OctoMY's Sentient Identity (SID) system provides cryptographic identity for human operators — and any conscious entity in the future.
A Sentient Identity (SID) is a cryptographic identity representing a human operator. It owns one or more Node Identities (NIDs) — the personalities a robot assumes.
Key properties:
Why "Sentient"? We chose this over "Person" or "User" because it encompasses any conscious entity — humans today, and any being capable of subjective experience in the future.
| Shadow (SSID) | Full (FSID) | |
|---|---|---|
| Password | None | User-chosen (20+ chars) |
| Security | Physical access only | Password + encrypted hive |
| Identicon | Ghost shape | Normal face |
| Created | Automatically on first boot | User upgrades from shadow |
| Device owner | No | First to set password |
The ghost identicon (faded, wavy-bottomed face) is the visual indicator that you're using a shadow identity. Tap it to upgrade.
| Aspect | Sentient Identity (SID) | Node Identity (NID) |
|---|---|---|
| Represents | A human operator | A robot personality |
| Created | Auto (shadow) or manual | Via delivery wizard or menu |
| Owns | NIDs, hive, recovery phrase | Config, trust, firmware settings |
| Switching | Locks hive, changes encryption | Changes active personality |
| Storage | SentientVault in hive | Per-NID folder in hive |
One SID can own multiple NIDs. NIDs are mutually invisible — "Gustav" and "Johnny" on the same device never see each other's config or peers.
Secure storage inside the encrypted hive containing:
A shareable identity bundle with disclosure levels:
| Level | Shared |
|---|---|
| Minimal | ID + public key (anonymous but verifiable) |
| Basic | + display name |
| Full | + identicon + attributes |
Cards are signed for authenticity and can expire.
A unique 16x16 pixel-art face generated deterministically from the SID's public key. Each face has unique hair, skin, eyes, mouth, freckles, and blush. The identicon appears in the Lanyard, contact lists, pairing UI, and profile badges.
Shadow sentients show a ghost identicon (wavy bottom edge, cut corners) with the tooltip "Shadow identity — not password-protected."
StartupStateMachine finds no identity, runs the §SP-1 silent auto-createsha256(publicKey)SID-<sid-hex> and mounted with an internal shadow passphraseSentientNameGenerator random name (e.g. curious_otter) + ghost identiconSecurityUnboxingActivity (Set a passphrase or Skip)See the First Boot how-to for the full walkthrough.
Hives on disk carry their type and owner in their identifier (§HT-1):
| On-disk id | What it stores | Display |
|---|---|---|
SID-<sid-hex> |
A sentient's vault, contacts, and per-node hive keys | Looks up the owning sentient and renders their friendly name + identicon |
NID-<nid-hex> |
A node's per-node data — NodeStore folder, OPAL history db, courier blobs | Looks up the owning node and renders its friendly name + identicon |
| Free-form name | General-purpose hive (future) — user-named, not tied to a sentient/node | Renders the literal name; no identicon |
The user never sees the raw SID-<hex> / NID-<hex> strings — every UI surface (Lanyard, lobby activities, status widgets) looks up the owning entity and renders its display name. Renaming a sentient updates the display everywhere without changing the on-disk id; nothing has to be re-mounted.
This taxonomy replaces the pre-spec "System" hive name. Pre-makeover installations carried a literal "System" hive owned by the device's primary sentient; post-spec each sentient's hive carries the SID-derived id and there is no privileged System slot. The auto-create path in §SP-1 produces the first SID-<hex> hive without ceremony — the user sees their friendly name, never the system internals.
Pro Tip
For maximum privacy, start with Minimal disclosure. The recipient can verify you're a consistent identity without knowing your name. You can always share a more detailed card later.
To view and manage your contacts:
Each contact shows:
Click a contact to view details and manage the relationship.
You can set trust levels for each contact:
| Level | Meaning |
|---|---|
| Pending | They shared with you, awaiting your decision |
| Accepted | You've acknowledged this identity |
| Trusted | Higher trust (e.g., verified in person) |
| Blocked | Rejected - won't receive messages from them |
When network sharing is enabled, the Pending badge shows how many contacts are awaiting your decision. Click it to review and accept or reject each request
Your private key is:
Important: If you lose your private key, you lose your Sentient identity. There is no recovery mechanism (by design - this prevents identity theft).
Consider:
Others can verify you are who you claim by:
Your Sentient identity is stored inside the encrypted Hive filesystem:
/.octomy/sentient/ inside the mounted hive volume, protected by the hive's ShufflecakeVolume encryptionSentientLobbyActivity for switching, renaming, or upgrading; clicking the hive button opens HiveLobbyActivityWhen switching Sentients, the current session closes first with a confirmation prompt.
The Sentient Identity system is functional with the following features:
IdentityAssetsActivity toolbar)Coming in future updates:
EdKey class, Phase 3 of encryption spec). Default algorithm switch deferred to Phase 4 of algorithm-agnostic-keys spec| Component | Description |
|---|---|
Sentient |
Core identity data structure |
SentientCard |
Shareable identity bundle with disclosure levels |
SentientVault |
Encrypted storage for identity and contacts |
SentientRelationship |
Contact data structure with trust levels |
KnownSentients |
Contacts database (SimpleDataStore) |
SentientIdenticon |
16x16 pixel-art face generator (39 parameters, deterministic from ID hash) |
SentientIdenticonWidget |
SvgWidget subclass for displaying face identicons |
SentientBadge |
Card-style profile display widget (uses face identicon) |
SentientCardWidget |
Reusable card display with QR option |
SentientListItemWidget |
Contact list item widget (uses face identicon) |
CreateCardWidget |
Disclosure level selector with preview |
ShareSentientWidget |
QR code share screen |
SentientActivity |
Main sentient profile activity |
KnownSentientsActivity |
Contacts list activity |
SentientDetailActivity |
Contact detail view |
CreateCardActivity |
Card creation wizard |
PendingRequestsActivity |
Pending contact requests |
SentientIdenticonEditorActivity |
Debug editor for identicon parameters |
HiveSession |
Session manager tying Hive + SentientVault |
SentientMetadataCache |
Non-sensitive display cache outside encrypted hive |