824 lines
1.3 MiB
824 lines
1.3 MiB
<!doctype html>
|
||
<html lang="en">
|
||
<head>
|
||
<meta charset="utf-8">
|
||
<meta name="viewport" content="width=device-width, initial-scale=1, viewport-fit=cover">
|
||
<title>Igneum Test and Acceptance Standard: every case, shown as it passes</title>
|
||
<meta name="description" content="The Igneum 2.0 Test and Acceptance Standard, 190 cases in 18 suites, case by case: each case in the standard’s words, the five gates, the profiles and the fixtures. A checklist, never a completion dashboard.">
|
||
<link rel="canonical" href="https://igneum.network/acceptance">
|
||
<!-- share:start -->
|
||
<meta property="og:type" content="website">
|
||
<meta property="og:site_name" content="Igneum">
|
||
<meta property="og:title" content="Igneum Test and Acceptance Standard: every case, shown as it passes">
|
||
<meta property="og:description" content="The Igneum 2.0 Test and Acceptance Standard, 190 cases in 18 suites, case by case: each case in the standard’s words, the five gates, the profiles and the fixtures. A checklist, never a completion dashboard.">
|
||
<meta property="og:url" content="https://igneum.network/acceptance">
|
||
<meta property="og:image" content="https://igneum.network/og/home.png?v=5">
|
||
<meta property="og:image:type" content="image/png">
|
||
<meta property="og:image:width" content="1200">
|
||
<meta property="og:image:height" content="630">
|
||
<meta property="og:image:alt" content="The GPU-mined chain that proves every block. igneum.network">
|
||
<meta property="og:image" content="https://igneum.network/og/home-square.png?v=5">
|
||
<meta property="og:image:type" content="image/png">
|
||
<meta property="og:image:width" content="1200">
|
||
<meta property="og:image:height" content="1200">
|
||
<meta property="og:image:alt" content="The GPU-mined chain that proves every block. igneum.network">
|
||
<meta name="twitter:card" content="summary_large_image">
|
||
<meta name="twitter:title" content="Igneum Test and Acceptance Standard: every case, shown as it passes">
|
||
<meta name="twitter:description" content="The Igneum 2.0 Test and Acceptance Standard, 190 cases in 18 suites, case by case: each case in the standard’s words, the five gates, the profiles and the fixtures. A checklist, never a completion dashboard.">
|
||
<meta name="twitter:image" content="https://igneum.network/og/home.png?v=5">
|
||
<meta name="twitter:image:alt" content="The GPU-mined chain that proves every block. igneum.network">
|
||
<!-- share:end -->
|
||
<!-- head:start -->
|
||
<link rel="preload" href="/fonts/unbounded-900.woff2" as="font" type="font/woff2" crossorigin>
|
||
<link rel="preload" href="/fonts/plex-sans-400.woff2" as="font" type="font/woff2" crossorigin>
|
||
<meta name="color-scheme" content="dark light">
|
||
<link rel="stylesheet" href="/site.css">
|
||
<style>
|
||
/* Shared by every page: the head partial, injected by the build between the head markers. Edit the partial, not the page. */
|
||
/* Fonts, self-hosted (latin subsets, OFL): Unbounded 500/700/900, IBM Plex Sans 400/500/600, IBM Plex Mono 400/500. Fallbacks carry size and ascent overrides so the swap does not move the layout. The tokens, type and components are in /site.css (docs/plans/site-ui-3.md). */
|
||
@font-face{font-family:'Unbounded';font-style:normal;font-weight:500;font-display:swap;src:url(/fonts/unbounded-500.woff2) format('woff2');unicode-range:U+0000-00FF,U+0131,U+0152-0153,U+02BB-02BC,U+02C6,U+02DA,U+02DC,U+0304,U+0308,U+0329,U+2000-206F,U+20AC,U+2122,U+2191,U+2193,U+2212,U+2215,U+FEFF,U+FFFD}
|
||
@font-face{font-family:'Unbounded';font-style:normal;font-weight:700;font-display:swap;src:url(/fonts/unbounded-700.woff2) format('woff2');unicode-range:U+0000-00FF,U+0131,U+0152-0153,U+02BB-02BC,U+02C6,U+02DA,U+02DC,U+0304,U+0308,U+0329,U+2000-206F,U+20AC,U+2122,U+2191,U+2193,U+2212,U+2215,U+FEFF,U+FFFD}
|
||
@font-face{font-family:'Unbounded';font-style:normal;font-weight:900;font-display:swap;src:url(/fonts/unbounded-900.woff2) format('woff2');unicode-range:U+0000-00FF,U+0131,U+0152-0153,U+02BB-02BC,U+02C6,U+02DA,U+02DC,U+0304,U+0308,U+0329,U+2000-206F,U+20AC,U+2122,U+2191,U+2193,U+2212,U+2215,U+FEFF,U+FFFD}
|
||
@font-face{font-family:'IBM Plex Sans';font-style:normal;font-weight:400;font-display:swap;src:url(/fonts/plex-sans-400.woff2) format('woff2');unicode-range:U+0000-00FF,U+0131,U+0152-0153,U+02BB-02BC,U+02C6,U+02DA,U+02DC,U+0304,U+0308,U+0329,U+2000-206F,U+20AC,U+2122,U+2191,U+2193,U+2212,U+2215,U+FEFF,U+FFFD}
|
||
@font-face{font-family:'IBM Plex Sans';font-style:normal;font-weight:500;font-display:swap;src:url(/fonts/plex-sans-500.woff2) format('woff2');unicode-range:U+0000-00FF,U+0131,U+0152-0153,U+02BB-02BC,U+02C6,U+02DA,U+02DC,U+0304,U+0308,U+0329,U+2000-206F,U+20AC,U+2122,U+2191,U+2193,U+2212,U+2215,U+FEFF,U+FFFD}
|
||
@font-face{font-family:'IBM Plex Sans';font-style:normal;font-weight:600;font-display:swap;src:url(/fonts/plex-sans-600.woff2) format('woff2');unicode-range:U+0000-00FF,U+0131,U+0152-0153,U+02BB-02BC,U+02C6,U+02DA,U+02DC,U+0304,U+0308,U+0329,U+2000-206F,U+20AC,U+2122,U+2191,U+2193,U+2212,U+2215,U+FEFF,U+FFFD}
|
||
@font-face{font-family:'IBM Plex Mono';font-style:normal;font-weight:400;font-display:swap;src:url(/fonts/plex-mono-400.woff2) format('woff2');unicode-range:U+0000-00FF,U+0131,U+0152-0153,U+02BB-02BC,U+02C6,U+02DA,U+02DC,U+0304,U+0308,U+0329,U+2000-206F,U+20AC,U+2122,U+2191,U+2193,U+2212,U+2215,U+FEFF,U+FFFD}
|
||
@font-face{font-family:'IBM Plex Mono';font-style:normal;font-weight:500;font-display:swap;src:url(/fonts/plex-mono-500.woff2) format('woff2');unicode-range:U+0000-00FF,U+0131,U+0152-0153,U+02BB-02BC,U+02C6,U+02DA,U+02DC,U+0304,U+0308,U+0329,U+2000-206F,U+20AC,U+2122,U+2191,U+2193,U+2212,U+2215,U+FEFF,U+FFFD}
|
||
@font-face{font-family:'Unbounded Fallback';src:local('Arial Black'),local('Arial-Black'),local('Impact');size-adjust:114%;ascent-override:87.5%;descent-override:21.5%;line-gap-override:0%}
|
||
@font-face{font-family:'Plex Sans Fallback';src:local('Arial'),local('Helvetica Neue'),local('Helvetica');size-adjust:100.5%;ascent-override:102%;descent-override:27.4%;line-gap-override:0%}
|
||
@font-face{font-family:'Plex Mono Fallback';src:local('Courier New'),local('Menlo');size-adjust:100%;ascent-override:102.5%;descent-override:27.5%;line-gap-override:0%}
|
||
</style>
|
||
<script>
|
||
/* theme before first paint: ?theme=light|dark for one view (the capture tool), else the stored choice under igneum-theme, else the system setting; ?motion=off marks the page data-motion=off so every .reveal is drawn at once (a headless render never scrolls) */
|
||
(function(){var t=null;try{t=new URLSearchParams(location.search).get("theme");}catch(e){}if(t!=="light"&&t!=="dark"){try{t=localStorage.getItem("igneum-theme");}catch(e){t=null;}}if(t!=="light"&&t!=="dark")t=window.matchMedia&&window.matchMedia("(prefers-color-scheme: light)").matches?"light":"dark";document.documentElement.setAttribute("data-theme",t);try{if(new URLSearchParams(location.search).get("motion")==="off")document.documentElement.setAttribute("data-motion","off");}catch(e){}})();
|
||
</script>
|
||
<!-- head:end -->
|
||
<style>
|
||
/* /acceptance (8 October 2026): the page's own rules. Every colour is a token from /site.css; both themes follow from them. */
|
||
.acc-hero .acc-title{font-size:clamp(30px,4.2vw,56px);max-width:18ch}
|
||
.acc-hero .lead{max-width:62ch}
|
||
.acc-basis{margin-top:16px;font:400 13px/1.7 var(--mono);color:var(--ash)}
|
||
.acc-basis span{color:var(--ember-text);text-transform:uppercase;letter-spacing:.12em;margin-right:8px}
|
||
.acc-tally{margin-top:32px;border:1px solid var(--line);border-radius:var(--r-card);background:var(--graphite);padding:24px}
|
||
.acc-words{display:flex;flex-wrap:wrap;gap:8px}
|
||
.acc-word{display:inline-flex;align-items:center;font:500 11px/1.4 var(--mono);letter-spacing:.1em;text-transform:uppercase;padding:6px 10px;border-radius:var(--r-pill);border:1px solid var(--line-2);color:var(--ink-2)}
|
||
.acc-word.approved{border-color:var(--ember);color:var(--ember-text);background:var(--ember-tint)}
|
||
.acc-word.deferred{border-color:var(--line-2);background:var(--row);color:var(--ash)}
|
||
.acc-word.exec{border-style:dashed;color:var(--bone)}
|
||
.acc-line{margin-top:16px;color:var(--bone);font:500 15px/1.6 var(--sans);max-width:110ch}
|
||
.acc-bar{display:flex;gap:2px;height:8px;margin-top:16px;border-radius:4px;overflow:hidden;background:var(--row)}
|
||
.acc-bar .seg{display:block;min-width:4px;height:100%}
|
||
.g-pass{background:var(--ember)}
|
||
.g-fail{background:var(--molten)}
|
||
.g-blocked{background:repeating-linear-gradient(135deg,var(--molten) 0 4px,color-mix(in srgb,var(--molten) 35%,transparent) 4px 8px)}
|
||
.g-running{background:var(--ink-2)}
|
||
.g-notrun{background:var(--line-2)}
|
||
.g-deferred{background:repeating-linear-gradient(135deg,var(--line-2) 0 4px,var(--line) 4px 8px)}
|
||
.g-excluded{background:var(--excluded)}
|
||
.acc-legend{list-style:none;display:flex;flex-wrap:wrap;gap:8px 24px;margin:16px 0 0;padding:0;font:400 13px/1.5 var(--mono);color:var(--ash)}
|
||
.acc-legend li{display:inline-flex;align-items:center;gap:8px}
|
||
.acc-legend b{color:var(--bone);font-weight:500}
|
||
.acc-legend .sw{display:inline-block;width:12px;height:8px;border-radius:2px}
|
||
/* the chips: ember PASS, graphite NOT RUN and DEFERRED, molten FAIL and BLOCKED, a neutral outline RUNNING */
|
||
.acc-chip{display:inline-flex;align-items:center;gap:6px;font:500 10px/1.3 var(--mono);letter-spacing:.08em;text-transform:uppercase;white-space:nowrap;padding:5px 8px;border-radius:var(--r-pill);border:1px solid var(--line-2)}
|
||
.acc-chip.s-pass{background:var(--ember);border-color:var(--ember);color:var(--ember-ink)}
|
||
.acc-chip.s-notrun,.acc-chip.s-deferred{background:var(--graphite);border-color:var(--line-2);color:var(--ash)}
|
||
.acc-chip.s-fail{background:color-mix(in srgb,var(--molten) 16%,transparent);border-color:var(--molten);color:var(--molten-text)}
|
||
.acc-chip.s-blocked{background:transparent;border:1px dashed var(--molten);color:var(--molten-text)}
|
||
.acc-chip.s-running{background:transparent;border-color:var(--ink-2);color:var(--bone)}
|
||
.acc-chip.s-running:before{content:"";width:6px;height:6px;border-radius:50%;background:var(--bone);animation:acc-pulse 1.6s ease-in-out infinite}
|
||
.acc-chip.s-excluded{background:transparent;border-color:var(--excluded);color:var(--excluded)}
|
||
@keyframes acc-pulse{50%{opacity:.25}}
|
||
/* the suite jump row */
|
||
.acc-jump{display:flex;flex-wrap:wrap;gap:6px;padding-top:8px;padding-bottom:8px}
|
||
.acc-jump a{font:500 11px/1.4 var(--mono);letter-spacing:.08em;padding:6px 10px;border:1px solid var(--line);border-radius:var(--r-pill);color:var(--ink-2)}
|
||
.acc-jump a:hover{border-color:var(--ember);color:var(--ember-text)}
|
||
/* the gates */
|
||
.acc-sub{color:var(--ink-2);margin-top:12px;max-width:72ch;font-size:16px}
|
||
.acc-gates-sec h2{max-width:24ch}
|
||
.acc-g0{margin-top:32px}
|
||
.acc-five{display:grid;grid-template-columns:repeat(5,minmax(0,1fr));gap:16px;margin-top:16px}
|
||
.acc-tracks-h{margin-top:40px;font-size:17px}
|
||
.acc-tracks{display:grid;grid-template-columns:repeat(3,minmax(0,1fr));gap:16px;margin-top:16px}
|
||
.acc-gate{position:relative;border:1px solid var(--line);border-radius:var(--r-card);background:var(--graphite);padding:24px;min-width:0;display:flex;flex-direction:column;gap:8px;overflow:hidden}
|
||
.acc-gate:before{content:"";position:absolute;left:0;top:0;right:0;height:3px;background:var(--line-2)}
|
||
.acc-gate.st-pass:before{background:var(--ember)}
|
||
.acc-gate.st-fail:before,.acc-gate.st-blocked:before{background:var(--molten)}
|
||
.acc-gate.st-running:before{background:var(--ink-2)}
|
||
.acc-gate-top{display:flex;align-items:center;justify-content:space-between;gap:8px}
|
||
.acc-gate-id{font:900 34px/1 var(--display);letter-spacing:-.04em;color:var(--bone)}
|
||
.acc-gate.small .acc-gate-id{font-size:24px}
|
||
.acc-gate h3{font-size:18px;margin-top:4px}
|
||
.acc-gate-d{font:500 11px/1.4 var(--mono);letter-spacing:.1em;text-transform:uppercase;color:var(--ember-text)}
|
||
.acc-gate-c{font-size:14px;line-height:1.5;color:var(--ink-2)}
|
||
.acc-gate .acc-bar{margin-top:8px}
|
||
.acc-gate-n{font:400 12px/1.5 var(--mono);color:var(--ash)}
|
||
.acc-gs{list-style:none;margin:8px 0 0;padding:0;display:flex;flex-direction:column;gap:6px}
|
||
.acc-gs li{display:flex;align-items:center;gap:8px;font:500 12px/1.4 var(--mono);border-top:1px solid var(--line);padding-top:6px}
|
||
.acc-gs a{color:var(--bone);min-width:4ch}
|
||
.acc-gs a:hover{color:var(--ember-text)}
|
||
.acc-gs-n{color:var(--ash);margin-right:auto}
|
||
.acc-g0 .acc-gate{display:grid;grid-template-columns:auto minmax(0,1fr) minmax(0,1.4fr);gap:8px 32px;align-items:start}
|
||
.acc-g0 .acc-gate>*{grid-column:2}
|
||
.acc-g0 .acc-gate>.acc-gate-top{grid-column:1;grid-row:1/span 6}
|
||
.acc-g0 .acc-gate>.acc-gs{grid-column:3;grid-row:1/span 6;margin:0}
|
||
/* a suite */
|
||
.acc-suite{border-top:1px solid var(--line)}
|
||
.acc-suite.section{padding:64px 0}
|
||
.acc-suite-head{display:grid;grid-template-columns:auto minmax(0,1fr) auto;gap:24px;align-items:start}
|
||
.acc-suite-code{font:900 clamp(32px,4vw,52px)/1 var(--display);letter-spacing:-.04em;color:var(--ember-text)}
|
||
.acc-suite-code .n{display:block;font:500 11px/1.4 var(--mono);letter-spacing:.16em;color:var(--ash);margin-bottom:8px}
|
||
.acc-suite-t h2{font-size:clamp(22px,2.4vw,32px)}
|
||
.acc-facts{display:grid;grid-template-columns:repeat(4,minmax(0,1fr));gap:16px 24px;margin:28px 0 0}
|
||
.acc-facts>div{border-top:1px solid var(--line);padding-top:12px;min-width:0}
|
||
.acc-facts dt,.acc-meta dt{font:500 11px/1.4 var(--mono);letter-spacing:.1em;text-transform:uppercase;color:var(--ash)}
|
||
.acc-facts dd,.acc-meta dd{margin:4px 0 0;font-size:14px;line-height:1.5;color:var(--ink-2);overflow-wrap:anywhere}
|
||
.acc-gl a{font:500 11px/1 var(--mono);padding:3px 6px;border:1px solid var(--line-2);border-radius:var(--r-pill);color:var(--bone);margin-left:4px}
|
||
.acc-suite-bar{display:flex;align-items:center;gap:16px;margin-top:24px}
|
||
.acc-suite-bar .acc-bar{flex:1;margin:0}
|
||
.acc-suite-bar>span{font:400 12px/1.4 var(--mono);color:var(--ash)}
|
||
/* the case rows: a details element per case, its summary the row, keyboard-reachable */
|
||
.acc-cases{margin-top:20px;border:1px solid var(--line);border-radius:12px;background:var(--row);overflow:hidden}
|
||
.acc-cases-h,.acc-case>summary{display:grid;grid-template-columns:84px minmax(0,1fr) 80px 128px 96px 84px 112px 16px;gap:12px;align-items:center;padding:12px 16px}
|
||
.acc-cases-h{font:500 10px/1.4 var(--mono);letter-spacing:.12em;text-transform:uppercase;color:var(--ash);border-bottom:1px solid var(--line)}
|
||
.acc-case+.acc-case{border-top:1px solid var(--line)}
|
||
.acc-case>summary{cursor:pointer;list-style:none;font-size:14px;color:var(--ink-2)}
|
||
.acc-case>summary::-webkit-details-marker{display:none}
|
||
.acc-case>summary:hover{background:var(--graphite)}
|
||
.acc-case[open]>summary{background:var(--graphite)}
|
||
.acc-case>summary:focus-visible{outline:2px solid var(--ember);outline-offset:-2px}
|
||
.c-id{font:500 13px/1.4 var(--mono);color:var(--bone)}
|
||
.c-title{color:var(--bone);font-weight:500}
|
||
.c-pri,.c-prof,.c-run{font:400 12px/1.4 var(--mono);color:var(--ash)}
|
||
.c-ev{font:400 12px/1.4 var(--mono)}
|
||
.c-ev a{color:var(--ember-text);text-decoration:underline;text-underline-offset:3px}
|
||
.none{color:var(--ash)}
|
||
.lbl{display:none}
|
||
.c-caret{width:10px;height:10px;border-right:1.5px solid var(--ash);border-bottom:1.5px solid var(--ash);transform:rotate(45deg) translate(-2px,-2px);transition:transform .15s}
|
||
.acc-case[open] .c-caret{transform:rotate(-135deg) translate(-2px,-2px)}
|
||
.acc-panel{padding:24px;background:var(--obsidian);border-top:1px solid var(--line)}
|
||
.acc-panel>blockquote{margin:0}
|
||
.acc-panel h4{font:500 11px/1.4 var(--mono);letter-spacing:.12em;text-transform:uppercase;color:var(--ember-text);margin-top:20px}
|
||
.acc-panel h4:first-child{margin-top:0}
|
||
.acc-panel p,.acc-panel li{font-size:15px;line-height:1.6;color:var(--ink-2);max-width:86ch}
|
||
.acc-panel p{margin-top:6px}
|
||
.acc-panel ol{margin:6px 0 0;padding-left:22px}
|
||
.acc-panel li+li{margin-top:4px}
|
||
.acc-meta{display:grid;grid-template-columns:repeat(auto-fit,minmax(160px,1fr));gap:12px 24px;margin:20px 0 0}
|
||
.acc-meta>div{border-top:1px solid var(--line);padding-top:8px;min-width:0}
|
||
.acc-rec{margin-top:8px}
|
||
/* profiles and fixtures */
|
||
.acc-profiles,.acc-fixtures{border-top:1px solid var(--line)}
|
||
.acc-prof-grid{display:grid;grid-template-columns:repeat(2,minmax(0,1fr));gap:16px;margin-top:32px}
|
||
.acc-prof{border:1px solid var(--line);border-radius:var(--r-card);background:var(--graphite);padding:24px;min-width:0}
|
||
.acc-prof.deferred{background:var(--row);border-style:dashed}
|
||
.acc-prof-top{display:flex;align-items:center;justify-content:space-between;gap:12px;flex-wrap:wrap}
|
||
.acc-prof-id{font:900 22px/1 var(--display);letter-spacing:-.03em;color:var(--ember-text)}
|
||
.acc-prof.deferred .acc-prof-id{color:var(--ash)}
|
||
.acc-pstate{font:500 10px/1.3 var(--mono);letter-spacing:.08em;text-transform:uppercase;padding:5px 8px;border-radius:var(--r-pill);border:1px solid var(--ember);color:var(--ember-text);background:var(--ember-tint)}
|
||
.acc-pstate.deferred{border-color:var(--line-2);color:var(--ash);background:var(--graphite)}
|
||
.acc-pstate.proposed{border-color:var(--line-2);color:var(--ink-2);background:transparent}
|
||
.acc-prof h3{margin-top:12px;font-size:18px}
|
||
.acc-req{margin:12px 0 0;padding-left:20px}
|
||
.acc-req li{font-size:14px;line-height:1.6;color:var(--ink-2)}
|
||
.acc-req li+li{margin-top:6px}
|
||
.acc-note{margin-top:16px;padding:16px;border:1px solid var(--molten);border-radius:var(--r-row);background:color-mix(in srgb,var(--molten) 8%,transparent);font:500 14px/1.5 var(--sans);color:var(--bone);display:flex;gap:12px;align-items:flex-start}
|
||
.acc-prof-n{margin-top:16px;font:400 12px/1.5 var(--mono);color:var(--ash)}
|
||
.acc-fix-grid{display:grid;grid-template-columns:repeat(auto-fill,minmax(280px,1fr));gap:16px;margin-top:32px}
|
||
.acc-fix{border:1px solid var(--line);border-radius:var(--r-card);background:var(--graphite);padding:24px;min-width:0}
|
||
.acc-fix-id{font:900 22px/1 var(--display);color:var(--ember-text)}
|
||
.acc-fix h3{margin-top:12px;font-size:17px}
|
||
.acc-fix p{margin-top:8px;font-size:14px;line-height:1.6;color:var(--ink-2)}
|
||
/* the closing notes */
|
||
.acc-foot{border-top:1px solid var(--line)}
|
||
.acc-foot-card{border:1px solid var(--line);border-radius:var(--r-card);background:var(--graphite);padding:32px}
|
||
.acc-foot-card p{color:var(--ink-2);max-width:90ch;margin-top:12px}
|
||
.acc-foot-card h3{margin-top:24px;font-size:17px}
|
||
.acc-allpass{font:500 clamp(17px,1.6vw,20px)/1.5 var(--sans);color:var(--bone)!important}
|
||
.acc-never{font:500 14px/1.6 var(--mono);color:var(--molten-text)!important}
|
||
.acc-src{font:400 12px/1.7 var(--mono);color:var(--ash)!important}
|
||
.acc-rules{margin:8px 0 0;padding-left:20px;color:var(--ink-2)}
|
||
@media(max-width:1100px){.acc-five{grid-template-columns:repeat(3,minmax(0,1fr))}.acc-facts{grid-template-columns:repeat(2,minmax(0,1fr))}
|
||
.acc-cases-h,.acc-case>summary{grid-template-columns:76px minmax(0,1fr) 72px 110px 96px 72px 16px}.acc-cases-h span:nth-child(7),.c-run{display:none}}
|
||
@media(max-width:860px){.acc-five{grid-template-columns:repeat(2,minmax(0,1fr))}.acc-tracks{grid-template-columns:1fr}.acc-prof-grid{grid-template-columns:1fr}
|
||
.acc-g0 .acc-gate{display:flex}.acc-g0 .acc-gate>.acc-gs{margin-top:8px}
|
||
.acc-cases-h{display:none}
|
||
.acc-case>summary{grid-template-columns:minmax(0,1fr) auto 16px;grid-template-areas:"id st caret" "title title title" "pri prof prof" "ev run run";gap:6px 12px;padding:14px 16px}
|
||
.c-id{grid-area:id}.c-st{grid-area:st}.c-caret{grid-area:caret}.c-title{grid-area:title}.c-pri{grid-area:pri}.c-prof{grid-area:prof}.c-ev{grid-area:ev}.c-run{grid-area:run;display:block}
|
||
.lbl{display:inline;color:var(--ash)}
|
||
.acc-suite-head{grid-template-columns:1fr auto}.acc-suite-t{grid-column:1/-1;grid-row:2}}
|
||
@media(max-width:560px){.acc-five{grid-template-columns:1fr}.acc-facts{grid-template-columns:1fr}.acc-tally{padding:24px}.acc-foot-card{padding:24px}
|
||
.acc-suite-bar{flex-direction:column;align-items:stretch;gap:8px}.acc-legend{gap:8px 16px}}
|
||
</style>
|
||
</head>
|
||
<body>
|
||
<!-- nav:start -->
|
||
<a class="skip" href="#main">Skip to content</a>
|
||
<nav class="nav" aria-label="Main" data-nav-version="5">
|
||
<div class="container nav-row">
|
||
<a href="/" class="logo" aria-label="Igneum home">
|
||
<svg class="brand-mark" viewBox="0 0 1024 1024" aria-hidden="true"><rect width="1024" height="1024" rx="160" fill="#0C0C0E"></rect><g transform="translate(166.95 166.95) scale(6.901)"><polygon points="50,4 74,34 67,58 80,54 61,96 39,96 20,54 33,58 26,34" fill="#F2541B"></polygon><polygon points="50,42 59,58 50,82 41,58" fill="#0C0C0E"></polygon></g></svg>
|
||
<span class="word">IGNEUM</span>
|
||
</a>
|
||
<span class="devnet" id="nav-devnet" title="igneum-devnet-4, the Igneum 2.0 devnet, chain id 4465. Coins have no value. The chain may reset."><span class="dot off" id="foot-dot"></span><span id="foot-state" data-devnet-state="live">Devnet live</span></span>
|
||
<div class="nav-groups" id="nav-groups" role="list">
|
||
<div class="nav-group" role="listitem"><button type="button" class="group-btn" id="nav-btn-mine" data-group="mine" aria-expanded="false" aria-controls="nav-panel-mine" aria-haspopup="true">Mine<svg class="icon" viewBox="0 0 24 24" aria-hidden="true"><path d="m7 10 5 5 5-5"/></svg></button></div>
|
||
<div class="nav-group" role="listitem"><button type="button" class="group-btn" id="nav-btn-network" data-group="network" aria-expanded="false" aria-controls="nav-panel-network" aria-haspopup="true">Network<svg class="icon" viewBox="0 0 24 24" aria-hidden="true"><path d="m7 10 5 5 5-5"/></svg></button></div>
|
||
<div class="nav-group" role="listitem"><button type="button" class="group-btn" id="nav-btn-learn" data-group="learn" data-active aria-expanded="false" aria-controls="nav-panel-learn" aria-haspopup="true">Learn<svg class="icon" viewBox="0 0 24 24" aria-hidden="true"><path d="m7 10 5 5 5-5"/></svg></button></div>
|
||
<div class="nav-group" role="listitem"><button type="button" class="group-btn" id="nav-btn-build" data-group="build" aria-expanded="false" aria-controls="nav-panel-build" aria-haspopup="true">Build<svg class="icon" viewBox="0 0 24 24" aria-hidden="true"><path d="m7 10 5 5 5-5"/></svg></button></div>
|
||
</div>
|
||
<div class="nav-controls">
|
||
<button class="btn icon-btn" type="button" data-theme-toggle aria-label="Switch to light theme"><svg class="icon" viewBox="0 0 24 24" aria-hidden="true"><circle cx="12" cy="12" r="4"/><path d="M12 2v2m0 16v2M2 12h2m16 0h2M5 5l1 1m12 12 1 1M5 19l1-1M18 6l1-1"/></svg></button>
|
||
<a href="/download" class="btn primary small cta" data-nav="download">Download</a>
|
||
<button class="burger" id="nav-burger" type="button" aria-expanded="false" aria-controls="nav-sheet" aria-label="Open the menu" aria-haspopup="true"><svg class="icon" viewBox="0 0 24 24" aria-hidden="true"><path class="bars" d="M4 6h16M4 12h16M4 18h16"/><path class="cross" d="m6 6 12 12M6 18 18 6"/></svg></button>
|
||
</div>
|
||
</div>
|
||
<div class="panels" id="nav-panels">
|
||
<div class="panel-wrap container">
|
||
<div class="nav-panel" id="nav-panel-mine" data-group="mine" role="region" aria-labelledby="nav-btn-mine" hidden>
|
||
<div class="panel-list">
|
||
<a href="/miner" data-nav="miner"><b>Ember, the miner</b><span>One click installs the node, the miner and the prover.</span></a>
|
||
<a href="/download" data-nav="download"><b>Download</b><span>Windows, macOS, Linux and HiveOS.</span></a>
|
||
<a href="/app" data-nav="app"><b>The app</b><span>What you see while the card mines.</span></a>
|
||
<a href="/wallet" data-nav="wallet"><b>The wallet</b><span>Your coins. Final means final.</span></a>
|
||
<a href="/miners" data-nav="miners"><b>GPU bench table</b><span>Measured rates, card by card.</span></a>
|
||
<a href="/tuning" data-nav="tuning"><b>Tuning</b><span>The knee rule, the priors, the flags and the compiler settings, every figure measured.</span></a><a href="/dev-fee" data-nav="dev-fee"><b>The dev fee</b><span>The optional one, in full view, off with one flag.</span></a>
|
||
<a href="/metamask" data-nav="metamask"><b>Add to MetaMask</b><span>Igneum as a network in your wallet.</span></a>
|
||
</div>
|
||
</div>
|
||
<div class="nav-panel" id="nav-panel-network" data-group="network" role="region" aria-labelledby="nav-btn-network" hidden>
|
||
<div class="panel-list">
|
||
<a href="/live" data-nav="live"><b>Live devnet</b><span>The chain as it grows, one lane per miner.</span></a>
|
||
<a href="/explorer" data-nav="explorer"><b>Explorer</b><span>Look a block or an address up.</span></a>
|
||
<a href="/evidence" data-nav="evidence"><b>Evidence</b><span>Every claim and how far it is tested.</span></a>
|
||
<a href="/light" data-nav="light"><b>Light wallet</b><span>A balance your browser proves, trusting no node.</span></a>
|
||
<a href="/receipt" data-nav="receipt"><b>Payment receipt</b><span>A receipt any third party re-verifies offline.</span></a>
|
||
<a href="/oracle" data-nav="oracle"><b>State oracle on Sepolia</b><span>Balances on the devnet, read from another chain.</span></a>
|
||
</div>
|
||
</div>
|
||
<div class="nav-panel" id="nav-panel-learn" data-group="learn" role="region" aria-labelledby="nav-btn-learn" hidden>
|
||
<div class="panel-list">
|
||
<a href="/litepaper" data-nav="litepaper"><b>Litepaper</b><span>The design, as published.</span></a>
|
||
<a href="/income" data-nav="income"><b>Income</b><span>What your card would mine, from the live network.</span></a>
|
||
<a href="/economics" data-nav="economics"><b>Economics</b><span>The emission, the split and the fees, each with its line in the node.</span></a><a href="/scorecard" data-nav="scorecard"><b>Scorecard</b><span>The twelve acceptance gates, their evidence and where each stands.</span></a><a href="/prize" data-nav="prize"><b>Prize</b><span>A better adversary or a reproduced shortcut, never a confirmation: the terms.</span></a><a href="/acceptance" data-nav="acceptance" aria-current="page"><b>Acceptance</b><span>The Test and Acceptance Standard, case by case, as each one passes.</span></a><a href="/audit" data-nav="audit"><b>Site audit</b><span>Every page, what the reset changed and what is open.</span></a><a href="/docs" data-nav="docs"><b>Documents</b><span>The plan, the standard, the specifications and the evidence files, by path.</span></a>
|
||
<a href="/ledger" data-nav="ledger"><b>Ledger</b><span>Every criticism, answered or conceded.</span></a>
|
||
<a href="/claims" data-nav="claims"><b>What Igneum does not claim</b><span>The limits, stated first.</span></a>
|
||
<a href="/randomx" data-nav="randomx"><b>Igneum vs RandomX</b><span>What was kept and what was rebuilt for GPUs.</span></a>
|
||
<a href="/provenance" data-nav="provenance"><b>Built on the shoulders</b><span>Every borrowed part, credited.</span></a>
|
||
</div>
|
||
</div>
|
||
<div class="nav-panel" id="nav-panel-build" data-group="build" role="region" aria-labelledby="nav-btn-build" hidden>
|
||
<div class="panel-list">
|
||
<a href="/build" data-nav="build"><b>Build on Igneum</b><span>Chain ids, RPC, a contract in five minutes.</span></a>
|
||
<a href="/faucet" data-nav="faucet"><b>Devnet faucet</b><span>10 IGN of devnet coin, once a day.</span></a>
|
||
<a href="/swap" data-nav="swap"><b>Swap</b><span>Test tokens on the devnet; every swap is a proven block.</span></a>
|
||
<a href="/grants" data-nav="grants"><b>Grants</b><span>Tooling, apps, infrastructure, research.</span></a>
|
||
<a href="/compatibility" data-nav="compatibility"><b>Compatibility</b><span>Every row a test run against the devnet.</span></a>
|
||
</div>
|
||
</div>
|
||
</div>
|
||
</div>
|
||
<div class="nav-sheet" id="nav-sheet" role="dialog" aria-modal="true" aria-label="Menu" hidden>
|
||
<div class="sheet-scroll">
|
||
<div class="sheet-group"><div class="sheet-head">Mine</div>
|
||
<a href="/miner" data-nav="miner"><b>Ember, the miner</b><span>One click installs the node, the miner and the prover.</span></a>
|
||
<a href="/download" data-nav="download"><b>Download</b><span>Windows, macOS, Linux and HiveOS.</span></a>
|
||
<a href="/app" data-nav="app"><b>The app</b><span>What you see while the card mines.</span></a>
|
||
<a href="/wallet" data-nav="wallet"><b>The wallet</b><span>Your coins. Final means final.</span></a>
|
||
<a href="/miners" data-nav="miners"><b>GPU bench table</b><span>Measured rates, card by card.</span></a>
|
||
<a href="/tuning" data-nav="tuning"><b>Tuning</b><span>The knee rule, the priors, the flags and the compiler settings, every figure measured.</span></a><a href="/dev-fee" data-nav="dev-fee"><b>The dev fee</b><span>The optional one, in full view, off with one flag.</span></a>
|
||
<a href="/metamask" data-nav="metamask"><b>Add to MetaMask</b><span>Igneum as a network in your wallet.</span></a>
|
||
</div>
|
||
<div class="sheet-group"><div class="sheet-head">Network</div>
|
||
<a href="/live" data-nav="live"><b>Live devnet</b><span>The chain as it grows, one lane per miner.</span></a>
|
||
<a href="/explorer" data-nav="explorer"><b>Explorer</b><span>Look a block or an address up.</span></a>
|
||
<a href="/evidence" data-nav="evidence"><b>Evidence</b><span>Every claim and how far it is tested.</span></a>
|
||
<a href="/light" data-nav="light"><b>Light wallet</b><span>A balance your browser proves, trusting no node.</span></a>
|
||
<a href="/receipt" data-nav="receipt"><b>Payment receipt</b><span>A receipt any third party re-verifies offline.</span></a>
|
||
<a href="/oracle" data-nav="oracle"><b>State oracle on Sepolia</b><span>Balances on the devnet, read from another chain.</span></a>
|
||
</div>
|
||
<div class="sheet-group"><div class="sheet-head">Learn</div>
|
||
<a href="/litepaper" data-nav="litepaper"><b>Litepaper</b><span>The design, as published.</span></a>
|
||
<a href="/income" data-nav="income"><b>Income</b><span>What your card would mine, from the live network.</span></a>
|
||
<a href="/economics" data-nav="economics"><b>Economics</b><span>The emission, the split and the fees, each with its line in the node.</span></a><a href="/scorecard" data-nav="scorecard"><b>Scorecard</b><span>The twelve acceptance gates, their evidence and where each stands.</span></a><a href="/prize" data-nav="prize"><b>Prize</b><span>A better adversary or a reproduced shortcut, never a confirmation: the terms.</span></a><a href="/acceptance" data-nav="acceptance" aria-current="page"><b>Acceptance</b><span>The Test and Acceptance Standard, case by case, as each one passes.</span></a><a href="/audit" data-nav="audit"><b>Site audit</b><span>Every page, what the reset changed and what is open.</span></a><a href="/docs" data-nav="docs"><b>Documents</b><span>The plan, the standard, the specifications and the evidence files, by path.</span></a>
|
||
<a href="/ledger" data-nav="ledger"><b>Ledger</b><span>Every criticism, answered or conceded.</span></a>
|
||
<a href="/claims" data-nav="claims"><b>What Igneum does not claim</b><span>The limits, stated first.</span></a>
|
||
<a href="/randomx" data-nav="randomx"><b>Igneum vs RandomX</b><span>What was kept and what was rebuilt for GPUs.</span></a>
|
||
<a href="/provenance" data-nav="provenance"><b>Built on the shoulders</b><span>Every borrowed part, credited.</span></a>
|
||
</div>
|
||
<div class="sheet-group"><div class="sheet-head">Build</div>
|
||
<a href="/build" data-nav="build"><b>Build on Igneum</b><span>Chain ids, RPC, a contract in five minutes.</span></a>
|
||
<a href="/faucet" data-nav="faucet"><b>Devnet faucet</b><span>10 IGN of devnet coin, once a day.</span></a>
|
||
<a href="/swap" data-nav="swap"><b>Swap</b><span>Test tokens on the devnet; every swap is a proven block.</span></a>
|
||
<a href="/grants" data-nav="grants"><b>Grants</b><span>Tooling, apps, infrastructure, research.</span></a>
|
||
<a href="/compatibility" data-nav="compatibility"><b>Compatibility</b><span>Every row a test run against the devnet.</span></a>
|
||
</div>
|
||
<div class="sheet-foot">
|
||
<a href="/download" class="btn primary big" data-nav="download">Download</a>
|
||
<div class="sheet-social"><a href="https://discord.gg/igneum" target="_blank" rel="noopener">Discord</a><a href="https://git.igneum.network/igneum-network/spec" target="_blank" rel="noopener">Source</a><a href="https://www.reddit.com/user/Igneum_network/" target="_blank" rel="noopener">Reddit</a></div>
|
||
</div>
|
||
</div>
|
||
</div>
|
||
</nav>
|
||
<script>
|
||
(function(){
|
||
// the slim bar (site-ui-5, 7 Oct 2026): three group buttons open one panel each; the burger opens the sheet on phones.
|
||
// Keyboard: Enter or Space opens a group, Escape closes it and returns focus to its button, arrows move between the
|
||
// group buttons, Tab walks the open panel's links, a click outside closes. The theme toggle flips data-theme and stores it.
|
||
var n=document.querySelector('.nav');if(!n)return;
|
||
var btns=[].slice.call(n.querySelectorAll('.group-btn')),panels=[].slice.call(n.querySelectorAll('.nav-panel')),wrap=n.querySelector('.panels');
|
||
var burger=document.getElementById('nav-burger'),sheet=document.getElementById('nav-sheet');
|
||
function panelOf(g){return panels.filter(function(p){return p.getAttribute('data-group')===g;})[0];}
|
||
function closeAll(focusBack){var was=null;btns.forEach(function(b){if(b.getAttribute('aria-expanded')==='true')was=b;b.setAttribute('aria-expanded','false');});panels.forEach(function(p){p.hidden=true;});n.classList.remove('panel-open');if(focusBack&&was)was.focus();}
|
||
function open(g){closeAll(false);var b=btns.filter(function(x){return x.getAttribute('data-group')===g;})[0],p=panelOf(g);if(!b||!p)return;b.setAttribute('aria-expanded','true');p.hidden=false;n.classList.add('panel-open');anchor(b,p);}
|
||
// the panel sits under its button; a panel that would run past the container's right edge aligns its right edge to the button's right edge instead (never past the viewport)
|
||
function anchor(b,p){var pw=n.querySelector('.panel-wrap');if(!pw)return;var cr=pw.getBoundingClientRect(),br=b.getBoundingClientRect(),w=p.offsetWidth,left=br.left-cr.left;if(left+w>cr.width)left=(br.right-cr.left)-w;if(left<0)left=0;p.style.setProperty('--panel-left',Math.round(left)+'px');}
|
||
window.addEventListener('resize',function(){var o=btns.filter(function(x){return x.getAttribute('aria-expanded')==='true';})[0];if(o)anchor(o,panelOf(o.getAttribute('data-group')));}); btns.forEach(function(b,i){
|
||
b.addEventListener('click',function(){var on=b.getAttribute('aria-expanded')==='true';if(on)closeAll(false);else open(b.getAttribute('data-group'));});
|
||
b.addEventListener('keydown',function(e){
|
||
var k=e.key;
|
||
if(k==='ArrowRight'||k==='ArrowLeft'){e.preventDefault();var j=(i+(k==='ArrowRight'?1:btns.length-1))%btns.length;btns[j].focus();if(n.classList.contains('panel-open'))open(btns[j].getAttribute('data-group'));}
|
||
else if(k==='ArrowDown'){e.preventDefault();open(b.getAttribute('data-group'));var f=panelOf(b.getAttribute('data-group')).querySelector('a');if(f)f.focus();}
|
||
else if(k==='Escape'){closeAll(true);}
|
||
});
|
||
});
|
||
if(wrap)wrap.addEventListener('keydown',function(e){if(e.key==='Escape'){e.stopPropagation();closeAll(true);}});
|
||
document.addEventListener('click',function(e){if(!n.classList.contains('panel-open'))return;if(e.target.closest('.group-btn')||e.target.closest('.nav-panel'))return;closeAll(false);});
|
||
document.addEventListener('focusin',function(e){if(!n.classList.contains('panel-open'))return;if(n.contains(e.target))return;closeAll(false);});
|
||
document.addEventListener('keydown',function(e){if(e.key==='Escape'&&n.classList.contains('panel-open'))closeAll(true);});
|
||
// the sheet on phones
|
||
function setSheet(o){if(!burger||!sheet)return;n.classList.toggle('open',o);sheet.hidden=!o;burger.setAttribute('aria-expanded',o?'true':'false');burger.setAttribute('aria-label',o?'Close the menu':'Open the menu');document.documentElement.classList.toggle('nav-locked',o);if(o){var f=sheet.querySelector('a');if(f)f.focus();}}
|
||
if(burger&&sheet){
|
||
burger.addEventListener('click',function(){setSheet(!n.classList.contains('open'));});
|
||
sheet.addEventListener('click',function(e){if(e.target.closest('a'))setSheet(false);});
|
||
sheet.addEventListener('keydown',function(e){
|
||
if(e.key==='Escape'){setSheet(false);burger.focus();return;}
|
||
if(e.key!=='Tab')return;var f=sheet.querySelectorAll('a,button');if(!f.length)return;var first=f[0],last=f[f.length-1];
|
||
if(e.shiftKey&&document.activeElement===first){e.preventDefault();burger.focus();}else if(!e.shiftKey&&document.activeElement===last){e.preventDefault();burger.focus();}
|
||
});
|
||
burger.addEventListener('keydown',function(e){if(e.key==='Tab'&&!e.shiftKey&&n.classList.contains('open')){e.preventDefault();var f=sheet.querySelector('a');if(f)f.focus();}});
|
||
var mq=window.matchMedia('(min-width:861px)');if(mq.addEventListener)mq.addEventListener('change',function(){setSheet(false);});
|
||
}
|
||
// the theme toggle
|
||
var t=n.querySelector('[data-theme-toggle]');
|
||
function paintToggle(){var dark=document.documentElement.getAttribute('data-theme')!=='light';t.setAttribute('aria-label',dark?'Switch to light theme':'Switch to dark theme');t.innerHTML=dark?'<svg class="icon" viewBox="0 0 24 24" aria-hidden="true"><circle cx="12" cy="12" r="4"/><path d="M12 2v2m0 16v2M2 12h2m16 0h2M5 5l1 1m12 12 1 1M5 19l1-1M18 6l1-1"/></svg>':'<svg class="icon" viewBox="0 0 24 24" aria-hidden="true"><path d="M20.7 13.3A8.5 8.5 0 0 1 10.7 3.3 8.5 8.5 0 1 0 20.7 13.3Z"/></svg>';}
|
||
if(t){t.addEventListener('click',function(){var v=document.documentElement.getAttribute('data-theme')==='light'?'dark':'light';document.documentElement.setAttribute('data-theme',v);try{localStorage.setItem('igneum-theme',v);}catch(e){}document.dispatchEvent(new CustomEvent('igneum-theme'));});paintToggle();document.addEventListener('igneum-theme',paintToggle);}
|
||
})();
|
||
</script>
|
||
<!-- nav:end -->
|
||
<main id="main">
|
||
<!-- acceptance:start -->
|
||
<div id="acc-root"><section class="page-hero acc-hero"><div class="container"><div class="eyebrow"><span class="line"></span>Igneum 2.0 acceptance</div><h1 class="acc-title">Test and Acceptance Standard 1.0</h1><p class="lead">Every case of the standard, shown as it is run, in the standard’s own words. A checklist, never a completion score: a gate passes only when every case it depends on has passed.</p><p class="acc-basis"><span>Basis</span> IGNEUM_2.0_Plan.pdf, 37 pages, 8 October 2026. The standard runs to 73 pages. Registry dated 8 October 2026.</p><div class="acc-tally" id="acc-tally"><div class="acc-words"><span class="acc-word approved">APPROVED AS PROPOSED 8 OCTOBER 2026</span><span class="acc-word deferred">P13 DEFERRED</span></div><p class="acc-line">Test and Acceptance Standard 1.0: APPROVED AS PROPOSED by the founder, 8 October 2026; P13 (maintenance continuity) DEFERRED; 262 cases: 8 passed under the standard, 0 running with team evidence, 7 failed, 247 not run, 0 deferred</p><div class="acc-bar" role="img" aria-label="262 cases: 8 passed under the standard, 0 running with team evidence, 7 failed, 247 not run, 0 deferred"><span class="seg g-pass" style="flex-grow:8" title="8 PASS"></span><span class="seg g-fail" style="flex-grow:7" title="7 FAIL"></span><span class="seg g-notrun" style="flex-grow:247" title="247 NOT RUN"></span></div><ul class="acc-legend"><li><i class="sw g-pass" aria-hidden="true"></i><b>8</b> pass</li><li><i class="sw g-fail" aria-hidden="true"></i><b>7</b> fail</li><li><i class="sw g-blocked" aria-hidden="true"></i><b>0</b> blocked</li><li><i class="sw g-running" aria-hidden="true"></i><b>0</b> running</li><li><i class="sw g-notrun" aria-hidden="true"></i><b>247</b> not run</li><li><i class="sw g-deferred" aria-hidden="true"></i><b>0</b> deferred</li></ul></div></div></section><nav class="acc-jump container" aria-label="Suites"><a href="#gates">Gates</a><a href="#suite-GOV">GOV</a><a href="#suite-GPU">GPU</a><a href="#suite-POW">POW</a><a href="#suite-ADV">ADV</a><a href="#suite-ROT">ROT</a><a href="#suite-ECO">ECO</a><a href="#suite-EVM">EVM</a><a href="#suite-ZKP">ZKP</a><a href="#suite-CAP">CAP</a><a href="#suite-INC">INC</a><a href="#suite-FIN">FIN</a><a href="#suite-VER">VER</a><a href="#suite-OPS">OPS</a><a href="#suite-UX">UX</a><a href="#suite-COM">COM</a><a href="#suite-LEAD">LEAD</a><a href="#suite-REV">REV</a><a href="#suite-INT">INT</a><a href="#suite-VR">VR</a><a href="#suite-TV">TV</a><a href="#profiles">Profiles</a><a href="#fixtures">Fixtures</a></nav><section class="section acc-gates-sec" id="gates"><div class="container"><div class="eyebrow"><span class="line"></span>The gates</div><h2>Five gates, and the freeze before them.</h2><p class="acc-sub">A gate reads NOT RUN until every case it depends on has run, RUNNING while any is running, BLOCKED if any is blocked, FAIL if any fails, and PASS only when every case passes. No gate is weighted into an average.</p><div class="acc-g0"><article class="acc-gate st-notrun small" id="gate-G0" data-gate-state="NOT RUN"><div class="acc-gate-top"><span class="acc-gate-id">G0</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></div><h3>Freeze</h3><p class="acc-gate-d">Release identity</p><p class="acc-gate-c">No formal run or public pass before approval.</p><div class="acc-bar" role="img" aria-label="Freeze: 8 cases: 0 passed under the standard, 0 running with team evidence, 8 not run, 0 deferred"><span class="seg g-notrun" style="flex-grow:8" title="8 NOT RUN"></span></div><p class="acc-gate-n">8 cases: 0 passed under the standard, 0 running with team evidence, 8 not run, 0 deferred</p><ul class="acc-gs"><li><a href="#suite-GOV">GOV</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li></ul></article></div><div class="acc-five"><article class="acc-gate st-notrun" id="gate-G1" data-gate-state="NOT RUN"><div class="acc-gate-top"><span class="acc-gate-id">G1</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></div><h3>Baseline</h3><p class="acc-gate-d">D1</p><p class="acc-gate-c">No validated hardware claim without reproduction.</p><div class="acc-bar" role="img" aria-label="Baseline: 16 cases: 1 passed under the standard, 0 running with team evidence, 15 not run, 0 deferred"><span class="seg g-pass" style="flex-grow:1" title="1 PASS"></span><span class="seg g-notrun" style="flex-grow:15" title="15 NOT RUN"></span></div><p class="acc-gate-n">16 cases: 1 passed under the standard, 0 running with team evidence, 15 not run, 0 deferred</p><ul class="acc-gs"><li><a href="#suite-GOV">GOV</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li><li><a href="#suite-GPU">GPU</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li></ul></article><article class="acc-gate st-fail" id="gate-G2" data-gate-state="FAIL"><div class="acc-gate-top"><span class="acc-gate-id">G2</span><span class="acc-chip s-fail" data-state="FAIL">FAIL</span></div><h3>Experiments</h3><p class="acc-gate-d">D2</p><p class="acc-gate-c">No improvement claim from a negative hypothesis.</p><div class="acc-bar" role="img" aria-label="Experiments: 32 cases: 1 passed under the standard, 0 running with team evidence, 2 failed, 29 not run, 0 deferred"><span class="seg g-pass" style="flex-grow:1" title="1 PASS"></span><span class="seg g-fail" style="flex-grow:2" title="2 FAIL"></span><span class="seg g-notrun" style="flex-grow:29" title="29 NOT RUN"></span></div><p class="acc-gate-n">32 cases: 1 passed under the standard, 0 running with team evidence, 2 failed, 29 not run, 0 deferred</p><ul class="acc-gs"><li><a href="#suite-GOV">GOV</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li><li><a href="#suite-GPU">GPU</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li><li><a href="#suite-POW">POW</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-fail" data-state="FAIL">FAIL</span></li><li><a href="#suite-ROT">ROT</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li></ul></article><article class="acc-gate st-notrun" id="gate-G3" data-gate-state="NOT RUN"><div class="acc-gate-top"><span class="acc-gate-id">G3</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></div><h3>Adversary</h3><p class="acc-gate-d">D3</p><p class="acc-gate-c">No broad resistance claim from one weak design.</p><div class="acc-bar" role="img" aria-label="Adversary: 16 cases: 0 passed under the standard, 0 running with team evidence, 16 not run, 0 deferred"><span class="seg g-notrun" style="flex-grow:16" title="16 NOT RUN"></span></div><p class="acc-gate-n">16 cases: 0 passed under the standard, 0 running with team evidence, 16 not run, 0 deferred</p><ul class="acc-gs"><li><a href="#suite-GOV">GOV</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li><li><a href="#suite-ADV">ADV</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li></ul></article><article class="acc-gate st-fail" id="gate-G4" data-gate-state="FAIL"><div class="acc-gate-top"><span class="acc-gate-id">G4</span><span class="acc-chip s-fail" data-state="FAIL">FAIL</span></div><h3>Coexistence</h3><p class="acc-gate-d">D4</p><p class="acc-gate-c">No durability claim based on assumed chip expiry.</p><div class="acc-bar" role="img" aria-label="Coexistence: 24 cases: 0 passed under the standard, 0 running with team evidence, 1 failed, 23 not run, 0 deferred"><span class="seg g-fail" style="flex-grow:1" title="1 FAIL"></span><span class="seg g-notrun" style="flex-grow:23" title="23 NOT RUN"></span></div><p class="acc-gate-n">24 cases: 0 passed under the standard, 0 running with team evidence, 1 failed, 23 not run, 0 deferred</p><ul class="acc-gs"><li><a href="#suite-GOV">GOV</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li><li><a href="#suite-ECO">ECO</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-fail" data-state="FAIL">FAIL</span></li><li><a href="#suite-INC">INC</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li></ul></article><article class="acc-gate st-notrun" id="gate-G5" data-gate-state="NOT RUN"><div class="acc-gate-top"><span class="acc-gate-id">G5</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></div><h3>No rescue</h3><p class="acc-gate-d">D5</p><p class="acc-gate-c">No no-rescue claim from a founder-supported demo.</p><div class="acc-bar" role="img" aria-label="No rescue: 56 cases: 5 passed under the standard, 0 running with team evidence, 51 not run, 0 deferred"><span class="seg g-pass" style="flex-grow:5" title="5 PASS"></span><span class="seg g-notrun" style="flex-grow:51" title="51 NOT RUN"></span></div><p class="acc-gate-n">56 cases: 5 passed under the standard, 0 running with team evidence, 51 not run, 0 deferred</p><ul class="acc-gs"><li><a href="#suite-GOV">GOV</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li><li><a href="#suite-ROT">ROT</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li><li><a href="#suite-ZKP">ZKP</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li><li><a href="#suite-INC">INC</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li><li><a href="#suite-FIN">FIN</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li><li><a href="#suite-OPS">OPS</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li><li><a href="#suite-UX">UX</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li></ul></article></div><h3 class="acc-tracks-h">The three named gates</h3><div class="acc-tracks"><article class="acc-gate st-fail small" id="gate-TR" data-gate-state="FAIL"><div class="acc-gate-top"><span class="acc-gate-id"></span><span class="acc-chip s-fail" data-state="FAIL">FAIL</span></div><h3>Technical readiness</h3><p class="acc-gate-d">Execution control</p><p class="acc-gate-c">No mainnet-ready claim with missing enforcement or safety.</p><div class="acc-bar" role="img" aria-label="Technical readiness: 64 cases: 6 passed under the standard, 0 running with team evidence, 5 failed, 53 not run, 0 deferred"><span class="seg g-pass" style="flex-grow:6" title="6 PASS"></span><span class="seg g-fail" style="flex-grow:5" title="5 FAIL"></span><span class="seg g-notrun" style="flex-grow:53" title="53 NOT RUN"></span></div><p class="acc-gate-n">64 cases: 6 passed under the standard, 0 running with team evidence, 5 failed, 53 not run, 0 deferred</p><ul class="acc-gs"><li><a href="#suite-GOV">GOV</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li><li><a href="#suite-POW">POW</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-fail" data-state="FAIL">FAIL</span></li><li><a href="#suite-EVM">EVM</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li><li><a href="#suite-ZKP">ZKP</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li><li><a href="#suite-CAP">CAP</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li><li><a href="#suite-FIN">FIN</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li><li><a href="#suite-VER">VER</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-fail" data-state="FAIL">FAIL</span></li><li><a href="#suite-UX">UX</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li></ul></article><article class="acc-gate st-notrun small" id="gate-CE" data-gate-state="NOT RUN"><div class="acc-gate-top"><span class="acc-gate-id"></span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></div><h3>Commercial evidence</h3><p class="acc-gate-d">Execution control</p><p class="acc-gate-c">Devnet activity is insufficient.</p><div class="acc-bar" role="img" aria-label="Commercial evidence: 24 cases: 0 passed under the standard, 0 running with team evidence, 24 not run, 0 deferred"><span class="seg g-notrun" style="flex-grow:24" title="24 NOT RUN"></span></div><p class="acc-gate-n">24 cases: 0 passed under the standard, 0 running with team evidence, 24 not run, 0 deferred</p><ul class="acc-gs"><li><a href="#suite-GOV">GOV</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li><li><a href="#suite-CAP">CAP</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li><li><a href="#suite-COM">COM</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li></ul></article><article class="acc-gate st-fail small" id="gate-CD" data-gate-state="FAIL"><div class="acc-gate-top"><span class="acc-gate-id"></span><span class="acc-chip s-fail" data-state="FAIL">FAIL</span></div><h3>Leadership-contender decision</h3><p class="acc-gate-d">Execution control</p><p class="acc-gate-c">Supports a scoped contention assessment, not a guaranteed rank.</p><div class="acc-bar" role="img" aria-label="Leadership-contender decision: 262 cases: 8 passed under the standard, 0 running with team evidence, 7 failed, 247 not run, 0 deferred"><span class="seg g-pass" style="flex-grow:8" title="8 PASS"></span><span class="seg g-fail" style="flex-grow:7" title="7 FAIL"></span><span class="seg g-notrun" style="flex-grow:247" title="247 NOT RUN"></span></div><p class="acc-gate-n">262 cases: 8 passed under the standard, 0 running with team evidence, 7 failed, 247 not run, 0 deferred</p><ul class="acc-gs"><li><a href="#suite-GOV">GOV</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li><li><a href="#suite-GPU">GPU</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li><li><a href="#suite-POW">POW</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-fail" data-state="FAIL">FAIL</span></li><li><a href="#suite-ADV">ADV</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li><li><a href="#suite-ROT">ROT</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li><li><a href="#suite-ECO">ECO</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-fail" data-state="FAIL">FAIL</span></li><li><a href="#suite-EVM">EVM</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li><li><a href="#suite-ZKP">ZKP</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li><li><a href="#suite-CAP">CAP</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li><li><a href="#suite-INC">INC</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li><li><a href="#suite-FIN">FIN</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li><li><a href="#suite-VER">VER</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-fail" data-state="FAIL">FAIL</span></li><li><a href="#suite-OPS">OPS</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li><li><a href="#suite-UX">UX</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li><li><a href="#suite-COM">COM</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li><li><a href="#suite-LEAD">LEAD</a><span class="acc-gs-n">8 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li><li><a href="#suite-REV">REV</a><span class="acc-gs-n">44 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li><li><a href="#suite-INT">INT</a><span class="acc-gs-n">18 cases</span><span class="acc-chip s-fail" data-state="FAIL">FAIL</span></li><li><a href="#suite-VR">VR</a><span class="acc-gs-n">40 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li><li><a href="#suite-TV">TV</a><span class="acc-gs-n">32 cases</span><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></li></ul></article></div></div></section><section class="section acc-suite" id="suite-GOV"><div class="container"><div class="acc-suite-head"><div class="acc-suite-code"><span class="n">01</span>GOV</div><div class="acc-suite-t"><h2>Release identity and evidence</h2><p class="acc-sub">Prevent a favourable result from being attached to the wrong code, assumptions or public claim.</p></div><div class="acc-suite-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></div></div><dl class="acc-facts"><div><dt>Owner</dt><dd>Release lead + independent assurance</dd></div><div><dt>Gate</dt><dd>G0 / all gates <span class="acc-gl"><a href="#gate-G0">G0</a> <a href="#gate-G1">G1</a> <a href="#gate-G2">G2</a> <a href="#gate-G3">G3</a> <a href="#gate-G4">G4</a> <a href="#gate-G5">G5</a></span></dd></div><div><dt>Fixtures</dt><dd>F0 manifest; F1 source/build archives; F9 evidence vault</dd></div><div><dt>Plan pages</dt><dd>5, 21, 23, 25, 26, 27</dd></div></dl><div class="acc-suite-bar"><div class="acc-bar" role="img" aria-label="GOV: 8 cases: 0 passed under the standard, 0 running with team evidence, 8 not run, 0 deferred"><span class="seg g-notrun" style="flex-grow:8" title="8 NOT RUN"></span></div><span>8 cases: 0 passed under the standard, 0 running with team evidence, 8 not run, 0 deferred</span></div><div class="acc-cases"><div class="acc-cases-h" aria-hidden="true"><span>Case</span><span>Title</span><span>Priority</span><span>Profile</span><span>Status</span><span>Evidence</span><span>Last run</span><span></span></div><details class="acc-case" id="case-GOV-01" data-case="GOV-01" data-state="NOT RUN"><summary><span class="c-id">GOV-01</span><span class="c-title">Freeze the release and its claims</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 08:43 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Candidate source, binaries, public documentation and the 2.0 plan are available; no run is yet accepted.</p><h4>Steps</h4><ol><li>Record exact commits, binary hashes, dependencies, genesis/network identity, mining class, datasets, execution fork, verifier IDs and fee rules in F0.</li><li>Map every promised capability and plan requirement to a test ID; distinguish supported mining, proving and wallet combinations.</li><li>Sign the manifest with protocol, product and independent review owners before confirmatory runs.</li></ol><h4>Accept</h4><p>Every material rule and claim has an unambiguous version and test. Conflicts or unknown activation rules produce BLOCKED, not an inferred default. Changes create a new manifest and invalidate affected results.</p><h4>Evidence the case requires</h4><p>Signed F0; source-to-test map; claim inventory; unresolved-field register.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>node lane (a283f5f0d364ceef0)</dd></div><div><dt>Run</dt><dd>f0-signing-20261008-2330</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>18</dd></div><div><dt>Plan pages</dt><dd>5, 21, 23, 25, 26, 27</dd></div></dl></div></details><details class="acc-case" id="case-GOV-02" data-case="GOV-02" data-state="NOT RUN"><summary><span class="c-id">GOV-02</span><span class="c-title">Approve thresholds before results</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/docs/plans/igneum-2.0-test-registry.json" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>This manual supplies proposed test thresholds, not source-approved protocol parameters.</p><h4>Steps</h4><ol><li>Approve or replace every P-profile before confirmatory testing; give each change a rationale and independent approver.</li><li>Register hardware cohorts, mandatory economic worlds, customer workloads, peer dimensions and exclusion rules.</li><li>Lock the profile hash and hold out seeds/workloads from the developers doing optimisation.</li></ol><h4>Accept</h4><p>No decision-critical field is TBD. Numeric limits are frozen, commercially meaningful and not chosen from observed results. A weakened limit after failure requires a new protocol, full affected rerun and explicit claim downgrade review.</p><h4>Evidence the case requires</h4><p>Approved profile register; timestamped holdout commitments; change log.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>CI steward (a2ecfa95d3206016c)</dd></div><div><dt>Run</dt><dd>team-2026-10-08</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>18</dd></div><div><dt>Plan pages</dt><dd>5, 21, 23, 25, 26, 27</dd></div></dl></div></details><details class="acc-case" id="case-GOV-03" data-case="GOV-03" data-state="NOT RUN"><summary><span class="c-id">GOV-03</span><span class="c-title">Reproduce builds outside the founding team</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P00, P02</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>2026-10-08 18:3x UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Provide public source and documented build instructions to three unaffiliated operators.</p><h4>Steps</h4><ol><li>Build on clean declared environments without private files, tokens or founder assistance.</li><li>Compare reproducible payload hashes; isolate signatures, notarisation and permitted non-deterministic wrappers.</li><li>Run reference vectors and restart a node using only documented artifacts.</li></ol><h4>Accept</h4><p>All independent builds reproduce the same consensus payload or an independently explained, pre-approved wrapper difference; reference outputs match exactly. Missing private prerequisites block release.</p><h4>Evidence the case requires</h4><p>Build logs; dependency lockfiles; binary comparison; operator attestations.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Independent reproduction</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>build-server lane (a352e49ff4613df86)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>18</dd></div><div><dt>Plan pages</dt><dd>5, 21, 23, 25, 26, 27</dd></div></dl></div></details><details class="acc-case" id="case-GOV-04" data-case="GOV-04" data-state="NOT RUN"><summary><span class="c-id">GOV-04</span><span class="c-title">Preserve raw and negative evidence</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Enable append-only storage for run outputs and a separate analysis workspace.</p><h4>Steps</h4><ol><li>Capture failed, aborted and successful runs with timestamps, seeds and environment hashes.</li><li>Recompute one published figure from raw records on a clean machine.</li><li>Modify a retained artifact deliberately and test integrity verification.</li></ol><h4>Accept</h4><p>Every headline can be regenerated; tampering is detected; exclusions have pre-registered reasons. Failed or missing runs remain visible and are never replaced silently by a successful retry.</p><h4>Evidence the case requires</h4><p>Artifact manifest; hashes; reproduction script; exclusion ledger; negative-run archive.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>CI steward (a2ecfa95d3206016c)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>19</dd></div><div><dt>Plan pages</dt><dd>5, 21, 23, 25, 26, 27</dd></div></dl></div></details><details class="acc-case" id="case-GOV-05" data-case="GOV-05" data-state="NOT RUN"><summary><span class="c-id">GOV-05</span><span class="c-title">Prove the test oracle detects broken behaviour</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 19:28 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Create controlled defective variants on an isolated network only.</p><h4>Steps</h4><ol><li>Disable proof verification, change one reward, accept an expired authority set and alter one hash output in separate mutants.</li><li>Run the corresponding ZKP, INC, FIN and POW tests without telling the runner which mutant is active.</li><li>Confirm the baseline still accepts authorised valid cases.</li></ol><h4>Accept</h4><p>Every deliberately introduced fault is caught by its mapped test; valid controls pass. Any undetected critical mutant blocks acceptance of that test family until the oracle is repaired.</p><h4>Evidence the case requires</h4><p>Mutation catalogue; blinded run results; baseline controls; oracle review.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>fast-time lane (a8be71a0db962911c)</dd></div><div><dt>Run</dt><dd>200-417c4a57-b2</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>19</dd></div><div><dt>Plan pages</dt><dd>5, 21, 23, 25, 26, 27</dd></div></dl></div></details><details class="acc-case" id="case-GOV-06" data-case="GOV-06" data-state="NOT RUN"><summary><span class="c-id">GOV-06</span><span class="c-title">Enforce scope and optional-feature discipline</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 08:36 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Inventory FP32 experiments, receipts/oracles and all retained or excluded mining levers.</p><h4>Steps</h4><ol><li>Mark each capability CORE, CLAIMED-OPTIONAL or EXCLUDED before release testing.</li><li>For excluded code, check binaries, protocol activation and product copy for accidental enablement or implied availability.</li><li>For each claimed option, require the complete associated test set rather than a demonstration.</li></ol><h4>Accept</h4><p>Every core and claimed-option obligation passes. Excluded items are shown as EXCLUDED, never PASS and never counted as achievements. Removing a failed core requirement prevents an all-2.0-pass claim.</p><h4>Evidence the case requires</h4><p>Scope manifest; activation scan; product-copy comparison; exclusions register.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>CI steward (a2ecfa95d3206016c)</dd></div><div><dt>Run</dt><dd>site-gate-20261009-01</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>19</dd></div><div><dt>Plan pages</dt><dd>5, 21, 23, 25, 26, 27</dd></div></dl></div></details><details class="acc-case" id="case-GOV-07" data-case="GOV-07" data-state="NOT RUN"><summary><span class="c-id">GOV-07</span><span class="c-title">Independent review and finding closure</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P09</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>2026-10-08 18:3x UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Nominate reviewers with declared conflicts and scopes covering cryptography, consensus and hardware.</p><h4>Steps</h4><ol><li>Provide pinned code, raw data, adversarial models and prior failures, including negative results.</li><li>Track each finding to remediation and an independent retest; do not use the author as sole approver.</li><li>Have reviewers state unreviewed surfaces and model limitations in their signed conclusions.</li></ol><h4>Accept</h4><p>No unresolved critical or high-severity finding affects the claimed release. A finite review is described by scope, not as proof of universal security. Independent reproduction and review are both evidenced.</p><h4>Evidence the case requires</h4><p>Signed scoped reports; conflict declarations; finding/retest ledger.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Independent specialist review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>main / the founder</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>20</dd></div><div><dt>Plan pages</dt><dd>5, 21, 23, 25, 26, 27</dd></div></dl></div></details><details class="acc-case" id="case-GOV-08" data-case="GOV-08" data-state="NOT RUN"><summary><span class="c-id">GOV-08</span><span class="c-title">Invalidate stale evidence and control public status</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Create a simulated post-test change to a verifier, mining class, dataset and fee rule.</p><h4>Steps</h4><ol><li>Calculate affected test dependencies and invalidate their former PASS statuses.</li><li>Regenerate public status pages from F0 and the evidence register.</li><li>Attempt to publish a rank-one, guaranteed-profit or automatic-chip-death claim without the required evidence.</li></ol><h4>Accept</h4><p>Affected gates return to NOT RUN or BLOCKED. Public claims retain version, limits and date; unsupported claims are withheld. No stale result remains attached to a different release.</p><h4>Evidence the case requires</h4><p>Dependency impact report; regenerated status page; rejected claim examples.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>CI steward (a2ecfa95d3206016c)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>20</dd></div><div><dt>Plan pages</dt><dd>5, 21, 23, 25, 26, 27</dd></div></dl></div></details></div></div></section><section class="section acc-suite" id="suite-GPU"><div class="container"><div class="acc-suite-head"><div class="acc-suite-code"><span class="n">02</span>GPU</div><div class="acc-suite-t"><h2>Whole-system GPU measurements</h2><p class="acc-sub">Close the pending measurements and evaluate the actual configuration, including costs hidden by kernel-only results.</p></div><div class="acc-suite-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></div></div><dl class="acc-facts"><div><dt>Owner</dt><dd>GPU lead + three independent operators</dd></div><div><dt>Gate</dt><dd>G1 / G2 <span class="acc-gl"><a href="#gate-G1">G1</a> <a href="#gate-G2">G2</a></span></dd></div><div><dt>Fixtures</dt><dd>F2 retail-hardware cohort; F3 paired benchmark workloads; F9 calibrated evidence</dd></div><div><dt>Plan pages</dt><dd>6, 7, 8, 14, 18, 23</dd></div></dl><div class="acc-suite-bar"><div class="acc-bar" role="img" aria-label="GPU: 8 cases: 1 passed under the standard, 0 running with team evidence, 7 not run, 0 deferred"><span class="seg g-pass" style="flex-grow:1" title="1 PASS"></span><span class="seg g-notrun" style="flex-grow:7" title="7 NOT RUN"></span></div><span>8 cases: 1 passed under the standard, 0 running with team evidence, 7 not run, 0 deferred</span></div><div class="acc-cases"><div class="acc-cases-h" aria-hidden="true"><span>Case</span><span>Title</span><span>Priority</span><span>Profile</span><span>Status</span><span>Evidence</span><span>Last run</span><span></span></div><details class="acc-case" id="case-GPU-01" data-case="GPU-01" data-state="NOT RUN"><summary><span class="c-id">GPU-01</span><span class="c-title">Cover the declared commodity population</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P02</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 22:49 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Freeze the P02 cohort, supported role matrix and the final v6 configuration.</p><h4>Steps</h4><ol><li>Inventory physical SKU, usable memory, driver, operating system, firmware, cooling and acquisition channel.</li><li>Run mining on every supported cohort cell and proving on every separately advertised prover cell.</li><li>Include lower-memory, used-generation and all advertised vendor cases; retain unsupported results separately.</li></ol><h4>Accept</h4><p>All declared cells are tested, with no after-the-fact removal of weak cards. At least the P02 minimum coverage is met. Mining-only support is never reported as proof-generation support.</p><h4>Evidence the case requires</h4><p>Cohort manifest; compatibility matrix; raw results by SKU and role.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>research lane (ad6a2bd47d4a46105)</dd></div><div><dt>Run</dt><dd>p02-fleet-pods-20261008-01</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>21</dd></div><div><dt>Plan pages</dt><dd>6, 7, 8, 14, 18, 23</dd></div></dl></div></details><details class="acc-case" id="case-GPU-02" data-case="GPU-02" data-state="PASS"><summary><span class="c-id">GPU-02</span><span class="c-title">Reproduce Ember clock-lock savings</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P02, P03</span><span class="c-st"><span class="acc-chip s-pass" data-state="PASS">PASS</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/docs/analysis/class-v6/rows/pc1-l8off-ds2g-20261009.md" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 04:58 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use paired stock and tuned runs on the same board, host, workload and ambient conditions.</p><h4>Steps</h4><ol><li>Warm to stability; randomise stock/tuned order and run P02 repeated sessions.</li><li>Measure accepted work, calibrated wall energy, device telemetry and rejected work.</li><li>Calculate paired energy and rate changes with run-level uncertainty, retaining failed tuning attempts.</li></ol><h4>Accept</h4><p>Tuning preserves correctness and meets approved P03 operating limits. The historical 34-41% saving and under-2% rate-loss statement is reproduced only for qualifying configurations; otherwise that claim is corrected. Existing savings are not counted twice.</p><h4>Evidence the case requires</h4><p>Raw power/time series; paired analysis; tuning settings; claim-by-SKU table.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>hash lane (a690540514aa453d7)</dd></div><div><dt>Run</dt><dd>hash-lane-20261009-batch4</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>21</dd></div><div><dt>Plan pages</dt><dd>6, 7, 8, 14, 18, 23</dd></div></dl></div></details><details class="acc-case" id="case-GPU-03" data-case="GPU-03" data-state="NOT RUN"><summary><span class="c-id">GPU-03</span><span class="c-title">Measure the real 64-register GPU cost</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P02, P03</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 04:58 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Build the baseline and window variant with identical dataset, reads and semantic workload.</p><h4>Steps</h4><ol><li>Inspect compiled register allocation, spills, occupancy and memory traffic on each supported backend.</li><li>Measure paired complete-system energy and accepted throughput, including host work.</li><li>Repeat during proving coexistence and expose any memory or scheduling cliff.</li></ol><h4>Accept</h4><p>Any production window meets P03 budgets for every mandatory SKU; no hidden spills or correctness changes. Zero GPU cost is claimed only where measurement supports it within uncertainty. Results feed the redesigned adversary, not an old core estimate.</p><h4>Evidence the case requires</h4><p>Compiler reports; allocation traces; paired energy/rate data; coexistence runs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>hash lane (a690540514aa453d7)</dd></div><div><dt>Run</dt><dd>hash-lane-20261009-batch4</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>21</dd></div><div><dt>Plan pages</dt><dd>6, 7, 8, 14, 18, 23</dd></div></dl></div></details><details class="acc-case" id="case-GPU-04" data-case="GPU-04" data-state="NOT RUN"><summary><span class="c-id">GPU-04</span><span class="c-title">Find the memory-clock operating ladder</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P02</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/docs/analysis/class-v6/floor/sm-sparse.md" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 22:00 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use safe vendor-supported settings only; record operator permission and original settings.</p><h4>Steps</h4><ol><li>Sweep approved core and memory operating points while holding workload constant.</li><li>Measure error rate, accepted throughput, wall energy and thermal equilibrium.</li><li>Repeat the selected knee after reboot and restore defaults after a failed or interrupted tuning session.</li></ol><h4>Accept</h4><p>Selected profiles are stable, reproducible and not dependent on unsafe clocks. Every accepted hash remains correct; saved settings restore predictably. Tuning failure leaves a working safe configuration.</p><h4>Evidence the case requires</h4><p>Clock ladder; safe bounds; thermal/error logs; reboot and rollback record.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>hash lane (a690540514aa453d7)</dd></div><div><dt>Run</dt><dd>team-2026-10-08</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>22</dd></div><div><dt>Plan pages</dt><dd>6, 7, 8, 14, 18, 23</dd></div></dl></div></details><details class="acc-case" id="case-GPU-05" data-case="GPU-05" data-state="NOT RUN"><summary><span class="c-id">GPU-05</span><span class="c-title">Test dataset fit and support-horizon costs</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P02, P06</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 04:58 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Test 5.5, 8.5 and 11.5 GiB only as source-proposed candidates; F0 determines activated sizes.</p><h4>Steps</h4><ol><li>Measure allocation plus driver, display, prover and OS headroom on the 8 GB and other cohort tiers.</li><li>Run near-full-memory, fragmentation, restart and next-epoch construction scenarios.</li><li>Compare time-sharing/eviction with concurrent mining/proving, including reload cost.</li></ol><h4>Accept</h4><p>Every advertised combination completes without OOM or silent corruption. Unsupported future sizes are identified before activation. GPU exclusions and lost proving capacity appear in ECO evaluation; retirement of a tier is not a success metric.</p><h4>Evidence the case requires</h4><p>Memory budget per SKU; OOM traces; support horizon; concurrency cost table.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>hash lane (a690540514aa453d7)</dd></div><div><dt>Run</dt><dd>hash-lane-20261009-batch4</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>22</dd></div><div><dt>Plan pages</dt><dd>6, 7, 8, 14, 18, 23</dd></div></dl></div></details><details class="acc-case" id="case-GPU-06" data-case="GPU-06" data-state="NOT RUN"><summary><span class="c-id">GPU-06</span><span class="c-title">Measure accepted work under ordinary connectivity</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P02, P10</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use the same hardware against clean, delayed, lossy and intermittent links in F4.</p><h4>Steps</h4><ol><li>Measure kernel rate and accepted work separately under home and datacentre link profiles.</li><li>Include reconnects, template changes, expired submissions and pool failover.</li><li>Attribute loss to network, local software, validation and protocol causes.</li></ol><h4>Accept</h4><p>Results use accepted work, never kernel rate alone. Ordinary-link incremental rejection stays within P10; all losses remain priced in ECO. Unreachable links may pause but must not claim paid work.</p><h4>Evidence the case requires</h4><p>Per-submission ledger; network trace; rejection reasons; accepted-work comparison.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>fleet lane (ac055d60427caab99)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>22</dd></div><div><dt>Plan pages</dt><dd>6, 7, 8, 14, 18, 23</dd></div></dl></div></details><details class="acc-case" id="case-GPU-07" data-case="GPU-07" data-state="NOT RUN"><summary><span class="c-id">GPU-07</span><span class="c-title">Survive sustained thermal and power operation</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P02, P10</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/docs/analysis/class-v6/floor/sm-sparse.md" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 22:00 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Run the selected profile on actual reference machines for the P02 soak period.</p><h4>Steps</h4><ol><li>Track wall power, temperatures, clocks, memory and accepted work continuously.</li><li>Inject safe power interruptions, process restarts and normal competing desktop load.</li><li>Check restored settings and compare late-run efficiency with the first stable period.</li></ol><h4>Accept</h4><p>No invalid work or unsafe persistent settings; P02/P10 stability limits hold. Thermal throttling, crashes and recovery time remain in throughput and energy denominators. A crash-free short benchmark cannot substitute for the soak.</p><h4>Evidence the case requires</h4><p>Seven-day time series; crash reports; settings-restoration checks; drift analysis.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>hash lane (a690540514aa453d7)</dd></div><div><dt>Run</dt><dd>team-2026-10-08</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>23</dd></div><div><dt>Plan pages</dt><dd>6, 7, 8, 14, 18, 23</dd></div></dl></div></details><details class="acc-case" id="case-GPU-08" data-case="GPU-08" data-state="NOT RUN"><summary><span class="c-id">GPU-08</span><span class="c-title">Reproduce the full baseline independently</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P02</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>2026-10-08 18:3x UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Three unaffiliated operators receive F0, F2 and F3, including the final miner/prover build.</p><h4>Steps</h4><ol><li>Repeat identical-SKU paired runs with documented meter calibration and environment differences.</li><li>Recompute joules and total cost per accepted work from the shared raw schema.</li><li>Investigate divergence before accepting a pooled headline or uncertainty band.</li></ol><h4>Accept</h4><p>Reproductions meet P02 tolerance and exact correctness. No unexplained divergence or selectively missing low-end cell remains. Report manufactured GPU measurements separately from modelled specialist estimates.</p><h4>Evidence the case requires</h4><p>Three signed reproduction packs; reconciliation report; final baseline table.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Independent reproduction</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>fleet lane (ac055d60427caab99)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>23</dd></div><div><dt>Plan pages</dt><dd>6, 7, 8, 14, 18, 23</dd></div></dl></div></details></div></div></section><section class="section acc-suite" id="suite-POW"><div class="container"><div class="acc-suite-head"><div class="acc-suite-code"><span class="n">03</span>POW</div><div class="acc-suite-t"><h2>Proof-of-work correctness and coupling</h2><p class="acc-sub">Find semantic disagreements and structural shortcuts before treating a harder-looking program as a stronger defence.</p></div><div class="acc-suite-st"><span class="acc-chip s-fail" data-state="FAIL">FAIL</span></div></div><dl class="acc-facts"><div><dt>Owner</dt><dd>Cryptography + GPU lead</dd></div><div><dt>Gate</dt><dd>G2 / technical readiness <span class="acc-gl"><a href="#gate-G2">G2</a></span></dd></div><div><dt>Fixtures</dt><dd>F0 rule set; F3 independent CPU/GPU oracles; F5 mutation corpus</dd></div><div><dt>Plan pages</dt><dd>7, 9, 10, 23</dd></div></dl><div class="acc-suite-bar"><div class="acc-bar" role="img" aria-label="POW: 8 cases: 0 passed under the standard, 0 running with team evidence, 2 failed, 6 not run, 0 deferred"><span class="seg g-fail" style="flex-grow:2" title="2 FAIL"></span><span class="seg g-notrun" style="flex-grow:6" title="6 NOT RUN"></span></div><span>8 cases: 0 passed under the standard, 0 running with team evidence, 2 failed, 6 not run, 0 deferred</span></div><div class="acc-cases"><div class="acc-cases-h" aria-hidden="true"><span>Case</span><span>Title</span><span>Priority</span><span>Profile</span><span>Status</span><span>Evidence</span><span>Last run</span><span></span></div><details class="acc-case" id="case-POW-01" data-case="POW-01" data-state="NOT RUN"><summary><span class="c-id">POW-01</span><span class="c-title">Match independent execution across every backend</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 06:16 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Implement an independently written reference evaluator, not a wrapper around the production GPU path.</p><h4>Steps</h4><ol><li>Execute the P01 corpus across every family, boundary seed and supported backend.</li><li>Exercise zero, maximum, sign, shift, rotate, overflow and unaligned-address cases allowed by the spec.</li><li>Minimise every mismatch and rerun it on clean builds.</li></ol><h4>Accept</h4><p>Bit-for-bit agreement for all valid cases and identical rejection for invalid cases. One unexplained mismatch is a blocker. Large sample counts are evidence of testing, not proof that unseen disagreements cannot exist.</p><h4>Evidence the case requires</h4><p>Reference implementation review; seeds/vectors; backend matrix; mismatch archive.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>hash lane (a690540514aa453d7)</dd></div><div><dt>Run</dt><dd>same-work-20261008-01</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>24</dd></div><div><dt>Plan pages</dt><dd>7, 9, 10, 23</dd></div></dl></div></details><details class="acc-case" id="case-POW-02" data-case="POW-02" data-state="NOT RUN"><summary><span class="c-id">POW-02</span><span class="c-title">Validate generated programs and index folding</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 01:33 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use the frozen grammar, opcode semantics and index-fold rule; include boundary and malformed programs.