Skip to content

[RFC] Golden Dome: Comprehensive Security Hardening & DFIR Documentation  #4380

Description

@eaglecrat

Summary

Proposal to add a "Golden Dome" security hardening guide to Flipper One documentation — covering supply-chain verification, firmware integrity checks, incident response playbooks, and DFIR procedures for compromised devices.

Scope

  • Supply Chain Verification: Verify firmware authenticity from GitHub → device
  • Runtime Hardening: Disable debug interfaces, lock JTAG/SWD, enable RDP
  • Incident Response Playbook: "My Flipper was lost/stolen/compromised — what now?"
  • DFIR Procedures: Memory dump analysis, timeline reconstruction, artifact extraction

Spec

https://github.com/eaglecrat/-flipper-one-proposals/blob/main/docs/docs-golden-dome-hardening.md

Questions

  1. Is there a docs revamp in progress this should slot into?
  2. Main docs repo or separate security-focused repo?
  3. Target audience: end users, developers, or enterprise security teams?

Risk

  • Zero device risk — documentation only
  • No code changes required
  • Can be submitted as single large docs PR or split by chapter

— ΩV

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions