Built with Tauri v2 • Powered by Rust • 100% Local • Zero Cloud Telemetry

TruthBeacon Console: Real-time imposter alerts triage, canonical benchmark vault, local activity log, Discord connection setup, and bot setup guide.

If you run a Discord server for a creator community, gaming group, charity, open-source project, or faith community, you know the dread: someone joins with a stolen avatar and a sneaky lookalike name to scam your members in private messages.

Most moderation tools today either:

- Invade everyone's privacy by shipping full chat logs to third-party cloud servers.

- Miss subtle visual tricks (like swapped Greek or Cyrillic letters, invisible zero-width spaces, or slightly edited avatars).

- Overwhelm moderators with messy raw logs and confusing text commands.

TruthBeacon is different. It is a friendly, quiet desktop app that acts like a trusted watchman at your community's door. It monitors member joins and profile changes locally on your computer, spots sneaky lookalikes in under 50 milliseconds, and presents clean side-by-side comparison cards so you can take action in seconds.

Best of all? It respects your privacy completely. TruthBeacon has zero tracking, zero cloud telemetry, and keeps all sensitive tokens securely in an authenticated local AES-256-GCM vault with domain-separated AAD binding (TruthBeacon:EncryptedVault:v1), Argon2id key derivation, and strict POSIX permissions.

- 🧪 Hermetic Test Storage & Workspace Isolation: Fully isolated test SQLite database storage (#[cfg(test)]) and credential vault paths to temporary test environments, guaranteeing automated test suites (cargo test) never pollute developer or production user storage directories (~/.truthbeacon/).

- 🧹 Neutralized Production Guidance Placeholders: Sanitized UI input hints and modal placeholder copy with neutral, professional examples (@AlexMorgan,@Alex (Community Lead)), eliminating developer test fixtures from production displays.

- 🛡️ Forensic Database Quarantine & Multi-Guild Benchmark Persistence: Pre-flight SQLite integrity gates preserve corrupt databases and WAL frames into timestamped forensic archives without silent deletion. Persistent benchmark records maintain strict per-guild isolation and duplicate rejection.

- 🔐 Domain-Bound Cryptographic Vault: AES-256-GCM authenticated encryption bound to application domain AAD (TruthBeacon:EncryptedVault:v1) with Argon2id derivation, Zeroize-on-drop hygiene, tamper detection, and token redaction. Multi-threaded test isolation flushes vault caches to eliminate concurrency crosstalk.

- ⚡ Authoritative Backend Moderation & Anti-Replay: Replay-immune incident resolution validated against local SQLite records; operator identity strictly required for consequential actions.

- 🔄 Persistent Circuit Breakers: Rate limit trips, moderation bursts, and cooldown timers persist across UI restarts to prevent evasion.

- 🌐 Multi-Guild Gateway Registry & Heartbeat Watchdog: Dynamic connection lifecycle manager restores all registered guild connections with heartbeat ACK timeout monitoring, zombied connection detection, and opcode 6 session resumption ring buffers.

- 🧵 Dedicated Rayon Worker Pool & Multi-Keyframe Inspection: Image resizing and DCT calculations run on a dedicated worker pool (spawn_blocking) to avoid stalling the Tokio event loop. Animated avatars sample keyframes combining perceptual hashing (pHash) with color histogram and average hash (aHash) checks.

- 🔤 Unicode TR #39 Canonical Skeletons & Zalgo Defense: Employs standard tr39 confusable character tables to produce canonical skeletons before fuzzy-string comparisons, unmasking mixed-script homoglyph attacks and stripping combining marks / bidirectional overrides.

- 🖥️ Dynamic Tray Status, Log Masking & Health Diagnostics: Multi-resolution system tray icon reflects real-time protection state; logs automatically sanitize bot tokens and webhooks; background diagnostics poll health and trigger clean graceful shutdown.

- ♿ WCAG 2.1 AA Accessibility & Responsive Focus Trapping: Keyboard focus management, ARIA announcements, and high-contrast threat indicators ensure intuitive operation.

