Levels Guide Criteria Manifesto Get Started Glossary Blockchainology
A Practical Guide to Digital Sovereignty

Digital
Hijrah

Reclaiming your privacy, money & identity — one tool at a time

The Digital Hijrah is a migration — away from surveillance capitalism, toward self-sovereignty. This guide helps individuals, families and communities take back control of their digital lives using open, ethical and privacy-respecting tools.

Begin Your Migration Browse the Guide
BitcoinNostrSelf-Custody Open SourcePrivacySelf-Hosting GrapheneOSLinuxBDS Local AIFediverse
Scroll

Where are you on the path?

Digital Hijrah is not all-or-nothing. Choose your level and progress at your own pace — every step toward sovereignty counts.

Level 1
Aware

You understand the problem and want smarter choices. Family-friendly, beginner tools with no technical setup. Start here — every step counts.

SignalProtonMailBitwardenFirefox
Level 2
Sovereign

You self-custody Bitcoin, use Nostr, run privacy software. Comfortable with some technical setup. This is the core of the journey.

ColdCardNostrGrapheneOSLinux
Level 3
Citadel

You run your own node, self-host services, use Linux full-time, host local AI. You are your own server, bank, and infrastructure.

Bitcoin NodeUmbrelNextcloudLocal LLM

How we evaluate tools

Every tool is assessed against eight criteria including BDS alignment. No tool is perfect — but knowing the trade-offs is itself an act of sovereignty.

This guide includes a BDS criterion. We assess links to Zionist investors, Israeli state contracts (including Project Nimbus), NSO Group connections, Unit 8200 alumni companies, and documented occupation infrastructure. Clean = no confirmed links. We encourage community corrections and ongoing verification.
Open Source
Code is publicly auditable. No hidden backdoors. Community can fork and improve.
Self-Hostable
Run it on your own hardware. Your data stays on your terms.
Privacy-Centric
Minimal data collection. No tracking, profiling, or selling of user data.
No KYC
Does not require identity documents or phone number to use.
Beginner Friendly
Accessible to non-technical users and families without compromising principles.
Bitcoin Native
Supports Bitcoin/Lightning as a first-class citizen. Not shitcoin-friendly.
Ethical Business
Sustainable model respecting users. Not VC-captured or ad-funded surveillance.
BDS Clean
No confirmed links to Zionist investors, Israeli military contracts, or occupation infrastructure.
Column guide:OS=Open SourceSH=Self-HostablePR=PrivacyKYC=No-KYCUX=Beginner UXBTC=BitcoinET=Ethical BizBDS=BDS Clean
Gold StandardExcels across nearly all criteria. Recommended without reservation.
Solid ChoiceGood on most criteria with reasonable trade-offs.
Stepping StoneBetter than mainstream. Useful while migrating.
Avoid / CautionSignificant concerns. Understand risks fully.

The complete toolkit

Browse by category. Filter by sovereignty level. Every tool scored against 8 criteria including BDS. Living document — updated as the ecosystem evolves.

Last reviewed: May 2025. BDS scores based on publicly available information — corrections welcome. ✓=Yes ✗=No ~=Partial —=N/A. Tools listed as Avoid are shown for migration reference.
Level:
Bitcoin Wallets — Mobile

Self-custodial Lightning for spending; on-chain wallets for holding. Your first wallet should be non-custodial.

ToolOSSH PRKYCUX BTCET BDSRating
Phoenix WalletSelf-custodial Lightning. No account. ACINQ (French). Best L1/L2 hybrid.
★ Gold
Wallet of SatoshiCustodial Lightning. Best beginner UX. Not your keys — step only.
~
~
◆ Step
NunchukMulti-sig mobile wallet. Collaborative custody. Excellent for inheritance planning.
~
★ Gold
Mutiny WalletSelf-custodial Lightning/Nostr PWA. Open source, browser-based.
~
● Silver
Blue WalletSimple, open source Bitcoin & Lightning wallet. Good beginner-to-intermediate.
● Silver
Hardware Wallets — Cold Storage

For securing significant Bitcoin offline. The hardware you choose is your sovereign vault.

ToolOSSH PRKYCUX BTCET BDSRating
ColdCard Mk4Gold standard. Air-gapped, Bitcoin-only. Coinkite (Canadian). Most secure available.
~
★ Gold
Foundation PassportOpen source hardware, Bitcoin-only, made in USA. Air-gapped. Excellent design.
★ Gold
Trezor Safe 3Open source hardware. SatoshiLabs (Czech). Good first cold wallet. User-friendly.
~
● Silver
LedgerClosed firmware. 2023 data breach. Ledger Recover seed-sharing feature. Use with caution.
~
~
~
~
⚠ Caution
Desktop Wallets & Node Software

Full UTXO control, coinjoin, multi-sig. Connect to your own node for full sovereignty.

