<!-- https://zerolog.ch/news/zerocode-android-split-brain-and-vault -->
# ZeroCode for Android 1.16: Split-brain routing and vault security

2026-09-22 · Product

> ZeroCode for Android 1.16 introduces split-brain execution, a hardware-backed credential vault, visual set-of-mark navigation, and comprehensive permission onboarding.

The Android client has been upgraded to version 1.16.0, adding workload routing, hardware-backed vault security, and vision-assisted screen automation.

## Split-brain execution and dual runtimes

The agent now balances tasks between the local phone and cloud instances. Local device settings, application controls, notifications, and clipboard actions execute on-device through Android shell and accessibility tools. Heavy jobs like video processing with FFmpeg and network mapping with Nmap route directly to remote root Linux containers.

The application embeds both Python 3.11 and Node.js runtimes, communicating across a local loopback WebSocket server on 127.0.0.1:8765 to execute official coding CLIs natively with complete terms of service compliance.

## Hardware vault and visual navigation

A new hardware-backed credential vault uses Android KeyStore AES-256 GCM encryption for opt-in unattended device wake and unlock. Secret characters are zeroed out in memory immediately after injection, while an OLED display saver protects the panel during long overnight tasks.

For applications lacking accessibility text labels, visual Set-of-Mark processing annotates live screen captures with numbered bounding boxes. The multimodal agent views these tags to identify and click icons reliably.

## Onboarding and permissions

A dedicated setup flow guides users through seven system permissions, including Shizuku ADB access without root, floating chat overlays, two-factor code interception, and battery optimization exemptions.
