Humanity is an open, public-domain project exploring how humans can live together with dignity, cooperation, and long-term continuity. It combines civilizational principles with rigorous system design to model learning, stewardship, and peaceful scalability. https://united-humanity.us
  • Rust 67%
  • JavaScript 17.4%
  • HTML 9.1%
  • WGSL 5%
  • CSS 0.8%
  • Other 0.6%
Find a file
Repository files (latest commit first)
Filename Latest commit message Latest commit date
Shaostoul f9733da4f1 v0.1422.5: the site links to our own mirror, and the mirror posts
Before posting about git.united-humanity.us, nothing on the website or in
the README pointed to it. Now:

- the site footer has a Mirror link beside GitHub (web/shared/shell.js),
- the download page's open-source banner links "Our own mirror",
- the home page's structured data lists the mirror (sameAs),
- the README says the same history lives on our own server.

Posts for X, Discord, Facebook and a fuller LinkedIn introduction
(the first HumanityOS post there): docs/outreach/posts/2026-09-29-git-mirror.md.
Fact-checked against the live mirror (anonymous clone works; 4,767
commits and 2,246 tags on first sync), GitHub's 2,238 releases, the CC0
licence, CLAUDE.md's cryptography table and the operator's canonical
timeline; the X post is 269 characters as X counts links.

Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
2026-09-29 11:40:20 -07:00
.claude chore: SessionStart lists worktrees instead of deleting them 2026-09-06 13:49:33 -07:00
.github/workflows Downloaded builds ship the 3D models and textures they render the world from 2026-09-19 03:36:56 -07:00
app/web v0.1306.2 - two critical Library defects: a shared self-hosting secret, and a recovery promise nothing implements 2026-09-14 02:01:53 -07:00
assets Merge branch 'main' into worktree-agent-a5e6f9189e45ed9b9 2026-09-28 03:19:44 -07:00
backups Restructure: eliminate native/ nesting, clean up stale files 2026-04-05 22:03:27 -07:00
data v0.1422.5: the site links to our own mirror, and the mirror posts 2026-09-29 11:40:20 -07:00
docs v0.1422.5: the site links to our own mirror, and the mirror posts 2026-09-29 11:40:20 -07:00
examples v0.871.0 - terrain tile streamer: real mountain shapes (Fuji is a cone now) 2026-07-17 11:57:01 -07:00
logs Restructure: eliminate native/ nesting, clean up stale files 2026-04-05 22:03:27 -07:00
mods v0.86.0: Remove Tauri app/, simplify repo structure, add mods/ 2026-03-29 17:32:23 -07:00
ops/vps ops: operator PUBLIC keys for VPS re-provisioning 2026-08-07 14:45:17 -07:00
saves Restructure: eliminate native/ nesting, clean up stale files 2026-04-05 22:03:27 -07:00
schemas gardening: each crop's own light need, a grow-light timer, and real rubber 2026-09-26 12:02:57 -07:00
scripts v0.1422.4: the self-hosted git mirror is back, and keeps itself current 2026-09-29 11:27:34 -07:00
src v0.1422.0: sweat costs water 2026-09-29 10:34:59 -07:00
tests v0.1420.0: a rig vantage on foot, and the Air bar it caught 2026-09-28 22:56:35 -07:00
tools Spike follow-up: prove the BGRA screen texture rather than claim it 2026-09-18 23:51:07 -07:00
vendor v0.1374.0: threaded AV1 decode no longer aborts the lib tests (BUG-093) 2026-09-26 21:35:13 -07:00
web v0.1422.5: the site links to our own mirror, and the mirror posts 2026-09-29 11:40:20 -07:00
.gitattributes A video disc plays on an in-world screen, and a protected one says so 2026-09-18 19:30:11 -07:00
.gitignore v0.1331.5: the aurora was in the wrong half of the sky, and a delivery check that asks the operator's question 2026-09-22 11:35:51 -07:00
build.rs Unify binary: merge server/ and crates/ into src/relay/ 2026-04-07 19:04:12 -07:00
Cargo.lock v0.1422.5: the site links to our own mirror, and the mirror posts 2026-09-29 11:40:20 -07:00
Cargo.toml v0.1422.5: the site links to our own mirror, and the mirror posts 2026-09-29 11:40:20 -07:00
CHANGELOG.md docs: fix all 13 audited false claims in the root documents 2026-09-06 17:29:24 -07:00
CLAUDE.md v0.1422.4: the self-hosted git mirror is back, and keeps itself current 2026-09-29 11:27:34 -07:00
CONTRIBUTING.md docs: fix all 13 audited false claims in the root documents 2026-09-06 17:29:24 -07:00
CREDITS.md Noto Sans is the interface face now: global access, chosen on measurement 2026-09-07 00:15:06 -07:00
Justfile v0.1422.4: the self-hosted git mirror is back, and keeps itself current 2026-09-29 11:27:34 -07:00
LICENSE v0.792.2 - docs currency sweep: README rewritten honest, LICENSE added 2026-07-10 14:06:47 -07:00
LICENSES.md credits: the star catalogues are CC BY-SA, and one row was doing the work of three 2026-09-07 00:06:30 -07:00
package-lock.json Major refactor: split relay.rs, unify settings, replace hardcoded colors, reorganize docs (v0.6.0) 2026-03-17 20:53:02 -07:00
package.json Major refactor: split relay.rs, unify settings, replace hardcoded colors, reorganize docs (v0.6.0) 2026-03-17 20:53:02 -07:00
prlint.pdb dev tooling: page_registry_lint now guards the NATIVE GuiPage count too 2026-07-23 15:10:39 -07:00
README.md v0.1422.5: the site links to our own mirror, and the mirror posts 2026-09-29 11:40:20 -07:00