ToolOSSH PRKYCUX BTCET BDSRating
Sparrow WalletPower user desktop wallet. Full UTXO control, Whirlpool coinjoin, multi-sig. Bitcoin-only.
~
★ Gold
Bitcoin CoreRun your own full node. Validate every transaction yourself. The backbone of sovereignty.
★ Gold
UmbrelSelf-hosted node OS. Bitcoin Core, LND, apps. Beautiful UI. Raspberry Pi or NUC.
~
★ Gold
LNbitsSelf-hosted Lightning wallet platform. Run your own Lightning bank for your masjid.
~
★ Gold
Start9 (Embassy)Self-hosted personal server OS. Rival to Umbrel. Strong privacy focus. Bitcoin apps.
~
★ Gold

What is Nostr?

Nostr (Notes and Other Stuff Transmitted by Relays) is a decentralised protocol for identity and communication. Your identity is a cryptographic key pair you own completely. No company can ban you, no server can delete you. It integrates natively with Bitcoin Lightning via Zaps. Your npub is your public address; your nsec is your private key — guard it like a seed phrase.

Nostr Clients

Your nsec IS your identity. Never enter it into a website you do not fully trust.

ToolOSSH PRKYCUX BTCET BDSRating
PrimalBest beginner Nostr. Mobile + web. Integrated Lightning wallet. Fast caching relay.
★ Gold
DamusiOS-native Nostr. Clean, fast. Zaps. Well-maintained. The original Twitter/X alternative.
★ Gold
AmethystFeature-rich Android Nostr. Zaps, DMs, communities, video. Very capable.
~
● Silver
NosturiOS Nostr client focused on quality. Clean feed, communities, long-form support.
★ Gold
Alby / nos2xBrowser extensions for Nostr key signing. Keep nsec safe from websites (NIP-07).
~
★ Gold
Nostr Connect (Nsec.app)Remote signing — your key stays on a secure device, signs from others. Ideal for power users.
★ Gold
Self-hosted Relay (strfry)Run your own Nostr relay. Maximum censorship resistance. Your social graph, your server.
★ Gold
Messaging

Replace WhatsApp (Meta) and Telegram with encrypted, private alternatives.

ToolOSSH PRKYCUX BTCET BDSRating
SignalE2E encrypted messaging & calls. Gold standard UX. Requires phone number.
● Silver
Nostr DMs (NIP-17)Encrypted DMs over Nostr. No phone number. Censorship-resistant. Bitcoin native.
~
★ Gold
SimpleX ChatNo user IDs at all. Zero metadata. Most private messenger available.
~
★ Gold
Matrix / ElementFederated, self-hostable. Rooms, voice, video. Full control of your server.
~
★ Gold
WhatsAppMeta-owned. Metadata harvested. Listed as migration reference — migrate away.
⚠ Avoid
TelegramNot E2E by default. Regular chats are server-side encrypted only. Use Secret Chats.
~
~
~
~
⚠ Caution
Email

Private encrypted email. No scanning your inbox for ads or government surveillance.

ToolOSSH PRKYCUX BTCET BDSRating
ProtonMailE2E encrypted email from Switzerland. Free tier. Excellent for beginners.
~
● Silver
Tutanota / TutaOpen source, E2E encrypted German email. Calendar included. No tracking.
● Silver
Mailcow (self-hosted)Run your own mail server. Full control. Requires a VPS and technical skill.
★ Gold
GmailMigration reference. Google scans content and complies with surveillance requests.
⚠ Avoid
Video & Voice Calls

Encrypted calls replacing Zoom, Google Meet, WhatsApp calls.

ToolOSSH PRKYCUX BTCET BDSRating
Signal CallsEncrypted voice/video via Signal. Easy, audited, trusted.
● Silver
Jitsi MeetOpen source video conferencing. Self-hostable. No account needed for guests.
★ Gold
ZoomMigration reference. Surveillance compliance. VC investors with Israeli equity.
⚠ Avoid

Why host your own LLM?

Every prompt you send to OpenAI, Google Gemini or Microsoft Copilot is potentially used for training, stored on their servers, and subject to government requests. Self-hosted LLMs run entirely on your hardware — no data leaves your machine. With modern hardware (Apple Silicon, NVIDIA GPU, or even CPU), running capable local models is achievable by intermediate users. This is the frontier of digital sovereignty.

Local LLM Runners

Run open-weight AI models on your own hardware. No internet required after model download.