</p><h4>Steps</h4><ol><li>Enumerate small constrained programs and fuzz the full generator at P01 depth.</li><li>Check bounds, valid dependencies, address distribution and forbidden encodings.</li><li>Compare source-level operations with optimised compiled code for removed or altered work.</li></ol><h4>Accept</h4><p>No accepted program violates semantics, termination or memory bounds. Distribution claims have predeclared tests and effect-size limits; passing randomness checks is not treated as a cryptographic proof.</p><h4>Evidence the case requires</h4><p>Generator/fuzzer logs; reduced counterexamples; disassembly comparison; index tests.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>hash lane (a690540514aa453d7)</dd></div><div><dt>Run</dt><dd>202-5d53a591-1176efb9</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>24</dd></div><div><dt>Plan pages</dt><dd>7, 9, 10, 23</dd></div></dl></div></details><details class="acc-case" id="case-POW-03" data-case="POW-03" data-state="FAIL"><summary><span class="c-id">POW-03</span><span class="c-title">Test whether live state is unavoidable</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P03, P04</span><span class="c-st"><span class="acc-chip s-fail" data-state="FAIL">FAIL</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 08:32 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Take the 64-register candidate and the cheapest independently proposed storage organisations.</p><h4>Steps</h4><ol><li>Trace value liveness across dependent reads and final output, distinguishing distinct information from duplicated values.</li><li>Try banking, compression, recomputation, fewer ports and time-multiplexed contexts.</li><li>Quantify the best complete-system cost/throughput trade-off rather than the reference register count.</li></ol><h4>Accept</h4><p>Production selection is supported by measured or physically modelled penalties after these alternatives. G2 requires the P03 improvement; an attractive source-level register count alone does not pass.</p><h4>Evidence the case requires</h4><p>Liveness traces; alternative implementations; Pareto table; reviewer analysis.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Experiment + independent hardware review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>adversary lane (a1a9876a88f5a72fc)</dd></div><div><dt>Run</dt><dd>adversary-20261009-placed-32lane</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>24</dd></div><div><dt>Plan pages</dt><dd>7, 9, 10, 23</dd></div></dl></div></details><details class="acc-case" id="case-POW-04" data-case="POW-04" data-state="NOT RUN"><summary><span class="c-id">POW-04</span><span class="c-title">Evaluate connected-resource restructuring</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P03, P04</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 08:32 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use a candidate initially matched to baseline instruction count, read count and dataset size.</p><h4>Steps</h4><ol><li>Connect state, addresses, arithmetic and lane communication according to the written hypothesis.</li><li>Measure GPU cost and allow the specialist reviewer to redesign the entire core.</li><li>Repeat on held-out program seeds and compare the worst supported adversary, not only the original design.</li></ol><h4>Accept</h4><p>The selected upgrade meets P03 and improves the adversarial result outside declared uncertainty. A negative experiment remains a negative outcome; adopting a different design requires a new frozen comparison.</p><h4>Evidence the case requires</h4><p>Matched workloads; GPU runs; redesigned core estimates; held-out results.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Controlled experiment</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>adversary lane (a1a9876a88f5a72fc)</dd></div><div><dt>Run</dt><dd>adversary-20261009-placed-32lane</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>25</dd></div><div><dt>Plan pages</dt><dd>7, 9, 10, 23</dd></div></dl></div></details><details class="acc-case" id="case-POW-05" data-case="POW-05" data-state="NOT RUN"><summary><span class="c-id">POW-05</span><span class="c-title">Prevent amortised cheap winning attempts</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P04</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Prepare valid templates, nonces, intermediate-state captures and independent acceptance checks.</p><h4>Steps</h4><ol><li>Vary nonce, payout identity, transactions, roots and other committed fields after expensive work.</li><li>Try replay, precomputation, shared prefixes, partial evaluation and many cheap suffix candidates.</li><li>Price any valid strategy against fresh evaluation; independently review all bindings.</li></ol><h4>Accept</h4><p>Invalid modifications are rejected. Any valid cost-saving strategy is incorporated into ADV and must still meet P04/ECO gates. No unresolved shortcut is hidden behind passing reference vectors.</p><h4>Evidence the case requires</h4><p>Attack implementations; valid/invalid controls; work-cost analysis; binding review.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>pool design seat (a3832b1c3b274b310)</dd></div><div><dt>Run</dt><dd>binding-review-2026-10-08-a05</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>25</dd></div><div><dt>Plan pages</dt><dd>7, 9, 10, 23</dd></div></dl></div></details><details class="acc-case" id="case-POW-06" data-case="POW-06" data-state="NOT RUN"><summary><span class="c-id">POW-06</span><span class="c-title">Bound verifier work and malformed-input cost</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P09</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 19:28 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use ordinary CPU validators with a manifest-defined resource budget and untrusted submissions.</p><h4>Steps</h4><ol><li>Submit shortest/longest programs, malformed encodings and adversarial memory references.</li><li>Measure verification time, peak memory and work amplification across valid and invalid inputs.</li><li>Sustain the approved hostile request rate while ordinary valid traffic continues.</li></ol><h4>Accept</h4><p>All semantics remain correct and P09 resource budgets hold. Invalid traffic cannot cause unbounded allocation, crashes or disproportionate free work. Rate limits must not replace consensus validation.</p><h4>Evidence the case requires</h4><p>CPU profiles; adversarial corpus; allocation traces; valid-traffic latency.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>hash lane (a690540514aa453d7)</dd></div><div><dt>Run</dt><dd>p01-partb-20261008-01</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>25</dd></div><div><dt>Plan pages</dt><dd>7, 9, 10, 23</dd></div></dl></div></details><details class="acc-case" id="case-POW-07" data-case="POW-07" data-state="FAIL"><summary><span class="c-id">POW-07</span><span class="c-title">Constrain any mixed-resource or FP32 branch</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P00, P01, P03</span><span class="c-st"><span class="acc-chip s-fail" data-state="FAIL">FAIL</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 22:00 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>If this branch is excluded, verify that it is unreachable and not claimed; if included, use a separate frozen candidate.</p><h4>Steps</h4><ol><li>Specify exact rounding, fusion, special values and backend behaviour before compiling.</li><li>Differentially test all supported architectures and allow numerical-domain simplification in the specialist model.</li><li>Include verifier cost and candidate energy in P03/P04, not just arithmetic-unit area.</li></ol><h4>Accept</h4><p>Included branches achieve exact agreed semantics and all hardware budgets. An excluded branch earns no performance credit. No approximate operation or unspecified compiler choice enters consensus.</p><h4>Evidence the case requires</h4><p>Scope decision; semantic specification; vectors; simplified datapath model.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Conditional implementation test</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>hash lane (a690540514aa453d7)</dd></div><div><dt>Run</dt><dd>kills-20261008</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>26</dd></div><div><dt>Plan pages</dt><dd>7, 9, 10, 23</dd></div></dl></div></details><details class="acc-case" id="case-POW-08" data-case="POW-08" data-state="NOT RUN"><summary><span class="c-id">POW-08</span><span class="c-title">Keep rejected mechanisms out of the shipped claim</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P00, P03</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 04:58 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Inventory long programs, select trees, SM gating, wider reads, sealed classes, random epoch lengths, per-tier scoring and VRF draws.</p><h4>Steps</h4><ol><li>Retain their historic negative tests and realistic SRAM instruction-memory control.</li><li>Inspect the release for reintroduction through renamed settings or hidden paths.</li><li>Require a new written hypothesis and complete adversarial retest for any proposed return.</li></ol><h4>Accept</h4><p>Excluded levers remain excluded unless separately approved and retested. Flip-flop instruction-memory area is never presented as the cost of a realistic SRAM implementation.</p><h4>Evidence the case requires</h4><p>Decision register; binary/config scan; negative-control results.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>hash lane (a690540514aa453d7)</dd></div><div><dt>Run</dt><dd>hash-lane-20261009-batch4</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>26</dd></div><div><dt>Plan pages</dt><dd>7, 9, 10, 23</dd></div></dl></div></details></div></div></section><section class="section acc-suite" id="suite-ADV"><div class="container"><div class="acc-suite-head"><div class="acc-suite-code"><span class="n">04</span>ADV</div><div class="acc-suite-t"><h2>Programmable specialist adversaries</h2><p class="acc-sub">Give the opponent permission to adapt, share resources and remain operational; test cost rather than imagined chip death.</p></div><div class="acc-suite-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></div></div><dl class="acc-facts"><div><dt>Owner</dt><dd>Independent hardware team</dd></div><div><dt>Gate</dt><dd>G3 <span class="acc-gl"><a href="#gate-G3">G3</a></span></dd></div><div><dt>Fixtures</dt><dd>F2 reference GPUs; F6 RTL/physical models; all published families</dd></div><div><dt>Plan pages</dt><dd>8, 10, 12, 22, 23</dd></div></dl><div class="acc-suite-bar"><div class="acc-bar" role="img" aria-label="ADV: 8 cases: 0 passed under the standard, 0 running with team evidence, 8 not run, 0 deferred"><span class="seg g-notrun" style="flex-grow:8" title="8 NOT RUN"></span></div><span>8 cases: 0 passed under the standard, 0 running with team evidence, 8 not run, 0 deferred</span></div><div class="acc-cases"><div class="acc-cases-h" aria-hidden="true"><span>Case</span><span>Title</span><span>Priority</span><span>Profile</span><span>Status</span><span>Evidence</span><span>Last run</span><span></span></div><details class="acc-case" id="case-ADV-01" data-case="ADV-01" data-state="NOT RUN"><summary><span class="c-id">ADV-01</span><span class="c-title">Build a multi-family programmable opponent</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P01, P04</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/docs/analysis/class-v6/multi-family-adversary.md" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 08:32 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Provide the complete published family bank and future known parameter schedule to the reviewer.</p><h4>Steps</h4><ol><li>Design one programmable architecture that supports all retained families, including firmware and emulation paths.</li><li>Optimise clocks, lanes, ports and pipelines without requiring a graphics-card layout.</li><li>Verify its outputs against POW vectors before measuring any advantage.</li></ol><h4>Accept</h4><p>At least the P04 design diversity is evaluated; every estimated competitive design is functionally validated. Inability of one narrow design to adapt is not evidence that all chips expire.</p><h4>Evidence the case requires</h4><p>Architecture reports; functional simulations; adaptation matrix; reviewer signature.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Independent hardware study</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>adversary lane (a1a9876a88f5a72fc)</dd></div><div><dt>Run</dt><dd>adversary-20261009-placed-32lane</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>27</dd></div><div><dt>Plan pages</dt><dd>8, 10, 12, 22, 23</dd></div></dl></div></details><details class="acc-case" id="case-ADV-02" data-case="ADV-02" data-state="NOT RUN"><summary><span class="c-id">ADV-02</span><span class="c-title">Price shared, reduced and reconstructed memory</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P04</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/docs/analysis/class-v6/multi-family-adversary.md" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:41 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Allow multiple engines to share a dataset and to store selected fractions rather than a complete per-engine copy.</p><h4>Steps</h4><ol><li>Sweep sharing factors, memory fractions, caches and recomputation depth across many simultaneous hashes.</li><li>Include construction/update amortisation, bandwidth contention and retained state.</li><li>Take the most favourable feasible point for the specialist into the complete-board model.</li></ol><h4>Accept</h4><p>No omitted feasible trade-off materially lowers the accepted cost estimate. Any winning alternative is included in P04 and ECO; capacity alone is not accepted as an energy bound.</p><h4>Evidence the case requires</h4><p>Sweep definitions; energy/bandwidth data; best-feasible envelope; excluded-design reasons.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Model + adversarial implementation</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>adversary lane (a1a9876a88f5a72fc)</dd></div><div><dt>Run</dt><dd>adversary-20261008-placed-8lane</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>27</dd></div><div><dt>Plan pages</dt><dd>8, 10, 12, 22, 23</dd></div></dl></div></details><details class="acc-case" id="case-ADV-03" data-case="ADV-03" data-state="NOT RUN"><summary><span class="c-id">ADV-03</span><span class="c-title">Attack with data-local and hybrid execution</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P04</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/docs/analysis/class-v6/multi-family-adversary.md" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 08:32 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Permit distributed memories, state migration and companion CPU/GPU/FPGA components.</p><h4>Steps</h4><ol><li>Compare moving computation, intermediate state or fetched data to each read location.</li><li>Test specialised mining alongside outsourced proof generation rather than assuming one physical GPU does both.</li><li>Include interconnect, host, synchronisation, idle and conversion costs.</li></ol><h4>Accept</h4><p>The cheapest feasible combined system is included in the adversarial envelope and economic model. A worker identity or account is never treated as proof of a single physical device.</p><h4>Evidence the case requires</h4><p>Hybrid architecture diagrams; traffic traces; system cost and energy ledger.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Independent system modelling</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>adversary lane (a1a9876a88f5a72fc)</dd></div><div><dt>Run</dt><dd>adversary-20261009-placed-32lane</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>27</dd></div><div><dt>Plan pages</dt><dd>8, 10, 12, 22, 23</dd></div></dl></div></details><details class="acc-case" id="case-ADV-04" data-case="ADV-04" data-state="NOT RUN"><summary><span class="c-id">ADV-04</span><span class="c-title">Measure profitable selective participation</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P04, P12</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/docs/analysis/class-v6/multi-family-adversary.md" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:41 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use all declared families plus held-out generated programs and the protocol difficulty rule.</p><h4>Steps</h4><ol><li>Identify favourable execution paths and add cheap fallbacks for other periods.</li><li>Simulate entry/exit around profitable periods, including idle time, compilation and re-entry costs.</li><li>Evaluate revenue and costs across the full schedule, not just average program energy.</li></ol><h4>Accept</h4><p>Intermittent specialists meet P04/ECO limits when evaluated on full-period economics. A weak tail cannot be concealed by a favourable mean; known valid shortcuts must be priced.</p><h4>Evidence the case requires</h4><p>Per-program advantage distribution; policy simulator; full-period returns.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>adversary lane (a1a9876a88f5a72fc)</dd></div><div><dt>Run</dt><dd>adversary-20261008-placed-8lane</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>28</dd></div><div><dt>Plan pages</dt><dd>8, 10, 12, 22, 23</dd></div></dl></div></details><details class="acc-case" id="case-ADV-05" data-case="ADV-05" data-state="NOT RUN"><summary><span class="c-id">ADV-05</span><span class="c-title">Validate physical and complete-board costs</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P04</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 08:32 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use feasible process/library assumptions and documented component boundaries; no fabricated foundry access.</p><h4>Steps</h4><ol><li>Model SRAM macros, ports, wiring, clocking, memory PHYs, external memory, host and power conversion.</li><li>Run place-and-route where available; mark unmodelled items as uncertainty rather than zero.</li><li>Compare against a calibrated existing hardware block or equivalent validation case.</li></ol><h4>Accept</h4><p>No decision-critical cost is omitted. Physically unvalidated or proprietary estimates are labelled and independently bounded; synthesis alone cannot earn a manufactured-chip claim.</p><h4>Evidence the case requires</h4><p>Netlist/physical reports; macro assumptions; bill of materials; model calibration.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Independent physical-design review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>k lane (a3c9601a6d4686fe1)</dd></div><div><dt>Run</dt><dd>adversary-20261009-placed-32lane</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>28</dd></div><div><dt>Plan pages</dt><dd>8, 10, 12, 22, 23</dd></div></dl></div></details><details class="acc-case" id="case-ADV-06" data-case="ADV-06" data-state="NOT RUN"><summary><span class="c-id">ADV-06</span><span class="c-title">Separate process advantage from specialisation</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P04, P12</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/docs/analysis/class-v6/floor/shadow-k.md" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 22:09 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Evaluate same-node, one-node-ahead and two-node-ahead scenarios with explicit technology definitions.</p><h4>Steps</h4><ol><li>Use independently justified process factors, voltages, memory and packaging assumptions for each design.</li><li>Allow reusable IP and modular revisions; credit GPU improvement consistently.</li><li>Evaluate measurement confidence and model-parameter sensitivity separately.</li></ol><h4>Accept</h4><p>P04 primary limits hold for all competitive-reference cells; two-node futures are reported and pass the predeclared economic stress envelope. A model range is never labelled a statistical confidence interval without justification.</p><h4>Evidence the case requires</h4><p>Node-specific reports; factor provenance; uncertainty and sensitivity tables.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>k lane (a3c9601a6d4686fe1)</dd></div><div><dt>Run</dt><dd>floor-k-20261008-rows-repeat</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>28</dd></div><div><dt>Plan pages</dt><dd>8, 10, 12, 22, 23</dd></div></dl></div></details><details class="acc-case" id="case-ADV-07" data-case="ADV-07" data-state="NOT RUN"><summary><span class="c-id">ADV-07</span><span class="c-title">Evaluate lifetime without forced obsolescence</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P04, P12</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 08:32 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Assume multi-year productive survival and known schedule support before testing optional retirement penalties.</p><h4>Steps</h4><ol><li>Price firmware, emulation, memory expansion, companion hardware and incremental redesign.</li><li>Include 1-, 3- and 5-year productive lifetimes plus idle/resale possibilities.</li><li>Grant a retirement credit only if all feasible cheaper adaptations lose competitiveness.</li></ol><h4>Accept</h4><p>The primary case does not require chip death or a fresh full development bill per family. Every retirement credit has a documented adaptation comparison; incompatible and unprofitable are reported separately.</p><h4>Evidence the case requires</h4><p>Lifetime/adaptation ledger; revision costs; feasible-alternative analysis.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>adversary lane (a1a9876a88f5a72fc)</dd></div><div><dt>Run</dt><dd>adversary-20261009-placed-32lane</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>29</dd></div><div><dt>Plan pages</dt><dd>8, 10, 12, 22, 23</dd></div></dl></div></details><details class="acc-case" id="case-ADV-08" data-case="ADV-08" data-state="NOT RUN"><summary><span class="c-id">ADV-08</span><span class="c-title">Independently challenge the best-cost envelope</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P04</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/docs/analysis/class-v6/multi-family-adversary.md" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 08:32 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Publish the non-sensitive model and negative results; commission an unaffiliated second hardware reviewer.</p><h4>Steps</h4><ol><li>Reward cheaper valid designs and reproduced shortcuts, not confirmation of the preferred number.</li><li>Re-run P04 with the strongest submitted feasible design, including a low-cost funded-development case.</li><li>Record unresolved modelling disagreements and future technology exclusions.</li></ol><h4>Accept</h4><p>Both reviews accept the scoped envelope or all material disagreements are resolved transparently. Passing supports only evaluated designs and conditions, never a universal bound on all future silicon.</p><h4>Evidence the case requires</h4><p>Two review reports; challenge log; final envelope; unresolved-limit statement.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Independent challenge/review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>adversary lane (a1a9876a88f5a72fc)</dd></div><div><dt>Run</dt><dd>adversary-20261009-placed-32lane</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>29</dd></div><div><dt>Plan pages</dt><dd>8, 10, 12, 22, 23</dd></div></dl></div></details></div></div></section><section class="section acc-suite" id="suite-ROT"><div class="container"><div class="acc-suite-head"><div class="acc-suite-code"><span class="n">05</span>ROT</div><div class="acc-suite-t"><h2>Epochs, seeds and memory transitions</h2><p class="acc-sub">Transitions must agree across nodes and remain usable during failures; crossing a boundary is not a chip-retirement test.</p></div><div class="acc-suite-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></div></div><dl class="acc-facts"><div><dt>Owner</dt><dd>Consensus + GPU leads</dd></div><div><dt>Gate</dt><dd>G5 / G2 <span class="acc-gl"><a href="#gate-G5">G5</a> <a href="#gate-G2">G2</a></span></dd></div><div><dt>Fixtures</dt><dd>F0 activation rules; F4 fault network; F5 historical and boundary vectors</dd></div><div><dt>Plan pages</dt><dd>7, 11, 19, 21</dd></div></dl><div class="acc-suite-bar"><div class="acc-bar" role="img" aria-label="ROT: 8 cases: 0 passed under the standard, 0 running with team evidence, 8 not run, 0 deferred"><span class="seg g-notrun" style="flex-grow:8" title="8 NOT RUN"></span></div><span>8 cases: 0 passed under the standard, 0 running with team evidence, 8 not run, 0 deferred</span></div><div class="acc-cases"><div class="acc-cases-h" aria-hidden="true"><span>Case</span><span>Title</span><span>Priority</span><span>Profile</span><span>Status</span><span>Evidence</span><span>Last run</span><span></span></div><details class="acc-case" id="case-ROT-01" data-case="ROT-01" data-state="NOT RUN"><summary><span class="c-id">ROT-01</span><span class="c-title">Agree across every hourly boundary</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P08</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/docs/analysis/review-2026-10-08-b/f10/emu-test.log" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:07 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use real nodes, CPU/GPU miners and independent clocks around successive program boundaries.</p><h4>Steps</h4><ol><li>Submit valid work immediately before, at and after the activation boundary under clock skew and delayed delivery.</li><li>Restart nodes from both sides and replay the same headers.</li><li>Compare selected seed, program, validity, rewards and local wall-clock dependence.</li></ol><h4>Accept</h4><p>All honest nodes derive identical consensus outcomes from the frozen rule. Late work is handled exactly as specified; no wall-clock ambiguity or cross-backend split occurs.</p><h4>Evidence the case requires</h4><p>Boundary vectors; node/miner traces; acceptance and reward matrix.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>fast-time lane (a8be71a0db962911c)</dd></div><div><dt>Run</dt><dd>f10-worker-20261008</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>30</dd></div><div><dt>Plan pages</dt><dd>7, 11, 19, 21</dd></div></dl></div></details><details class="acc-case" id="case-ROT-02" data-case="ROT-02" data-state="NOT RUN"><summary><span class="c-id">ROT-02</span><span class="c-title">Cross weekly and family boundaries together</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P03, P08</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>2026-10-08 18:3x UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use the retained schedule in F0, including coincident program, parameter and family changes.</p><h4>Steps</h4><ol><li>Run every known family transition and all coincident-boundary combinations on production code.</li><li>Interrupt downloads, compilation and restart during activation; include mixed old/new clients.</li><li>Repeat selected cases under real elapsed time and the remainder under disclosed accelerated time.</li></ol><h4>Accept</h4><p>Deterministic activation, documented old-client behaviour and no unsafe fallback. Compilation/setup costs satisfy P03; accelerated runs are not reported as years of operating history.</p><h4>Evidence the case requires</h4><p>Transition matrix; code-path evidence; compile timing; old-client logs.</p></blockquote><h4>Evidence record of the run</h4><dl class="acc-meta acc-rec"><div><dt>What was run</dt><dd>the class v6 object crossing at its floor on 617cb441</dd></div><div><dt>Run by</dt><dd>fast-time lane (a8be71a0db962911c)</dd></div><div><dt>Under the standard</dt><dd>no: team-run before the standard's procedure; the status is RUNNING until the case is re-run under its steps with the profile's numbers and an independent run where the profile asks one</dd></div><div><dt>Pass or fail today</dt><dd>not judged under the standard yet</dd></div></dl><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>fast-time lane (a8be71a0db962911c)</dd></div><div><dt>Run</dt><dd>team-2026-10-08</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>30</dd></div><div><dt>Plan pages</dt><dd>7, 11, 19, 21</dd></div></dl></div></details><details class="acc-case" id="case-ROT-03" data-case="ROT-03" data-state="NOT RUN"><summary><span class="c-id">ROT-03</span><span class="c-title">Test miner-voted bring-forward governance</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P00, P01, P08</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Freeze eligibility, threshold, windows and activation semantics before testing; do not invent a no-veto rule.</p><h4>Steps</h4><ol><li>Attempt threshold-minus-one, threshold, conflicting proposals, duplicate votes and coalition withholding.</li><li>Partition voters, restore them and test vote-key substitution through pools.</li><li>Verify adoption and refusal behaviour of already running nodes.</li></ol><h4>Accept</h4><p>The actual mechanism enforces F0, with authenticated voting and no conflicting activation. Any coalition capable of blocking or manipulating changes is disclosed; labels such as no veto do not override arithmetic.</p><h4>Evidence the case requires</h4><p>Executable governance model; signed-vote corpus; coalition/partition results.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>node lane (a283f5f0d364ceef0)</dd></div><div><dt>Run</dt><dd>team-2026-10-08</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>30</dd></div><div><dt>Plan pages</dt><dd>7, 11, 19, 21</dd></div></dl></div></details><details class="acc-case" id="case-ROT-04" data-case="ROT-04" data-state="NOT RUN"><summary><span class="c-id">ROT-04</span><span class="c-title">Resist seed selection and faster evaluators</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P00, P01, P08</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Provide the specified seed pipeline and delay proof implementation plus independently parameterised fast-adversary models.</p><h4>Steps</h4><ol><li>Try withholding candidate seeds, grinding alternatives, replaying delay proofs and biased checkpoint selection.</li><li>Vary adversarial speed advantage and outage duration; trace influence on program choice.</li><li>Validate inputs, parameters and proofs against independent vectors.</li></ol><h4>Accept</h4><p>No invalid seed or proof is accepted; selection advantage stays within the approved threat-model bound. Missing bounds block this gate. A delay mechanism is not credited as generic ASIC resistance.</p><h4>Evidence the case requires</h4><p>Seed/grinding simulations; speed sensitivity; proof vectors; threat-model signoff.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>node lane (a283f5f0d364ceef0)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>31</dd></div><div><dt>Plan pages</dt><dd>7, 11, 19, 21</dd></div></dl></div></details><details class="acc-case" id="case-ROT-05" data-case="ROT-05" data-state="NOT RUN"><summary><span class="c-id">ROT-05</span><span class="c-title">Continue or pause correctly when finality stops</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P08</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 01:33 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Stop checkpoint signing while mining continues, then cross seed and family boundaries.</p><h4>Steps</h4><ol><li>Remove the required signing weight and observe the documented fallback or safe pause.</li><li>Prevent access to any founder seed service; restart from persisted state.</li><li>Restore the stated fault assumptions and verify deterministic recovery.</li></ol><h4>Accept</h4><p>Mining/seed behaviour matches F0 without manufacturing certificates or reinterpreting finality. Safety holds during the outage; liveness is required only after its stated assumptions return.</p><h4>Evidence the case requires</h4><p>Fault timeline; seed/certificate history; node-state comparison; recovery log.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>finality lane (aca0f5ed924a2a99b)</dd></div><div><dt>Run</dt><dd>202-5d53a591-1176efb9</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>31</dd></div><div><dt>Plan pages</dt><dd>7, 11, 19, 21</dd></div></dl></div></details><details class="acc-case" id="case-ROT-06" data-case="ROT-06" data-state="NOT RUN"><summary><span class="c-id">ROT-06</span><span class="c-title">Activate datasets without hidden exclusions</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P06</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 01:33 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Freeze memory sizes, support horizon and sync/update procedure; test all advertised roles.</p><h4>Steps</h4><ol><li>Construct the next dataset while current work remains active; test slow disks, low free memory and interruption.</li><li>Try stale-state/dataset submissions and maliciously expensive state growth where coupling exists.</li><li>Measure data transfer, restart and excluded-card costs before approving progression.</li></ol><h4>Accept</h4><p>No invalid stale work is accepted, no supported card silently fails, and P06 is met. Hardware retirement and sync burden are included in the economic decision, not treated as automatic chip protection.</p><h4>Evidence the case requires</h4><p>Dataset hashes; memory/update traces; stale-work tests; exclusion decision.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>hash lane (a690540514aa453d7)</dd></div><div><dt>Run</dt><dd>202-5d53a591-1176efb9</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>31</dd></div><div><dt>Plan pages</dt><dd>7, 11, 19, 21</dd></div></dl></div></details><details class="acc-case" id="case-ROT-07" data-case="ROT-07" data-state="NOT RUN"><summary><span class="c-id">ROT-07</span><span class="c-title">Ablate redundant rotation layers</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P03, P04</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/docs/analysis/class-v6/family-gate.md" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 22:49 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use matched baseline and ablated variants in the lab; do not change a running public network.</p><h4>Steps</h4><ol><li>Remove each weekly/family component independently and measure adversarial cost, GPU setup and verifier complexity.</li><li>Include favourable-period specialists and all retained known families.</li><li>Keep a layer only with a distinct, independently supported benefit or a documented non-resistance purpose.</li></ol><h4>Accept</h4><p>Every retained layer has explicit justification and full boundary coverage. Redundant complexity is removed or its rationale recorded; the security model does not double-count the same versatility cost.</p><h4>Evidence the case requires</h4><p>Ablation report; decision log; complexity/cost comparison.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>lane D family gate (a07a99a3788566af2)</dd></div><div><dt>Run</dt><dd>family-gate-20261008c</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>32</dd></div><div><dt>Plan pages</dt><dd>7, 11, 19, 21</dd></div></dl></div></details><details class="acc-case" id="case-ROT-08" data-case="ROT-08" data-state="NOT RUN"><summary><span class="c-id">ROT-08</span><span class="c-title">Pass the no-new-rules counterfactual</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P04, P12</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/docs/analysis/class-v6/family-gate.md" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 22:49 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Freeze the complete published rule bank and known schedule for the five-year evaluation.</p><h4>Steps</h4><ol><li>Allow a programmable adversary to know and survive all planned changes.</li><li>Remove assumed future emergency instructions and manual retirement actions from the model.</li><li>Run the required ECO scenarios and link them to independent network-transition tests.</li></ol><h4>Accept</h4><p>Competitiveness survives the approved envelope without future rescue assumptions. Any result that needs unannounced changes fails this claim; ordinary bug maintenance is distinguished from anti-chip intervention.</p><h4>Evidence the case requires</h4><p>Frozen-rule model; scenario results; excluded-rescue audit; G5 evidence.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>node lane (a283f5f0d364ceef0)</dd></div><div><dt>Run</dt><dd>family-gate-20261008c</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>32</dd></div><div><dt>Plan pages</dt><dd>7, 11, 19, 21</dd></div></dl></div></details></div></div></section><section class="section acc-suite" id="suite-ECO"><div class="container"><div class="acc-suite-head"><div class="acc-suite-code"><span class="n">06</span>ECO</div><div class="acc-suite-t"><h2>Five-year coexistence economics</h2><p class="acc-sub">Test the world after specialised hardware exists, including new entrants and an already-funded competitor.</p></div><div class="acc-suite-st"><span class="acc-chip s-fail" data-state="FAIL">FAIL</span></div></div><dl class="acc-facts"><div><dt>Owner</dt><dd>Economics lead + independent reviewer</dd></div><div><dt>Gate</dt><dd>G4 <span class="acc-gl"><a href="#gate-G4">G4</a></span></dd></div><div><dt>Fixtures</dt><dd>F6 adversarial costs; F7 scenario model; F2 operator costs</dd></div><div><dt>Plan pages</dt><dd>8, 13, 18, 24, 26</dd></div></dl><div class="acc-suite-bar"><div class="acc-bar" role="img" aria-label="ECO: 8 cases: 0 passed under the standard, 0 running with team evidence, 1 failed, 7 not run, 0 deferred"><span class="seg g-fail" style="flex-grow:1" title="1 FAIL"></span><span class="seg g-notrun" style="flex-grow:7" title="7 NOT RUN"></span></div><span>8 cases: 0 passed under the standard, 0 running with team evidence, 1 failed, 7 not run, 0 deferred</span></div><div class="acc-cases"><div class="acc-cases-h" aria-hidden="true"><span>Case</span><span>Title</span><span>Priority</span><span>Profile</span><span>Status</span><span>Evidence</span><span>Last run</span><span></span></div><details class="acc-case" id="case-ECO-01" data-case="ECO-01" data-state="NOT RUN"><summary><span class="c-id">ECO-01</span><span class="c-title">Reconcile complete cost per accepted work</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P12</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/sim/economy/coexist/README.md" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:07 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use benchmark outputs, current-source cost inputs recorded at execution time and separate reference scenarios.</p><h4>Steps</h4><ol><li>Calculate hardware annualisation, electricity, host, cooling/hosting, failures, fees, downtime and residual value.</li><li>Use actual accepted work and independently verify units and period conversions.</li><li>Cross-check formulas using hand-worked fixtures, edge cases and a second implementation.</li></ol><h4>Accept</h4><p>All material costs and rejected-work effects appear once; model totals reconcile to raw inputs. No GPU upgrade is free, development cost is not double-counted, and burn is not mislabelled operator income.</p><h4>Evidence the case requires</h4><p>Versioned model; unit fixtures; independent reconciliation; input sources.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>research lane (ad6a2bd47d4a46105)</dd></div><div><dt>Run</dt><dd>eco05-20261008-02</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>33</dd></div><div><dt>Plan pages</dt><dd>8, 13, 18, 24, 26</dd></div></dl></div></details><details class="acc-case" id="case-ECO-02" data-case="ECO-02" data-state="NOT RUN"><summary><span class="c-id">ECO-02</span><span class="c-title">Separate existing-owner and new-entrant viability</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P12</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/docs/analysis/class-v6/coexistence-model.md" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:55 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use both installed hardware and purchasable replacement hardware in every mandatory cohort.</p><h4>Steps</h4><ol><li>Evaluate marginal operation separately from recovery of a new purchase.</li><li>Stress resale at zero, hardware failures, financing and replacement cycles.</li><li>Report break-even power price and total cost relative to the strongest feasible specialist.</li></ol><h4>Accept</h4><p>P12 competitiveness conditions hold for the predeclared cohorts in required sustainable worlds. Existing-owner profitability cannot substitute for viable new entry; cards outside the envelope remain visible.</p><h4>Evidence the case requires</h4><p>Owner/entrant curves; price-date records; break-even tables; cohort outcomes.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>research lane (ad6a2bd47d4a46105)</dd></div><div><dt>Run</dt><dd>eco-d4-20261008-01</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>33</dd></div><div><dt>Plan pages</dt><dd>8, 13, 18, 24, 26</dd></div></dl></div></details><details class="acc-case" id="case-ECO-03" data-case="ECO-03" data-state="NOT RUN"><summary><span class="c-id">ECO-03</span><span class="c-title">Let the specialist keep its sunk development</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P12</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/docs/analysis/class-v6/coexistence-model.md" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:55 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use three development cases: fully funded elsewhere, source-range low and source-range high.</p><h4>Steps</h4><ol><li>Evaluate private mining, public hardware sales and a hybrid business model.</li><li>Allow shared IP, incremental revisions, multi-year survival and resale where justified.</li><li>Re-evaluate GPU entry after the specialist fleet is already installed.</li></ol><h4>Accept</h4><p>The coexistence claim does not depend on recovering the original chip research bill. Required P12 cases meet the approved envelope even at zero incremental development cost; failures cannot be hidden by the $23M/$340M source thresholds.</p><h4>Evidence the case requires</h4><p>Business-model variants; sunk-cost case; full cash-flow and adaptation records.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>research lane (ad6a2bd47d4a46105)</dd></div><div><dt>Run</dt><dd>eco-d4-20261008-01</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>33</dd></div><div><dt>Plan pages</dt><dd>8, 13, 18, 24, 26</dd></div></dl></div></details><details class="acc-case" id="case-ECO-04" data-case="ECO-04" data-state="NOT RUN"><summary><span class="c-id">ECO-04</span><span class="c-title">Model entry, exit and difficulty response</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P12</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/docs/analysis/class-v6/coexistence-model.md" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:55 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use independently reviewed dynamic operator policies, not fixed market shares.</p><h4>Steps</h4><ol><li>Let agents buy, sell, switch off, re-enter and choose tasks based on declared costs and expected income.</li><li>Apply the actual difficulty/reward rules and test optimistic and adversarial liquidity/capital availability.</li><li>Compare equilibrium and transient outcomes across independent starting conditions.</li></ol><h4>Accept</h4><p>Mandatory worlds satisfy P12 without an imposed GPU share or artificial specialist capacity limit. Concentration, oscillations and excluded regions are reported; model behaviour matches unit and conservation checks.</p><h4>Evidence the case requires</h4><p>Agent policies; sensitivity seeds; market-share paths; independent model review.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>research lane (ad6a2bd47d4a46105)</dd></div><div><dt>Run</dt><dd>eco-d4-20261008-01</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>34</dd></div><div><dt>Plan pages</dt><dd>8, 13, 18, 24, 26</dd></div></dl></div></details><details class="acc-case" id="case-ECO-05" data-case="ECO-05" data-state="FAIL"><summary><span class="c-id">ECO-05</span><span class="c-title">Stress success, contraction and cheap electricity</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P12</span><span class="c-st"><span class="acc-chip s-fail" data-state="FAIL">FAIL</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/docs/analysis/class-v6/eco-05-results.md" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:07 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Freeze mandatory scenarios before results: revenue bands, tariff range, lifetimes and demand states.</p><h4>Steps</h4><ol><li>Run the P12 factorial grid plus adversarial combinations selected by the independent reviewer.</li><li>Test a large successful network as well as weak-revenue and heterogeneous-tariff cases.</li><li>Distinguish feasible sustained-entry worlds from collapse scenarios with no rational profitable operator.</li></ol><h4>Accept</h4><p>No small-network or token-appreciation assumption props up the primary claim. Required viable worlds pass the envelope; collapse worlds show honest contraction and safety, not fabricated profits. Failure regions are explicit.</p><h4>Evidence the case requires</h4><p>Scenario register; full result cube; boundary plots; failed-world explanations.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>research lane (ad6a2bd47d4a46105)</dd></div><div><dt>Run</dt><dd>eco05-20261008-02</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>34</dd></div><div><dt>Plan pages</dt><dd>8, 13, 18, 24, 26</dd></div></dl></div></details><details class="acc-case" id="case-ECO-06" data-case="ECO-06" data-state="NOT RUN"><summary><span class="c-id">ECO-06</span><span class="c-title">Fund security and proving as issuance falls</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P12</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/docs/analysis/class-v6/coexistence-model.md" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:55 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use the frozen supply, halving, fee, burn and reward rules rather than source prose assumptions.</p><h4>Steps</h4><ol><li>Reconcile revenue reaching miners, internal provers, developers and burns over the full horizon.</li><li>Test flat/declining fees and no external proving income; separately introduce external demand.</li><li>Calculate capacity and security-provider coverage after each reward transition.</li></ol><h4>Accept</h4><p>Recurring compensation is explicit and internally consistent; mandatory sustainable scenarios meet P12. Burned amounts are never counted as payments, and external operator income is not assumed to fund internal work automatically.</p><h4>Evidence the case requires</h4><p>Issuance/fee ledger; scenario cash flows; funding-shortfall report.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>research lane (ad6a2bd47d4a46105)</dd></div><div><dt>Run</dt><dd>eco-d4-20261008-01</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>34</dd></div><div><dt>Plan pages</dt><dd>8, 13, 18, 24, 26</dd></div></dl></div></details><details class="acc-case" id="case-ECO-07" data-case="ECO-07" data-state="NOT RUN"><summary><span class="c-id">ECO-07</span><span class="c-title">Price memory growth and honest-card displacement</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P06, P12</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/docs/analysis/class-v6/coexistence-model.md" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:55 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use GPU-05 and ROT-06 costs with the cheapest specialist adaptation.</p><h4>Steps</h4><ol><li>For each dataset increment, compare specialist cost increases with excluded cards and lost proving capacity.</li><li>Include ordinary-owner replacement, resale and reloading expenses.</li><li>Run alternate bounded schedules without assigning automatic chip death.</li></ol><h4>Accept</h4><p>The retained schedule meets P06/P12 and has an evidence-backed net competitiveness benefit. A schedule that mainly harms accessible GPUs fails; excluded tiers and mitigations are documented before activation.</p><h4>Evidence the case requires</h4><p>Per-step cost/retention table; alternative schedules; approval record.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>research lane (ad6a2bd47d4a46105)</dd></div><div><dt>Run</dt><dd>eco-d4-20261008-01</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>35</dd></div><div><dt>Plan pages</dt><dd>8, 13, 18, 24, 26</dd></div></dl></div></details><details class="acc-case" id="case-ECO-08" data-case="ECO-08" data-state="NOT RUN"><summary><span class="c-id">ECO-08</span><span class="c-title">Reproduce and adversarially audit the model</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P12</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/sim/economy/coexist/README.md" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:07 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Give an independent economist or qualified analyst the code, inputs and frozen success criteria.</p><h4>Steps</h4><ol><li>Recalculate required worlds and perturb favourable assumptions against the team.</li><li>Check dependence on discounts, utilisation, capital limits, artificial prices and future upgrades.</li><li>Publish the sensitivity range and state which conclusions are conditional.</li></ol><h4>Accept</h4><p>Material results reproduce, required scenarios pass and no unacknowledged assumption dominates the claim. The model supports a bounded coexistence conclusion, not a percentage probability that no chip will appear.</p><h4>Evidence the case requires</h4><p>Independent report; rerun outputs; model limitations; approved claim envelope.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Independent economic review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>research lane (ad6a2bd47d4a46105)</dd></div><div><dt>Run</dt><dd>eco05-20261008-02</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>35</dd></div><div><dt>Plan pages</dt><dd>8, 13, 18, 24, 26</dd></div></dl></div></details></div></div></section><section class="section acc-suite" id="suite-EVM"><div class="container"><div class="acc-suite-head"><div class="acc-suite-code"><span class="n">07</span>EVM</div><div class="acc-suite-t"><h2>Execution and developer compatibility</h2><p class="acc-sub">Keep familiar applications while making every difference and metering rule explicit and reproducible.</p></div><div class="acc-suite-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></div></div><dl class="acc-facts"><div><dt>Owner</dt><dd>Execution lead + independent implementer</dd></div><div><dt>Gate</dt><dd>Technical readiness</dd></div><div><dt>Fixtures</dt><dd>F0 execution-fork semantics; F5 transactions/contracts; F4 multi-node network</dd></div><div><dt>Plan pages</dt><dd>15, 25, 34, 35, 36, 37</dd></div></dl><div class="acc-suite-bar"><div class="acc-bar" role="img" aria-label="EVM: 8 cases: 1 passed under the standard, 0 running with team evidence, 7 not run, 0 deferred"><span class="seg g-pass" style="flex-grow:1" title="1 PASS"></span><span class="seg g-notrun" style="flex-grow:7" title="7 NOT RUN"></span></div><span>8 cases: 1 passed under the standard, 0 running with team evidence, 7 not run, 0 deferred</span></div><div class="acc-cases"><div class="acc-cases-h" aria-hidden="true"><span>Case</span><span>Title</span><span>Priority</span><span>Profile</span><span>Status</span><span>Evidence</span><span>Last run</span><span></span></div><details class="acc-case" id="case-EVM-01" data-case="EVM-01" data-state="NOT RUN"><summary><span class="c-id">EVM-01</span><span class="c-title">Match the selected EVM semantics</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P09</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/docs/build/compatibility.md" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Pin the intended execution fork, revm version and all Igneum deviations in F0.</p><h4>Steps</h4><ol><li>Run the applicable upstream execution/state fixtures plus independently written deviation tests.</li><li>Execute identical blocks on multiple nodes and compare roots, receipts, logs, gas and failure outcomes.</li><li>Minimise mismatches and distinguish intended differences from implementation defects.</li></ol><h4>Accept</h4><p>All applicable vectors match; every deviation has a documented test and developer consequence. No claim of universal Ethereum equivalence or Ethereum settlement security is inferred.</p><h4>Evidence the case requires</h4><p>Fixture/version inventory; root/receipt diffs; deviation matrix.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>reference-apps lane (a2060899d2a27d31c)</dd></div><div><dt>Run</dt><dd>team-2026-10-08</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>36</dd></div><div><dt>Plan pages</dt><dd>15, 25, 34, 35, 36, 37</dd></div></dl></div></details><details class="acc-case" id="case-EVM-02" data-case="EVM-02" data-state="NOT RUN"><summary><span class="c-id">EVM-02</span><span class="c-title">Preserve transaction binding and replay protection</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 01:33 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use signed transfers, contract calls and deployment transactions with boundary field values.</p><h4>Steps</h4><ol><li>Alter chain identity, nonce, signature, fee caps and recipient after signing.</li><li>Replay across nodes, forks and distinct test networks; resubmit around reorganisation.</li><li>Check mempool admission and final consensus execution independently.</li></ol><h4>Accept</h4><p>Unauthorised, wrong-network or duplicate spends are rejected according to F0. Valid replacements follow the declared rule; mempool filtering alone is not evidence of consensus enforcement.</p><h4>Evidence the case requires</h4><p>Signed corpus; admission/execution outcomes; account-state reconciliation.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>reference-apps lane (a2060899d2a27d31c)</dd></div><div><dt>Run</dt><dd>202-5d53a591-1176efb9</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>36</dd></div><div><dt>Plan pages</dt><dd>15, 25, 34, 35, 36, 37</dd></div></dl></div></details><details class="acc-case" id="case-EVM-03" data-case="EVM-03" data-state="NOT RUN"><summary><span class="c-id">EVM-03</span><span class="c-title">Test two-dimensional fees and proving limits</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P09</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/tools/reference-apps/compat/results.json" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:13 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Freeze fee dimensions, estimator rules, abort behaviour and refund policy.</p><h4>Steps</h4><ol><li>Run workloads near and beyond execution and proving budgets, including state-heavy pathological cases.</li><li>Compare estimated fees with charged fees and validate rollback/receipt status on abort.</li><li>Mutate a block producer to omit or undercharge expensive work.</li></ol><h4>Accept</h4><p>Deterministic metering, charged amounts and aborted state agree across nodes and proofs. Resource bounds hold; fee estimates meet P09 for accepted supported cases. Undercharged invalid blocks cannot bypass consensus.</p><h4>Evidence the case requires</h4><p>Metering traces; fee fixtures; estimator errors; invalid-block rejection.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>reference-apps lane (a2060899d2a27d31c)</dd></div><div><dt>Run</dt><dd>ra-20261008T1744-evm</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>36</dd></div><div><dt>Plan pages</dt><dd>15, 25, 34, 35, 36, 37</dd></div></dl></div></details><details class="acc-case" id="case-EVM-04" data-case="EVM-04" data-state="NOT RUN"><summary><span class="c-id">EVM-04</span><span class="c-title">Exercise block context and randomness assumptions</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P09</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/tools/reference-apps/compat/results.json" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:13 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use contracts sensitive to timestamp, height/context, randomness and ordering.</p><h4>Steps</h4><ol><li>Compare the declared Igneum semantics with developers' documented expectations.</li><li>Test boundary transitions, miner-influenced inputs and adversarial ordering in the isolated network.</li><li>Run dependency reviews for applications using these values for economic decisions.</li></ol><h4>Accept</h4><p>Semantics match F0 and differences are surfaced in compatibility documentation. No source of miner influence is marketed as unbiased randomness; incompatible applications are not included in the compatibility claim.</p><h4>Evidence the case requires</h4><p>Context-contract results; threat notes; compatibility exclusions.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>reference-apps lane (a2060899d2a27d31c)</dd></div><div><dt>Run</dt><dd>ra-20261008T1744-evm</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>37</dd></div><div><dt>Plan pages</dt><dd>15, 25, 34, 35, 36, 37</dd></div></dl></div></details><details class="acc-case" id="case-EVM-05" data-case="EVM-05" data-state="NOT RUN"><summary><span class="c-id">EVM-05</span><span class="c-title">Run representative contract integration journeys</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P09</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/tools/reference-apps/compat/results.json" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:13 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use versioned transfer/token, NFT, multisignature, exchange and upgrade-pattern fixtures where supported.</p><h4>Steps</h4><ol><li>Deploy, initialise, transact, revert and upgrade each contract using ordinary tooling.</li><li>Exercise events, logs, balances, storage and call traces across node restart/reorganisation.</li><li>Compare expected application invariants with native execution and proved results.</li></ol><h4>Accept</h4><p>Supported journeys preserve their stated invariants; all deviations are documented. Example deployment success alone cannot stand in for application-level correctness or financial audit.</p><h4>Evidence the case requires</h4><p>Contract fixture hashes; transaction journeys; invariant and state comparisons.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>reference-apps lane (a2060899d2a27d31c)</dd></div><div><dt>Run</dt><dd>ra-20261008T1744-evm</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>37</dd></div><div><dt>Plan pages</dt><dd>15, 25, 34, 35, 36, 37</dd></div></dl></div></details><details class="acc-case" id="case-EVM-06" data-case="EVM-06" data-state="NOT RUN"><summary><span class="c-id">EVM-06</span><span class="c-title">Validate wallets, RPC and indexers</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P09</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/tools/reference-apps/compat/results.json" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:13 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Pin supported RPC methods and response semantics; use normal developer clients and an independent indexer.</p><h4>Steps</h4><ol><li>Test fee estimation, pending/final states, subscriptions, pagination and reconnects.</li><li>Reindex from genesis or the documented trust anchor after pruning and restart.</li><li>Compare logs, receipts and balances with independently validated chain state.</li></ol><h4>Accept</h4><p>No missing/duplicate canonical records; unsupported methods are explicit. UI states distinguish included, executed, proven and finalised. Malformed RPC input cannot crash validators or leak secrets.</p><h4>Evidence the case requires</h4><p>RPC conformance report; reindex comparison; reconnect/edge-case logs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>reference-apps lane (a2060899d2a27d31c)</dd></div><div><dt>Run</dt><dd>ra-20261008T1744-evm</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>37</dd></div><div><dt>Plan pages</dt><dd>15, 25, 34, 35, 36, 37</dd></div></dl></div></details><details class="acc-case" id="case-EVM-07" data-case="EVM-07" data-state="NOT RUN"><summary><span class="c-id">EVM-07</span><span class="c-title">Handle execution denial-of-service workloads</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P09</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Create bounded pathological bytecode, calls, state growth, storage and precompile inputs.</p><h4>Steps</h4><ol><li>Measure CPU, memory, disk and proving cost against charged budgets.</li><li>Saturate admission with invalid/expensive requests while valid workloads continue.</li><li>Restart mid-execution and verify atomic state recovery.</li></ol><h4>Accept</h4><p>P09 limits hold with no unbounded free work or divergent rollback. State remains consistent after crash; availability under overload follows the declared admission policy, not silent dropping of accepted transactions.</p><h4>Evidence the case requires</h4><p>Resource profiles; adversarial corpus; state recovery comparisons.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>reference-apps lane (a2060899d2a27d31c)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>38</dd></div><div><dt>Plan pages</dt><dd>15, 25, 34, 35, 36, 37</dd></div></dl></div></details><details class="acc-case" id="case-EVM-08" data-case="EVM-08" data-state="PASS"><summary><span class="c-id">EVM-08</span><span class="c-title">Verify controlled execution and verifier upgrades</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P08, P09</span><span class="c-st"><span class="acc-chip s-pass" data-state="PASS">PASS</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/docs/plans/proving-enforcement/cache-history-2.json" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 23:24 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Prepare two authorised versions and malicious, stale or unknown versions.</p><h4>Steps</h4><ol><li>Cross activation with mixed clients, queued transactions and proofs from both versions.</li><li>Bind each accepted proof to the correct execution semantics and program identity.</li><li>Exercise a failed software distribution without altering consensus activation.</li></ol><h4>Accept</h4><p>No unknown or wrong-version execution is accepted. Pre/post-boundary handling is deterministic and documented; software delivery cannot silently redefine transaction semantics or proof acceptance.</p><h4>Evidence the case requires</h4><p>Upgrade vectors; mixed-version traces; manifest/version bindings.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>enforced-proving lane (a6e8f84588b809d62)</dd></div><div><dt>Run</dt><dd>enforced-proving-20261008-03</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>38</dd></div><div><dt>Plan pages</dt><dd>15, 25, 34, 35, 36, 37</dd></div></dl></div></details></div></div></section><section class="section acc-suite" id="suite-ZKP"><div class="container"><div class="acc-suite-head"><div class="acc-suite-code"><span class="n">08</span>ZKP</div><div class="acc-suite-t"><h2>Consensus-enforced proof validity</h2><p class="acc-sub">The validator, not merely the official producer, must reject unauthorised or invalid proof records and rewards.</p></div><div class="acc-suite-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></div></div><dl class="acc-facts"><div><dt>Owner</dt><dd>Proving + protocol leads; independent cryptography review</dd></div><div><dt>Gate</dt><dd>Technical readiness / G5 <span class="acc-gl"><a href="#gate-G5">G5</a></span></dd></div><div><dt>Fixtures</dt><dd>F0 pinned programs/verifiers; F5 valid and hostile proof corpus; unmodified validators</dd></div><div><dt>Plan pages</dt><dd>16, 20, 24, 25, 36, 37</dd></div></dl><div class="acc-suite-bar"><div class="acc-bar" role="img" aria-label="ZKP: 8 cases: 4 passed under the standard, 0 running with team evidence, 4 not run, 0 deferred"><span class="seg g-pass" style="flex-grow:4" title="4 PASS"></span><span class="seg g-notrun" style="flex-grow:4" title="4 NOT RUN"></span></div><span>8 cases: 4 passed under the standard, 0 running with team evidence, 4 not run, 0 deferred</span></div><div class="acc-cases"><div class="acc-cases-h" aria-hidden="true"><span>Case</span><span>Title</span><span>Priority</span><span>Profile</span><span>Status</span><span>Evidence</span><span>Last run</span><span></span></div><details class="acc-case" id="case-ZKP-01" data-case="ZKP-01" data-state="NOT RUN"><summary><span class="c-id">ZKP-01</span><span class="c-title">Reject missing and invalid proofs</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P09</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 01:33 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Start from a native-correct statement and an independently verified valid proof.</p><h4>Steps</h4><ol><li>Submit the statement with no proof, truncated bytes, random bytes and targeted proof mutations using a modified producer.</li><li>Submit the genuine proof as a positive control through ordinary network paths.</li><li>Inspect block acceptance and resulting reward/state on unmodified validators.</li></ol><h4>Accept</h4><p>Every invalid proof record is rejected and earns no reward; valid controls succeed. A producer-side filter is not sufficient. Record rejection semantics exactly as defined by F0.</p><h4>Evidence the case requires</h4><p>Hostile record corpus; validator decisions; before/after balances; positive controls.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>enforced-proving lane (a6e8f84588b809d62)</dd></div><div><dt>Run</dt><dd>202-5d53a591-1176efb9</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>39</dd></div><div><dt>Plan pages</dt><dd>16, 20, 24, 25, 36, 37</dd></div></dl></div></details><details class="acc-case" id="case-ZKP-02" data-case="ZKP-02" data-state="PASS"><summary><span class="c-id">ZKP-02</span><span class="c-title">Bind program, verifier and security parameters</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P09</span><span class="c-st"><span class="acc-chip s-pass" data-state="PASS">PASS</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/docs/plans/proving-enforcement/cache-history-2.json" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 23:24 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use valid proofs from authorised and unauthorised programs and parameter sets.</p><h4>Steps</h4><ol><li>Swap program digest, verifier version, security settings and verification key where applicable.</li><li>Attempt downgrade through configuration, serialized metadata or an old node path.</li><li>Test authorised boundary transitions and unsupported future identities.</li></ol><h4>Accept</h4><p>Only explicitly authorised combinations are accepted in the correct epoch. No implicit trust in producer-supplied metadata or lower-security fallback; all accepted settings have scoped soundness review.</p><h4>Evidence the case requires</h4><p>Identity/parameter matrix; rejection traces; cryptographic review.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>enforced-proving lane (a6e8f84588b809d62)</dd></div><div><dt>Run</dt><dd>enforced-proving-20261008-03</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>39</dd></div><div><dt>Plan pages</dt><dd>16, 20, 24, 25, 36, 37</dd></div></dl></div></details><details class="acc-case" id="case-ZKP-03" data-case="ZKP-03" data-state="NOT RUN"><summary><span class="c-id">ZKP-03</span><span class="c-title">Bind network, epoch, job and state roots</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 01:33 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Prepare valid proofs for distinct chains, epochs, jobs and initial/final states.</p><h4>Steps</h4><ol><li>Replay each proof under another network, job, epoch, shard range or state commitment.</li><li>Alter public inputs while retaining the proof and test valid-but-wrong-context statements.</li><li>Check duplicated and reordered records across forks and replayed sync data.</li></ol><h4>Accept</h4><p>Every misbound proof is rejected; valid authorised replays follow only explicitly allowed semantics and never create extra rewards. Native reexecution cannot conceal missing proof-context binding.</p><h4>Evidence the case requires</h4><p>Binding matrix; public-input hashes; replay traces; reward reconciliation.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>enforced-proving lane (a6e8f84588b809d62)</dd></div><div><dt>Run</dt><dd>202-5d53a591-1176efb9</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>39</dd></div><div><dt>Plan pages</dt><dd>16, 20, 24, 25, 36, 37</dd></div></dl></div></details><details class="acc-case" id="case-ZKP-04" data-case="ZKP-04" data-state="PASS"><summary><span class="c-id">ZKP-04</span><span class="c-title">Prevent reward and payout substitution</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01</span><span class="c-st"><span class="acc-chip s-pass" data-state="PASS">PASS</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/docs/plans/proving-enforcement/cache-history-2.json" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 23:24 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use proofs that commit to authorisation and all reward-relevant fields required by F0.</p><h4>Steps</h4><ol><li>Alter payout key, amount, beneficiary, source work or fee allocation independently.</li><li>Supply correct execution over malicious producer-provided consensus/reward inputs.</li><li>Compare consensus-derived rewards with the proved/publicly authenticated derivation.</li></ol><h4>Accept</h4><p>Unauthorised payout changes and incorrect consensus inputs are rejected; no statement accepted merely because execution over supplied inputs is internally correct. Legitimate authorisations are preserved.</p><h4>Evidence the case requires</h4><p>Mutation cases; reward derivation trace; signature/proof binding review.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>enforced-proving lane (a6e8f84588b809d62)</dd></div><div><dt>Run</dt><dd>enforced-proving-20261008-03</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>40</dd></div><div><dt>Plan pages</dt><dd>16, 20, 24, 25, 36, 37</dd></div></dl></div></details><details class="acc-case" id="case-ZKP-05" data-case="ZKP-05" data-state="PASS"><summary><span class="c-id">ZKP-05</span><span class="c-title">Make proof payment idempotent across races</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01</span><span class="c-st"><span class="acc-chip s-pass" data-state="PASS">PASS</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/docs/plans/proving-enforcement/cache-history-2.json" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 23:24 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use competing provers submitting valid results for the same work and simulate retries/reorganisations.</p><h4>Steps</h4><ol><li>Submit simultaneous duplicates, reordered receipts and repeated messages after disconnects.</li><li>Crash validators between validation and reward application, then recover.</li><li>Reconcile canonical payouts against the exact F0 duplicate policy.</li></ol><h4>Accept</h4><p>Only the authorised total payment is made; no double payout, lost accepted entitlement or fork-retained balance. Transactions and payout records recover atomically.</p><h4>Evidence the case requires</h4><p>Concurrency schedule; canonical payment ledger; crash/recovery evidence.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>enforced-proving lane (a6e8f84588b809d62)</dd></div><div><dt>Run</dt><dd>enforced-proving-20261008-03</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>40</dd></div><div><dt>Plan pages</dt><dd>16, 20, 24, 25, 36, 37</dd></div></dl></div></details><details class="acc-case" id="case-ZKP-06" data-case="ZKP-06" data-state="NOT RUN"><summary><span class="c-id">ZKP-06</span><span class="c-title">Verify aggregation coverage and completeness</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P09</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 01:33 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Build valid multi-shard workloads plus omitted, duplicated, overlapping and misordered shard sets.</p><h4>Steps</h4><ol><li>Attempt an aggregate with a correct outer proof but wrong coverage/public-input construction.</li><li>Alter shard ranges, roots and aggregation-program identity.</li><li>Verify native execution, aggregate validity and coverage commitments independently.</li></ol><h4>Accept</h4><p>Only complete, correctly ordered authorised coverage is accepted. No valid proof of the wrong computation becomes an accepted chain result; aggregation failures do not fabricate successful delivery.</p><h4>Evidence the case requires</h4><p>Coverage corpus; aggregate/public-input verification; rejection ledger.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>enforced-proving lane (a6e8f84588b809d62)</dd></div><div><dt>Run</dt><dd>202-5d53a591-1176efb9</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>40</dd></div><div><dt>Plan pages</dt><dd>16, 20, 24, 25, 36, 37</dd></div></dl></div></details><details class="acc-case" id="case-ZKP-07" data-case="ZKP-07" data-state="NOT RUN"><summary><span class="c-id">ZKP-07</span><span class="c-title">Review soundness and verifier resource limits</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P09</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>2026-10-08 18:3x UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Provide proof-system code, parameters, patches and the pinned verification path to an independent specialist.</p><h4>Steps</h4><ol><li>Review soundness assumptions, parameter margins and consequences of performance patches.</li><li>Fuzz deserialization and adversarial proofs; measure verification CPU and memory under load.</li><li>Cross-check an independent verifier or reference path and test crash containment.</li></ol><h4>Accept</h4><p>P09 review and resource requirements pass with no unresolved critical/high finding. Random proof rejection counts are not described as evidence of a particular cryptographic security level.</p><h4>Evidence the case requires</h4><p>Scoped soundness review; parameter sheet; fuzzer corpus; verifier profiles.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Independent cryptographic review + testing</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>enforced-proving lane (a6e8f84588b809d62)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>41</dd></div><div><dt>Plan pages</dt><dd>16, 20, 24, 25, 36, 37</dd></div></dl></div></details><details class="acc-case" id="case-ZKP-08" data-case="ZKP-08" data-state="PASS"><summary><span class="c-id">ZKP-08</span><span class="c-title">Preserve authority and audit all acceptance paths</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P07, P08</span><span class="c-st"><span class="acc-chip s-pass" data-state="PASS">PASS</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/docs/plans/proving-enforcement/cache-history-2.json" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 23:24 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Inspect block import, sync, RPC, light verification, database restoration and fast paths.</p><h4>Steps</h4><ol><li>Try bypassing validation via each path with a proof rejected by the normal path.</li><li>Remove the dominant prover/aggregator and have independent replacements process available inputs.</li><li>Attempt to use proof-production status as ordering, voting or finality authority.</li></ol><h4>Accept</h4><p>No bypass accepts invalid work; proofs alone confer no unauthorised consensus control. Replacement and pause behaviour meet F0/P07/P08 without privileged keys or a trusted aggregator shortcut.</p><h4>Evidence the case requires</h4><p>Path coverage report; bypass corpus; replacement run; authority checks.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>enforced-proving lane (a6e8f84588b809d62)</dd></div><div><dt>Run</dt><dd>enforced-proving-20261008-03</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>41</dd></div><div><dt>Plan pages</dt><dd>16, 20, 24, 25, 36, 37</dd></div></dl></div></details></div></div></section><section class="section acc-suite" id="suite-CAP"><div class="container"><div class="acc-suite-head"><div class="acc-suite-code"><span class="n">09</span>CAP</div><div class="acc-suite-t"><h2>Sustained proving and delivery</h2><p class="acc-sub">A correct fast shard is only one stage; capacity, latency, payment and retries must work together.</p></div><div class="acc-suite-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></div></div><dl class="acc-facts"><div><dt>Owner</dt><dd>Proving lead + independent operators</dd></div><div><dt>Gate</dt><dd>Technical readiness / commercial track</dd></div><div><dt>Fixtures</dt><dd>F3 meaningful workload catalogue; F4 network; F8 external job harness</dd></div><div><dt>Plan pages</dt><dd>17, 18, 24, 25</dd></div></dl><div class="acc-suite-bar"><div class="acc-bar" role="img" aria-label="CAP: 8 cases: 0 passed under the standard, 0 running with team evidence, 8 not run, 0 deferred"><span class="seg g-notrun" style="flex-grow:8" title="8 NOT RUN"></span></div><span>8 cases: 0 passed under the standard, 0 running with team evidence, 8 not run, 0 deferred</span></div><div class="acc-cases"><div class="acc-cases-h" aria-hidden="true"><span>Case</span><span>Title</span><span>Priority</span><span>Profile</span><span>Status</span><span>Evidence</span><span>Last run</span><span></span></div><details class="acc-case" id="case-CAP-01" data-case="CAP-01" data-state="NOT RUN"><summary><span class="c-id">CAP-01</span><span class="c-title">Reproduce the historical consumer-shard result</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P02, P07</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Recover the exact source-era workload/build if available; keep it separate from the release-candidate workload.</p><h4>Steps</h4><ol><li>Attempt independent reproduction of the 4,717,439-cycle workload and reported 3060/4060/4070 results.</li><li>Record proof format, memory, energy, host and whether aggregation/compression are included.</li><li>Repeat on the final release and label all configuration changes.</li></ol><h4>Accept</h4><p>Historical figures are either reproduced within P02 tolerance or corrected/labelled non-reproduced. Release acceptance uses the current complete workload, never an unmatched historical time or a smaller substituted shard.</p><h4>Evidence the case requires</h4><p>Historical/current manifests; proof verification; timing and memory records.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>fleet lane (ac055d60427caab99)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>42</dd></div><div><dt>Plan pages</dt><dd>17, 18, 24, 25</dd></div></dl></div></details><details class="acc-case" id="case-CAP-02" data-case="CAP-02" data-state="NOT RUN"><summary><span class="c-id">CAP-02</span><span class="c-title">Prove on the actual mining configuration</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P06, P07</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/docs/analysis/floor-memory-profile-2026-10-08.md" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 23:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use final dataset sizes, registers, clocks, drivers and proof pipeline on every advertised proving tier.</p><h4>Steps</h4><ol><li>Run mining alone, proving alone, concurrent execution and supported time-sharing.</li><li>Measure wall energy, memory headroom, reloads, proof latency and forgone accepted mining work.</li><li>Induce memory pressure and GPU task failure without losing wallet control.</li></ol><h4>Accept</h4><p>Every advertised mode completes correctly and meets P06/P07. Net output includes opportunity cost; unsupported concurrency is not claimed. Mining-only vendor support remains separately labelled.</p><h4>Evidence the case requires</h4><p>Four-mode results; OOM/failure logs; memory and opportunity-cost ledger.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>fleet lane (ac055d60427caab99)</dd></div><div><dt>Run</dt><dd>v607-floor-memory-20261008T2059Z</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>42</dd></div><div><dt>Plan pages</dt><dd>17, 18, 24, 25</dd></div></dl></div></details><details class="acc-case" id="case-CAP-03" data-case="CAP-03" data-state="NOT RUN"><summary><span class="c-id">CAP-03</span><span class="c-title">Measure the entire request-to-payment path</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P07</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Assign a unique job ID and immutable timestamps to every stage of F3/F8 jobs.</p><h4>Steps</h4><ol><li>Record request, input availability, assignment, execution, shard proof, aggregation, verification, delivery and payment.</li><li>Compare monotonic elapsed time with any protocol/DAA clock and document their relationship.</li><li>Reconcile failed, censored, retried and abandoned jobs with the original request denominator.</li></ol><h4>Accept</h4><p>No hidden stage or missing job; latency distributions and cost cover the complete path. Delivery, finality and payment are reported separately; protocol seconds are not silently relabelled wall-clock seconds.</p><h4>Evidence the case requires</h4><p>Stage event ledger; clock calibration; end-to-end latency/cost report.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>fleet lane (ac055d60427caab99)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>42</dd></div><div><dt>Plan pages</dt><dd>17, 18, 24, 25</dd></div></dl></div></details><details class="acc-case" id="case-CAP-04" data-case="CAP-04" data-state="NOT RUN"><summary><span class="c-id">CAP-04</span><span class="c-title">Sustain meaningful load without queue growth</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P07</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Freeze W: payload mix, input sizes, execution work and per-hour demand; prohibit tiny-workload substitution.