⚙️ Dynamic Generator

The ultimate, dynamically customizable, and highly secure guide to installing Arch Linux.

Prefer it explained one step at a time? Try the Manual Walkthrough — same result, recommended on mobile.

Generator Settings

🔴 CRITICAL: Run lsblk to find your drive size and verify the correct device path!
VMware/VirtualBox: Most likely /dev/sda
Baremetal: Double check size to ensure you format the right existing drive and encounter no errors!

Built up in layers, bottom to top. The defaults are the recommended setup — you can leave every one of these alone.

1 Container LUKS2 recommended
2 Cipher AES is hardware-accelerated
3 Post-quantum overlay optional, experimental
Layer 4: LUKS Duress Password

Registers a second passphrase on the LUKS header. Entering it at the boot prompt triggers the response below instead of unlocking normally. Your real passphrase is unaffected.

Post-Install Apps:

⚠️ Proprietary / non-libre software: anything marked [!] contains closed-source code or conflicts with strict libre principles — Firefox firmware blobs, the Signal Electron build, Chromium, Flatpak's default remote. They still install normally; this is just so you know what you are getting. What counts as non-libre →

🌐 Browsers
🔒 Security
💻 Dev / Terminal
🎬 Media / Files
🔧 System
🎨 Dusky
🌙 Theming & Boot

⚠️ Libre users: Firefox firmware blobs, Flatpak proprietary apps, Signal Electron build, and Chromium may conflict with strict libre principles. See Wiki for details.

The payload is always captured to /var/log/anti-ducky/ with a SHA-256 for chain of custody, and the device is always deauthorized. A lock screen does not protect the LUKS key in RAM — pair it with LUKS auto-lock if that is what you need. Power-off loses unsaved work on a false positive, and these timing thresholds have never been measured on real hardware.

🦀 tilas01's Security Suite (Rust)
🛡️ Other Security Tools

Nothing is uploaded — generation happens entirely in your browser. Review the output before running any of it.