HumanityOS

Own your tools. Own your life. Own your future.

A free app where people chat, plan, trade, and build together. No accounts, no owner, no ads, public domain. The infrastructure for cooperation, made for everyone.

🌐 united-humanity.us   ·   💬 Chat   ·   📥 Download   ·   💜 Discord


💡 What you can do today

What How it helps
💬 Talk to anyone, privately Text, voice, video calls. Direct messages are locked end-to-end with post-quantum math - only the people in the conversation can read them, not even the server. Threads, search, reactions, screen share.
📋 Organize anything Kanban boards, calendars, notes with optional per-note passphrase encryption, skill tracking. Run a team, a club, or your whole life from one place.
🛒 Buy, sell, and trade Built-in marketplace with signed listings, reviews, and seller ratings. The platform introduces buyers and sellers and never touches the money, so no operator can freeze your sale. A separate multi-layer trust score (identity, vouching, activity, no surveillance) is computed for every identity, with every input published so nobody has to trust a black box. You look it up on the Identity page today; escrowed payment for real goods and trust badges inside listings are next.
🆔 Prove who you are Schools, employers, and communities can issue Verifiable Credentials over the open API. Signed, revocable, auditable by anyone. (Choosing exactly what to disclose - selective disclosure - is in development.)
🗳️ Help decide things Local server proposals or civilization-wide votes. Vote weight comes from your reputation, capped so no single person can dominate.
🌱 Play and learn survival A full 3D homestead: farm real crops, cook, craft, fight, trade, and build a multi-deck ship under a night sky of real stars.

Add the desktop app and the 3D world runs fully offline with local saves. The collaboration tools (chat, market, tasks, voting) are server-backed by design and pick back up when you reconnect.


🛡️ Three things that make HumanityOS different

1. Your identity is yours, forever

When you sign up, your phone or computer creates a post-quantum cryptographic key - math so strong it will still be secure when quantum computers arrive. No username, no password. Your 24-word backup phrase restores your identity on any device, and with it everything the server holds. Your private message history is deliberately not on the server: it lives encrypted on your own device, and undelivered mail expires after 30 days. That is exactly what makes the relay unable to read or hand over your conversations, and it also means your device holds the only copy of that history. Forgot your phrase too? Guardian-based recovery (Shamir secret sharing - no single friend can do it alone) is being built: the server side is live, the in-app flow is in development.

2. Nobody can deplatform you

There's no lock-in to a central server. Anyone can run a copy. Your identity works on any server you join, your credentials follow you, your messages and contacts come with you. If one server goes down, you keep going. Server-to-server federation is built and fail-closed, ready to switch on as more servers appear - a network with no center can't be shut down from one.

3. Public domain - really

The code, the docs and the commits we wrote are in the public domain (CC0 1.0). Copy it, fork it, sell it, teach from it. No attribution required. A few real-world datasets we ship keep their own open terms and travel with the bundle: the OpenStreetMap map regions are ODbL 1.0 and ask for credit on any map drawn from them, the Gaia star catalogue is CC-BY-SA-IGO 3.0, and some planetary textures are CC-BY 4.0. Every one is listed with its obligation in LICENSES.md. Built by volunteers, owned by humanity.


