01ShadowCode, preinstalled
The desktop's coding agent. Open a project, pick a model, describe the change, approve its actions and review the diff. Version 1.0 lists free local models first, explains failures in plain words, and checks commits for secrets before they leave. ShadowCode 1.0.0 ships as upstream's signed .deb, republished byte for byte and checked against its Ed25519-signed release metadata before it enters the image.
02The models you already have
Subscriptions (Codex, Claude Code, Cursor, Antigravity, Grok) run through each vendor's own command-line tool. No subscription? An OpenRouter API key, billed per token. No account at all? A free local model, run by the llama.cpp runtime bundled with ShadowCode.
03Three optional agents at first boot
Welcome offers exactly three: Grok Bot, Hermes Agent from Nous Research, and OpenClaw, whose security-advisory record is shown at the choice. Each installs only if you pick it, from a pinned, verified release. Then Welcome hands you to ShadowCode to connect your services.
04One network switch for agents
shadowfetch-agent-network online|offline decides whether agent sandboxes start with network. Firebreak, Grok Bot, Hermes, OpenClaw, Workbench, Mission Control and Welcome all read it; the boot menu offers the offline choice and the installer carries it to disk. ShadowCode keeps its own network setting.
05Firebreak and Mission Control
Agent processes see an approved project and required system files. Every sandbox gets its own network namespace, a declared egress allowlist is enforced with nftables, and a syscall filter applies in every sandbox. Mission Control queues scoped code, report and media work you review before accepting.
06One look: gold and steel on black
A new emblem and wallpaper carry one identity from GRUB and Plymouth to SDDM, Plasma and the installer. Fire and Ice are retired; a one-time migration at login repoints only settings that named a removed asset.