</p><h4>Steps</h4><ol><li>Run 72 hours at W and a separate 24 hours at 1.2W on the declared fleet.</li><li>Measure arrival/completion counts, backlog trend, oldest-job age, deadlines and all retries.</li><li>Use held-out workloads and an independent observer to detect discarded or delayed requests.</li></ol><h4>Accept</h4><p>P07 completion, tail-latency and bounded-backlog criteria hold. Capacity is stated for the tested W/fleet, not as universal TPS. A queue that grows indefinitely or shrinks through silent loss fails.</p><h4>Evidence the case requires</h4><p>Request/completion reconciliation; backlog series; held-out results; observer report.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>fleet lane (ac055d60427caab99)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>43</dd></div><div><dt>Plan pages</dt><dd>17, 18, 24, 25</dd></div></dl></div></details><details class="acc-case" id="case-CAP-05" data-case="CAP-05" data-state="NOT RUN"><summary><span class="c-id">CAP-05</span><span class="c-title">Overload and recover without false acceptance</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P07</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Start at W and inject 2W for 15 minutes with valid and invalid jobs, then return to W.</p><h4>Steps</h4><ol><li>Observe admission, explicit backpressure, reservations and deadline estimates.</li><li>Track accepted jobs to valid completion or the pre-agreed failure/refund outcome.</li><li>Measure recovery time and ensure ordinary users are not silently starved.</li></ol><h4>Accept</h4><p>P07 overload policy and recovery limits hold; no accepted job vanishes or earns an invalid reward. Rejected demand is reported separately from delivery success, preventing denominator manipulation.</p><h4>Evidence the case requires</h4><p>Overload timeline; admission/refund logs; backlog-drain proof.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>fleet lane (ac055d60427caab99)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>43</dd></div><div><dt>Plan pages</dt><dd>17, 18, 24, 25</dd></div></dl></div></details><details class="acc-case" id="case-CAP-06" data-case="CAP-06" data-state="NOT RUN"><summary><span class="c-id">CAP-06</span><span class="c-title">Calibrate assignment windows to paid completion</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P07, P12</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use a heterogeneous proving fleet, including the slowest advertised consumer tier.</p><h4>Steps</h4><ol><li>Measure actual completion distributions with network delay, competing load and failed attempts.</li><li>Test the chosen exclusive window, open claiming and faster challengers after expiry.</li><li>Compare assignment frequency, paid completions and wasted work by tier.</li></ol><h4>Accept</h4><p>P07 fairness and wasted-work limits hold for advertised tiers. A provisional 10-DAA-second window is not treated as approved. Fair assignment counts alone cannot pass; payment outcomes and operator margins matter.</p><h4>Evidence the case requires</h4><p>Window sweep; paid-completion distribution; wasted-work and margin report.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>fleet lane (ac055d60427caab99)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>43</dd></div><div><dt>Plan pages</dt><dd>17, 18, 24, 25</dd></div></dl></div></details><details class="acc-case" id="case-CAP-07" data-case="CAP-07" data-state="NOT RUN"><summary><span class="c-id">CAP-07</span><span class="c-title">Reassign work when inputs or providers disappear</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P07, P08</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Remove input providers, assigned provers and the dominant aggregator independently and together.</p><h4>Steps</h4><ol><li>Have replacement operators retrieve authenticated inputs without founder files.</li><li>Retry expired assignments while preserving idempotent reward and customer outcomes.</li><li>Restore providers and test late submissions racing with replacements.</li></ol><h4>Accept</h4><p>P07/P08 replacement deadlines hold when availability assumptions permit. Otherwise a truthful bounded pause/refund occurs; no fake proof, double payment or hidden privileged input source is used.</p><h4>Evidence the case requires</h4><p>Failure schedule; input hashes; reassignment and payout ledger; recovery trace.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>fleet lane (ac055d60427caab99)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>44</dd></div><div><dt>Plan pages</dt><dd>17, 18, 24, 25</dd></div></dl></div></details><details class="acc-case" id="case-CAP-08" data-case="CAP-08" data-state="NOT RUN"><summary><span class="c-id">CAP-08</span><span class="c-title">Deliver customer-verifiable output at scale</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P07, P14</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Run the external workload using a customer-controlled verifier and independently operated workers.</p><h4>Steps</h4><ol><li>Verify every delivered proof against the contracted program and input commitment.</li><li>Reject wrong-format, stale and partial deliveries; test customer retry and delivery failure.</li><li>Reconcile delivery, acceptance, payment and refund records without exposing private inputs publicly.</li></ol><h4>Accept</h4><p>P07 delivery performance and exact validity hold. Payment depends on the contracted correct result; a valid proof for the wrong job is not a successful delivery.</p><h4>Evidence the case requires</h4><p>Customer verification log; proof-format contract; settlement reconciliation.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>fleet lane (ac055d60427caab99)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>44</dd></div><div><dt>Plan pages</dt><dd>17, 18, 24, 25</dd></div></dl></div></details></div></div></section><section class="section acc-suite" id="suite-INC"><div class="container"><div class="acc-suite-head"><div class="acc-suite-code"><span class="n">10</span>INC</div><div class="acc-suite-t"><h2>Rewards, incentives and selfish operators</h2><p class="acc-sub">Assume operators optimise their own returns. Do not depend on the official client choosing a less profitable task.</p></div><div class="acc-suite-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></div></div><dl class="acc-facts"><div><dt>Owner</dt><dd>Protocol economics + proving leads</dd></div><div><dt>Gate</dt><dd>G4 / G5 <span class="acc-gl"><a href="#gate-G4">G4</a> <a href="#gate-G5">G5</a></span></dd></div><div><dt>Fixtures</dt><dd>F0 fee/reward rules; F4 adversarial operators; F7 incentive models</dd></div><div><dt>Plan pages</dt><dd>13, 16, 17, 18, 24, 26</dd></div></dl><div class="acc-suite-bar"><div class="acc-bar" role="img" aria-label="INC: 8 cases: 0 passed under the standard, 0 running with team evidence, 8 not run, 0 deferred"><span class="seg g-notrun" style="flex-grow:8" title="8 NOT RUN"></span></div><span>8 cases: 0 passed under the standard, 0 running with team evidence, 8 not run, 0 deferred</span></div><div class="acc-cases"><div class="acc-cases-h" aria-hidden="true"><span>Case</span><span>Title</span><span>Priority</span><span>Profile</span><span>Status</span><span>Evidence</span><span>Last run</span><span></span></div><details class="acc-case" id="case-INC-01" data-case="INC-01" data-state="NOT RUN"><summary><span class="c-id">INC-01</span><span class="c-title">Reconcile issuance, fees, burns and recipients</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P12</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 01:33 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use a deterministic short chain containing all reward types, fee paths and rounding cases.</p><h4>Steps</h4><ol><li>Calculate balances, total supply changes, burns and distributions independently.</li><li>Execute identical blocks natively and through the proving path.</li><li>Test zero, minimum, maximum and transition-boundary values plus malformed producer accounting.</li></ol><h4>Accept</h4><p>Conservation and recipient rules match F0 exactly; no inflation, rounding leakage or duplicate reward. Fee-table and prose discrepancies are resolved before the run, not guessed by the tester.</p><h4>Evidence the case requires</h4><p>Independent accounting ledger; balance/supply diffs; boundary vectors.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>enforced-proving lane (a6e8f84588b809d62)</dd></div><div><dt>Run</dt><dd>202-5d53a591-1176efb9</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>45</dd></div><div><dt>Plan pages</dt><dd>13, 16, 17, 18, 24, 26</dd></div></dl></div></details><details class="acc-case" id="case-INC-02" data-case="INC-02" data-state="NOT RUN"><summary><span class="c-id">INC-02</span><span class="c-title">Keep revenue streams and claims separate</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P12, P14</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/docs/analysis/class-v6/coexistence-model.md" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:55 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Prepare jobs and blocks producing mining income, internal proof rewards and external payments.</p><h4>Steps</h4><ol><li>Trace money from source to operator, protocol, developer and any burn.</li><li>Compare node records, settlement records and Ember displays.</li><li>Attempt to classify testnet rewards, reimbursed purchases or token appreciation as external customer revenue.</li></ol><h4>Accept</h4><p>Every stream reconciles and is labelled correctly. No double-counted revenue or fabricated protocol demand; mining subsidy and external service income remain distinct in dashboards and ECO.</p><h4>Evidence the case requires</h4><p>Money-flow register; UI reconciliation; rejected classifications.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>research lane (ad6a2bd47d4a46105)</dd></div><div><dt>Run</dt><dd>eco-d4-20261008-01</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>45</dd></div><div><dt>Plan pages</dt><dd>13, 16, 17, 18, 24, 26</dd></div></dl></div></details><details class="acc-case" id="case-INC-03" data-case="INC-03" data-state="NOT RUN"><summary><span class="c-id">INC-03</span><span class="c-title">Let a modified client choose the most profitable task</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P07, P12</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/docs/analysis/class-v6/coexistence-model.md" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:55 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Permit independent schedulers to mine, prove internally, prove externally or switch off.</p><h4>Steps</h4><ol><li>Publish common costs and vary relative task rewards, memory pressure and switching costs.</li><li>Run clients that ignore the official scheduling recommendation.</li><li>Measure realised operator margin, internal capacity and network progress.</li></ol><h4>Accept</h4><p>Required P12 sustainable worlds maintain paid essential capacity without compelled altruism. Profitability and availability are based on realised outcomes, including switching and wasted work.</p><h4>Evidence the case requires</h4><p>Scheduler source/policies; switching traces; capacity and margin series.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>research lane (ad6a2bd47d4a46105)</dd></div><div><dt>Run</dt><dd>eco-d4-20261008-01</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>45</dd></div><div><dt>Plan pages</dt><dd>13, 16, 17, 18, 24, 26</dd></div></dl></div></details><details class="acc-case" id="case-INC-04" data-case="INC-04" data-state="NOT RUN"><summary><span class="c-id">INC-04</span><span class="c-title">Survive external-demand spikes and token declines</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P07, P08, P12</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/docs/analysis/class-v6/coexistence-model.md" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:55 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use F7 scenarios with 10x external job offers and token-denominated mining-income shocks.</p><h4>Steps</h4><ol><li>Allow miners/provers to switch freely under the declared reward and difficulty rules.</li><li>Observe hash participation, proof backlog, fees and recovery without an administrator.</li><li>Repeat with external demand dropping to zero and with a dominant operator withdrawn.</li></ol><h4>Accept</h4><p>Mandatory viable worlds meet P07/P12; stressed nonviable worlds fail or pause safely with truthful status. No emergency rule, fabricated demand or unofficial subsidy is inserted to force a pass.</p><h4>Evidence the case requires</h4><p>Shock timeline; fee/hash/capacity paths; failure-region report.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>research lane (ad6a2bd47d4a46105)</dd></div><div><dt>Run</dt><dd>eco-d4-20261008-01</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>46</dd></div><div><dt>Plan pages</dt><dd>13, 16, 17, 18, 24, 26</dd></div></dl></div></details><details class="acc-case" id="case-INC-05" data-case="INC-05" data-state="NOT RUN"><summary><span class="c-id">INC-05</span><span class="c-title">Contain job reservation and identity-splitting abuse</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P07, P09</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Freeze the actual assignment/payment mechanism; do not assume unimplemented collateral or identity controls.</p><h4>Steps</h4><ol><li>Create many worker identities, reserve jobs, withhold proofs and submit late results.</li><li>Attempt free option-taking, duplicate work rewards and displacement of honest assignments.</li><li>Price attacker costs and observe honest completion under the approved abuse load.</li></ol><h4>Accept</h4><p>F0 rules and P07 service limits hold under the declared adversary. Identity splitting does not create unauthorised rewards or control; any unmitigated starvation path blocks the permissionless-service claim.</p><h4>Evidence the case requires</h4><p>Attack clients; assignment trace; cost-to-disrupt analysis; honest-user outcomes.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>enforced-proving lane (a6e8f84588b809d62)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>46</dd></div><div><dt>Plan pages</dt><dd>13, 16, 17, 18, 24, 26</dd></div></dl></div></details><details class="acc-case" id="case-INC-06" data-case="INC-06" data-state="NOT RUN"><summary><span class="c-id">INC-06</span><span class="c-title">Test difficulty and timestamp manipulation</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P08, P12</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use the actual adjustment algorithm and consensus timestamp rule with independent miners.</p><h4>Steps</h4><ol><li>Inject large hashrate arrivals/departures, periodic selective mining and boundary-timed bursts.</li><li>Try allowed and invalid timestamp skew, withheld blocks and replayed work.</li><li>Observe block intervals, reward allocation and recovery after hashrate stabilises.</li></ol><h4>Accept</h4><p>Invalid inputs are rejected; valid adversarial strategies remain within F0/P08 bounds and are priced in ECO. No unexplained reward amplification, permanent stall or conflicting accepted work.</p><h4>Evidence the case requires</h4><p>Difficulty trace; timestamp corpus; revenue analysis; independent rule review.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>research lane (ad6a2bd47d4a46105)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>46</dd></div><div><dt>Plan pages</dt><dd>13, 16, 17, 18, 24, 26</dd></div></dl></div></details><details class="acc-case" id="case-INC-07" data-case="INC-07" data-state="NOT RUN"><summary><span class="c-id">INC-07</span><span class="c-title">Resist self-dealing fees and fake proving demand</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P12, P14</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use self-funded operators and related customer identities in the isolated economic model/network.</p><h4>Steps</h4><ol><li>Cycle funds through jobs, tips, developer shares and rebates to seek net reward extraction.</li><li>Attempt to inflate external-demand metrics without genuine unrelated customer expenditure.</li><li>Reconcile all counterparties and net cash contribution rather than gross transaction volume.</li></ol><h4>Accept</h4><p>No unauthorised subsidy extraction or metric inflation passes. Related-party volume is disclosed/excluded from P14; net external cash and legitimate protocol incentives are reported separately.</p><h4>Evidence the case requires</h4><p>Circular-flow tests; ownership/conflict review; net-cash reconciliation.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>enforced-proving lane (a6e8f84588b809d62)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>47</dd></div><div><dt>Plan pages</dt><dd>13, 16, 17, 18, 24, 26</dd></div></dl></div></details><details class="acc-case" id="case-INC-08" data-case="INC-08" data-state="NOT RUN"><summary><span class="c-id">INC-08</span><span class="c-title">Quantify provider and supplier failure concentration</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P08, P11, P12</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/docs/analysis/class-v6/coexistence-model.md" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:55 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Model control of hashing, signing, proving, aggregation and hardware supply separately.</p><h4>Steps</h4><ol><li>Remove each largest operational dependency and combine correlated failures.</li><li>Measure replacement cost/time and whether essential roles share hidden ownership.</li><li>Compare results with the approved fault model and no-rescue exercise.</li></ol><h4>Accept</h4><p>No hidden single dependency defeats the claimed independence; within-tolerance withdrawals recover under P08/P11. Hardware supply concentration is disclosed without equating vendor sales to operator voting control.</p><h4>Evidence the case requires</h4><p>Role/ownership map; dependency removals; recovery and concentration report.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>research lane (ad6a2bd47d4a46105)</dd></div><div><dt>Run</dt><dd>eco-d4-20261008-01</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>47</dd></div><div><dt>Plan pages</dt><dd>13, 16, 17, 18, 24, 26</dd></div></dl></div></details></div></div></section><section class="section acc-suite" id="suite-FIN"><div class="container"><div class="acc-suite-head"><div class="acc-suite-code"><span class="n">11</span>FIN</div><div class="acc-suite-t"><h2>Consensus safety and recovery</h2><p class="acc-sub">Test safety under the stated fault bounds. Demand liveness only when synchrony and participation assumptions actually hold.</p></div><div class="acc-suite-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></div></div><dl class="acc-facts"><div><dt>Owner</dt><dd>Consensus lead + independent formal/security review</dd></div><div><dt>Gate</dt><dd>G5 / technical readiness <span class="acc-gl"><a href="#gate-G5">G5</a></span></dd></div><div><dt>Fixtures</dt><dd>F0 exact fault model; F4 real-node partitions; F5 certificates and historical failures</dd></div><div><dt>Plan pages</dt><dd>19, 21, 24, 25</dd></div></dl><div class="acc-suite-bar"><div class="acc-bar" role="img" aria-label="FIN: 8 cases: 1 passed under the standard, 0 running with team evidence, 7 not run, 0 deferred"><span class="seg g-pass" style="flex-grow:1" title="1 PASS"></span><span class="seg g-notrun" style="flex-grow:7" title="7 NOT RUN"></span></div><span>8 cases: 1 passed under the standard, 0 running with team evidence, 7 not run, 0 deferred</span></div><div class="acc-cases"><div class="acc-cases-h" aria-hidden="true"><span>Case</span><span>Title</span><span>Priority</span><span>Profile</span><span>Status</span><span>Evidence</span><span>Last run</span><span></span></div><details class="acc-case" id="case-FIN-01" data-case="FIN-01" data-state="NOT RUN"><summary><span class="c-id">FIN-01</span><span class="c-title">Agree on ordering, work and executed state</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P08</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 01:33 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use real fork-choice/DAG handling and independent miners, not only a simplified simulator.</p><h4>Steps</h4><ol><li>Generate concurrent branches, delayed blocks, duplicates and invalid work with deterministic seeds.</li><li>Compare selected ordering, accumulated work, transaction execution and state roots after delivery converges.</li><li>Replay from independent checkpoints and from genesis where practical.</li></ol><h4>Accept</h4><p>Honest nodes converge under F0 assumptions with exact roots and rewards. No duplicated work accounting or undocumented ordering dependence; simulator-only success cannot substitute.</p><h4>Evidence the case requires</h4><p>Block/ordering corpus; root/work diffs; real-node replay logs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>fast-time lane (a8be71a0db962911c)</dd></div><div><dt>Run</dt><dd>202-5d53a591-1176efb9</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>48</dd></div><div><dt>Plan pages</dt><dd>19, 21, 24, 25</dd></div></dl></div></details><details class="acc-case" id="case-FIN-02" data-case="FIN-02" data-state="PASS"><summary><span class="c-id">FIN-02</span><span class="c-title">Attack finality with split honest populations</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P08</span><span class="c-st"><span class="acc-chip s-pass" data-state="PASS">PASS</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/sim/finality-attacks-results/native-2026-10-09/s203-1c.md" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 02:02 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use the source-discussed 40/40/20 weight split, plus threshold-boundary splits under F0.</p><h4>Steps</h4><ol><li>Let the 20% adversarial group sign conflicting histories while honest groups are partitioned.</li><li>Delay messages and eligibility updates independently; keep total historical weights auditable.</li><li>Try to form two certificates and reconnect nodes to observe accepted final history.</li></ol><h4>Accept</h4><p>No conflicting final certificates are accepted within the declared fault bound. A safe pause is valid when quorum is unavailable; making progress on both sides is not required.</p><h4>Evidence the case requires</h4><p>Signed votes; certificate attempts; voter-table snapshots; safety checker output.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>finality lane (aca0f5ed924a2a99b)</dd></div><div><dt>Run</dt><dd>fin-203-20261009T0127Z</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>48</dd></div><div><dt>Plan pages</dt><dd>19, 21, 24, 25</dd></div></dl></div></details><details class="acc-case" id="case-FIN-03" data-case="FIN-03" data-state="NOT RUN"><summary><span class="c-id">FIN-03</span><span class="c-title">Cross authority expiry in a long partition</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P08</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 01:33 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Recover historical expiry failures where available; use the actual current authority-transition rules.</p><h4>Steps</h4><ol><li>Partition for 31, 35, 60 and 90 logical days and around every retention/expiry boundary.</li><li>Attempt independently renewed authority sets and conflicting checkpoint locks.</li><li>Repeat selected boundary cases on real nodes with accelerated timers explicitly labelled.</li></ol><h4>Accept</h4><p>Authority continuity remains authenticated and no conflicting final history appears within F0 assumptions. A timeout is not accepted as proof absent voters ceased to exist. Compressed time is not multi-month field evidence.</p><h4>Evidence the case requires</h4><p>Expiry timeline; table/certificate history; historical regression tests.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>finality lane (aca0f5ed924a2a99b)</dd></div><div><dt>Run</dt><dd>202-5d53a591-1176efb9</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>48</dd></div><div><dt>Plan pages</dt><dd>19, 21, 24, 25</dd></div></dl></div></details><details class="acc-case" id="case-FIN-04" data-case="FIN-04" data-state="NOT RUN"><summary><span class="c-id">FIN-04</span><span class="c-title">Stop signing while mining continues</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P08</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 01:33 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Remove enough signing participation to invalidate the liveness assumption without forging votes.</p><h4>Steps</h4><ol><li>Continue mining and execution, cross seed boundaries and monitor proof queues.</li><li>Check which user-visible states advance and which remain unfinalised.</li><li>Restore eligible weight and bounded message delay, then verify recovery.</li></ol><h4>Accept</h4><p>No false finality or fabricated authority. Behaviour matches F0 during the pause and P08 after assumptions return; unfinished transactions are not displayed as irreversible.</p><h4>Evidence the case requires</h4><p>Signing/mining trace; UI/RPC states; recovery roots and timing.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>finality lane (aca0f5ed924a2a99b)</dd></div><div><dt>Run</dt><dd>202-5d53a591-1176efb9</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>49</dd></div><div><dt>Plan pages</dt><dd>19, 21, 24, 25</dd></div></dl></div></details><details class="acc-case" id="case-FIN-05" data-case="FIN-05" data-state="NOT RUN"><summary><span class="c-id">FIN-05</span><span class="c-title">Authenticate voter-set changes and pooled keys</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P08</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 01:33 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use normal transitions, pool members retaining keys and malicious substitution attempts.</p><h4>Steps</h4><ol><li>Alter voter weights, membership proofs, miner/pool identity bindings and prior-certificate links.</li><li>Race updates across boundaries and replay old signed changes.</li><li>Have a new node verify the authority chain from its declared trust anchor.</li></ol><h4>Accept</h4><p>Only correctly authenticated changes are accepted; weights cannot be double-counted or redirected by a pool. All honest nodes agree on the active authority set for each certified point.</p><h4>Evidence the case requires</h4><p>Authority-chain fixtures; substitution attacks; new-node verification log.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>finality lane (aca0f5ed924a2a99b)</dd></div><div><dt>Run</dt><dd>202-5d53a591-1176efb9</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>49</dd></div><div><dt>Plan pages</dt><dd>19, 21, 24, 25</dd></div></dl></div></details><details class="acc-case" id="case-FIN-06" data-case="FIN-06" data-state="NOT RUN"><summary><span class="c-id">FIN-06</span><span class="c-title">Analyse old-key compromise and long-range histories</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P08</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Freeze assumptions about key erasure, retained weights, trust anchors and offline recovery.</p><h4>Steps</h4><ol><li>Use previously eligible keys to build alternative histories after their operators disappear.</li><li>Present these histories to recently offline and newly joining clients.</li><li>Test replayed certificates, stale anchors and compromised signer subsets.</li></ol><h4>Accept</h4><p>Acceptance matches the explicit security model with no hidden trusted recovery step. Any reliance on a recent trusted anchor is disclosed and tested; hashpower assumptions cannot replace old-key analysis.</p><h4>Evidence the case requires</h4><p>Long-range corpus; trust-anchor policy; key-compromise review; client results.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>finality lane (aca0f5ed924a2a99b)</dd></div><div><dt>Run</dt><dd>team-2026-10-08</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>49</dd></div><div><dt>Plan pages</dt><dd>19, 21, 24, 25</dd></div></dl></div></details><details class="acc-case" id="case-FIN-07" data-case="FIN-07" data-state="NOT RUN"><summary><span class="c-id">FIN-07</span><span class="c-title">Recover deterministically after reconnection and crash</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P08</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 02:02 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Combine partitions with node crash, partial writes, restarts and proof backlog.</p><h4>Steps</h4><ol><li>Reconnect networks under bounded latency and restore required honest participation.</li><li>Verify fork choice, unfinalised reorganisation, finality, reward rollback and proof reassignments.</li><li>Compare all honest nodes and customer-visible receipts after recovery.</li></ol><h4>Accept</h4><p>P08 recovery holds without reversing a previously valid final guarantee. Only permitted unfinalised state is reorganised; no duplicate rewards or inconsistent receipt statuses survive.</p><h4>Evidence the case requires</h4><p>Recovery timelines; roots/certificates; payout rollback; customer-state reconciliation.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>finality lane (aca0f5ed924a2a99b)</dd></div><div><dt>Run</dt><dd>fin-203-20261009T0127Z</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>50</dd></div><div><dt>Plan pages</dt><dd>19, 21, 24, 25</dd></div></dl></div></details><details class="acc-case" id="case-FIN-08" data-case="FIN-08" data-state="NOT RUN"><summary><span class="c-id">FIN-08</span><span class="c-title">Combine boundaries, faults and adversarial scheduling</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P08</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/sim/results_v2.md" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 02:02 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use an independent model checker/scheduler and production-node scenarios from F4.</p><h4>Steps</h4><ol><li>Combine epoch changes, authority transitions, mining churn, data delays and prover/aggregator loss.</li><li>Explore bounded adversarial message schedules and minimise any counterexample.</li><li>Replay model findings on real code and have an independent reviewer assess uncovered states.</li></ol><h4>Accept</h4><p>No unresolved safety failure; liveness claims hold only within declared assumptions and P08. Model bounds and untested schedules are published, not described as proof over every possible execution.</p><h4>Evidence the case requires</h4><p>Model/spec artifacts; schedule corpus; replay evidence; independent assessment.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Model checking + real-node testing</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>fast-time lane (a8be71a0db962911c)</dd></div><div><dt>Run</dt><dd>fin-203-20261009T0127Z</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>50</dd></div><div><dt>Plan pages</dt><dd>19, 21, 24, 25</dd></div></dl></div></details></div></div></section><section class="section acc-suite" id="suite-VER"><div class="container"><div class="acc-suite-head"><div class="acc-suite-code"><span class="n">12</span>VER</div><div class="acc-suite-t"><h2>Wallets, receipts and data availability</h2><p class="acc-sub">Verify the exact property shown to the user. An inclusion proof, execution proof and finality certificate are not interchangeable.</p></div><div class="acc-suite-st"><span class="acc-chip s-fail" data-state="FAIL">FAIL</span></div></div><dl class="acc-facts"><div><dt>Owner</dt><dd>Wallet + light-client lead; independent security review</dd></div><div><dt>Gate</dt><dd>Technical readiness / claimed options</dd></div><div><dt>Fixtures</dt><dd>F0 trust/availability model; F5 malformed roots, receipts and authority chains</dd></div><div><dt>Plan pages</dt><dd>20, 25, 35, 37</dd></div></dl><div class="acc-suite-bar"><div class="acc-bar" role="img" aria-label="VER: 8 cases: 0 passed under the standard, 0 running with team evidence, 3 failed, 5 not run, 0 deferred"><span class="seg g-fail" style="flex-grow:3" title="3 FAIL"></span><span class="seg g-notrun" style="flex-grow:5" title="5 NOT RUN"></span></div><span>8 cases: 0 passed under the standard, 0 running with team evidence, 3 failed, 5 not run, 0 deferred</span></div><div class="acc-cases"><div class="acc-cases-h" aria-hidden="true"><span>Case</span><span>Title</span><span>Priority</span><span>Profile</span><span>Status</span><span>Evidence</span><span>Last run</span><span></span></div><details class="acc-case" id="case-VER-01" data-case="VER-01" data-state="FAIL"><summary><span class="c-id">VER-01</span><span class="c-title">Authenticate light-client bootstrap</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P09</span><span class="c-st"><span class="acc-chip s-fail" data-state="FAIL">FAIL</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/tools/reference-apps/ver/evidence/VER-01.json" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:46 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Give a clean client malicious RPC responses, fabricated voter tables and valid-looking signatures.</p><h4>Steps</h4><ol><li>Start from the approved trust anchor and verify every required link to the advertised state.</li><li>Substitute otherwise well-formed but unauthorised keys, weights and checkpoints.</li><li>Remove the bootstrap service and use another independently operated source.</li></ol><h4>Accept</h4><p>The client rejects unauthorised authority and discloses any trust anchor. Signatures over a node-supplied table do not by themselves pass; missing authentication never silently degrades to trusted RPC.</p><h4>Evidence the case requires</h4><p>Bootstrap corpus; trust-chain trace; fail-closed tests.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>reference-apps lane (a2060899d2a27d31c)</dd></div><div><dt>Run</dt><dd>ra-20261008T1915-ver</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>51</dd></div><div><dt>Plan pages</dt><dd>20, 25, 35, 37</dd></div></dl></div></details><details class="acc-case" id="case-VER-02" data-case="VER-02" data-state="FAIL"><summary><span class="c-id">VER-02</span><span class="c-title">Verify evolving authority and execution statements</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P09</span><span class="c-st"><span class="acc-chip s-fail" data-state="FAIL">FAIL</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/tools/reference-apps/ver/evidence/VER-01.json" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:46 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use valid state proofs paired with wrong execution statements or stale authority histories.</p><h4>Steps</h4><ol><li>Cross voter and verifier changes with offline clients returning after long intervals.</li><li>Alter roots, aggregate identity and proof/public-input bindings independently.</li><li>Check local verification rather than merely a server-reported verified flag.</li></ol><h4>Accept</h4><p>All advertised proof checks occur locally or the remaining trust is explicitly disclosed. Wrong roots and unauthenticated authority are rejected; unsupported verification paths are not claimed.</p><h4>Evidence the case requires</h4><p>Client verification trace; corrupted inputs; offline/upgrade results.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>reference-apps lane (a2060899d2a27d31c)</dd></div><div><dt>Run</dt><dd>ra-20261008T1915-ver</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>51</dd></div><div><dt>Plan pages</dt><dd>20, 25, 35, 37</dd></div></dl></div></details><details class="acc-case" id="case-VER-03" data-case="VER-03" data-state="NOT RUN"><summary><span class="c-id">VER-03</span><span class="c-title">Prove successful payment rather than inclusion</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P09</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/tools/reference-apps/ver/evidence/summary.json" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:46 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Create successful, reverted, wrong-asset, wrong-recipient and wrong-amount transfers.</p><h4>Steps</h4><ol><li>Generate receipts for included transactions, including failures and replaced/unfinalised transactions.</li><li>Verify execution status plus asset, recipient, amount and canonical-state/receipt commitment.</li><li>Replay the receipt on another chain and after an allowed unfinalised reorganisation.</li></ol><h4>Accept</h4><p>Only the actual successful, correctly bound transfer is labelled payment proof. Inclusion-only receipts are labelled as such; no node-reported success flag substitutes for authenticated outcome.</p><h4>Evidence the case requires</h4><p>Payment fixture corpus; receipt verification; merchant-facing status checks.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>reference-apps lane (a2060899d2a27d31c)</dd></div><div><dt>Run</dt><dd>ra-20261008T1915-ver</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>51</dd></div><div><dt>Plan pages</dt><dd>20, 25, 35, 37</dd></div></dl></div></details><details class="acc-case" id="case-VER-04" data-case="VER-04" data-state="NOT RUN"><summary><span class="c-id">VER-04</span><span class="c-title">Bound cross-chain oracle trust and replay</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P00, P01, P09</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/tools/reference-apps/ver/evidence/summary.json" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:46 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>For a claimed oracle, freeze destination verifier, authority updates, accepted proof types and replay policy.</p><h4>Steps</h4><ol><li>Try deployer-substituted keys, stale certificates, unchecked signatures and wrong source/destination identities.</li><li>Exercise legitimate authority updates and source reorganisations under the approved model.</li><li>Measure gas/cost with realistic header sets and test disabled/unavailable verification.</li></ol><h4>Accept</h4><p>The oracle enforces its declared trust model and fails closed. Deployer privileges and unavailable guarantees are explicit; no trustless-bridge claim exceeds the checks performed. Excluded oracle scope earns no pass credit.</p><h4>Evidence the case requires</h4><p>Oracle code/parameters; attack cases; cost report; privilege disclosure.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Claimed-option verification</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>reference-apps lane (a2060899d2a27d31c)</dd></div><div><dt>Run</dt><dd>ra-20261008T1915-ver</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>52</dd></div><div><dt>Plan pages</dt><dd>20, 25, 35, 37</dd></div></dl></div></details><details class="acc-case" id="case-VER-05" data-case="VER-05" data-state="FAIL"><summary><span class="c-id">VER-05</span><span class="c-title">Reconstruct required state without founder storage</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P08, P09</span><span class="c-st"><span class="acc-chip s-fail" data-state="FAIL">FAIL</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/tools/reference-apps/ver/evidence/VER-05.json" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:46 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Remove founder archival/input services and start an independent operator from the documented entry point.</p><h4>Steps</h4><ol><li>Fetch authenticated blocks, state/proof inputs and any required witnesses from permitted peers.</li><li>Rebuild the expected state and continue validation/proving.</li><li>Measure bandwidth, disk, time and retention requirements against advertised operator budgets.</li></ol><h4>Accept</h4><p>Required data can be obtained and verified within the declared availability model. Hidden archives or unpublished files block independence. A valid execution proof alone does not satisfy this test.</p><h4>Evidence the case requires</h4><p>Download/reconstruction logs; data hashes; resource costs; dependency inventory.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>reference-apps lane (a2060899d2a27d31c)</dd></div><div><dt>Run</dt><dd>ra-20261008T1915-ver</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>52</dd></div><div><dt>Plan pages</dt><dd>20, 25, 35, 37</dd></div></dl></div></details><details class="acc-case" id="case-VER-06" data-case="VER-06" data-state="NOT RUN"><summary><span class="c-id">VER-06</span><span class="c-title">Detect withholding, corruption and stale data</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P08, P09</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/tools/reference-apps/ver/evidence/summary.json" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:46 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Serve valid commitments with missing data, corrupted chunks, stale witnesses and conflicting peer replies.</p><h4>Steps</h4><ol><li>Attempt to make a validator or light client accept an unavailable or incorrect state under F0.</li><li>Test retrieval from independent peers and expiry/retry policy.</li><li>Restore data and check that recovery cannot alter an already verified commitment.</li></ol><h4>Accept</h4><p>No unjustified available/verified status; safety and admission rules match F0. Recovery is bounded where assumptions permit, and unavailable-data states remain visible instead of hidden behind proofs.</p><h4>Evidence the case requires</h4><p>Withholding corpus; peer retrieval traces; availability/status checks.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>reference-apps lane (a2060899d2a27d31c)</dd></div><div><dt>Run</dt><dd>ra-20261008T1915-ver</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>52</dd></div><div><dt>Plan pages</dt><dd>20, 25, 35, 37</dd></div></dl></div></details><details class="acc-case" id="case-VER-07" data-case="VER-07" data-state="NOT RUN"><summary><span class="c-id">VER-07</span><span class="c-title">Protect wallet keys, signing and recovery</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P09</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use test-only keys, encrypted backups and clean replacement devices; no real user funds.</p><h4>Steps</h4><ol><li>Attempt secret access from proving jobs, logs, crash dumps, clipboard and telemetry paths.</li><li>Verify transaction destination/amount before signing; test backup/restore and wrong-password handling.</li><li>Upgrade and recover without silently changing signing authority or exposing seed material.</li></ol><h4>Accept</h4><p>No unintended secret disclosure or unauthorised signature. Supported recovery restores the correct keys and accounts; users receive explicit risk/backup information. Logs are sanitised without hiding security evidence.</p><h4>Evidence the case requires</h4><p>Security review; canary-secret tests; signing fixtures; restore journey.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>shipper (ae892a8b0f78fe31c)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>53</dd></div><div><dt>Plan pages</dt><dd>20, 25, 35, 37</dd></div></dl></div></details><details class="acc-case" id="case-VER-08" data-case="VER-08" data-state="NOT RUN"><summary><span class="c-id">VER-08</span><span class="c-title">Keep every user-facing state truthful</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P09</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 01:33 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Create included-only, executed, proven, finalised, reverted, stale and paused examples.</p><h4>Steps</h4><ol><li>Compare explorer, wallet, receipt, RPC and customer API labels against authenticated evidence.</li><li>Interrupt finality and proof services and observe refresh/reconnect behaviour.</li><li>Check statements about privacy, Ethereum security and device support.</li></ol><h4>Accept</h4><p>No stronger state is implied than verified; stale data is marked and failures are actionable. EVM compatibility is not labelled Ethereum security, and ZK technology is not automatically labelled transaction privacy.</p><h4>Evidence the case requires</h4><p>Cross-surface screenshots/logs; state mapping; claim review.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>reference-apps lane (a2060899d2a27d31c)</dd></div><div><dt>Run</dt><dd>202-5d53a591-1176efb9</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>53</dd></div><div><dt>Plan pages</dt><dd>20, 25, 35, 37</dd></div></dl></div></details></div></div></section><section class="section acc-suite" id="suite-OPS"><div class="container"><div class="acc-suite-head"><div class="acc-suite-code"><span class="n">13</span>OPS</div><div class="acc-suite-t"><h2>Independent operation and release security</h2><p class="acc-sub">A permissionless specification must remain operational without privileged infrastructure or unsafe automatic updates.</p></div><div class="acc-suite-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></div></div><dl class="acc-facts"><div><dt>Owner</dt><dd>Operations + release leads; independent operators</dd></div><div><dt>Gate</dt><dd>G5 <span class="acc-gl"><a href="#gate-G5">G5</a></span></dd></div><div><dt>Fixtures</dt><dd>F4 isolated multi-operator network; F0 signed releases; F9 telemetry</dd></div><div><dt>Plan pages</dt><dd>21, 24, 25, 26</dd></div></dl><div class="acc-suite-bar"><div class="acc-bar" role="img" aria-label="OPS: 8 cases: 0 passed under the standard, 0 running with team evidence, 8 not run, 0 deferred"><span class="seg g-notrun" style="flex-grow:8" title="8 NOT RUN"></span></div><span>8 cases: 0 passed under the standard, 0 running with team evidence, 8 not run, 0 deferred</span></div><div class="acc-cases"><div class="acc-cases-h" aria-hidden="true"><span>Case</span><span>Title</span><span>Priority</span><span>Profile</span><span>Status</span><span>Evidence</span><span>Last run</span><span></span></div><details class="acc-case" id="case-OPS-01" data-case="OPS-01" data-state="NOT RUN"><summary><span class="c-id">OPS-01</span><span class="c-title">Run the complete no-founder exercise</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P07, P08, P11</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use the P11 independent network, adequate honest participation and enough non-founder capacity for W.</p><h4>Steps</h4><ol><li>Remove founder miners, provers, aggregators, RPC, DNS/bootstrap dependencies and private support access.</li><li>Run the full P11 period while crossing real and separately labelled accelerated boundaries.</li><li>Introduce scheduled faults and have independent operators recover using published instructions.</li></ol><h4>Accept</h4><p>No founder action, secret file, privileged key or emergency anti-chip rule is needed. P07/P08 outcomes hold within assumptions; any intervention is recorded as a failed no-rescue run, not erased.</p><h4>Evidence the case requires</h4><p>Operator roster/conflict checks; dependency removals; full activity/intervention log.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>node lane (a283f5f0d364ceef0)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>54</dd></div><div><dt>Plan pages</dt><dd>21, 24, 25, 26</dd></div></dl></div></details><details class="acc-case" id="case-OPS-02" data-case="OPS-02" data-state="NOT RUN"><summary><span class="c-id">OPS-02</span><span class="c-title">Diversify bootstrap and resist peer isolation</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P08, P09</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Start nodes without the default bootstrap host and give others adversarial peer lists.</p><h4>Steps</h4><ol><li>Attempt eclipse through peer concentration, stale discovery, poisoned DNS and repeated identities in an isolated lab.</li><li>Use independent documented discovery paths and validate returned chain data.</li><li>Measure synchronisation, peer diversity and recovery after benign connectivity returns.</li></ol><h4>Accept</h4><p>No unauthenticated history is trusted; bootstrap has no hidden single-provider requirement. Isolation is detected/contained according to F0 and recovery meets P08 when assumptions return.</p><h4>Evidence the case requires</h4><p>Peer/discovery traces; eclipse scenarios; startup and recovery evidence.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>build-server lane (a352e49ff4613df86)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>54</dd></div><div><dt>Plan pages</dt><dd>21, 24, 25, 26</dd></div></dl></div></details><details class="acc-case" id="case-OPS-03" data-case="OPS-03" data-state="NOT RUN"><summary><span class="c-id">OPS-03</span><span class="c-title">Separate update distribution from consensus authority</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P09</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 02:34 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use test signing keys and clean desktop/node installations with valid, stale and malicious packages.</p><h4>Steps</h4><ol><li>Offer signed updates with unexpected consensus rules, downgraded binaries and corrupted payloads.</li><li>Test explicit operator acceptance and the published signing-key incident procedure.</li><li>Confirm that distribution-key possession cannot independently activate new consensus rules.</li></ol><h4>Accept</h4><p>Tampering/unauthorised rollback is rejected; updates do not silently transfer authority. Approved acceptance and activation are separate. No test touches production signing material.</p><h4>Evidence the case requires</h4><p>Package corpus; approval/activation traces; compromised-key rehearsal.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>shipper (ae892a8b0f78fe31c)</dd></div><div><dt>Run</dt><dd>site-manifest-20261009-01</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>54</dd></div><div><dt>Plan pages</dt><dd>21, 24, 25, 26</dd></div></dl></div></details><details class="acc-case" id="case-OPS-04" data-case="OPS-04" data-state="NOT RUN"><summary><span class="c-id">OPS-04</span><span class="c-title">Recover nodes from crash and storage damage</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P08</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 01:33 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use production database/snapshot paths with controlled interrupted writes and corrupted test storage.</p><h4>Steps</h4><ol><li>Crash during import, proof acceptance, reward application and snapshot generation.</li><li>Restore from independently verified snapshots or re-sync through documented procedures.</li><li>Compare roots, certificates, balances and processed-job IDs with an unaffected node.</li></ol><h4>Accept</h4><p>No corrupt snapshot is trusted, no duplicate payout and no loss of authenticated final state. Recovery meets P08 where data is available; ambiguous corruption fails closed and is actionable.</p><h4>Evidence the case requires</h4><p>Crash schedule; snapshot hashes; root/balance diffs; recovery timing.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>node lane (a283f5f0d364ceef0)</dd></div><div><dt>Run</dt><dd>202-5d53a591-1176efb9</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>55</dd></div><div><dt>Plan pages</dt><dd>21, 24, 25, 26</dd></div></dl></div></details><details class="acc-case" id="case-OPS-05" data-case="OPS-05" data-state="NOT RUN"><summary><span class="c-id">OPS-05</span><span class="c-title">Isolate untrusted proving workloads</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P09</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Run hostile test jobs with secret canaries and restrictive worker permissions.</p><h4>Steps</h4><ol><li>Attempt filesystem escape, process spawning, resource exhaustion, network access and key-store reads.</li><li>Crash workers and inspect host, wallet and node availability plus dump/log contents.</li><li>Retry on every supported isolation backend and check dependency vulnerability handling.</li></ol><h4>Accept</h4><p>No secret leakage or unauthorised host action; P09 resource containment holds. Worker failure does not compromise validator/wallet authority; unsupported isolation is not marketed as safe execution.</p><h4>Evidence the case requires</h4><p>Sandbox penetration report; canary logs; resource limits; host-integrity checks.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>build-server lane (a352e49ff4613df86)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>55</dd></div><div><dt>Plan pages</dt><dd>21, 24, 25, 26</dd></div></dl></div></details><details class="acc-case" id="case-OPS-06" data-case="OPS-06" data-state="NOT RUN"><summary><span class="c-id">OPS-06</span><span class="c-title">Contain malicious network and API traffic</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P09</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 01:33 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use an authorised isolated load environment with declared resource and request-rate budgets.</p><h4>Steps</h4><ol><li>Send malformed headers, proofs, oversized messages, floods and invalid peer sequences.</li><li>Measure legitimate traffic, memory/disk growth and validator CPU use.</li><li>Test limit resets, peer reconnect and graceful degradation without disabling validation.</li></ol><h4>Accept</h4><p>P09 abuse budgets hold; no unbounded allocation, persistent crash or invalid acceptance. Backpressure is visible and honest users retain the specified service at admitted load.</p><h4>Evidence the case requires</h4><p>Load/corpus manifests; resource series; valid-traffic metrics; incident traces.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>build-server lane (a352e49ff4613df86)</dd></div><div><dt>Run</dt><dd>202-5d53a591-1176efb9</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>55</dd></div><div><dt>Plan pages</dt><dd>21, 24, 25, 26</dd></div></dl></div></details><details class="acc-case" id="case-OPS-07" data-case="OPS-07" data-state="NOT RUN"><summary><span class="c-id">OPS-07</span><span class="c-title">Detect failures with usable evidence and runbooks</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P09, P10</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Define alerts for invalid acceptance, conflicting finality, backlog, data loss, payout mismatch and stale status.</p><h4>Steps</h4><ol><li>Inject one instance of each monitored failure in the lab.</li><li>Have an unaffiliated operator diagnose it using only emitted evidence and published instructions.</li><li>Test redaction, metric freshness and duplicate-alert suppression without suppressing serious failures.</li></ol><h4>Accept</h4><p>P10 alert/detection limits hold; every blocker produces actionable evidence. Monitoring does not leak secrets or mislabel intentional safe pauses as successful finality.</p><h4>Evidence the case requires</h4><p>Alert matrix; detection timelines; independent runbook exercise.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>build-server lane (a352e49ff4613df86)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>56</dd></div><div><dt>Plan pages</dt><dd>21, 24, 25, 26</dd></div></dl></div></details><details class="acc-case" id="case-OPS-08" data-case="OPS-08" data-state="NOT RUN"><summary><span class="c-id">OPS-08</span><span class="c-title">Repeat independent operation across releases</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P00, P08, P11</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use a clean previous supported version and the final candidate with independent operators.</p><h4>Steps</h4><ol><li>Perform documented rolling upgrade, rollback of non-consensus software where allowed and resynchronisation.</li><li>Cross activation with mixed versions and unavailable founder distribution hosts.</li><li>Re-run affected gates after changes and preserve prior failures and incident lessons.</li></ol><h4>Accept</h4><p>No undocumented privileged migration or automatic consensus rewrite. All affected evidence is refreshed; P11 no-rescue results remain tied to the final release, not an earlier build.</p><h4>Evidence the case requires</h4><p>Upgrade/replay logs; invalidation map; repeated gate signatures.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>build-server lane (a352e49ff4613df86)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>56</dd></div><div><dt>Plan pages</dt><dd>21, 24, 25, 26</dd></div></dl></div></details></div></div></section><section class="section acc-suite" id="suite-UX"><div class="container"><div class="acc-suite-head"><div class="acc-suite-code"><span class="n">14</span>UX</div><div class="acc-suite-t"><h2>Ember, payouts and operator control</h2><p class="acc-sub">Successful participation must be practical for ordinary owners without hidden custody or loss of consensus authority.</p></div><div class="acc-suite-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></div></div><dl class="acc-facts"><div><dt>Owner</dt><dd>Desktop product + pool leads; independent usability study</dd></div><div><dt>Gate</dt><dd>Operator readiness / G5 <span class="acc-gl"><a href="#gate-G5">G5</a></span></dd></div><div><dt>Fixtures</dt><dd>F2 supported desktops; F8 user study; F4 honest/malicious pools</dd></div><div><dt>Plan pages</dt><dd>14, 21, 25, 26</dd></div></dl><div class="acc-suite-bar"><div class="acc-bar" role="img" aria-label="UX: 8 cases: 0 passed under the standard, 0 running with team evidence, 8 not run, 0 deferred"><span class="seg g-notrun" style="flex-grow:8" title="8 NOT RUN"></span></div><span>8 cases: 0 passed under the standard, 0 running with team evidence, 8 not run, 0 deferred</span></div><div class="acc-cases"><div class="acc-cases-h" aria-hidden="true"><span>Case</span><span>Title</span><span>Priority</span><span>Profile</span><span>Status</span><span>Evidence</span><span>Last run</span><span></span></div><details class="acc-case" id="case-UX-01" data-case="UX-01" data-state="NOT RUN"><summary><span class="c-id">UX-01</span><span class="c-title">Onboard ordinary owners on native desktop apps</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P10</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/docs/plans/evidence/UX-01-20261008.md" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:42 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Recruit the P10 first-time user cohort across Windows and macOS using supported physical hardware.</p><h4>Steps</h4><ol><li>Observe install, hardware detection, safety explanation and first accepted work without staff intervention.</li><li>Record download/data preparation separately as well as complete end-to-end time.</li><li>Test unsupported hardware and insufficient memory messaging rather than forcing a failed start.</li></ol><h4>Accept</h4><p>P10 completion/time targets hold with no unsafe default or concealed prerequisite. The product is tested as the actual desktop app, not only a browser preview.</p><h4>Evidence the case requires</h4><p>Consent-based study records; task timings; failure reasons; compatibility outcomes.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Independent observed user study</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>update-return lane (a22d765a2e0355a9f)</dd></div><div><dt>Run</dt><dd>ux-01-20261008-win-2.0.0</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>57</dd></div><div><dt>Plan pages</dt><dd>14, 21, 25, 26</dd></div></dl></div></details><details class="acc-case" id="case-UX-02" data-case="UX-02" data-state="NOT RUN"><summary><span class="c-id">UX-02</span><span class="c-title">Make pause, stop and safe tuning reliable</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P10</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 01:33 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Run mining/proving on active desktops under contention and safe thermal stress.</p><h4>Steps</h4><ol><li>Use pause, stop, power limit, task selection and emergency local shutdown controls.</li><li>Crash or restart the UI while workers run and verify ownership of background processes.</li><li>Restore the original hardware settings and test power-saving/low-battery behaviour where supported.</li></ol><h4>Accept</h4><p>P10 control latency and safe-state requirements hold. Stopping does not strand an uncontrolled process; tuning never depends on unsafe settings or silent privilege escalation.</p><h4>Evidence the case requires</h4><p>Control timings; process/settings audit; restart and safety traces.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>shipper (ae892a8b0f78fe31c)</dd></div><div><dt>Run</dt><dd>202-5d53a591-1176efb9</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>57</dd></div><div><dt>Plan pages</dt><dd>14, 21, 25, 26</dd></div></dl></div></details><details class="acc-case" id="case-UX-03" data-case="UX-03" data-state="NOT RUN"><summary><span class="c-id">UX-03</span><span class="c-title">Show net earnings and compatibility honestly</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P10, P12</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 01:33 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use known rewards, fees, energy readings, retries and operator-entered tariffs.</p><h4>Steps</h4><ol><li>Compare mining, internal proof and external proof income with authoritative ledgers.</li><li>Show gross/net estimates, measurement boundaries, tariff assumptions and payout status.</li><li>Test stale data, losses, negative margins and mining-only versus proving-compatible devices.</li></ol><h4>Accept</h4><p>P10 reconciliation limits hold and uncertainty is visible. No guaranteed profits, fabricated fiat price or inferred proving support; provisional earnings are not shown as settled payments.</p><h4>Evidence the case requires</h4><p>UI/ledger comparisons; tariff fixtures; stale/negative examples.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>shipper (ae892a8b0f78fe31c)</dd></div><div><dt>Run</dt><dd>202-5d53a591-1176efb9</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>57</dd></div><div><dt>Plan pages</dt><dd>14, 21, 25, 26</dd></div></dl></div></details><details class="acc-case" id="case-UX-04" data-case="UX-04" data-state="NOT RUN"><summary><span class="c-id">UX-04</span><span class="c-title">Pay small operators without hidden custody</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P10</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 01:33 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use ordinary single-card balances and the actual pooling/payment path.</p><h4>Steps</h4><ol><li>Earn, request/receive payment, disconnect and reconnect; include low balances, fees and a pool outage.</li><li>Attempt redirection, delayed accounting and withdrawal of another user's entitlement.</li><li>Reconcile displayed balances with canonical entitlement and actual settlement.</li></ol><h4>Accept</h4><p>P10 payout limits hold for the declared small-operator case. No unauthorised custody, redirection or unexplained loss; thresholds and fees are disclosed rather than masked by larger test balances.</p><h4>Evidence the case requires</h4><p>Single-card payout ledger; pool failure record; custody/authorisation review.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>pool design seat (a3832b1c3b274b310)</dd></div><div><dt>Run</dt><dd>202-5d53a591-1176efb9</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>58</dd></div><div><dt>Plan pages</dt><dd>14, 21, 25, 26</dd></div></dl></div></details><details class="acc-case" id="case-UX-05" data-case="UX-05" data-state="NOT RUN"><summary><span class="c-id">UX-05</span><span class="c-title">Keep voting keys with the miner through pooling</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P09</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><a href="https://git.igneum.network/igneum-network/igneum/src/branch/master/docs/analysis/pool/pool-pair-2026-10-08.md" rel="noopener">record</a></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:48 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use an honest pool and a modified pool that replaces worker identity or voting credentials.</p><h4>Steps</h4><ol><li>Verify the consensus binding from performed work to the miner's retained key.</li><li>Attempt substitution, replay and reassignment without the miner's authorisation.</li><li>Leave the pool and verify retained voting/finality rights under F0.</li></ol><h4>Accept</h4><p>No silent transfer of governance/finality authority. If the protocol cannot establish retained keys, this requirement fails; a pool-protocol name or user-interface promise does not pass.</p><h4>Evidence the case requires</h4><p>Work/key binding vectors; malicious-pool attempts; leave-pool authority check.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>pool design seat (a3832b1c3b274b310)</dd></div><div><dt>Run</dt><dd>pool-2.0-20261008-03</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>58</dd></div><div><dt>Plan pages</dt><dd>14, 21, 25, 26</dd></div></dl></div></details><details class="acc-case" id="case-UX-06" data-case="UX-06" data-state="NOT RUN"><summary><span class="c-id">UX-06</span><span class="c-title">Verify actual miner-selected work templates</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P10</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 01:33 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Provide a pool interface with declared job-declaration support and independent miner templates.</p><h4>Steps</h4><ol><li>Submit miner-selected valid transaction templates and verify what is actually hashed and accepted.</li><li>Have a pool substitute or censor templates and test local verification/fallback.</li><li>Measure payout and acceptance consequences without moving authority to the pool.</li></ol><h4>Accept</h4><p>The advertised selection control exists in accepted work, not only configuration. Undisclosed substitution is detected; supported independent operation remains practical under P10.</p><h4>Evidence the case requires</h4><p>Template commitments; accepted-block evidence; malicious-pool/fallback report.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>shipper (ae892a8b0f78fe31c)</dd></div><div><dt>Run</dt><dd>202-5d53a591-1176efb9</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>58</dd></div><div><dt>Plan pages</dt><dd>14, 21, 25, 26</dd></div></dl></div></details><details class="acc-case" id="case-UX-07" data-case="UX-07" data-state="NOT RUN"><summary><span class="c-id">UX-07</span><span class="c-title">Expose actionable failures and safe updates</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P09, P10</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 01:33 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Create failed proofs, memory pressure, expired jobs, missing payouts and available software updates.</p><h4>Steps</h4><ol><li>Ask independent users to identify the issue, stop safely and follow the recommended action.</li><li>Test explicit update approval, version visibility and a failed/corrupt update.</li><li>Confirm diagnostic exports remove keys and private inputs while retaining useful evidence.</li></ol><h4>Accept</h4><p>P10 task-success requirements hold; no silent update or false success state. Recovery instructions work on supported desktops and secret canaries never enter exported logs.</p><h4>Evidence the case requires</h4><p>Observed tasks; update traces; sanitised export tests.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>shipper (ae892a8b0f78fe31c)</dd></div><div><dt>Run</dt><dd>202-5d53a591-1176efb9</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>59</dd></div><div><dt>Plan pages</dt><dd>14, 21, 25, 26</dd></div></dl></div></details><details class="acc-case" id="case-UX-08" data-case="UX-08" data-state="NOT RUN"><summary><span class="c-id">UX-08</span><span class="c-title">Publish competitive accessible software</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P02, P10</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 08:36 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Provide open documented builds, tuning parameters and known fee conditions for all supported platforms.</p><h4>Steps</h4><ol><li>Compare Ember against independently optimised permissible implementations on identical work.</li><li>Measure efficiency, fees, false rejection, installation and update transparency.</li><li>Scan for hidden developer fees, hardware whitelists, per-address privilege or undisclosed remote controls.</li></ol><h4>Accept</h4><p>P10 relative-efficiency limits hold and all fees/privileges are explicit. No self-reported device tier earns consensus advantage. A superior external implementation triggers investigation, not selective exclusion.</p><h4>Evidence the case requires</h4><p>Matched software comparison; code/config review; fee/privilege inventory.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>hash lane (a690540514aa453d7)</dd></div><div><dt>Run</dt><dd>site-gate-20261009-01</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>59</dd></div><div><dt>Plan pages</dt><dd>14, 21, 25, 26</dd></div></dl></div></details></div></div></section><section class="section acc-suite" id="suite-COM"><div class="container"><div class="acc-suite-head"><div class="acc-suite-code"><span class="n">15</span>COM</div><div class="acc-suite-t"><h2>Paid demand and sustainable delivery</h2><p class="acc-sub">Devnet payouts and subsidised pilots demonstrate mechanics, not independent willingness to pay.</p></div><div class="acc-suite-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></div></div><dl class="acc-facts"><div><dt>Owner</dt><dd>Commercial lead + independent financial/customer reviewer</dd></div><div><dt>Gate</dt><dd>Commercial evidence</dd></div><div><dt>Fixtures</dt><dd>F8 real consenting customers; F7 full service costs; private identity proofs</dd></div><div><dt>Plan pages</dt><dd>4, 17, 18, 24, 26, 27, 31, 32, 33</dd></div></dl><div class="acc-suite-bar"><div class="acc-bar" role="img" aria-label="COM: 8 cases: 0 passed under the standard, 0 running with team evidence, 8 not run, 0 deferred"><span class="seg g-notrun" style="flex-grow:8" title="8 NOT RUN"></span></div><span>8 cases: 0 passed under the standard, 0 running with team evidence, 8 not run, 0 deferred</span></div><div class="acc-cases"><div class="acc-cases-h" aria-hidden="true"><span>Case</span><span>Title</span><span>Priority</span><span>Profile</span><span>Status</span><span>Evidence</span><span>Last run</span><span></span></div><details class="acc-case" id="case-COM-01" data-case="COM-01" data-state="NOT RUN"><summary><span class="c-id">COM-01</span><span class="c-title">Deliver a genuine contracted proof pilot</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P07, P14</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Select one real external customer with a meaningful fixed workload and no required migration to Igneum.</p><h4>Steps</h4><ol><li>Agree program, inputs, proof format, deadline, price, failure/refund policy and verification method.</li><li>Run paid jobs through ordinary independently operated infrastructure.</li><li>Have the customer verify usefulness, correctness and its reason for choosing the service.</li></ol><h4>Accept</h4><p>The pilot satisfies its actual contract and settles genuine external payment. Trial subsidies are disclosed and cannot satisfy the repeat-demand gate; no invented customer or testimonial.</p><h4>Evidence the case requires</h4><p>Redacted contract; verified jobs; settlement proof; consented customer confirmation.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>main / the founder</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>60</dd></div><div><dt>Plan pages</dt><dd>4, 17, 18, 24, 26, 27, 31, 32, 33</dd></div></dl></div></details><details class="acc-case" id="case-COM-02" data-case="COM-02" data-state="NOT RUN"><summary><span class="c-id">COM-02</span><span class="c-title">Establish independent repeat purchasing</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P14</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use the P14 multi-customer observation period and ownership/conflict checks.</p><h4>Steps</h4><ol><li>Track paid purchases on distinct occasions, including refunds and stopped customers.</li><li>Audit related parties, project reimbursements, token grants and circular funding.</li><li>Reconcile external cash received with correctly delivered meaningful work.</li></ol><h4>Accept</h4><p>P14 buyer, duration and volume minima are met without reimbursement or related-party substitution. Repeat orders are separate buying decisions, not a single payment split into many jobs.</p><h4>Evidence the case requires</h4><p>Anonymised buyer ledger; repeat-order dates; conflict review; net receipts.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>main / the founder</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>60</dd></div><div><dt>Plan pages</dt><dd>4, 17, 18, 24, 26, 27, 31, 32, 33</dd></div></dl></div></details><details class="acc-case" id="case-COM-03" data-case="COM-03" data-state="NOT RUN"><summary><span class="c-id">COM-03</span><span class="c-title">Demonstrate service and operator margins</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P12, P14</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Allocate all delivery costs, including aggregation, retries, hardware, power, host, network and support.</p><h4>Steps</h4><ol><li>Calculate gross contribution and fully loaded unit costs for each contracted workload.</li><li>Reconcile a representative operator's realised earnings against metered costs and opportunity cost.</li><li>Repeat under the declared demand and price sensitivities.</li></ol><h4>Accept</h4><p>P14 contribution targets hold and at least the required operator cohort has positive realised contribution. Excluded overhead is visible; token appreciation or unpriced founder labour cannot silently create profitability.</p><h4>Evidence the case requires</h4><p>Unit-economics ledger; metered operator sample; allocation rules; sensitivity report.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>main / the founder</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>60</dd></div><div><dt>Plan pages</dt><dd>4, 17, 18, 24, 26, 27, 31, 32, 33</dd></div></dl></div></details><details class="acc-case" id="case-COM-04" data-case="COM-04" data-state="NOT RUN"><summary><span class="c-id">COM-04</span><span class="c-title">Meet the customer service guarantee</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P07, P14</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Observe actual delivery deadlines, validity, failure handling and support over the contracted period.</p><h4>Steps</h4><ol><li>Count all accepted jobs, including failed, retried and abandoned cases.</li><li>Have the customer independently verify results and invoke one authorised refund/failure exercise.</li><li>Compare offered capacity and quoted price with what was actually delivered.</li></ol><h4>Accept</h4><p>P07 and contracted obligations hold; validity has zero accepted exceptions. Failure terms are honoured, and demand beyond capacity is explicitly refused rather than quietly omitted from metrics.</p><h4>Evidence the case requires</h4><p>Customer-verifier records; SLO report; refunds; promised-versus-delivered comparison.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>main / the founder</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>61</dd></div><div><dt>Plan pages</dt><dd>4, 17, 18, 24, 26, 27, 31, 32, 33</dd></div></dl></div></details><details class="acc-case" id="case-COM-05" data-case="COM-05" data-state="NOT RUN"><summary><span class="c-id">COM-05</span><span class="c-title">Compare against the buyer's real alternative</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P14, P15</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Identify a credible alternative supplier or in-house option for the same workload, proof format and security.</p><h4>Steps</h4><ol><li>Obtain comparable quotes or consented measured trials at the evaluation date.</li><li>Include integration, verification, deadlines and all operational costs, not only proof-generation time.</li><li>Document the customer's actual trade-off without inventing unavailable comparator evidence.</li></ol><h4>Accept</h4><p>P15 commercial comparison is satisfied with like-for-like scope and a evidenced purchase reason. Missing alternative data remains MISSING; it is not scored as an Igneum win.</p><h4>Evidence the case requires</h4><p>Dated comparison; workload/security match; customer decision record.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>main / the founder</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>61</dd></div><div><dt>Plan pages</dt><dd>4, 17, 18, 24, 26, 27, 31, 32, 33</dd></div></dl></div></details><details class="acc-case" id="case-COM-06" data-case="COM-06" data-state="NOT RUN"><summary><span class="c-id">COM-06</span><span class="c-title">Retain buyers after the pilot and subsidy period</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P14</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Follow all recruited customers through the P14 observation period, including churn.</p><h4>Steps</h4><ol><li>Remove disclosed trial incentives before measuring repeat demand.</li><li>Track renewal, expansion, cancellation reasons, unresolved incidents and buyer concentration.</li><li>Review whether one affiliated or subsidised buyer dominates the apparent market.</li></ol><h4>Accept</h4><p>P14 repeat/concentration conditions hold with honest denominator and churn reporting. Paying demand survives beyond a demonstration; unsatisfied or departed buyers are not removed retrospectively.</p><h4>Evidence the case requires</h4><p>Cohort/renewal ledger; churn notes; concentration and incentive report.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>main / the founder</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>61</dd></div><div><dt>Plan pages</dt><dd>4, 17, 18, 24, 26, 27, 31, 32, 33</dd></div></dl></div></details><details class="acc-case" id="case-COM-07" data-case="COM-07" data-state="NOT RUN"><summary><span class="c-id">COM-07</span><span class="c-title">Fund maintenance without assumed appreciation</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P13</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Prepare a costed plan for development, review, infrastructure, support and incident response.</p><h4>Steps</h4><ol><li>Separate committed resources from revenue dependent on adoption or token price.</li><li>Stress lower income and an unexpected security/operations expense.</li><li>Verify responsible owners and continuity arrangements without changing fair-launch promises.</li></ol><h4>Accept</h4><p>P13 committed-runway requirement holds and downside responses are documented. No uncommitted financing, rising token price or burn accounting is presented as available maintenance funding.</p><h4>Evidence the case requires</h4><p>Budget and commitment evidence; downside plan; owner/continuity roster.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>main / the founder</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>62</dd></div><div><dt>Plan pages</dt><dd>4, 17, 18, 24, 26, 27, 31, 32, 33</dd></div></dl></div></details><details class="acc-case" id="case-COM-08" data-case="COM-08" data-state="NOT RUN"><summary><span class="c-id">COM-08</span><span class="c-title">Let independent developers build useful integrations</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P09, P14</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>2026-10-08 18:3x UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Recruit unaffiliated developers unfamiliar with unpublished implementation details.</p><h4>Steps</h4><ol><li>Use public docs to deploy a supported application or integrate an external proof request and verification flow.</li><li>Record time, undocumented dependencies, workarounds and correctness issues.</li><li>Retest after documentation fixes without founder-written hidden integration code.</li></ol><h4>Accept</h4><p>P14 developer-task minimum passes on the final release; all required public instructions exist. Successful bytecode deployment alone does not count as a working application or service integration.</p><h4>Evidence the case requires</h4><p>Consented developer logs; public examples; issue closure; verified end-to-end journeys.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Independent integration study</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>main / the founder</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>62</dd></div><div><dt>Plan pages</dt><dd>4, 17, 18, 24, 26, 27, 31, 32, 33</dd></div></dl></div></details></div></div></section><section class="section acc-suite" id="suite-LEAD"><div class="container"><div class="acc-suite-head"><div class="acc-suite-code"><span class="n">16</span>LEAD</div><div class="acc-suite-t"><h2>Comparative leadership evidence</h2><p class="acc-sub">A serious contention claim requires comparative outcomes and real adoption evidence, not just an internally green test dashboard.</p></div><div class="acc-suite-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></div></div><dl class="acc-facts"><div><dt>Owner</dt><dd>Independent assessment panel + product/economics reviewers</dd></div><div><dt>Gate</dt><dd>Leadership-contender decision</dd></div><div><dt>Fixtures</dt><dd>F8 peer/customer studies; full signed technical evidence; 90-day observation</dd></div><div><dt>Plan pages</dt><dd>4, 22, 25, 27, 31, 32, 33</dd></div></dl><div class="acc-suite-bar"><div class="acc-bar" role="img" aria-label="LEAD: 8 cases: 0 passed under the standard, 0 running with team evidence, 8 not run, 0 deferred"><span class="seg g-notrun" style="flex-grow:8" title="8 NOT RUN"></span></div><span>8 cases: 0 passed under the standard, 0 running with team evidence, 8 not run, 0 deferred</span></div><div class="acc-cases"><div class="acc-cases-h" aria-hidden="true"><span>Case</span><span>Title</span><span>Priority</span><span>Profile</span><span>Status</span><span>Evidence</span><span>Last run</span><span></span></div><details class="acc-case" id="case-LEAD-01" data-case="LEAD-01" data-state="NOT RUN"><summary><span class="c-id">LEAD-01</span><span class="c-title">Register a fair contemporary comparison</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P15</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>2026-10-08 18:3x UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Choose at least the P15 peer coverage and an evaluation date before collecting confirmatory results.