omarandClaude Fable 5 84d2766592
release / aarch64_cortex-a53 (push) Successful in 6m26s
release / x86_64 (push) Successful in 3m32s
release / apk aarch64_cortex-a53 (push) Successful in 4m58s
release / release (push) Has been cancelled
release / release apk (push) Has been cancelled
release / apk x86_64 (push) Has been cancelled
chore: remove stray committed test binary, ignore nested .idea, bump PKG_RELEASE
- drop c/Users/.../gen_linux_test (28MB binary accidentally committed in 129e31fbd)
- .gitignore: ignore .idea/ at any depth (shater/.idea from IDE)
- CLAUDE.md: orchestrator delegates to model fable
- bump shaterd/shater-core r2->r3, luci-app-shater r1->r2 for v0.2.1 release

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
2026-07-24 23:18:01 +03:00
2026-06-25 16:36:07 +08:00
2026-06-25 17:38:53 +08:00
2026-06-25 17:39:02 +08:00
2026-06-28 11:10:29 +08:00
2026-02-27 14:58:06 +08:00
2026-06-25 17:38:01 +08:00
2025-04-29 20:45:19 +08:00
2023-12-29 18:00:40 +08:00
2023-12-29 18:00:40 +08:00
2026-02-26 14:13:32 +08:00
2026-06-25 19:47:32 +08:00
2026-07-08 00:34:26 +08:00

shater

A self-hosted internet-control appliance for OpenWrt. One box turns your network into a transparent VPN gateway, a network-wide ad/tracker/malware blocker, per-device parental control, and a live traffic dashboard — configured from a rich web admin panel, all local.

License: GPL-3.0 status: v0.2 in development targets: x86_64 · aarch64_cortex-a53

⚠️ v0.2 is under active development on a new foundation. The previous, complete and VM-verified xray-based version lives on the v0.1 branch and still installs from the signed feed.

What v0.2 is

shater v0.2 is built as a fork of sing-box (via sing-box-lx) with our whole product embedded in the one binary: the proxy engine, a control plane, a DNS filter, and a full admin panel. Riding sing-box gives a broad, up-to-date protocol set — VLESS/VMess/Trojan/Shadowsocks, Reality, AmneziaWG 2.0, Hysteria2, TUIC — without reinventing the anti-DPI arms race.

The UI is split for both integration and a great experience: a thin LuCI app (a small dashboard + an "Open panel" button) hands a short-lived token to a standalone admin panel the daemon serves on its own port — so panel auth is bootstrapped from LuCI's existing login, and the real UX is a modern SPA we fully own.

Highlights (planned)

  • Transparent TPROXY proxy (TCP+UDP), split by domain/geo/client, no DNS leaks.
  • Broad protocols incl. AmneziaWG 2.0, Reality, Hysteria2, TUIC.
  • Network-wide DNS blocklists with flexible sources (inline / file / url / geosite) and an efficient matcher for million-entry lists.
  • Per-domain, per-client, per-device statistics — fed by the engine's DNS events in-process (no log scraping).
  • Per-device control: block a site for one device or everyone; per-device exit/proxy toggles; schedules; alerts.
  • Fail-closed kill-switch, atomic apply with commit-confirm rollback, signed opkg feed.

See docs-shater/FEATURES.md for the full list.

Documentation

Doc What
docs-shater/CONTEXT.md Start here — project context, v0.1→v0.2 history, decisions in brief, testbed/infra
docs-shater/ROADMAP.md Phased plan (Phase 1 = fork + embedding prototype)
docs-shater/FEATURES.md Full feature list with MVP/T1/T2 tags
docs-shater/ARCHITECTURE.md One-binary design, auth handoff, data/DNS/apply flow (diagrams)
docs-shater/DECISIONS.md Why sing-box, why fork, why the panel split, license, etc.
docs-shater/DESIGN.md Admin-panel visual system — the "Faceplate" direction, tokens, components, north-star prototype

Status

Foundation reset complete: v0.1 preserved on its branch, main reset for v0.2. Next is Phase 1 — fork sing-box-lx into main and stand up the embedding prototype (prove AmneziaWG 2.0, measure binary size). Follow docs-shater/ROADMAP.md.

Hardware

aarch64_cortex-a53 covers Banana Pi BPI-R3 (MT7986/Filogic 830) and BPI-R4 (MT7988/Filogic 880), both the OpenWrt mediatek/filogic target. x86_64 is the QEMU test VM.

License

GPL-3.0 (sing-box is GPL-3.0). See docs-shater/DECISIONS.md D6.

S
Description
OpenWrt XRAY management plugin � passwall-class, but cleaner. Design + code.
Readme
56 MiB
2026-07-28 07:50:40 -04:00
Languages
Go 77.7%
TypeScript 12.4%
PureBasic 4.2%
Shell 2.5%
CSS 2.1%
Other 1%