# Introduction and Overview

> Overview of Root Lock by HeartSuite, setup process, and system requirements.

---

LLMS index: [llms.txt](/llms.txt)

---

---

*Root Lock by HeartSuite | Humans in Command*

---

**Overview**: Every attack does three things: run a program, access files, make a network connection. Root Lock by HeartSuite enforces default-deny on all three at the kernel level — per program, not per user. In Lockdown, any program not on the allowlist — including malware running as root — is blocked before it can execute. The immutable seal refuses any change to the allowlist while running, including by root. Undoing Lockdown requires a reboot with physical access. See [Mode Switching and Lockdown](../mode-switching/) for the activation prep (per-panel actions/opt-outs including `[g]` tool restriction, read-only inventory) and mechanism. The Dashboard guides you through a 7-phase journey from installation to Lockdown, always showing your current progress and the Suggested Next Step.

## In this section

- [Root Lock by HeartSuite Overview](heartsuite-overview/) — Core features, how it protects against malware, and the 7 phases.
- [The Setup Journey](setup-overview/) — The seven phases from installation to Lockdown, the Cloud and Local paths, and how the Dashboard guides you.
- [System Requirements](system-requirements/) — Compatible systems, kernel versions, and prerequisites.
- [Deployment Scenarios](deployment-scenarios/) — Environments and workloads where Root Lock by HeartSuite fits best, plus notes on incompatible stacks.
- [How Root Lock by HeartSuite Compares](how-it-compares/) — What Root Lock by HeartSuite replaces, what it complements, and how it can be circumvented.

For detailed installation steps, see [Installation](../installation/). Root Lock by HeartSuite supports both Cloud (pre-installed) and Local (manual install) paths — both converge at the Dashboard after Phase 1 (System Verification).

---

Section pages:

- [Root Lock by HeartSuite Overview](/docs/introduction/heartsuite-overview/): Core concepts and purpose of Root Lock by HeartSuite security suite.
- [The Setup Journey](/docs/introduction/setup-overview/): How Root Lock by HeartSuite guides you from installation to Lockdown through seven phases.
- [System Requirements](/docs/introduction/system-requirements/): Hardware and software prerequisites for Root Lock by HeartSuite compatibility.
- [Deployment Scenarios](/docs/introduction/deployment-scenarios/): Environments and workloads where Root Lock by HeartSuite's kernel-level allowlisting fits best.
- [How Root Lock by HeartSuite Compares](/docs/introduction/how-it-compares/): How Root Lock by HeartSuite relates to other security tools — what it replaces, what it complements, and how it can be circumvented.
- [Security as Economics](/docs/introduction/security-as-economics/): Attacker cost, defender operational cost, and ROI comparison — how Root Lock by HeartSuite changes the economics of every attack that reaches the host.
- [Linux Security Layer Analysis](/docs/introduction/layer-analysis/): A taxonomy of Linux host security products by enforcement layer — where each mechanism sits in the stack and what that means for bypass surface.
- [When Root Isn't Enough](/docs/introduction/in-practice/): How Root Lock by HeartSuite's three enforcement mechanisms hold against real attacks — one example per mechanism, including what it does not cover.