ToolOSSH PRKYCUX BTCET BDSRating
OllamaThe easiest way to run LLMs locally. CLI + REST API. Runs Llama, Mistral, Gemma, Qwen & more.
~
★ Gold
LM StudioGUI for running local LLMs. Beginner-friendly. Windows/Mac/Linux. Chat interface included.
~
● Silver
Jan.aiOpen source desktop AI assistant. Runs local models with clean UI. Self-hostable API.
★ Gold
Open WebUISelf-hosted web UI for Ollama and OpenAI-compatible APIs. Like ChatGPT but yours.
~
★ Gold
LocalAIDrop-in OpenAI API replacement running locally. For developers. Runs many model types.
★ Gold
GPT4AllDesktop app for running LLMs locally. Beginner-friendly. No GPU required for small models.
● Silver
Open-Weight Models

The AI brains you run locally. Downloaded once, used forever offline.

These are the models themselves — downloaded and run via Ollama, LM Studio, or Jan. Choose based on your hardware capability.
Llama 3 (Meta)
Excellent general-purpose model. 8B runs on 8GB RAM. 70B needs GPU. Best open-weight available. Note: Meta BDS concerns — use model with awareness.
Mistral / Mixtral
French AI — clean BDS status. Excellent reasoning. Mistral 7B runs on most hardware. Mixtral 8x7B for higher capability. Sovereign European AI.
Gemma 3 (Google)
Google's open-weight model. Very capable at small sizes. Note: Google Project Nimbus — use model with awareness of parent company concerns.
Qwen 2.5 (Alibaba)
Chinese company. Excellent multilingual. Strong Arabic support — relevant for Muslim communities. No Israeli links. Chinese state concerns instead.
DeepSeek R1
Chinese company. Exceptional reasoning. MIT licensed. Self-host to avoid sending data to Chinese servers. Same hardware requirements as Llama 70B.
Phi-4 (Microsoft)
Microsoft's small but capable model. Runs on CPU. Note: Microsoft provides cloud infrastructure to Israeli MOD and Mossad. Use with awareness.
Cloud AI — BDS Assessment

For when local AI is not possible. Know who you are sending data to.

ToolOSSH PRKYCUX BTCET BDSRating
Claude (Anthropic)Capable AI assistant. US company. Privacy policy reasonable. No confirmed Israeli links.
~
~
~
● Silver
Hugging FaceOpen source AI hub. Self-hostable inference. Community models. Privacy-respecting.
~
★ Gold
OpenAI / ChatGPTMicrosoft-backed. Microsoft Azure serves Israeli military. Data sent to US servers.
⚠ Avoid
Google GeminiGoogle AI. Project Nimbus — Israeli military cloud. All data on Google infrastructure.
⚠ Avoid
Microsoft CopilotMicrosoft AI. Azure infrastructure for Israeli MOD and Mossad documented.
⚠ Avoid
Cloud Storage & Sync

Replace Google Drive, iCloud and Dropbox. Your files should never be readable by a corporation.

ToolOSSHPRKYCUXBTCETBDSRating
Proton DriveE2E encrypted cloud from Proton. Easy sync across devices. Zero-knowledge. Swiss-based.
~
● Silver
NextcloudSelf-hosted Google Workspace alternative. Files, calendar, contacts, video, office.
~
★ Gold
SyncthingP2P file sync between your devices. No cloud server needed at all. Fully local.
~
★ Gold
CryptomatorClient-side encryption before any cloud. Works with existing storage. Layer over anything.
★ Gold
Google DriveMigration reference. Google scans files. Project Nimbus — Israeli military cloud.
⚠ Avoid
Password Management

One strong, unique password per account. A password manager is non-negotiable.

ToolOSSHPRKYCUXBTCETBDSRating
BitwardenOpen source password manager. Free tier. Excellent UX. Self-hostable via Vaultwarden.
★ Gold
KeePassXCLocal password database. Encrypted file you control entirely. Zero cloud dependency.
~
★ Gold
1PasswordPolished but proprietary and VC-backed. Accel Partners investment — Israeli tech portfolio.
~
~
⚠ Caution
Mobile Operating Systems

Your phone is the most intimate surveillance device in existence. Take it back.

ToolOSSHPRKYCUXBTCETBDSRating
GrapheneOSGold standard privacy Android OS. Google Pixel hardware. Hardened, fast, usable daily.
★ Gold
CalyxOSPrivacy Android with microG for app compatibility. Easier transition from stock Android.
● Silver
Sailfish OSLinux-based mobile OS from Finland. For advanced users. Growing app ecosystem.
● Silver
iPhone / iOSMigration reference. Apple complies with government requests. iCloud scanned.
~
~
~
~
⚠ Caution
Stock AndroidMigration reference. Google Play Services = full telemetry. Migrate when possible.
~
⚠ Avoid
Desktop / Laptop Operating Systems

Windows and macOS are surveillance platforms. Linux is your freedom OS.