</p><h4>Steps</h4><ol><li>Include the plan's Ravencoin, Ergo and Firo reference set where comparable, then check for other relevant current options.</li><li>Freeze versions, supported hardware, methods, noninferiority margins and commercial alternatives.</li><li>Publish exclusions and prohibit cross-algorithm raw-hashrate comparisons.</li></ol><h4>Accept</h4><p>The protocol covers material alternatives fairly and is signed independently. A missing or non-comparable feature is not scored zero; no arbitrary universal rank is inferred from selected metrics.</p><h4>Evidence the case requires</h4><p>Timestamped peer protocol; source/version records; comparison/exclusion rationale.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Pre-registered comparative study</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>main / the founder</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>63</dd></div><div><dt>Plan pages</dt><dd>4, 22, 25, 27, 31, 32, 33</dd></div></dl></div></details><details class="acc-case" id="case-LEAD-02" data-case="LEAD-02" data-state="NOT RUN"><summary><span class="c-id">LEAD-02</span><span class="c-title">Demonstrate comparable operator advantages</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P02, P10, P15</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Use matched user tasks and operating conditions on the selected GPU-first networks.</p><h4>Steps</h4><ol><li>Measure install-to-first-accepted-work, software overhead versus each network's tuned baseline, payout friction and retained control.</li><li>Measure rejection/availability under the same network conditions; report fees separately.</li><li>Use blinded analysis where possible and independent runs for decisive differences.</li></ol><h4>Accept</h4><p>P15 noninferiority and superiority requirements hold on meaningful comparable dimensions. No raw hashes from different algorithms are compared, and transient token price is not labelled engineering superiority.</p><h4>Evidence the case requires</h4><p>Matched task data; uncertainty/effect sizes; independent comparison report.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>site lane (a846fd66b5403e35a)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>63</dd></div><div><dt>Plan pages</dt><dd>4, 22, 25, 27, 31, 32, 33</dd></div></dl></div></details><details class="acc-case" id="case-LEAD-03" data-case="LEAD-03" data-state="NOT RUN"><summary><span class="c-id">LEAD-03</span><span class="c-title">Substantiate the specialist-coexistence claim</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P04, P12, P15</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Assemble G1-G4 plus frozen rules and all surviving-adversary assumptions.</p><h4>Steps</h4><ol><li>Have independent reviewers trace each public competitiveness statement to its narrowest evidence.</li><li>Separate measured GPUs, modelled silicon and economic scenarios in all summaries.</li><li>Evaluate residual uncertainty, excluded technologies and the no-new-rules counterfactual.</li></ol><h4>Accept</h4><p>All claimed envelopes meet P04/P12 without unsupported universal bounds. Reviewers agree the evidence supports scoped commodity competitiveness even when chips remain compatible; an exact chip-arrival probability is not inferred.</p><h4>Evidence the case requires</h4><p>Claim-to-evidence map; signed envelope review; limitations statement.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>main / the founder</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>63</dd></div><div><dt>Plan pages</dt><dd>4, 22, 25, 27, 31, 32, 33</dd></div></dl></div></details><details class="acc-case" id="case-LEAD-04" data-case="LEAD-04" data-state="NOT RUN"><summary><span class="c-id">LEAD-04</span><span class="c-title">Observe ordinary-operator retention and margins</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P12, P16</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Recruit the P16 independent cohort before observing results; use privacy-preserving evidence.</p><h4>Steps</h4><ol><li>Follow participation, realised margin, hardware changes, failures and reasons for leaving for 90 days.</li><li>Report trial incentives separately and include every initial participant in retention denominators.</li><li>Compare behaviour with matched alternatives where feasible; disclose absence of an actual downturn.</li></ol><h4>Accept</h4><p>P16 retention/margin minima hold with verified independence and no removal of churned users. Simulated downturns cannot be called observed bear-market retention; historical claims stay limited to the period measured.</p><h4>Evidence the case requires</h4><p>Pseudonymous cohort ledger; margin/retention calculations; departure reasons.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>main / the founder</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>64</dd></div><div><dt>Plan pages</dt><dd>4, 22, 25, 27, 31, 32, 33</dd></div></dl></div></details><details class="acc-case" id="case-LEAD-05" data-case="LEAD-05" data-state="NOT RUN"><summary><span class="c-id">LEAD-05</span><span class="c-title">Measure control and dependency concentration</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P11, P16</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Audit operational control of mining, voting, proving, aggregation, hosting and software distribution separately.</p><h4>Steps</h4><ol><li>Use opt-in attestations, observed dependencies and independent corroboration; disclose uncertain common ownership.</li><li>Compare concentration and provider-removal outcomes to the approved security and availability assumptions.</li><li>Check that pooled payments do not hide authority concentration and hardware vendors are not equated with operators.</li></ol><h4>Accept</h4><p>P11/P16 concentration requirements hold within disclosed uncertainty; unidentified control cannot be counted as independent. No single removable dependency is falsely marketed as decentralised operation.</p><h4>Evidence the case requires</h4><p>Control/failure-domain map; uncertainty notes; concentration/removal results.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>main / the founder</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>64</dd></div><div><dt>Plan pages</dt><dd>4, 22, 25, 27, 31, 32, 33</dd></div></dl></div></details><details class="acc-case" id="case-LEAD-06" data-case="LEAD-06" data-state="NOT RUN"><summary><span class="c-id">LEAD-06</span><span class="c-title">Complete the reliability observation window</span><span class="c-pri"><span class="lbl">Priority </span>BLOCKER</span><span class="c-prof"><span class="lbl">Profile </span>P01, P16</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Observe the final candidate and approved compatible updates for the full P16 real-time period.</p><h4>Steps</h4><ol><li>Measure promised service availability, invalid acceptance, finality safety, payouts and incident impact.</li><li>Reconcile external probes, customer records and operator logs, including maintenance and exclusions.</li><li>Repeat affected critical tests after every material change; reset observation where comparability breaks.</li></ol><h4>Accept</h4><p>P16 availability and safety criteria hold on live observation; no hidden downtime or compressed-time substitution. This supports the recorded window only, not multi-year operational maturity.</p><h4>Evidence the case requires</h4><p>90-day SLO ledger; independent probes; incident reports; change/retest history.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>main / the founder</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>64</dd></div><div><dt>Plan pages</dt><dd>4, 22, 25, 27, 31, 32, 33</dd></div></dl></div></details><details class="acc-case" id="case-LEAD-07" data-case="LEAD-07" data-state="NOT RUN"><summary><span class="c-id">LEAD-07</span><span class="c-title">Issue an independent contender assessment</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P00, P15, P16</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>2026-10-08 18:3x UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Provide the full evidence packet, commercial results, comparative study and unresolved-limit register to the panel.</p><h4>Steps</h4><ol><li>Check every mandatory and claimed-option test, source requirement and approved threshold.</li><li>Require separate signoffs for hardware/economics, security/operations and customer/operator evidence.</li><li>Document dissent and challenge any inference that passing an internal checklist proves number-one rank.</li></ol><h4>Accept</h4><p>Every required gate is PASS with no unresolved material challenge, critical/high defect or missing comparator/customer evidence. The panel supports a credible leadership-contender conclusion within scope, not a guaranteed rank.</p><h4>Evidence the case requires</h4><p>Signed assessment; full status index; dissent/limitations; approved claim wording.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Independent final assessment</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>main / the founder</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>65</dd></div><div><dt>Plan pages</dt><dd>4, 22, 25, 27, 31, 32, 33</dd></div></dl></div></details><details class="acc-case" id="case-LEAD-08" data-case="LEAD-08" data-state="NOT RUN"><summary><span class="c-id">LEAD-08</span><span class="c-title">Keep leadership claims valid after release</span><span class="c-pri"><span class="lbl">Priority </span>GATE</span><span class="c-prof"><span class="lbl">Profile </span>P00, P16</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 20:22 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Define material-change triggers and scheduled reviews before publishing the assessment.</p><h4>Steps</h4><ol><li>Refresh competitor, hardware-cost, demand and security evidence at the P16 cadence.</li><li>Test a newly credible specialist, lost customer, major outage and verifier change against invalidation rules.</li><li>Withdraw or narrow stale claims promptly while publishing the new evidence status.</li></ol><h4>Accept</h4><p>Claims remain dated, scoped and revisable; material contrary evidence reopens the appropriate gate. The network may remain usable while a leadership claim is suspended. No permanent self-awarded certification.</p><h4>Evidence the case requires</h4><p>Review calendar; invalidation drills; versioned public claim register.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Release candidate; repeat after relevant changes</dd></div><div><dt>Owner</dt><dd>main / the founder</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Standard page</dt><dd>65</dd></div><div><dt>Plan pages</dt><dd>4, 22, 25, 27, 31, 32, 33</dd></div></dl></div></details></div></div></section><section class="section acc-suite" id="suite-REV"><div class="container"><div class="acc-suite-head"><div class="acc-suite-code"><span class="n">17</span>REV</div><div class="acc-suite-t"><h2>REV: the external review's required regressions</h2><p class="acc-sub">44 regressions from 14 findings; each reads NOT RUN until its owner lane records a run</p></div><div class="acc-suite-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></div></div><dl class="acc-facts"><div><dt>Owner</dt><dd>the owner lanes per the dispatch table</dd></div><div><dt>Gate</dt><dd>Review findings closed</dd></div><div><dt>Fixtures</dt><dd>F0,F5</dd></div><div><dt>Plan pages</dt><dd>docs/analysis/review-2026-10-08-b/findings.json and docs/analysis/review-2026-10-08-b/dispatch.md; ids from the master traceability register</dd></div></dl><div class="acc-suite-bar"><div class="acc-bar" role="img" aria-label="REV: 44 cases: 1 passed under the standard, 0 running with team evidence, 43 not run, 0 deferred"><span class="seg g-pass" style="flex-grow:1" title="1 PASS"></span><span class="seg g-notrun" style="flex-grow:43" title="43 NOT RUN"></span></div><span>44 cases: 1 passed under the standard, 0 running with team evidence, 43 not run, 0 deferred</span></div><div class="acc-cases"><div class="acc-cases-h" aria-hidden="true"><span>Case</span><span>Title</span><span>Priority</span><span>Profile</span><span>Status</span><span>Evidence</span><span>Last run</span><span></span></div><details class="acc-case" id="case-R2-F01-R01" data-case="R2-F01-R01" data-state="NOT RUN"><summary><span class="c-id">R2-F01-R01</span><span class="c-title">Valid proof A, warm cache, carried statement B: refuse exactly as a cold node does.</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F01 requires (review R2 finding F01: Proof-verdict cache omits the statement being verified).</p><h4>Steps</h4><ol><li>Valid proof A, warm cache, carried statement B: refuse exactly as a cold node does.</li></ol><h4>Accept</h4><p>Valid proof A, warm cache, carried statement B: refuse exactly as a cold node does.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>proving lane, node lane</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F01</dd></div></dl></div></details><details class="acc-case" id="case-R2-F01-R02" data-case="R2-F01-R02" data-state="NOT RUN"><summary><span class="c-id">R2-F01-R02</span><span class="c-title">Run valid/invalid contexts in both orders, concurrently and across cache eviction/restart.</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F01 requires (review R2 finding F01: Proof-verdict cache omits the statement being verified).</p><h4>Steps</h4><ol><li>Run valid/invalid contexts in both orders, concurrently and across cache eviction/restart.</li></ol><h4>Accept</h4><p>Run valid/invalid contexts in both orders, concurrently and across cache eviction/restart.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>proving lane, node lane</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F01</dd></div></dl></div></details><details class="acc-case" id="case-R2-F01-R03" data-case="R2-F01-R03" data-state="NOT RUN"><summary><span class="c-id">R2-F01-R03</span><span class="c-title">Change payout, network, kind, program ID and activation context; no accepted misbinding.</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F01 requires (review R2 finding F01: Proof-verdict cache omits the statement being verified).</p><h4>Steps</h4><ol><li>Change payout, network, kind, program ID and activation context; no accepted misbinding.</li></ol><h4>Accept</h4><p>Change payout, network, kind, program ID and activation context; no accepted misbinding.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>proving lane, node lane</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F01</dd></div></dl></div></details><details class="acc-case" id="case-R2-F01-R04" data-case="R2-F01-R04" data-state="NOT RUN"><summary><span class="c-id">R2-F01-R04</span><span class="c-title">A native two-node test must agree on block validity and payouts despite different cache histories.</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F01 requires (review R2 finding F01: Proof-verdict cache omits the statement being verified).</p><h4>Steps</h4><ol><li>A native two-node test must agree on block validity and payouts despite different cache histories.</li></ol><h4>Accept</h4><p>A native two-node test must agree on block validity and payouts despite different cache histories.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>proving lane, node lane</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F01</dd></div></dl></div></details><details class="acc-case" id="case-R2-F02-R01" data-case="R2-F02-R01" data-state="NOT RUN"><summary><span class="c-id">R2-F02-R01</span><span class="c-title">Release build cannot activate test bypass.</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F02 requires (review R2 finding F02: Proof-rule infrastructure can fail open).</p><h4>Steps</h4><ol><li>Release build cannot activate test bypass.</li></ol><h4>Accept</h4><p>Release build cannot activate test bypass.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>proving lane, CI steward</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F02</dd></div></dl></div></details><details class="acc-case" id="case-R2-F02-R02" data-case="R2-F02-R02" data-state="NOT RUN"><summary><span class="c-id">R2-F02-R02</span><span class="c-title">Missing oracle or pinned keys prevents service readiness after enforcement activation.</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F02 requires (review R2 finding F02: Proof-rule infrastructure can fail open).</p><h4>Steps</h4><ol><li>Missing oracle or pinned keys prevents service readiness after enforcement activation.</li></ol><h4>Accept</h4><p>Missing oracle or pinned keys prevents service readiness after enforcement activation.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>proving lane, CI steward</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F02</dd></div></dl></div></details><details class="acc-case" id="case-R2-F02-R03" data-case="R2-F02-R03" data-state="NOT RUN"><summary><span class="c-id">R2-F02-R03</span><span class="c-title">Missing proof bytes retry without incorrectly marking a valid block permanently invalid.</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F02 requires (review R2 finding F02: Proof-rule infrastructure can fail open).</p><h4>Steps</h4><ol><li>Missing proof bytes retry without incorrectly marking a valid block permanently invalid.</li></ol><h4>Accept</h4><p>Missing proof bytes retry without incorrectly marking a valid block permanently invalid.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>proving lane, CI steward</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F02</dd></div></dl></div></details><details class="acc-case" id="case-R2-F03-R01" data-case="R2-F03-R01" data-state="PASS"><summary><span class="c-id">R2-F03-R01</span><span class="c-title">Clean build from one manifest, including the pool and workers, with no unpublished vendor tree.</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-pass" data-state="PASS">PASS</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 22:11 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F03 requires (review R2 finding F03: The bundle contains a v6 candidate, not a demonstrated integrated v6 release).</p><h4>Steps</h4><ol><li>Clean build from one manifest, including the pool and workers, with no unpublished vendor tree.</li></ol><h4>Accept</h4><p>Clean build from one manifest, including the pool and workers, with no unpublished vendor tree.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>CI steward, hash lane (ProgramClass::V6 on freeze), pool lane</dd></div><div><dt>Run</dt><dd>f03-manifest-20261008-01</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F03</dd></div></dl></div></details><details class="acc-case" id="case-R2-F03-R02" data-case="R2-F03-R02" data-state="NOT RUN"><summary><span class="c-id">R2-F03-R02</span><span class="c-title">Same job context produces identical accepted work in node, CPU reference, CUDA, Metal, OpenCL and pool.</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 06:08 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F03 requires (review R2 finding F03: The bundle contains a v6 candidate, not a demonstrated integrated v6 release).</p><h4>Steps</h4><ol><li>Same job context produces identical accepted work in node, CPU reference, CUDA, Metal, OpenCL and pool.</li></ol><h4>Accept</h4><p>Same job context produces identical accepted work in node, CPU reference, CUDA, Metal, OpenCL and pool.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>CI steward, hash lane (ProgramClass::V6 on freeze), pool lane</dd></div><div><dt>Run</dt><dd>same-work-20261008-03</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F03</dd></div></dl></div></details><details class="acc-case" id="case-R2-F03-R03" data-case="R2-F03-R03" data-state="NOT RUN"><summary><span class="c-id">R2-F03-R03</span><span class="c-title">Cross every scheduled transition with old/new client behavior documented and identical rule identities.</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 06:08 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F03 requires (review R2 finding F03: The bundle contains a v6 candidate, not a demonstrated integrated v6 release).</p><h4>Steps</h4><ol><li>Cross every scheduled transition with old/new client behavior documented and identical rule identities.</li></ol><h4>Accept</h4><p>Cross every scheduled transition with old/new client behavior documented and identical rule identities.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>CI steward, hash lane (ProgramClass::V6 on freeze), pool lane</dd></div><div><dt>Run</dt><dd>same-work-20261008-03</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F03</dd></div></dl></div></details><details class="acc-case" id="case-R2-F04-R01" data-case="R2-F04-R01" data-state="NOT RUN"><summary><span class="c-id">R2-F04-R01</span><span class="c-title">Native multi-node 40/40/20 partition, equivocation and dust-valid mining on both sides past the window.</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F04 requires (review R2 finding F04: Finality v4 recovery deliberately has a weaker safety boundary).</p><h4>Steps</h4><ol><li>Native multi-node 40/40/20 partition, equivocation and dust-valid mining on both sides past the window.</li></ol><h4>Accept</h4><p>Native multi-node 40/40/20 partition, equivocation and dust-valid mining on both sides past the window.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>node lane, reference apps, site (explorer)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F04</dd></div></dl></div></details><details class="acc-case" id="case-R2-F04-R02" data-case="R2-F04-R02" data-state="NOT RUN"><summary><span class="c-id">R2-F04-R02</span><span class="c-title">Proof that the chosen recovery guarantee matches the public finality claim; two valid contradictory certificates are a hard failure for strong finality.</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F04 requires (review R2 finding F04: Finality v4 recovery deliberately has a weaker safety boundary).</p><h4>Steps</h4><ol><li>Proof that the chosen recovery guarantee matches the public finality claim; two valid contradictory certificates are a hard failure for strong finality.</li></ol><h4>Accept</h4><p>Proof that the chosen recovery guarantee matches the public finality claim; two valid contradictory certificates are a hard failure for strong finality.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>node lane, reference apps, site (explorer)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F04</dd></div></dl></div></details><details class="acc-case" id="case-R2-F04-R03" data-case="R2-F04-R03" data-state="NOT RUN"><summary><span class="c-id">R2-F04-R03</span><span class="c-title">Pause-only resume with historical backfill, missing historical data and all old keys returning.</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F04 requires (review R2 finding F04: Finality v4 recovery deliberately has a weaker safety boundary).</p><h4>Steps</h4><ol><li>Pause-only resume with historical backfill, missing historical data and all old keys returning.</li></ol><h4>Accept</h4><p>Pause-only resume with historical backfill, missing historical data and all old keys returning.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>node lane, reference apps, site (explorer)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F04</dd></div></dl></div></details><details class="acc-case" id="case-R2-F04-R04" data-case="R2-F04-R04" data-state="NOT RUN"><summary><span class="c-id">R2-F04-R04</span><span class="c-title">Wallet, receipt and oracle consumers distinguish any weaker recovery state.</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F04 requires (review R2 finding F04: Finality v4 recovery deliberately has a weaker safety boundary).</p><h4>Steps</h4><ol><li>Wallet, receipt and oracle consumers distinguish any weaker recovery state.</li></ol><h4>Accept</h4><p>Wallet, receipt and oracle consumers distinguish any weaker recovery state.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>node lane, reference apps, site (explorer)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F04</dd></div></dl></div></details><details class="acc-case" id="case-R2-F05-R01" data-case="R2-F05-R01" data-state="NOT RUN"><summary><span class="c-id">R2-F05-R01</span><span class="c-title">Native reference-vs-incremental expression equivalence across all source registers and real instruction updates.</span><span class="c-pri"><span class="lbl">Priority </span>P1</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F05 requires (review R2 finding F05: reg64 address coupling has an exact incremental alternative).</p><h4>Steps</h4><ol><li>Native reference-vs-incremental expression equivalence across all source registers and real instruction updates.</li></ol><h4>Accept</h4><p>Native reference-vs-incremental expression equivalence across all source registers and real instruction updates.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>hash lane, adversary lane, floor lane 3</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F05</dd></div></dl></div></details><details class="acc-case" id="case-R2-F05-R02" data-case="R2-F05-R02" data-state="NOT RUN"><summary><span class="c-id">R2-F05-R02</span><span class="c-title">Full-kernel output equivalence, registers, spills, wall power and accepted throughput across target GPUs.</span><span class="c-pri"><span class="lbl">Priority </span>P1</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F05 requires (review R2 finding F05: reg64 address coupling has an exact incremental alternative).</p><h4>Steps</h4><ol><li>Full-kernel output equivalence, registers, spills, wall power and accepted throughput across target GPUs.</li></ol><h4>Accept</h4><p>Full-kernel output equivalence, registers, spills, wall power and accepted throughput across target GPUs.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>hash lane, adversary lane, floor lane 3</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F05</dd></div></dl></div></details><details class="acc-case" id="case-R2-F05-R03" data-case="R2-F05-R03" data-state="NOT RUN"><summary><span class="c-id">R2-F05-R03</span><span class="c-title">Adversary physical design includes prefix caching/recomputation cost; no assumed full 63-read cost on every load.</span><span class="c-pri"><span class="lbl">Priority </span>P1</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F05 requires (review R2 finding F05: reg64 address coupling has an exact incremental alternative).</p><h4>Steps</h4><ol><li>Adversary physical design includes prefix caching/recomputation cost; no assumed full 63-read cost on every load.</li></ol><h4>Accept</h4><p>Adversary physical design includes prefix caching/recomputation cost; no assumed full 63-read cost on every load.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>hash lane, adversary lane, floor lane 3</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F05</dd></div></dl></div></details><details class="acc-case" id="case-R2-F06-R01" data-case="R2-F06-R01" data-state="NOT RUN"><summary><span class="c-id">R2-F06-R01</span><span class="c-title">Acceptance/reference/emitter evaluate the same activated schedule.</span><span class="c-pri"><span class="lbl">Priority </span>P1</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F06 requires (review R2 finding F06: The v6 acceptance and census gates are not complete for the final execution).</p><h4>Steps</h4><ol><li>Acceptance/reference/emitter evaluate the same activated schedule.</li></ol><h4>Accept</h4><p>Acceptance/reference/emitter evaluate the same activated schedule.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>hash lane, research lane D</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F06</dd></div></dl></div></details><details class="acc-case" id="case-R2-F06-R02" data-case="R2-F06-R02" data-state="NOT RUN"><summary><span class="c-id">R2-F06-R02</span><span class="c-title">Full live-dataset census on unseen seeds and the complete v6 pack.</span><span class="c-pri"><span class="lbl">Priority </span>P1</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F06 requires (review R2 finding F06: The v6 acceptance and census gates are not complete for the final execution).</p><h4>Steps</h4><ol><li>Full live-dataset census on unseen seeds and the complete v6 pack.</li></ol><h4>Accept</h4><p>Full live-dataset census on unseen seeds and the complete v6 pack.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>hash lane, research lane D</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F06</dd></div></dl></div></details><details class="acc-case" id="case-R2-F06-R03" data-case="R2-F06-R03" data-state="NOT RUN"><summary><span class="c-id">R2-F06-R03</span><span class="c-title">A failed experimental rule does not silently exhaust generation or bypass the intended resource requirement.</span><span class="c-pri"><span class="lbl">Priority </span>P1</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F06 requires (review R2 finding F06: The v6 acceptance and census gates are not complete for the final execution).</p><h4>Steps</h4><ol><li>A failed experimental rule does not silently exhaust generation or bypass the intended resource requirement.</li></ol><h4>Accept</h4><p>A failed experimental rule does not silently exhaust generation or bypass the intended resource requirement.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>hash lane, research lane D</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F06</dd></div></dl></div></details><details class="acc-case" id="case-R2-F07-R01" data-case="R2-F07-R01" data-state="NOT RUN"><summary><span class="c-id">R2-F07-R01</span><span class="c-title">Same final v6 configuration: mine -> evict -> prove -> aggregate -> submit -> rebuild -> resume; no leaked reservations.</span><span class="c-pri"><span class="lbl">Priority </span>P1</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F07 requires (review R2 finding F07: VRAM admission and proving deadlines need one operator-level scheduler).</p><h4>Steps</h4><ol><li>Same final v6 configuration: mine -> evict -> prove -> aggregate -> submit -> rebuild -> resume; no leaked reservations.</li></ol><h4>Accept</h4><p>Same final v6 configuration: mine -> evict -> prove -> aggregate -> submit -> rebuild -> resume; no leaked reservations.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>app lane, fleet lane</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F07</dd></div></dl></div></details><details class="acc-case" id="case-R2-F07-R02" data-case="R2-F07-R02" data-state="NOT RUN"><summary><span class="c-id">R2-F07-R02</span><span class="c-title">OOM, process crash and stale work recover without losing wallet state or silently consuming power.</span><span class="c-pri"><span class="lbl">Priority </span>P1</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F07 requires (review R2 finding F07: VRAM admission and proving deadlines need one operator-level scheduler).</p><h4>Steps</h4><ol><li>OOM, process crash and stale work recover without losing wallet state or silently consuming power.</li></ol><h4>Accept</h4><p>OOM, process crash and stale work recover without losing wallet state or silently consuming power.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>app lane, fleet lane</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F07</dd></div></dl></div></details><details class="acc-case" id="case-R2-F07-R03" data-case="R2-F07-R03" data-state="NOT RUN"><summary><span class="c-id">R2-F07-R03</span><span class="c-title">16 GB+ simultaneous mode only after measured peak plus next-epoch headroom; smaller-card modes labelled separately.</span><span class="c-pri"><span class="lbl">Priority </span>P1</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F07 requires (review R2 finding F07: VRAM admission and proving deadlines need one operator-level scheduler).</p><h4>Steps</h4><ol><li>16 GB+ simultaneous mode only after measured peak plus next-epoch headroom; smaller-card modes labelled separately.</li></ol><h4>Accept</h4><p>16 GB+ simultaneous mode only after measured peak plus next-epoch headroom; smaller-card modes labelled separately.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>app lane, fleet lane</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F07</dd></div></dl></div></details><details class="acc-case" id="case-R2-F08-R01" data-case="R2-F08-R01" data-state="NOT RUN"><summary><span class="c-id">R2-F08-R01</span><span class="c-title">Report every eligible job outcome, including expired work; a bounded list cannot hide losses.</span><span class="c-pri"><span class="lbl">Priority </span>P1</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F08 requires (review R2 finding F08: The proving pipeline reports waste and deadline censoring, not sustained capacity).</p><h4>Steps</h4><ol><li>Report every eligible job outcome, including expired work; a bounded list cannot hide losses.</li></ol><h4>Accept</h4><p>Report every eligible job outcome, including expired work; a bounded list cannot hide losses.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>proving lane, fleet lane, site (ops page)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F08</dd></div></dl></div></details><details class="acc-case" id="case-R2-F08-R02" data-case="R2-F08-R02" data-state="NOT RUN"><summary><span class="c-id">R2-F08-R02</span><span class="c-title">Consumer tiers complete and receive payment for declared jobs before claims about income.</span><span class="c-pri"><span class="lbl">Priority </span>P1</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F08 requires (review R2 finding F08: The proving pipeline reports waste and deadline censoring, not sustained capacity).</p><h4>Steps</h4><ol><li>Consumer tiers complete and receive payment for declared jobs before claims about income.</li></ol><h4>Accept</h4><p>Consumer tiers complete and receive payment for declared jobs before claims about income.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>proving lane, fleet lane, site (ops page)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F08</dd></div></dl></div></details><details class="acc-case" id="case-R2-F08-R03" data-case="R2-F08-R03" data-state="NOT RUN"><summary><span class="c-id">R2-F08-R03</span><span class="c-title">Sustained real workload across class transitions, with restart/retry and no publisher intervention.</span><span class="c-pri"><span class="lbl">Priority </span>P1</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F08 requires (review R2 finding F08: The proving pipeline reports waste and deadline censoring, not sustained capacity).</p><h4>Steps</h4><ol><li>Sustained real workload across class transitions, with restart/retry and no publisher intervention.</li></ol><h4>Accept</h4><p>Sustained real workload across class transitions, with restart/retry and no publisher intervention.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>proving lane, fleet lane, site (ops page)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F08</dd></div></dl></div></details><details class="acc-case" id="case-R2-F09-R01" data-case="R2-F09-R01" data-state="NOT RUN"><summary><span class="c-id">R2-F09-R01</span><span class="c-title">Generate all pass/fail cells directly from the declared inequalities and inputs.</span><span class="c-pri"><span class="lbl">Priority </span>P1</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F09 requires (review R2 finding F09: The economic model explicitly retains a failed specialist case).</p><h4>Steps</h4><ol><li>Generate all pass/fail cells directly from the declared inequalities and inputs.</li></ol><h4>Accept</h4><p>Generate all pass/fail cells directly from the declared inequalities and inputs.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>research lane, floor lane 3, coordinator</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F09</dd></div></dl></div></details><details class="acc-case" id="case-R2-F09-R02" data-case="R2-F09-R02" data-state="NOT RUN"><summary><span class="c-id">R2-F09-R02</span><span class="c-title">Independent feasibility and cost evaluation of the strongest modeled SRAM/hybrid opponent.</span><span class="c-pri"><span class="lbl">Priority </span>P1</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F09 requires (review R2 finding F09: The economic model explicitly retains a failed specialist case).</p><h4>Steps</h4><ol><li>Independent feasibility and cost evaluation of the strongest modeled SRAM/hybrid opponent.</li></ol><h4>Accept</h4><p>Independent feasibility and cost evaluation of the strongest modeled SRAM/hybrid opponent.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>research lane, floor lane 3, coordinator</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F09</dd></div></dl></div></details><details class="acc-case" id="case-R2-F09-R03" data-case="R2-F09-R03" data-state="NOT RUN"><summary><span class="c-id">R2-F09-R03</span><span class="c-title">GPU owners and entrants remain viable under the approved scenario envelope without assuming chip absence or death.</span><span class="c-pri"><span class="lbl">Priority </span>P1</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F09 requires (review R2 finding F09: The economic model explicitly retains a failed specialist case).</p><h4>Steps</h4><ol><li>GPU owners and entrants remain viable under the approved scenario envelope without assuming chip absence or death.</li></ol><h4>Accept</h4><p>GPU owners and entrants remain viable under the approved scenario envelope without assuming chip absence or death.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>research lane, floor lane 3, coordinator</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F09</dd></div></dl></div></details><details class="acc-case" id="case-R2-F10-R01" data-case="R2-F10-R01" data-state="NOT RUN"><summary><span class="c-id">R2-F10-R01</span><span class="c-title">Compare exact found nonce/hash sets with full-read mode, including all-hit overflow and zero-hit cases.</span><span class="c-pri"><span class="lbl">Priority </span>P2</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F10 requires (review R2 finding F10: CUDA production readback has an existing OpenCL optimization to borrow).</p><h4>Steps</h4><ol><li>Compare exact found nonce/hash sets with full-read mode, including all-hit overflow and zero-hit cases.</li></ol><h4>Accept</h4><p>Compare exact found nonce/hash sets with full-read mode, including all-hit overflow and zero-hit cases.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>worker lane (new)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F10</dd></div></dl></div></details><details class="acc-case" id="case-R2-F10-R02" data-case="R2-F10-R02" data-state="NOT RUN"><summary><span class="c-id">R2-F10-R02</span><span class="c-title">Test stale jobs, high-32 rollover, tail batches and asynchronous buffer reuse.</span><span class="c-pri"><span class="lbl">Priority </span>P2</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F10 requires (review R2 finding F10: CUDA production readback has an existing OpenCL optimization to borrow).</p><h4>Steps</h4><ol><li>Test stale jobs, high-32 rollover, tail batches and asynchronous buffer reuse.</li></ol><h4>Accept</h4><p>Test stale jobs, high-32 rollover, tail batches and asynchronous buffer reuse.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>worker lane (new)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F10</dd></div></dl></div></details><details class="acc-case" id="case-R2-F10-R03" data-case="R2-F10-R03" data-state="NOT RUN"><summary><span class="c-id">R2-F10-R03</span><span class="c-title">Compare production throughput and wall energy, not only the isolated kernel timer.</span><span class="c-pri"><span class="lbl">Priority </span>P2</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F10 requires (review R2 finding F10: CUDA production readback has an existing OpenCL optimization to borrow).</p><h4>Steps</h4><ol><li>Compare production throughput and wall energy, not only the isolated kernel timer.</li></ol><h4>Accept</h4><p>Compare production throughput and wall energy, not only the isolated kernel timer.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>worker lane (new)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F10</dd></div></dl></div></details><details class="acc-case" id="case-R2-F11-R01" data-case="R2-F11-R01" data-state="NOT RUN"><summary><span class="c-id">R2-F11-R01</span><span class="c-title">Goal switch from an efficiency prior can explore higher core/power when policy allows.</span><span class="c-pri"><span class="lbl">Priority </span>P2</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F11 requires (review R2 finding F11: Ember needs workload-aware identity and objective-aware search).</p><h4>Steps</h4><ol><li>Goal switch from an efficiency prior can explore higher core/power when policy allows.</li></ol><h4>Accept</h4><p>Goal switch from an efficiency prior can explore higher core/power when policy allows.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Ember lane (new)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F11</dd></div></dl></div></details><details class="acc-case" id="case-R2-F11-R02" data-case="R2-F11-R02" data-state="NOT RUN"><summary><span class="c-id">R2-F11-R02</span><span class="c-title">Driver, workload, dataset, compiler and device changes invalidate certification while retaining optional hints.</span><span class="c-pri"><span class="lbl">Priority </span>P2</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F11 requires (review R2 finding F11: Ember needs workload-aware identity and objective-aware search).</p><h4>Steps</h4><ol><li>Driver, workload, dataset, compiler and device changes invalidate certification while retaining optional hints.</li></ol><h4>Accept</h4><p>Driver, workload, dataset, compiler and device changes invalidate certification while retaining optional hints.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Ember lane (new)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F11</dd></div></dl></div></details><details class="acc-case" id="case-R2-F11-R03" data-case="R2-F11-R03" data-state="NOT RUN"><summary><span class="c-id">R2-F11-R03</span><span class="c-title">Thermal/error/late-share events revert safely, including process or machine crash.</span><span class="c-pri"><span class="lbl">Priority </span>P2</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F11 requires (review R2 finding F11: Ember needs workload-aware identity and objective-aware search).</p><h4>Steps</h4><ol><li>Thermal/error/late-share events revert safely, including process or machine crash.</li></ol><h4>Accept</h4><p>Thermal/error/late-share events revert safely, including process or machine crash.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Ember lane (new)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F11</dd></div></dl></div></details><details class="acc-case" id="case-R2-F12-R01" data-case="R2-F12-R01" data-state="NOT RUN"><summary><span class="c-id">R2-F12-R01</span><span class="c-title">Crash before/after broadcast, response timeout, restart before snapshot: no duplicate payment or silent debt loss.</span><span class="c-pri"><span class="lbl">Priority </span>P1</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F12 requires (review R2 finding F12: Pool payouts have a broadcast-before-durable-intent window).</p><h4>Steps</h4><ol><li>Crash before/after broadcast, response timeout, restart before snapshot: no duplicate payment or silent debt loss.</li></ol><h4>Accept</h4><p>Crash before/after broadcast, response timeout, restart before snapshot: no duplicate payment or silent debt loss.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>pool lane (new)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F12</dd></div></dl></div></details><details class="acc-case" id="case-R2-F12-R02" data-case="R2-F12-R02" data-state="NOT RUN"><summary><span class="c-id">R2-F12-R02</span><span class="c-title">Same signed transaction retried, fee replacement reconciled by intent, not a new payment.</span><span class="c-pri"><span class="lbl">Priority </span>P1</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F12 requires (review R2 finding F12: Pool payouts have a broadcast-before-durable-intent window).</p><h4>Steps</h4><ol><li>Same signed transaction retried, fee replacement reconciled by intent, not a new payment.</li></ol><h4>Accept</h4><p>Same signed transaction retried, fee replacement reconciled by intent, not a new payment.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>pool lane (new)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F12</dd></div></dl></div></details><details class="acc-case" id="case-R2-F12-R03" data-case="R2-F12-R03" data-state="NOT RUN"><summary><span class="c-id">R2-F12-R03</span><span class="c-title">Receipt reorg and finality pause leave correct pending obligations.</span><span class="c-pri"><span class="lbl">Priority </span>P1</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F12 requires (review R2 finding F12: Pool payouts have a broadcast-before-durable-intent window).</p><h4>Steps</h4><ol><li>Receipt reorg and finality pause leave correct pending obligations.</li></ol><h4>Accept</h4><p>Receipt reorg and finality pause leave correct pending obligations.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>pool lane (new)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F12</dd></div></dl></div></details><details class="acc-case" id="case-R2-F13-R01" data-case="R2-F13-R01" data-state="NOT RUN"><summary><span class="c-id">R2-F13-R01</span><span class="c-title">Repeated authorization rejected or atomically replaces and cleans prior state.</span><span class="c-pri"><span class="lbl">Priority </span>P1</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F13 requires (review R2 finding F13: Pool admission and membership need bounded resources).</p><h4>Steps</h4><ol><li>Repeated authorization rejected or atomically replaces and cleans prior state.</li></ol><h4>Accept</h4><p>Repeated authorization rejected or atomically replaces and cleans prior state.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>pool lane (new)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F13</dd></div></dl></div></details><details class="acc-case" id="case-R2-F13-R02" data-case="R2-F13-R02" data-state="NOT RUN"><summary><span class="c-id">R2-F13-R02</span><span class="c-title">Oversized unterminated frame rejected within fixed memory/time budget.</span><span class="c-pri"><span class="lbl">Priority </span>P1</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F13 requires (review R2 finding F13: Pool admission and membership need bounded resources).</p><h4>Steps</h4><ol><li>Oversized unterminated frame rejected within fixed memory/time budget.</li></ol><h4>Accept</h4><p>Oversized unterminated frame rejected within fixed memory/time budget.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>pool lane (new)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F13</dd></div></dl></div></details><details class="acc-case" id="case-R2-F13-R03" data-case="R2-F13-R03" data-state="NOT RUN"><summary><span class="c-id">R2-F13-R03</span><span class="c-title">Slow clients and invalid share floods cannot grow unbounded member, nonce or outgoing state.</span><span class="c-pri"><span class="lbl">Priority </span>P1</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F13 requires (review R2 finding F13: Pool admission and membership need bounded resources).</p><h4>Steps</h4><ol><li>Slow clients and invalid share floods cannot grow unbounded member, nonce or outgoing state.</li></ol><h4>Accept</h4><p>Slow clients and invalid share floods cannot grow unbounded member, nonce or outgoing state.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>pool lane (new)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F13</dd></div></dl></div></details><details class="acc-case" id="case-R2-F14-R01" data-case="R2-F14-R01" data-state="NOT RUN"><summary><span class="c-id">R2-F14-R01</span><span class="c-title">Public build has no default arbitrary remote execution and a documented least-privilege boundary.</span><span class="c-pri"><span class="lbl">Priority </span>P1</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F14 requires (review R2 finding F14: Developer fleet control must not silently become the public client trust model).</p><h4>Steps</h4><ol><li>Public build has no default arbitrary remote execution and a documented least-privilege boundary.</li></ol><h4>Accept</h4><p>Public build has no default arbitrary remote execution and a documented least-privilege boundary.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>app lane, relay lane</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F14</dd></div></dl></div></details><details class="acc-case" id="case-R2-F14-R02" data-case="R2-F14-R02" data-state="NOT RUN"><summary><span class="c-id">R2-F14-R02</span><span class="c-title">Automatic updates off remains off for urgent manifests until explicit action.</span><span class="c-pri"><span class="lbl">Priority </span>P1</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F14 requires (review R2 finding F14: Developer fleet control must not silently become the public client trust model).</p><h4>Steps</h4><ol><li>Automatic updates off remains off for urgent manifests until explicit action.</li></ol><h4>Accept</h4><p>Automatic updates off remains off for urgent manifests until explicit action.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>app lane, relay lane</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F14</dd></div></dl></div></details><details class="acc-case" id="case-R2-F14-R03" data-case="R2-F14-R03" data-state="NOT RUN"><summary><span class="c-id">R2-F14-R03</span><span class="c-title">A compromised fleet/update signing key cannot silently acquire wallet access or activate a consensus change.</span><span class="c-pri"><span class="lbl">Priority </span>P1</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>The regression R2-F14 requires (review R2 finding F14: Developer fleet control must not silently become the public client trust model).</p><h4>Steps</h4><ol><li>A compromised fleet/update signing key cannot silently acquire wallet access or activate a consensus change.</li></ol><h4>Accept</h4><p>A compromised fleet/update signing key cannot silently acquire wallet access or activate a consensus change.</p><h4>Evidence the case requires</h4><p>The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>app lane, relay lane</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R2-F14</dd></div></dl></div></details></div></div></section><section class="section acc-suite" id="suite-INT"><div class="container"><div class="acc-suite-head"><div class="acc-suite-code"><span class="n">18</span>INT</div><div class="acc-suite-t"><h2>INT: the master edition's integration gates (R1, the full-system review)</h2><p class="acc-sub">18 integration gates; each reads NOT RUN until its owner lane records a run</p></div><div class="acc-suite-st"><span class="acc-chip s-fail" data-state="FAIL">FAIL</span></div></div><dl class="acc-facts"><div><dt>Owner</dt><dd>the owner lanes per the coordinator's crosswalk</dd></div><div><dt>Gate</dt><dd>Integration gates closed</dd></div><div><dt>Fixtures</dt><dd>F0,F5</dd></div><div><dt>Plan pages</dt><dd>docs/plans/igneum-2.0-master/traceability.json integration_gates</dd></div></dl><div class="acc-suite-bar"><div class="acc-bar" role="img" aria-label="INT: 18 cases: 0 passed under the standard, 0 running with team evidence, 1 failed, 17 not run, 0 deferred"><span class="seg g-fail" style="flex-grow:1" title="1 FAIL"></span><span class="seg g-notrun" style="flex-grow:17" title="17 NOT RUN"></span></div><span>18 cases: 0 passed under the standard, 0 running with team evidence, 1 failed, 17 not run, 0 deferred</span></div><div class="acc-cases"><div class="acc-cases-h" aria-hidden="true"><span>Case</span><span>Title</span><span>Priority</span><span>Profile</span><span>Status</span><span>Evidence</span><span>Last run</span><span></span></div><details class="acc-case" id="case-INT-01" data-case="INT-01" data-state="NOT RUN"><summary><span class="c-id">INT-01</span><span class="c-title">Real proof H cannot authenticate a different statement under a warm cache.</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Integration gate INT-01 of the master edition (R1 / Additional regression gates).</p><h4>Steps</h4><ol><li>Real proof H cannot authenticate a different statement under a warm cache.</li></ol><h4>Accept</h4><p>Real proof H cannot authenticate a different statement under a warm cache.</p><h4>Evidence the case requires</h4><p>The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>proving lane (a6e8f84588b809d62)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R1</dd></div></dl></div></details><details class="acc-case" id="case-INT-02" data-case="INT-02" data-state="NOT RUN"><summary><span class="c-id">INT-02</span><span class="c-title">Warm/cold/relay/restart/concurrent cache order does not change block or payout decisions; negative cache isolated.</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Integration gate INT-02 of the master edition (R1 / Additional regression gates).</p><h4>Steps</h4><ol><li>Warm/cold/relay/restart/concurrent cache order does not change block or payout decisions; negative cache isolated.</li></ol><h4>Accept</h4><p>Warm/cold/relay/restart/concurrent cache order does not change block or payout decisions; negative cache isolated.</p><h4>Evidence the case requires</h4><p>The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>proving lane (a6e8f84588b809d62)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R1</dd></div></dl></div></details><details class="acc-case" id="case-INT-03" data-case="INT-03" data-state="NOT RUN"><summary><span class="c-id">INT-03</span><span class="c-title">Durable payout outbox survives every crash/RPC boundary without duplicate or lost liabilities.</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 00:47 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Integration gate INT-03 of the master edition (R1 / Additional regression gates).</p><h4>Steps</h4><ol><li>Durable payout outbox survives every crash/RPC boundary without duplicate or lost liabilities.</li></ol><h4>Accept</h4><p>Durable payout outbox survives every crash/RPC boundary without duplicate or lost liabilities.</p><h4>Evidence the case requires</h4><p>The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>pool lane (a1c484c48a62948c2)</dd></div><div><dt>Run</dt><dd>pool-int-20261009-01</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R1</dd></div></dl></div></details><details class="acc-case" id="case-INT-04" data-case="INT-04" data-state="NOT RUN"><summary><span class="c-id">INT-04</span><span class="c-title">Corrupt existing pool state, disk-full and reorg cause safe recovery, not silent empty balances.</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 00:47 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Integration gate INT-04 of the master edition (R1 / Additional regression gates).</p><h4>Steps</h4><ol><li>Corrupt existing pool state, disk-full and reorg cause safe recovery, not silent empty balances.</li></ol><h4>Accept</h4><p>Corrupt existing pool state, disk-full and reorg cause safe recovery, not silent empty balances.</p><h4>Evidence the case requires</h4><p>The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>pool lane (a1c484c48a62948c2)</dd></div><div><dt>Run</dt><dd>pool-int-20261009-01</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R1</dd></div></dl></div></details><details class="acc-case" id="case-INT-05" data-case="INT-05" data-state="NOT RUN"><summary><span class="c-id">INT-05</span><span class="c-title">The supplied finality implementation matches the approved anchor rule after >window healing.</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Integration gate INT-05 of the master edition (R1 / Additional regression gates).</p><h4>Steps</h4><ol><li>The supplied finality implementation matches the approved anchor rule after >window healing.</li></ol><h4>Accept</h4><p>The supplied finality implementation matches the approved anchor rule after >window healing.</p><h4>Evidence the case requires</h4><p>The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>node lane (a283f5f0d364ceef0)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R1</dd></div></dl></div></details><details class="acc-case" id="case-INT-06" data-case="INT-06" data-state="NOT RUN"><summary><span class="c-id">INT-06</span><span class="c-title">Recovery tests state and preserve their weaker fault bound; interfaces never label it as a stronger guarantee.</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Integration gate INT-06 of the master edition (R1 / Additional regression gates).</p><h4>Steps</h4><ol><li>Recovery tests state and preserve their weaker fault bound; interfaces never label it as a stronger guarantee.</li></ol><h4>Accept</h4><p>Recovery tests state and preserve their weaker fault bound; interfaces never label it as a stronger guarantee.</p><h4>Evidence the case requires</h4><p>The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>node lane (a283f5f0d364ceef0)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R1</dd></div></dl></div></details><details class="acc-case" id="case-INT-07" data-case="INT-07" data-state="FAIL"><summary><span class="c-id">INT-07</span><span class="c-title">One v6 object agrees in node, pool, CPU verifier and each supported GPU host across activation.</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-fail" data-state="FAIL">FAIL</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 08:43 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Integration gate INT-07 of the master edition (R1 / Additional regression gates).</p><h4>Steps</h4><ol><li>One v6 object agrees in node, pool, CPU verifier and each supported GPU host across activation.</li></ol><h4>Accept</h4><p>One v6 object agrees in node, pool, CPU verifier and each supported GPU host across activation.</p><h4>Evidence the case requires</h4><p>The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>CI steward with the hash lane (a690540514aa453d7) and the worker lane (a9e87343f008e0edd)</dd></div><div><dt>Run</dt><dd>canary-202-20261009-01</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R1</dd></div></dl></div></details><details class="acc-case" id="case-INT-08" data-case="INT-08" data-state="NOT RUN"><summary><span class="c-id">INT-08</span><span class="c-title">Census, production acceptance, schedule counters and live-dataset tests use the identical frozen contract.</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Integration gate INT-08 of the master edition (R1 / Additional regression gates).</p><h4>Steps</h4><ol><li>Census, production acceptance, schedule counters and live-dataset tests use the identical frozen contract.</li></ol><h4>Accept</h4><p>Census, production acceptance, schedule counters and live-dataset tests use the identical frozen contract.</p><h4>Evidence the case requires</h4><p>The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>CI steward with the hash lane (a690540514aa453d7) and the worker lane (a9e87343f008e0edd)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R1</dd></div></dl></div></details><details class="acc-case" id="case-INT-09" data-case="INT-09" data-state="NOT RUN"><summary><span class="c-id">INT-09</span><span class="c-title">Eight- and twelve-GiB epoch transitions recover deliberately without relying on repeated OOM/watchdog cycles.</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Integration gate INT-09 of the master edition (R1 / Additional regression gates).</p><h4>Steps</h4><ol><li>Eight- and twelve-GiB epoch transitions recover deliberately without relying on repeated OOM/watchdog cycles.</li></ol><h4>Accept</h4><p>Eight- and twelve-GiB epoch transitions recover deliberately without relying on repeated OOM/watchdog cycles.</p><h4>Evidence the case requires</h4><p>The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>app lane</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R1</dd></div></dl></div></details><details class="acc-case" id="case-INT-10" data-case="INT-10" data-state="NOT RUN"><summary><span class="c-id">INT-10</span><span class="c-title">Metal/CUDA/OpenCL exact dataset geometry agrees; unsupported packs reject before launch.</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Integration gate INT-10 of the master edition (R1 / Additional regression gates).</p><h4>Steps</h4><ol><li>Metal/CUDA/OpenCL exact dataset geometry agrees; unsupported packs reject before launch.</li></ol><h4>Accept</h4><p>Metal/CUDA/OpenCL exact dataset geometry agrees; unsupported packs reject before launch.</p><h4>Evidence the case requires</h4><p>The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>CI steward with the hash lane (a690540514aa453d7) and the worker lane (a9e87343f008e0edd)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R1</dd></div></dl></div></details><details class="acc-case" id="case-INT-11" data-case="INT-11" data-state="NOT RUN"><summary><span class="c-id">INT-11</span><span class="c-title">Only a memory-reserved proving job launches; mining buffers really release when required.</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Integration gate INT-11 of the master edition (R1 / Additional regression gates).</p><h4>Steps</h4><ol><li>Only a memory-reserved proving job launches; mining buffers really release when required.</li></ol><h4>Accept</h4><p>Only a memory-reserved proving job launches; mining buffers really release when required.</p><h4>Evidence the case requires</h4><p>The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>app lane</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R1</dd></div></dl></div></details><details class="acc-case" id="case-INT-12" data-case="INT-12" data-state="NOT RUN"><summary><span class="c-id">INT-12</span><span class="c-title">Transient shard errors can retry safely; expiration, loss and paid work remain distinct durable outcomes.</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Integration gate INT-12 of the master edition (R1 / Additional regression gates).</p><h4>Steps</h4><ol><li>Transient shard errors can retry safely; expiration, loss and paid work remain distinct durable outcomes.</li></ol><h4>Accept</h4><p>Transient shard errors can retry safely; expiration, loss and paid work remain distinct durable outcomes.</p><h4>Evidence the case requires</h4><p>The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>proving lane (a6e8f84588b809d62) and fleet lane (ac055d60427caab99)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R1</dd></div></dl></div></details><details class="acc-case" id="case-INT-13" data-case="INT-13" data-state="NOT RUN"><summary><span class="c-id">INT-13</span><span class="c-title">Ember cannot retain a rate-ineligible prior; material workload changes invalidate incompatible profiles.</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Integration gate INT-13 of the master edition (R1 / Additional regression gates).</p><h4>Steps</h4><ol><li>Ember cannot retain a rate-ineligible prior; material workload changes invalidate incompatible profiles.</li></ol><h4>Accept</h4><p>Ember cannot retain a rate-ineligible prior; material workload changes invalidate incompatible profiles.</p><h4>Evidence the case requires</h4><p>The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Ember lane (a04fe3451877e2ff0) with the app lane</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R1</dd></div></dl></div></details><details class="acc-case" id="case-INT-14" data-case="INT-14" data-state="NOT RUN"><summary><span class="c-id">INT-14</span><span class="c-title">Protected helper and per-device leases restore owned settings on normal/abnormal exit; real ACL/security tests.</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Integration gate INT-14 of the master edition (R1 / Additional regression gates).</p><h4>Steps</h4><ol><li>Protected helper and per-device leases restore owned settings on normal/abnormal exit; real ACL/security tests.</li></ol><h4>Accept</h4><p>Protected helper and per-device leases restore owned settings on normal/abnormal exit; real ACL/security tests.</p><h4>Evidence the case requires</h4><p>The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Ember lane (a04fe3451877e2ff0) with the app lane</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R1</dd></div></dl></div></details><details class="acc-case" id="case-INT-15" data-case="INT-15" data-state="NOT RUN"><summary><span class="c-id">INT-15</span><span class="c-title">Public PoP replay is not session authorization; payout/server/network binding enforced.</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 00:47 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Integration gate INT-15 of the master edition (R1 / Additional regression gates).</p><h4>Steps</h4><ol><li>Public PoP replay is not session authorization; payout/server/network binding enforced.</li></ol><h4>Accept</h4><p>Public PoP replay is not session authorization; payout/server/network binding enforced.</p><h4>Evidence the case requires</h4><p>The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>pool lane (a1c484c48a62948c2)</dd></div><div><dt>Run</dt><dd>pool-int-20261009-01</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R1</dd></div></dl></div></details><details class="acc-case" id="case-INT-16" data-case="INT-16" data-state="NOT RUN"><summary><span class="c-id">INT-16</span><span class="c-title">Pool parsing/queues/connection and crypto budgets remain bounded under controlled adversarial traffic.</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>9 Oct 2026, 00:47 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Integration gate INT-16 of the master edition (R1 / Additional regression gates).</p><h4>Steps</h4><ol><li>Pool parsing/queues/connection and crypto budgets remain bounded under controlled adversarial traffic.</li></ol><h4>Accept</h4><p>Pool parsing/queues/connection and crypto budgets remain bounded under controlled adversarial traffic.</p><h4>Evidence the case requires</h4><p>The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>pool lane (a1c484c48a62948c2)</dd></div><div><dt>Run</dt><dd>pool-int-20261009-01</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R1</dd></div></dl></div></details><details class="acc-case" id="case-INT-17" data-case="INT-17" data-state="NOT RUN"><summary><span class="c-id">INT-17</span><span class="c-title">Missing oracle/keys/mandatory real-proof fixture blocks the applicable production acceptance gate.</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Integration gate INT-17 of the master edition (R1 / Additional regression gates).</p><h4>Steps</h4><ol><li>Missing oracle/keys/mandatory real-proof fixture blocks the applicable production acceptance gate.</li></ol><h4>Accept</h4><p>Missing oracle/keys/mandatory real-proof fixture blocks the applicable production acceptance gate.</p><h4>Evidence the case requires</h4><p>The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>proving lane (a6e8f84588b809d62)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R1</dd></div></dl></div></details><details class="acc-case" id="case-INT-18" data-case="INT-18" data-state="NOT RUN"><summary><span class="c-id">INT-18</span><span class="c-title">Whole-system economics pass the strongest feasible adversary, including sunk development and multi-epoch survival.</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span>8 Oct 2026, 21:10 UK</span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Integration gate INT-18 of the master edition (R1 / Additional regression gates).</p><h4>Steps</h4><ol><li>Whole-system economics pass the strongest feasible adversary, including sunk development and multi-epoch survival.</li></ol><h4>Accept</h4><p>Whole-system economics pass the strongest feasible adversary, including sunk development and multi-epoch survival.</p><h4>Evidence the case requires</h4><p>The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>research lane (ad6a2bd47d4a46105)</dd></div><div><dt>Design status</dt><dd>NOT RUN</dd></div><div><dt>Plan pages</dt><dd>R1</dd></div></dl></div></details></div></div></section><section class="section acc-suite" id="suite-VR"><div class="container"><div class="acc-suite-head"><div class="acc-suite-code"><span class="n">19</span>VR</div><div class="acc-suite-t"><h2>VR: the token value and network leadership rules (normative, proposed, requiring ratification)</h2><p class="acc-sub">40 normative rules from Igneum 2.0, Token Value & Network Leadership 1.0-proposed (snapshot 2026-10-08); Supplement to original master and 128-case test standard; not a price/rank guarantee</p></div><div class="acc-suite-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></div></div><dl class="acc-facts"><div><dt>Owner</dt><dd>founder (ratification); the owner role per rule</dd></div><div><dt>Gate</dt><dd>Ratification by the founder and each rule's owner role</dd></div><div><dt>Fixtures</dt><dd>F0</dd></div><div><dt>Plan pages</dt><dd>docs/plans/igneum-2.0-master/token-value/rules-and-gates.json rules</dd></div></dl><div class="acc-suite-bar"><div class="acc-bar" role="img" aria-label="VR: 40 cases: 0 passed under the standard, 0 running with team evidence, 40 not run, 0 deferred"><span class="seg g-notrun" style="flex-grow:40" title="40 NOT RUN"></span></div><span>40 cases: 0 passed under the standard, 0 running with team evidence, 40 not run, 0 deferred</span></div><div class="acc-cases"><div class="acc-cases-h" aria-hidden="true"><span>Case</span><span>Title</span><span>Priority</span><span>Profile</span><span>Status</span><span>Evidence</span><span>Last run</span><span></span></div><details class="acc-case" id="case-VR-01" data-case="VR-01" data-state="NOT RUN"><summary><span class="c-id">VR-01</span><span class="c-title">One monetary contract</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Ratify one maximum-supply, subsidy and change-policy contract. No unexplained tail escape, automatic emergency mint or price-triggered issuance.</p><h4>Evidence the case requires</h4><p>D01 decision, normative spec, executable supply tests and consistent public text.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Protocol + governance</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-02" data-case="VR-02" data-state="NOT RUN"><summary><span class="c-id">VR-02</span><span class="c-title">Independent supply accounting</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Make circulating, issued, burned, locked and maximum supply independently reproducible. Count bridges and wrappers without creating fictitious native supply.</p><h4>Evidence the case requires</h4><p>Two independent supply calculations with exact integer reconciliation.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Protocol + measurement</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-03" data-case="VR-03" data-state="NOT RUN"><summary><span class="c-id">VR-03</span><span class="c-title">Equal opportunity at launch</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>No premine or privileged devnet conversion under the stated fair-launch policy. Publish efficient software and launch conditions before activation.</p><h4>Evidence the case requires</h4><p>Genesis audit, launch rehearsal, insider disclosures and public release history.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Release + ecosystem</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-04" data-case="VR-04" data-state="NOT RUN"><summary><span class="c-id">VR-04</span><span class="c-title">No artificial return promise</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Do not advertise guaranteed appreciation, passive returns without necessary work, a redemption floor or electricity-backed value.</p><h4>Evidence the case requires</h4><p>Product terms, source of rewards and public-claim review.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Governance + counsel</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-05" data-case="VR-05" data-state="NOT RUN"><summary><span class="c-id">VR-05</span><span class="c-title">Fund necessary security</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Model miners, internal provers, minimum validators and maintenance separately through declining issuance. No assumption that an external sale automatically funds all roles.</p><h4>Evidence the case requires</h4><p>Role-by-role cash flow, adverse scenarios and committed initial resources.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Economics + protocol</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-06" data-case="VR-06" data-state="NOT RUN"><summary><span class="c-id">VR-06</span><span class="c-title">Honest rule change</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Publish rationale, impact, adoption path and compatibility limits before a material monetary change. Do not pretend software can prevent all future voluntary forks.</p><h4>Evidence the case requires</h4><p>Versioned proposals, reviewer comments, adoption and dissent documentation.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Protocol + governance</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-07" data-case="VR-07" data-state="NOT RUN"><summary><span class="c-id">VR-07</span><span class="c-title">Transparent fee routing</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Every fee, burn, operator payment and optional Labs charge has an explicit source and recipient. No new team tax hidden in a commercial label.</p><h4>Evidence the case requires</h4><p>Executable fee tests and reconciliation to invoices/receipts.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Economics + protocol</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-08" data-case="VR-08" data-state="NOT RUN"><summary><span class="c-id">VR-08</span><span class="c-title">Separate value and money flows</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Distinguish job turnover, fees, operator income, Labs income, token holdings and market value. Do not count the same payment or saving twice.</p><h4>Evidence the case requires</h4><p>Reconciled flow diagram and reproducible metric definitions.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Economics + measurement</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-09" data-case="VR-09" data-state="NOT RUN"><summary><span class="c-id">VR-09</span><span class="c-title">Accessible hardware economics</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Fix the reference cohort and scenarios in advance. Allow the strongest feasible programmable multi-epoch specialist, including sunk development and alternative memory.</p><h4>Evidence the case requires</h4><p>Approved original GPU/ADV/ROT/ECO profiles and independent review.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>GPU + hardware reviewer</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-10" data-case="VR-10" data-state="NOT RUN"><summary><span class="c-id">VR-10</span><span class="c-title">Mandatory correct proofs</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>All activated proof decisions must bind their actual statement, kind and verifier independent of cache history. Missing trusted infrastructure must not disable enforcement.</p><h4>Evidence the case requires</h4><p>Native warm/cold/order/restart tests and positive/negative proof fixtures.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Protocol + proving</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-11" data-case="VR-11" data-state="NOT RUN"><summary><span class="c-id">VR-11</span><span class="c-title">Literal finality</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Define fault assumptions, authority continuity and recovery. Never present a weaker recovery certificate as the stronger irreversible guarantee.</p><h4>Evidence the case requires</h4><p>Native multi-node boundary tests and consumer label checks.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Consensus + security</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-12" data-case="VR-12" data-state="NOT RUN"><summary><span class="c-id">VR-12</span><span class="c-title">Retained operator authority</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Pooling variance or buying a service does not silently transfer keys, transaction selection or finality/governance control.</p><h4>Evidence the case requires</h4><p>Key/template substitution tests and explicit delegation contracts.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Protocol + pool</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-13" data-case="VR-13" data-state="NOT RUN"><summary><span class="c-id">VR-13</span><span class="c-title">Safe custody and consent</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Private keys, spending limits, signing displays and recovery choices remain under explicit user authority. Defaults must not conceal broad powers.</p><h4>Evidence the case requires</h4><p>Wallet security review and independent user/recovery exercises.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Wallet + security</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-14" data-case="VR-14" data-state="NOT RUN"><summary><span class="c-id">VR-14</span><span class="c-title">Portable verification</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Balances and receipts authenticate their roots, successful outcome and trust anchors. Necessary reconstruction data has a documented availability path.</p><h4>Evidence the case requires</h4><p>Independent receipt/client verification with hostile inputs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Wallet + protocol</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-15" data-case="VR-15" data-state="NOT RUN"><summary><span class="c-id">VR-15</span><span class="c-title">Price real resources</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Bound execution, verification and storage costs. Sponsored transactions have limits. No deliberate congestion solely to increase a token metric.</p><h4>Evidence the case requires</h4><p>Minimum-node tests and fee/sponsor-abuse scenarios.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Protocol + economics</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-16" data-case="VR-16" data-state="NOT RUN"><summary><span class="c-id">VR-16</span><span class="c-title">No fragile stable-value promise</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Any stable-value product has explicit issuer, reserve/redemption rights, permissions and risks. No native-backed peg used merely to manufacture demand.</p><h4>Evidence the case requires</h4><p>Independent diligence, risk limits and legal assessment before release.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Application + counsel</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-17" data-case="VR-17" data-state="NOT RUN"><summary><span class="c-id">VR-17</span><span class="c-title">Optional bounded bridges</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Bridge exposure is separate from core security. No bridge is mandatory for genesis or allowed to redefine base-chain finality after a loss.</p><h4>Evidence the case requires</h4><p>External security review, loss limits and failure/isolation tests.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Application + security</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-18" data-case="VR-18" data-state="NOT RUN"><summary><span class="c-id">VR-18</span><span class="c-title">Open work settlement</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Jobs bind program, inputs, result, verifier, deadline and payment. Gateways are replaceable and Labs approval is not required for ordinary work.</p><h4>Evidence the case requires</h4><p>Independent request-to-paid-result test and state reconciliation.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Protocol + ecosystem</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-19" data-case="VR-19" data-state="NOT RUN"><summary><span class="c-id">VR-19</span><span class="c-title">Obligation-based service bonds</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Deposits secure a specific obligation, not consensus influence. Size and failure conditions must preserve small-operator paths and handle collateral decline.</p><h4>Evidence the case requires</h4><p>Economic and adversarial reservation/default tests.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Economics + application</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-20" data-case="VR-20" data-state="NOT RUN"><summary><span class="c-id">VR-20</span><span class="c-title">Independent developer access</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Publish complete standards, fixtures and tooling. Grants reward useful maintained deliverables rather than deployments or price effects.</p><h4>Evidence the case requires</h4><p>Unaffiliated integration and maintenance evidence.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Ecosystem</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-21" data-case="VR-21" data-state="NOT RUN"><summary><span class="c-id">VR-21</span><span class="c-title">Committed maintenance</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Essential maintenance and audits need a funded runway with stress accounting, distinct from hoped-for appreciation or fundraising.