Linux Kodachi 9 is a derivative of Debian 13 (Trixie) focused on computer security, countering forensics and enabling anonymous browsing with minimized command-line usage designed by Warith Al Maawali. It is a Live distribution and can be operated directly from a USB drive or DVD, but can be installed on any compatible drive if needed.

Features

Linux Kodachi is a security-focused operating system that routes all system-generated traffic through its pre-installed VPN service, followed by the anonymous Tor network, with additional leak protection via DNSCrypt, providing a comprehensive privacy shield. It implements Multi Tor technology, allowing users to select the Tor network's exit node in their desired country. Additionally, it integrates PeerGuardian for hiding IP addresses in P2P networks and uses the Firejail sandbox for securely running applications in an isolated environment. Kodachi's VPN, Tor, DNSCrypt, and TorCrypt usage creates multilayered IP and DNS protection. It also offers options like MAC spoofing, RAM wiping, and emergency shutdown for robust security measures, configurable VPN settings, UDP port blocking, and time-zone spoofing for network customization. System isolation tools include encrypted containers (VeraCrypt, ZuluCrypt) and support for virtual machines, with features like randomized hardware IDs and IP spoofing to prevent tracking, AES-256 encrypted password management through KeePassXC, and operation as a live OS from a USB drive, leaving no trace on the host machine.

The Kodachi 9.0.1 has gone under a major transformation from bash scripts to Rust backend providing enhanced security and performance.

Kodachi includes 22 Rust powered binaries for various purposes such as administration, hardening, monitoring.

The desktop contains Conky widgets for live telemetry.

Kodachi 9.0.1 includes 9 Rust based binaries () that makes complex security tasks possible in plain english. The distro is security first hence providing local AI for the task.

Kodachi Claw extends this with an anonymous AI agent runtime built around Tor circuits, identity randomization, and OPSEC filtering.

Kodachi 9 provides oniux process isolation. Oniux provides per-process Tor routing through Linux namespace isolation. Each isolated process gets its own mount namespace, user namespace, and network namespace. Traffic is forced through a dedicated Tor circuit with no possibility of leaking to the real network. Unlike proxychains or torsocks which rely on library preloading, Oniux uses kernel-level namespace isolation that cannot be bypassed by the application.

Usb Device Security: Kodachi 9 provides its own USB Guard and USB Kill switch. It provides 4-Layer USB Defence.

Layer 1: USB Guard policies

Layer 2: Kernel Modules

Layer 3: Device Authorisation

Layer 4: Blacklist Rules

Default Apps

Kodachi provides a stack on apps that provides a secure experience while internet surfing and day-to-day use.

  • : A messaging app for secure communications.
  • Kodachi Browser: A pre-hardened browser based on LibreWolf.
  • Tor Browser: The native way to access the .onion websites and anonymous web scraping.
  • VeraCrypt: A tool used for disk encryption.
  • KeePassXC: An open-source password manager

Kodachi Dashboard

Powered by 22 Rust Binaries with a Kodachi Dashboard (Based on Tauri 2 + Svelte 5) for real time security operations with just a few clicks.

Kodachi Dashboard orchestrates 517+ commands across 24 Rust binaries with zero GUI freezing.

The Kodachi Dashboard contains 4 modes specialised for different purposes. It includes Circle mode (Gamified ring for minimal operation), Lite mode (A compact command center), Full mode (A professional workstation), Autoshield (First boot wizard for automated hardening).

Kodachi Dashboard Circle Mode

Lite mode: Collapsible sidebar with 15 tabs providing quick access to essential security operations, AI chat, command library, system monitoring, and direct terminal access with live output display.

Kodachi Dashboard

Full mode: Multi-panel command center with 22 tabs across 4 major sections. Supports drag-and-drop command queuing, resizable panels, and parallel/sequential execution modes for power users.

Full Mode in Kodachi Dashboard

AutoShield: Countdown-driven setup wizard that launches automatically on first boot. Configures anonymity layers, randomizes system identity, and establishes secure connections with real-time telemetry and protection level visualization.

The binaries provide 92 pre-built workflows for routing internet traffic providing anonymity at different environments.

Threat level detection and Emergency response

The Kodachi OS detects threats and automatically follows diffrent paths for different threat levels.

Temporary Lockout (REVERSIBLE)

Lock dashboard for configurable duration. User must wait before retrying. No data affected. Auto-unlocks after timeout.

Block Until Recovery (RECOVERY CODE)

Lock dashboard indefinitely. Requires recovery code or system-level intervention to unlock.

System Shutdown (POWER CYCLE)

Immediately powers off the machine. All volatile data in RAM is lost. Requires physical power-on to resume.

Trigger Panic (IRREVERSIBLE)

Initiates full panic mode sequence. Wipes sensitive data, kills network, clears RAM. See Emergency Response for details.

When compromise is imminent or confirmed, Kodachi provides irreversible data destruction capabilities that no forensic team can recover from. Two independent nuke systems — LUKS Nuke at boot and Dashboard Duress Protocol at login — ensure data destruction is always one password away.

The OS provides 3 different wipe intensities: Fast, Secure, Paranoid

Also powered with 3 emergency response levels: Panic soft, Panic medium, Panic hard

Every identifying attribute of your system can be randomized on demand. MAC address, hostname, timezone, and IPv6 settings combine to make your machine appear as a completely different device on every connection.

Version history

  • Originally based on Linux Mint and further customized for enhanced privacy and security.
  • Version 4.3 was released on the Debian 9.5 base.
  • Version 7.0 "Katana" was launched in May 2020, based on the version of Linux 5.4 from the latest Ubuntu 20.04 LTS release.
  • Version 8 is based on Xubuntu 18.
  • Current version, Kodachi 9.0.1 is based on Debian 13 Stable and is release on 26 February 2026.

Awards and recognition

  • First place by Techradar magazine for privacy and security (2020 – 2025).
  • The Lab Hot Product Award in August 2021 from Australian APC Magazine.
  • Top privacy distribution by Linux Format World UK magazine in 2020.
  • Best OS for security and privacy by Techradar magazine in 2021 – 2023.
  • The best OS for security and privacy by LinuxHint in 2021.
  • First place in privacy by DistroWatch in 2019.

See also