ToolOSSHPRKYCUXBTCETBDSRating
Linux MintBest Linux for beginners. Familiar interface, huge community. Free forever.
● Silver
UbuntuMost popular Linux. Canonical (UK) maintained. Some Snap store concerns — use with care.
~
● Silver
FedoraCutting-edge Linux. Red Hat backed. Rolling updates. Excellent hardware support.
~
~
~
● Silver
Arch LinuxComplete control. Build your own system. Steep learning curve but maximum freedom.
★ Gold
Qubes OSCompartmentalised OS. Each activity in isolated VM. Maximum security model.
★ Gold
Tails OSAmnesic live OS via USB. Routes all traffic through Tor. For high-risk situations.
~
★ Gold
Windows 11Migration reference. Recall AI scans screen. NSA backdoor history. Microsoft = Israeli MOD cloud.
⚠ Avoid
Laptops & Computers — BDS Hardware Assessment

Hardware brands that respect your freedom and have clean BDS status.

Hardware choices matter. Avoid brands with documented Israeli state ties or Unit 8200 manufacturing relationships.

★ Framework Laptop
Modular, repairable laptops. Made in Taiwan. Runs Linux excellently. No Israeli ties. Ethical manufacturing. The sovereign laptop choice.
★ ThinkPad (used/older)
Pre-Lenovo ThinkPads are legendary. Modern Lenovos are Chinese-manufactured — no Israeli links but Chinese state concerns. Best Linux compatibility.
★ Purism Librem
Linux-native laptops with hardware kill switches. PureOS (Debian-based). Made in USA. Designed for maximum privacy and freedom. More expensive.
~ Dell / HP
HP has significant Israeli government contracts (HP provides biometric ID systems used in Israeli checkpoints). Dell less documented. Research before purchase.
✗ HP (avoid)
HP Inc and HP Enterprise have documented contracts providing technology used in Israeli military checkpoints and occupation infrastructure. BDS recommends boycott.
~ Apple Mac
Apple M-series chips co-developed with Intel Israel. No direct military contracts found. Privacy better than Windows. BDS status: complicated. Own judgment.
Raspberry Pi & Single Board Computers

The building blocks of the home Citadel. Cheap, powerful, open.

A Raspberry Pi 4 or 5 (4-8GB RAM) is the foundation of the home sovereignty stack. Add a 2TB SSD and you have a Bitcoin node, Nextcloud server, VPN, Nostr relay and Pi-hole — all for under £150. British-designed, no BDS concerns.
Raspberry Pi 5 (8GB)
Latest Pi. Fast enough for Bitcoin node + apps. ~£80. British-designed. BDS clean.
Intel NUC / Mini PC
x86 mini PC. More powerful than Pi. Runs any Linux distro. Better for heavy workloads.
ODROID / Rock Pi
Korean/Chinese alternatives to Pi. Good performance. Less community support.
Printers, Scanners & Office Hardware — BDS
Printers contain firmware that can spy on you. Many brands have Israeli ties. Choose carefully.
★ Brother (prefer)
Japanese company. Linux drivers available. No confirmed Israeli ties. Reliable, long-lasting. Best privacy choice for home printing.
~ Canon / Epson
Japanese companies. No direct Israeli military contracts known. Reasonable Linux support. Acceptable if Brother unavailable.
✗ HP Printers (avoid)
HP has documented Israeli government contracts. BDS calls for boycott of HP products. HP OfficeJet, LaserJet — avoid.
~ Xerox
US company with Israeli joint ventures historically. Research current status. Not recommended as first choice.
TVs, Monitors & Displays — BDS
Smart TVs are surveillance devices. Prefer dumb monitors or TVs running open firmware.
★ Dumb Monitor (best)
A plain monitor with HDMI/DisplayPort. No firmware, no tracking, no smart OS. Connect a Raspberry Pi running Kodi or FOSS streaming instead.
★ LG / Samsung (with caveats)
Korean TVs. No direct Israeli military links found. Disable smart features, block network access in router. Use for display only.
~ Philips / TCL
European/Chinese brands. No Israeli ties confirmed. Budget options. Disable smart features.
~ Install LibreELEC
Replace smart TV OS with LibreELEC (Kodi-based). Runs on Raspberry Pi connected to any TV. Open source, no tracking, excellent media player.

The Fediverse & Decentralised Alternatives

Corporate social media platforms are attention extraction machines — surveilling users, amplifying outrage, and in several cases having documented ties to Israeli intelligence and military. The Fediverse (ActivityPub-based federated social networks) and Nostr provide censorship-resistant alternatives where you own your identity and data. Self-host for maximum sovereignty.

Video Platforms (YouTube alternatives)

Replace YouTube — Google's surveillance platform with Project Nimbus Israeli military contracts.

