INSTALL

From download to first wipe

The AppImage carries everything the interface needs. Two system packages make the device side work.

01 Check the prerequisites

nvme-cli
apt install nvme-cli (or your distro equivalent). Probing and sanitize need it.
pkexec
part of PolicyKit, present on every mainstream desktop. Device operations ask for your password through it.
Linux, 64-bit
the AppImage is x86_64 and self-contained. Version 1 is Linux only.

02 Download and run

Three lines, and they work again for upgrades: a newer AppImage simply replaces the old one on disk.

shell
wget https://github.com/CurbSoftware/chaff-tafarian/releases/latest/download/chafftafarian-x86_64.AppImage
chmod +x chafftafarian-x86_64.AppImage
./chafftafarian-x86_64.AppImage

03 First run

Exit 01 shows the drive bay. Exit 02 walks a wipe: pick a drive, read the plan, type DESTROY plus the drive's kernel name, and authorize the pkexec prompt when it appears. Exit 03 fills any writable directory with chaff, no privileges needed.

04 Verify it, on a drive you can lose

Before trusting it with real hardware, run the checklist in the repository's PLAN.md against a scratch NVMe drive: probe, dry-run, cancel mid-pass, then a full wipe. The app was built so every one of those steps is safe to try.