Custom Linux System for Secure Trading Apps
Budget: $500 – $1,000 USD
Project Title:
Build a Custom Linux System Based on Buildroot with Secure Encrypted Applications and Long-Term Update Support
Project Description (Tell us what you need done):
We are looking for an experienced Embedded Linux Engineer to help us build a custom Linux system using Buildroot.
Here are the detailed requirements:
System Requirements:
Build a lightweight Linux system based on Buildroot.
Total image size controlled around 50MB if possible (not mandatory, but fast boot within 5 seconds is required).
Display a custom brand logo with smooth animation during startup.
Enter a custom-designed desktop environment after booting.
First boot allows optional setting of a user password; default is to directly enter the desktop.
Beautiful UI layout, macOS-style taskbar animation when opening applications.
Preload commonly used stock trading software (e.g., TongHuaShun, Eastmoney), with support for future app installation.
System structure must remain simple to reduce user operation risks.
Quantitative Software Packaging and Protection:
All quantitative trading programs must be packaged and encrypted (recommended AppImage, squashfs, or custom img mount method).
Encrypted programs must not allow source code extraction or readable content access.
During software runtime, perform automatic background validation:
Device features (MAC address / Disk SN / Hidden key file)
Or silent verification internally to prevent system image copying.
If validation fails, the program must refuse to run without showing a detailed error message.
Applications must run smoothly after encryption.
Users can directly click on the app icon to run without needing to input passwords or extra steps.
Update and Expansion Requirements:
Applications must support hot updates or replacements.
Design system mount points or update channels to allow app updates by simply replacing packaged files.
Avoid the need to reflash the whole system image for each update.
Support for manually importing/mounting update packages or remote synchronization.
System must be maintainable and upgradable for at least 5 years (based on Linux kernel).
Security and Compliance:
No pre-installed development tools (gcc, gdb, strace, etc.) inside the system.
Lock ordinary user permissions; users must not access internal system directories like /root, /opt, etc.
Root account should be encrypted or disabled by default to prevent privilege escalation.
No source code or system internals of custom software should be exposed to end users.
The developer must sign a Non-Disclosure Agreement (NDA) to prevent source code leakage or resale risks.
Delivery Requirements:
Provide the original system image file.
Provide clear update instructions and documentation for encrypted program management.
Encryption key control must belong solely to us (the client) and not be kept by the developer.
Acceptance Criteria:
System must boot normally, desktop environment functional, and software usable.
Source code and internal system files cannot be easily extracted or accessed.
Must support future updates and expansions easily.
Additional Notes:
The device hardware configuration is Intel N5100/N5105 with 8GB RAM and 128GB SSD.
We also plan to bundle a tablet device for AI assistant interaction and as a secondary display.
No special custom software is needed for tablet collaboration at this stage.
Important
Stability, code protection, ease of future updates, and risk control are our top priorities.
Please only bid if you have strong Buildroot and embedded Linux experience.
We prefer long-term cooperation if the initial project goes well.
Build a Custom Linux System Based on Buildroot with Secure Encrypted Applications and Long-Term Update Support
Project Description (Tell us what you need done):
We are looking for an experienced Embedded Linux Engineer to help us build a custom Linux system using Buildroot.
Here are the detailed requirements:
System Requirements:
Build a lightweight Linux system based on Buildroot.
Total image size controlled around 50MB if possible (not mandatory, but fast boot within 5 seconds is required).
Display a custom brand logo with smooth animation during startup.
Enter a custom-designed desktop environment after booting.
First boot allows optional setting of a user password; default is to directly enter the desktop.
Beautiful UI layout, macOS-style taskbar animation when opening applications.
Preload commonly used stock trading software (e.g., TongHuaShun, Eastmoney), with support for future app installation.
System structure must remain simple to reduce user operation risks.
Quantitative Software Packaging and Protection:
All quantitative trading programs must be packaged and encrypted (recommended AppImage, squashfs, or custom img mount method).
Encrypted programs must not allow source code extraction or readable content access.
During software runtime, perform automatic background validation:
Device features (MAC address / Disk SN / Hidden key file)
Or silent verification internally to prevent system image copying.
If validation fails, the program must refuse to run without showing a detailed error message.
Applications must run smoothly after encryption.
Users can directly click on the app icon to run without needing to input passwords or extra steps.
Update and Expansion Requirements:
Applications must support hot updates or replacements.
Design system mount points or update channels to allow app updates by simply replacing packaged files.
Avoid the need to reflash the whole system image for each update.
Support for manually importing/mounting update packages or remote synchronization.
System must be maintainable and upgradable for at least 5 years (based on Linux kernel).
Security and Compliance:
No pre-installed development tools (gcc, gdb, strace, etc.) inside the system.
Lock ordinary user permissions; users must not access internal system directories like /root, /opt, etc.
Root account should be encrypted or disabled by default to prevent privilege escalation.
No source code or system internals of custom software should be exposed to end users.
The developer must sign a Non-Disclosure Agreement (NDA) to prevent source code leakage or resale risks.
Delivery Requirements:
Provide the original system image file.
Provide clear update instructions and documentation for encrypted program management.
Encryption key control must belong solely to us (the client) and not be kept by the developer.
Acceptance Criteria:
System must boot normally, desktop environment functional, and software usable.
Source code and internal system files cannot be easily extracted or accessed.
Must support future updates and expansions easily.
Additional Notes:
The device hardware configuration is Intel N5100/N5105 with 8GB RAM and 128GB SSD.
We also plan to bundle a tablet device for AI assistant interaction and as a secondary display.
No special custom software is needed for tablet collaboration at this stage.
Important
Stability, code protection, ease of future updates, and risk control are our top priorities.
Please only bid if you have strong Buildroot and embedded Linux experience.
We prefer long-term cooperation if the initial project goes well.