ToolOSSHPRKYCUXBTCETBDSRating
PeerTubeFederated, self-hostable YouTube alternative. ActivityPub. Host your own instance.
~
★ Gold
Odysee / LBRYBlockchain-based video platform. Censorship-resistant. Crypto payments built in.
~
~
~
● Silver
RumbleLess censored than YouTube but VC-backed right-leaning. Limited privacy.
~
~
~
⚠ Caution
YouTubeMigration reference. Google = Project Nimbus Israeli military cloud. All content funds it.
⚠ Avoid
Microblogging (Twitter/X alternatives)

Nostr is the sovereign choice. The Fediverse provides federated alternatives.

ToolOSSHPRKYCUXBTCETBDSRating
Nostr (Primal/Damus)Sovereign identity. Bitcoin-native. No company can ban you. Your keys, your identity.
★ Gold
MastodonFederated Twitter/X alternative. ActivityPub. Self-hostable. No algorithmic feed.
● Silver
Twitter / XMigration reference. Elon Musk has documented relationships with Israeli intelligence.
⚠ Avoid
BlueskyAT Protocol. Better than X but Jack Dorsey backed, VC-funded. Centralised by default.
~
~
~
~
⚠ Caution
Photo Sharing (Instagram alternatives)
ToolOSSHPRKYCUXBTCETBDSRating
PixelfedFederated Instagram alternative. ActivityPub. Self-hostable. No ads, no algorithm.
★ Gold
Nostr (image posts)Share images via Nostr. Censorship-resistant. Bitcoin-native community.
~
★ Gold
InstagramMigration reference. Meta-owned. Documents facial recognition. Military surveillance ties.
⚠ Avoid
TikTokChinese state-adjacent. Algorithm engineered for maximum engagement and data extraction.
~
⚠ Avoid
Team Collaboration (Slack/Discord alternatives)
ToolOSSHPRKYCUXBTCETBDSRating
MattermostOpen source Slack alternative. Self-hostable. Teams, channels, integrations, search.
~
★ Gold
Rocket.ChatOpen source team messaging. Self-hostable. Video calls, bots, marketplace.
~
★ Gold
ZulipThreaded team messaging. Open source. Self-hostable. Used by many open source communities.
~
★ Gold
Matrix / ElementFederated, E2E encrypted. Self-hostable. Best for communities needing full control.
~
★ Gold
DiscordPopular but proprietary. Collects extensive voice/text data. VC-backed.
⚠ Avoid
SlackSalesforce-owned. Full message surveillance. Enterprise surveillance tool.
⚠ Avoid

The Smart Home Trap

Every Amazon Echo, Google Nest and Apple HomePod is a permanently-on microphone in your home — recording ambient conversation, building profiles, and transmitting to servers you cannot audit. Home automation is genuinely useful; the answer is not to avoid it but to run it yourself. Home Assistant is the sovereign smart home platform.

Smart Home Hubs & Automation

Replace Alexa/Google Home with fully local, self-hosted home automation.

ToolOSSHPRKYCUXBTCETBDSRating
Home AssistantThe gold standard self-hosted home automation. Runs on Raspberry Pi. 3000+ integrations. Fully local.
~
★ Gold
Gladys AssistantSimpler self-hosted home assistant. Beginner-friendlier than Home Assistant. Open source.
● Silver
OpenHABJava-based self-hosted home automation. Mature, extensive protocol support.
● Silver
Amazon Echo/AlexaPermanently-on microphone. Amazon AWS = Israeli intelligence cloud (disclosed contracts).
⚠ Avoid
Google Nest/HomeGoogle surveillance device for your home. Project Nimbus = Israeli military cloud.
⚠ Avoid
Apple HomePodBetter privacy than Google/Amazon but iCloud-dependent. Government cooperation documented.
~
~
~
⚠ Caution
Smart Speakers & Voice (local)
ToolOSSHPRKYCUXBTCETBDSRating
Mycroft / OpenVoiceOSFully open source local voice assistant. No cloud. All processing on-device.
★ Gold
Whisper (local STT)OpenAI Whisper model run locally for speech-to-text. Offline. Used in Home Assistant.
~
● Silver
Cars & Vehicles

Modern cars are surveillance devices on wheels. Know your car's data policies.

Connected cars transmit location, driving behaviour, and sometimes in-cabin audio to manufacturers. Some brands have documented data-sharing with governments and insurers.
✗ Tesla (avoid)
Cameras constantly recording. Data sent to Tesla servers. Elon Musk has documented ties to Israeli intelligence. xAI Grok trained on car camera data.
~ Modern Connected Cars
Most 2020+ cars with cellular connectivity share data. Toyota, VW, BMW have all had data breach incidents. Disable connected services where possible.
★ Older Non-Connected Cars
Pre-2015 vehicles without cellular connectivity. No data transmission. Fix with open source OBD tools. The sovereign vehicle choice.
★ Disable In-Car Systems
Remove SIM card from connected modules. Use Android Auto/CarPlay via USB only (not wireless). Use a standalone Garmin GPS rather than Google Maps.

