Implemented today
- Authenticated AES → Twofish → Serpent streaming cascade and v1.0/v1.1 interoperability
- Optional independent secondary keyslot for the outer Serpent layer
- Safe PAX archiving, atomically private staging, no-overwrite promotion, and full-content source verification
- Windows x64/ARM64 and macOS x64/ARM64 build targets
- Headless core, desktop app, interoperability CLI, deterministic vectors, and Rust verifier
- Format 2.0 streaming Brotli compression presets: Off, Balanced, and Maximum
- Authenticated size padding: None, 10%, or next size bucket
- One output selector for destination, filename, compression, and padding