Vault Flasher

CCGnomes·CCGnomes.VaultFlasher

One-click USB flasher for Vault Node images

Vault Flasher downloads the official Vault Node image, verifies its SHA-256 against the release's published digest, and writes it to a removable USB drive with a single click — with a read-back verification pass and optional WiFi presetting. It only ever offers removable USB drives (never an internal or system disk) and re-validates the target inside its elevated writer.

winget install --id CCGnomes.VaultFlasher --exact --source winget

Latest 0.7.7

Release Notes

Vault Manager v0.7.7

You can now name the devices asking to join a space, so you can tell which is which. When two devices are waiting for you to approve them, the node often labels them identically (or not at all) — so approving the right one meant comparing raw keys. Now you give each one your own name once, and it shows under that name every time it appears.

Name a device on the space-join screen

Every device waiting to join a space gets a "Name this device" button (it reads "Rename" once you've named it). Click it, type something you'll recognise — "Mark's phone" — and Save.

• The name shows in place of whatever the node called the device, with the device's full key still underneath for the character-by-character check, and the name the device gave itself kept faintly beside yours. • It follows the device — the same device shows the same name across refreshes and across every space it asks to join. • It is kept on this computer only. Naming a device changes nothing about the device and does not grant it any access — the node has no way to set these labels, so this is Vault Manager's own note to you. (It deliberately does not follow a re-paste:re-opening an invite makes a brand-new key, and Vault Manager never pretends two keys are the same device — the same reason it warns you about superseded requests.)

Verification

242 unit tests (4 new):the name renders by agent key; it follows one key across spaces but a different key (a re-paste) carries no name; an empty key is never named; and the name is trimmed, bounded to 60 characters, and cleared by a blank. • The naming, keying and normalisation live in Rust as the single source of truth; the screen renders the result, and the invoke-args guard confirms the page and the command agree. • Live-driven on the built binary: the release vault-manager.exe was launched and the naming command exercised against the real local store — a name is trimmed and persisted under the device's key, a blank clears it, a long name is capped at 60, and a keyless request is refused with a reason. 7/7, against no node.

The one thing still owed is the button-click-through against a real pending join request, which needs a device actually asking to join one of your spaces — the same live cert as the screen's other actions. The naming itself is complete and tested.

Downloads

Published under both VaultManager-* and VaultFlasher-* names; the bytes are identical.

NSIS setup.exe  sha256  fd6b8e2d311e208c223c6b61236db9386a84ef1031a269203e6040c6bd61f1e3
MSI             sha256  f18dc2ac80d064126f8e015c9de7948c8fd25fef942e7cdf606e04f0761ea327

Installer type: nullsoft

x64FD6B8E2D311E208C223C6B61236DB9386A84EF1031A269203E6040C6BD61F1E3

Details

Homepage
https://github.com/markCCGnomes/vault-flasher-releases
License
Vault Ecosystem License v1.1
Publisher
CCGnomes
Support
https://ccgnomes.com/vaultnode/setup/
Copyright
Copyright (c) 2026 CCGnomes
Moniker
vault-flasher

Tags

flasherusbvault-nodeimaging

Older versions (7)

0.7.5
x6475AB43DF8C268683C7F11F169EF3028AD68367CBA569E7C6A435E1B8DE22FF30
0.7.4
x64FE14EE25D1363F663F75A3604BDAA8AB63B61002111E3280E2B72FDDBA42F5BF
0.7.3
x64FA5DA2638D59D6C1B740A5F1A109A930ED015B883E3E5741FD1ADF9D3D082EDF
0.7.1
x64B8BE652F3E91827FFBA82E4FC187C7326196074EF7AEC1323D6BD0AADD1971D0
0.7.0
x6436F7E3F514F3278EC2A4590E8F057EDD4B8B84E58DCF1A60C0F9EC67342CF19A
0.6.10
x64731FEF1EF700B551041BE20D6E3DF28BA3E674B1E0F92D30EBADE2DD93699C1E
0.1.0
x64F9E76DEEC41552173812BF244AB490E438C14E1E1E9F29571F81627AB81A1263