No-Code, Low-Code & Self-Hosted Infrastructure

You don't need to be a developer to build powerful tools and automate your digital life. No-code and low-code platforms let you build apps, automate workflows, and manage data — with self-hosted options keeping everything under your control.

No-Code App Builders
ToolOSSHPRKYCUXBTCETBDSRating
AppwriteOpen source Firebase alternative. Backend for web/mobile apps. Self-hostable. Auth, DB, storage.
~
★ Gold
PocketbaseSingle-file backend with admin UI, auth, realtime DB, file storage. Remarkable for solo devs.
★ Gold
SupabaseOpen source Firebase alternative. PostgreSQL-based. Self-hostable. Excellent developer UX.
~
★ Gold
NocoDBOpen source Airtable alternative. Turn any database into a smart spreadsheet/app.
★ Gold
BudibaseOpen source low-code platform. Build internal apps, forms, workflows. Self-hostable.
★ Gold
Glide AppsNo-code apps from spreadsheets. Not open source. Cloud-hosted. Easy for beginners.
~
~
~
⚠ Caution
Workflow Automation (self-hosted)
ToolOSSHPRKYCUXBTCETBDSRating
n8nSelf-hosted workflow automation. 400+ integrations. Like Zapier but yours.
~
★ Gold
ActivepiecesOpen source Zapier/Make alternative. Self-hostable. 100+ integrations.
★ Gold
HuginnSelf-hosted agent automation. Like IFTTT on your own server. Powerful but complex.
● Silver
ZapierPopular automation but cloud-only. Data passes through their servers. VC-backed.
~
~
~
⚠ Caution
Self-Hosted Infrastructure
ToolOSSHPRKYCUXBTCETBDSRating
Umbrel HomeApp store for self-hosted services. Bitcoin node, Nextcloud, Nostr relay — one box.
★ Gold
CasaOSBeginner-friendly home server OS. Docker-based. One-click app store. Great for families.
● Silver
YunoHostSelf-hosted app platform for Debian. Automatic SSL, DNS, email, apps. Very accessible.
★ Gold
PortainerDocker management GUI. Makes self-hosting containers much more accessible.
● Silver
CoolifySelf-hostable Heroku/Netlify alternative. Deploy apps to your own server easily.
★ Gold
Cloudflare (basic)Free tunnels, DNS, CDN. Very useful but US company with government relationships.
~
~
~
◆ Step
VPN & Network Privacy

VPNs shift trust from your ISP to the VPN provider. Choose carefully — or self-host.

ToolOSSHPRKYCUXBTCETBDSRating
Mullvad VPNNo accounts ever. Pay Bitcoin or cash. Best privacy VPN. Independently audited. Reliable.
★ Gold
ProtonVPNSwiss-based. Free tier available. Open source apps. No-logs policy audited.
~
● Silver
WireGuard (self-hosted)Run your own VPN on a VPS. Open source, fast, minimal attack surface.
~
★ Gold
Tor NetworkOnion routing for true anonymity. Slow but unmatched for sensitive work.
★ Gold
NordVPNPopular but data logging incidents. Tefincom SA registration. Questionable privacy claims.
~
~
~
⚠ Caution
ExpressVPN / KapeKape Technologies (parent) founded by Israeli entrepreneurs with Unit 8200 connections.
~
⚠ Avoid
DNS & Ad Blocking
ToolOSSHPRKYCUXBTCETBDSRating
Pi-holeNetwork-level DNS ad/tracker blocker. Self-hosted on Raspberry Pi. Blocks for whole network.
~
★ Gold
AdGuard HomeLike Pi-hole but with better UI. Self-hostable. Blocks ads/trackers at DNS level.
● Silver
NextDNSCloud-based DNS filtering. Privacy-focused. Easy setup. Paid service.
~
● Silver
Quad9 DNSPrivacy-respecting public DNS. No logging. Swiss non-profit. Block malicious domains.
● Silver
Cloudflare 1.1.1.1Fast DNS. Claims privacy. But Cloudflare is US company with government relationships.
~
~
~
◆ Step
Home Server & NAS
ToolOSSHPRKYCUXBTCETBDSRating
TrueNAS SCALEEnterprise-grade open source NAS OS. ZFS, Docker, VMs. For serious home lab.
~
★ Gold
Synology NASCommercial NAS. Good UI, lots of apps. Proprietary OS but hardware is solid.
~
~
● Silver
Raspberry Pi + OMVRaspberry Pi running OpenMediaVault — DIY NAS. Cheap, capable, fully open.
~
★ Gold

The Digital Hijrah Framework

Why we migrate, what we migrate toward, and the principles that guide every recommendation in this guide.

Version 1.0 · May 2026
Digital Hijrah: A Framework for Digital Sovereignty
Reclaiming privacy, money, identity, community and conscience — one tool at a time
بسم الله In the name of God, we begin the migration.
"The Hijrah was not merely a physical migration — it was a migration toward conditions that allowed the full expression of truth, community, and dignity."

