NØNOS is an operating system built from bare metal around one idea: a machine should trust as little as possible and remember as little as it needs. The kernel starts from zero state, runs in memory, and loads only software whose signature it can check. Every privilege is a capability granted on purpose, not something a process inherits by accident.
The same idea runs through the rest of the stack. The NØNOS STARK is a transparent proof system written from scratch: Goldilocks, FRI, Poseidon and Keccak, with no trusted setup and no pairings. NØNOS Shield uses it to move value privately on Ethereum. A transfer is one transaction, and inside it the chain verifies the whole proof and recomputes every constraint itself.
flowchart LR
subgraph Host["Build host"]
SRC["capsule source"] --> MK["nonos-mk<br/>package"]
MK --> SIGN["nonos-sign<br/>Ed25519 + ML-DSA-65"]
end
subgraph Trust["Trust chain"]
KS["nonos-trust-keystore<br/>anchor, policy, ledger"]
ATT["stark-attest<br/>one 32-byte statement"]
end
subgraph Machine["The machine"]
K["microkernel<br/>zero state, capabilities"]
C1["capsule"]
C2["capsule"]
end
SIGN --> KS
SIGN --> ATT
KS -->|verified at load| K
K --> C1
K --> C2
Zero state. The system runs from memory and forgets on shutdown. Nothing persists unless it is asked to.
Capabilities, not ambient authority. A process can do only what it has been handed an explicit right to do.
Everything signed. Capsules carry a hybrid signature, classical and post-quantum. The kernel checks it against a sealed trust anchor before a single instruction runs.
Proofs over promises. Where a claim can be checked by a machine, it is: by a signature, by a transparent proof, or by a test that fails when the property breaks.
Private transfers on Ethereum L1, verified by a STARK in a single transaction.
| 1 transaction per private transfer, with the whole proof verified on chain |
0 trusted setups no ceremony, no pairings, no off-chain verifier |
Every constraint recomputed by the chain, not supplied by the prover |
Sepolia first end-to-end private transfers settled, in ETH and NOX |
flowchart LR
D["deposit<br/>a note joins the pool"] --> P["wallet proves<br/>the transfer"]
P --> S["one transaction<br/>STARK verified on chain"]
S --> R["receiver<br/>finds and spends the note"]
R --> W["withdrawal<br/>to any address"]
Blinded proofs, proving on your own device and an external audit come before mainnet.
| Kernel |
microkernel The NØNOS microkernel, in Rust nonos-docs Kernel documentation micro-kernel-only-tests Boot smoke harnesses and recorded results nonos-ci Static checks, baselines and trust-chain CI VBox Run NØNOS in VirtualBox |
|---|---|
| Trust chain |
nonos-trust-keystore Trust anchor, publisher keys, sealed policy, signed manifests and ledger nonos-sign Capsule signer and verifier, Ed25519 + ML-DSA-65 nonos-mk Capsule packager and marketplace index stark-attest Attest a set of artifacts with one 32-byte statement, transparently |
| Proofs |
NØNOS STARK The transparent prover and verifier: Goldilocks, FRI, DEEP, Poseidon. Opening at launch NØNOS Shield The shielded pool and its on-chain STARK verifier. Opening at launch zkolang A verifiable-compute language, proven by the NØNOS transparent STARK |
| Apps and tools |
nonos.software Wiki, manual, ISO downloads and news android-app · ios-app · NOXDashboard · NOXtools |
nonos.software · nonos.systems · team@nonos.systems
Trust nothing you cannot verify. Keep nothing you do not need.