Nyrni uses the unmodified sing-box 1.14.2 command-line executable as a separate
TUN-to-SOCKS process. The VLESS/REALITY connection remains in Xray 26.3.27.

sing-box copyright (C) 2022 nekohasekai <contact-sagernet@sekai.icu>.
License: GNU GPL version 3 or later, with the additional naming condition in the
upstream LICENSE included in this directory. Nyrni does not imply affiliation
with or endorsement by sing-box or SagerNet.
Official release: https://github.com/SagerNet/sing-box/releases/tag/v1.14.2
Matching source: https://github.com/SagerNet/sing-box/tree/v1.14.2
Source archive: https://github.com/SagerNet/sing-box/archive/refs/tags/v1.14.2.zip
Build/dependency instructions: https://sing-box.sagernet.org/installation/build-from-source/
GPL text: https://www.gnu.org/licenses/gpl-3.0.txt

The executable embeds Wintun 0.14.1 (WireGuard LLC) through sing-tun
ddaa4ca25e3b. Its Windows DLL is loaded from embedded bytes, not downloaded at
runtime. The upstream Wintun driver is installed when an administrator starts
the TUN for the first time. Wintun: https://www.wintun.net/
Wintun sources/license: https://git.zx2c4.com/wintun/
sing-tun source: https://github.com/SagerNet/sing-tun/tree/ddaa4ca25e3b
The Go Wintun wrapper is MIT licensed (WireGuard LLC, 2017-2021).

The release archive also contains libcronet.dll for the optional Naive outbound.
Nyrni does not use Naive and does not distribute or load libcronet.dll.

This is a closed test build. IPv4 TCP/UDP and DNS are routed through the tunnel;
IPv6 is blocked while active because the current exit has no working IPv6.
This is not a persistent kill switch: process exit restores ordinary connectivity.