The Problem

We live in the age of surveillance capitalism. Our communications are mined, our attention is sold, our money is debased, and our identities are owned by corporations whose interests are fundamentally opposed to ours. This is not accidental — the architecture of the modern internet was designed for extraction. And increasingly, the companies profiting from this surveillance have documented ties to military intelligence operations and — critically — to institutions directly involved in the oppression of Palestine.

The Six Pillars

1. Sound Money (Bitcoin). Self-custody means no bank, government or corporation stands between you and your wealth. Fixed supply. Permissionless. This is monetary sovereignty.

2. Sovereign Identity (Nostr). Your digital identity should not be owned by Twitter/X, Facebook or Google. Nostr gives you a cryptographic identity you control completely — censorship-resistant, Bitcoin-native.

3. Private Communication. Every conversation, every email, every file should be encrypted. Signal, SimpleX, Matrix — the tools of private discourse.

4. Open Infrastructure. Software should be open to inspection. Self-hosting means your data never leaves your control. The Citadel begins at home.

5. Sovereign Intelligence (Local AI). Every prompt you send to OpenAI or Google Gemini is stored, potentially used for training, and subject to government requests. Self-hosted LLMs running on your own hardware restore cognitive sovereignty — your thoughts remain private.

6. BDS Alignment. Boycott, Divestment and Sanctions is not separate from digital sovereignty — it is an expression of it. The same systems of control that extract from users are often those funding and enabling occupation. Choosing tools free from Zionist investment and Israeli state contracts is an act of digital solidarity and Islamic conscience.

The Path Forward

Three levels — Aware, Sovereign, and Citadel — meet people wherever they are. The migration requires only the conviction that your data, your money, your identity, your thoughts, and your values are worth protecting.

Related Resources

Scholarly and community writings that inform and extend the Digital Hijrah framework.

Understanding Digital Hijra
Muslim Bitcoiner · Bitcoin Majlis

A community essay exploring the concept of Digital Hijra — the intentional migration from surveillance platforms toward sovereignty tools — through an Islamic lens.

An Islamic Review of the Cypherpunk Manifesto
Shaykh Mu'awwiyah Tucker · Meta Madeenah

A scholarly Islamic analysis of Eric Hughes' foundational Cypherpunk Manifesto — examining privacy, encryption and digital rights through the lens of Islamic jurisprudence and values.


Your migration path

Ordered for maximum impact with minimum friction. Each step builds on the last.

01
Week 1 · Level 1
Secure Communications

Replace WhatsApp with Signal. Replace Gmail with ProtonMail. Install uBlock Origin. Switch to Brave Search or DuckDuckGo. These changes take one hour and dramatically reduce your exposure.

02
Week 2 · Level 1
Password Sovereignty

Install Bitwarden and migrate all passwords. Enable 2FA everywhere using Aegis (Android) or Raivo (iOS) — not SMS. One unique, strong password per account.

03
Month 1 · Level 1–2
Buy Bitcoin & Self-Custody

Buy from Bisq (maximum privacy) or a low-KYC exchange. Withdraw immediately to Phoenix Wallet (Lightning) or Sparrow. "Not your keys, not your coins." Back up your seed phrase on paper — never digitally.

04
Month 2 · Level 2
Join Nostr

Create your Nostr identity. Back up your nsec offline immediately. Connect to the Bitcoin Majlis community at bitcoinmajlis.org. Send your first Zap — Bitcoin-native social interaction.

05
Month 3 · Level 2
GrapheneOS Phone

Purchase a Google Pixel (used is fine). Install GrapheneOS via the web installer — genuinely beginner-friendly. Your phone is the most intimate surveillance device you own. Reclaim it.

06
Month 3–6 · Level 2
Linux Desktop

Install Linux Mint alongside Windows (dual boot) to start. Spend a month daily. When comfortable, go Linux-only. LibreOffice replaces Microsoft Office. You just left the Microsoft surveillance platform.

07
Month 4 · Level 2
Local AI

Install Ollama on your computer and pull a model: ollama run mistral. Install Open WebUI for a ChatGPT-like interface. Your AI queries now stay on your machine — private, sovereign.

08
Month 6+ · Level 3
Run Your Bitcoin Node

Raspberry Pi 5 (8GB) + 2TB SSD + Umbrel. Your node validates every transaction. Connect Sparrow Wallet to your node. You are no longer trusting anyone else's truth about the blockchain.

09
Ongoing · Level 3
Build Community Sovereignty

Share what you learn. Help your family take the first steps. Set up a family Bitcoin wallet. Run LNbits for your masjid. Host Nextcloud for your community. Deploy Home Assistant. The Citadel is built together — not alone.


