

456 MB live image · Runs from a USB stick · Nothing written to your computer

Why Orynr exists

You shouldn't have to choose between safe and usable.

Most “AI PCs” bolt a chatbot onto an old stack and send your life to somebody else's servers. Most hardened systems ask you to give up everything that makes a computer pleasant to use. We didn't want to accept either trade, so we built Orynr.

01

Sovereign

The AI runs locally. Your data and the system's diagnostics live in separate planes. Owner control is tied to your credentials and written to an audit log, so there's no hidden way in.

02

Secure

The system disk can't be modified, and it's verified every time you boot. Underneath sits a kernel we harden and compile ourselves, with defences that reach into the kernel itself.

03

Smart

The assistant does real work on the machine. It also can't take a single privileged action until you approve it. That's a property of the design, not a promise we're asking you to trust.

Have a look around

Four things worth knowing.

Each of these has a page of its own, written to be read rather than skimmed.

Ora

An AI with root, and a leash you hold

Ora reads files, runs scans, changes settings and investigates problems. Every privileged action raises a consent card first, and every one is logged. It runs against a model on your own hardware, so no prompt and no file leaves the machine.

How the consent broker works →

The Orynr Assistant, showing that it can drive the machine but every action needs consent

Security

Six layers, and a way to check each one

Verified boot, a kernel built from source, a firewall that watches program execution inside the kernel, mandatory access control, files judged by their contents rather than their names, and post-quantum signed updates.

The security model, and its limits →

The Orynr security centre

Technology

Built from source, not assembled from parts

Mainline Linux LTS with the hardened patch set and our own configuration, compiled with whole-kernel link-time optimisation. An immutable verified base with your files kept separate. A desktop written in Rust for this operating system.

How it is put together →

The Orynr desktop

Switching

Your Windows apps, and your domain

A compatibility layer for Windows applications with no virtual machine and no second licence, and Active Directory join for machines your employer manages. Both in build, and we are clear about what will never work.

What is being built →

The Orynr file manager

Try it without installing anything.

Write the 456 MB live image to a USB stick and boot from it. Everything works, so poke around, break things and change your mind. Nothing is written to your computer.

Orynr_OS is in active development. Features carry a label Shipping New Architected throughout this site, so you always know what is real today.