Predict. Protect. Recover.
- The Problem
- The Solution
- Quick Demo
- Installation
- Core Features
- Usage
- How It Works
- Roadmap
- Contributing
- Testing
- License
Every Linux user knows the anxiety of sudo apt upgrade. Updates silently break kernel modules, NVIDIA drivers mismatch, Secure Boot complicates everything. Linux fails predictably, but no one checks the engine before hitting the gas.
Prescient hooks directly into your package manager (apt, pacman) and intercepts every transaction before it executes. It audits incoming packages in under 200ms, cross-references kernels against DKMS dependencies and Secure Boot state, and pulls the emergency brake if the update will brick your system. If it already broke, it recovers it.
📹 Full demo video coming soon - watch here once published.
- Vanguard Engine - Intercepts
apt/pacmantransactions. Audits/bootspace,dpkghealth, mirror reachability, DKMS collisions, and Secure Boot state before a single file is written. - Heuristic Intelligence - Dynamically scans unknown packages against 20 critical filesystem tripwires. Learns new threats and persists them to config memory.
- Recovery Guardrails - Context-aware Timeshift/Snapper snapshots triggered only on genuinely high-risk transactions. Persists state to
/var/lib/prescient. - Atomic Rollback -
prescient undorestores the root filesystem to the exact pre-update snapshot via a safety-gated TTY prompt. - Pattern Interpretation -
prescient diagnoseparsesjournalctlfrom the current or previous boot and ranks failing subsystems by error count. - Auto-Healer -
prescient healmaps log failures to remediation playbooks and proposes exact bash fixes before executing anything. - Initramfs Rescue -
prescient-rescueis embedded in the kernel RAM disk. Recovers completely unbootable systems from the(initramfs)prompt without D-Bus or systemd. - TTY Pastebin Exporter -
prescient diagnose --sharepushes crash reports totermbin.comvia raw TCP socket. Offline fallback saves locally with0o600permissions. - Mirror Pre-Flight - Concurrently pings APT
.list, DEB822.sources, and Pacman mirrorlist configs before transactions begin. Fails open on partial degradation. - Gruvbox TUI - Keyboard-driven dashboard with live health status, OTA update detection, onboarding flow, and full command documentation.
curl -sSL https://raw.githubusercontent.com/GurKalra/prescient-linux/main/install.sh | bashRequires Python 3.11+, git, and make. Works on Debian/Ubuntu (apt) and Arch Linux (pacman).
Once hooks are installed, Prescient runs automatically on every sudo apt upgrade or pacman -Syu. For manual use:
| Command | Description |
|---|---|
prescient tui |
Open the visual dashboard and documentation hub |
prescient install-hooks |
Wire Prescient into your package manager |
prescient predict |
Run a manual pre-flight audit |
prescient diagnose |
Parse boot logs (--share, --previous) |
prescient heal |
Auto-propose and execute service fixes |
prescient undo |
Roll back to the last pre-update snapshot |
prescient-rescue |
Recover from the (initramfs) prompt |
prescient update |
Pull the latest OTA update from GitHub |
prescient uninstall |
Complete self-destruct sequence |
sudo apt upgrade
│
▼
DPkg::Pre-Install-Pkgs hook fires
│
▼
┌─────────────────────────────────┐
│ The Vanguard Engine │
│ 1. Pre-flight (dpkg, disk, │
│ mirrors) │
│ 2. Package sanitization │
│ 3. Boot + Security probes │
│ 4. Blast radius assessment │
│ 5. Heuristic tripwire scan │
│ 6. Snapshot guardrails │
└─────────────┬───────────────────┘
│
┌───────┴────────┐
▼ ▼
SAFE ✓ VETO ✗
Proceed Exit code 1
apt aborts
Read the Contributing Guide to set up a dev environment and find open issues.
pip install -e ".[dev]"
pytest tests/ -vNo root required. No real packages touched. See TESTING.md for the full zero-I/O testing philosophy.
This project is open-source and available under the MIT License. You are free to copy, modify, and distribute this software, as long as the original copyright and license notice are included.
See the LICENSE file for more details.