Key terms explained

Alphabetically ordered. Use the search to filter instantly.

30 terms
Amazon AWS
Amazon's cloud infrastructure. Amazon has documented contracts with the Israeli Ministry of Defense and intelligence services. AWS powers large parts of Israeli state infrastructure.
BDS
Boycott, Divestment and Sanctions. A Palestinian-led movement calling for economic and social pressure on institutions complicit in the occupation of Palestine.
Bitcoin
Decentralised digital money with a fixed supply of 21 million coins. No central authority. Peer-to-peer. The monetary foundation of the Digital Hijrah.
Citadel
Level 3 of the Digital Hijrah — running your own Bitcoin node, self-hosting services, using Linux full-time and hosting local AI. The advanced sovereignty practitioner.
Coinjoin
A Bitcoin privacy technique where multiple users combine their transactions into one, making it harder to trace who paid whom. Used in Sparrow Wallet via Whirlpool.
Digital Sovereignty
Genuine control over your digital life: money, identity, communications, data, AI and devices — without dependence on hostile third parties.
E2EE
End-to-End Encryption. Only the communicating parties can read the messages. Service providers cannot read your data even if compelled by law.
Fediverse
A network of federated, interoperable social media servers running open protocols (ActivityPub). Mastodon, Pixelfed, PeerTube and Matrix are part of the Fediverse.
GrapheneOS
A hardened, privacy-focused Android OS for Google Pixel phones. Removes Google surveillance while maintaining Android app compatibility via sandboxed Play.
Hijrah
The migration of the Prophet Muhammad ﷺ from Mecca to Medina. Used here as a metaphor for purposeful migration toward conditions of greater dignity and freedom.
Home Assistant
Open source home automation software. Self-hosted on a Raspberry Pi. Replaces Amazon Echo, Google Nest and Apple HomePod with fully local, private control.
KYC
Know Your Customer — government identity verification requirements on financial services. In Bitcoin, KYC'd coins are linked to your identity. Avoid where possible.
Lightning Network
A second-layer payment protocol on top of Bitcoin enabling instant, near-free micropayments. Used for day-to-day transactions and Nostr Zaps.
LLM
Large Language Model. The AI 'brain' behind tools like ChatGPT and Claude. Self-hosted LLMs (Llama, Mistral, DeepSeek) run entirely on your hardware — no data leaves your machine.
Local AI
AI models running on your own hardware with no internet connection required after download. Ollama, LM Studio and Jan make this accessible to intermediate users.
Nostr
Notes and Other Stuff Transmitted by Relays. A simple, decentralised protocol for identity and communication. Your key pair IS your identity — censorship-resistant.
npub / nsec
Your Nostr public key (npub) is your public identity. Your nsec is your private key — guard it like a seed phrase. Never share or enter it on websites you don't trust.
Ollama
The simplest way to run LLMs locally. Command-line tool that downloads and runs AI models. Supports Llama, Mistral, DeepSeek, Gemma and many more.
Open Source
Software whose source code is publicly available for inspection, modification and distribution. The opposite of proprietary black-box software.
Project Nimbus
A contract between Google, Amazon and the Israeli government providing cloud and AI infrastructure to the Israeli military and intelligence services.
Raspberry Pi
Single-board computer designed in the UK. ~£80. The building block of the home Citadel — runs Bitcoin nodes, Nextcloud, Home Assistant, Pi-hole and more.
Seed Phrase
12 or 24 words that regenerate your Bitcoin wallet. Your actual wealth. Write on paper, store offline. Never photograph or enter into any website.
Self-Custody
Holding your own Bitcoin private keys, rather than trusting an exchange or custodian. 'Not your keys, not your coins.' The foundation of financial sovereignty.
Self-Hosting
Running software on your own hardware instead of renting capacity from a cloud provider. Your data stays physically under your control.
SimpleX Chat
The most private messaging app available. Has no user IDs at all — not even a username. No metadata. Fully encrypted. Self-hostable relay servers.
Surveillance Capitalism
The economic system in which human behaviour is commodified as data and sold to advertisers. Google, Meta, Amazon and their ecosystem are its primary practitioners.
Unit 8200
Israeli military intelligence unit equivalent to the NSA. Many Israeli tech companies — including cyber surveillance firms like NSO Group — were founded by Unit 8200 alumni.
UTXO
Unspent Transaction Output — the 'coins' in Bitcoin. Understanding UTXOs matters for privacy: different UTXOs should not be carelessly combined in transactions.
Zap
Sending a Bitcoin Lightning payment to someone on Nostr as an expression of appreciation or support. The monetary-native social interaction of the sovereign internet.
Zero-Knowledge Proof
A cryptographic method where one party can prove to another that something is true without revealing any underlying information. Used in some Bitcoin privacy tools.

No terms matching your search.