- 📦 Sandboxed IPC Capabilities & Supply Chain: Tauri v2 capability files strictly scoped to the app's config directory with remote WebViews/iframes IPC access disabled, 8 MB / 4096px image safety bounds, and formal RUSTSEC supply-chain auditing (208 automated unit and integration tests passing).

-

🛡️ Catches Deceptive Trickery Automatically

Spotted an imposter using a Cyrillicаinstead of an Englisha, invisible spaces, orrnto mimicm? TruthBeacon catches them all instantly before they can trick your members.

-

🖼️ Identifies Stolen Profile Pictures

Even if an imposter slightly crops, resizes, or color-tweaks a leader's avatar, TruthBeacon's visual comparison engine recognizes the original photo.

-

🔍 No More Squinting or Cut-Off Usernames

Tired of discord moderation bots truncating names with...? TruthBeacon's high-contrast threat bar shows both the full real username and the imposter username side by side with monospace clarity and a percentage match.

-

⚡ Lightning-Fast Triage in Seconds

Review flagged incidents on an intuitive 2x2 grid with keyboard shortcuts:- Press [B]to Ban an imposter

- Press [W]to Allow a verified alt account

- Press [E]to Restrict permissions

- Press [D]to Dismiss a false alarm

- Press [Esc]to close dialogs

- Press

-

🔒 100% Local & Sovereign

Your data stays on your machine. Your Discord bot token is encrypted locally with authenticated AES-256-GCM bound to machine entropy with strict POSIX 0600 file permissions and zero plaintext disk exposure. No remote databases, no telemetry, no tracking. Ever.

-

🛑 Built-in Safety Brake (Circuit Breaker)

Worried about an automated tool going wild during a server raid? TruthBeacon automatically limits rapid moderation actions to prevent moderation cascades and gives you a one-click manual reset right from the status bar or system tray.

-

🧪 Interactive Testing Sandbox

Test any tricky username in real time! Type in suspicious text strings to see how the detection algorithms break down and decode character substitutions.

TruthBeacon makes protecting your server straightforward:

New Member Joins or Updates Profile

│

▼

┌────────────────────────────────────────────────────────┐

│ 1. Clean & Normalize the Name │ Remove zero-width spaces, hidden symbols,

│ │ and Unicode direction overrides.

└──────────────────────────┬─────────────────────────────┘

│

▼

┌────────────────────────────────────────────────────────┐

│ 2. Unmask Lookalike Letters (Homoglyphs) │ Convert sneaky characters (Cyrillic, Greek,

│ │ visual skeletons like '0' for 'O' or 'rn' for 'm').

└──────────────────────────┬─────────────────────────────┘

│

▼

┌────────────────────────────────────────────────────────┐

│ 3. Score Name Similarity │ Measure real visual and phonetic resemblance

│ │ against your list of protected leaders.

└──────────────────────────┬─────────────────────────────┘

│

▼

┌────────────────────────────────────────────────────────┐

│ 4. Compare Avatar Images │ Compute visual fingerprints to detect

│ │ reused, cropped, or slightly altered avatars.

└──────────────────────────┬─────────────────────────────┘

│

▼

┌────────────────────────────────────────────────────────┐

│ 5. Check Account Age │ Flag brand-new "burner" accounts

│ │ created just hours or days ago.

└──────────────────────────┬─────────────────────────────┘

│

▼

┌────────────────────────────────────────────────────────┐

│ 6. Present Clean Side-by-Side Review Card │ Display verified leader vs. imposter

│ │ with 1-key resolution in your desktop console.

└────────────────────────────────────────────────────────┘

Whether you love building sleek web interfaces or writing blazingly fast systems code in Rust, TruthBeacon is built to be a joy to work on:

- Zero Rust setup required to start! You can spin up our built-in browser simulation mode in 5 seconds flat with a single Python command.

