CLASSIFIED // IAIB SYSTEMS

The Biometric Operating System

Your entire wellness laboratory. One USB drive.

Purpose-built encrypted OS for EESystem centers. Boots on any x86_64 hardware. No installation. No internet. No compromise.

_

Core Capabilities

Everything runs on-device. No cloud. No accounts. No attack surface.

🔒

Full-Disk Encryption

LUKS2 with AES-XTS-Plain64, 512-bit keys, Argon2id KDF. Data at rest is unreadable without the passphrase.

📡

Zero Network Dependency

No WiFi driver loaded. No outbound connections. The entire stack runs airgapped by design, not by configuration.

🧠

On-Device AI

Evolutionary Intelligence runs entirely in RAM. Conversational assistant, VIBE analysis, session guidance -- all local.

🩺

BLE Biometrics

Auto-discovers Polar H10, Garmin, Wahoo, and any BLE heart rate profile device. Real-time dashboard on localhost:7332.

💾

Boot Anywhere

USB stick or SSD. Any x86_64 machine. Plug in, select boot device, running in seconds. Nothing installed to the host.

Single Binary Core

eeos-vitals: one compiled Go binary, zero runtime dependencies. Biometrics, dashboard, VIBE scoring, and 27 EE-branded apps.

Four Boot Modes

Choose your operational posture at the boot menu. Each mode trades persistence for security.

Mode 01

Standard

Full desktop environment with persistent encrypted storage. Boots from the drive, writes session data back to it. Day-to-day operations.

persistent
Mode 02

Safe Video

Fallback graphics mode for unfamiliar hardware. Same functionality, universal GPU compatibility. Plug into anything and it works.

compatible
Mode 03

Copy to RAM

Entire OS loaded into memory at boot. Drive can be removed after startup. Faster I/O, drive stays cool, data persists until shutdown.

fast
Mode 04

RAM-Only Ephemeral

Nothing touches disk. Ever. All state lives in RAM. Power loss or shutdown destroys everything. Forensically clean operation.

ephemeral

Deployment Scenarios

From a single USB stick to a multi-station wellness center. EEOS scales to the operation.

💻

USB on Existing Hardware

Plug into any x86_64 laptop or desktop. Boot from USB. The host machine's hard drive is never touched. Pack it up when you leave.

📦

Dedicated Micro-Computer

Pair with an Intel NUC, Beelink, or MinisForum. A complete biometric workstation smaller than a deck of cards. Velcro it behind a monitor.

💊

Pill-Bottle Deployment

The USB drive itself fits in a pill bottle. Your entire encrypted wellness lab -- OS, AI, biometrics, 27 apps -- in your pocket.

🏥

Multi-Station Center

Deploy identical drives across every station in an EESystem center. Same config, same encryption, same operator profiles. Clone and go.

Security Architecture

Not "security features." Security architecture. There's a difference.

LUKS2 Encryption

AES-XTS-Plain64 with 512-bit keys. Argon2id key derivation. Every sector on the drive is encrypted.

No Network Stack

WiFi firmware isn't loaded. There's no IP address to attack. Air-gap isn't a policy -- it's a missing driver.

No Cloud. No Telemetry.

Zero outbound connections. No update servers, no analytics, no phoning home. The OS doesn't know the internet exists.

Power-Loss Safe

RAM-only mode: pull the power and everything is gone. No forensic recovery possible. Layered SquashFS overlayfs for integrity in persistent modes.

6 Operator Profiles

center center-ai center-kiosk center-cli workstation minimal -- each locks the environment to exactly what the operator needs.

Immutable Base Layer

SquashFS root is read-only. Overlayfs handles writes. The base OS cannot be modified, corrupted, or tampered with at runtime.

1 compiled Go binary
0 runtime dependencies
27 EE-branded apps
4 boot modes
6 operator profiles
512-bit encryption
:7332 biometric dashboard
1-1000 VIBE Score