Standard Grant: SecureSphere Decentralized Vault

This month’s review was successful and there is no actionable feedback. The team is looking forward to seeing what you do over the next month!

1 Like

Hi,

I wanted to share a quick update regarding the final report for the DecVault grant.

The report will be posted within the next 24–48 hours. We are currently waiting for the final approval from Apple for both the iOS and macOS versions of the app.

The Windows app (Microsoft Store) and Android app (Google Play) have already been approved. Once Apple completes the review, we will publish the final report and switch our production server online so all platforms can go live together in a synchronized release.

Thank you for your patience and support, the finish line is very close.

1 Like

Thanks for the heads-up @hani - please note given the American Thanksgiving holiday the deadline for reports in order to allow adequate time for review is Dec. 1 at 10am ET.

Thanks for the reminder, and noted regarding the Dec. 1 deadline.

The macOS app is still under review. If it is not approved by tomorrow, I will go ahead and publish the final report as planned and include everything that is already approved (iOS, Windows, and Android).

Once the macOS version is approved, I will share that update separately.

Thanks again for the guidance and support.

Final Report – SecureSphere Decentralized Vault

What progress was made on your grant this month?

This month focused on the finalization of the project, including full QA testing, security auditing, and preparing all app versions for store release.

The iOS app has been officially approved , while the macOS app remains in review after addressing all required changes.

This month also included resolving a high number of compliance issues: 5 rounds of iOS rejections and 7 rounds of macOS rejections, all of which were fixed and resubmitted.


Detail tasks worked on this month per milestone with the appropriate Pull Request(s) links

Milestone: QA Testing & Security Audit + Store Submission (This Month’s Work)

Task Category Work Completed This Month PR / Reference
Cross-Platform QA Testing - Full QA across iOS, Android, macOS, Windows. - Verified password manager, file vault, breach monitoring, encryption, QR login, and sync. - Fixed auto-lock and session persistence issues. - Resolved encryption normalization bugs between platforms. Release v1.0.0: Final DecVault version by r00b00t · Pull Request #1 · r00b00t/SecureSphereApp · GitHub
Security Audit - Final encryption flow audit (AES-256 + seed phrase derivation). - Ensured no logs or network leakage. - Validated Sia renterd encrypted file operations. Internal audit
Store Submission: iOS App (Approved) - Submitted multiple builds after 5 rejections. - Fixed all issues and resubmitted successfully. - iOS app is now approved and ready for launch. https://apps.apple.com/us/app/decvault/id6754329586
Store Submission: macOS App (In Review) - Addressed 7 macOS rejections. - Rebuilt and re-notarized the app multiple times. - Final build submitted and currently awaiting approval. https://apps.apple.com/us/app/decvault/id6754329586
Store Submission: Microsoft Store - Submitted MSIX package. - Passed review and approved. DecVault - Secure Your Data - Free download and install on Windows | Microsoft Store
Store Submission: Google Play - Submitted final Android build. - Approved and ready for launch. https://play.google.com/store/apps/details?id=com.decvault.app
UI/UX Finalization - Improved file vault UI. - Enhanced password manager layouts. Release v1.0.0: Final DecVault version by r00b00t · Pull Request #1 · r00b00t/SecureSphereApp · GitHub
Website Redesign - Complete redesign of decvault.com this month. - New sections, UI improvements, updated visuals, better onboarding flow. - Added bug reporting and feature request systems. https://decvault.com

Important Note on Store Status:

Although store submission links appear in the table for reviewer reference:

All app versions (iOS, Android, Windows) are currently unpublished and hidden.

They will be published synchronously once the macOS app is approved, ensuring a unified global launch.

Link to an easy-to-test version or a demo video

A full demo video of the mobile app, desktop app and cross-device sync:

https://youtu.be/75smL59EZb0


Overall summary of everything achieved during this grant

Throughout this Standard Grant, SecureSphere evolved into a fully functional, production-grade decentralized vault powered by Sia.