</p><h4>Evidence the case requires</h4><p>At least approved P13 runway, commitments and role costs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Maintainers + finance</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-22" data-case="VR-22" data-state="NOT RUN"><summary><span class="c-id">VR-22</span><span class="c-title">Founder independence</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Routine block, job, payment and recovery paths must not require a founder credential or undocumented manual action.</p><h4>Evidence the case requires</h4><p>Real founder-absence exercises and intervention ledger.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Operations + independent reviewer</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-23" data-case="VR-23" data-state="NOT RUN"><summary><span class="c-id">VR-23</span><span class="c-title">Measure effective control</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Report operator, pool, hosting, service and client dependencies with attribution limits. Keys and addresses are not people.</p><h4>Evidence the case requires</h4><p>Dependency/control map with uncertainty and removal experiments.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Measurement + operations</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-24" data-case="VR-24" data-state="NOT RUN"><summary><span class="c-id">VR-24</span><span class="c-title">Reproducible secure release</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Pin source, binaries, rules, guests/keys and activation. Provenance is necessary but not sufficient for correctness.</p><h4>Evidence the case requires</h4><p>Independent builds, artifact verification and scoped review.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Release + security</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-25" data-case="VR-25" data-state="NOT RUN"><summary><span class="c-id">VR-25</span><span class="c-title">Consent-preserving incident response</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Separate public/developer authority. Urgency must not silently override installation or grant arbitrary execution. Disclose material incidents and retest.</p><h4>Evidence the case requires</h4><p>Compromised-key, unsafe-update and recovery drills.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Release + operations</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-26" data-case="VR-26" data-state="NOT RUN"><summary><span class="c-id">VR-26</span><span class="c-title">Honest access and liquidity</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Use functional deposits/withdrawals and executable depth, not ticker count or fabricated volume. Never restrict exit to simulate value.</p><h4>Evidence the case requires</h4><p>Independent access-route and two-sided liquidity observations.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Ecosystem + measurement</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-27" data-case="VR-27" data-state="NOT RUN"><summary><span class="c-id">VR-27</span><span class="c-title">Transparent treasury relationships</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Disclose material grants, insider holdings, inventory and market-making mandates. No wash trades or hidden price-support promises.</p><h4>Evidence the case requires</h4><p>Mandate register, reconciled accounts and conflict policy.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Treasury + counsel</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-28" data-case="VR-28" data-state="NOT RUN"><summary><span class="c-id">VR-28</span><span class="c-title">Auditable metrics</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Publish definitions, raw/adjusted views, sampling, attribution uncertainty and missing data. No subsidy-hidden demand or censored failed jobs.</p><h4>Evidence the case requires</h4><p>Data lineage, conservation checks and independent replay.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Measurement</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-29" data-case="VR-29" data-state="NOT RUN"><summary><span class="c-id">VR-29</span><span class="c-title">Fair comparison universe</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Define eligible peers and exclusions before observing rankings. Include qualifying new entrants and preserve unknown values.</p><h4>Evidence the case requires</h4><p>Independent peer census and versioned comparison protocol.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Measurement + external panel</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-30" data-case="VR-30" data-state="NOT RUN"><summary><span class="c-id">VR-30</span><span class="c-title">Scoped claims only</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Every leadership claim names its metric, universe, period and limits. A measured price rank does not certify overall safety or future leadership.</p><h4>Evidence the case requires</h4><p>Claim register with evidence, expiry and legal signoff.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Governance + counsel</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-31" data-case="VR-31" data-state="NOT RUN"><summary><span class="c-id">VR-31</span><span class="c-title">Evidence before pass</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Pre-register thresholds; missing inputs block gates; corrections preserve failed results. No aggregate score can waive core safety or economic failure.</p><h4>Evidence the case requires</h4><p>Frozen test charter and versioned evidence packets.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Independent acceptance panel</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-32" data-case="VR-32" data-state="NOT RUN"><summary><span class="c-id">VR-32</span><span class="c-title">Real adoption</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Measure unaffiliated retained users and useful repeat activity with incentives identified. Do not require buying IGN to participate in a study.</p><h4>Evidence the case requires</h4><p>Cohort definitions, attrition, usage and subsidy audit.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Product + ecosystem</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-33" data-case="VR-33" data-state="NOT RUN"><summary><span class="c-id">VR-33</span><span class="c-title">AI earns admission</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>AI is an optional workload category, not a guaranteed-margin network identity. Price full costs and adverse demand before expansion.</p><h4>Evidence the case requires</h4><p>Workload-specific benchmark, repeat demand and verification policy.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Compute + economics</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-34" data-case="VR-34" data-state="NOT RUN"><summary><span class="c-id">VR-34</span><span class="c-title">Bound agent spending</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Automated buyers have scoped budgets, permissions, expiry, revocation and logs. Untrusted prompts never alter base permissions.</p><h4>Evidence the case requires</h4><p>Prompt/input adversarial tests and payment-loss caps.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Application + security</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-35" data-case="VR-35" data-state="NOT RUN"><summary><span class="c-id">VR-35</span><span class="c-title">Cryptographic migration readiness</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Maintain a full algorithm inventory and reviewed transition plan. No quantum-proof claim from one component or speculative attack date.</p><h4>Evidence the case requires</h4><p>Expert review, downgrade/migration tests and annual refresh.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Cryptography + protocol</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-36" data-case="VR-36" data-state="NOT RUN"><summary><span class="c-id">VR-36</span><span class="c-title">Separate proof, truth and privacy</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Execution validity does not establish real-world input truth, AI answer quality or confidentiality. State trust and data exposure for each service.</p><h4>Evidence the case requires</h4><p>Threat model and user-facing guarantee audit.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Security + product</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-37" data-case="VR-37" data-state="NOT RUN"><summary><span class="c-id">VR-37</span><span class="c-title">Scale within verification budgets</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Throughput, data and state growth must preserve the declared minimum-node and reconstruction capabilities. Reprice security after fee compression.</p><h4>Evidence the case requires</h4><p>Cold-path capacity, bootstrap, pruning and provider-removal tests.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Protocol + operations</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-38" data-case="VR-38" data-state="NOT RUN"><summary><span class="c-id">VR-38</span><span class="c-title">Honest energy accounting</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Report complete-system energy and role allocation. Avoid double-counting joint work or making unsupported carbon/marginal-transaction claims.</p><h4>Evidence the case requires</h4><p>Calibrated wall tests and documented environmental methodology.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>GPU + measurement</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-39" data-case="VR-39" data-state="NOT RUN"><summary><span class="c-id">VR-39</span><span class="c-title">Activity-specific legal approval</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Obtain counsel review for actual audiences and activities. No-presale, fair-launch or decentralised labels are not blanket legal exemptions.</p><h4>Evidence the case requires</h4><p>Jurisdiction/activity matrix and approved external communications.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Counsel</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-VR-40" data-case="VR-40" data-state="NOT RUN"><summary><span class="c-id">VR-40</span><span class="c-title">No indispensable administrator</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p></p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>A useful company, token holder, pool, AI agent or funding body receives no hidden power over balances, issuance or canonical history.</p><h4>Evidence the case requires</h4><p>Authority inventory, isolation tests and independent operation.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Ratification</dd></div><div><dt>Cadence</dt><dd>Once, at ratification; again on any change of the rule</dd></div><div><dt>Owner</dt><dd>Protocol + governance</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details></div></div></section><section class="section acc-suite" id="suite-TV"><div class="container"><div class="acc-suite-head"><div class="acc-suite-code"><span class="n">20</span>TV</div><div class="acc-suite-t"><h2>TV: the token value and network leadership gates (proposed; no gate executed)</h2><p class="acc-sub">32 gates from Igneum 2.0, Token Value & Network Leadership 1.0-proposed (snapshot 2026-10-08); scope CORE, CAPABILITY IF ENABLED or LEADERSHIP CLAIM as the file gives it; Supplement to original master and 128-case test standard; not a price/rank guarantee</p></div><div class="acc-suite-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></div></div><dl class="acc-facts"><div><dt>Owner</dt><dd>the owner role per gate</dd></div><div><dt>Gate</dt><dd>Token value gates closed</dd></div><div><dt>Fixtures</dt><dd>F0</dd></div><div><dt>Plan pages</dt><dd>docs/plans/igneum-2.0-master/token-value/rules-and-gates.json gates</dd></div></dl><div class="acc-suite-bar"><div class="acc-bar" role="img" aria-label="TV: 32 cases: 0 passed under the standard, 0 running with team evidence, 32 not run, 0 deferred"><span class="seg g-notrun" style="flex-grow:32" title="32 NOT RUN"></span></div><span>32 cases: 0 passed under the standard, 0 running with team evidence, 32 not run, 0 deferred</span></div><div class="acc-cases"><div class="acc-cases-h" aria-hidden="true"><span>Case</span><span>Title</span><span>Priority</span><span>Profile</span><span>Status</span><span>Evidence</span><span>Last run</span><span></span></div><details class="acc-case" id="case-TV-01" data-case="TV-01" data-state="NOT RUN"><summary><span class="c-id">TV-01</span><span class="c-title">Resolve and freeze the monetary contract</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Supply, tail, fee and recovery documents plus exact proposed release.</p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>No conflicting normative policy; every material choice has a signed rationale, version, adoption path and tests. Unresolved core choice is BLOCKED.</p><h4>Evidence the case requires</h4><p>Decision log, signed specification, release manifest, test charter.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Protocol + independent panel</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-TV-02" data-case="TV-02" data-state="NOT RUN"><summary><span class="c-id">TV-02</span><span class="c-title">Reproduce complete supply accounting</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Two independent implementations; genesis and representative boundary/reorg fixtures.</p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Exact integer agreement; no unaccounted creation, duplicate supply or cap breach under the ratified policy. Restricted wrappers are not extra native supply.</p><h4>Evidence the case requires</h4><p>Machine-readable ledgers, vectors, independent signoff.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Protocol + measurement</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-TV-03" data-case="TV-03" data-state="NOT RUN"><summary><span class="c-id">TV-03</span><span class="c-title">Fair launch and early distribution</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Public binaries, source, mining modes, launch notice and insider inventory.</p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Zero undisclosed allocation or privileged conversion; approved notice/support window and cohort pass; distribution analysis includes delayed entrants without guaranteeing equal ownership.</p><h4>Evidence the case requires</h4><p>Genesis report, dated releases, disclosure register, simulation inputs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Release + ecosystem</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-TV-04" data-case="TV-04" data-state="NOT RUN"><summary><span class="c-id">TV-04</span><span class="c-title">Security budget without price rescue</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Ratified reward/fee rules; role costs; horizons 1, 5, 10 and 20 years.</p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Approved viable scenarios fund minimum required roles without hidden issuance or assumed appreciation; failure regions stated. Collapse scenarios need safe behaviour, not universal profit.</p><h4>Evidence the case requires</h4><p>Reproducible cash-flow model, assumptions, independent review.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Economics + protocol</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-TV-05" data-case="TV-05" data-state="NOT RUN"><summary><span class="c-id">TV-05</span><span class="c-title">Strongest surviving specialist</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Pinned candidate/cohort; cheapest supported physical designs including SRAM/hybrid.</p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>All approved core energy and total-cost bounds pass with uncertainty; no unresolved feasible dominating design. Unknown feasibility blocks the broad claim.</p><h4>Evidence the case requires</h4><p>Design files, wall results, sensitivity model, two independent hardware opinions.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Hardware reviewer + economics</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-TV-06" data-case="TV-06" data-state="NOT RUN"><summary><span class="c-id">TV-06</span><span class="c-title">Every fee and payment reconciles</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Native rules, payer contract and optional Labs/service invoices.</p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>No unexplained recipient or double count; statements/invoices match exact contract outcomes. Network turnover never labelled Labs revenue or permanent holding demand.</p><h4>Evidence the case requires</h4><p>Flow ledger, fixtures, invoice examples, reviewed public fee table.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Economics + application</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-TV-07" data-case="TV-07" data-state="NOT RUN"><summary><span class="c-id">TV-07</span><span class="c-title">Ownership-critical engineering closure</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Original master findings mapped to current release with genuine proof fixtures.</p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>No unresolved critical/high finding or counterexample within the approved guarantee; all applicable original safety gates pass. Reproducing a defect is not closure.</p><h4>Evidence the case requires</h4><p>Native outputs, manifests, scoped audit, issue-by-issue closure.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Protocol + independent security</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-TV-08" data-case="TV-08" data-state="NOT RUN"><summary><span class="c-id">TV-08</span><span class="c-title">Custody and recovery usability</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Declared wallet/hardware combinations; 30 new participants, at least 15 non-miners.</p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Zero unauthorised transfer or secret disclosure; at least 90% complete the approved safe task without private help. Report confidence limitations and all failures.</p><h4>Evidence the case requires</h4><p>Task protocol, anonymised results, security review, recovery vectors.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Wallet + independent users</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-TV-09" data-case="TV-09" data-state="NOT RUN"><summary><span class="c-id">TV-09</span><span class="c-title">Independently verifiable settlement</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Proof/receipt client without Labs RPC; normal and recovery certificates.</p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>All invalid claims refused; valid ordinary transfers verify within approved resource limits; weaker recovery and unavailable data never shown as stronger finality.</p><h4>Evidence the case requires</h4><p>Offline fixtures, consumer traces and independent implementation.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Wallet + consensus</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-TV-10" data-case="TV-10" data-state="NOT RUN"><summary><span class="c-id">TV-10</span><span class="c-title">Minimum-node and sponsored-use limits</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Approved minimum validator and sponsor budgets under final workload.</p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Original capacity/security profiles pass; budgets remain bounded; no proof skipped to catch up and no sponsor can spend outside authorised scope.</p><h4>Evidence the case requires</h4><p>Cold-path profiles, stress traces, sponsor negative tests.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Protocol + application</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-TV-11" data-case="TV-11" data-state="NOT RUN"><summary><span class="c-id">TV-11</span><span class="c-title">Pooled payments without authority loss</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Independent pool/member clients and durable payment state.</p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>No duplicate/lost liability or unauthorised authority change; member can verify delegated powers and change pools. Session resource limits hold.</p><h4>Evidence the case requires</h4><p>Ledger replay, signed work fixtures and pool removal test.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Pool + independent operators</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-TV-12" data-case="TV-12" data-state="NOT RUN"><summary><span class="c-id">TV-12</span><span class="c-title">Reproducible and consented software</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Release manifest, build dependencies, update keys and public installer.</p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>No hidden consensus variation or arbitrary default remote control; update-off remains respected; mandatory unavailable fixtures block acceptance.</p><h4>Evidence the case requires</h4><p>Attestations, independent hashes, key drill, installer/ACL review.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Release + independent security</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-TV-13" data-case="TV-13" data-state="NOT RUN"><summary><span class="c-id">TV-13</span><span class="c-title">Committed maintenance coverage</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Costed roles, commitments and monthly cash dates.</p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Original P13 satisfied without counting future appreciation or unsigned pledges; essential functions have funded substitutes and explicit shortfall response.</p><h4>Evidence the case requires</h4><p>Contracts/grants or funding proof, stress cash flow, responsibility register.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Maintainers + independent finance</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-TV-14" data-case="TV-14" data-state="NOT RUN"><summary><span class="c-id">TV-14</span><span class="c-title">Founder-absent operating exercise</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Independent builds/operators; founder services, keys and manual help removed.</p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Approved original independence/reliability gates pass; no unpublished founder action or privileged override. Simulated long partitions are labelled separately.</p><h4>Evidence the case requires</h4><p>Dependency map, availability logs, intervention and payer ledger.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Independent operations panel</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-TV-15" data-case="TV-15" data-state="NOT RUN"><summary><span class="c-id">TV-15</span><span class="c-title">Governance and authority boundaries</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Every control/activation threshold, treasury power and application admin interface.</p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>No actor gains undeclared issuance/balance/history authority. Every activation follows the ratified safe procedure; ambiguous threshold or recovery remains BLOCKED.</p><h4>Evidence the case requires</h4><p>Authority model, scenarios, native outcomes and independent review.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Protocol + governance</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-TV-16" data-case="TV-16" data-state="NOT RUN"><summary><span class="c-id">TV-16</span><span class="c-title">Two functional independent access routes</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>At least two unaffiliated custody/exchange/payment routes with disclosed shared infrastructure.</p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Both settle correctly; neither is merely a front end to the same indispensable provider. Gaps and jurisdiction limits visible; no listing assumed from a logo.</p><h4>Evidence the case requires</h4><p>Settlement records, dependency map and third-party confirmation.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Ecosystem + independent reviewer</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-TV-17" data-case="TV-17" data-state="NOT RUN"><summary><span class="c-id">TV-17</span><span class="c-title">Supply-price-liquidity measurement</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Frozen sources, price filters, circulating/free-float definitions and order-size bands.</p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>At least 95% daily coverage; exact supply reconciliation; no fabricated missing data. Sparse liquidity invalidates broad liquidity claims, not automatically the arithmetic cap.</p><h4>Evidence the case requires</h4><p>Raw snapshots, methodology/code, gap ledger, audit.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Measurement steward</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-TV-18" data-case="TV-18" data-state="NOT RUN"><summary><span class="c-id">TV-18</span><span class="c-title">Real versus incentivised demand</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Customer/job/transaction definitions with privacy-respecting attribution and subsidy data.</p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>All subsidies and known related activity separated; useful demand not inferred from gross volume alone; abusive incentive loop closed before scaling rewards.</p><h4>Evidence the case requires</h4><p>Accounting model, filter logic, sensitivity and independent replay.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Economics + measurement</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-TV-19" data-case="TV-19" data-state="NOT RUN"><summary><span class="c-id">TV-19</span><span class="c-title">Independent developer adoption</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Public kit and at least five unaffiliated developers with declared tasks.</p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>All declared core integration paths work; at least five usable integrations and two maintainer reproductions. Empty subsidised deployments do not qualify.</p><h4>Evidence the case requires</h4><p>Repos, task traces, user evidence and maintenance records.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Ecosystem + external developers</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-TV-20" data-case="TV-20" data-state="NOT RUN"><summary><span class="c-id">TV-20</span><span class="c-title">Programmable payment acceptance</span><span class="c-pri"><span class="lbl">Priority </span>P1</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Versioned library, independent application, user/sponsor limits and receipt path.</p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>No unauthorised spend or double settlement; successful transfer independently evidenced; subjective conditions disclose adjudicator/trust.</p><h4>Evidence the case requires</h4><p>Contracts, negative vectors, user task record, security review.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Application + wallet</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-TV-21" data-case="TV-21" data-state="NOT RUN"><summary><span class="c-id">TV-21</span><span class="c-title">Useful paid proof demand</span><span class="c-pri"><span class="lbl">Priority </span>P1</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Exact workload and final hardware path; three unrelated buyers and approved COM profile.</p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>All applicable COM targets met without hidden reimbursement. Queue expiry not counted as success. A monetary-only scope cannot claim this gate passed by exclusion.</p><h4>Evidence the case requires</h4><p>Buyer evidence, cost ledger, all-job traces and independent review.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Proving + independent customers</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-TV-22" data-case="TV-22" data-state="NOT RUN"><summary><span class="c-id">TV-22</span><span class="c-title">Replaceable work-market gateway</span><span class="c-pri"><span class="lbl">Priority </span>P1</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Two independent gateway implementations and job/settlement specification.</p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Correct payment/result without Labs approval; no concealed central dispatcher or irreversible dependency. External-chain receipts labelled separately.</p><h4>Evidence the case requires</h4><p>Gateway traces, escrow reconciliation, dependency-removal run.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Application + independent operators</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-TV-23" data-case="TV-23" data-state="NOT RUN"><summary><span class="c-id">TV-23</span><span class="c-title">Obligation-based deposits</span><span class="c-pri"><span class="lbl">Priority </span>P1</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Proposed bond/default contract and volatile-collateral scenarios.</p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>No consensus influence bought; default reason objective; compensation limits explicit; viable small-operator participation and approved risk bounds.</p><h4>Evidence the case requires</h4><p>Adversarial model, state tests, risk/legal review.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Economics + security</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-TV-24" data-case="TV-24" data-state="NOT RUN"><summary><span class="c-id">TV-24</span><span class="c-title">AI earns a separate commercial case</span><span class="c-pri"><span class="lbl">Priority </span>P1</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>One bounded model/job, provider hardware, verification tier and licences.</p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Approved service economics and buyer gates pass; correctness/truth/privacy distinguished. No native price or perpetual yield assumption.</p><h4>Evidence the case requires</h4><p>End-to-end costs, repeat demand, licence/threat review.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Compute + independent reviewer</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-TV-25" data-case="TV-25" data-state="NOT RUN"><summary><span class="c-id">TV-25</span><span class="c-title">Bounded machine purchasing</span><span class="c-pri"><span class="lbl">Priority </span>P1</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Approved account/paymaster permissions and chosen x402/agent interfaces.</p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Spend never exceeds authorised destination/time/amount scope; no instruction changes authority. Draft standard support is described accurately.</p><h4>Evidence the case requires</h4><p>Property tests, loss-cap proof, revocation/audit logs.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Application + security</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-TV-26" data-case="TV-26" data-state="NOT RUN"><summary><span class="c-id">TV-26</span><span class="c-title">Cryptographic migration readiness</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Complete key/proof/transport/update inventory and external cryptographic review.</p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>No unreviewed assumption or automatic confiscation; migration can be explained and tested. No absolute quantum-proof claim or attack date inferred.</p><h4>Evidence the case requires</h4><p>Inventory, expert report, migration vectors, annual schedule.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Cryptography + protocol</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-TV-27" data-case="TV-27" data-state="NOT RUN"><summary><span class="c-id">TV-27</span><span class="c-title">Private data and oracle assurance</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Per-product claims, input trust sources, data-retention and execution model.</p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>No claim exceeds tested guarantee; secrets/data protected to stated model; unauthenticated inputs not represented as objective truth.</p><h4>Evidence the case requires</h4><p>Threat model, exposure tests, labelled user flows.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Security + product</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-TV-28" data-case="TV-28" data-state="NOT RUN"><summary><span class="c-id">TV-28</span><span class="c-title">Stable assets and bridge isolation</span><span class="c-pri"><span class="lbl">Priority </span>P1</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Only if enabled: issuer/bridge design, redemption rights, trust anchors and approved value caps.</p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>No hidden base-chain guarantee or forced reversal of final history; independent audit, conservative exposure and counsel approval.</p><h4>Evidence the case requires</h4><p>Risk dossier, scenarios, disclosure, independent tests.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Application + security + counsel</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-TV-29" data-case="TV-29" data-state="NOT RUN"><summary><span class="c-id">TV-29</span><span class="c-title">Growth without inaccessible verification</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Declared minimum node, projected data growth and alternative scaling design.</p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Original minimum-node/security bounds hold; required data remains obtainable; security funding restated for changed fee routes.</p><h4>Evidence the case requires</h4><p>Capacity/availability results and revised economics.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Protocol + operations</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-TV-30" data-case="TV-30" data-state="NOT RUN"><summary><span class="c-id">TV-30</span><span class="c-title">Energy and claims discipline</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Calibrated whole-system metering and workload allocation protocol.</p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>No double-counted savings; original meter tolerances satisfied; no marginal-energy/carbon claim beyond method.</p><h4>Evidence the case requires</h4><p>Raw meter traces, job ledger, method and external review.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>GPU + measurement</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-TV-31" data-case="TV-31" data-state="NOT RUN"><summary><span class="c-id">TV-31</span><span class="c-title">Public-claim and activity review</span><span class="c-pri"><span class="lbl">Priority </span>P0</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Actual jurisdiction, audience, service, token-distribution and promotion plans.</p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Written activity-specific clearance and approved wording; no future-value assertion in a covered MiCA white paper; no blanket exemption inferred from mining.</p><h4>Evidence the case requires</h4><p>Legal decision matrix, claim register, review dates.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Qualified counsel</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details><details class="acc-case" id="case-TV-32" data-case="TV-32" data-state="NOT RUN"><summary><span class="c-id">TV-32</span><span class="c-title">Observed leadership, not a roadmap certificate</span><span class="c-pri"><span class="lbl">Priority </span>P1</span><span class="c-prof"><span class="lbl">Profile </span>P00</span><span class="c-st"><span class="acc-chip s-notrun" data-state="NOT RUN">NOT RUN</span></span><span class="c-ev"><span class="lbl">Evidence </span><span class="none">none yet</span></span><span class="c-run"><span class="lbl">Last run </span><span class="none">none yet</span></span><span class="c-caret" aria-hidden="true"></span></summary><div class="acc-panel"><blockquote><h4>Setup</h4><p>Approved peer universe; all applicable mandatory gates; stable release and 90-day observation.</p><h4>Steps</h4><ol></ol><h4>Accept</h4><p>Contender requires original criteria; market-cap first requires highest 90-day median, 95% coverage; sustained daily-first convention also needs 80% of covered days. Never certify overall best from price alone.</p><h4>Evidence the case requires</h4><p>Independent panel report, full methods/data, scope and expiry of claim.</p></blockquote><dl class="acc-meta"><div><dt>Method</dt><dd>Automated + independent review</dd></div><div><dt>Cadence</dt><dd>Every release candidate</dd></div><div><dt>Owner</dt><dd>Independent acceptance panel</dd></div><div><dt>Plan pages</dt><dd>TV</dd></div></dl></div></details></div></div></section><section class="section acc-profiles" id="profiles"><div class="container"><div class="eyebrow"><span class="line"></span>Profiles</div><h2>The numbers each case is held to.</h2><p class="acc-sub">17 profiles, P00 to P16. A profile is frozen before the confirmatory run; weakening a target after a failure creates a different claim.</p><div class="acc-prof-grid"><article class="acc-prof approved" id="profile-P00"><div class="acc-prof-top"><span class="acc-prof-id">P00</span><span class="acc-pstate approved">Approved as proposed</span></div><h3>Frozen scope and approval</h3><ol class="acc-req"><li>Approve the release manifest, supported roles, numerical profiles, mandatory scenarios, trust/fault model, workload W, adapters and claims before confirmatory tests. Unknown values are BLOCKED, not defaults.</li><li>Core safety and authentication invariants admit no waiver. Proposed performance or commercial targets may be replaced only before the confirmatory run, with an independent rationale and a versioned public scope.</li><li>After a failure, weakening a target creates a different claim and requires a new assessment. Preserve all failed runs; do not average a blocker away.</li></ol><p class="acc-prof-n">Cited by 148 cases. The profile’s own line in the registry: PROPOSED, REQUIRES APPROVAL.</p></article><article class="acc-prof approved" id="profile-P01"><div class="acc-prof-top"><span class="acc-prof-id">P01</span><span class="acc-pstate approved">Approved as proposed</span></div><h3>Correctness and negative-test depth</h3><ol class="acc-req"><li>Zero observed invalid acceptance, unauthorised signature, conflicting finality within assumptions, duplicated reward or unexplained cross-backend state/hash disagreement.</li><li>Minimum proposed campaign: 1,000,000 full-hash vectors per supported backend across all families, plus at least 10,000 malformed/boundary cases per relevant parser or binding class. Include exhaustive small-domain cases and historical regressions.</li><li>All prescribed critical mutants must be detected. This sampling target is not a bound on cryptographic failure probability and does not replace independent reasoning about soundness or safety.</li></ol><p class="acc-prof-n">Cited by 69 cases. The profile’s own line in the registry: PROPOSED, REQUIRES APPROVAL.</p></article><article class="acc-prof approved" id="profile-P02"><div class="acc-prof-top"><span class="acc-prof-id">P02</span><span class="acc-pstate approved">Approved as proposed</span></div><h3>Hardware coverage and reproducibility</h3><ol class="acc-req"><li>At least 12 physical retail configurations: at least 3 NVIDIA, 3 AMD and 2 Apple configurations, at least two discrete-GPU generations, an advertised 8 GB mining tier and 12 GB proving tiers where claimed. Record usable, not nominal, memory.</li><li>Declare a competitive core of at least 6 configurations spanning every advertised vendor and at least two discrete generations before optimisation. The wider cohort remains mandatory for access and economic tests; it cannot be silently dropped.</li><li>Use 5 paired 30-minute steady-state runs per primary cell after at least 15 minutes of warm-up and a stable temperature trend. Calibrated wall meter uncertainty must be at most 2%. Run a 7-day soak on representative low/mid/high tiers.</li><li>Three unaffiliated operators participate; every competitive-core cell is reproduced by at least two. Identical-SKU energy/accepted-work results must agree within 5% after declared environment corrections; unexplained variance blocks the headline.</li></ol><p class="acc-prof-n">Cited by 12 cases. The profile’s own line in the registry: PROPOSED, REQUIRES APPROVAL.</p></article><article class="acc-prof approved" id="profile-P03"><div class="acc-prof-top"><span class="acc-prof-id">P03</span><span class="acc-pstate approved">Approved as proposed</span></div><h3>Candidate improvement and honest-card budget</h3><ol class="acc-req"><li>For production candidate changes, per mandatory GPU cell: no more than 5% increase in joules per accepted work and no more than 2% decrease in accepted throughput versus the paired tuned baseline. Absolute safety limits always apply.</li><li>G2 requires at least a 10% reduction in the strongest evaluated specialist advantage after redesign, outside the declared measurement/model uncertainty, while meeting those budgets. A failed experiment is not a successful upgrade.</li><li>Existing clock-lock savings belong in the baseline. Long programs cannot pass by adding enough equally costly work to both devices to improve a ratio while materially worsening honest operation.</li></ol><p class="acc-prof-n">Cited by 8 cases. The profile’s own line in the registry: PROPOSED, REQUIRES APPROVAL.</p></article><article class="acc-prof approved" id="profile-P04"><div class="acc-prof-top"><span class="acc-prof-id">P04</span><span class="acc-pstate approved">Approved as proposed</span></div><h3>Scoped specialist-competition target</h3><ol class="acc-req"><li>Define R_E as GPU wall joules per accepted work divided by the lowest credible complete-system specialist joules for that same work. The proposed target is R_E at most 1.5 for every competitive-core cell at the same node and one node ahead.</li><li>Evaluate at least three materially distinct specialist architectures, with one programmable multi-family design, and a second independent reviewer. Include shared/reduced memory, hybrid execution, selective participation and realistic power/host costs.</li><li>Publish two-node-ahead and modular/reused-IP stress cases; they must satisfy the predeclared P12 economic envelope. No universal ceiling for unknown future hardware is claimed. Report model bounds separately from statistical confidence.</li><li>A lower-bound specialist estimate, not a convenient average or a deliberately constrained reference architecture, drives the conservative comparison. Undefined or unbounded decision-critical assumptions make the result BLOCKED.</li></ol><p class="acc-note"><span class="acc-chip s-fail" data-state="FAIL">FAIL</span> <span>R_E target at most 1.5 at the same node and one node ahead; today's placed bracket 1.5x to 2.1x: FAIL</span></p><p class="acc-prof-n">Cited by 14 cases. The profile’s own line in the registry: PROPOSED, REQUIRES APPROVAL.</p></article><article class="acc-prof approved" id="profile-P05"><div class="acc-prof-top"><span class="acc-prof-id">P05</span><span class="acc-pstate approved">Approved as proposed</span></div><h3>Measurement and inference protocol</h3><ol class="acc-req"><li>Pre-register primary metrics, cohorts, holdout seeds, run order, exclusions and analysis before confirmation. Keep tuning/training runs separate from holdout runs.</li><li>Use independent runs/operators as measurement units. Report point estimates, two-sided 95% measurement intervals and absolute sample counts; handle time-series dependence with a declared block or run-level method.</li><li>Apply conservative uncertainty to pass decisions. A confidence interval around measured GPU energy does not capture unknown ASIC architectures; model parameter ranges and expert judgement must be reported as such.</li><li>Never compare raw hashes per second across different algorithms. Do not transform a five-year scenario sweep into a probability of chip arrival or a guarantee of future profitability.</li></ol><p class="acc-prof-n">Cited by 0 cases. The profile’s own line in the registry: PROPOSED, REQUIRES APPROVAL.</p></article><article class="acc-prof approved" id="profile-P06"><div class="acc-prof-top"><span class="acc-prof-id">P06</span><span class="acc-pstate approved">Approved as proposed</span></div><h3>Memory and support policy</h3><ol class="acc-req"><li>All advertised role/configuration combinations must finish without OOM, corruption or unsafe fallback. Publish a component memory budget, including display/OS, driver, miner, prover, aggregation and epoch construction.</li><li>Proposed support horizon: at least 24 months of known schedule compatibility for the advertised entry tier, unless a narrower horizon is prominently approved before sale or launch. Removal changes the claim and must pass ECO-07.</li><li>Treat 5.5 / 8.5 / 11.5 GiB as source candidates, not imposed final rules. Simultaneous operation, eviction and time-sharing are distinct advertised modes with separately measured cost.</li></ol><p class="acc-prof-n">Cited by 4 cases. The profile’s own line in the registry: PROPOSED, REQUIRES APPROVAL.</p></article><article class="acc-prof approved" id="profile-P07"><div class="acc-prof-top"><span class="acc-prof-id">P07</span><span class="acc-pstate approved">Approved as proposed</span></div><h3>Proof service capacity and fairness</h3><ol class="acc-req"><li>Freeze W as a meaningful workload mix, input sizes, proof format, fleet and requests/hour. Primary proposed target: 72 hours at W, plus 24 hours at 1.2W; at least 99.5% accepted jobs delivered valid within the contracted deadline.</li><li>Default delivery targets for the declared internal reference workload: p95 at most 60 seconds and p99 at most 120 seconds from input-ready assignment through verified delivery. Also publish request-to-delivery including input wait; no claim may omit that delay.</li><li>Request-to-delivery p99 must meet the separately approved customer deadline. Payment p99 must be at most 10 minutes after verified payable eligibility, with chain finality time reported separately. These defaults do not override a stricter contract.</li><li>No statistically supported positive backlog drift at steady load, no silent drops; after 2W for 15 minutes, drain excess backlog within 30 minutes of return to W. Report rejected demand and accepted-job success separately.</li><li>Proposed advertised-tier fairness: at least 90% timely valid assigned completions are paid under the approved rules; avoidable duplicate/retry work is at most 10% of total work. Reassignment policy must bound abandonment without promising every assignment a reward.</li></ol><p class="acc-prof-n">Cited by 15 cases. The profile’s own line in the registry: PROPOSED, REQUIRES APPROVAL.</p></article><article class="acc-prof approved" id="profile-P08"><div class="acc-prof-top"><span class="acc-prof-id">P08</span><span class="acc-pstate approved">Approved as proposed</span></div><h3>Fault assumptions and recovery</h3><ol class="acc-req"><li>F0 must state the exact safety threshold, quorum and authority-transition rule; the synchrony/participation assumptions for liveness; trusted inputs; and clock/expiry semantics. This manual supplies no substitute consensus rule.</li><li>Exercise threshold-minus/at/plus cases, the 40/40/20 partition fixture, signing outages and 31/35/60/90 logical-day expiry cases. Preserve safety when liveness assumptions fail; do not demand finality from an unavailable quorum.</li><li>After assumptions and input availability are restored: service replacement within 10 minutes and deterministic network convergence within 30 minutes on the reference topology. Different certified bounds must be approved beforehand.</li><li>Accelerated-time simulation and real elapsed operation are separate evidence classes. Recovery may not reverse a guarantee previously represented as final.</li></ol><p class="acc-prof-n">Cited by 25 cases. The profile’s own line in the registry: PROPOSED, REQUIRES APPROVAL.</p></article><article class="acc-prof approved" id="profile-P09"><div class="acc-prof-top"><span class="acc-prof-id">P09</span><span class="acc-pstate approved">Approved as proposed</span></div><h3>Security and bounded resource requirements</h3><ol class="acc-req"><li>Zero unresolved critical or high-severity security findings on the claimed release. Independent scopes must cover consensus, proof soundness/parameters, implementation bypasses, wallet/isolation and relevant operational controls.</li><li>Review the intended proof-system security level and assumptions explicitly; do not infer a security-bit claim from random rejection tests. Version every verifier, program and parameter set.</li><li>Freeze maximum valid/invalid verification time, memory, disk and admission rates for ordinary validator hardware. At rated valid load plus the approved hostile load, no unbounded growth, invalid acceptance or unrecoverable process failure.</li><li>For supported wallet fee-estimation cases, proposed absolute error at most 5% versus the specified charge when inputs are unchanged; deterministic fee-cap handling and explicit uncertainty otherwise. Customer contracts remain separately binding.</li></ol><p class="acc-prof-n">Cited by 30 cases. The profile’s own line in the registry: PROPOSED, REQUIRES APPROVAL.</p></article><article class="acc-prof approved" id="profile-P10"><div class="acc-prof-top"><span class="acc-prof-id">P10</span><span class="acc-pstate approved">Approved as proposed</span></div><h3>Ordinary-operator product targets</h3><ol class="acc-req"><li>At least 30 unaffiliated first-time study participants across supported Windows/macOS combinations. At least 90% install, configure safely and submit accepted work without staff help; p90 active setup at most 15 minutes. Publish complete download/dataset time separately.</li><li>Pause/stop acknowledgement within 2 seconds, safe worker stop within 5 seconds where no documented atomic operation prevents it, and reliable restoration of original tuning settings. No hidden custody or silent update.</li><li>Net-energy/fee displays reconcile within 5% under the declared measurement boundary. Incremental rejected-work loss on the normal home-link profile is at most 2 percentage points over the matched datacentre profile.</li><li>Open miner efficiency is within 5% of the best independently tuned permitted implementation on identical work. For the declared single-card payout case, p95 payable-to-payment at most 24 hours and total payout friction at most 2% of earned value.</li><li>Critical alerts are emitted within 60 seconds of detectable evidence. At least 90% of study users can identify the injected failure and follow the published safe action. No control target excuses a security failure.</li></ol><p class="acc-prof-n">Cited by 11 cases. The profile’s own line in the registry: PROPOSED, REQUIRES APPROVAL.</p></article><article class="acc-prof approved" id="profile-P11"><div class="acc-prof-top"><span class="acc-prof-id">P11</span><span class="acc-pstate approved">Approved as proposed</span></div><h3>No-founder exercise and independence</h3><ol class="acc-req"><li>At least 10 verified unaffiliated operators, three independently administered network/hosting domains and sufficient honest weight/capacity to satisfy F0 and W after founders are removed.</li><li>Run at least 30 real elapsed days without founder mining, proving, aggregation, bootstrap, required RPC, private files or privileged interventions. Cross all known logical transitions separately without calling accelerated time real history.</li><li>Document control by role and common dependencies; uncertain identities are not counted as independent. Within-assumption withdrawals must satisfy P08; losing more than the assumed quorum may cause a visible safe pause.</li></ol><p class="acc-prof-n">Cited by 4 cases. The profile’s own line in the registry: PROPOSED, REQUIRES APPROVAL.</p></article><article class="acc-prof approved" id="profile-P12"><div class="acc-prof-top"><span class="acc-prof-id">P12</span><span class="acc-pstate approved">Approved as proposed</span></div><h3>Five-year coexistence envelope</h3><ol class="acc-req"><li>Freeze a sourced revenue reference R and mandatory worlds before results. Sweep 0.25R, R, 4R and 10R; electricity at $0.03/$0.10/$0.25/$0.40 per kWh; 1/3/5-year productive life; zero/$20M/$75M development; private mining and hardware sales; no/normal/spiking external demand.</li><li>Those values are proposed stress inputs, not current prices or forecasts. Declare which worlds have enough funded demand for rational ongoing service before running; retain collapse worlds as explicit safety/exit tests, not profitable successes.</li><li>Proposed matched-tariff new-entry target in every mandatory sustainable world: median GPU/specialist total cost per accepted work at most 1.5, 90th percentile at most 1.75, and no advertised competitive-core cell above 2.0. Publish every cell, including heterogeneous tariffs.</li><li>At least three purchasable GPU configurations across at least two advertised vendors must have positive modelled new-entry economics; at least 75% of the entry cohort must have positive marginal operating economics in those worlds. Report model uncertainty and failure regions.</li><li>Do not impose GPU market share, specialist production limits, token appreciation, full research-cost recovery or automatic chip death to force the result. Any such condition must become an explicit limitation rather than a hidden assumption.</li></ol><p class="acc-prof-n">Cited by 24 cases. The profile’s own line in the registry: PROPOSED, REQUIRES APPROVAL.</p></article><article class="acc-prof deferred" id="profile-P13"><div class="acc-prof-top"><span class="acc-prof-id">P13</span><span class="acc-pstate deferred">Deferred by the founder</span></div><h3>Maintenance continuity</h3><ol class="acc-req"><li>Before a readiness claim, document at least 12 months of committed maintenance resources at the approved operating scope. Include engineering, security review, infrastructure, support and incident response.</li><li>Use independently reviewable commitments and downside budgets. Uncommitted future sales, rising token prices, burned fees or assumed fundraising are not available resources.</li><li>This is a proposed governance test, not a directive to change the supply cap, issuance allocation or fair-launch design.</li></ol><p class="acc-prof-n">Cited by 1 case. The profile’s own line in the registry: PROPOSED, REQUIRES APPROVAL.</p></article><article class="acc-prof approved" id="profile-P14"><div class="acc-prof-top"><span class="acc-prof-id">P14</span><span class="acc-pstate approved">Approved as proposed</span></div><h3>Genuine commercial and developer proof</h3><ol class="acc-req"><li>At least three unrelated paying buyer organisations, each making at least three separate purchase decisions across at least 30 days; at least 1,000 meaningful verified external jobs in aggregate. Split invoices do not create independent demand.</li><li>No project reimbursement, circular funding or undisclosed related party counts. Report customer concentration and churn; proposed maximum largest-buyer share is 70% of qualifying revenue.</li><li>At least 20% aggregate contribution margin after directly attributable delivery costs, retries, refunds and support; publish fully loaded economics separately. At least 75% of sampled eligible operators have positive realised contribution on the declared workload.</li><li>At least five unaffiliated developers complete a useful supported application or proof-service integration using public documentation. Customer confirmation and raw commercial evidence may remain confidential to the reviewer.</li></ol><p class="acc-prof-n">Cited by 10 cases. The profile’s own line in the registry: PROPOSED, REQUIRES APPROVAL.</p></article><article class="acc-prof approved" id="profile-P15"><div class="acc-prof-top"><span class="acc-prof-id">P15</span><span class="acc-pstate approved">Approved as proposed</span></div><h3>Comparative contention threshold</h3><ol class="acc-req"><li>Pre-register at least three relevant operating GPU-first peers, plus a real proving alternative for customer comparisons. Verify current versions at execution time. The source reference set is a starting point, not a claim about current rankings.</li><li>Require at least three meaningful comparable dimensions with no material inferiority beyond a pre-agreed 10% margin against the best valid comparator, and at least two independently evidenced advantages against at least two peers.</li><li>Advantages must be either a greater-than-10% measured improvement outside uncertainty or a directly tested control/capability difference with demonstrated user value. Non-comparable or missing data is not a win.</li><li>A panel with hardware/economics, security/operations and customer/operator expertise must support the scoped contender conclusion. Passing these judgement-based thresholds does not certify a universal number-one ranking.</li></ol><p class="acc-prof-n">Cited by 5 cases. The profile’s own line in the registry: PROPOSED, REQUIRES APPROVAL.</p></article><article class="acc-prof approved" id="profile-P16"><div class="acc-prof-top"><span class="acc-prof-id">P16</span><span class="acc-pstate approved">Approved as proposed</span></div><h3>Observed durability and claim freshness</h3><ol class="acc-req"><li>At least 90 real elapsed days on the final compatible release family, at least 30 independently verified operators, and transparent eligibility/churn denominators. Material uncomparable changes reset affected observations.</li><li>Proposed outcomes: at least 60% day-90 operator retention and at least 75% of eligible observed operators with positive measured marginal operation over the period. Report incentives and electricity assumptions; do not claim a downturn was observed if it was not.</li><li>At least 99.9% availability for the declared customer service during eligible operating conditions, with all-in availability also reported; zero accepted invalid proofs or conflicting finality within F0 assumptions. Do not remove real incidents as maintenance to force a pass.</li><li>Run fault injection on isolated infrastructure, not unsuspecting customers. Publish planned test windows separately. Reassess claims at least quarterly and immediately after material hardware, protocol, economics or security changes.</li></ol><p class="acc-prof-n">Cited by 5 cases. The profile’s own line in the registry: PROPOSED, REQUIRES APPROVAL.</p></article></div></div></section><section class="section acc-fixtures" id="fixtures"><div class="container"><div class="eyebrow"><span class="line"></span>Fixtures</div><h2>What every run is built on.</h2><div class="acc-fix-grid"><article class="acc-fix" id="fixture-F0"><span class="acc-fix-id">F0</span><h3>Release and assurance manifest</h3><p>Exact commits, binaries, genesis/network ID, mining class, dataset schedule, EVM fork/deviations, program/verifier IDs, fees, supply, quorum/fault rules, trust anchors, activation and supported roles.</p></article><article class="acc-fix" id="fixture-F1"><span class="acc-fix-id">F1</span><h3>Clean build environments</h3><p>Pinned toolchains, dependency locks, clean OS images and documented signing/notarisation boundaries. No production secrets or private founder files.</p></article><article class="acc-fix" id="fixture-F2"><span class="acc-fix-id">F2</span><h3>Hardware and measurement lab</h3><p>Approved physical GPU cohort, calibrated wall meters, stable thermal conditions, driver/OS images and realistic home/datacentre link conditions.</p></article><article class="acc-fix" id="fixture-F3"><span class="acc-fix-id">F3</span><h3>Workload and oracle catalogue</h3><p>Fixed full-hash and EVM/proving jobs, independent reference implementations, real customer-sized payloads, held-out seeds and complete expected results.</p></article><article class="acc-fix" id="fixture-F4"><span class="acc-fix-id">F4</span><h3>Authorised fault network</h3><p>Independent nodes/operators; controllable latency, loss, clocks, partitions, storage faults and role withdrawals. Actual consensus paths plus separately labelled simulators.</p></article><article class="acc-fix" id="fixture-F5"><span class="acc-fix-id">F5</span><h3>Negative and regression corpus</h3><p>Malformed transactions/proofs, wrong roots/IDs, duplicate payments, bad authority tables, historical failures and deliberately faulty code mutants.</p></article><article class="acc-fix" id="fixture-F6"><span class="acc-fix-id">F6</span><h3>Specialist implementation pack</h3><p>Functionally checked architectures, RTL/physical estimates where feasible, memory and board assumptions, cost inputs, adaptation paths and uncertainty ranges.</p></article><article class="acc-fix" id="fixture-F7"><span class="acc-fix-id">F7</span><h3>Economic and incentive models</h3><p>Independently reproducible costs, entry/exit/difficulty policies, scenario grid, operator opportunity costs and money-flow conservation fixtures.</p></article><article class="acc-fix" id="fixture-F8"><span class="acc-fix-id">F8</span><h3>User/customer/peer studies</h3><p>Consenting unaffiliated users, contracted meaningful workloads, private ownership checks, dated competitor methods and independent analysis.</p></article><article class="acc-fix" id="fixture-F9"><span class="acc-fix-id">F9</span><h3>Evidence and status vault</h3><p>Immutable run IDs, raw logs, hashes, analysis code, exclusions, defects, reviewers, signatures, privacy controls and public redacted summaries.</p></article></div></div></section><section class="section acc-foot" id="notes"><div class="container"><div class="acc-foot-card"><div class="eyebrow"><span class="line"></span>What a full pass means</div><p class="acc-allpass">Independent passage of all mandatory and claimed-option gates, including commercial and comparative observation, can support a scoped leadership-contender assessment. It does not prove a universal rank or eliminate unknown future hardware risks.</p><p>Test design, not executed evidence. All numeric additions are proposed, not source-approved protocol rules. Optional claimed features require their tests; excluded features earn no pass credit.</p><h3>Rules in force</h3><ul class="acc-rules"><li>P03: a candidate change pays at most 5 percent of joules per accepted work and loses at most 2 percent of accepted throughput against the paired tuned baseline (replaces the 10 percent budget from 18:2x UK)</li><li>P04: R_E at most 1.5 for every competitive-core cell at the same node and one node ahead against the lowest credible complete-system specialist; today's placed bracket (1.5x to 2.1x same-node) is a FAIL to work against and is served as such</li><li>P12: the matched-tariff median at most 1.5, p90 at most 1.75, no core cell above 2.0</li><li>P02: twelve retail configurations, three unaffiliated operators, the seven-day soak define D1's reproduction</li></ul><p class="acc-never" data-never-served>Never served: guaranteed chip death, a universal ASIC-efficiency ceiling, chip-arrival probabilities, guaranteed profits, Ethereum security by compatibility, privacy from ZK, a numerical rank.</p><p class="acc-src"><b>Source:</b> <code>docs/plans/igneum-2.0-test-registry.json</code>, version 1.0, dated 8 October 2026, plan sha256 <code>418b3b9f68f96a41</code>. <span id="acc-live">This copy was written when the page was built; the page checks the registry on the public git host every 60 seconds.</span></p></div></div></section></div>
|
||
<script type="application/json" id="acceptance-data">{"title":"IGNEUM 2.0 - Test and Acceptance Standard","version":"1.0","date":"2026-10-08","status":"APPROVED 8 October 2026 (the founder, 18:2x UK): \"approve as proposed in the tests, forget P13 for now\"; the test design stands as PROPOSED, NOT EXECUTED until a case runs under it","basis":"IGNEUM_2.0_Plan.pdf, 37 pages, 8 October 2026","suites":[{"code":"GOV","title":"Release identity and evidence","source":[5,21,23,25,26,27],"gate":"G0 / all gates","owner":"Release lead + independent assurance","fixtures":"F0 manifest; F1 source/build archives; F9 evidence vault","summary":"Prevent a favourable result from being attached to the wrong code, assumptions or public claim.","tests":[{"id":"GOV-01","title":"Freeze the release and its claims","setup":"Candidate source, binaries, public documentation and the 2.0 plan are available; no run is yet accepted.","steps":["Record exact commits, binary hashes, dependencies, genesis/network identity, mining class, datasets, execution fork, verifier IDs and fee rules in F0.","Map every promised capability and plan requirement to a test ID; distinguish supported mining, proving and wallet combinations.","Sign the manifest with protocol, product and independent review owners before confirmatory runs."],"accept":"Every material rule and claim has an unambiguous version and test. Conflicts or unknown activation rules produce BLOCKED, not an inferred default. Changes create a new manifest and invalidate affected results.","evidence":"Signed F0; source-to-test map; claim inventory; unresolved-field register.","priority":"BLOCKER","profile":"P00","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[5,21,23,25,26,27],"gate":"G0 / all gates","owner":"Release lead + independent assurance","manual_page":18,"owner_lane":"node lane (a283f5f0d364ceef0)","run_status":"NOT RUN","evidence_path":"docs/plans/igneum-2.0-f0-manifest.md; build-4:/srv/builds/igneum-wt-ci-steward-202","run_id":"f0-signing-20261008-2330","updated":"2026-10-09T07:43:10.751Z","evidence_record":{"requirement_id":"GOV-01","decision":"NOT RUN","method":"static","cell":"check:freeze","manifest_sha":"1a938abe","run_id":"f0-signing-20261008-2330","evidence":"docs/plans/igneum-2.0-f0-manifest.md; build-4:/srv/builds/igneum-wt-ci-steward-202","in_progress":true,"coverage":"partial: the linked igneum-pow tree's fingerprint must match a listed freeze or the build fails, the binary prints which; the manifest (igneum_getManifest) names the object digest; the signed F0 manifest is the node lane's row tonight","release_identity":{"commit":"2a1d6caab4c24564 (the class v6 freeze candidate's draw of tree 1a938abe4)","lockfile":"","binary":"","network_object":"igneum-devnet-4, chain id 4465 (islands since the epoch-3 cut)","activation":"","profile_hashes":"igneum-pow/src fingerprint 5f4d6dc6199294db89042171004e6420c1e5791e716d4b39b73d375818c10b6f"},"claim_impact":"GOV-01 moves with its page: the F0 manifest carries the signing block (the candidate at its pairing, the same-work and acceptance rows, the 2.0.2 pair gate, the prover row, the canary state); GOV-01 stays NOT RUN in progress until the three roles sign","reviewer":"","at":"2026-10-09T07:43:10.751Z","note":"the signing block is on the page; the freeze itself is unchanged (class v5 1c420786, fingerprint cbc5bd0a); the candidate's row names 2a1d6caab4c24564 of 1a938abe4 | F0's signing block written at 23:3x UK from the lanes' landed lines; the signatures table is the three roles' own landing. The mining-class row's citation moved to the node fork's packaging/pow-freeze.txt and the 202 batches' rule-19 lines (09:0x UK, the review owner's note)."},"in_progress_since":"2026-10-08T19:32:50.856Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"check:freeze":{"requirement_id":"GOV-01","decision":"NOT RUN","method":"static","cell":"check:freeze","manifest_sha":"1a938abe","run_id":"f0-signing-20261008-2330","evidence":"docs/plans/igneum-2.0-f0-manifest.md; build-4:/srv/builds/igneum-wt-ci-steward-202","in_progress":true,"coverage":"partial: the linked igneum-pow tree's fingerprint must match a listed freeze or the build fails, the binary prints which; the manifest (igneum_getManifest) names the object digest; the signed F0 manifest is the node lane's row tonight","release_identity":{"commit":"2a1d6caab4c24564 (the class v6 freeze candidate's draw of tree 1a938abe4)","lockfile":"","binary":"","network_object":"igneum-devnet-4, chain id 4465 (islands since the epoch-3 cut)","activation":"","profile_hashes":"igneum-pow/src fingerprint 5f4d6dc6199294db89042171004e6420c1e5791e716d4b39b73d375818c10b6f"},"claim_impact":"GOV-01 moves with its page: the F0 manifest carries the signing block (the candidate at its pairing, the same-work and acceptance rows, the 2.0.2 pair gate, the prover row, the canary state); GOV-01 stays NOT RUN in progress until the three roles sign","reviewer":"","at":"2026-10-09T07:43:10.751Z","note":"the signing block is on the page; the freeze itself is unchanged (class v5 1c420786, fingerprint cbc5bd0a); the candidate's row names 2a1d6caab4c24564 of 1a938abe4 | F0's signing block written at 23:3x UK from the lanes' landed lines; the signatures table is the three roles' own landing. The mining-class row's citation moved to the node fork's packaging/pow-freeze.txt and the 202 batches' rule-19 lines (09:0x UK, the review owner's note)."}}},{"id":"GOV-02","title":"Approve thresholds before results","setup":"This manual supplies proposed test thresholds, not source-approved protocol parameters.","steps":["Approve or replace every P-profile before confirmatory testing; give each change a rationale and independent approver.","Register hardware cohorts, mandatory economic worlds, customer workloads, peer dimensions and exclusion rules.","Lock the profile hash and hold out seeds/workloads from the developers doing optimisation."],"accept":"No decision-critical field is TBD. Numeric limits are frozen, commercially meaningful and not chosen from observed results. A weakened limit after failure requires a new protocol, full affected rerun and explicit claim downgrade review.","evidence":"Approved profile register; timestamped holdout commitments; change log.","priority":"BLOCKER","profile":"P00","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[5,21,23,25,26,27],"gate":"G0 / all gates","owner":"Release lead + independent assurance","manual_page":18,"owner_lane":"CI steward (a2ecfa95d3206016c)","run_status":"NOT RUN","evidence_path":"docs/plans/igneum-2.0-test-registry.json","run_id":"team-2026-10-08","updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"the approval is recorded in the registry's approval field; the automated half (thresholds frozen before any run_status) is the gate rule landing by 21:00","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"GOV-02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"in_progress_since":"2026-10-08 18:3x UK","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"what_was_run":"the profiles approved as proposed by the founder at 18:2x UK before any confirmatory run; P13 deferred","run_by":"CI steward (a2ecfa95d3206016c)","under_the_standard":"no: team-run before the standard's procedure; the status is RUNNING until the case is re-run under its steps with the profile's numbers and an independent run where the profile asks one","pass_or_fail_today":"not judged under the standard yet","method":"static","requirement_id":"GOV-02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"team-2026-10-08","evidence":"docs/plans/igneum-2.0-test-registry.json","in_progress":true}}},{"id":"GOV-03","title":"Reproduce builds outside the founding team","setup":"Provide public source and documented build instructions to three unaffiliated operators.","steps":["Build on clean declared environments without private files, tokens or founder assistance.","Compare reproducible payload hashes; isolate signatures, notarisation and permitted non-deterministic wrappers.","Run reference vectors and restart a node using only documented artifacts."],"accept":"All independent builds reproduce the same consensus payload or an independently explained, pre-approved wrapper difference; reference outputs match exactly. Missing private prerequisites block release.","evidence":"Build logs; dependency lockfiles; binary comparison; operator attestations.","priority":"BLOCKER","profile":"P00; P02","cadence":"Release candidate; repeat after relevant changes","method":"Independent reproduction","status":"NOT RUN","source":[5,21,23,25,26,27],"gate":"G0 / all gates","owner":"Release lead + independent assurance","manual_page":18,"owner_lane":"build-server lane (a352e49ff4613df86)","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08 18:3x UK","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"GOV-04","title":"Preserve raw and negative evidence","setup":"Enable append-only storage for run outputs and a separate analysis workspace.","steps":["Capture failed, aborted and successful runs with timestamps, seeds and environment hashes.","Recompute one published figure from raw records on a clean machine.","Modify a retained artifact deliberately and test integrity verification."],"accept":"Every headline can be regenerated; tampering is detected; exclusions have pre-registered reasons. Failed or missing runs remain visible and are never replaced silently by a successful retry.","evidence":"Artifact manifest; hashes; reproduction script; exclusion ledger; negative-run archive.","priority":"BLOCKER","profile":"P00","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[5,21,23,25,26,27],"gate":"G0 / all gates","owner":"Release lead + independent assurance","manual_page":19,"owner_lane":"CI steward (a2ecfa95d3206016c)","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T19:22:31.798Z","evidence_record":{"reason":"the evidence vault F9 (raw and negative evidence preserved) is the gate rule landing by 21:00: a PASS must carry its evidence file","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"GOV-04","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"reason":"the evidence vault F9 (raw and negative evidence preserved) is the gate rule landing by 21:00: a PASS must carry its evidence file","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"GOV-04","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}},{"id":"GOV-05","title":"Prove the test oracle detects broken behaviour","setup":"Create controlled defective variants on an isolated network only.","steps":["Disable proof verification, change one reward, accept an expired authority set and alter one hash output in separate mutants.","Run the corresponding ZKP, INC, FIN and POW tests without telling the runner which mutant is active.","Confirm the baseline still accepts authorised valid cases."],"accept":"Every deliberately introduced fault is caught by its mapped test; valid controls pass. Any undetected critical mutant blocks acceptance of that test family until the oracle is repaired.","evidence":"Mutation catalogue; blinded run results; baseline controls; oracle review.","priority":"BLOCKER","profile":"P01","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[5,21,23,25,26,27],"gate":"G0 / all gates","owner":"Release lead + independent assurance","manual_page":19,"owner_lane":"fast-time lane (a8be71a0db962911c)","run_status":"NOT RUN","evidence_path":"build-1:/srv/artefacts/tas/200-417c4a57-b2/gate/gate-rule26.log","run_id":"200-417c4a57-b2","updated":"2026-10-08T18:28:32.408Z","evidence_record":{"cell":"gate:pre-push","manifest_sha":"417c4a57","coverage":{"GOV-05":"partial: every gate check carries a self-test that fires on a known failure and passes a known success (77 checks); the suites' own oracles are their mutation rows","GOV-06":"partial: the launch-gates, forbidden-strings and scope checks on the served site","UX-08":"partial: the site gate on every served page, plus docs/build/tuning.md (the published tuning and build-settings half, the hash lane's); the open builds and the fee conditions are the shipper's and the site lane's"},"at":"2026-10-08T18:28:32.408Z","method":"native","requirement_id":"GOV-05","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"417c4a57","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"in_progress_since":"2026-10-08T18:28:32.408Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"gate:pre-push":{"cell":"gate:pre-push","manifest_sha":"417c4a57","coverage":{"GOV-05":"partial: every gate check carries a self-test that fires on a known failure and passes a known success (77 checks); the suites' own oracles are their mutation rows","GOV-06":"partial: the launch-gates, forbidden-strings and scope checks on the served site","UX-08":"partial: the site gate on every served page, plus docs/build/tuning.md (the published tuning and build-settings half, the hash lane's); the open builds and the fee conditions are the shipper's and the site lane's"},"at":"2026-10-08T18:28:32.408Z","method":"native","requirement_id":"GOV-05","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"417c4a57","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"200-417c4a57-b2","evidence":"build-1:/srv/artefacts/tas/200-417c4a57-b2/gate/gate-rule26.log","in_progress":true}}},{"id":"GOV-06","title":"Enforce scope and optional-feature discipline","setup":"Inventory FP32 experiments, receipts/oracles and all retained or excluded mining levers.","steps":["Mark each capability CORE, CLAIMED-OPTIONAL or EXCLUDED before release testing.","For excluded code, check binaries, protocol activation and product copy for accidental enablement or implied availability.","For each claimed option, require the complete associated test set rather than a demonstration."],"accept":"Every core and claimed-option obligation passes. Excluded items are shown as EXCLUDED, never PASS and never counted as achievements. Removing a failed core requirement prevents an all-2.0-pass claim.","evidence":"Scope manifest; activation scan; product-copy comparison; exclusions register.","priority":"BLOCKER","profile":"P00","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[5,21,23,25,26,27],"gate":"G0 / all gates","owner":"Release lead + independent assurance","manual_page":19,"owner_lane":"CI steward (a2ecfa95d3206016c)","run_status":"NOT RUN","evidence_path":"build-1:/srv/artefacts/tas/site-gate-6a47f1f8/pre-push.log","run_id":"site-gate-20261009-01","updated":"2026-10-09T07:36:07.241Z","evidence_record":{"requirement_id":"GOV-06","decision":"NOT RUN","method":"static","cell":"gate:pre-push","manifest_sha":"6a47f1f8","run_id":"site-gate-20261009-01","evidence":"build-1:/srv/artefacts/tas/site-gate-6a47f1f8/pre-push.log","in_progress":true,"coverage":"partial: the launch-gates, forbidden-strings and scope checks on the served site","release_identity":{"commit":"6a47f1f8","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"none: the served pages are checked, no claim moves","reviewer":"","at":"2026-10-09T07:36:07.241Z","note":"the site branch's box gate on 6a47f1f8 (build-2, --ci mode): 7 checks GREEN in 41 s, among them the launch-gates, forbidden-strings and scope checks on the served site that the cell's partial coverage names; a gate run is evidence for the cell, not a verdict on the case (the steward's word)"},"in_progress_since":"2026-10-08T18:28:32.408Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"gate:pre-push":{"requirement_id":"GOV-06","decision":"NOT RUN","method":"static","cell":"gate:pre-push","manifest_sha":"6a47f1f8","run_id":"site-gate-20261009-01","evidence":"build-1:/srv/artefacts/tas/site-gate-6a47f1f8/pre-push.log","in_progress":true,"coverage":"partial: the launch-gates, forbidden-strings and scope checks on the served site","release_identity":{"commit":"6a47f1f8","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"none: the served pages are checked, no claim moves","reviewer":"","at":"2026-10-09T07:36:07.241Z","note":"the site branch's box gate on 6a47f1f8 (build-2, --ci mode): 7 checks GREEN in 41 s, among them the launch-gates, forbidden-strings and scope checks on the served site that the cell's partial coverage names; a gate run is evidence for the cell, not a verdict on the case (the steward's word)"}}},{"id":"GOV-07","title":"Independent review and finding closure","setup":"Nominate reviewers with declared conflicts and scopes covering cryptography, consensus and hardware.","steps":["Provide pinned code, raw data, adversarial models and prior failures, including negative results.","Track each finding to remediation and an independent retest; do not use the author as sole approver.","Have reviewers state unreviewed surfaces and model limitations in their signed conclusions."],"accept":"No unresolved critical or high-severity finding affects the claimed release. A finite review is described by scope, not as proof of universal security. Independent reproduction and review are both evidenced.","evidence":"Signed scoped reports; conflict declarations; finding/retest ledger.","priority":"BLOCKER","profile":"P09","cadence":"Release candidate; repeat after relevant changes","method":"Independent specialist review","status":"NOT RUN","source":[5,21,23,25,26,27],"gate":"G0 / all gates","owner":"Release lead + independent assurance","manual_page":20,"owner_lane":"main / the founder","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08 18:3x UK","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"GOV-08","title":"Invalidate stale evidence and control public status","setup":"Create a simulated post-test change to a verifier, mining class, dataset and fee rule.","steps":["Calculate affected test dependencies and invalidate their former PASS statuses.","Regenerate public status pages from F0 and the evidence register.","Attempt to publish a rank-one, guaranteed-profit or automatic-chip-death claim without the required evidence."],"accept":"Affected gates return to NOT RUN or BLOCKED. Public claims retain version, limits and date; unsupported claims are withheld. No stale result remains attached to a different release.","evidence":"Dependency impact report; regenerated status page; rejected claim examples.","priority":"BLOCKER","profile":"P00","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[5,21,23,25,26,27],"gate":"G0 / all gates","owner":"Release lead + independent assurance","manual_page":20,"owner_lane":"CI steward (a2ecfa95d3206016c)","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T19:22:31.798Z","evidence_record":{"reason":"the stale-evidence rule (evidence older than the manifest sha reads NOT RUN) is the gate rule landing by 21:00","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"GOV-08","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"reason":"the stale-evidence rule (evidence older than the manifest sha reads NOT RUN) is the gate rule landing by 21:00","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"GOV-08","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}}]},{"code":"GPU","title":"Whole-system GPU measurements","source":[6,7,8,14,18,23],"gate":"G1 / G2","owner":"GPU lead + three independent operators","fixtures":"F2 retail-hardware cohort; F3 paired benchmark workloads; F9 calibrated evidence","summary":"Close the pending measurements and evaluate the actual configuration, including costs hidden by kernel-only results.","tests":[{"id":"GPU-01","title":"Cover the declared commodity population","setup":"Freeze the P02 cohort, supported role matrix and the final v6 configuration.","steps":["Inventory physical SKU, usable memory, driver, operating system, firmware, cooling and acquisition channel.","Run mining on every supported cohort cell and proving on every separately advertised prover cell.","Include lower-memory, used-generation and all advertised vendor cases; retain unsupported results separately."],"accept":"All declared cells are tested, with no after-the-fact removal of weak cards. At least the P02 minimum coverage is met. Mining-only support is never reported as proof-generation support.","evidence":"Cohort manifest; compatibility matrix; raw results by SKU and role.","priority":"GATE","profile":"P02","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[6,7,8,14,18,23],"gate":"G1 / G2","owner":"GPU lead + three independent operators","manual_page":21,"owner_lane":"research lane (ad6a2bd47d4a46105)","run_status":"NOT RUN","evidence_path":"build-1:/srv/artefacts/tas/p02-rows/p02-rows.txt","run_id":"p02-fleet-pods-20261008-01","updated":"2026-10-08T21:49:19.980Z","evidence_record":{"requirement_id":"GPU-01","decision":"NOT RUN","method":"GPU","cell":"bench:fleet-pods","manifest_sha":"417c4a57","run_id":"p02-fleet-pods-20261008-01","evidence":"build-1:/srv/artefacts/tas/p02-rows/p02-rows.txt","in_progress":false,"coverage":"partial: the NVIDIA cells of P02 that RunPod carries","release_identity":{"commit":"417c4a57","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T21:49:19.980Z"},"in_progress_since":"2026-10-08T19:59:34.316Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"bench:fleet-pods":{"requirement_id":"GPU-01","decision":"NOT RUN","method":"GPU","cell":"bench:fleet-pods","manifest_sha":"417c4a57","run_id":"p02-fleet-pods-20261008-01","evidence":"build-1:/srv/artefacts/tas/p02-rows/p02-rows.txt","in_progress":false,"coverage":"partial: the NVIDIA cells of P02 that RunPod carries","release_identity":{"commit":"417c4a57","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T21:49:19.980Z"}}},{"id":"GPU-02","title":"Reproduce Ember clock-lock savings","setup":"Use paired stock and tuned runs on the same board, host, workload and ambient conditions.","steps":["Warm to stability; randomise stock/tuned order and run P02 repeated sessions.","Measure accepted work, calibrated wall energy, device telemetry and rejected work.","Calculate paired energy and rate changes with run-level uncertainty, retaining failed tuning attempts."],"accept":"Tuning preserves correctness and meets approved P03 operating limits. The historical 34-41% saving and under-2% rate-loss statement is reproduced only for qualifying configurations; otherwise that claim is corrected. Existing savings are not counted twice.","evidence":"Raw power/time series; paired analysis; tuning settings; claim-by-SKU table.","priority":"GATE","profile":"P02; P03","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[6,7,8,14,18,23],"gate":"G1 / G2","owner":"GPU lead + three independent operators","manual_page":21,"owner_lane":"hash lane (a690540514aa453d7)","run_status":"PASS","evidence_path":"docs/analysis/class-v6/rows/pc1-l8off-ds2g-20261009.md","run_id":"hash-lane-20261009-batch4","updated":"2026-10-09T03:58:33.097Z","evidence_record":{"requirement_id":"GPU-02","decision":"PASS","method":"GPU","cell":"bench:pc1-packs","manifest_sha":"1a938abe4","run_id":"hash-lane-20261009-batch4","evidence":"docs/analysis/class-v6/rows/pc1-l8off-ds2g-20261009.md","in_progress":false,"coverage":"partial: the paired stock and locked rows on the same board, host and workload (the rate held, 2.37 against 3.26 microjoules per hash on the class v5 pack); the historical 34 to 41 percent claim's full configuration set is owed","release_identity":{"commit":"1a938abe4","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T03:58:33.097Z"},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"bench:pc1-packs":{"requirement_id":"GPU-02","decision":"PASS","method":"GPU","cell":"bench:pc1-packs","manifest_sha":"1a938abe4","run_id":"hash-lane-20261009-batch4","evidence":"docs/analysis/class-v6/rows/pc1-l8off-ds2g-20261009.md","in_progress":false,"coverage":"partial: the paired stock and locked rows on the same board, host and workload (the rate held, 2.37 against 3.26 microjoules per hash on the class v5 pack); the historical 34 to 41 percent claim's full configuration set is owed","release_identity":{"commit":"1a938abe4","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T03:58:33.097Z"}}},{"id":"GPU-03","title":"Measure the real 64-register GPU cost","setup":"Build the baseline and window variant with identical dataset, reads and semantic workload.","steps":["Inspect compiled register allocation, spills, occupancy and memory traffic on each supported backend.","Measure paired complete-system energy and accepted throughput, including host work.","Repeat during proving coexistence and expose any memory or scheduling cliff."],"accept":"Any production window meets P03 budgets for every mandatory SKU; no hidden spills or correctness changes. Zero GPU cost is claimed only where measurement supports it within uncertainty. Results feed the redesigned adversary, not an old core estimate.","evidence":"Compiler reports; allocation traces; paired energy/rate data; coexistence runs.","priority":"GATE","profile":"P02; P03","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[6,7,8,14,18,23],"gate":"G1 / G2","owner":"GPU lead + three independent operators","manual_page":21,"owner_lane":"hash lane (a690540514aa453d7)","run_status":"NOT RUN","evidence_path":"build-1:/srv/artefacts/tas/p02-rows/p02-rows.txt; docs/analysis/class-v6/amd-intel-energy.md; docs/analysis/class-v6/rows/pc1-l8off-ds2g-20261009.md","run_id":"hash-lane-20261009-batch4","updated":"2026-10-09T03:58:33.097Z","evidence_record":{"requirement_id":"GPU-03","decision":"PASS","method":"GPU","cell":"bench:pc1-packs","manifest_sha":"1a938abe4","run_id":"hash-lane-20261009-batch4","evidence":"docs/analysis/class-v6/rows/pc1-l8off-ds2g-20261009.md","in_progress":false,"coverage":"partial: hl-v6-all against hl-v6-foldrw on the 5090, the window's cost per unit of work, registers and blocks per SM, no spill; the mandatory-SKU set is owed","release_identity":{"commit":"1a938abe4","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T03:58:33.097Z"},"in_progress_since":"2026-10-08T19:59:34.316Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"bench:fleet-pods":{"requirement_id":"GPU-03","decision":"NOT RUN","method":"GPU","cell":"bench:fleet-pods","manifest_sha":"417c4a57","run_id":"p02-fleet-pods-20261008-01","evidence":"build-1:/srv/artefacts/tas/p02-rows/p02-rows.txt","in_progress":false,"coverage":"partial: the 4090 cell","release_identity":{"commit":"417c4a57","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T21:49:19.980Z"},"bench:amd-intel-energy":{"requirement_id":"GPU-03","decision":"NOT RUN","method":"GPU","cell":"bench:amd-intel-energy","manifest_sha":"c245d50b9","run_id":"amd-intel-energy-20261008-01","evidence":"docs/analysis/class-v6/amd-intel-energy.md","in_progress":false,"coverage":"partial: the 64-register window on AMD and Intel, rate per unit of work (RX 7600 0 percent, Arc B580 -0.3 percent, kernel throughput, quiet) with the B580 fingerprints equal on both packs and the offline RDNA allocation (160 VGPRs, no spill); energy owed (the 7600 job queued, the B580 counter unsupported unelevated); team-run, not under the standard's paired protocol or a wall meter","release_identity":{"commit":"c245d50b9","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T21:49:19.677Z"},"bench:pc1-packs":{"requirement_id":"GPU-03","decision":"PASS","method":"GPU","cell":"bench:pc1-packs","manifest_sha":"1a938abe4","run_id":"hash-lane-20261009-batch4","evidence":"docs/analysis/class-v6/rows/pc1-l8off-ds2g-20261009.md","in_progress":false,"coverage":"partial: hl-v6-all against hl-v6-foldrw on the 5090, the window's cost per unit of work, registers and blocks per SM, no spill; the mandatory-SKU set is owed","release_identity":{"commit":"1a938abe4","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T03:58:33.097Z"}}},{"id":"GPU-04","title":"Find the memory-clock operating ladder","setup":"Use safe vendor-supported settings only; record operator permission and original settings.","steps":["Sweep approved core and memory operating points while holding workload constant.","Measure error rate, accepted throughput, wall energy and thermal equilibrium.","Repeat the selected knee after reboot and restore defaults after a failed or interrupted tuning session."],"accept":"Selected profiles are stable, reproducible and not dependent on unsafe clocks. Every accepted hash remains correct; saved settings restore predictably. Tuning failure leaves a working safe configuration.","evidence":"Clock ladder; safe bounds; thermal/error logs; reboot and rollback record.","priority":"BLOCKER","profile":"P01; P02","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[6,7,8,14,18,23],"gate":"G1 / G2","owner":"GPU lead + three independent operators","manual_page":22,"owner_lane":"hash lane (a690540514aa453d7)","run_status":"NOT RUN","evidence_path":"docs/analysis/class-v6/floor/sm-sparse.md","run_id":"team-2026-10-08","updated":"2026-10-08T21:00:32.846Z","evidence_record":{"reason":"the memory-clock ladder has no harness tonight: the project's own rig mines nothing under the the earlier devnet off order","at":"2026-10-08T21:00:32.846Z","method":"static","requirement_id":"GPU-04","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"in_progress_since":"2026-10-08 18:3x UK","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"what_was_run":"the memory-clock ladder at the lock (floor lane 1, b1b8d833)","run_by":"hash lane (a690540514aa453d7)","under_the_standard":"no: team-run before the standard's procedure; the status is RUNNING until the case is re-run under its steps with the profile's numbers and an independent run where the profile asks one","pass_or_fail_today":"not judged under the standard yet","method":"static","requirement_id":"GPU-04","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"team-2026-10-08","evidence":"docs/analysis/class-v6/floor/sm-sparse.md","in_progress":true}}},{"id":"GPU-05","title":"Test dataset fit and support-horizon costs","setup":"Test 5.5, 8.5 and 11.5 GiB only as source-proposed candidates; F0 determines activated sizes.","steps":["Measure allocation plus driver, display, prover and OS headroom on the 8 GB and other cohort tiers.","Run near-full-memory, fragmentation, restart and next-epoch construction scenarios.","Compare time-sharing/eviction with concurrent mining/proving, including reload cost."],"accept":"Every advertised combination completes without OOM or silent corruption. Unsupported future sizes are identified before activation. GPU exclusions and lost proving capacity appear in ECO evaluation; retirement of a tier is not a success metric.","evidence":"Memory budget per SKU; OOM traces; support horizon; concurrency cost table.","priority":"BLOCKER","profile":"P01; P02; P06","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[6,7,8,14,18,23],"gate":"G1 / G2","owner":"GPU lead + three independent operators","manual_page":22,"owner_lane":"hash lane (a690540514aa453d7)","run_status":"NOT RUN","evidence_path":"docs/analysis/class-v6/rows/run-ca3-pc1-amd-cardin-20261008T1703.md; docs/analysis/floor-memory-profile-2026-10-08.md; docs/analysis/class-v6/rows/pc1-l8off-ds2g-20261009.md","run_id":"hash-lane-20261009-batch4","updated":"2026-10-09T03:58:33.097Z","evidence_record":{"requirement_id":"GPU-05","decision":"PASS","method":"GPU","cell":"bench:pc1-packs","manifest_sha":"1a938abe4","run_id":"hash-lane-20261009-batch4","evidence":"docs/analysis/class-v6/rows/pc1-l8off-ds2g-20261009.md","in_progress":false,"coverage":"partial: v3-1g, v3-ds29, v3-ds30, ds55, ds4g-ms complete with their fingerprints, energy per step at stock and at the knee on the 5090 and the 7600; the 8.5 and 11.5 GiB candidates are owed","release_identity":{"commit":"1a938abe4","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T03:58:33.097Z"},"in_progress_since":"2026-10-08T18:41:01.185Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"bench:pc1-amd":{"cell":"bench:pc1-amd","manifest_sha":"c245d50b9","coverage":{"GPU-01":"partial: the 8 GB AMD cell, fingerprints and rates at 1, 2, 4 and 5.5 GiB; one cell of P02's twelve","GPU-05":"partial: the 8 GB tier's fit rows"},"at":"2026-10-08T18:41:01.185Z","method":"GPU","requirement_id":"GPU-05","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"c245d50b9","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"hash-lane-20261008-batch1","evidence":"docs/analysis/class-v6/rows/run-ca3-pc1-amd-cardin-20261008T1703.md","in_progress":true},"rows:v607-floor-memory":{"requirement_id":"GPU-05","decision":"NOT RUN","method":"GPU","cell":"rows:v607-floor-memory","manifest_sha":"c411bae9a","run_id":"v607-floor-memory-20261008T2059Z","evidence":"docs/analysis/floor-memory-profile-2026-10-08.md","in_progress":true,"coverage":"partial: the 8 GB and 12 GB tiers' prover headroom on the 5.5 GiB dataset (free memory, the prover's peak alone, the refusal beside the miner); fragmentation, restart and next-epoch construction not run","release_identity":{"commit":"c411bae9a (branch v607-floor-memory off cef5234b5)","lockfile":"proving/igneum-prove/Cargo.lock at cef5234b5","binary":"sp1-gpu-server db37c38b5feabdec5bbfd0298446da89f6a5d144125e399d6ab617f64f9cb61d (igneum-floor-sm8689-v607.tgz 9c02fcc6a3f045d3167c1d9cb6e22c584ea862189d11997754a57cbe1b0d355b); igneum-prove-host-0317 71bc2438856bb141; igneum-prove-host v607 66662219a3630772","network_object":"none (fixture proofs on rented pods, no network)","activation":"none","profile_hashes":"floor patch 9098c3e5979d057031f43588668201d1f7a53ab17e980c1eaf896cd5e6f38575"},"claim_impact":"the 2.0 proving statement's memory condition per tier: a 12 GB card runs the whole segment path alone; an 8 GB card proves shards only (its aggregation fails) and is refused the chain before setup; both time-share beside the 5.5 GiB miner; the 16 GB and 24 GB tiers unmeasured tonight","reviewer":"","at":"2026-10-08T22:22:49.946Z"},"bench:pc1-packs":{"requirement_id":"GPU-05","decision":"PASS","method":"GPU","cell":"bench:pc1-packs","manifest_sha":"1a938abe4","run_id":"hash-lane-20261009-batch4","evidence":"docs/analysis/class-v6/rows/pc1-l8off-ds2g-20261009.md","in_progress":false,"coverage":"partial: v3-1g, v3-ds29, v3-ds30, ds55, ds4g-ms complete with their fingerprints, energy per step at stock and at the knee on the 5090 and the 7600; the 8.5 and 11.5 GiB candidates are owed","release_identity":{"commit":"1a938abe4","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T03:58:33.097Z"}}},{"id":"GPU-06","title":"Measure accepted work under ordinary connectivity","setup":"Use the same hardware against clean, delayed, lossy and intermittent links in F4.","steps":["Measure kernel rate and accepted work separately under home and datacentre link profiles.","Include reconnects, template changes, expired submissions and pool failover.","Attribute loss to network, local software, validation and protocol causes."],"accept":"Results use accepted work, never kernel rate alone. Ordinary-link incremental rejection stays within P10; all losses remain priced in ECO. Unreachable links may pause but must not claim paid work.","evidence":"Per-submission ledger; network trace; rejection reasons; accepted-work comparison.","priority":"GATE","profile":"P02; P10","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[6,7,8,14,18,23],"gate":"G1 / G2","owner":"GPU lead + three independent operators","manual_page":22,"owner_lane":"fleet lane (ac055d60427caab99)","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T19:22:31.798Z","evidence_record":{"reason":"accepted work under ordinary connectivity needs the fault network F4","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"GPU-06","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"reason":"accepted work under ordinary connectivity needs the fault network F4","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"GPU-06","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}},{"id":"GPU-07","title":"Survive sustained thermal and power operation","setup":"Run the selected profile on actual reference machines for the P02 soak period.","steps":["Track wall power, temperatures, clocks, memory and accepted work continuously.","Inject safe power interruptions, process restarts and normal competing desktop load.","Check restored settings and compare late-run efficiency with the first stable period."],"accept":"No invalid work or unsafe persistent settings; P02/P10 stability limits hold. Thermal throttling, crashes and recovery time remain in throughput and energy denominators. A crash-free short benchmark cannot substitute for the soak.","evidence":"Seven-day time series; crash reports; settings-restoration checks; drift analysis.","priority":"BLOCKER","profile":"P01; P02; P10","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[6,7,8,14,18,23],"gate":"G1 / G2","owner":"GPU lead + three independent operators","manual_page":23,"owner_lane":"hash lane (a690540514aa453d7)","run_status":"NOT RUN","evidence_path":"docs/analysis/class-v6/floor/sm-sparse.md","run_id":"team-2026-10-08","updated":"2026-10-08T21:00:32.846Z","evidence_record":{"reason":"the sustained thermal and power soak has no harness tonight: the project's own rig mines nothing under the the earlier devnet off order","at":"2026-10-08T21:00:32.846Z","method":"static","requirement_id":"GPU-07","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"in_progress_since":"2026-10-08 18:3x UK","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"what_was_run":"the 5090 lock pass, 66 minutes at 1,300 MHz with the four-minute reserve (floor lane 1)","run_by":"hash lane (a690540514aa453d7)","under_the_standard":"no: team-run before the standard's procedure; the status is RUNNING until the case is re-run under its steps with the profile's numbers and an independent run where the profile asks one","pass_or_fail_today":"not judged under the standard yet","method":"static","requirement_id":"GPU-07","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"team-2026-10-08","evidence":"docs/analysis/class-v6/floor/sm-sparse.md","in_progress":true}}},{"id":"GPU-08","title":"Reproduce the full baseline independently","setup":"Three unaffiliated operators receive F0, F2 and F3, including the final miner/prover build.","steps":["Repeat identical-SKU paired runs with documented meter calibration and environment differences.","Recompute joules and total cost per accepted work from the shared raw schema.","Investigate divergence before accepting a pooled headline or uncertainty band."],"accept":"Reproductions meet P02 tolerance and exact correctness. No unexplained divergence or selectively missing low-end cell remains. Report manufactured GPU measurements separately from modelled specialist estimates.","evidence":"Three signed reproduction packs; reconciliation report; final baseline table.","priority":"GATE","profile":"P02","cadence":"Release candidate; repeat after relevant changes","method":"Independent reproduction","status":"NOT RUN","source":[6,7,8,14,18,23],"gate":"G1 / G2","owner":"GPU lead + three independent operators","manual_page":23,"owner_lane":"fleet lane (ac055d60427caab99)","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08 18:3x UK","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}}]},{"code":"POW","title":"Proof-of-work correctness and coupling","source":[7,9,10,23],"gate":"G2 / technical readiness","owner":"Cryptography + GPU lead","fixtures":"F0 rule set; F3 independent CPU/GPU oracles; F5 mutation corpus","summary":"Find semantic disagreements and structural shortcuts before treating a harder-looking program as a stronger defence.","tests":[{"id":"POW-01","title":"Match independent execution across every backend","setup":"Implement an independently written reference evaluator, not a wrapper around the production GPU path.","steps":["Execute the P01 corpus across every family, boundary seed and supported backend.","Exercise zero, maximum, sign, shift, rotate, overflow and unaligned-address cases allowed by the spec.","Minimise every mismatch and rerun it on clean builds."],"accept":"Bit-for-bit agreement for all valid cases and identical rejection for invalid cases. One unexplained mismatch is a blocker. Large sample counts are evidence of testing, not proof that unseen disagreements cannot exist.","evidence":"Reference implementation review; seeds/vectors; backend matrix; mismatch archive.","priority":"BLOCKER","profile":"P01","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[7,9,10,23],"gate":"G2 / technical readiness","owner":"Cryptography + GPU lead","manual_page":24,"owner_lane":"hash lane (a690540514aa453d7)","run_status":"NOT RUN","evidence_path":"docs/analysis/review-2026-10-08-b/f10/emu-test.log; build-1:/srv/artefacts/tas/same-work-20261008-01/job-context.json; build-1:/srv/artefacts/tas/same-work-20261008-01/references/ref-D.txt; build-1:/srv/artefacts/tas/same-work-20261008-01/references/ref-D1.txt; build-1:/srv/artefacts/tas/same-work-20261008-01/cuda-5090-1.json; build-1:/srv/artefacts/tas/same-work-20261008-01/cuda-5090-2.json; build-1:/srv/artefacts/tas/same-work-20261008-01/cuda-5090-3.json; build-1:/srv/artefacts/tas/same-work-20261008-01/cuda-4090-1.json; build-1:/srv/artefacts/tas/same-work-20261008-01/cuda-4090-2.json; build-1:/srv/artefacts/tas/same-work-20261008-01/cuda-4090-3.json; build-1:/srv/artefacts/tas/same-work-20261008-01/cuda-3090-1.json; build-1:/srv/artefacts/tas/same-work-20261008-01/cuda-3090-2.json; build-1:/srv/artefacts/tas/same-work-20261008-01/cuda-3090-3.json; build-1:/srv/artefacts/tas/same-work-20261008-01/opencl-rx7600-take1.report.txt; build-1:/srv/artefacts/tas/same-work-20261008-01/opencl-rx7600.report.txt; build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-miner.log","run_id":"same-work-20261008-01","updated":"2026-10-09T05:16:46.737Z","evidence_record":{"requirement_id":"POW-01","decision":"NOT RUN","method":"GPU","cell":"harness:p01-vectors","manifest_sha":"c30ab32c","run_id":"same-work-20261008-01","evidence":"build-1:/srv/artefacts/tas/same-work-20261008-01/job-context.json; build-1:/srv/artefacts/tas/same-work-20261008-01/references/ref-D.txt; build-1:/srv/artefacts/tas/same-work-20261008-01/references/ref-D1.txt; build-1:/srv/artefacts/tas/same-work-20261008-01/cuda-5090-1.json; build-1:/srv/artefacts/tas/same-work-20261008-01/cuda-5090-2.json; build-1:/srv/artefacts/tas/same-work-20261008-01/cuda-5090-3.json; build-1:/srv/artefacts/tas/same-work-20261008-01/cuda-4090-1.json; build-1:/srv/artefacts/tas/same-work-20261008-01/cuda-4090-2.json; build-1:/srv/artefacts/tas/same-work-20261008-01/cuda-4090-3.json; build-1:/srv/artefacts/tas/same-work-20261008-01/cuda-3090-1.json; build-1:/srv/artefacts/tas/same-work-20261008-01/cuda-3090-2.json; build-1:/srv/artefacts/tas/same-work-20261008-01/cuda-3090-3.json; build-1:/srv/artefacts/tas/same-work-20261008-01/opencl-rx7600-take1.report.txt; build-1:/srv/artefacts/tas/same-work-20261008-01/opencl-rx7600.report.txt","in_progress":true,"coverage":"the million-vector campaign per backend per pack, bit-for-bit; PASS only when every supported backend reads a million vectors with zero disagreement; the malformed-input half is harness:parser-malformed","release_identity":{"commit":"c30ab32c; the CPU reference class-v6 1a938abe4; the CUDA reader the kit's gen 6 worker 804a6f7f","lockfile":"","binary":"igneum-pow sha256 0d3f3fca...; igneum-worker-cuda sha256 804a6f7f...","network_object":"the frozen class v6 object: pack hl-v6-all (tgz sha256 9131431015e102f4..., re-exported byte for byte from class-v6 1a938abe4 on build-4 at 21:44 UK, every file's sha256 equal), id 0x4de7b836cc40a4ea, epoch seed edc4fa84... (the genesis seeds) over the node1 state stream","activation":"none (a re-check of hashes against one job context, no chain state changes)","profile_hashes":""},"claim_impact":"POW-01's CUDA half across a dataset-day switch on the frozen object: CUDA against the CPU reference bit for bit on three ranges with the day switch at nonce 1572864. NOT same-work evidence: the node engine refuses this seed/stream pair (IgneumEngine::epoch_for's class v5 check wants the stream's block af89be5d... to equal the epoch seed edc4fa84...), so the node and pool readers cannot read it; the coordinator's ruling 22:0x UK keeps it as the CUDA and CPU-only row","reviewer":"","at":"2026-10-09T05:16:46.737Z","note":"the 5090, the 4090 and the 3090 PASS on all three phases of the frozen object across the day switch; OpenCL PASS x3 on the first rig's RX 7600 (the day switch seen; take 1 a job fault); Metal 08:30 UK, the last reader; CPU reference cross-checked against the hash lane's P01 file; in progress | Context 01 at build-1:/srv/artefacts/tas/same-work-20261008-01/job-context.json (sha256 d2540e02...). CPU reference: igneum-pow hash-bound (class-v6 1a938abe4, binary 0d3f3fca...) on build-4, 21:46 to 21:55 UK, ref-D c49fed11... over [0, 1572864), ref-D1 5ae1220d... over [1572864, 3145728); ref-D's first million lines equal the hash lane's P01 reference /srv/artefacts/packs/p01-vectors/hl-v6-all.txt byte for byte. The node1 state stream (block af89be5d...) was written on build-4 at 15:34 UK, before the 20:00 UK split; the cell carries the island label by main's 22:2x UK rule. CUDA: the 5090 PASS on all three phases (the gen 6 worker 804a6f7f, the driver at c8b65a26 or later; 23:16 to 23:20 UK: cuda-5090-1.json 1b36fb8a..., cuda-5090-2.json 70200bff... with the day switch at 1572864 driven through the worker's prepare and both boundary hashes equal to the reference (69abfadf816e767e before, 5b3fb17ad84744fd after), cuda-5090-3.json f2ecf5c7...; 1,048,576 agree each, 0 disagree, 0 missing); the 4090 PASS on all three phases (23:22 to 23:25 UK: cuda-4090-1.json cd0f5aee..., cuda-4090-2.json f864f950... with the day switch at 1572864, cuda-4090-3.json 126bd552...; 1,048,576 agree each, 0 disagree, 0 missing); The 3090 PASS on all three phases (05:07 to 05:10 UK; cuda-3090-{1,2,3}.json afa3d4a4..., 167875f9..., cc956dee...; 1,048,576 agree each, 0 disagree, 0 missing; the day switch at 1572864 with the same boundary hashes as every other reader): the fleet lane's first run on that pod at 00:35 UK never ran a phase (its verify rule demanded two reference files where a context carries one, then its put failed on the pod's flapping ssh; a runner fault, reported once), the rerun from 04:57 UK ran detached on the pod under a pid file with a collector pulling each JSON. So the CUDA cell reads three cards on this context. Metal and OpenCL are the morning's reads (08:30 UK). The case stays NOT RUN in progress until every reader has read (the coordinator's ruling 23:1x UK: a PASS by inference is forbidden). OPENCL on the first rig's RX 7600: take 1 (05:54 UK, opencl-rx7600-take1.report.txt 7fb1ee95...) was a job fault on the rig, not a reader result (the script matched an older gen-5-stamped pack of the same name in the rig's jobs tree; the worker refused it as class v5 against a class v6 job); take 2 (run-ca3-pc1-samework01-opencl-7600-20261009-b, the packs by exact path, 06:03 to 06:05 UK) reads PASS on all three phases: p1 digest 1517d572..., p2 91d63d8b... across the day switch 20730 to 20731 at 1572864 (the D+1 pack prepared in 486 ms, the boundary block 8,192 of 8,192 lines), p3 e483e82a..., each 1,048,576 of 1,048,576 equal to ref-D's and ref-D1's slices, both pack ids 0x4de7b836cc40a4ea generator 6 in the RESULT lines; 'RESULT verdict all PASS context=same-work-20261008-01 reader=opencl card=rx7600'; the report opencl-rx7600.report.txt (sha256 84683b16..., read back on build-1 at 06:09 UK). So the OpenCL reader on the RX 7600 reads all three contexts equal to the CPU reference across their day switches; Metal is the sixth reader on every context, 08:30 UK.","network_label":"on an island, not a network"},"in_progress_since":"2026-10-08T20:07:26.255Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"harness:cuda-select-check":{"cell":"harness:cuda-select-check","manifest_sha":"964cdf6c1","coverage":{"ROT-01":"partial: the worker's high-32 nonce rollover inside a job (a job from 2^32 - 32) finds the same set on both read-back paths and the boundary nonces hash as igneum-pow; the hourly program boundary itself is the fast-time harness","POW-01":"partial: the CUDA select pass equals the full read line for line (zero hits, partial, the all-hit overflow fallback, a 96-nonce tail with a 32-lane launch, queued jobs, hits then zero, the epoch tag) and 17 sampled hashes equal igneum-pow; the million-vector campaign is harness:p01-vectors"},"at":"2026-10-08T20:07:26.255Z","method":"static","requirement_id":"POW-01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"964cdf6c1","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"f10-worker-20261008","evidence":"docs/analysis/review-2026-10-08-b/f10/emu-test.log","in_progress":true},"harness:p01-vectors":{"requirement_id":"POW-01","decision":"NOT RUN","method":"GPU","cell":"harness:p01-vectors","manifest_sha":"c30ab32c","run_id":"same-work-20261008-01","evidence":"build-1:/srv/artefacts/tas/same-work-20261008-01/job-context.json; build-1:/srv/artefacts/tas/same-work-20261008-01/references/ref-D.txt; build-1:/srv/artefacts/tas/same-work-20261008-01/references/ref-D1.txt; build-1:/srv/artefacts/tas/same-work-20261008-01/cuda-5090-1.json; build-1:/srv/artefacts/tas/same-work-20261008-01/cuda-5090-2.json; build-1:/srv/artefacts/tas/same-work-20261008-01/cuda-5090-3.json; build-1:/srv/artefacts/tas/same-work-20261008-01/cuda-4090-1.json; build-1:/srv/artefacts/tas/same-work-20261008-01/cuda-4090-2.json; build-1:/srv/artefacts/tas/same-work-20261008-01/cuda-4090-3.json; build-1:/srv/artefacts/tas/same-work-20261008-01/cuda-3090-1.json; build-1:/srv/artefacts/tas/same-work-20261008-01/cuda-3090-2.json; build-1:/srv/artefacts/tas/same-work-20261008-01/cuda-3090-3.json; build-1:/srv/artefacts/tas/same-work-20261008-01/opencl-rx7600-take1.report.txt; build-1:/srv/artefacts/tas/same-work-20261008-01/opencl-rx7600.report.txt","in_progress":true,"coverage":"the million-vector campaign per backend per pack, bit-for-bit; PASS only when every supported backend reads a million vectors with zero disagreement; the malformed-input half is harness:parser-malformed","release_identity":{"commit":"c30ab32c; the CPU reference class-v6 1a938abe4; the CUDA reader the kit's gen 6 worker 804a6f7f","lockfile":"","binary":"igneum-pow sha256 0d3f3fca...; igneum-worker-cuda sha256 804a6f7f...","network_object":"the frozen class v6 object: pack hl-v6-all (tgz sha256 9131431015e102f4..., re-exported byte for byte from class-v6 1a938abe4 on build-4 at 21:44 UK, every file's sha256 equal), id 0x4de7b836cc40a4ea, epoch seed edc4fa84... (the genesis seeds) over the node1 state stream","activation":"none (a re-check of hashes against one job context, no chain state changes)","profile_hashes":""},"claim_impact":"POW-01's CUDA half across a dataset-day switch on the frozen object: CUDA against the CPU reference bit for bit on three ranges with the day switch at nonce 1572864. NOT same-work evidence: the node engine refuses this seed/stream pair (IgneumEngine::epoch_for's class v5 check wants the stream's block af89be5d... to equal the epoch seed edc4fa84...), so the node and pool readers cannot read it; the coordinator's ruling 22:0x UK keeps it as the CUDA and CPU-only row","reviewer":"","at":"2026-10-09T05:16:46.737Z","note":"the 5090, the 4090 and the 3090 PASS on all three phases of the frozen object across the day switch; OpenCL PASS x3 on the first rig's RX 7600 (the day switch seen; take 1 a job fault); Metal 08:30 UK, the last reader; CPU reference cross-checked against the hash lane's P01 file; in progress | Context 01 at build-1:/srv/artefacts/tas/same-work-20261008-01/job-context.json (sha256 d2540e02...). CPU reference: igneum-pow hash-bound (class-v6 1a938abe4, binary 0d3f3fca...) on build-4, 21:46 to 21:55 UK, ref-D c49fed11... over [0, 1572864), ref-D1 5ae1220d... over [1572864, 3145728); ref-D's first million lines equal the hash lane's P01 reference /srv/artefacts/packs/p01-vectors/hl-v6-all.txt byte for byte. The node1 state stream (block af89be5d...) was written on build-4 at 15:34 UK, before the 20:00 UK split; the cell carries the island label by main's 22:2x UK rule. CUDA: the 5090 PASS on all three phases (the gen 6 worker 804a6f7f, the driver at c8b65a26 or later; 23:16 to 23:20 UK: cuda-5090-1.json 1b36fb8a..., cuda-5090-2.json 70200bff... with the day switch at 1572864 driven through the worker's prepare and both boundary hashes equal to the reference (69abfadf816e767e before, 5b3fb17ad84744fd after), cuda-5090-3.json f2ecf5c7...; 1,048,576 agree each, 0 disagree, 0 missing); the 4090 PASS on all three phases (23:22 to 23:25 UK: cuda-4090-1.json cd0f5aee..., cuda-4090-2.json f864f950... with the day switch at 1572864, cuda-4090-3.json 126bd552...; 1,048,576 agree each, 0 disagree, 0 missing); The 3090 PASS on all three phases (05:07 to 05:10 UK; cuda-3090-{1,2,3}.json afa3d4a4..., 167875f9..., cc956dee...; 1,048,576 agree each, 0 disagree, 0 missing; the day switch at 1572864 with the same boundary hashes as every other reader): the fleet lane's first run on that pod at 00:35 UK never ran a phase (its verify rule demanded two reference files where a context carries one, then its put failed on the pod's flapping ssh; a runner fault, reported once), the rerun from 04:57 UK ran detached on the pod under a pid file with a collector pulling each JSON. So the CUDA cell reads three cards on this context. Metal and OpenCL are the morning's reads (08:30 UK). The case stays NOT RUN in progress until every reader has read (the coordinator's ruling 23:1x UK: a PASS by inference is forbidden). OPENCL on the first rig's RX 7600: take 1 (05:54 UK, opencl-rx7600-take1.report.txt 7fb1ee95...) was a job fault on the rig, not a reader result (the script matched an older gen-5-stamped pack of the same name in the rig's jobs tree; the worker refused it as class v5 against a class v6 job); take 2 (run-ca3-pc1-samework01-opencl-7600-20261009-b, the packs by exact path, 06:03 to 06:05 UK) reads PASS on all three phases: p1 digest 1517d572..., p2 91d63d8b... across the day switch 20730 to 20731 at 1572864 (the D+1 pack prepared in 486 ms, the boundary block 8,192 of 8,192 lines), p3 e483e82a..., each 1,048,576 of 1,048,576 equal to ref-D's and ref-D1's slices, both pack ids 0x4de7b836cc40a4ea generator 6 in the RESULT lines; 'RESULT verdict all PASS context=same-work-20261008-01 reader=opencl card=rx7600'; the report opencl-rx7600.report.txt (sha256 84683b16..., read back on build-1 at 06:09 UK). So the OpenCL reader on the RX 7600 reads all three contexts equal to the CPU reference across their day switches; Metal is the sixth reader on every context, 08:30 UK.","network_label":"on an island, not a network"},"suite:miner":{"requirement_id":"POW-01","decision":"NOT RUN","method":"native","cell":"suite:miner","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-miner.log","in_progress":false,"coverage":"partial: the pack re-check seam against the pack's 96 vectors (recheck_pack); the million-vector campaign is harness:p01-vectors","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; miner on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 25s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."}}},{"id":"POW-02","title":"Validate generated programs and index folding","setup":"Use the frozen grammar, opcode semantics and index-fold rule; include boundary and malformed programs.","steps":["Enumerate small constrained programs and fuzz the full generator at P01 depth.","Check bounds, valid dependencies, address distribution and forbidden encodings.","Compare source-level operations with optimised compiled code for removed or altered work."],"accept":"No accepted program violates semantics, termination or memory bounds. Distribution claims have predeclared tests and effect-size limits; passing randomness checks is not treated as a cryptographic proof.","evidence":"Generator/fuzzer logs; reduced counterexamples; disassembly comparison; index tests.","priority":"BLOCKER","profile":"P01","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[7,9,10,23],"gate":"G2 / technical readiness","owner":"Cryptography + GPU lead","manual_page":24,"owner_lane":"hash lane (a690540514aa453d7)","run_status":"NOT RUN","evidence_path":"docs/analysis/review-2026-10-08-b/f10/packfile-test.log;docs/analysis/review-2026-10-08-b/f10/geometry-check-mini.log; docs/analysis/class-v6/family-gate.md; docs/analysis/class-v6/rows/chainseed-census-1a938abe4.md; build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/miner-77b5acc5/box4-pow.log","run_id":"202-5d53a591-1176efb9","updated":"2026-10-09T00:33:39.243Z","evidence_record":{"requirement_id":"POW-02","decision":"NOT RUN","method":"native","cell":"suite:pow","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/miner-77b5acc5/box4-pow.log","in_progress":false,"coverage":"partial: program derivation, ds55 geometry, the v6 fold, the packs and the spec read-back tests; the independent re-implementation and the index-fold census are the hash lane's harnesses","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; pow on release-2.0.2 77b5acc5 (box4, 226s); 77b5acc5..1176efb9 moves no crate, so the cell covers the tip by content | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."},"in_progress_since":"2026-10-08T20:07:26.255Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"harness:pack-geometry":{"cell":"harness:pack-geometry","manifest_sha":"964cdf6c1","coverage":{"POW-02":"partial: the dataset geometry rule (exact word count, items, multiply-shift, 64-bit bytes, the floor-log2 and 2^32 refusals, missing leaves) agrees across the CUDA and OpenCL loader and the Metal host on 19 conformance vectors and the two checked-in packs (master review I06, gate INT-10); the rest of POW-02 is suite:pow"},"at":"2026-10-08T20:07:26.255Z","method":"static","requirement_id":"POW-02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"964cdf6c1","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"f10-worker-20261008","evidence":"docs/analysis/review-2026-10-08-b/f10/packfile-test.log;docs/analysis/review-2026-10-08-b/f10/geometry-check-mini.log","in_progress":true},"harness:family-gate":{"requirement_id":"POW-02","decision":"NOT RUN","method":"native","cell":"harness:family-gate","manifest_sha":"1a938abe4","run_id":"family-gate-20261008c","evidence":"docs/analysis/class-v6/family-gate.md","in_progress":false,"coverage":"partial: the acceptance rule's measured rates on drawn classes (the per-candidate rejection, the attempt histogram, the exhaustion count against the independent-attempt arithmetic, the (c'') and (c''') floors' refuse rates and the pre-floor ratio spread per width), the per-site largest-bucket and index-bit statistics at the rule's own 2^20 sample with the seven known-failed seeds (p4, p8, p10, p34, p212, p225, p15), and the F8-form census at 2^20 on the F8 seed set where the attack-f8 mirror validates (0 of 96 warps mismatching); the semantics, termination and memory-bound half and the independent re-implementation are the suite's and the hash lane's; the effect-size limits are the family-gate.md thresholds, predeclared in its section 3","release_identity":{"commit":"1a938abe4","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T21:49:19.800Z"},"census:class-v6":{"requirement_id":"POW-02","decision":"PASS","method":"native","cell":"census:class-v6","manifest_sha":"1a938abe4","run_id":"census-v6-chainseed-trace-20261008-2305","evidence":"docs/analysis/class-v6/rows/chainseed-census-1a938abe4.md","in_progress":false,"coverage":"partial: the fold's index statistics and the grammar bounds on 256 seeds plus the F8 set; the malformed programs are owed to harness:parser-malformed","release_identity":{"commit":"1a938abe4","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T22:12:37.378Z"},"suite:pow":{"requirement_id":"POW-02","decision":"NOT RUN","method":"native","cell":"suite:pow","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/miner-77b5acc5/box4-pow.log","in_progress":false,"coverage":"partial: program derivation, ds55 geometry, the v6 fold, the packs and the spec read-back tests; the independent re-implementation and the index-fold census are the hash lane's harnesses","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; pow on release-2.0.2 77b5acc5 (box4, 226s); 77b5acc5..1176efb9 moves no crate, so the cell covers the tip by content | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."}}},{"id":"POW-03","title":"Test whether live state is unavoidable","setup":"Take the 64-register candidate and the cheapest independently proposed storage organisations.","steps":["Trace value liveness across dependent reads and final output, distinguishing distinct information from duplicated values.","Try banking, compression, recomputation, fewer ports and time-multiplexed contexts.","Quantify the best complete-system cost/throughput trade-off rather than the reference register count."],"accept":"Production selection is supported by measured or physically modelled penalties after these alternatives. G2 requires the P03 improvement; an attractive source-level register count alone does not pass.","evidence":"Liveness traces; alternative implementations; Pareto table; reviewer analysis.","priority":"GATE","profile":"P03; P04","cadence":"Release candidate; repeat after relevant changes","method":"Experiment + independent hardware review","status":"NOT RUN","source":[7,9,10,23],"gate":"G2 / technical readiness","owner":"Cryptography + GPU lead","manual_page":24,"owner_lane":"adversary lane (a1a9876a88f5a72fc)","run_status":"FAIL","evidence_path":"docs/analysis/class-v6/connected-state.md; docs/analysis/class-v6/multi-family-adversary.md","run_id":"adversary-20261009-placed-32lane","updated":"2026-10-09T07:32:30.503Z","evidence_record":{"requirement_id":"POW-03","decision":"NOT RUN","method":"model","cell":"adversary:mf-placed","manifest_sha":"aaf3405b","run_id":"adversary-20261009-placed-32lane","evidence":"docs/analysis/class-v6/multi-family-adversary.md","in_progress":true,"coverage":"partial: the live state held in an SRAM macro per 8 lanes with a time-multiplexed single port and operand isolation, the complete-system cost in section 6; the liveness trace itself is the connected-state lane's tool","release_identity":{"commit":"aaf3405b","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T07:32:30.503Z","note":"section 5: the 32-lane genesis core placed with SPEF, the 32-lane 18-family core placed and globally routed (estimate calibrated within 1 percent of SPEF); the SPEF row of the full core follows"},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"what_was_run":"the connected-state class KILLED (1.10x against the 1.25x gate; live state costs a clock-gated file nothing)","run_by":"adversary lane (a1a9876a88f5a72fc)","under_the_standard":"no: team-run before the standard's procedure; the status is RUNNING until the case is re-run under its steps with the profile's numbers and an independent run where the profile asks one","pass_or_fail_today":"not judged under the standard yet","method":"static","requirement_id":"POW-03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"team-2026-10-08","evidence":"docs/analysis/class-v6/connected-state.md","in_progress":true},"experiment:connected-state":{"requirement_id":"POW-03","decision":"FAIL","method":"GPU","cell":"experiment:connected-state","manifest_sha":"7cfa422a","run_id":"kills-20261008","evidence":"docs/analysis/class-v6/connected-state.md","in_progress":false,"coverage":"the experiment ran and its claim failed: live state does not make the work unavoidable for a chip; the master's register row 18 reads FAIL, published, never PASSED","release_identity":{"commit":"7cfa422a","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"the claims the two experiments carried are withdrawn: live state as an ASIC barrier (connected state), a cheaper mixed-FP32 lane","reviewer":"","at":"2026-10-08T21:00:32.906Z"},"adversary:mf-placed":{"requirement_id":"POW-03","decision":"NOT RUN","method":"model","cell":"adversary:mf-placed","manifest_sha":"aaf3405b","run_id":"adversary-20261009-placed-32lane","evidence":"docs/analysis/class-v6/multi-family-adversary.md","in_progress":true,"coverage":"partial: the live state held in an SRAM macro per 8 lanes with a time-multiplexed single port and operand isolation, the complete-system cost in section 6; the liveness trace itself is the connected-state lane's tool","release_identity":{"commit":"aaf3405b","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T07:32:30.503Z","note":"section 5: the 32-lane genesis core placed with SPEF, the 32-lane 18-family core placed and globally routed (estimate calibrated within 1 percent of SPEF); the SPEF row of the full core follows"}}},{"id":"POW-04","title":"Evaluate connected-resource restructuring","setup":"Use a candidate initially matched to baseline instruction count, read count and dataset size.","steps":["Connect state, addresses, arithmetic and lane communication according to the written hypothesis.","Measure GPU cost and allow the specialist reviewer to redesign the entire core.","Repeat on held-out program seeds and compare the worst supported adversary, not only the original design."],"accept":"The selected upgrade meets P03 and improves the adversarial result outside declared uncertainty. A negative experiment remains a negative outcome; adopting a different design requires a new frozen comparison.","evidence":"Matched workloads; GPU runs; redesigned core estimates; held-out results.","priority":"GATE","profile":"P03; P04","cadence":"Release candidate; repeat after relevant changes","method":"Controlled experiment","status":"NOT RUN","source":[7,9,10,23],"gate":"G2 / technical readiness","owner":"Cryptography + GPU lead","manual_page":25,"owner_lane":"adversary lane (a1a9876a88f5a72fc)","run_status":"NOT RUN","evidence_path":"docs/analysis/class-v6/connected-state.md; docs/analysis/class-v6/multi-family-adversary.md","run_id":"adversary-20261009-placed-32lane","updated":"2026-10-09T07:32:30.503Z","evidence_record":{"requirement_id":"POW-04","decision":"NOT RUN","method":"model","cell":"adversary:mf-placed","manifest_sha":"aaf3405b","run_id":"adversary-20261009-placed-32lane","evidence":"docs/analysis/class-v6/multi-family-adversary.md","in_progress":true,"coverage":"partial: the 64-register window's cost on the macro core (sections 4 and 5, agreeing with the k lane's gated-flop row within 5 percent); the restructured candidate's GPU cost is the invention lane's","release_identity":{"commit":"aaf3405b","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T07:32:30.503Z","note":"section 5: the 32-lane genesis core placed with SPEF, the 32-lane 18-family core placed and globally routed (estimate calibrated within 1 percent of SPEF); the SPEF row of the full core follows"},"in_progress_since":"2026-10-08 18:3x UK","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"what_was_run":"the same experiment, D2(a) closed","run_by":"adversary lane (a1a9876a88f5a72fc)","under_the_standard":"no: team-run before the standard's procedure; the status is RUNNING until the case is re-run under its steps with the profile's numbers and an independent run where the profile asks one","pass_or_fail_today":"not judged under the standard yet","method":"static","requirement_id":"POW-04","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"team-2026-10-08","evidence":"docs/analysis/class-v6/connected-state.md","in_progress":true},"adversary:mf-placed":{"requirement_id":"POW-04","decision":"NOT RUN","method":"model","cell":"adversary:mf-placed","manifest_sha":"aaf3405b","run_id":"adversary-20261009-placed-32lane","evidence":"docs/analysis/class-v6/multi-family-adversary.md","in_progress":true,"coverage":"partial: the 64-register window's cost on the macro core (sections 4 and 5, agreeing with the k lane's gated-flop row within 5 percent); the restructured candidate's GPU cost is the invention lane's","release_identity":{"commit":"aaf3405b","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T07:32:30.503Z","note":"section 5: the 32-lane genesis core placed with SPEF, the 32-lane 18-family core placed and globally routed (estimate calibrated within 1 percent of SPEF); the SPEF row of the full core follows"}}},{"id":"POW-05","title":"Prevent amortised cheap winning attempts","setup":"Prepare valid templates, nonces, intermediate-state captures and independent acceptance checks.","steps":["Vary nonce, payout identity, transactions, roots and other committed fields after expensive work.","Try replay, precomputation, shared prefixes, partial evaluation and many cheap suffix candidates.","Price any valid strategy against fresh evaluation; independently review all bindings."],"accept":"Invalid modifications are rejected. Any valid cost-saving strategy is incorporated into ADV and must still meet P04/ECO gates. No unresolved shortcut is hidden behind passing reference vectors.","evidence":"Attack implementations; valid/invalid controls; work-cost analysis; binding review.","priority":"BLOCKER","profile":"P01; P04","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[7,9,10,23],"gate":"G2 / technical readiness","owner":"Cryptography + GPU lead","manual_page":25,"owner_lane":"pool design seat (a3832b1c3b274b310)","run_status":"NOT RUN","evidence_path":"docs/analysis/binding-review-2026-10.md (sections 1 to 5a; master ad5a54c5)","run_id":"binding-review-2026-10-08-a05","updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"amortised cheap winning attempts are the attack lanes' grind and era harnesses (tools/attack/f7-era, f9-grind), not in the release matrix; their rows come from those lanes","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"POW-05","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"status_note":"REVIEWED: fixed by construction (binding), not applicable (final digest); native tests ok on build-2; no change for 2.0","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"what_was_run":"the binding review: twelve reuse paths, none below the honest cost; five open questions B1 to B5","run_by":"pool design seat (a3832b1c3b274b310)","under_the_standard":"no: team-run before the standard's procedure; the status is RUNNING until the case is re-run under its steps with the profile's numbers and an independent run where the profile asks one","pass_or_fail_today":"not judged under the standard yet","method":"static","requirement_id":"POW-05","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"binding-review-2026-10-08-a05","evidence":"docs/analysis/binding-review-2026-10.md (sections 1 to 5a; master ad5a54c5)","in_progress":false}}},{"id":"POW-06","title":"Bound verifier work and malformed-input cost","setup":"Use ordinary CPU validators with a manifest-defined resource budget and untrusted submissions.","steps":["Submit shortest/longest programs, malformed encodings and adversarial memory references.","Measure verification time, peak memory and work amplification across valid and invalid inputs.","Sustain the approved hostile request rate while ordinary valid traffic continues."],"accept":"All semantics remain correct and P09 resource budgets hold. Invalid traffic cannot cause unbounded allocation, crashes or disproportionate free work. Rate limits must not replace consensus validation.","evidence":"CPU profiles; adversarial corpus; allocation traces; valid-traffic latency.","priority":"BLOCKER","profile":"P01; P09","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[7,9,10,23],"gate":"G2 / technical readiness","owner":"Cryptography + GPU lead","manual_page":25,"owner_lane":"hash lane (a690540514aa453d7)","run_status":"NOT RUN","evidence_path":"build-1:/srv/artefacts/tas/p01-partb-20261008-01/summary.jsonl","run_id":"p01-partb-20261008-01","updated":"2026-10-08T18:28:32.463Z","evidence_record":{"cell":"harness:parser-malformed","manifest_sha":"417c4a57","coverage":{"POW-06":"partial: three parsers of external bytes (the state stream, the igneum_ RPC params, the pool job line), ten thousand seeded malformed cases each, zero panics, every case under 500 ms (the slowest 152 microseconds); 'accepted' counts mutations that left a valid input, not a parser fault; the verifier work bound (the other half of the accept text) is the proving lane's measurement"},"at":"2026-10-08T18:28:32.463Z","method":"static","requirement_id":"POW-06","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"417c4a57","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"in_progress_since":"2026-10-08T18:28:32.463Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"harness:parser-malformed":{"cell":"harness:parser-malformed","manifest_sha":"417c4a57","coverage":{"POW-06":"partial: three parsers of external bytes (the state stream, the igneum_ RPC params, the pool job line), ten thousand seeded malformed cases each, zero panics, every case under 500 ms (the slowest 152 microseconds); 'accepted' counts mutations that left a valid input, not a parser fault; the verifier work bound (the other half of the accept text) is the proving lane's measurement"},"at":"2026-10-08T18:28:32.463Z","method":"static","requirement_id":"POW-06","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"417c4a57","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"p01-partb-20261008-01","evidence":"build-1:/srv/artefacts/tas/p01-partb-20261008-01/summary.jsonl","in_progress":true}}},{"id":"POW-07","title":"Constrain any mixed-resource or FP32 branch","setup":"If this branch is excluded, verify that it is unreachable and not claimed; if included, use a separate frozen candidate.","steps":["Specify exact rounding, fusion, special values and backend behaviour before compiling.","Differentially test all supported architectures and allow numerical-domain simplification in the specialist model.","Include verifier cost and candidate energy in P03/P04, not just arithmetic-unit area."],"accept":"Included branches achieve exact agreed semantics and all hardware budgets. An excluded branch earns no performance credit. No approximate operation or unspecified compiler choice enters consensus.","evidence":"Scope decision; semantic specification; vectors; simplified datapath model.","priority":"BLOCKER","profile":"P00; P01; P03","cadence":"Release candidate; repeat after relevant changes","method":"Conditional implementation test","status":"NOT RUN","source":[7,9,10,23],"gate":"G2 / technical readiness","owner":"Cryptography + GPU lead","manual_page":26,"owner_lane":"hash lane (a690540514aa453d7)","run_status":"FAIL","evidence_path":"docs/analysis/class-v6/rows/pow-07-fp32-unreachable.md; docs/analysis/class-v6/mixed-fp32.md; docs/analysis/class-v6/rows/pow-07-fp32-unreachable.md","run_id":"kills-20261008","updated":"2026-10-08T21:00:32.906Z","evidence_record":{"requirement_id":"POW-07","decision":"FAIL","method":"GPU","cell":"experiment:mixed-fp32","manifest_sha":"7cfa422a","run_id":"kills-20261008","evidence":"docs/analysis/class-v6/mixed-fp32.md; docs/analysis/class-v6/rows/pow-07-fp32-unreachable.md","in_progress":false,"coverage":"the branch ran and its claim failed: the FP32 branch costs the card more energy and widens the chip edge; the master's register row 12 reads FAIL, published; the branch is excluded and unreachable on master (the grep evidence stays)","release_identity":{"commit":"7cfa422a","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"the claims the two experiments carried are withdrawn: live state as an ASIC barrier (connected state), a cheaper mixed-FP32 lane","reviewer":"","at":"2026-10-08T21:00:32.906Z"},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"suite:pow":{"cell":"suite:pow","manifest_sha":"b24dfc162","coverage":{"POW-02":"partial: program derivation, ds55 geometry, the v6 fold, the packs and the spec read-back tests; the independent re-implementation and the index-fold census are the hash lane's harnesses","POW-08":"partial: the freeze list and the generator version pin; the public-claim scrub is the site gate's","POW-07":"the mixed FP32 branch is excluded and unreachable: no class flag reaches an FP op in igneum-pow on master (the mixedfp lane's branch is not on master); evidence the grep of the emitters on master, recorded by the hash lane"},"at":"2026-10-08T19:59:34.316Z","method":"native","requirement_id":"POW-07","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"b24dfc162","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"hash-lane-20261008-batch2","evidence":"docs/analysis/class-v6/rows/pow-07-fp32-unreachable.md","in_progress":true},"experiment:mixed-fp32":{"requirement_id":"POW-07","decision":"FAIL","method":"GPU","cell":"experiment:mixed-fp32","manifest_sha":"7cfa422a","run_id":"kills-20261008","evidence":"docs/analysis/class-v6/mixed-fp32.md; docs/analysis/class-v6/rows/pow-07-fp32-unreachable.md","in_progress":false,"coverage":"the branch ran and its claim failed: the FP32 branch costs the card more energy and widens the chip edge; the master's register row 12 reads FAIL, published; the branch is excluded and unreachable on master (the grep evidence stays)","release_identity":{"commit":"7cfa422a","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"the claims the two experiments carried are withdrawn: live state as an ASIC barrier (connected state), a cheaper mixed-FP32 lane","reviewer":"","at":"2026-10-08T21:00:32.906Z"}}},{"id":"POW-08","title":"Keep rejected mechanisms out of the shipped claim","setup":"Inventory long programs, select trees, SM gating, wider reads, sealed classes, random epoch lengths, per-tier scoring and VRF draws.","steps":["Retain their historic negative tests and realistic SRAM instruction-memory control.","Inspect the release for reintroduction through renamed settings or hidden paths.","Require a new written hypothesis and complete adversarial retest for any proposed return."],"accept":"Excluded levers remain excluded unless separately approved and retested. Flip-flop instruction-memory area is never presented as the cost of a realistic SRAM implementation.","evidence":"Decision register; binary/config scan; negative-control results.","priority":"GATE","profile":"P00; P03","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[7,9,10,23],"gate":"G2 / technical readiness","owner":"Cryptography + GPU lead","manual_page":26,"owner_lane":"hash lane (a690540514aa453d7)","run_status":"NOT RUN","evidence_path":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/miner-77b5acc5/box4-pow.log; build-1:/srv/artefacts/tas/p02-rows/p02-rows.txt; docs/analysis/class-v6/rows/pc1-l8off-ds2g-20261009.md","run_id":"hash-lane-20261009-batch4","updated":"2026-10-09T03:58:33.097Z","evidence_record":{"requirement_id":"POW-08","decision":"PASS","method":"GPU","cell":"bench:pc1-packs","manifest_sha":"1a938abe4","run_id":"hash-lane-20261009-batch4","evidence":"docs/analysis/class-v6/rows/pc1-l8off-ds2g-20261009.md","in_progress":false,"coverage":"partial: rw-w4, rw-w32, rw-w64 and the 1p5x long-program packs as regression controls for the excluded levers","release_identity":{"commit":"1a938abe4","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T03:58:33.097Z"},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"suite:pow":{"requirement_id":"POW-08","decision":"NOT RUN","method":"native","cell":"suite:pow","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/miner-77b5acc5/box4-pow.log","in_progress":false,"coverage":"partial: the freeze list and the generator version pin; the public-claim scrub is the site gate's","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; pow on release-2.0.2 77b5acc5 (box4, 226s); 77b5acc5..1176efb9 moves no crate, so the cell covers the tip by content | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."},"bench:fleet-pods":{"requirement_id":"POW-08","decision":"NOT RUN","method":"GPU","cell":"bench:fleet-pods","manifest_sha":"417c4a57","run_id":"p02-fleet-pods-20261008-01","evidence":"build-1:/srv/artefacts/tas/p02-rows/p02-rows.txt","in_progress":false,"coverage":"partial: W = 16 on four cards","release_identity":{"commit":"417c4a57","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T21:49:19.980Z"},"bench:pc1-packs":{"requirement_id":"POW-08","decision":"PASS","method":"GPU","cell":"bench:pc1-packs","manifest_sha":"1a938abe4","run_id":"hash-lane-20261009-batch4","evidence":"docs/analysis/class-v6/rows/pc1-l8off-ds2g-20261009.md","in_progress":false,"coverage":"partial: rw-w4, rw-w32, rw-w64 and the 1p5x long-program packs as regression controls for the excluded levers","release_identity":{"commit":"1a938abe4","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T03:58:33.097Z"}}}]},{"code":"ADV","title":"Programmable specialist adversaries","source":[8,10,12,22,23],"gate":"G3","owner":"Independent hardware team","fixtures":"F2 reference GPUs; F6 RTL/physical models; all published families","summary":"Give the opponent permission to adapt, share resources and remain operational; test cost rather than imagined chip death.","tests":[{"id":"ADV-01","title":"Build a multi-family programmable opponent","setup":"Provide the complete published family bank and future known parameter schedule to the reviewer.","steps":["Design one programmable architecture that supports all retained families, including firmware and emulation paths.","Optimise clocks, lanes, ports and pipelines without requiring a graphics-card layout.","Verify its outputs against POW vectors before measuring any advantage."],"accept":"At least the P04 design diversity is evaluated; every estimated competitive design is functionally validated. Inability of one narrow design to adapt is not evidence that all chips expire.","evidence":"Architecture reports; functional simulations; adaptation matrix; reviewer signature.","priority":"GATE","profile":"P01; P04","cadence":"Release candidate; repeat after relevant changes","method":"Independent hardware study","status":"NOT RUN","source":[8,10,12,22,23],"gate":"G3","owner":"Independent hardware team","manual_page":27,"owner_lane":"adversary lane (a1a9876a88f5a72fc)","run_status":"NOT RUN","evidence_path":"docs/analysis/class-v6/multi-family-adversary.md","run_id":"adversary-20261009-placed-32lane","updated":"2026-10-09T07:32:30.503Z","evidence_record":{"requirement_id":"ADV-01","decision":"NOT RUN","method":"model","cell":"adversary:mf-placed","manifest_sha":"aaf3405b","run_id":"adversary-20261009-placed-32lane","evidence":"docs/analysis/class-v6/multi-family-adversary.md","in_progress":true,"coverage":"the mf core (18 families, SRAM window and imem macros, operand isolation, 5-phase port) placed and routed on ASAP7 with SPEF and a gate-level VCD; k per family and per draw; outputs checked against the RTL simulation's checksums per tag, not yet against the POW vectors (owed)","release_identity":{"commit":"aaf3405b","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T07:32:30.503Z","note":"section 5: the 32-lane genesis core placed with SPEF, the 32-lane 18-family core placed and globally routed (estimate calibrated within 1 percent of SPEF); the SPEF row of the full core follows"},"in_progress_since":"2026-10-08 18:3x UK","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"what_was_run":"the 18-family programmable core placed and routed (9.36 pJ per lane-op, k 0.64 same-node)","run_by":"adversary lane (a1a9876a88f5a72fc)","under_the_standard":"no: team-run before the standard's procedure; the status is RUNNING until the case is re-run under its steps with the profile's numbers and an independent run where the profile asks one","pass_or_fail_today":"not judged under the standard yet","method":"static","requirement_id":"ADV-01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"team-2026-10-08","evidence":"docs/analysis/class-v6/multi-family-adversary.md","in_progress":true},"adversary:mf-placed":{"requirement_id":"ADV-01","decision":"NOT RUN","method":"model","cell":"adversary:mf-placed","manifest_sha":"aaf3405b","run_id":"adversary-20261009-placed-32lane","evidence":"docs/analysis/class-v6/multi-family-adversary.md","in_progress":true,"coverage":"the mf core (18 families, SRAM window and imem macros, operand isolation, 5-phase port) placed and routed on ASAP7 with SPEF and a gate-level VCD; k per family and per draw; outputs checked against the RTL simulation's checksums per tag, not yet against the POW vectors (owed)","release_identity":{"commit":"aaf3405b","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T07:32:30.503Z","note":"section 5: the 32-lane genesis core placed with SPEF, the 32-lane 18-family core placed and globally routed (estimate calibrated within 1 percent of SPEF); the SPEF row of the full core follows"}}},{"id":"ADV-02","title":"Price shared, reduced and reconstructed memory","setup":"Allow multiple engines to share a dataset and to store selected fractions rather than a complete per-engine copy.","steps":["Sweep sharing factors, memory fractions, caches and recomputation depth across many simultaneous hashes.","Include construction/update amortisation, bandwidth contention and retained state.","Take the most favourable feasible point for the specialist into the complete-board model."],"accept":"No omitted feasible trade-off materially lowers the accepted cost estimate. Any winning alternative is included in P04 and ECO; capacity alone is not accepted as an energy bound.","evidence":"Sweep definitions; energy/bandwidth data; best-feasible envelope; excluded-design reasons.","priority":"GATE","profile":"P04","cadence":"Release candidate; repeat after relevant changes","method":"Model + adversarial implementation","status":"NOT RUN","source":[8,10,12,22,23],"gate":"G3","owner":"Independent hardware team","manual_page":27,"owner_lane":"adversary lane (a1a9876a88f5a72fc)","run_status":"NOT RUN","evidence_path":"docs/analysis/class-v6/multi-family-adversary.md","run_id":"adversary-20261008-placed-8lane","updated":"2026-10-08T20:41:20.327Z","evidence_record":{"requirement_id":"ADV-02","decision":"NOT RUN","method":"model","cell":"adversary:d2b","manifest_sha":"3a8874fef","run_id":"adversary-20261008-placed-8lane","evidence":"docs/analysis/class-v6/multi-family-adversary.md","in_progress":true,"coverage":"memory sharing, partial stores at the measured window-layer hit rates (and hit 0.50 with layer 8 off), recomputation and the set-up amortisation on the complete board (section 13); the formal memory model's terms (section 16)","release_identity":{"commit":"3a8874fef","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T20:41:20.327Z"},"in_progress_since":"2026-10-08 18:3x UK","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"what_was_run":"D2(b): the stored-half hybrid, memory sharing, recomputation priced (the placed hybrid 1.93x same-node at the mean hit)","run_by":"adversary lane (a1a9876a88f5a72fc)","under_the_standard":"no: team-run before the standard's procedure; the status is RUNNING until the case is re-run under its steps with the profile's numbers and an independent run where the profile asks one","pass_or_fail_today":"not judged under the standard yet","method":"static","requirement_id":"ADV-02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"team-2026-10-08","evidence":"docs/analysis/class-v6/multi-family-adversary.md","in_progress":true},"adversary:d2b":{"requirement_id":"ADV-02","decision":"NOT RUN","method":"model","cell":"adversary:d2b","manifest_sha":"3a8874fef","run_id":"adversary-20261008-placed-8lane","evidence":"docs/analysis/class-v6/multi-family-adversary.md","in_progress":true,"coverage":"memory sharing, partial stores at the measured window-layer hit rates (and hit 0.50 with layer 8 off), recomputation and the set-up amortisation on the complete board (section 13); the formal memory model's terms (section 16)","release_identity":{"commit":"3a8874fef","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T20:41:20.327Z"}}},{"id":"ADV-03","title":"Attack with data-local and hybrid execution","setup":"Permit distributed memories, state migration and companion CPU/GPU/FPGA components.","steps":["Compare moving computation, intermediate state or fetched data to each read location.","Test specialised mining alongside outsourced proof generation rather than assuming one physical GPU does both.","Include interconnect, host, synchronisation, idle and conversion costs."],"accept":"The cheapest feasible combined system is included in the adversarial envelope and economic model. A worker identity or account is never treated as proof of a single physical device.","evidence":"Hybrid architecture diagrams; traffic traces; system cost and energy ledger.","priority":"GATE","profile":"P04","cadence":"Release candidate; repeat after relevant changes","method":"Independent system modelling","status":"NOT RUN","source":[8,10,12,22,23],"gate":"G3","owner":"Independent hardware team","manual_page":27,"owner_lane":"adversary lane (a1a9876a88f5a72fc)","run_status":"NOT RUN","evidence_path":"docs/analysis/class-v6/multi-family-adversary.md","run_id":"adversary-20261009-placed-32lane","updated":"2026-10-09T07:32:30.503Z","evidence_record":{"requirement_id":"ADV-03","decision":"NOT RUN","method":"model","cell":"adversary:mf-placed","manifest_sha":"aaf3405b","run_id":"adversary-20261009-placed-32lane","evidence":"docs/analysis/class-v6/multi-family-adversary.md","in_progress":true,"coverage":"the data-local, hybrid and companion-host rows of multi-family-adversary.md sections 11, 13 and 14 (bit counts closed-form; the hop and wire energies claimed)","release_identity":{"commit":"aaf3405b","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T07:32:30.503Z","note":"section 5: the 32-lane genesis core placed with SPEF, the 32-lane 18-family core placed and globally routed (estimate calibrated within 1 percent of SPEF); the SPEF row of the full core follows"},"in_progress_since":"2026-10-08 18:3x UK","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"what_was_run":"data-local execution moves nothing (2,112 bits of live state against an 80-bit read)","run_by":"adversary lane (a1a9876a88f5a72fc)","under_the_standard":"no: team-run before the standard's procedure; the status is RUNNING until the case is re-run under its steps with the profile's numbers and an independent run where the profile asks one","pass_or_fail_today":"not judged under the standard yet","method":"static","requirement_id":"ADV-03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"team-2026-10-08","evidence":"docs/analysis/class-v6/multi-family-adversary.md","in_progress":true},"adversary:mf-placed":{"requirement_id":"ADV-03","decision":"NOT RUN","method":"model","cell":"adversary:mf-placed","manifest_sha":"aaf3405b","run_id":"adversary-20261009-placed-32lane","evidence":"docs/analysis/class-v6/multi-family-adversary.md","in_progress":true,"coverage":"the data-local, hybrid and companion-host rows of multi-family-adversary.md sections 11, 13 and 14 (bit counts closed-form; the hop and wire energies claimed)","release_identity":{"commit":"aaf3405b","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T07:32:30.503Z","note":"section 5: the 32-lane genesis core placed with SPEF, the 32-lane 18-family core placed and globally routed (estimate calibrated within 1 percent of SPEF); the SPEF row of the full core follows"}}},{"id":"ADV-04","title":"Measure profitable selective participation","setup":"Use all declared families plus held-out generated programs and the protocol difficulty rule.","steps":["Identify favourable execution paths and add cheap fallbacks for other periods.","Simulate entry/exit around profitable periods, including idle time, compilation and re-entry costs.","Evaluate revenue and costs across the full schedule, not just average program energy."],"accept":"Intermittent specialists meet P04/ECO limits when evaluated on full-period economics. A weak tail cannot be concealed by a favourable mean; known valid shortcuts must be priced.","evidence":"Per-program advantage distribution; policy simulator; full-period returns.","priority":"GATE","profile":"P04; P12","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[8,10,12,22,23],"gate":"G3","owner":"Independent hardware team","manual_page":28,"owner_lane":"adversary lane (a1a9876a88f5a72fc)","run_status":"NOT RUN","evidence_path":"docs/analysis/class-v6/multi-family-adversary.md","run_id":"adversary-20261008-placed-8lane","updated":"2026-10-08T20:41:20.327Z","evidence_record":{"requirement_id":"ADV-04","decision":"NOT RUN","method":"model","cell":"adversary:d2b","manifest_sha":"3a8874fef","run_id":"adversary-20261008-placed-8lane","evidence":"docs/analysis/class-v6/multi-family-adversary.md","in_progress":true,"coverage":"selective participation over 2,000 era draws under the layer 1 band with two reserve families live per epoch, the specialist's revenue against its ratio gain (section 13); downtime and re-entry priced as the DAA window's lag, not simulated against the difficulty rule itself (owed)","release_identity":{"commit":"3a8874fef","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T20:41:20.327Z"},"in_progress_since":"2026-10-08 18:3x UK","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"what_was_run":"selective participation 9 percent spread across 2,000 era draws","run_by":"adversary lane (a1a9876a88f5a72fc)","under_the_standard":"no: team-run before the standard's procedure; the status is RUNNING until the case is re-run under its steps with the profile's numbers and an independent run where the profile asks one","pass_or_fail_today":"not judged under the standard yet","method":"static","requirement_id":"ADV-04","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"team-2026-10-08","evidence":"docs/analysis/class-v6/multi-family-adversary.md","in_progress":true},"adversary:d2b":{"requirement_id":"ADV-04","decision":"NOT RUN","method":"model","cell":"adversary:d2b","manifest_sha":"3a8874fef","run_id":"adversary-20261008-placed-8lane","evidence":"docs/analysis/class-v6/multi-family-adversary.md","in_progress":true,"coverage":"selective participation over 2,000 era draws under the layer 1 band with two reserve families live per epoch, the specialist's revenue against its ratio gain (section 13); downtime and re-entry priced as the DAA window's lag, not simulated against the difficulty rule itself (owed)","release_identity":{"commit":"3a8874fef","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T20:41:20.327Z"}}},{"id":"ADV-05","title":"Validate physical and complete-board costs","setup":"Use feasible process/library assumptions and documented component boundaries; no fabricated foundry access.","steps":["Model SRAM macros, ports, wiring, clocking, memory PHYs, external memory, host and power conversion.","Run place-and-route where available; mark unmodelled items as uncertainty rather than zero.","Compare against a calibrated existing hardware block or equivalent validation case."],"accept":"No decision-critical cost is omitted. Physically unvalidated or proprietary estimates are labelled and independently bounded; synthesis alone cannot earn a manufactured-chip claim.","evidence":"Netlist/physical reports; macro assumptions; bill of materials; model calibration.","priority":"GATE","profile":"P04","cadence":"Release candidate; repeat after relevant changes","method":"Independent physical-design review","status":"NOT RUN","source":[8,10,12,22,23],"gate":"G3","owner":"Independent hardware team","manual_page":28,"owner_lane":"k lane (a3c9601a6d4686fe1)","run_status":"NOT RUN","evidence_path":"docs/analysis/class-v6/multi-family-adversary.md; docs/analysis/class-v6/floor/shadow-k.md; docs/analysis/class-v6/multi-family-adversary.md","run_id":"adversary-20261009-placed-32lane","updated":"2026-10-09T07:32:30.503Z","evidence_record":{"requirement_id":"ADV-05","decision":"NOT RUN","method":"model","cell":"adversary:mf-placed","manifest_sha":"aaf3405b","run_id":"adversary-20261009-placed-32lane","evidence":"docs/analysis/class-v6/multi-family-adversary.md","in_progress":true,"coverage":"partial: the SRAM macros, ports, wiring, clocking and the complete-board terms are modelled in sections 2.3, 5 and 6 with the unmodelled items carried as uncertainty; the calibration against an existing hardware block is the k lane's bare-lane row beside it, owed as a named comparison","release_identity":{"commit":"aaf3405b","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T07:32:30.503Z","note":"section 5: the 32-lane genesis core placed with SPEF, the 32-lane 18-family core placed and globally routed (estimate calibrated within 1 percent of SPEF); the SPEF row of the full core follows"},"in_progress_since":"2026-10-08 18:3x UK","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"what_was_run":"the complete GDDR7 machine 1.5x same-node, 1.8x a node ahead at the placed energy; the honest same-node bracket 1.5x to 2.1x: FAIL against P04 at R_E 1.5, served as such","run_by":"k lane (a3c9601a6d4686fe1)","under_the_standard":"no: team-run before the standard's procedure; the status is RUNNING until the case is re-run under its steps with the profile's numbers and an independent run where the profile asks one","pass_or_fail_today":"FAIL against P04 at R_E 1.5","method":"static","requirement_id":"ADV-05","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"team-2026-10-08","evidence":"docs/analysis/class-v6/multi-family-adversary.md; docs/analysis/class-v6/floor/shadow-k.md","in_progress":true},"adversary:mf-placed":{"requirement_id":"ADV-05","decision":"NOT RUN","method":"model","cell":"adversary:mf-placed","manifest_sha":"aaf3405b","run_id":"adversary-20261009-placed-32lane","evidence":"docs/analysis/class-v6/multi-family-adversary.md","in_progress":true,"coverage":"partial: the SRAM macros, ports, wiring, clocking and the complete-board terms are modelled in sections 2.3, 5 and 6 with the unmodelled items carried as uncertainty; the calibration against an existing hardware block is the k lane's bare-lane row beside it, owed as a named comparison","release_identity":{"commit":"aaf3405b","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T07:32:30.503Z","note":"section 5: the 32-lane genesis core placed with SPEF, the 32-lane 18-family core placed and globally routed (estimate calibrated within 1 percent of SPEF); the SPEF row of the full core follows"}}},{"id":"ADV-06","title":"Separate process advantage from specialisation","setup":"Evaluate same-node, one-node-ahead and two-node-ahead scenarios with explicit technology definitions.","steps":["Use independently justified process factors, voltages, memory and packaging assumptions for each design.","Allow reusable IP and modular revisions; credit GPU improvement consistently.","Evaluate measurement confidence and model-parameter sensitivity separately."],"accept":"P04 primary limits hold for all competitive-reference cells; two-node futures are reported and pass the predeclared economic stress envelope. A model range is never labelled a statistical confidence interval without justification.","evidence":"Node-specific reports; factor provenance; uncertainty and sensitivity tables.","priority":"GATE","profile":"P04; P12","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[8,10,12,22,23],"gate":"G3","owner":"Independent hardware team","manual_page":28,"owner_lane":"k lane (a3c9601a6d4686fe1)","run_status":"NOT RUN","evidence_path":"docs/analysis/class-v6/floor/shadow-k.md","run_id":"floor-k-20261008-rows-repeat","updated":"2026-10-08T21:09:38.300Z","evidence_record":{"requirement_id":"ADV-06","decision":"NOT RUN","method":"model","cell":"review:k-lane-shadow-k","manifest_sha":"86e5b0fb","run_id":"floor-k-20261008-rows-repeat","evidence":"docs/analysis/class-v6/floor/shadow-k.md","in_progress":false,"coverage":"partial: the placed gated cores and the adversary's forms are modelled in shadow-k.md; the independent review remains","release_identity":{"commit":"86e5b0fb","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T21:09:38.300Z"},"in_progress_since":"2026-10-08 18:3x UK","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"what_was_run":"the node column: same-node and a node ahead kept separate (k 0.78 / 0.56 / 0.40 at N5 / N3 / N2)","run_by":"k lane (a3c9601a6d4686fe1)","under_the_standard":"no: team-run before the standard's procedure; the status is RUNNING until the case is re-run under its steps with the profile's numbers and an independent run where the profile asks one","pass_or_fail_today":"not judged under the standard yet","method":"static","requirement_id":"ADV-06","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"team-2026-10-08","evidence":"docs/analysis/class-v6/floor/shadow-k.md","in_progress":true},"review:k-lane-shadow-k":{"requirement_id":"ADV-06","decision":"NOT