agent a persistent non-GUI process launched automatically at boot time, immediately after application installation or by D-Bus activation [defined by: Applications design document] application bundle, app bundle, bundle a group of functionally related components (be they services, data, or programs), installed as a unit. This matches the sense with which “app” is typically used on mobile platforms such as Android and iOS; for example, we would say that an Android . [Read More]

Attack detection

The platform should have a heuristic for detecting whether an app-bundle has been compromised or is malicious. This design document, which has not yet been written, will collect the various possible inputs to this heuristic, and the various actions that might be taken as a result of the heuristic deciding that an app-bundle's behaviour is potentially or probably malicious. Egress filtering is a potential input: if an application attempts to carry out Internet connections that are not allowed, this is suspicious behaviour. [Read More]

Filesystem Layout

See Application Layout for more details of how store and built-in application bundles are arranged. Assumptions Store application bundles are arranged according to the Application Layout. Built-in application bundles are arranged according to the Application Layout. Platform upgrades are somewhat frequent, although not as frequent as store application bundle installation, upgrade or removal. Rollbacks are supported, but are relatively infrequent. Requirements Application bundles Suppose com.example.BuiltInApp is a built-in application bundle. [Read More]


This page lists some packages found in Apertis images, not all of which are present in typical Linux distributions. Standard Linux components such as D-Bus and systemd are also listed here if they are used extensively by Apertis. Many Apertis packages are named after sites in the UK where significant Roman archaeological hoards were found. Each of these packages is classified according to these properties: is it a system service (its scope is the whole system) or a user service (its scope is one specific user)? [Read More]