- Clean, vanilla Web standards: no heavy frontend frameworks, no complicated build pipelines, and no obscure CSS preprocessors.

- Fully simulated mock backend included so you can experiment with UI, themes, hotkeys, and layout improvements right in your browser.

- Modern, clean codebase using Rust 2021, Tokio, and Tauri v2.

- High-performance, memory-safe heuristics (< 50ms evaluation budget).

- Comprehensive test suite with 177 passing automated tests ready to validate your changes.

- Safe concurrency with SQLite Write-Ahead Logging (WAL) and native OS Keychain bindings.

- 🌐 Add new homoglyph mappings and transliterations for additional global languages and alphabets.

- 🎨 Design new theme variants, accessibility enhancements, or animation touches.

- 📖 Expand developer guides, tutorials, and community moderation playbooks.

- 🧪 Add unit tests for edge-case Unicode spoofing techniques.

Want to explore the user interface without compiling any native desktop code?

# Start the lightweight local preview server

python3 -m http.server 8080 --directory uiOpen http://localhost:8080 in your web browser. TruthBeacon will automatically load in simulation mode with sample incidents, realistic mock data, and working keyboard shortcuts!

To run the native desktop application with full Discord connectivity:

- Rust Toolchain: v1.75 or newer (rustup.rs)

- Build Tools:

- macOS: Xcode Command Line Tools (xcode-select --install)

- Windows: Visual Studio C++ Build Tools

- Linux: WebKitGTK and build essentials (sudo apt install libwebkit2gtk-4.1-dev build-essential curl wget)

- macOS: Xcode Command Line Tools (

# Navigate to the native application core

cd src-tauri

# Run in development mode

cargo runWe take reliability seriously so communities can trust TruthBeacon in production.

cd src-tauri

# Run all 177 automated unit and integration tests

cargo test --all-targets

# Check code formatting

cargo fmt -- --check

# Run Rust linter for best practices

cargo clippy --all-targets --all-features -- -D warnings

# Verify all open-source dependency licenses

python3 ../scripts/audit_licenses.py

# Verify cross-platform packaging pipeline and installer assets

python3 ../scripts/verify_packaging_pipeline.pyTruthBeacon keeps a clear separation between a responsive, accessible presentation layer and a high-performance, memory-safe native core:

┌────────────────────────────────────────────────────────────────────────────────────────┐

│ TRUTHBEACON ARCHITECTURE │

├──────────────────────────────────────────┬─────────────────────────────────────────────┤

│ 🖥️ Presentation Layer (UI) │ ⚙️ Native Core Daemon (Backend) │

├──────────────────────────────────────────┼─────────────────────────────────────────────┤

│ • HTML5, Vanilla CSS, Modern ESM JS │ • Rust 2021, Tokio Asynchronous Runtime │

│ • Responsive 2x2 alert triage grid │ • Discord Gateway v10 WebSocket listener │

│ • Accessible WCAG 2.1 AA design │ • Real-time Unicode & visual hashing engine │

│ • Fast keyboard navigation & hotkeys │ • SQLite with Write-Ahead Logging (WAL) │

│ • Instant browser simulation fallback │ • Secure OS Keychain credential vault │

└──────────────────────────────────────────┴─────────────────────────────────────────────┘

You can adjust sensitivity thresholds, rate limits, and safety settings directly in your configuration file:

{

"application": {

"name": "TruthBeacon",

"version": "0.2.1",

"vendor": "Orange Heart Industries",

"description": "Community Impersonation Defense & Identity Protection Console"

},

"detection": {

"string_similarity_threshold": 0.85,

"homoglyph_detection_enabled": true,

"avatar_hamming_distance_threshold": 10,

"new_account_age_hours_threshold": 72,

"sensitivity_level": "standard"