RUN","method":"model","cell":"review:k-lane-shadow-k","manifest_sha":"86e5b0fb","run_id":"floor-k-20261008-rows-repeat","evidence":"docs/analysis/class-v6/floor/shadow-k.md","in_progress":false,"coverage":"partial: the placed gated cores and the adversary's forms are modelled in shadow-k.md; the independent review remains","release_identity":{"commit":"86e5b0fb","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T21:09:38.300Z"}}},{"id":"ADV-07","title":"Evaluate lifetime without forced obsolescence","setup":"Assume multi-year productive survival and known schedule support before testing optional retirement penalties.","steps":["Price firmware, emulation, memory expansion, companion hardware and incremental redesign.","Include 1-, 3- and 5-year productive lifetimes plus idle/resale possibilities.","Grant a retirement credit only if all feasible cheaper adaptations lose competitiveness."],"accept":"The primary case does not require chip death or a fresh full development bill per family. Every retirement credit has a documented adaptation comparison; incompatible and unprofitable are reported separately.","evidence":"Lifetime/adaptation ledger; revision costs; feasible-alternative analysis.","priority":"GATE","profile":"P04; P12","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[8,10,12,22,23],"gate":"G3","owner":"Independent hardware team","manual_page":29,"owner_lane":"adversary lane (a1a9876a88f5a72fc)","run_status":"NOT RUN","evidence_path":"docs/analysis/class-v6/multi-family-adversary.md section 14; docs/analysis/class-v6/multi-family-adversary.md","run_id":"adversary-20261009-placed-32lane","updated":"2026-10-09T07:32:30.503Z","evidence_record":{"requirement_id":"ADV-07","decision":"NOT RUN","method":"model","cell":"adversary:mf-placed","manifest_sha":"aaf3405b","run_id":"adversary-20261009-placed-32lane","evidence":"docs/analysis/class-v6/multi-family-adversary.md","in_progress":true,"coverage":"the lifetime table and the six-row transition matrix (sections 7 and 14) on the placed rows; the 32-lane genesis comparator placed on adv-g","release_identity":{"commit":"aaf3405b","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T07:32:30.503Z","note":"section 5: the 32-lane genesis core placed with SPEF, the 32-lane 18-family core placed and globally routed (estimate calibrated within 1 percent of SPEF); the SPEF row of the full core follows"},"in_progress_since":"2026-10-08 18:3x UK","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"what_was_run":"the transition matrix: no row loses competitiveness, the three-year life holds, zero obsolescence credit","run_by":"adversary lane (a1a9876a88f5a72fc)","under_the_standard":"no: team-run before the standard's procedure; the status is RUNNING until the case is re-run under its steps with the profile's numbers and an independent run where the profile asks one","pass_or_fail_today":"not judged under the standard yet","method":"static","requirement_id":"ADV-07","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"team-2026-10-08","evidence":"docs/analysis/class-v6/multi-family-adversary.md section 14","in_progress":true},"adversary:mf-placed":{"requirement_id":"ADV-07","decision":"NOT RUN","method":"model","cell":"adversary:mf-placed","manifest_sha":"aaf3405b","run_id":"adversary-20261009-placed-32lane","evidence":"docs/analysis/class-v6/multi-family-adversary.md","in_progress":true,"coverage":"the lifetime table and the six-row transition matrix (sections 7 and 14) on the placed rows; the 32-lane genesis comparator placed on adv-g","release_identity":{"commit":"aaf3405b","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T07:32:30.503Z","note":"section 5: the 32-lane genesis core placed with SPEF, the 32-lane 18-family core placed and globally routed (estimate calibrated within 1 percent of SPEF); the SPEF row of the full core follows"}}},{"id":"ADV-08","title":"Independently challenge the best-cost envelope","setup":"Publish the non-sensitive model and negative results; commission an unaffiliated second hardware reviewer.","steps":["Reward cheaper valid designs and reproduced shortcuts, not confirmation of the preferred number.","Re-run P04 with the strongest submitted feasible design, including a low-cost funded-development case.","Record unresolved modelling disagreements and future technology exclusions."],"accept":"Both reviews accept the scoped envelope or all material disagreements are resolved transparently. Passing supports only evaluated designs and conditions, never a universal bound on all future silicon.","evidence":"Two review reports; challenge log; final envelope; unresolved-limit statement.","priority":"GATE","profile":"P04","cadence":"Release candidate; repeat after relevant changes","method":"Independent challenge/review","status":"NOT RUN","source":[8,10,12,22,23],"gate":"G3","owner":"Independent hardware team","manual_page":29,"owner_lane":"adversary lane (a1a9876a88f5a72fc)","run_status":"NOT RUN","evidence_path":"docs/analysis/class-v6/multi-family-adversary.md","run_id":"adversary-20261009-placed-32lane","updated":"2026-10-09T07:32:30.503Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"adversary:mf-placed":{"requirement_id":"ADV-08","decision":"NOT RUN","method":"model","cell":"adversary:mf-placed","manifest_sha":"aaf3405b","run_id":"adversary-20261009-placed-32lane","evidence":"docs/analysis/class-v6/multi-family-adversary.md","in_progress":true,"coverage":"the best-cost envelope on the complete machine (section 6) and the SRAM-die ticket reconciliation with lane B (section 15); the unaffiliated second reviewer is not this lane's","release_identity":{"commit":"aaf3405b","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T07:32:30.503Z","note":"section 5: the 32-lane genesis core placed with SPEF, the 32-lane 18-family core placed and globally routed (estimate calibrated within 1 percent of SPEF); the SPEF row of the full core follows"}},"evidence_record":{"requirement_id":"ADV-08","decision":"NOT RUN","method":"model","cell":"adversary:mf-placed","manifest_sha":"aaf3405b","run_id":"adversary-20261009-placed-32lane","evidence":"docs/analysis/class-v6/multi-family-adversary.md","in_progress":true,"coverage":"the best-cost envelope on the complete machine (section 6) and the SRAM-die ticket reconciliation with lane B (section 15); the unaffiliated second reviewer is not this lane's","release_identity":{"commit":"aaf3405b","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T07:32:30.503Z","note":"section 5: the 32-lane genesis core placed with SPEF, the 32-lane 18-family core placed and globally routed (estimate calibrated within 1 percent of SPEF); the SPEF row of the full core follows"},"in_progress_since":"2026-10-08T20:41:20.327Z"}]},{"code":"ROT","title":"Epochs, seeds and memory transitions","source":[7,11,19,21],"gate":"G5 / G2","owner":"Consensus + GPU leads","fixtures":"F0 activation rules; F4 fault network; F5 historical and boundary vectors","summary":"Transitions must agree across nodes and remain usable during failures; crossing a boundary is not a chip-retirement test.","tests":[{"id":"ROT-01","title":"Agree across every hourly boundary","setup":"Use real nodes, CPU/GPU miners and independent clocks around successive program boundaries.","steps":["Submit valid work immediately before, at and after the activation boundary under clock skew and delayed delivery.","Restart nodes from both sides and replay the same headers.","Compare selected seed, program, validity, rewards and local wall-clock dependence."],"accept":"All honest nodes derive identical consensus outcomes from the frozen rule. Late work is handled exactly as specified; no wall-clock ambiguity or cross-backend split occurs.","evidence":"Boundary vectors; node/miner traces; acceptance and reward matrix.","priority":"BLOCKER","profile":"P01; P08","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[7,11,19,21],"gate":"G5 / G2","owner":"Consensus + GPU leads","manual_page":30,"owner_lane":"fast-time lane (a8be71a0db962911c)","run_status":"NOT RUN","evidence_path":"docs/analysis/review-2026-10-08-b/f10/emu-test.log","run_id":"f10-worker-20261008","updated":"2026-10-08T20:07:26.255Z","evidence_record":{"cell":"harness:cuda-select-check","manifest_sha":"964cdf6c1","coverage":{"ROT-01":"partial: the worker's high-32 nonce rollover inside a job (a job from 2^32 - 32) finds the same set on both read-back paths and the boundary nonces hash as igneum-pow; the hourly program boundary itself is the fast-time harness","POW-01":"partial: the CUDA select pass equals the full read line for line (zero hits, partial, the all-hit overflow fallback, a 96-nonce tail with a 32-lane launch, queued jobs, hits then zero, the epoch tag) and 17 sampled hashes equal igneum-pow; the million-vector campaign is harness:p01-vectors"},"at":"2026-10-08T20:07:26.255Z","method":"static","requirement_id":"ROT-01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"964cdf6c1","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"in_progress_since":"2026-10-08T20:07:26.255Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"harness:cuda-select-check":{"cell":"harness:cuda-select-check","manifest_sha":"964cdf6c1","coverage":{"ROT-01":"partial: the worker's high-32 nonce rollover inside a job (a job from 2^32 - 32) finds the same set on both read-back paths and the boundary nonces hash as igneum-pow; the hourly program boundary itself is the fast-time harness","POW-01":"partial: the CUDA select pass equals the full read line for line (zero hits, partial, the all-hit overflow fallback, a 96-nonce tail with a 32-lane launch, queued jobs, hits then zero, the epoch tag) and 17 sampled hashes equal igneum-pow; the million-vector campaign is harness:p01-vectors"},"at":"2026-10-08T20:07:26.255Z","method":"static","requirement_id":"ROT-01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"964cdf6c1","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"f10-worker-20261008","evidence":"docs/analysis/review-2026-10-08-b/f10/emu-test.log","in_progress":true}}},{"id":"ROT-02","title":"Cross weekly and family boundaries together","setup":"Use the retained schedule in F0, including coincident program, parameter and family changes.","steps":["Run every known family transition and all coincident-boundary combinations on production code.","Interrupt downloads, compilation and restart during activation; include mixed old/new clients.","Repeat selected cases under real elapsed time and the remainder under disclosed accelerated time."],"accept":"Deterministic activation, documented old-client behaviour and no unsafe fallback. Compilation/setup costs satisfy P03; accelerated runs are not reported as years of operating history.","evidence":"Transition matrix; code-path evidence; compile timing; old-client logs.","priority":"BLOCKER","profile":"P01; P03; P08","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[7,11,19,21],"gate":"G5 / G2","owner":"Consensus + GPU leads","manual_page":30,"owner_lane":"fast-time lane (a8be71a0db962911c)","run_status":"NOT RUN","evidence_path":"v5-fasttime 92bf6a7f","run_id":"team-2026-10-08","updated":"2026-10-08 18:3x UK","evidence_record":{"what_was_run":"the class v6 object crossing at its floor on 617cb441","run_by":"fast-time lane (a8be71a0db962911c)","under_the_standard":"no: team-run before the standard's procedure; the status is RUNNING until the case is re-run under its steps with the profile's numbers and an independent run where the profile asks one","pass_or_fail_today":"not judged under the standard yet","method":"static","requirement_id":"ROT-02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"in_progress_since":"2026-10-08 18:3x UK","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"what_was_run":"the class v6 object crossing at its floor on 617cb441","run_by":"fast-time lane (a8be71a0db962911c)","under_the_standard":"no: team-run before the standard's procedure; the status is RUNNING until the case is re-run under its steps with the profile's numbers and an independent run where the profile asks one","pass_or_fail_today":"not judged under the standard yet","method":"static","requirement_id":"ROT-02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"team-2026-10-08","evidence":"v5-fasttime 92bf6a7f","in_progress":true}}},{"id":"ROT-03","title":"Test miner-voted bring-forward governance","setup":"Freeze eligibility, threshold, windows and activation semantics before testing; do not invent a no-veto rule.","steps":["Attempt threshold-minus-one, threshold, conflicting proposals, duplicate votes and coalition withholding.","Partition voters, restore them and test vote-key substitution through pools.","Verify adoption and refusal behaviour of already running nodes."],"accept":"The actual mechanism enforces F0, with authenticated voting and no conflicting activation. Any coalition capable of blocking or manipulating changes is disclosed; labels such as no veto do not override arithmetic.","evidence":"Executable governance model; signed-vote corpus; coalition/partition results.","priority":"BLOCKER","profile":"P00; P01; P08","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[7,11,19,21],"gate":"G5 / G2","owner":"Consensus + GPU leads","manual_page":30,"owner_lane":"node lane (a283f5f0d364ceef0)","run_status":"NOT RUN","evidence_path":"docs/plans/igneum-2.0.md D5","run_id":"team-2026-10-08","updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"miner-voted bring-forward needs a vote harness on the fault network F4","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"ROT-03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"in_progress_since":"2026-10-08 18:3x UK","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"what_was_run":"the bring-forward mechanism specified in the D5 block","run_by":"node lane (a283f5f0d364ceef0)","under_the_standard":"no: team-run before the standard's procedure; the status is RUNNING until the case is re-run under its steps with the profile's numbers and an independent run where the profile asks one","pass_or_fail_today":"not judged under the standard yet","method":"static","requirement_id":"ROT-03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"team-2026-10-08","evidence":"docs/plans/igneum-2.0.md D5","in_progress":true}}},{"id":"ROT-04","title":"Resist seed selection and faster evaluators","setup":"Provide the specified seed pipeline and delay proof implementation plus independently parameterised fast-adversary models.","steps":["Try withholding candidate seeds, grinding alternatives, replaying delay proofs and biased checkpoint selection.","Vary adversarial speed advantage and outage duration; trace influence on program choice.","Validate inputs, parameters and proofs against independent vectors."],"accept":"No invalid seed or proof is accepted; selection advantage stays within the approved threat-model bound. Missing bounds block this gate. A delay mechanism is not credited as generic ASIC resistance.","evidence":"Seed/grinding simulations; speed sensitivity; proof vectors; threat-model signoff.","priority":"BLOCKER","profile":"P00; P01; P08","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[7,11,19,21],"gate":"G5 / G2","owner":"Consensus + GPU leads","manual_page":31,"owner_lane":"node lane (a283f5f0d364ceef0)","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T19:22:31.798Z","evidence_record":{"reason":"seed-selection resistance is the census harness (the class v6 invention lane), not yet in the matrix","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"ROT-04","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"reason":"seed-selection resistance is the census harness (the class v6 invention lane), not yet in the matrix","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"ROT-04","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}},{"id":"ROT-05","title":"Continue or pause correctly when finality stops","setup":"Stop checkpoint signing while mining continues, then cross seed and family boundaries.","steps":["Remove the required signing weight and observe the documented fallback or safe pause.","Prevent access to any founder seed service; restart from persisted state.","Restore the stated fault assumptions and verify deterministic recovery."],"accept":"Mining/seed behaviour matches F0 without manufacturing certificates or reinterpreting finality. Safety holds during the outage; liveness is required only after its stated assumptions return.","evidence":"Fault timeline; seed/certificate history; node-state comparison; recovery log.","priority":"BLOCKER","profile":"P01; P08","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[7,11,19,21],"gate":"G5 / G2","owner":"Consensus + GPU leads","manual_page":31,"owner_lane":"finality lane (aca0f5ed924a2a99b)","run_status":"NOT RUN","evidence_path":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-consensus.log","run_id":"202-5d53a591-1176efb9","updated":"2026-10-09T00:33:39.243Z","evidence_record":{"requirement_id":"ROT-05","decision":"NOT RUN","method":"native","cell":"suite:consensus","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-consensus.log","in_progress":false,"coverage":"partial: the finality-stopped pause tests","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; consensus on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 24s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."},"in_progress_since":"2026-10-08T19:32:50.856Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"suite:consensus":{"requirement_id":"ROT-05","decision":"NOT RUN","method":"native","cell":"suite:consensus","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-consensus.log","in_progress":false,"coverage":"partial: the finality-stopped pause tests","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; consensus on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 24s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."}}},{"id":"ROT-06","title":"Activate datasets without hidden exclusions","setup":"Freeze memory sizes, support horizon and sync/update procedure; test all advertised roles.","steps":["Construct the next dataset while current work remains active; test slow disks, low free memory and interruption.","Try stale-state/dataset submissions and maliciously expensive state growth where coupling exists.","Measure data transfer, restart and excluded-card costs before approving progression."],"accept":"No invalid stale work is accepted, no supported card silently fails, and P06 is met. Hardware retirement and sync burden are included in the economic decision, not treated as automatic chip protection.","evidence":"Dataset hashes; memory/update traces; stale-work tests; exclusion decision.","priority":"BLOCKER","profile":"P01; P06","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[7,11,19,21],"gate":"G5 / G2","owner":"Consensus + GPU leads","manual_page":31,"owner_lane":"hash lane (a690540514aa453d7)","run_status":"NOT RUN","evidence_path":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-core.log","run_id":"202-5d53a591-1176efb9","updated":"2026-10-09T00:33:39.243Z","evidence_record":{"requirement_id":"ROT-06","decision":"NOT RUN","method":"native","cell":"suite:core","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-core.log","in_progress":false,"coverage":"partial: the dataset activation and digest tests; a live activation is the fast-time harness","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; core on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 25s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."},"in_progress_since":"2026-10-08T19:32:50.856Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"suite:core":{"requirement_id":"ROT-06","decision":"NOT RUN","method":"native","cell":"suite:core","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-core.log","in_progress":false,"coverage":"partial: the dataset activation and digest tests; a live activation is the fast-time harness","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; core on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 25s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."}}},{"id":"ROT-07","title":"Ablate redundant rotation layers","setup":"Use matched baseline and ablated variants in the lab; do not change a running public network.","steps":["Remove each weekly/family component independently and measure adversarial cost, GPU setup and verifier complexity.","Include favourable-period specialists and all retained known families.","Keep a layer only with a distinct, independently supported benefit or a documented non-resistance purpose."],"accept":"Every retained layer has explicit justification and full boundary coverage. Redundant complexity is removed or its rationale recorded; the security model does not double-count the same versatility cost.","evidence":"Ablation report; decision log; complexity/cost comparison.","priority":"GATE","profile":"P03; P04","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[7,11,19,21],"gate":"G5 / G2","owner":"Consensus + GPU leads","manual_page":32,"owner_lane":"lane D family gate (a07a99a3788566af2)","run_status":"NOT RUN","evidence_path":"docs/analysis/class-v6/family-gate.md","run_id":"family-gate-20261008c","updated":"2026-10-08T21:49:19.800Z","evidence_record":{"requirement_id":"ROT-07","decision":"NOT RUN","method":"native","cell":"harness:family-gate","manifest_sha":"1a938abe4","run_id":"family-gate-20261008c","evidence":"docs/analysis/class-v6/family-gate.md","in_progress":false,"coverage":"partial: the acceptance-side ablation rows (layer 8 off against the same-crate windowed control: the draw cost, the floors' costs, the hot-set and 1.2x ceiling, the bit-R read; the mixer and shape axes' per-era invisibility and verifier rows), docs/analysis/class-v6/family-gate.md sections 6.4 to 6.12; the adversarial cost and the GPU setup rows per layer are the hash lane's and the adversary lane's","release_identity":{"commit":"1a938abe4","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T21:49:19.800Z"},"in_progress_since":"2026-10-08 18:3x UK","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"what_was_run":"the family gate's coverage (38,000 eras) and the rotation prototype paused as the no-rescue control","run_by":"lane D family gate (a07a99a3788566af2)","under_the_standard":"no: team-run before the standard's procedure; the status is RUNNING until the case is re-run under its steps with the profile's numbers and an independent run where the profile asks one","pass_or_fail_today":"not judged under the standard yet","method":"static","requirement_id":"ROT-07","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"team-2026-10-08","evidence":"docs/analysis/class-v6/family-gate.md","in_progress":true},"harness:family-gate":{"requirement_id":"ROT-07","decision":"NOT RUN","method":"native","cell":"harness:family-gate","manifest_sha":"1a938abe4","run_id":"family-gate-20261008c","evidence":"docs/analysis/class-v6/family-gate.md","in_progress":false,"coverage":"partial: the acceptance-side ablation rows (layer 8 off against the same-crate windowed control: the draw cost, the floors' costs, the hot-set and 1.2x ceiling, the bit-R read; the mixer and shape axes' per-era invisibility and verifier rows), docs/analysis/class-v6/family-gate.md sections 6.4 to 6.12; the adversarial cost and the GPU setup rows per layer are the hash lane's and the adversary lane's","release_identity":{"commit":"1a938abe4","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T21:49:19.800Z"}}},{"id":"ROT-08","title":"Pass the no-new-rules counterfactual","setup":"Freeze the complete published rule bank and known schedule for the five-year evaluation.","steps":["Allow a programmable adversary to know and survive all planned changes.","Remove assumed future emergency instructions and manual retirement actions from the model.","Run the required ECO scenarios and link them to independent network-transition tests."],"accept":"Competitiveness survives the approved envelope without future rescue assumptions. Any result that needs unannounced changes fails this claim; ordinary bug maintenance is distinguished from anti-chip intervention.","evidence":"Frozen-rule model; scenario results; excluded-rescue audit; G5 evidence.","priority":"GATE","profile":"P04; P12","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[7,11,19,21],"gate":"G5 / G2","owner":"Consensus + GPU leads","manual_page":32,"owner_lane":"node lane (a283f5f0d364ceef0)","run_status":"NOT RUN","evidence_path":"docs/analysis/class-v6/family-gate.md","run_id":"family-gate-20261008c","updated":"2026-10-08T21:49:19.800Z","evidence_record":{"requirement_id":"ROT-08","decision":"NOT RUN","method":"native","cell":"harness:family-gate","manifest_sha":"1a938abe4","run_id":"family-gate-20261008c","evidence":"docs/analysis/class-v6/family-gate.md","in_progress":false,"coverage":"partial: the no-rescue control document (38,000 drawn eras of the parameter family through the acceptance, the bound arithmetic on the counts, the honest line of what the gate cannot see), family-gate.md sections 1 to 6; the competitiveness envelope and the economic half are ECO's","release_identity":{"commit":"1a938abe4","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T21:49:19.800Z"},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"harness:family-gate":{"requirement_id":"ROT-08","decision":"NOT RUN","method":"native","cell":"harness:family-gate","manifest_sha":"1a938abe4","run_id":"family-gate-20261008c","evidence":"docs/analysis/class-v6/family-gate.md","in_progress":false,"coverage":"partial: the no-rescue control document (38,000 drawn eras of the parameter family through the acceptance, the bound arithmetic on the counts, the honest line of what the gate cannot see), family-gate.md sections 1 to 6; the competitiveness envelope and the economic half are ECO's","release_identity":{"commit":"1a938abe4","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T21:49:19.800Z"}}}]},{"code":"ECO","title":"Five-year coexistence economics","source":[8,13,18,24,26],"gate":"G4","owner":"Economics lead + independent reviewer","fixtures":"F6 adversarial costs; F7 scenario model; F2 operator costs","summary":"Test the world after specialised hardware exists, including new entrants and an already-funded competitor.","tests":[{"id":"ECO-01","title":"Reconcile complete cost per accepted work","setup":"Use benchmark outputs, current-source cost inputs recorded at execution time and separate reference scenarios.","steps":["Calculate hardware annualisation, electricity, host, cooling/hosting, failures, fees, downtime and residual value.","Use actual accepted work and independently verify units and period conversions.","Cross-check formulas using hand-worked fixtures, edge cases and a second implementation."],"accept":"All material costs and rejected-work effects appear once; model totals reconcile to raw inputs. No GPU upgrade is free, development cost is not double-counted, and burn is not mislabelled operator income.","evidence":"Versioned model; unit fixtures; independent reconciliation; input sources.","priority":"GATE","profile":"P12","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[8,13,18,24,26],"gate":"G4","owner":"Economics lead + independent reviewer","manual_page":33,"owner_lane":"research lane (ad6a2bd47d4a46105)","run_status":"NOT RUN","evidence_path":"sim/economy/coexist/README.md","run_id":"eco05-20261008-02","updated":"2026-10-08T20:07:38.167Z","evidence_record":{"cell":"model:coexist-fixtures","manifest_sha":"3f2050ab","coverage":{"ECO-01":"partial: the hand-worked fixtures and the second implementation; the independent reconciliation of inputs and units remains","ECO-08":"partial: the package runs from the served files (README, inputs with sources and labels, fixtures); the independent report, the rerun and the perturbations remain"},"at":"2026-10-08T20:07:38.167Z","method":"model","requirement_id":"ECO-01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"3f2050ab","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"in_progress_since":"2026-10-08T20:07:38.167Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"model:coexist-fixtures":{"cell":"model:coexist-fixtures","manifest_sha":"3f2050ab","coverage":{"ECO-01":"partial: the hand-worked fixtures and the second implementation; the independent reconciliation of inputs and units remains","ECO-08":"partial: the package runs from the served files (README, inputs with sources and labels, fixtures); the independent report, the rerun and the perturbations remain"},"at":"2026-10-08T20:07:38.167Z","method":"model","requirement_id":"ECO-01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"3f2050ab","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"eco05-20261008-02","evidence":"sim/economy/coexist/README.md","in_progress":true}}},{"id":"ECO-02","title":"Separate existing-owner and new-entrant viability","setup":"Use both installed hardware and purchasable replacement hardware in every mandatory cohort.","steps":["Evaluate marginal operation separately from recovery of a new purchase.","Stress resale at zero, hardware failures, financing and replacement cycles.","Report break-even power price and total cost relative to the strongest feasible specialist."],"accept":"P12 competitiveness conditions hold for the predeclared cohorts in required sustainable worlds. Existing-owner profitability cannot substitute for viable new entry; cards outside the envelope remain visible.","evidence":"Owner/entrant curves; price-date records; break-even tables; cohort outcomes.","priority":"GATE","profile":"P12","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[8,13,18,24,26],"gate":"G4","owner":"Economics lead + independent reviewer","manual_page":33,"owner_lane":"research lane (ad6a2bd47d4a46105)","run_status":"NOT RUN","evidence_path":"docs/analysis/class-v6/coexistence-model.md","run_id":"eco-d4-20261008-01","updated":"2026-10-08T19:55:03.336Z","evidence_record":{"cell":"harness:economics-model","manifest_sha":"db424d20","coverage":{"ECO-02":"partial: the existing-owner and new-entrant tests per class at three tariffs, MSRP and street, with resale (reference-population.md); resale at zero, failures and financing not yet stressed","ECO-03":"partial: the sunk-development case first with low and high ranges, private mining, hardware sales and the hybrid, GPU re-entry after the fleet (coexistence-model.md sections 2, 8a, 12 to 12c; the surface in floor/sram-and-floor.md 4.4); the source thresholds retired to coexistence-workbook.md","ECO-04":"partial: a per-class supply curve with the installed base as a cap and re-entry (coexistence-model.md), the market-structure axis (8a), the operator simulation (operator-simulation.md); dynamic agent policies beyond the single-rule reaction are the simulation second cut","ECO-06":"partial: the recipients and burns reconciled on the chain block-one split (docs/design/proving-payment.md), proving demand as an income axis at none, launch and spike (coexistence-model.md); the full-horizon issuance ledger owed","ECO-07":"partial: each dataset size scored by adversary burden against commodity burden on measured card rows and modelled chip tickets (docs/design/class-v6-rotating-family.md 10.0u); the 8.5 and 11.5 GiB knee costs expected, not measured","INC-02":"partial: the income streams kept separate in the model (mining subsidy, internal proving, external jobs; burns never counted as payment); the node-record and Ember reconciliation are the node and app lanes","INC-03":"partial: the profit-maximising operator simulation first run (mine, internal prove, external prove, off); per-card agents and switching costs are the second cut","INC-04":"partial: the four shocks in the operator simulation (the demand spike, the price fall, the largest provers leaving, the entrants), restored or not and in how many periods","INC-08":"partial: the supplier and operator dependence table (coexistence-model.md 8a); the signing, proving and aggregation roles are the node lane"},"at":"2026-10-08T19:55:03.336Z","method":"model","requirement_id":"ECO-02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"db424d20","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"in_progress_since":"2026-10-08T19:55:03.336Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"harness:economics-model":{"cell":"harness:economics-model","manifest_sha":"db424d20","coverage":{"ECO-02":"partial: the existing-owner and new-entrant tests per class at three tariffs, MSRP and street, with resale (reference-population.md); resale at zero, failures and financing not yet stressed","ECO-03":"partial: the sunk-development case first with low and high ranges, private mining, hardware sales and the hybrid, GPU re-entry after the fleet (coexistence-model.md sections 2, 8a, 12 to 12c; the surface in floor/sram-and-floor.md 4.4); the source thresholds retired to coexistence-workbook.md","ECO-04":"partial: a per-class supply curve with the installed base as a cap and re-entry (coexistence-model.md), the market-structure axis (8a), the operator simulation (operator-simulation.md); dynamic agent policies beyond the single-rule reaction are the simulation second cut","ECO-06":"partial: the recipients and burns reconciled on the chain block-one split (docs/design/proving-payment.md), proving demand as an income axis at none, launch and spike (coexistence-model.md); the full-horizon issuance ledger owed","ECO-07":"partial: each dataset size scored by adversary burden against commodity burden on measured card rows and modelled chip tickets (docs/design/class-v6-rotating-family.md 10.0u); the 8.5 and 11.5 GiB knee costs expected, not measured","INC-02":"partial: the income streams kept separate in the model (mining subsidy, internal proving, external jobs; burns never counted as payment); the node-record and Ember reconciliation are the node and app lanes","INC-03":"partial: the profit-maximising operator simulation first run (mine, internal prove, external prove, off); per-card agents and switching costs are the second cut","INC-04":"partial: the four shocks in the operator simulation (the demand spike, the price fall, the largest provers leaving, the entrants), restored or not and in how many periods","INC-08":"partial: the supplier and operator dependence table (coexistence-model.md 8a); the signing, proving and aggregation roles are the node lane"},"at":"2026-10-08T19:55:03.336Z","method":"model","requirement_id":"ECO-02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"db424d20","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"eco-d4-20261008-01","evidence":"docs/analysis/class-v6/coexistence-model.md","in_progress":true}}},{"id":"ECO-03","title":"Let the specialist keep its sunk development","setup":"Use three development cases: fully funded elsewhere, source-range low and source-range high.","steps":["Evaluate private mining, public hardware sales and a hybrid business model.","Allow shared IP, incremental revisions, multi-year survival and resale where justified.","Re-evaluate GPU entry after the specialist fleet is already installed."],"accept":"The coexistence claim does not depend on recovering the original chip research bill. Required P12 cases meet the approved envelope even at zero incremental development cost; failures cannot be hidden by the $23M/$340M source thresholds.","evidence":"Business-model variants; sunk-cost case; full cash-flow and adaptation records.","priority":"GATE","profile":"P12","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[8,13,18,24,26],"gate":"G4","owner":"Economics lead + independent reviewer","manual_page":33,"owner_lane":"research lane (ad6a2bd47d4a46105)","run_status":"NOT RUN","evidence_path":"docs/analysis/class-v6/coexistence-model.md","run_id":"eco-d4-20261008-01","updated":"2026-10-08T19:55:03.336Z","evidence_record":{"cell":"harness:economics-model","manifest_sha":"db424d20","coverage":{"ECO-02":"partial: the existing-owner and new-entrant tests per class at three tariffs, MSRP and street, with resale (reference-population.md); resale at zero, failures and financing not yet stressed","ECO-03":"partial: the sunk-development case first with low and high ranges, private mining, hardware sales and the hybrid, GPU re-entry after the fleet (coexistence-model.md sections 2, 8a, 12 to 12c; the surface in floor/sram-and-floor.md 4.4); the source thresholds retired to coexistence-workbook.md","ECO-04":"partial: a per-class supply curve with the installed base as a cap and re-entry (coexistence-model.md), the market-structure axis (8a), the operator simulation (operator-simulation.md); dynamic agent policies beyond the single-rule reaction are the simulation second cut","ECO-06":"partial: the recipients and burns reconciled on the chain block-one split (docs/design/proving-payment.md), proving demand as an income axis at none, launch and spike (coexistence-model.md); the full-horizon issuance ledger owed","ECO-07":"partial: each dataset size scored by adversary burden against commodity burden on measured card rows and modelled chip tickets (docs/design/class-v6-rotating-family.md 10.0u); the 8.5 and 11.5 GiB knee costs expected, not measured","INC-02":"partial: the income streams kept separate in the model (mining subsidy, internal proving, external jobs; burns never counted as payment); the node-record and Ember reconciliation are the node and app lanes","INC-03":"partial: the profit-maximising operator simulation first run (mine, internal prove, external prove, off); per-card agents and switching costs are the second cut","INC-04":"partial: the four shocks in the operator simulation (the demand spike, the price fall, the largest provers leaving, the entrants), restored or not and in how many periods","INC-08":"partial: the supplier and operator dependence table (coexistence-model.md 8a); the signing, proving and aggregation roles are the node lane"},"at":"2026-10-08T19:55:03.336Z","method":"model","requirement_id":"ECO-03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"db424d20","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"in_progress_since":"2026-10-08T19:55:03.336Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"harness:economics-model":{"cell":"harness:economics-model","manifest_sha":"db424d20","coverage":{"ECO-02":"partial: the existing-owner and new-entrant tests per class at three tariffs, MSRP and street, with resale (reference-population.md); resale at zero, failures and financing not yet stressed","ECO-03":"partial: the sunk-development case first with low and high ranges, private mining, hardware sales and the hybrid, GPU re-entry after the fleet (coexistence-model.md sections 2, 8a, 12 to 12c; the surface in floor/sram-and-floor.md 4.4); the source thresholds retired to coexistence-workbook.md","ECO-04":"partial: a per-class supply curve with the installed base as a cap and re-entry (coexistence-model.md), the market-structure axis (8a), the operator simulation (operator-simulation.md); dynamic agent policies beyond the single-rule reaction are the simulation second cut","ECO-06":"partial: the recipients and burns reconciled on the chain block-one split (docs/design/proving-payment.md), proving demand as an income axis at none, launch and spike (coexistence-model.md); the full-horizon issuance ledger owed","ECO-07":"partial: each dataset size scored by adversary burden against commodity burden on measured card rows and modelled chip tickets (docs/design/class-v6-rotating-family.md 10.0u); the 8.5 and 11.5 GiB knee costs expected, not measured","INC-02":"partial: the income streams kept separate in the model (mining subsidy, internal proving, external jobs; burns never counted as payment); the node-record and Ember reconciliation are the node and app lanes","INC-03":"partial: the profit-maximising operator simulation first run (mine, internal prove, external prove, off); per-card agents and switching costs are the second cut","INC-04":"partial: the four shocks in the operator simulation (the demand spike, the price fall, the largest provers leaving, the entrants), restored or not and in how many periods","INC-08":"partial: the supplier and operator dependence table (coexistence-model.md 8a); the signing, proving and aggregation roles are the node lane"},"at":"2026-10-08T19:55:03.336Z","method":"model","requirement_id":"ECO-03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"db424d20","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"eco-d4-20261008-01","evidence":"docs/analysis/class-v6/coexistence-model.md","in_progress":true}}},{"id":"ECO-04","title":"Model entry, exit and difficulty response","setup":"Use independently reviewed dynamic operator policies, not fixed market shares.","steps":["Let agents buy, sell, switch off, re-enter and choose tasks based on declared costs and expected income.","Apply the actual difficulty/reward rules and test optimistic and adversarial liquidity/capital availability.","Compare equilibrium and transient outcomes across independent starting conditions."],"accept":"Mandatory worlds satisfy P12 without an imposed GPU share or artificial specialist capacity limit. Concentration, oscillations and excluded regions are reported; model behaviour matches unit and conservation checks.","evidence":"Agent policies; sensitivity seeds; market-share paths; independent model review.","priority":"GATE","profile":"P12","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[8,13,18,24,26],"gate":"G4","owner":"Economics lead + independent reviewer","manual_page":34,"owner_lane":"research lane (ad6a2bd47d4a46105)","run_status":"NOT RUN","evidence_path":"docs/analysis/class-v6/coexistence-model.md","run_id":"eco-d4-20261008-01","updated":"2026-10-08T19:55:03.336Z","evidence_record":{"cell":"harness:economics-model","manifest_sha":"db424d20","coverage":{"ECO-02":"partial: the existing-owner and new-entrant tests per class at three tariffs, MSRP and street, with resale (reference-population.md); resale at zero, failures and financing not yet stressed","ECO-03":"partial: the sunk-development case first with low and high ranges, private mining, hardware sales and the hybrid, GPU re-entry after the fleet (coexistence-model.md sections 2, 8a, 12 to 12c; the surface in floor/sram-and-floor.md 4.4); the source thresholds retired to coexistence-workbook.md","ECO-04":"partial: a per-class supply curve with the installed base as a cap and re-entry (coexistence-model.md), the market-structure axis (8a), the operator simulation (operator-simulation.md); dynamic agent policies beyond the single-rule reaction are the simulation second cut","ECO-06":"partial: the recipients and burns reconciled on the chain block-one split (docs/design/proving-payment.md), proving demand as an income axis at none, launch and spike (coexistence-model.md); the full-horizon issuance ledger owed","ECO-07":"partial: each dataset size scored by adversary burden against commodity burden on measured card rows and modelled chip tickets (docs/design/class-v6-rotating-family.md 10.0u); the 8.5 and 11.5 GiB knee costs expected, not measured","INC-02":"partial: the income streams kept separate in the model (mining subsidy, internal proving, external jobs; burns never counted as payment); the node-record and Ember reconciliation are the node and app lanes","INC-03":"partial: the profit-maximising operator simulation first run (mine, internal prove, external prove, off); per-card agents and switching costs are the second cut","INC-04":"partial: the four shocks in the operator simulation (the demand spike, the price fall, the largest provers leaving, the entrants), restored or not and in how many periods","INC-08":"partial: the supplier and operator dependence table (coexistence-model.md 8a); the signing, proving and aggregation roles are the node lane"},"at":"2026-10-08T19:55:03.336Z","method":"model","requirement_id":"ECO-04","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"db424d20","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"in_progress_since":"2026-10-08T19:55:03.336Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"harness:economics-model":{"cell":"harness:economics-model","manifest_sha":"db424d20","coverage":{"ECO-02":"partial: the existing-owner and new-entrant tests per class at three tariffs, MSRP and street, with resale (reference-population.md); resale at zero, failures and financing not yet stressed","ECO-03":"partial: the sunk-development case first with low and high ranges, private mining, hardware sales and the hybrid, GPU re-entry after the fleet (coexistence-model.md sections 2, 8a, 12 to 12c; the surface in floor/sram-and-floor.md 4.4); the source thresholds retired to coexistence-workbook.md","ECO-04":"partial: a per-class supply curve with the installed base as a cap and re-entry (coexistence-model.md), the market-structure axis (8a), the operator simulation (operator-simulation.md); dynamic agent policies beyond the single-rule reaction are the simulation second cut","ECO-06":"partial: the recipients and burns reconciled on the chain block-one split (docs/design/proving-payment.md), proving demand as an income axis at none, launch and spike (coexistence-model.md); the full-horizon issuance ledger owed","ECO-07":"partial: each dataset size scored by adversary burden against commodity burden on measured card rows and modelled chip tickets (docs/design/class-v6-rotating-family.md 10.0u); the 8.5 and 11.5 GiB knee costs expected, not measured","INC-02":"partial: the income streams kept separate in the model (mining subsidy, internal proving, external jobs; burns never counted as payment); the node-record and Ember reconciliation are the node and app lanes","INC-03":"partial: the profit-maximising operator simulation first run (mine, internal prove, external prove, off); per-card agents and switching costs are the second cut","INC-04":"partial: the four shocks in the operator simulation (the demand spike, the price fall, the largest provers leaving, the entrants), restored or not and in how many periods","INC-08":"partial: the supplier and operator dependence table (coexistence-model.md 8a); the signing, proving and aggregation roles are the node lane"},"at":"2026-10-08T19:55:03.336Z","method":"model","requirement_id":"ECO-04","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"db424d20","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"eco-d4-20261008-01","evidence":"docs/analysis/class-v6/coexistence-model.md","in_progress":true}}},{"id":"ECO-05","title":"Stress success, contraction and cheap electricity","setup":"Freeze mandatory scenarios before results: revenue bands, tariff range, lifetimes and demand states.","steps":["Run the P12 factorial grid plus adversarial combinations selected by the independent reviewer.","Test a large successful network as well as weak-revenue and heterogeneous-tariff cases.","Distinguish feasible sustained-entry worlds from collapse scenarios with no rational profitable operator."],"accept":"No small-network or token-appreciation assumption props up the primary claim. Required viable worlds pass the envelope; collapse worlds show honest contraction and safety, not fabricated profits. Failure regions are explicit.","evidence":"Scenario register; full result cube; boundary plots; failed-world explanations.","priority":"GATE","profile":"P12","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[8,13,18,24,26],"gate":"G4","owner":"Economics lead + independent reviewer","manual_page":34,"owner_lane":"research lane (ad6a2bd47d4a46105)","run_status":"FAIL","evidence_path":"docs/analysis/class-v6/eco-05-results.md","run_id":"eco05-20261008-02","updated":"2026-10-08T20:07:38.167Z","evidence_record":{"cell":"model:eco05","manifest_sha":"3f2050ab","coverage":{"ECO-05":"full on the frozen register's grid and the eight adversarial rows at the team's reconciled specialist rows; the independent reviewer's own adversarial rows (ECO-08) remain"},"at":"2026-10-08T20:07:38.167Z","method":"model","requirement_id":"ECO-05","decision":"FAIL","reviewer":"","claim_impact":"","release_identity":{"commit":"3f2050ab","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"model:eco05":{"cell":"model:eco05","manifest_sha":"3f2050ab","coverage":{"ECO-05":"full on the frozen register's grid and the eight adversarial rows at the team's reconciled specialist rows; the independent reviewer's own adversarial rows (ECO-08) remain"},"at":"2026-10-08T20:07:38.167Z","method":"model","requirement_id":"ECO-05","decision":"FAIL","reviewer":"","claim_impact":"","release_identity":{"commit":"3f2050ab","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"eco05-20261008-02","evidence":"docs/analysis/class-v6/eco-05-results.md","in_progress":false}}},{"id":"ECO-06","title":"Fund security and proving as issuance falls","setup":"Use the frozen supply, halving, fee, burn and reward rules rather than source prose assumptions.","steps":["Reconcile revenue reaching miners, internal provers, developers and burns over the full horizon.","Test flat/declining fees and no external proving income; separately introduce external demand.","Calculate capacity and security-provider coverage after each reward transition."],"accept":"Recurring compensation is explicit and internally consistent; mandatory sustainable scenarios meet P12. Burned amounts are never counted as payments, and external operator income is not assumed to fund internal work automatically.","evidence":"Issuance/fee ledger; scenario cash flows; funding-shortfall report.","priority":"GATE","profile":"P12","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[8,13,18,24,26],"gate":"G4","owner":"Economics lead + independent reviewer","manual_page":34,"owner_lane":"research lane (ad6a2bd47d4a46105)","run_status":"NOT RUN","evidence_path":"docs/analysis/class-v6/coexistence-model.md","run_id":"eco-d4-20261008-01","updated":"2026-10-08T19:55:03.336Z","evidence_record":{"cell":"harness:economics-model","manifest_sha":"db424d20","coverage":{"ECO-02":"partial: the existing-owner and new-entrant tests per class at three tariffs, MSRP and street, with resale (reference-population.md); resale at zero, failures and financing not yet stressed","ECO-03":"partial: the sunk-development case first with low and high ranges, private mining, hardware sales and the hybrid, GPU re-entry after the fleet (coexistence-model.md sections 2, 8a, 12 to 12c; the surface in floor/sram-and-floor.md 4.4); the source thresholds retired to coexistence-workbook.md","ECO-04":"partial: a per-class supply curve with the installed base as a cap and re-entry (coexistence-model.md), the market-structure axis (8a), the operator simulation (operator-simulation.md); dynamic agent policies beyond the single-rule reaction are the simulation second cut","ECO-06":"partial: the recipients and burns reconciled on the chain block-one split (docs/design/proving-payment.md), proving demand as an income axis at none, launch and spike (coexistence-model.md); the full-horizon issuance ledger owed","ECO-07":"partial: each dataset size scored by adversary burden against commodity burden on measured card rows and modelled chip tickets (docs/design/class-v6-rotating-family.md 10.0u); the 8.5 and 11.5 GiB knee costs expected, not measured","INC-02":"partial: the income streams kept separate in the model (mining subsidy, internal proving, external jobs; burns never counted as payment); the node-record and Ember reconciliation are the node and app lanes","INC-03":"partial: the profit-maximising operator simulation first run (mine, internal prove, external prove, off); per-card agents and switching costs are the second cut","INC-04":"partial: the four shocks in the operator simulation (the demand spike, the price fall, the largest provers leaving, the entrants), restored or not and in how many periods","INC-08":"partial: the supplier and operator dependence table (coexistence-model.md 8a); the signing, proving and aggregation roles are the node lane"},"at":"2026-10-08T19:55:03.336Z","method":"model","requirement_id":"ECO-06","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"db424d20","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"in_progress_since":"2026-10-08T19:55:03.336Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"harness:economics-model":{"cell":"harness:economics-model","manifest_sha":"db424d20","coverage":{"ECO-02":"partial: the existing-owner and new-entrant tests per class at three tariffs, MSRP and street, with resale (reference-population.md); resale at zero, failures and financing not yet stressed","ECO-03":"partial: the sunk-development case first with low and high ranges, private mining, hardware sales and the hybrid, GPU re-entry after the fleet (coexistence-model.md sections 2, 8a, 12 to 12c; the surface in floor/sram-and-floor.md 4.4); the source thresholds retired to coexistence-workbook.md","ECO-04":"partial: a per-class supply curve with the installed base as a cap and re-entry (coexistence-model.md), the market-structure axis (8a), the operator simulation (operator-simulation.md); dynamic agent policies beyond the single-rule reaction are the simulation second cut","ECO-06":"partial: the recipients and burns reconciled on the chain block-one split (docs/design/proving-payment.md), proving demand as an income axis at none, launch and spike (coexistence-model.md); the full-horizon issuance ledger owed","ECO-07":"partial: each dataset size scored by adversary burden against commodity burden on measured card rows and modelled chip tickets (docs/design/class-v6-rotating-family.md 10.0u); the 8.5 and 11.5 GiB knee costs expected, not measured","INC-02":"partial: the income streams kept separate in the model (mining subsidy, internal proving, external jobs; burns never counted as payment); the node-record and Ember reconciliation are the node and app lanes","INC-03":"partial: the profit-maximising operator simulation first run (mine, internal prove, external prove, off); per-card agents and switching costs are the second cut","INC-04":"partial: the four shocks in the operator simulation (the demand spike, the price fall, the largest provers leaving, the entrants), restored or not and in how many periods","INC-08":"partial: the supplier and operator dependence table (coexistence-model.md 8a); the signing, proving and aggregation roles are the node lane"},"at":"2026-10-08T19:55:03.336Z","method":"model","requirement_id":"ECO-06","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"db424d20","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"eco-d4-20261008-01","evidence":"docs/analysis/class-v6/coexistence-model.md","in_progress":true}}},{"id":"ECO-07","title":"Price memory growth and honest-card displacement","setup":"Use GPU-05 and ROT-06 costs with the cheapest specialist adaptation.","steps":["For each dataset increment, compare specialist cost increases with excluded cards and lost proving capacity.","Include ordinary-owner replacement, resale and reloading expenses.","Run alternate bounded schedules without assigning automatic chip death."],"accept":"The retained schedule meets P06/P12 and has an evidence-backed net competitiveness benefit. A schedule that mainly harms accessible GPUs fails; excluded tiers and mitigations are documented before activation.","evidence":"Per-step cost/retention table; alternative schedules; approval record.","priority":"GATE","profile":"P06; P12","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[8,13,18,24,26],"gate":"G4","owner":"Economics lead + independent reviewer","manual_page":35,"owner_lane":"research lane (ad6a2bd47d4a46105)","run_status":"NOT RUN","evidence_path":"docs/analysis/class-v6/coexistence-model.md","run_id":"eco-d4-20261008-01","updated":"2026-10-08T19:55:03.336Z","evidence_record":{"cell":"harness:economics-model","manifest_sha":"db424d20","coverage":{"ECO-02":"partial: the existing-owner and new-entrant tests per class at three tariffs, MSRP and street, with resale (reference-population.md); resale at zero, failures and financing not yet stressed","ECO-03":"partial: the sunk-development case first with low and high ranges, private mining, hardware sales and the hybrid, GPU re-entry after the fleet (coexistence-model.md sections 2, 8a, 12 to 12c; the surface in floor/sram-and-floor.md 4.4); the source thresholds retired to coexistence-workbook.md","ECO-04":"partial: a per-class supply curve with the installed base as a cap and re-entry (coexistence-model.md), the market-structure axis (8a), the operator simulation (operator-simulation.md); dynamic agent policies beyond the single-rule reaction are the simulation second cut","ECO-06":"partial: the recipients and burns reconciled on the chain block-one split (docs/design/proving-payment.md), proving demand as an income axis at none, launch and spike (coexistence-model.md); the full-horizon issuance ledger owed","ECO-07":"partial: each dataset size scored by adversary burden against commodity burden on measured card rows and modelled chip tickets (docs/design/class-v6-rotating-family.md 10.0u); the 8.5 and 11.5 GiB knee costs expected, not measured","INC-02":"partial: the income streams kept separate in the model (mining subsidy, internal proving, external jobs; burns never counted as payment); the node-record and Ember reconciliation are the node and app lanes","INC-03":"partial: the profit-maximising operator simulation first run (mine, internal prove, external prove, off); per-card agents and switching costs are the second cut","INC-04":"partial: the four shocks in the operator simulation (the demand spike, the price fall, the largest provers leaving, the entrants), restored or not and in how many periods","INC-08":"partial: the supplier and operator dependence table (coexistence-model.md 8a); the signing, proving and aggregation roles are the node lane"},"at":"2026-10-08T19:55:03.336Z","method":"model","requirement_id":"ECO-07","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"db424d20","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"in_progress_since":"2026-10-08T19:55:03.336Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"harness:economics-model":{"cell":"harness:economics-model","manifest_sha":"db424d20","coverage":{"ECO-02":"partial: the existing-owner and new-entrant tests per class at three tariffs, MSRP and street, with resale (reference-population.md); resale at zero, failures and financing not yet stressed","ECO-03":"partial: the sunk-development case first with low and high ranges, private mining, hardware sales and the hybrid, GPU re-entry after the fleet (coexistence-model.md sections 2, 8a, 12 to 12c; the surface in floor/sram-and-floor.md 4.4); the source thresholds retired to coexistence-workbook.md","ECO-04":"partial: a per-class supply curve with the installed base as a cap and re-entry (coexistence-model.md), the market-structure axis (8a), the operator simulation (operator-simulation.md); dynamic agent policies beyond the single-rule reaction are the simulation second cut","ECO-06":"partial: the recipients and burns reconciled on the chain block-one split (docs/design/proving-payment.md), proving demand as an income axis at none, launch and spike (coexistence-model.md); the full-horizon issuance ledger owed","ECO-07":"partial: each dataset size scored by adversary burden against commodity burden on measured card rows and modelled chip tickets (docs/design/class-v6-rotating-family.md 10.0u); the 8.5 and 11.5 GiB knee costs expected, not measured","INC-02":"partial: the income streams kept separate in the model (mining subsidy, internal proving, external jobs; burns never counted as payment); the node-record and Ember reconciliation are the node and app lanes","INC-03":"partial: the profit-maximising operator simulation first run (mine, internal prove, external prove, off); per-card agents and switching costs are the second cut","INC-04":"partial: the four shocks in the operator simulation (the demand spike, the price fall, the largest provers leaving, the entrants), restored or not and in how many periods","INC-08":"partial: the supplier and operator dependence table (coexistence-model.md 8a); the signing, proving and aggregation roles are the node lane"},"at":"2026-10-08T19:55:03.336Z","method":"model","requirement_id":"ECO-07","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"db424d20","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"eco-d4-20261008-01","evidence":"docs/analysis/class-v6/coexistence-model.md","in_progress":true}}},{"id":"ECO-08","title":"Reproduce and adversarially audit the model","setup":"Give an independent economist or qualified analyst the code, inputs and frozen success criteria.","steps":["Recalculate required worlds and perturb favourable assumptions against the team.","Check dependence on discounts, utilisation, capital limits, artificial prices and future upgrades.","Publish the sensitivity range and state which conclusions are conditional."],"accept":"Material results reproduce, required scenarios pass and no unacknowledged assumption dominates the claim. The model supports a bounded coexistence conclusion, not a percentage probability that no chip will appear.","evidence":"Independent report; rerun outputs; model limitations; approved claim envelope.","priority":"GATE","profile":"P12","cadence":"Release candidate; repeat after relevant changes","method":"Independent economic review","status":"NOT RUN","source":[8,13,18,24,26],"gate":"G4","owner":"Economics lead + independent reviewer","manual_page":35,"owner_lane":"research lane (ad6a2bd47d4a46105)","run_status":"NOT RUN","evidence_path":"sim/economy/coexist/README.md","run_id":"eco05-20261008-02","updated":"2026-10-08T20:07:38.167Z","evidence_record":{"cell":"model:coexist-fixtures","manifest_sha":"3f2050ab","coverage":{"ECO-01":"partial: the hand-worked fixtures and the second implementation; the independent reconciliation of inputs and units remains","ECO-08":"partial: the package runs from the served files (README, inputs with sources and labels, fixtures); the independent report, the rerun and the perturbations remain"},"at":"2026-10-08T20:07:38.167Z","method":"model","requirement_id":"ECO-08","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"3f2050ab","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"in_progress_since":"2026-10-08T20:07:38.167Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"model:coexist-fixtures":{"cell":"model:coexist-fixtures","manifest_sha":"3f2050ab","coverage":{"ECO-01":"partial: the hand-worked fixtures and the second implementation; the independent reconciliation of inputs and units remains","ECO-08":"partial: the package runs from the served files (README, inputs with sources and labels, fixtures); the independent report, the rerun and the perturbations remain"},"at":"2026-10-08T20:07:38.167Z","method":"model","requirement_id":"ECO-08","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"3f2050ab","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"eco05-20261008-02","evidence":"sim/economy/coexist/README.md","in_progress":true}}}]},{"code":"EVM","title":"Execution and developer compatibility","source":[15,25,34,35,36,37],"gate":"Technical readiness","owner":"Execution lead + independent implementer","fixtures":"F0 execution-fork semantics; F5 transactions/contracts; F4 multi-node network","summary":"Keep familiar applications while making every difference and metering rule explicit and reproducible.","tests":[{"id":"EVM-01","title":"Match the selected EVM semantics","setup":"Pin the intended execution fork, revm version and all Igneum deviations in F0.","steps":["Run the applicable upstream execution/state fixtures plus independently written deviation tests.","Execute identical blocks on multiple nodes and compare roots, receipts, logs, gas and failure outcomes.","Minimise mismatches and distinguish intended differences from implementation defects."],"accept":"All applicable vectors match; every deviation has a documented test and developer consequence. No claim of universal Ethereum equivalence or Ethereum settlement security is inferred.","evidence":"Fixture/version inventory; root/receipt diffs; deviation matrix.","priority":"BLOCKER","profile":"P01; P09","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[15,25,34,35,36,37],"gate":"Technical readiness","owner":"Execution lead + independent implementer","manual_page":36,"owner_lane":"reference-apps lane (a2060899d2a27d31c)","run_status":"NOT RUN","evidence_path":"docs/build/compatibility.md","run_id":"team-2026-10-08","updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"no EVM conformance-vector harness is mapped tonight; the exec suite does not run the reference test vectors","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"EVM-01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"in_progress_since":"2026-10-08 18:3x UK","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"what_was_run":"/compatibility 20 of 20 rows PASSED on igneum-devnet-4","run_by":"reference-apps lane (a2060899d2a27d31c)","under_the_standard":"no: team-run before the standard's procedure; the status is RUNNING until the case is re-run under its steps with the profile's numbers and an independent run where the profile asks one","pass_or_fail_today":"not judged under the standard yet","method":"static","requirement_id":"EVM-01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"team-2026-10-08","evidence":"docs/build/compatibility.md","in_progress":true}}},{"id":"EVM-02","title":"Preserve transaction binding and replay protection","setup":"Use signed transfers, contract calls and deployment transactions with boundary field values.","steps":["Alter chain identity, nonce, signature, fee caps and recipient after signing.","Replay across nodes, forks and distinct test networks; resubmit around reorganisation.","Check mempool admission and final consensus execution independently."],"accept":"Unauthorised, wrong-network or duplicate spends are rejected according to F0. Valid replacements follow the declared rule; mempool filtering alone is not evidence of consensus enforcement.","evidence":"Signed corpus; admission/execution outcomes; account-state reconciliation.","priority":"BLOCKER","profile":"P01","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[15,25,34,35,36,37],"gate":"Technical readiness","owner":"Execution lead + independent implementer","manual_page":36,"owner_lane":"reference-apps lane (a2060899d2a27d31c)","run_status":"NOT RUN","evidence_path":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-exec.log","run_id":"202-5d53a591-1176efb9","updated":"2026-10-09T00:33:39.243Z","evidence_record":{"requirement_id":"EVM-02","decision":"NOT RUN","method":"native","cell":"suite:exec","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-exec.log","in_progress":false,"coverage":"partial: the replay tests on the day stream; the signature and chain-id binding vectors are an EVM harness still to map","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; exec on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 24s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."},"in_progress_since":"2026-10-08T19:32:50.856Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"suite:exec":{"requirement_id":"EVM-02","decision":"NOT RUN","method":"native","cell":"suite:exec","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-exec.log","in_progress":false,"coverage":"partial: the replay tests on the day stream; the signature and chain-id binding vectors are an EVM harness still to map","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; exec on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 24s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."}}},{"id":"EVM-03","title":"Test two-dimensional fees and proving limits","setup":"Freeze fee dimensions, estimator rules, abort behaviour and refund policy.","steps":["Run workloads near and beyond execution and proving budgets, including state-heavy pathological cases.","Compare estimated fees with charged fees and validate rollback/receipt status on abort.","Mutate a block producer to omit or undercharge expensive work."],"accept":"Deterministic metering, charged amounts and aborted state agree across nodes and proofs. Resource bounds hold; fee estimates meet P09 for accepted supported cases. Undercharged invalid blocks cannot bypass consensus.","evidence":"Metering traces; fee fixtures; estimator errors; invalid-block rejection.","priority":"BLOCKER","profile":"P01; P09","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[15,25,34,35,36,37],"gate":"Technical readiness","owner":"Execution lead + independent implementer","manual_page":36,"owner_lane":"reference-apps lane (a2060899d2a27d31c)","run_status":"NOT RUN","evidence_path":"tools/reference-apps/compat/results.json","run_id":"ra-20261008T1744-evm","updated":"2026-10-08T19:13:20.781Z","evidence_record":{"cell":"harness:reference-apps-compat","manifest_sha":"4cdcc488","coverage":{"EVM-02":"partial: a transaction signed for the previous devnet's chain id is refused and a signed transaction sent twice is refused on the live devnet; the F0 replacement rule and the mempool-independent evidence are the exec suite's","EVM-03":"partial: fee quotes, eth_estimateGas against gasUsed for a transfer and a call, the documented 21,000 local-limit difference and the pgas receipt fields on the live devnet; determinism across nodes and proofs and the P09 bounds are the proving-limit harness (not run)","EVM-04":"partial: block.number, timestamp, chainid, basefee, blockhash(number-1), CREATE2 address, block.coinbase and block.prevrandao read against the chain and the documented differences; conformance vectors for F0 are EVM-01's","EVM-05":"partial: ERC-20 deploy, transfer, approve/transferFrom, a probe contract, a persisting counter, a revert with reason and an out-of-gas call on the live devnet; application-level invariants of the DEX integration set are the DEX lane's","EVM-06":"partial: receipt fields and logsBloom recompute, the block's receipts trie root rebuilds, eth_getLogs by address/topic/range, eth_getBlockByNumber with full transactions and eth_getBlockReceipts; wallet UI states (included, executed, proven, finalised) and the indexer's canonical-record check are the wallet and explorer lanes' rows"},"at":"2026-10-08T19:13:20.781Z","method":"static","requirement_id":"EVM-03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"4cdcc488","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"in_progress_since":"2026-10-08T19:13:20.781Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"harness:reference-apps-compat":{"cell":"harness:reference-apps-compat","manifest_sha":"4cdcc488","coverage":{"EVM-02":"partial: a transaction signed for the previous devnet's chain id is refused and a signed transaction sent twice is refused on the live devnet; the F0 replacement rule and the mempool-independent evidence are the exec suite's","EVM-03":"partial: fee quotes, eth_estimateGas against gasUsed for a transfer and a call, the documented 21,000 local-limit difference and the pgas receipt fields on the live devnet; determinism across nodes and proofs and the P09 bounds are the proving-limit harness (not run)","EVM-04":"partial: block.number, timestamp, chainid, basefee, blockhash(number-1), CREATE2 address, block.coinbase and block.prevrandao read against the chain and the documented differences; conformance vectors for F0 are EVM-01's","EVM-05":"partial: ERC-20 deploy, transfer, approve/transferFrom, a probe contract, a persisting counter, a revert with reason and an out-of-gas call on the live devnet; application-level invariants of the DEX integration set are the DEX lane's","EVM-06":"partial: receipt fields and logsBloom recompute, the block's receipts trie root rebuilds, eth_getLogs by address/topic/range, eth_getBlockByNumber with full transactions and eth_getBlockReceipts; wallet UI states (included, executed, proven, finalised) and the indexer's canonical-record check are the wallet and explorer lanes' rows"},"at":"2026-10-08T19:13:20.781Z","method":"static","requirement_id":"EVM-03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"4cdcc488","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"ra-20261008T1744-evm","evidence":"tools/reference-apps/compat/results.json","in_progress":true}}},{"id":"EVM-04","title":"Exercise block context and randomness assumptions","setup":"Use contracts sensitive to timestamp, height/context, randomness and ordering.","steps":["Compare the declared Igneum semantics with developers' documented expectations.","Test boundary transitions, miner-influenced inputs and adversarial ordering in the isolated network.","Run dependency reviews for applications using these values for economic decisions."],"accept":"Semantics match F0 and differences are surfaced in compatibility documentation. No source of miner influence is marketed as unbiased randomness; incompatible applications are not included in the compatibility claim.","evidence":"Context-contract results; threat notes; compatibility exclusions.","priority":"BLOCKER","profile":"P01; P09","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[15,25,34,35,36,37],"gate":"Technical readiness","owner":"Execution lead + independent implementer","manual_page":37,"owner_lane":"reference-apps lane (a2060899d2a27d31c)","run_status":"NOT RUN","evidence_path":"tools/reference-apps/compat/results.json","run_id":"ra-20261008T1744-evm","updated":"2026-10-08T19:13:20.781Z","evidence_record":{"cell":"harness:reference-apps-compat","manifest_sha":"4cdcc488","coverage":{"EVM-02":"partial: a transaction signed for the previous devnet's chain id is refused and a signed transaction sent twice is refused on the live devnet; the F0 replacement rule and the mempool-independent evidence are the exec suite's","EVM-03":"partial: fee quotes, eth_estimateGas against gasUsed for a transfer and a call, the documented 21,000 local-limit difference and the pgas receipt fields on the live devnet; determinism across nodes and proofs and the P09 bounds are the proving-limit harness (not run)","EVM-04":"partial: block.number, timestamp, chainid, basefee, blockhash(number-1), CREATE2 address, block.coinbase and block.prevrandao read against the chain and the documented differences; conformance vectors for F0 are EVM-01's","EVM-05":"partial: ERC-20 deploy, transfer, approve/transferFrom, a probe contract, a persisting counter, a revert with reason and an out-of-gas call on the live devnet; application-level invariants of the DEX integration set are the DEX lane's","EVM-06":"partial: receipt fields and logsBloom recompute, the block's receipts trie root rebuilds, eth_getLogs by address/topic/range, eth_getBlockByNumber with full transactions and eth_getBlockReceipts; wallet UI states (included, executed, proven, finalised) and the indexer's canonical-record check are the wallet and explorer lanes' rows"},"at":"2026-10-08T19:13:20.781Z","method":"static","requirement_id":"EVM-04","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"4cdcc488","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"in_progress_since":"2026-10-08T19:13:20.781Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"harness:reference-apps-compat":{"cell":"harness:reference-apps-compat","manifest_sha":"4cdcc488","coverage":{"EVM-02":"partial: a transaction signed for the previous devnet's chain id is refused and a signed transaction sent twice is refused on the live devnet; the F0 replacement rule and the mempool-independent evidence are the exec suite's","EVM-03":"partial: fee quotes, eth_estimateGas against gasUsed for a transfer and a call, the documented 21,000 local-limit difference and the pgas receipt fields on the live devnet; determinism across nodes and proofs and the P09 bounds are the proving-limit harness (not run)","EVM-04":"partial: block.number, timestamp, chainid, basefee, blockhash(number-1), CREATE2 address, block.coinbase and block.prevrandao read against the chain and the documented differences; conformance vectors for F0 are EVM-01's","EVM-05":"partial: ERC-20 deploy, transfer, approve/transferFrom, a probe contract, a persisting counter, a revert with reason and an out-of-gas call on the live devnet; application-level invariants of the DEX integration set are the DEX lane's","EVM-06":"partial: receipt fields and logsBloom recompute, the block's receipts trie root rebuilds, eth_getLogs by address/topic/range, eth_getBlockByNumber with full transactions and eth_getBlockReceipts; wallet UI states (included, executed, proven, finalised) and the indexer's canonical-record check are the wallet and explorer lanes' rows"},"at":"2026-10-08T19:13:20.781Z","method":"static","requirement_id":"EVM-04","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"4cdcc488","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"ra-20261008T1744-evm","evidence":"tools/reference-apps/compat/results.json","in_progress":true}}},{"id":"EVM-05","title":"Run representative contract integration journeys","setup":"Use versioned transfer/token, NFT, multisignature, exchange and upgrade-pattern fixtures where supported.","steps":["Deploy, initialise, transact, revert and upgrade each contract using ordinary tooling.","Exercise events, logs, balances, storage and call traces across node restart/reorganisation.","Compare expected application invariants with native execution and proved results."],"accept":"Supported journeys preserve their stated invariants; all deviations are documented. Example deployment success alone cannot stand in for application-level correctness or financial audit.","evidence":"Contract fixture hashes; transaction journeys; invariant and state comparisons.","priority":"BLOCKER","profile":"P01; P09","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[15,25,34,35,36,37],"gate":"Technical readiness","owner":"Execution lead + independent implementer","manual_page":37,"owner_lane":"reference-apps lane (a2060899d2a27d31c)","run_status":"NOT RUN","evidence_path":"tools/reference-apps/compat/results.json","run_id":"ra-20261008T1744-evm","updated":"2026-10-08T19:13:20.781Z","evidence_record":{"cell":"harness:reference-apps-compat","manifest_sha":"4cdcc488","coverage":{"EVM-02":"partial: a transaction signed for the previous devnet's chain id is refused and a signed transaction sent twice is refused on the live devnet; the F0 replacement rule and the mempool-independent evidence are the exec suite's","EVM-03":"partial: fee quotes, eth_estimateGas against gasUsed for a transfer and a call, the documented 21,000 local-limit difference and the pgas receipt fields on the live devnet; determinism across nodes and proofs and the P09 bounds are the proving-limit harness (not run)","EVM-04":"partial: block.number, timestamp, chainid, basefee, blockhash(number-1), CREATE2 address, block.coinbase and block.prevrandao read against the chain and the documented differences; conformance vectors for F0 are EVM-01's","EVM-05":"partial: ERC-20 deploy, transfer, approve/transferFrom, a probe contract, a persisting counter, a revert with reason and an out-of-gas call on the live devnet; application-level invariants of the DEX integration set are the DEX lane's","EVM-06":"partial: receipt fields and logsBloom recompute, the block's receipts trie root rebuilds, eth_getLogs by address/topic/range, eth_getBlockByNumber with full transactions and eth_getBlockReceipts; wallet UI states (included, executed, proven, finalised) and the indexer's canonical-record check are the wallet and explorer lanes' rows"},"at":"2026-10-08T19:13:20.781Z","method":"static","requirement_id":"EVM-05","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"4cdcc488","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"in_progress_since":"2026-10-08T19:13:20.781Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"harness:reference-apps-compat":{"cell":"harness:reference-apps-compat","manifest_sha":"4cdcc488","coverage":{"EVM-02":"partial: a transaction signed for the previous devnet's chain id is refused and a signed transaction sent twice is refused on the live devnet; the F0 replacement rule and the mempool-independent evidence are the exec suite's","EVM-03":"partial: fee quotes, eth_estimateGas against gasUsed for a transfer and a call, the documented 21,000 local-limit difference and the pgas receipt fields on the live devnet; determinism across nodes and proofs and the P09 bounds are the proving-limit harness (not run)","EVM-04":"partial: block.number, timestamp, chainid, basefee, blockhash(number-1), CREATE2 address, block.coinbase and block.prevrandao read against the chain and the documented differences; conformance vectors for F0 are EVM-01's","EVM-05":"partial: ERC-20 deploy, transfer, approve/transferFrom, a probe contract, a persisting counter, a revert with reason and an out-of-gas call on the live devnet; application-level invariants of the DEX integration set are the DEX lane's","EVM-06":"partial: receipt fields and logsBloom recompute, the block's receipts trie root rebuilds, eth_getLogs by address/topic/range, eth_getBlockByNumber with full transactions and eth_getBlockReceipts; wallet UI states (included, executed, proven, finalised) and the indexer's canonical-record check are the wallet and explorer lanes' rows"},"at":"2026-10-08T19:13:20.781Z","method":"static","requirement_id":"EVM-05","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"4cdcc488","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"ra-20261008T1744-evm","evidence":"tools/reference-apps/compat/results.json","in_progress":true}}},{"id":"EVM-06","title":"Validate wallets, RPC and indexers","setup":"Pin supported RPC methods and response semantics; use normal developer clients and an independent indexer.","steps":["Test fee estimation, pending/final states, subscriptions, pagination and reconnects.","Reindex from genesis or the documented trust anchor after pruning and restart.","Compare logs, receipts and balances with independently validated chain state."],"accept":"No missing/duplicate canonical records; unsupported methods are explicit. UI states distinguish included, executed, proven and finalised. Malformed RPC input cannot crash validators or leak secrets.","evidence":"RPC conformance report; reindex comparison; reconnect/edge-case logs.","priority":"BLOCKER","profile":"P01; P09","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[15,25,34,35,36,37],"gate":"Technical readiness","owner":"Execution lead + independent implementer","manual_page":37,"owner_lane":"reference-apps lane (a2060899d2a27d31c)","run_status":"NOT RUN","evidence_path":"tools/reference-apps/compat/results.json","run_id":"ra-20261008T1744-evm","updated":"2026-10-08T19:13:20.781Z","evidence_record":{"cell":"harness:reference-apps-compat","manifest_sha":"4cdcc488","coverage":{"EVM-02":"partial: a transaction signed for the previous devnet's chain id is refused and a signed transaction sent twice is refused on the live devnet; the F0 replacement rule and the mempool-independent evidence are the exec suite's","EVM-03":"partial: fee quotes, eth_estimateGas against gasUsed for a transfer and a call, the documented 21,000 local-limit difference and the pgas receipt fields on the live devnet; determinism across nodes and proofs and the P09 bounds are the proving-limit harness (not run)","EVM-04":"partial: block.number, timestamp, chainid, basefee, blockhash(number-1), CREATE2 address, block.coinbase and block.prevrandao read against the chain and the documented differences; conformance vectors for F0 are EVM-01's","EVM-05":"partial: ERC-20 deploy, transfer, approve/transferFrom, a probe contract, a persisting counter, a revert with reason and an out-of-gas call on the live devnet; application-level invariants of the DEX integration set are the DEX lane's","EVM-06":"partial: receipt fields and logsBloom recompute, the block's receipts trie root rebuilds, eth_getLogs by address/topic/range, eth_getBlockByNumber with full transactions and eth_getBlockReceipts; wallet UI states (included, executed, proven, finalised) and the indexer's canonical-record check are the wallet and explorer lanes' rows"},"at":"2026-10-08T19:13:20.781Z","method":"static","requirement_id":"EVM-06","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"4cdcc488","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"in_progress_since":"2026-10-08T19:13:20.781Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"harness:reference-apps-compat":{"cell":"harness:reference-apps-compat","manifest_sha":"4cdcc488","coverage":{"EVM-02":"partial: a transaction signed for the previous devnet's chain id is refused and a signed transaction sent twice is refused on the live devnet; the F0 replacement rule and the mempool-independent evidence are the exec suite's","EVM-03":"partial: fee quotes, eth_estimateGas against gasUsed for a transfer and a call, the documented 21,000 local-limit difference and the pgas receipt fields on the live devnet; determinism across nodes and proofs and the P09 bounds are the proving-limit harness (not run)","EVM-04":"partial: block.number, timestamp, chainid, basefee, blockhash(number-1), CREATE2 address, block.coinbase and block.prevrandao read against the chain and the documented differences; conformance vectors for F0 are EVM-01's","EVM-05":"partial: ERC-20 deploy, transfer, approve/transferFrom, a probe contract, a persisting counter, a revert with reason and an out-of-gas call on the live devnet; application-level invariants of the DEX integration set are the DEX lane's","EVM-06":"partial: receipt fields and logsBloom recompute, the block's receipts trie root rebuilds, eth_getLogs by address/topic/range, eth_getBlockByNumber with full transactions and eth_getBlockReceipts; wallet UI states (included, executed, proven, finalised) and the indexer's canonical-record check are the wallet and explorer lanes' rows"},"at":"2026-10-08T19:13:20.781Z","method":"static","requirement_id":"EVM-06","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"4cdcc488","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"ra-20261008T1744-evm","evidence":"tools/reference-apps/compat/results.json","in_progress":true}}},{"id":"EVM-07","title":"Handle execution denial-of-service workloads","setup":"Create bounded pathological bytecode, calls, state growth, storage and precompile inputs.","steps":["Measure CPU, memory, disk and proving cost against charged budgets.","Saturate admission with invalid/expensive requests while valid workloads continue.","Restart mid-execution and verify atomic state recovery."],"accept":"P09 limits hold with no unbounded free work or divergent rollback. State remains consistent after crash; availability under overload follows the declared admission policy, not silent dropping of accepted transactions.","evidence":"Resource profiles; adversarial corpus; state recovery comparisons.","priority":"BLOCKER","profile":"P01; P09","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[15,25,34,35,36,37],"gate":"Technical readiness","owner":"Execution lead + independent implementer","manual_page":38,"owner_lane":"reference-apps lane (a2060899d2a27d31c)","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T19:22:31.798Z","evidence_record":{"reason":"execution DoS workloads need the workload catalogue F3","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"EVM-07","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"reason":"execution DoS workloads need the workload catalogue F3","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"EVM-07","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}},{"id":"EVM-08","title":"Verify controlled execution and verifier upgrades","setup":"Prepare two authorised versions and malicious, stale or unknown versions.","steps":["Cross activation with mixed clients, queued transactions and proofs from both versions.","Bind each accepted proof to the correct execution semantics and program identity.","Exercise a failed software distribution without altering consensus activation."],"accept":"No unknown or wrong-version execution is accepted. Pre/post-boundary handling is deterministic and documented; software delivery cannot silently redefine transaction semantics or proof acceptance.","evidence":"Upgrade vectors; mixed-version traces; manifest/version bindings.","priority":"BLOCKER","profile":"P01; P08; P09","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[15,25,34,35,36,37],"gate":"Technical readiness","owner":"Execution lead + independent implementer","manual_page":38,"owner_lane":"enforced-proving lane (a6e8f84588b809d62)","run_status":"PASS","evidence_path":"docs/plans/proving-enforcement/cache-history-2.json","run_id":"enforced-proving-20261008-03","updated":"2026-10-08T22:24:23.945Z","evidence_record":{"requirement_id":"EVM-08","decision":"PASS","method":"native","cell":"harness:proving-enforcement","manifest_sha":"c591e63b","run_id":"enforced-proving-20261008-03","evidence":"docs/plans/proving-enforcement/cache-history-2.json","in_progress":false,"coverage":"partial: the controlled verifier upgrade as a key succession (both pairs embedded, the window, the start refusal) and its fast-time crossing; the mixed-client crossing on the live network and the failed-distribution step are not run","release_identity":{"commit":"c591e63b","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T22:24:23.945Z"},"dependency":"the first pin into elf/prior/ (the node lane, key-succession-pin, tonight by 21:00) and the devnet-4 succession height (main, by 22:00 under the floor rule)","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"harness:proving-enforcement":{"requirement_id":"EVM-08","decision":"PASS","method":"native","cell":"harness:proving-enforcement","manifest_sha":"c591e63b","run_id":"enforced-proving-20261008-03","evidence":"docs/plans/proving-enforcement/cache-history-2.json","in_progress":false,"coverage":"partial: the controlled verifier upgrade as a key succession (both pairs embedded, the window, the start refusal) and its fast-time crossing; the mixed-client crossing on the live network and the failed-distribution step are not run","release_identity":{"commit":"c591e63b","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T22:24:23.945Z"}}}]},{"code":"ZKP","title":"Consensus-enforced proof validity","source":[16,20,24,25,36,37],"gate":"Technical readiness / G5","owner":"Proving + protocol leads; independent cryptography review","fixtures":"F0 pinned programs/verifiers; F5 valid and hostile proof corpus; unmodified validators","summary":"The validator, not merely the official producer, must reject unauthorised or invalid proof records and rewards.","tests":[{"id":"ZKP-01","title":"Reject missing and invalid proofs","setup":"Start from a native-correct statement and an independently verified valid proof.","steps":["Submit the statement with no proof, truncated bytes, random bytes and targeted proof mutations using a modified producer.","Submit the genuine proof as a positive control through ordinary network paths.","Inspect block acceptance and resulting reward/state on unmodified validators."],"accept":"Every invalid proof record is rejected and earns no reward; valid controls succeed. A producer-side filter is not sufficient. Record rejection semantics exactly as defined by F0.","evidence":"Hostile record corpus; validator decisions; before/after balances; positive controls.","priority":"BLOCKER","profile":"P01; P09","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[16,20,24,25,36,37],"gate":"Technical readiness / G5","owner":"Proving + protocol leads; independent cryptography review","manual_page":39,"owner_lane":"enforced-proving lane (a6e8f84588b809d62)","run_status":"NOT RUN","evidence_path":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-exec.log; docs/plans/proving-enforcement/cache-history-2.json; build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-consensus.log","run_id":"202-5d53a591-1176efb9","updated":"2026-10-09T00:33:39.243Z","evidence_record":{"requirement_id":"ZKP-01","decision":"NOT RUN","method":"native","cell":"suite:consensus","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-consensus.log","in_progress":false,"coverage":"partial: a proof-less or wrong-statement block refused by consensus","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; consensus on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 24s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."