✅ What's working right now

Communication

  • Text, voice, video chat
  • End-to-end encrypted DMs
  • Threaded replies & reactions
  • Screen share & PiP video
  • Pinned messages, mentions
  • Group conversations
  • Voice channels (always-on)
  • File and image sharing
  • Push notifications

Organize your life

  • Kanban project boards
  • Calendar & event planning
  • Notes (optional per-note encryption)
  • Skills & XP tracking
  • Inventory tracker
  • Maps (real + simulation)
  • Marketplace listings
  • Trade history & reviews
  • Civilization dashboard

Trust & governance

  • DID identity (did:hum:)
  • Verifiable Credentials (API)
  • Multi-layer trust score
  • Vouching (API; UI coming)
  • Local + civilization voting
  • AI-as-citizen rules
  • Server federation (built, fail-closed; activates as peers join)
  • Anti-Sybil math built in

The 3D world (desktop app)

Farming, cooking, crafting, combat, quests, skills and XP, a player market with escrowed trades, livestock, weather, procedural planets, and a buildable multi-deck ship - all playable solo today with local saves. Shared-world co-presence over the relay is built and in live testing.

What's still cooking

  • Native mobile apps (web works on phones today)
  • Multiplayer polish: shared-world co-presence is in live two-player testing
  • Social key recovery client flow (server-side guardian substrate is live)
  • One-click vouching and credential-issuing UI (the signed-object plumbing is live)
  • Mesh radio support for off-grid use
  • Real Solana transaction signing in the desktop app

🚀 Get started

👋 Just try it

  1. Visit united-humanity.us/chat
  2. Pick a display name
  3. Say hi in #welcome
  4. Take the 5-minute tour

No signup. No email. No credit card.

💻 Desktop app

  1. Visit united-humanity.us/download
  2. Pick your platform (Win/Mac/Linux)
  3. Run the binary
  4. Same identity as the web

Works fully offline. Native 3D world bundled.

🏠 Run your own server

  1. Download HumanityOS-linux-x64 from Releases
  2. chmod +x HumanityOS-linux-x64
  3. ./HumanityOS-linux-x64 --headless
  4. nginx + systemd in front

No compiler, no Docker. Under 10 minutes from download to live. Building from source instead adds roughly 7 minutes of compile time. Full guide →


🔐 Security & privacy

Identity signing ML-DSA-65 (Dilithium3) - post-quantum, FIPS 204
Key exchange ML-KEM-768 (Kyber768) - post-quantum, FIPS 203
Symmetric encryption AES-256-GCM
Password KDF PBKDF2-SHA-256 (600,000 iterations) for client vaults; Argon2id (memory-hard) for server-stored secrets
Hashing BLAKE3 - fast and quantum-resistant
Transport WebSocket over TLS 1.2+, HSTS, CSP + full security-header set
Storage Encrypted vaults - server stores only ciphertext
Logs No analytics, no tracking pixels. The relay database has no IP column at all. The web server in front keeps access logs for 2 days so it can ban abusers, and the relay writes an IP into its own log only when a rate limit trips. For no IP at all, reach the server over the Tor onion service.
Privilege Non-root systemd service with hardened sandboxing
Audit Ongoing cadence → SECURITY-CADENCE.md (initial Feb 2026 audit archived at docs/history/SECURITY_AUDIT_2026-02-12.md)

Solana wallet support is optional and decoupled from your identity. Using HumanityOS doesn't require any blockchain. If you opt in, the wallet is the Ed25519 keypair derived from your same 24-word seed (your post-quantum chat identity is a separate Dilithium3 key).


🤖 Transparent AI development

This project is built in the open by a two-person team: one human (Shaostoul) and one AI (Claude), working together daily. When workload calls for it, the AI dispatches short-lived helper agents for parallel tasks -- every one of them coordinated and reviewed through:

Every AI decision is documented. AI agents are first-class citizens with the same rules as humans (no extra authority), mandatory transparency, and humans always retain the right to refuse AI interaction.

→ Every line of AI work is visible in the git history. → The same history lives on our own server too: git.united-humanity.us, a mirror that copies every change from GitHub by itself, so the code does not depend on any one company.


🧠 How it works under the hood

Click to expand technical details

Stack

Layer Technology
Server (relay) Rust · axum · tokio · SQLite (WAL mode, Litestream-replicable)
Native client Rust · wgpu · egui · hecs ECS · rapier3d physics · kira audio
Web client Plain HTML/JS/CSS - no build step
Identity ML-DSA-65 (Dilithium3) post-quantum signatures
Key exchange ML-KEM-768 (Kyber768) post-quantum KEM
Object format Canonical CBOR + BLAKE3 + signed substrate
Federation WebSocket multi-hop gossip with cycle-breaking via dedup
Web realtime WebSocket + WebRTC for voice/video/data channels
Hosting nginx + systemd (optional Litestream replication to S3-compatible storage - see docs/operations/litestream.md)

Layout

Humanity/
├── src/                     ← Single Rust crate. Feature flags: native, relay, wasm.
│   ├── main.rs              ← --headless for relay-only, default for desktop
│   ├── relay/               ← Server (axum WebSocket + REST API + SQLite)
│   │   ├── core/            ← PQ crypto, signed objects, DIDs
│   │   ├── storage/         ← 40+ SQLite domain modules
│   │   ├── handlers/        ← Federation, message routing, announcements
│   │   └── api.rs + api_v2_*.rs ← REST endpoints (DID, VC, trust, governance, recovery, …)
│   ├── gui/                 ← egui native UI (theme, widgets, 40+ pages)
│   ├── renderer/            ← wgpu PBR + bloom + particles + hologram
│   ├── ecs/                 ← hecs World + System trait
│   ├── systems/             ← 40+ game systems (farming, combat, weather, economy, …)
│   ├── physics/             ← rapier3d wrapper
│   └── terrain/             ← Icosphere planets, voxel asteroids, ship interiors
├── web/                     ← Plain JS/HTML/CSS site (served by nginx)
│   ├── chat/                ← Chat client modules
│   ├── pages/               ← Standalone pages (43 of them)
│   └── shared/              ← shell.js, theme.css, pq-identity.js bridge
├── data/                    ← Hot-reloadable game + identity + coordination data
│   ├── chemistry/           ← 483 elements, compounds, alloys, gases, toxins
│   ├── items/foods/         ← Real-world items with ingredient tox profiles
│   ├── coordination/        ← Multi-AI agent registry + session state
│   ├── governance/          ← Proposal type schemas
│   └── identity/            ← VC schema registry + trust score weights
├── assets/                  ← Shaders, models, icons, audio
└── docs/                    ← All design documents and operations guides

Architecture documents to read

  • Storage architecture - 3-layer model (server / web / native), authority via signed objects, scaling story, P2P paths
  • Identity - DID resolution, key rotation, signed profile replication
  • UI system - Theme tokens, universal Button widget, design tokens
  • Federation - Federation protocol, signed-object gossip, peer trust
  • Humanity Accord - Voluntary constitution every server may adopt
  • Litestream replication - Disaster recovery for self-hosters

Tests

cargo test --features relay --no-default-features --lib
# 700+ tests across storage, crypto, signing, federation, and game logic
cargo test --features native --lib
# 890+ tests for the full desktop app (GUI, systems, renderer helpers)

🌍 Federated server registry

The Humanity Accord is a voluntary set of principles every server may adopt. Servers that publicly adopt it earn the highest trust tier in federation. Reach out to @Shaostoul to register.

→ Read the Accord


🧭 The standard we hold ourselves to

Society, business, government, our whole civilization: this is what we have to be to live our best lives. One for every letter, so it is easy to remember and hard to weasel out of.

Altruistic · Benevolent · Compassionate · Diligent · Empathetic · Frugal · Generous · Humble · Intelligent · Just · Kind · Loving · Mindful · Noble · Observant · Persevering · Quixotic · Righteous · Sincere · Truthful · United · Valiant · Wholesome · Xenial · Yielding · Zealous

Xenial means welcoming to strangers. Yielding means giving way when you are wrong. Quixotic means chasing something most people call impossible, on purpose. Ending poverty is exactly that, so it stays.

Anything less is a path toward pain, suffering, despair, and eventually extinction. Becoming a peaceful, harmonious, united Humanity is how we survive both the disasters outside our control and the tools we are building.

→ The full mission


🤝 Get involved

💬 Show up united-humanity.us/chat - no account needed
💜 Discord discord.gg/9XxmmeQnWC
🐛 Report bugs united-humanity.us/bugs or open a GitHub issue
📖 Contributing CONTRIBUTING.md - start here if you want to write code
💸 Donate GitHub Sponsors - every dollar goes to development & hosting

We need writers, designers, developers, educators, translators, testers - and just anyone who cares. Show up in chat and ask what needs doing.


🔗 Find Michael (project lead)

🎥 YouTube · 📺 Twitch · 𝕏 X / Twitter · 🎮 Steam


📜 License

CC0 1.0 Universal - public domain. No permission required, no attribution required. This belongs to everyone.


Built since 2019 (originally Project Universe). 7 years of work, hundreds of features, all free, all yours.