Delivered across platforms:

  • iOS & Android apps with file vault, password manager, breach monitoring, QR login, backup, restore, and encrypted Sia integration.
  • Windows & macOS desktop apps with full feature parity.
  • Browser extension rebuilt for enhanced encryption and privacy.
  • Client-side encryption only users own their data end-to-end.
  • Self-hosted Sia node support, ideal for institutions and advanced users.
  • Cross-device encrypted sync, bridging mobile, desktop, and extension environments.
  • Full UI/UX redesign for frictionless navigation and usability.
  • Store approvals on iOS, Android, and Windows.

SecureSphere now stands as one of the most comprehensive real-world Sia integrations.


Challenges and uncompleted objectives

Challenges

  • Multiple rounds of store rejections: 5 on iOS, 7 on macOS.
  • Apple sandbox restrictions required detailed explanations and technical adjustments.
  • Ensuring consistent encryption logic across Flutter mobile, desktop, and extension.
  • macOS notarization and cached binary issues slowed down the final timeline.

Uncompleted Objective

  • Only the macOS app approval is pending.Once approved, the unified launch will be executed across all platforms.

Lessons learned

  • Multi-platform production apps require significantly more validation than MVPs.
  • Apple’s macOS compliance and entitlement review process is the most demanding.
  • Maintaining a unified encryption model across all platforms prevents sync issues.
  • Users and institutions highly value privacy-first features and self-hosted options.
  • Sia renterd is powerful but requires careful integration for encrypted, resumable uploads.

What we are most proud of

  • Completing one of the most advanced privacy apps ever built on Sia.
  • Delivering a polished system spanning mobile, desktop, and browser.
  • Achieving iOS approval despite strict security and entitlement checks.
  • Creating a decentralized file vault with seamless end-to-end encryption.
  • Attracting interest from universities and institutions.
  • Demonstrating that Sia can power consumer-grade apps, not only storage backends.

What’s Next

1. Official Launch Marketing Campaign – Starting December 10

As soon as the macOS app is approved, we will begin our coordinated cross-platform launch and marketing campaign:

  • Cross-platform release: iOS, Android, Windows, macOS
  • Paid acquisition campaigns
  • Product Hunt launch
  • Influencer collaboration & university outreach
  • Demo videos and tutorial content

This campaign aims to bring the first wave of active users into the ecosystem.


2. DecVault Web App

The next development phase will focus on the DecVault Web App, enabling:

  • Full web-based access to the password manager and file vault
  • Client-side encryption directly in the browser
  • Encrypted uploads/downloads to Sia renterd
  • Web dashboard for identifiers, breach monitoring, and analytics
  • Admin panel for institutions (universities, businesses)

3. Public API (For Developers & Enterprise)

We will provide a secure, encrypted API layer to allow:

  • Third-party integrations (CRM, universities, companies)
  • Secure credential verification
  • Automated encrypted file workflows

4. Enterprise Features

Based on discussions and earlier plans:

  • Multi-user teams & shared vaults
  • Encrypted file sharing via Sia
  • Audit logs
  • Dashboard for groups and organizational units

Two universities have already expressed interest.


5. Continuous Store Updates & Improvements

  • Frequent updates based on user feedback
  • Support for more desktop features
  • Optimizations for faster Sia uploads and downloads
  • Chrome extension enhancements and contextual security checks

Additional Resources

Bug Report: Report a Bug | DecVault

Feature Requests: Feature Requests | DecVault

Great news the macOS app has just been approved by Apple, which means the entire SecureSphere / DecVault ecosystem is now officially live across all platforms.

1 Like

Hello @Hani - congratulations, your final technical review was successful!

One item did come up as a point of clarification: on your landing page, the text reads “Your data never touches our servers. Ever.” which does need to be revised as it’s not accurate. This will change should/when you migrate to indexd (when that is available) but for now this isn’t correct and should be edited.

Otherwise, this grant will be marked as ‘Complete’ here on the Forum and you will be sent an offboarding email soon.

Thank you for continuing to build on Sia.