},

"circuit_breaker": {

"enabled": true,

"rolling_window_seconds": 60,

"max_mitigations_per_window": 5,

"cooling_period_seconds": 300

},

"storage": {

"sqlite_filename": "truthbeacon.local.db",

"wal_mode": true,

"busy_timeout_ms": 5000

},

"privacy": {

"zero_telemetry": true,

"local_data_sovereignty": true

}

}TruthBeacon delivers first-class, native desktop installers across all major operating systems via Tauri v2 release pipelines:

┌────────────────────────────────────────────────────────────────────────────────────────┐

│ TRUTHBEACON RELEASE ARTIFACT MATRIX │

├─────────────────────┬─────────────────────────────────┬────────────────────────────────┤

│ Platform │ Package Format │ Architectural Highlight │

├─────────────────────┼─────────────────────────────────┼────────────────────────────────┤

│ 🍏 macOS │ Universal 2 Drag-and-Drop .dmg │ Fat binary (Apple Silicon arm64│

│ │ & signed .app bundle │ + Intel x86_64 via lipo) with │

│ │ │ Orange Heart branded canvas │

├─────────────────────┼─────────────────────────────────┼────────────────────────────────┤

│ 🪟 Windows │ WiX Toolset MSI (.msi), │ 64-bit MSVC binary, branded │

│ │ NSIS Installer (.exe), │ NSIS sidebar/header, portable │

│ │ Standalone Portable (.exe) │ zero-install single executable │

├─────────────────────┼─────────────────────────────────┼────────────────────────────────┤

│ 🐧 Linux │ Standalone AppImage (.AppImage),│ Bundled via linuxdeploy; debian│

│ │ Debian Package (.deb), │ declares libappindicator3-1, │

│ │ Freedesktop .desktop entry │ libsecret-1-0 & webkit runtime │

└─────────────────────┴─────────────────────────────────┴────────────────────────────────┘

- macOS Universal 2 DMG:

./scripts/build_macos_universal.sh

- Windows WiX / NSIS / Portable (PowerShell):

./scripts/build_windows_bundle.ps1 -SkipSign

- Linux AppImage & Debian Package:

./scripts/build_linux_bundle.sh

- Verify All Packaging Specifications:

python3 scripts/verify_packaging_pipeline.py

truth-beacon/

├── README.md # Project overview and getting started guide

├── RELEASE_NOTES.md # Version 0.2.1 release notes & distribution summary

├── truthbeacon.config.json # Custom detection thresholds and safety limits

├── .github/ # GitHub Actions CI/CD workflows

│ └── workflows/

│ ├── ci.yml # Linting, formatting, security audit & cross-platform test matrix

│ └── release.yml # Multi-platform release matrix (macOS, Windows, Linux)

├── docs/ # Architecture guides and specifications

│ ├── truthbeacon-master-checklist.md # Comprehensive roadmap & SDLC checklist

│ ├── 01-scope-boundaries-and-system-envelopes.md # Non-functional boundaries & resource budgets

│ ├── 02-licensing-structure-and-oss-compliance-audit.md # Permissive OSS compliance matrix

│ ├── 03-discord-developer-policy-and-tos-compliance.md# Discord ToS & policy guarantees

│ ├── 04-privileged-gateway-intent-and-rate-limit-compliance.md # Gateway intent & rate limit rules

│ ├── 05-user-personas-acceptance-criteria-and-definition-of-done.md # Personas & DoD

│ ├── 06-stride-threat-analysis-and-evasion-mitigations.md # STRIDE threat model

│ ├── 07-high-level-architecture-and-ipc-contract.md # Asynchronous model & IPC contract

│ ├── 08-local-storage-architecture-and-migration-strategy.md # SQLite schema & migrations

│ └── 09-cross-platform-packaging-and-release-staging.md # Build bundling & packaging specification

├── release/ # Staged production release binaries & verification artifacts

│ ├── TruthBeacon_0.2.1_universal.dmg # Universal 2 drag-and-drop installer

│ ├── TruthBeacon_0.2.1_macos_universal.zip # Standalone universal application bundle

│ ├── truth-beacon-universal # Standalone fat binary (x86_64 + arm64)

│ ├── RELEASE_MANIFEST.md # Production build metadata & dependency audit

│ ├── RELEASE_NOTES.md # Platform release documentation

│ └── SHA256SUMS.txt # Cryptographic release checksums

├── scripts/ # Engineering & release verification scripts

│ ├── audit_licenses.py # Automatic open-source license compliance auditor

│ ├── benchmark_standby_and_launch.py # Memory footprint & launch latency benchmark

│ ├── red_team_adversarial_simulation.py # Automated adversarial attack drill

│ ├── generate_installer_assets.py # Generates branded DMG canvas & Windows BMPs

│ ├── package_macos_dmg.py # DMG disk image builder with custom geometry & .DS_Store

│ ├── render_installer_previews.py # Renders cross-platform installer visual proof previews

│ ├── build_macos_universal.sh # Builds Universal 2 lipo binary & branded .dmg

│ ├── build_windows_bundle.ps1 # Builds Windows WiX, NSIS & portable .exe

│ ├── build_linux_bundle.sh # Validates desktop file & packages deb/AppImage

│ └── verify_packaging_pipeline.py # End-to-end packaging specification validator

├── src-tauri/ # Native Rust core backend

│ ├── Cargo.toml # Rust dependencies and package metadata

│ ├── tauri.conf.json # Tauri v2 bundle, window & security configuration

│ ├── desktop/ # Linux desktop integration & metadata

│ │ ├── truthbeacon.desktop # Freedesktop specification-compliant desktop entry

│ │ └── org.orangeheartindustries.truthbeacon.metainfo.xml # Freedesktop AppStream metadata

│ ├── icons/ # Multi-resolution icons & branded installer artwork

│ │ ├── dmg-background.png # Custom Orange Heart DMG layout (660x400)

│ │ ├── nsis-header.bmp # NSIS installer header image (150x57)

│ │ ├── nsis-sidebar.bmp # NSIS installer sidebar image (164x314)

│ │ ├── wix-banner.bmp # WiX MSI top banner (493x58)

│ │ ├── wix-dialog.bmp # WiX MSI dialog background (493x312)

│ │ └── icon.icns, icon.ico... # Desktop and system tray icons (16x16 - 256x256)

│ └── src/

│ ├── main.rs # Application entry point

│ ├── circuit_breaker/ # Runaway moderation safety brake

│ ├── commands/ # Typed IPC command handlers (21 commands)

│ ├── credentials/ # Secure OS Keychain manager

│ ├── detection/ # Multi-vector heuristic detection engine

│ ├── gateway/ # Real-time Discord Gateway v10 client

│ ├── notification/ # Native OS desktop notifications & action routing

│ ├── storage/ # SQLite database setup and migrations

│ ├── tray/ # Persistent system tray, menu bar & background residency

│ └── vault/ # Protected leader benchmarks and sync

└── ui/ # Clean, responsive web frontend

├── index.html # Accessible layout and navigation

├── css/styles.css # Discord-inspired dark theme and triage grid

└── js/

├── app.js # UI controllers and keyboard navigation

├── state.js # Reactive central state management

├── ipc.js # Desktop bridge and browser preview mock

└── mock_data.js # Sample scenarios for previewing

TruthBeacon is proudly created by Bored Polymath Studios with the belief that online communities deserve safe, healthy spaces to gather without fear of deceit or manipulation.

- 💛 Community Edition: Free for volunteer-run groups, open-source communities, indie creators, and gaming clubs.

- 🕊️ Charity & Faith Grant: 100% free access to all advanced features for registered non-profits, shelters, food banks, and faith communities.

We welcome issues, feedback, ideas, and pull requests! If you care about protecting people and building thoughtful software, we would love to have you build with us.

- 🌐 Project Home & Downloads: https://boredpolymath.github.io/truth-beacon/

- 💻 Source Repository: https://github.com/boredpolymath/truth-beacon

- 🐛 Issue Tracker: https://github.com/boredpolymath/truth-beacon/issues