},"in_progress_since":"2026-10-08T19:32:50.856Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"suite:exec":{"requirement_id":"ZKP-01","decision":"NOT RUN","method":"native","cell":"suite:exec","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-exec.log","in_progress":false,"coverage":"partial: a real proof verifies, a wrong statement and garbage are refused (nativeverify)","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; exec on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 24s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."},"harness:proving-enforcement":{"requirement_id":"ZKP-01","decision":"PASS","method":"native","cell":"harness:proving-enforcement","manifest_sha":"c591e63b","run_id":"enforced-proving-20261008-03","evidence":"docs/plans/proving-enforcement/cache-history-2.json","in_progress":false,"coverage":"partial: the seven refusals as named tests (no proof never inserted; a wrong proof and another program id invalidate the block; the honest record paid once) and the fast-time crossing with a modified producer; the genuine-proof positive control through ordinary network paths is the testnet's live read, not run here","release_identity":{"commit":"c591e63b","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T22:24:23.945Z"},"suite:consensus":{"requirement_id":"ZKP-01","decision":"NOT RUN","method":"native","cell":"suite:consensus","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-consensus.log","in_progress":false,"coverage":"partial: a proof-less or wrong-statement block refused by consensus","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; consensus on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 24s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."}}},{"id":"ZKP-02","title":"Bind program, verifier and security parameters","setup":"Use valid proofs from authorised and unauthorised programs and parameter sets.","steps":["Swap program digest, verifier version, security settings and verification key where applicable.","Attempt downgrade through configuration, serialized metadata or an old node path.","Test authorised boundary transitions and unsupported future identities."],"accept":"Only explicitly authorised combinations are accepted in the correct epoch. No implicit trust in producer-supplied metadata or lower-security fallback; all accepted settings have scoped soundness review.","evidence":"Identity/parameter matrix; rejection traces; cryptographic review.","priority":"BLOCKER","profile":"P01; P09","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[16,20,24,25,36,37],"gate":"Technical readiness / G5","owner":"Proving + protocol leads; independent cryptography review","manual_page":39,"owner_lane":"enforced-proving lane (a6e8f84588b809d62)","run_status":"PASS","evidence_path":"docs/plans/proving-enforcement/cache-history-2.json","run_id":"enforced-proving-20261008-03","updated":"2026-10-08T22:24:23.945Z","evidence_record":{"requirement_id":"ZKP-02","decision":"PASS","method":"native","cell":"harness:proving-enforcement","manifest_sha":"c591e63b","run_id":"enforced-proving-20261008-03","evidence":"docs/plans/proving-enforcement/cache-history-2.json","in_progress":false,"coverage":"partial: the pinned-id refusal on a real proof, the daemon's start refusal, key succession (the epochs, the accepted ids, a verdict counting only where its pair is accepted, the seven refusals on both sides of the height, the start refusal under a succession, the real-proof refusal of a pair the epoch does not accept) and the fast-time crossing of a scheduled succession with a real proof under each pair; the downgrade through an old node path is not run","release_identity":{"commit":"c591e63b","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T22:24:23.945Z"},"dependency":"the mixed-pair crossing needs the node lane's first pin into elf/prior/ (key-succession-pin, tonight by 21:00) and the next-pair proof (build-2:/home/build/enforced-fixtures/next-pair-block-56-shard-0-compressed.bin)","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"harness:proving-enforcement":{"requirement_id":"ZKP-02","decision":"PASS","method":"native","cell":"harness:proving-enforcement","manifest_sha":"c591e63b","run_id":"enforced-proving-20261008-03","evidence":"docs/plans/proving-enforcement/cache-history-2.json","in_progress":false,"coverage":"partial: the pinned-id refusal on a real proof, the daemon's start refusal, key succession (the epochs, the accepted ids, a verdict counting only where its pair is accepted, the seven refusals on both sides of the height, the start refusal under a succession, the real-proof refusal of a pair the epoch does not accept) and the fast-time crossing of a scheduled succession with a real proof under each pair; the downgrade through an old node path is not run","release_identity":{"commit":"c591e63b","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T22:24:23.945Z"}}},{"id":"ZKP-03","title":"Bind network, epoch, job and state roots","setup":"Prepare valid proofs for distinct chains, epochs, jobs and initial/final states.","steps":["Replay each proof under another network, job, epoch, shard range or state commitment.","Alter public inputs while retaining the proof and test valid-but-wrong-context statements.","Check duplicated and reordered records across forks and replayed sync data."],"accept":"Every misbound proof is rejected; valid authorised replays follow only explicitly allowed semantics and never create extra rewards. Native reexecution cannot conceal missing proof-context binding.","evidence":"Binding matrix; public-input hashes; replay traces; reward reconciliation.","priority":"BLOCKER","profile":"P01","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[16,20,24,25,36,37],"gate":"Technical readiness / G5","owner":"Proving + protocol leads; independent cryptography review","manual_page":39,"owner_lane":"enforced-proving lane (a6e8f84588b809d62)","run_status":"NOT RUN","evidence_path":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-exec.log; docs/plans/proving-enforcement/cache-history-2.json","run_id":"202-5d53a591-1176efb9","updated":"2026-10-09T00:33:39.243Z","evidence_record":{"requirement_id":"ZKP-03","decision":"NOT RUN","method":"native","cell":"suite:exec","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-exec.log","in_progress":false,"coverage":"partial: a snapshot under another digest refused, the epoch streams bound to the digest","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; exec on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 24s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."},"in_progress_since":"2026-10-08T19:32:50.856Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"suite:exec":{"requirement_id":"ZKP-03","decision":"NOT RUN","method":"native","cell":"suite:exec","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-exec.log","in_progress":false,"coverage":"partial: a snapshot under another digest refused, the epoch streams bound to the digest","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; exec on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 24s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."},"harness:proving-enforcement":{"requirement_id":"ZKP-03","decision":"PASS","method":"native","cell":"harness:proving-enforcement","manifest_sha":"c591e63b","run_id":"enforced-proving-20261008-03","evidence":"docs/plans/proving-enforcement/cache-history-2.json","in_progress":false,"coverage":"partial: the chain binding (a record signed for another network), the replay, a wrong block, a wrong shard, a stale record outside the window; the fork and replayed-sync steps are not run","release_identity":{"commit":"c591e63b","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T22:24:23.945Z"}}},{"id":"ZKP-04","title":"Prevent reward and payout substitution","setup":"Use proofs that commit to authorisation and all reward-relevant fields required by F0.","steps":["Alter payout key, amount, beneficiary, source work or fee allocation independently.","Supply correct execution over malicious producer-provided consensus/reward inputs.","Compare consensus-derived rewards with the proved/publicly authenticated derivation."],"accept":"Unauthorised payout changes and incorrect consensus inputs are rejected; no statement accepted merely because execution over supplied inputs is internally correct. Legitimate authorisations are preserved.","evidence":"Mutation cases; reward derivation trace; signature/proof binding review.","priority":"BLOCKER","profile":"P01","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[16,20,24,25,36,37],"gate":"Technical readiness / G5","owner":"Proving + protocol leads; independent cryptography review","manual_page":40,"owner_lane":"enforced-proving lane (a6e8f84588b809d62)","run_status":"PASS","evidence_path":"docs/plans/proving-enforcement/cache-history-2.json","run_id":"enforced-proving-20261008-03","updated":"2026-10-08T22:24:23.945Z","evidence_record":{"requirement_id":"ZKP-04","decision":"PASS","method":"native","cell":"harness:proving-enforcement","manifest_sha":"c591e63b","run_id":"enforced-proving-20261008-03","evidence":"docs/plans/proving-enforcement/cache-history-2.json","in_progress":false,"coverage":"partial: an altered payout address (after signing and re-signed), a statement over altered rewards or payouts vetoed natively, the inputs commitment of P22 stage 1 (shard 0 and the aggregator carry the commitment the node recomputes) and the derivation commitment of stage 2 (the payouts derived in the guest from the carried records); the rewards' proved derivation is P22 stage 3, PENDING","release_identity":{"commit":"c591e63b","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T22:24:23.945Z"},"dependency":"the proof side of the derivation (P22 stages 1 to 3) changes both guests' public values and so both program ids, so it ships only through a key succession (docs/design/key-succession.md, key-succession-node 291ee6ae); stage 1 (the inputs commitment carried by shard 0 and the aggregator, vetoed natively) is on branch p22-stage-1 under test since 18:46 UK; the clocks (stage 1 09:00, stage 2 14:00, stage 3's design 18:00 UK on 9 October 2026) stand because the succession's first height is asked of main by 22:00 under the floor rule; without a named height the stages are built and tested on their branch and wait for the succession that carries them","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"harness:proving-enforcement":{"requirement_id":"ZKP-04","decision":"PASS","method":"native","cell":"harness:proving-enforcement","manifest_sha":"c591e63b","run_id":"enforced-proving-20261008-03","evidence":"docs/plans/proving-enforcement/cache-history-2.json","in_progress":false,"coverage":"partial: an altered payout address (after signing and re-signed), a statement over altered rewards or payouts vetoed natively, the inputs commitment of P22 stage 1 (shard 0 and the aggregator carry the commitment the node recomputes) and the derivation commitment of stage 2 (the payouts derived in the guest from the carried records); the rewards' proved derivation is P22 stage 3, PENDING","release_identity":{"commit":"c591e63b","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T22:24:23.945Z"}}},{"id":"ZKP-05","title":"Make proof payment idempotent across races","setup":"Use competing provers submitting valid results for the same work and simulate retries/reorganisations.","steps":["Submit simultaneous duplicates, reordered receipts and repeated messages after disconnects.","Crash validators between validation and reward application, then recover.","Reconcile canonical payouts against the exact F0 duplicate policy."],"accept":"Only the authorised total payment is made; no double payout, lost accepted entitlement or fork-retained balance. Transactions and payout records recover atomically.","evidence":"Concurrency schedule; canonical payment ledger; crash/recovery evidence.","priority":"BLOCKER","profile":"P01","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[16,20,24,25,36,37],"gate":"Technical readiness / G5","owner":"Proving + protocol leads; independent cryptography review","manual_page":40,"owner_lane":"enforced-proving lane (a6e8f84588b809d62)","run_status":"PASS","evidence_path":"docs/plans/proving-enforcement/cache-history-2.json","run_id":"enforced-proving-20261008-03","updated":"2026-10-08T22:24:23.945Z","evidence_record":{"requirement_id":"ZKP-05","decision":"PASS","method":"native","cell":"harness:proving-enforcement","manifest_sha":"c591e63b","run_id":"enforced-proving-20261008-03","evidence":"docs/plans/proving-enforcement/cache-history-2.json","in_progress":false,"coverage":"partial: a duplicate of a paid record pays nothing and the honest record pays once; the race, reorder and crash-recover steps are not run","release_identity":{"commit":"c591e63b","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T22:24:23.945Z"},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"harness:proving-enforcement":{"requirement_id":"ZKP-05","decision":"PASS","method":"native","cell":"harness:proving-enforcement","manifest_sha":"c591e63b","run_id":"enforced-proving-20261008-03","evidence":"docs/plans/proving-enforcement/cache-history-2.json","in_progress":false,"coverage":"partial: a duplicate of a paid record pays nothing and the honest record pays once; the race, reorder and crash-recover steps are not run","release_identity":{"commit":"c591e63b","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T22:24:23.945Z"}}},{"id":"ZKP-06","title":"Verify aggregation coverage and completeness","setup":"Build valid multi-shard workloads plus omitted, duplicated, overlapping and misordered shard sets.","steps":["Attempt an aggregate with a correct outer proof but wrong coverage/public-input construction.","Alter shard ranges, roots and aggregation-program identity.","Verify native execution, aggregate validity and coverage commitments independently."],"accept":"Only complete, correctly ordered authorised coverage is accepted. No valid proof of the wrong computation becomes an accepted chain result; aggregation failures do not fabricate successful delivery.","evidence":"Coverage corpus; aggregate/public-input verification; rejection ledger.","priority":"BLOCKER","profile":"P01; P09","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[16,20,24,25,36,37],"gate":"Technical readiness / G5","owner":"Proving + protocol leads; independent cryptography review","manual_page":40,"owner_lane":"enforced-proving lane (a6e8f84588b809d62)","run_status":"NOT RUN","evidence_path":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-p2p-flows.log","run_id":"202-5d53a591-1176efb9","updated":"2026-10-09T00:33:39.243Z","evidence_record":{"requirement_id":"ZKP-06","decision":"NOT RUN","method":"native","cell":"suite:p2p-flows","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-p2p-flows.log","in_progress":false,"coverage":"partial: proof relay coverage tests; aggregation completeness is the proving lane's test set","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; p2p-flows on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 25s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."},"in_progress_since":"2026-10-08T19:32:50.856Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"suite:p2p-flows":{"requirement_id":"ZKP-06","decision":"NOT RUN","method":"native","cell":"suite:p2p-flows","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-p2p-flows.log","in_progress":false,"coverage":"partial: proof relay coverage tests; aggregation completeness is the proving lane's test set","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; p2p-flows on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 25s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."}}},{"id":"ZKP-07","title":"Review soundness and verifier resource limits","setup":"Provide proof-system code, parameters, patches and the pinned verification path to an independent specialist.","steps":["Review soundness assumptions, parameter margins and consequences of performance patches.","Fuzz deserialization and adversarial proofs; measure verification CPU and memory under load.","Cross-check an independent verifier or reference path and test crash containment."],"accept":"P09 review and resource requirements pass with no unresolved critical/high finding. Random proof rejection counts are not described as evidence of a particular cryptographic security level.","evidence":"Scoped soundness review; parameter sheet; fuzzer corpus; verifier profiles.","priority":"BLOCKER","profile":"P01; P09","cadence":"Release candidate; repeat after relevant changes","method":"Independent cryptographic review + testing","status":"NOT RUN","source":[16,20,24,25,36,37],"gate":"Technical readiness / G5","owner":"Proving + protocol leads; independent cryptography review","manual_page":41,"owner_lane":"enforced-proving lane (a6e8f84588b809d62)","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08 18:3x UK","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"ZKP-08","title":"Preserve authority and audit all acceptance paths","setup":"Inspect block import, sync, RPC, light verification, database restoration and fast paths.","steps":["Try bypassing validation via each path with a proof rejected by the normal path.","Remove the dominant prover/aggregator and have independent replacements process available inputs.","Attempt to use proof-production status as ordering, voting or finality authority."],"accept":"No bypass accepts invalid work; proofs alone confer no unauthorised consensus control. Replacement and pause behaviour meet F0/P07/P08 without privileged keys or a trusted aggregator shortcut.","evidence":"Path coverage report; bypass corpus; replacement run; authority checks.","priority":"BLOCKER","profile":"P01; P07; P08","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[16,20,24,25,36,37],"gate":"Technical readiness / G5","owner":"Proving + protocol leads; independent cryptography review","manual_page":41,"owner_lane":"enforced-proving lane (a6e8f84588b809d62)","run_status":"PASS","evidence_path":"docs/plans/proving-enforcement/cache-history-2.json","run_id":"enforced-proving-20261008-03","updated":"2026-10-08T22:24:23.945Z","evidence_record":{"requirement_id":"ZKP-08","decision":"PASS","method":"native","cell":"harness:proving-enforcement","manifest_sha":"c591e63b","run_id":"enforced-proving-20261008-03","evidence":"docs/plans/proving-enforcement/cache-history-2.json","in_progress":false,"coverage":"partial: the body rule and the payment rule read one floor, a producer with its body rule off still pays nothing on honest nodes (the fast-time crossing); the replacement-prover and authority steps are not run; the proof side of the derivation is P22 stage 3, PENDING","release_identity":{"commit":"c591e63b","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T22:24:23.945Z"},"dependency":"the proof side of the derivation (P22 stages 1 to 3) changes both guests' public values and so both program ids, so it ships only through a key succession (docs/design/key-succession.md, key-succession-node 291ee6ae); stage 1 (the inputs commitment carried by shard 0 and the aggregator, vetoed natively) is on branch p22-stage-1 under test since 18:46 UK; the clocks (stage 1 09:00, stage 2 14:00, stage 3's design 18:00 UK on 9 October 2026) stand because the succession's first height is asked of main by 22:00 under the floor rule; without a named height the stages are built and tested on their branch and wait for the succession that carries them","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"harness:proving-enforcement":{"requirement_id":"ZKP-08","decision":"PASS","method":"native","cell":"harness:proving-enforcement","manifest_sha":"c591e63b","run_id":"enforced-proving-20261008-03","evidence":"docs/plans/proving-enforcement/cache-history-2.json","in_progress":false,"coverage":"partial: the body rule and the payment rule read one floor, a producer with its body rule off still pays nothing on honest nodes (the fast-time crossing); the replacement-prover and authority steps are not run; the proof side of the derivation is P22 stage 3, PENDING","release_identity":{"commit":"c591e63b","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T22:24:23.945Z"}}}]},{"code":"CAP","title":"Sustained proving and delivery","source":[17,18,24,25],"gate":"Technical readiness / commercial track","owner":"Proving lead + independent operators","fixtures":"F3 meaningful workload catalogue; F4 network; F8 external job harness","summary":"A correct fast shard is only one stage; capacity, latency, payment and retries must work together.","tests":[{"id":"CAP-01","title":"Reproduce the historical consumer-shard result","setup":"Recover the exact source-era workload/build if available; keep it separate from the release-candidate workload.","steps":["Attempt independent reproduction of the 4,717,439-cycle workload and reported 3060/4060/4070 results.","Record proof format, memory, energy, host and whether aggregation/compression are included.","Repeat on the final release and label all configuration changes."],"accept":"Historical figures are either reproduced within P02 tolerance or corrected/labelled non-reproduced. Release acceptance uses the current complete workload, never an unmatched historical time or a smaller substituted shard.","evidence":"Historical/current manifests; proof verification; timing and memory records.","priority":"GATE","profile":"P02; P07","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[17,18,24,25],"gate":"Technical readiness / commercial track","owner":"Proving lead + independent operators","manual_page":42,"owner_lane":"fleet lane (ac055d60427caab99)","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T19:22:31.798Z","evidence_record":{"reason":"the consumer-shard reproduction is the fleet lane's pods","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"CAP-01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"reason":"the consumer-shard reproduction is the fleet lane's pods","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"CAP-01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}},{"id":"CAP-02","title":"Prove on the actual mining configuration","setup":"Use final dataset sizes, registers, clocks, drivers and proof pipeline on every advertised proving tier.","steps":["Run mining alone, proving alone, concurrent execution and supported time-sharing.","Measure wall energy, memory headroom, reloads, proof latency and forgone accepted mining work.","Induce memory pressure and GPU task failure without losing wallet control."],"accept":"Every advertised mode completes correctly and meets P06/P07. Net output includes opportunity cost; unsupported concurrency is not claimed. Mining-only vendor support remains separately labelled.","evidence":"Four-mode results; OOM/failure logs; memory and opportunity-cost ledger.","priority":"BLOCKER","profile":"P01; P06; P07","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[17,18,24,25],"gate":"Technical readiness / commercial track","owner":"Proving lead + independent operators","manual_page":42,"owner_lane":"fleet lane (ac055d60427caab99)","run_status":"NOT RUN","evidence_path":"docs/analysis/floor-memory-profile-2026-10-08.md","run_id":"v607-floor-memory-20261008T2059Z","updated":"2026-10-08T22:22:49.946Z","evidence_record":{"reason":"proving on the mining configuration is the fleet lane's","at":"2026-10-08T22:22:49.946Z","method":"static","requirement_id":"CAP-02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"rows:v607-floor-memory":{"requirement_id":"CAP-02","decision":"NOT RUN","method":"GPU","cell":"rows:v607-floor-memory","manifest_sha":"c411bae9a","run_id":"v607-floor-memory-20261008T2059Z","evidence":"docs/analysis/floor-memory-profile-2026-10-08.md","in_progress":true,"coverage":"partial: proving alone (shard and the whole segment path) on the 8 GB and 12 GB tiers on the default job path, the time-share refusal beside the miner with the miner unharmed, memory headroom and proof latency; wall energy only on the 3060 (the 4060 host has no power sensor); induced GPU task failure and wallet control not run; 16 GB and 24 GB tiers not run","release_identity":{"commit":"c411bae9a (branch v607-floor-memory off cef5234b5)","lockfile":"proving/igneum-prove/Cargo.lock at cef5234b5","binary":"sp1-gpu-server db37c38b5feabdec5bbfd0298446da89f6a5d144125e399d6ab617f64f9cb61d (igneum-floor-sm8689-v607.tgz 9c02fcc6a3f045d3167c1d9cb6e22c584ea862189d11997754a57cbe1b0d355b); igneum-prove-host-0317 71bc2438856bb141; igneum-prove-host v607 66662219a3630772","network_object":"none (fixture proofs on rented pods, no network)","activation":"none","profile_hashes":"floor patch 9098c3e5979d057031f43588668201d1f7a53ab17e980c1eaf896cd5e6f38575"},"claim_impact":"the 2.0 proving statement's memory condition per tier: a 12 GB card runs the whole segment path alone; an 8 GB card proves shards only (its aggregation fails) and is refused the chain before setup; both time-share beside the 5.5 GiB miner; the 16 GB and 24 GB tiers unmeasured tonight","reviewer":"","at":"2026-10-08T22:22:49.946Z"}},"in_progress_since":"2026-10-08T22:22:49.946Z"},{"id":"CAP-03","title":"Measure the entire request-to-payment path","setup":"Assign a unique job ID and immutable timestamps to every stage of F3/F8 jobs.","steps":["Record request, input availability, assignment, execution, shard proof, aggregation, verification, delivery and payment.","Compare monotonic elapsed time with any protocol/DAA clock and document their relationship.","Reconcile failed, censored, retried and abandoned jobs with the original request denominator."],"accept":"No hidden stage or missing job; latency distributions and cost cover the complete path. Delivery, finality and payment are reported separately; protocol seconds are not silently relabelled wall-clock seconds.","evidence":"Stage event ledger; clock calibration; end-to-end latency/cost report.","priority":"GATE","profile":"P07","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[17,18,24,25],"gate":"Technical readiness / commercial track","owner":"Proving lead + independent operators","manual_page":42,"owner_lane":"fleet lane (ac055d60427caab99)","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T19:22:31.798Z","evidence_record":{"reason":"the request-to-payment path is the proving fleet's measurement","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"CAP-03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"reason":"the request-to-payment path is the proving fleet's measurement","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"CAP-03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}},{"id":"CAP-04","title":"Sustain meaningful load without queue growth","setup":"Freeze W: payload mix, input sizes, execution work and per-hour demand; prohibit tiny-workload substitution.","steps":["Run 72 hours at W and a separate 24 hours at 1.2W on the declared fleet.","Measure arrival/completion counts, backlog trend, oldest-job age, deadlines and all retries.","Use held-out workloads and an independent observer to detect discarded or delayed requests."],"accept":"P07 completion, tail-latency and bounded-backlog criteria hold. Capacity is stated for the tested W/fleet, not as universal TPS. A queue that grows indefinitely or shrinks through silent loss fails.","evidence":"Request/completion reconciliation; backlog series; held-out results; observer report.","priority":"GATE","profile":"P07","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[17,18,24,25],"gate":"Technical readiness / commercial track","owner":"Proving lead + independent operators","manual_page":43,"owner_lane":"fleet lane (ac055d60427caab99)","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T19:22:31.798Z","evidence_record":{"reason":"sustained load is the proving fleet's","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"CAP-04","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"reason":"sustained load is the proving fleet's","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"CAP-04","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}},{"id":"CAP-05","title":"Overload and recover without false acceptance","setup":"Start at W and inject 2W for 15 minutes with valid and invalid jobs, then return to W.","steps":["Observe admission, explicit backpressure, reservations and deadline estimates.","Track accepted jobs to valid completion or the pre-agreed failure/refund outcome.","Measure recovery time and ensure ordinary users are not silently starved."],"accept":"P07 overload policy and recovery limits hold; no accepted job vanishes or earns an invalid reward. Rejected demand is reported separately from delivery success, preventing denominator manipulation.","evidence":"Overload timeline; admission/refund logs; backlog-drain proof.","priority":"BLOCKER","profile":"P01; P07","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[17,18,24,25],"gate":"Technical readiness / commercial track","owner":"Proving lead + independent operators","manual_page":43,"owner_lane":"fleet lane (ac055d60427caab99)","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T19:22:31.798Z","evidence_record":{"reason":"overload and recovery is the proving fleet's","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"CAP-05","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"reason":"overload and recovery is the proving fleet's","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"CAP-05","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}},{"id":"CAP-06","title":"Calibrate assignment windows to paid completion","setup":"Use a heterogeneous proving fleet, including the slowest advertised consumer tier.","steps":["Measure actual completion distributions with network delay, competing load and failed attempts.","Test the chosen exclusive window, open claiming and faster challengers after expiry.","Compare assignment frequency, paid completions and wasted work by tier."],"accept":"P07 fairness and wasted-work limits hold for advertised tiers. A provisional 10-DAA-second window is not treated as approved. Fair assignment counts alone cannot pass; payment outcomes and operator margins matter.","evidence":"Window sweep; paid-completion distribution; wasted-work and margin report.","priority":"GATE","profile":"P07; P12","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[17,18,24,25],"gate":"Technical readiness / commercial track","owner":"Proving lead + independent operators","manual_page":43,"owner_lane":"fleet lane (ac055d60427caab99)","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T19:22:31.798Z","evidence_record":{"reason":"assignment windows are the proving fleet's","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"CAP-06","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"reason":"assignment windows are the proving fleet's","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"CAP-06","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}},{"id":"CAP-07","title":"Reassign work when inputs or providers disappear","setup":"Remove input providers, assigned provers and the dominant aggregator independently and together.","steps":["Have replacement operators retrieve authenticated inputs without founder files.","Retry expired assignments while preserving idempotent reward and customer outcomes.","Restore providers and test late submissions racing with replacements."],"accept":"P07/P08 replacement deadlines hold when availability assumptions permit. Otherwise a truthful bounded pause/refund occurs; no fake proof, double payment or hidden privileged input source is used.","evidence":"Failure schedule; input hashes; reassignment and payout ledger; recovery trace.","priority":"BLOCKER","profile":"P01; P07; P08","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[17,18,24,25],"gate":"Technical readiness / commercial track","owner":"Proving lead + independent operators","manual_page":44,"owner_lane":"fleet lane (ac055d60427caab99)","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T19:22:31.798Z","evidence_record":{"reason":"reassignment is the proving fleet's","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"CAP-07","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"reason":"reassignment is the proving fleet's","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"CAP-07","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}},{"id":"CAP-08","title":"Deliver customer-verifiable output at scale","setup":"Run the external workload using a customer-controlled verifier and independently operated workers.","steps":["Verify every delivered proof against the contracted program and input commitment.","Reject wrong-format, stale and partial deliveries; test customer retry and delivery failure.","Reconcile delivery, acceptance, payment and refund records without exposing private inputs publicly."],"accept":"P07 delivery performance and exact validity hold. Payment depends on the contracted correct result; a valid proof for the wrong job is not a successful delivery.","evidence":"Customer verification log; proof-format contract; settlement reconciliation.","priority":"BLOCKER","profile":"P01; P07; P14","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[17,18,24,25],"gate":"Technical readiness / commercial track","owner":"Proving lead + independent operators","manual_page":44,"owner_lane":"fleet lane (ac055d60427caab99)","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T19:22:31.798Z","evidence_record":{"reason":"customer-verifiable output is the reference apps plus the fleet","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"CAP-08","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"reason":"customer-verifiable output is the reference apps plus the fleet","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"CAP-08","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}}]},{"code":"INC","title":"Rewards, incentives and selfish operators","source":[13,16,17,18,24,26],"gate":"G4 / G5","owner":"Protocol economics + proving leads","fixtures":"F0 fee/reward rules; F4 adversarial operators; F7 incentive models","summary":"Assume operators optimise their own returns. Do not depend on the official client choosing a less profitable task.","tests":[{"id":"INC-01","title":"Reconcile issuance, fees, burns and recipients","setup":"Use a deterministic short chain containing all reward types, fee paths and rounding cases.","steps":["Calculate balances, total supply changes, burns and distributions independently.","Execute identical blocks natively and through the proving path.","Test zero, minimum, maximum and transition-boundary values plus malformed producer accounting."],"accept":"Conservation and recipient rules match F0 exactly; no inflation, rounding leakage or duplicate reward. Fee-table and prose discrepancies are resolved before the run, not guessed by the tester.","evidence":"Independent accounting ledger; balance/supply diffs; boundary vectors.","priority":"BLOCKER","profile":"P01; P12","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[13,16,17,18,24,26],"gate":"G4 / G5","owner":"Protocol economics + proving leads","manual_page":45,"owner_lane":"enforced-proving lane (a6e8f84588b809d62)","run_status":"NOT RUN","evidence_path":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-core.log","run_id":"202-5d53a591-1176efb9","updated":"2026-10-09T00:33:39.243Z","evidence_record":{"requirement_id":"INC-01","decision":"NOT RUN","method":"native","cell":"suite:core","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-core.log","in_progress":false,"coverage":"partial: emission, fee and payout arithmetic tests; the reconciliation over a live chain is the economics lane's","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; core on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 25s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."},"in_progress_since":"2026-10-08T19:32:50.856Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"suite:core":{"requirement_id":"INC-01","decision":"NOT RUN","method":"native","cell":"suite:core","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-core.log","in_progress":false,"coverage":"partial: emission, fee and payout arithmetic tests; the reconciliation over a live chain is the economics lane's","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; core on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 25s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."}}},{"id":"INC-02","title":"Keep revenue streams and claims separate","setup":"Prepare jobs and blocks producing mining income, internal proof rewards and external payments.","steps":["Trace money from source to operator, protocol, developer and any burn.","Compare node records, settlement records and Ember displays.","Attempt to classify testnet rewards, reimbursed purchases or token appreciation as external customer revenue."],"accept":"Every stream reconciles and is labelled correctly. No double-counted revenue or fabricated protocol demand; mining subsidy and external service income remain distinct in dashboards and ECO.","evidence":"Money-flow register; UI reconciliation; rejected classifications.","priority":"BLOCKER","profile":"P01; P12; P14","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[13,16,17,18,24,26],"gate":"G4 / G5","owner":"Protocol economics + proving leads","manual_page":45,"owner_lane":"research lane (ad6a2bd47d4a46105)","run_status":"NOT RUN","evidence_path":"docs/analysis/class-v6/coexistence-model.md","run_id":"eco-d4-20261008-01","updated":"2026-10-08T19:55:03.336Z","evidence_record":{"cell":"harness:economics-model","manifest_sha":"db424d20","coverage":{"ECO-02":"partial: the existing-owner and new-entrant tests per class at three tariffs, MSRP and street, with resale (reference-population.md); resale at zero, failures and financing not yet stressed","ECO-03":"partial: the sunk-development case first with low and high ranges, private mining, hardware sales and the hybrid, GPU re-entry after the fleet (coexistence-model.md sections 2, 8a, 12 to 12c; the surface in floor/sram-and-floor.md 4.4); the source thresholds retired to coexistence-workbook.md","ECO-04":"partial: a per-class supply curve with the installed base as a cap and re-entry (coexistence-model.md), the market-structure axis (8a), the operator simulation (operator-simulation.md); dynamic agent policies beyond the single-rule reaction are the simulation second cut","ECO-06":"partial: the recipients and burns reconciled on the chain block-one split (docs/design/proving-payment.md), proving demand as an income axis at none, launch and spike (coexistence-model.md); the full-horizon issuance ledger owed","ECO-07":"partial: each dataset size scored by adversary burden against commodity burden on measured card rows and modelled chip tickets (docs/design/class-v6-rotating-family.md 10.0u); the 8.5 and 11.5 GiB knee costs expected, not measured","INC-02":"partial: the income streams kept separate in the model (mining subsidy, internal proving, external jobs; burns never counted as payment); the node-record and Ember reconciliation are the node and app lanes","INC-03":"partial: the profit-maximising operator simulation first run (mine, internal prove, external prove, off); per-card agents and switching costs are the second cut","INC-04":"partial: the four shocks in the operator simulation (the demand spike, the price fall, the largest provers leaving, the entrants), restored or not and in how many periods","INC-08":"partial: the supplier and operator dependence table (coexistence-model.md 8a); the signing, proving and aggregation roles are the node lane"},"at":"2026-10-08T19:55:03.336Z","method":"model","requirement_id":"INC-02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"db424d20","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"in_progress_since":"2026-10-08T19:55:03.336Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"harness:economics-model":{"cell":"harness:economics-model","manifest_sha":"db424d20","coverage":{"ECO-02":"partial: the existing-owner and new-entrant tests per class at three tariffs, MSRP and street, with resale (reference-population.md); resale at zero, failures and financing not yet stressed","ECO-03":"partial: the sunk-development case first with low and high ranges, private mining, hardware sales and the hybrid, GPU re-entry after the fleet (coexistence-model.md sections 2, 8a, 12 to 12c; the surface in floor/sram-and-floor.md 4.4); the source thresholds retired to coexistence-workbook.md","ECO-04":"partial: a per-class supply curve with the installed base as a cap and re-entry (coexistence-model.md), the market-structure axis (8a), the operator simulation (operator-simulation.md); dynamic agent policies beyond the single-rule reaction are the simulation second cut","ECO-06":"partial: the recipients and burns reconciled on the chain block-one split (docs/design/proving-payment.md), proving demand as an income axis at none, launch and spike (coexistence-model.md); the full-horizon issuance ledger owed","ECO-07":"partial: each dataset size scored by adversary burden against commodity burden on measured card rows and modelled chip tickets (docs/design/class-v6-rotating-family.md 10.0u); the 8.5 and 11.5 GiB knee costs expected, not measured","INC-02":"partial: the income streams kept separate in the model (mining subsidy, internal proving, external jobs; burns never counted as payment); the node-record and Ember reconciliation are the node and app lanes","INC-03":"partial: the profit-maximising operator simulation first run (mine, internal prove, external prove, off); per-card agents and switching costs are the second cut","INC-04":"partial: the four shocks in the operator simulation (the demand spike, the price fall, the largest provers leaving, the entrants), restored or not and in how many periods","INC-08":"partial: the supplier and operator dependence table (coexistence-model.md 8a); the signing, proving and aggregation roles are the node lane"},"at":"2026-10-08T19:55:03.336Z","method":"model","requirement_id":"INC-02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"db424d20","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"eco-d4-20261008-01","evidence":"docs/analysis/class-v6/coexistence-model.md","in_progress":true}}},{"id":"INC-03","title":"Let a modified client choose the most profitable task","setup":"Permit independent schedulers to mine, prove internally, prove externally or switch off.","steps":["Publish common costs and vary relative task rewards, memory pressure and switching costs.","Run clients that ignore the official scheduling recommendation.","Measure realised operator margin, internal capacity and network progress."],"accept":"Required P12 sustainable worlds maintain paid essential capacity without compelled altruism. Profitability and availability are based on realised outcomes, including switching and wasted work.","evidence":"Scheduler source/policies; switching traces; capacity and margin series.","priority":"GATE","profile":"P07; P12","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[13,16,17,18,24,26],"gate":"G4 / G5","owner":"Protocol economics + proving leads","manual_page":45,"owner_lane":"research lane (ad6a2bd47d4a46105)","run_status":"NOT RUN","evidence_path":"docs/analysis/class-v6/coexistence-model.md","run_id":"eco-d4-20261008-01","updated":"2026-10-08T19:55:03.336Z","evidence_record":{"cell":"harness:economics-model","manifest_sha":"db424d20","coverage":{"ECO-02":"partial: the existing-owner and new-entrant tests per class at three tariffs, MSRP and street, with resale (reference-population.md); resale at zero, failures and financing not yet stressed","ECO-03":"partial: the sunk-development case first with low and high ranges, private mining, hardware sales and the hybrid, GPU re-entry after the fleet (coexistence-model.md sections 2, 8a, 12 to 12c; the surface in floor/sram-and-floor.md 4.4); the source thresholds retired to coexistence-workbook.md","ECO-04":"partial: a per-class supply curve with the installed base as a cap and re-entry (coexistence-model.md), the market-structure axis (8a), the operator simulation (operator-simulation.md); dynamic agent policies beyond the single-rule reaction are the simulation second cut","ECO-06":"partial: the recipients and burns reconciled on the chain block-one split (docs/design/proving-payment.md), proving demand as an income axis at none, launch and spike (coexistence-model.md); the full-horizon issuance ledger owed","ECO-07":"partial: each dataset size scored by adversary burden against commodity burden on measured card rows and modelled chip tickets (docs/design/class-v6-rotating-family.md 10.0u); the 8.5 and 11.5 GiB knee costs expected, not measured","INC-02":"partial: the income streams kept separate in the model (mining subsidy, internal proving, external jobs; burns never counted as payment); the node-record and Ember reconciliation are the node and app lanes","INC-03":"partial: the profit-maximising operator simulation first run (mine, internal prove, external prove, off); per-card agents and switching costs are the second cut","INC-04":"partial: the four shocks in the operator simulation (the demand spike, the price fall, the largest provers leaving, the entrants), restored or not and in how many periods","INC-08":"partial: the supplier and operator dependence table (coexistence-model.md 8a); the signing, proving and aggregation roles are the node lane"},"at":"2026-10-08T19:55:03.336Z","method":"model","requirement_id":"INC-03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"db424d20","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"in_progress_since":"2026-10-08T19:55:03.336Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"harness:economics-model":{"cell":"harness:economics-model","manifest_sha":"db424d20","coverage":{"ECO-02":"partial: the existing-owner and new-entrant tests per class at three tariffs, MSRP and street, with resale (reference-population.md); resale at zero, failures and financing not yet stressed","ECO-03":"partial: the sunk-development case first with low and high ranges, private mining, hardware sales and the hybrid, GPU re-entry after the fleet (coexistence-model.md sections 2, 8a, 12 to 12c; the surface in floor/sram-and-floor.md 4.4); the source thresholds retired to coexistence-workbook.md","ECO-04":"partial: a per-class supply curve with the installed base as a cap and re-entry (coexistence-model.md), the market-structure axis (8a), the operator simulation (operator-simulation.md); dynamic agent policies beyond the single-rule reaction are the simulation second cut","ECO-06":"partial: the recipients and burns reconciled on the chain block-one split (docs/design/proving-payment.md), proving demand as an income axis at none, launch and spike (coexistence-model.md); the full-horizon issuance ledger owed","ECO-07":"partial: each dataset size scored by adversary burden against commodity burden on measured card rows and modelled chip tickets (docs/design/class-v6-rotating-family.md 10.0u); the 8.5 and 11.5 GiB knee costs expected, not measured","INC-02":"partial: the income streams kept separate in the model (mining subsidy, internal proving, external jobs; burns never counted as payment); the node-record and Ember reconciliation are the node and app lanes","INC-03":"partial: the profit-maximising operator simulation first run (mine, internal prove, external prove, off); per-card agents and switching costs are the second cut","INC-04":"partial: the four shocks in the operator simulation (the demand spike, the price fall, the largest provers leaving, the entrants), restored or not and in how many periods","INC-08":"partial: the supplier and operator dependence table (coexistence-model.md 8a); the signing, proving and aggregation roles are the node lane"},"at":"2026-10-08T19:55:03.336Z","method":"model","requirement_id":"INC-03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"db424d20","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"eco-d4-20261008-01","evidence":"docs/analysis/class-v6/coexistence-model.md","in_progress":true}}},{"id":"INC-04","title":"Survive external-demand spikes and token declines","setup":"Use F7 scenarios with 10x external job offers and token-denominated mining-income shocks.","steps":["Allow miners/provers to switch freely under the declared reward and difficulty rules.","Observe hash participation, proof backlog, fees and recovery without an administrator.","Repeat with external demand dropping to zero and with a dominant operator withdrawn."],"accept":"Mandatory viable worlds meet P07/P12; stressed nonviable worlds fail or pause safely with truthful status. No emergency rule, fabricated demand or unofficial subsidy is inserted to force a pass.","evidence":"Shock timeline; fee/hash/capacity paths; failure-region report.","priority":"GATE","profile":"P07; P08; P12","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[13,16,17,18,24,26],"gate":"G4 / G5","owner":"Protocol economics + proving leads","manual_page":46,"owner_lane":"research lane (ad6a2bd47d4a46105)","run_status":"NOT RUN","evidence_path":"docs/analysis/class-v6/coexistence-model.md","run_id":"eco-d4-20261008-01","updated":"2026-10-08T19:55:03.336Z","evidence_record":{"cell":"harness:economics-model","manifest_sha":"db424d20","coverage":{"ECO-02":"partial: the existing-owner and new-entrant tests per class at three tariffs, MSRP and street, with resale (reference-population.md); resale at zero, failures and financing not yet stressed","ECO-03":"partial: the sunk-development case first with low and high ranges, private mining, hardware sales and the hybrid, GPU re-entry after the fleet (coexistence-model.md sections 2, 8a, 12 to 12c; the surface in floor/sram-and-floor.md 4.4); the source thresholds retired to coexistence-workbook.md","ECO-04":"partial: a per-class supply curve with the installed base as a cap and re-entry (coexistence-model.md), the market-structure axis (8a), the operator simulation (operator-simulation.md); dynamic agent policies beyond the single-rule reaction are the simulation second cut","ECO-06":"partial: the recipients and burns reconciled on the chain block-one split (docs/design/proving-payment.md), proving demand as an income axis at none, launch and spike (coexistence-model.md); the full-horizon issuance ledger owed","ECO-07":"partial: each dataset size scored by adversary burden against commodity burden on measured card rows and modelled chip tickets (docs/design/class-v6-rotating-family.md 10.0u); the 8.5 and 11.5 GiB knee costs expected, not measured","INC-02":"partial: the income streams kept separate in the model (mining subsidy, internal proving, external jobs; burns never counted as payment); the node-record and Ember reconciliation are the node and app lanes","INC-03":"partial: the profit-maximising operator simulation first run (mine, internal prove, external prove, off); per-card agents and switching costs are the second cut","INC-04":"partial: the four shocks in the operator simulation (the demand spike, the price fall, the largest provers leaving, the entrants), restored or not and in how many periods","INC-08":"partial: the supplier and operator dependence table (coexistence-model.md 8a); the signing, proving and aggregation roles are the node lane"},"at":"2026-10-08T19:55:03.336Z","method":"model","requirement_id":"INC-04","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"db424d20","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"in_progress_since":"2026-10-08T19:55:03.336Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"harness:economics-model":{"cell":"harness:economics-model","manifest_sha":"db424d20","coverage":{"ECO-02":"partial: the existing-owner and new-entrant tests per class at three tariffs, MSRP and street, with resale (reference-population.md); resale at zero, failures and financing not yet stressed","ECO-03":"partial: the sunk-development case first with low and high ranges, private mining, hardware sales and the hybrid, GPU re-entry after the fleet (coexistence-model.md sections 2, 8a, 12 to 12c; the surface in floor/sram-and-floor.md 4.4); the source thresholds retired to coexistence-workbook.md","ECO-04":"partial: a per-class supply curve with the installed base as a cap and re-entry (coexistence-model.md), the market-structure axis (8a), the operator simulation (operator-simulation.md); dynamic agent policies beyond the single-rule reaction are the simulation second cut","ECO-06":"partial: the recipients and burns reconciled on the chain block-one split (docs/design/proving-payment.md), proving demand as an income axis at none, launch and spike (coexistence-model.md); the full-horizon issuance ledger owed","ECO-07":"partial: each dataset size scored by adversary burden against commodity burden on measured card rows and modelled chip tickets (docs/design/class-v6-rotating-family.md 10.0u); the 8.5 and 11.5 GiB knee costs expected, not measured","INC-02":"partial: the income streams kept separate in the model (mining subsidy, internal proving, external jobs; burns never counted as payment); the node-record and Ember reconciliation are the node and app lanes","INC-03":"partial: the profit-maximising operator simulation first run (mine, internal prove, external prove, off); per-card agents and switching costs are the second cut","INC-04":"partial: the four shocks in the operator simulation (the demand spike, the price fall, the largest provers leaving, the entrants), restored or not and in how many periods","INC-08":"partial: the supplier and operator dependence table (coexistence-model.md 8a); the signing, proving and aggregation roles are the node lane"},"at":"2026-10-08T19:55:03.336Z","method":"model","requirement_id":"INC-04","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"db424d20","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"eco-d4-20261008-01","evidence":"docs/analysis/class-v6/coexistence-model.md","in_progress":true}}},{"id":"INC-05","title":"Contain job reservation and identity-splitting abuse","setup":"Freeze the actual assignment/payment mechanism; do not assume unimplemented collateral or identity controls.","steps":["Create many worker identities, reserve jobs, withhold proofs and submit late results.","Attempt free option-taking, duplicate work rewards and displacement of honest assignments.","Price attacker costs and observe honest completion under the approved abuse load."],"accept":"F0 rules and P07 service limits hold under the declared adversary. Identity splitting does not create unauthorised rewards or control; any unmitigated starvation path blocks the permissionless-service claim.","evidence":"Attack clients; assignment trace; cost-to-disrupt analysis; honest-user outcomes.","priority":"BLOCKER","profile":"P01; P07; P09","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[13,16,17,18,24,26],"gate":"G4 / G5","owner":"Protocol economics + proving leads","manual_page":46,"owner_lane":"enforced-proving lane (a6e8f84588b809d62)","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T19:22:31.798Z","evidence_record":{"reason":"reservation abuse needs the capacity harness","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"INC-05","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"reason":"reservation abuse needs the capacity harness","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"INC-05","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}},{"id":"INC-06","title":"Test difficulty and timestamp manipulation","setup":"Use the actual adjustment algorithm and consensus timestamp rule with independent miners.","steps":["Inject large hashrate arrivals/departures, periodic selective mining and boundary-timed bursts.","Try allowed and invalid timestamp skew, withheld blocks and replayed work.","Observe block intervals, reward allocation and recovery after hashrate stabilises."],"accept":"Invalid inputs are rejected; valid adversarial strategies remain within F0/P08 bounds and are priced in ECO. No unexplained reward amplification, permanent stall or conflicting accepted work.","evidence":"Difficulty trace; timestamp corpus; revenue analysis; independent rule review.","priority":"BLOCKER","profile":"P01; P08; P12","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[13,16,17,18,24,26],"gate":"G4 / G5","owner":"Protocol economics + proving leads","manual_page":46,"owner_lane":"research lane (ad6a2bd47d4a46105)","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T19:22:31.798Z","evidence_record":{"reason":"difficulty and timestamp manipulation needs the fault network F4","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"INC-06","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"reason":"difficulty and timestamp manipulation needs the fault network F4","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"INC-06","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}},{"id":"INC-07","title":"Resist self-dealing fees and fake proving demand","setup":"Use self-funded operators and related customer identities in the isolated economic model/network.","steps":["Cycle funds through jobs, tips, developer shares and rebates to seek net reward extraction.","Attempt to inflate external-demand metrics without genuine unrelated customer expenditure.","Reconcile all counterparties and net cash contribution rather than gross transaction volume."],"accept":"No unauthorised subsidy extraction or metric inflation passes. Related-party volume is disclosed/excluded from P14; net external cash and legitimate protocol incentives are reported separately.","evidence":"Circular-flow tests; ownership/conflict review; net-cash reconciliation.","priority":"BLOCKER","profile":"P01; P12; P14","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[13,16,17,18,24,26],"gate":"G4 / G5","owner":"Protocol economics + proving leads","manual_page":47,"owner_lane":"enforced-proving lane (a6e8f84588b809d62)","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T19:22:31.798Z","evidence_record":{"reason":"self-dealing fees need the economic model and a live window","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"INC-07","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"reason":"self-dealing fees need the economic model and a live window","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"INC-07","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}},{"id":"INC-08","title":"Quantify provider and supplier failure concentration","setup":"Model control of hashing, signing, proving, aggregation and hardware supply separately.","steps":["Remove each largest operational dependency and combine correlated failures.","Measure replacement cost/time and whether essential roles share hidden ownership.","Compare results with the approved fault model and no-rescue exercise."],"accept":"No hidden single dependency defeats the claimed independence; within-tolerance withdrawals recover under P08/P11. Hardware supply concentration is disclosed without equating vendor sales to operator voting control.","evidence":"Role/ownership map; dependency removals; recovery and concentration report.","priority":"GATE","profile":"P08; P11; P12","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[13,16,17,18,24,26],"gate":"G4 / G5","owner":"Protocol economics + proving leads","manual_page":47,"owner_lane":"research lane (ad6a2bd47d4a46105)","run_status":"NOT RUN","evidence_path":"docs/analysis/class-v6/coexistence-model.md","run_id":"eco-d4-20261008-01","updated":"2026-10-08T19:55:03.336Z","evidence_record":{"cell":"harness:economics-model","manifest_sha":"db424d20","coverage":{"ECO-02":"partial: the existing-owner and new-entrant tests per class at three tariffs, MSRP and street, with resale (reference-population.md); resale at zero, failures and financing not yet stressed","ECO-03":"partial: the sunk-development case first with low and high ranges, private mining, hardware sales and the hybrid, GPU re-entry after the fleet (coexistence-model.md sections 2, 8a, 12 to 12c; the surface in floor/sram-and-floor.md 4.4); the source thresholds retired to coexistence-workbook.md","ECO-04":"partial: a per-class supply curve with the installed base as a cap and re-entry (coexistence-model.md), the market-structure axis (8a), the operator simulation (operator-simulation.md); dynamic agent policies beyond the single-rule reaction are the simulation second cut","ECO-06":"partial: the recipients and burns reconciled on the chain block-one split (docs/design/proving-payment.md), proving demand as an income axis at none, launch and spike (coexistence-model.md); the full-horizon issuance ledger owed","ECO-07":"partial: each dataset size scored by adversary burden against commodity burden on measured card rows and modelled chip tickets (docs/design/class-v6-rotating-family.md 10.0u); the 8.5 and 11.5 GiB knee costs expected, not measured","INC-02":"partial: the income streams kept separate in the model (mining subsidy, internal proving, external jobs; burns never counted as payment); the node-record and Ember reconciliation are the node and app lanes","INC-03":"partial: the profit-maximising operator simulation first run (mine, internal prove, external prove, off); per-card agents and switching costs are the second cut","INC-04":"partial: the four shocks in the operator simulation (the demand spike, the price fall, the largest provers leaving, the entrants), restored or not and in how many periods","INC-08":"partial: the supplier and operator dependence table (coexistence-model.md 8a); the signing, proving and aggregation roles are the node lane"},"at":"2026-10-08T19:55:03.336Z","method":"model","requirement_id":"INC-08","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"db424d20","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"in_progress_since":"2026-10-08T19:55:03.336Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"harness:economics-model":{"cell":"harness:economics-model","manifest_sha":"db424d20","coverage":{"ECO-02":"partial: the existing-owner and new-entrant tests per class at three tariffs, MSRP and street, with resale (reference-population.md); resale at zero, failures and financing not yet stressed","ECO-03":"partial: the sunk-development case first with low and high ranges, private mining, hardware sales and the hybrid, GPU re-entry after the fleet (coexistence-model.md sections 2, 8a, 12 to 12c; the surface in floor/sram-and-floor.md 4.4); the source thresholds retired to coexistence-workbook.md","ECO-04":"partial: a per-class supply curve with the installed base as a cap and re-entry (coexistence-model.md), the market-structure axis (8a), the operator simulation (operator-simulation.md); dynamic agent policies beyond the single-rule reaction are the simulation second cut","ECO-06":"partial: the recipients and burns reconciled on the chain block-one split (docs/design/proving-payment.md), proving demand as an income axis at none, launch and spike (coexistence-model.md); the full-horizon issuance ledger owed","ECO-07":"partial: each dataset size scored by adversary burden against commodity burden on measured card rows and modelled chip tickets (docs/design/class-v6-rotating-family.md 10.0u); the 8.5 and 11.5 GiB knee costs expected, not measured","INC-02":"partial: the income streams kept separate in the model (mining subsidy, internal proving, external jobs; burns never counted as payment); the node-record and Ember reconciliation are the node and app lanes","INC-03":"partial: the profit-maximising operator simulation first run (mine, internal prove, external prove, off); per-card agents and switching costs are the second cut","INC-04":"partial: the four shocks in the operator simulation (the demand spike, the price fall, the largest provers leaving, the entrants), restored or not and in how many periods","INC-08":"partial: the supplier and operator dependence table (coexistence-model.md 8a); the signing, proving and aggregation roles are the node lane"},"at":"2026-10-08T19:55:03.336Z","method":"model","requirement_id":"INC-08","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"db424d20","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"eco-d4-20261008-01","evidence":"docs/analysis/class-v6/coexistence-model.md","in_progress":true}}}]},{"code":"FIN","title":"Consensus safety and recovery","source":[19,21,24,25],"gate":"G5 / technical readiness","owner":"Consensus lead + independent formal/security review","fixtures":"F0 exact fault model; F4 real-node partitions; F5 certificates and historical failures","summary":"Test safety under the stated fault bounds. Demand liveness only when synchrony and participation assumptions actually hold.","tests":[{"id":"FIN-01","title":"Agree on ordering, work and executed state","setup":"Use real fork-choice/DAG handling and independent miners, not only a simplified simulator.","steps":["Generate concurrent branches, delayed blocks, duplicates and invalid work with deterministic seeds.","Compare selected ordering, accumulated work, transaction execution and state roots after delivery converges.","Replay from independent checkpoints and from genesis where practical."],"accept":"Honest nodes converge under F0 assumptions with exact roots and rewards. No duplicated work accounting or undocumented ordering dependence; simulator-only success cannot substitute.","evidence":"Block/ordering corpus; root/work diffs; real-node replay logs.","priority":"BLOCKER","profile":"P01; P08","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[19,21,24,25],"gate":"G5 / technical readiness","owner":"Consensus lead + independent formal/security review","manual_page":48,"owner_lane":"fast-time lane (a8be71a0db962911c)","run_status":"NOT RUN","evidence_path":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-consensus.log; build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-core.log","run_id":"202-5d53a591-1176efb9","updated":"2026-10-09T00:33:39.243Z","evidence_record":{"requirement_id":"FIN-01","decision":"NOT RUN","method":"native","cell":"suite:consensus","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-consensus.log","in_progress":false,"coverage":"partial: the finality processes' agreement tests","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; consensus on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 24s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."},"in_progress_since":"2026-10-08T19:32:50.856Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"suite:consensus":{"requirement_id":"FIN-01","decision":"NOT RUN","method":"native","cell":"suite:consensus","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-consensus.log","in_progress":false,"coverage":"partial: the finality processes' agreement tests","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; consensus on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 24s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."},"suite:core":{"requirement_id":"FIN-01","decision":"NOT RUN","method":"native","cell":"suite:core","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-core.log","in_progress":false,"coverage":"partial: the finality field and checkpoint tests on the object; ordering under load is the consensus suite and the sim","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; core on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 25s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."}}},{"id":"FIN-02","title":"Attack finality with split honest populations","setup":"Use the source-discussed 40/40/20 weight split, plus threshold-boundary splits under F0.","steps":["Let the 20% adversarial group sign conflicting histories while honest groups are partitioned.","Delay messages and eligibility updates independently; keep total historical weights auditable.","Try to form two certificates and reconnect nodes to observe accepted final history."],"accept":"No conflicting final certificates are accepted within the declared fault bound. A safe pause is valid when quorum is unavailable; making progress on both sides is not required.","evidence":"Signed votes; certificate attempts; voter-table snapshots; safety checker output.","priority":"BLOCKER","profile":"P01; P08","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[19,21,24,25],"gate":"G5 / technical readiness","owner":"Consensus lead + independent formal/security review","manual_page":48,"owner_lane":"finality lane (aca0f5ed924a2a99b)","run_status":"PASS","evidence_path":"sim/finality-attacks-results/native-2026-10-09/s203-1c.md","run_id":"fin-203-20261009T0127Z","updated":"2026-10-09T01:02:16.259Z","evidence_record":{"requirement_id":"FIN-02","decision":"PASS","method":"native","cell":"node:finality-realnode","manifest_sha":"c8d22a85","run_id":"fin-203-20261009T0127Z","evidence":"sim/finality-attacks-results/native-2026-10-09/s203-1c.md","in_progress":false,"coverage":"partial: the real-node half; independent operators and the review remain","release_identity":{"commit":"c8d22a85","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T01:02:16.259Z","note":"the 2.0.3 reruns of rows 1b (e at 0.20 and 0.30) and 1c on finality-2.0.3-kind-and-conflict c8d22a85 (igneumd a37f4b63, build-5 and build-6, 01:27 to 01:45 UK 9 October, lease pool, pid watchers, zero restarts): a received recovery certificate reads lockKind recovery on every node (1b: index 10 recovery on A's, B's and C's nodes; the 2.0.2 line read final on B's), and two valid certificates at one index pause finality on both holders with reason conflict naming the index and no new lock above it (1c: A's and B's nodes at index 11, finalityActive false, no lock after the heal; the 2.0.2 line went on locking reporting active); 0 pre-heal locks moved in every row. Rows: sim/results_v2.md, the 2.0.3 reruns subsection. FIN-02 and FIN-07's real-node half on the fixed node; the independent review remains."},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"node:finality-realnode":{"requirement_id":"FIN-02","decision":"PASS","method":"native","cell":"node:finality-realnode","manifest_sha":"c8d22a85","run_id":"fin-203-20261009T0127Z","evidence":"sim/finality-attacks-results/native-2026-10-09/s203-1c.md","in_progress":false,"coverage":"partial: the real-node half; independent operators and the review remain","release_identity":{"commit":"c8d22a85","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T01:02:16.259Z","note":"the 2.0.3 reruns of rows 1b (e at 0.20 and 0.30) and 1c on finality-2.0.3-kind-and-conflict c8d22a85 (igneumd a37f4b63, build-5 and build-6, 01:27 to 01:45 UK 9 October, lease pool, pid watchers, zero restarts): a received recovery certificate reads lockKind recovery on every node (1b: index 10 recovery on A's, B's and C's nodes; the 2.0.2 line read final on B's), and two valid certificates at one index pause finality on both holders with reason conflict naming the index and no new lock above it (1c: A's and B's nodes at index 11, finalityActive false, no lock after the heal; the 2.0.2 line went on locking reporting active); 0 pre-heal locks moved in every row. Rows: sim/results_v2.md, the 2.0.3 reruns subsection. FIN-02 and FIN-07's real-node half on the fixed node; the independent review remains."}}},{"id":"FIN-03","title":"Cross authority expiry in a long partition","setup":"Recover historical expiry failures where available; use the actual current authority-transition rules.","steps":["Partition for 31, 35, 60 and 90 logical days and around every retention/expiry boundary.","Attempt independently renewed authority sets and conflicting checkpoint locks.","Repeat selected boundary cases on real nodes with accelerated timers explicitly labelled."],"accept":"Authority continuity remains authenticated and no conflicting final history appears within F0 assumptions. A timeout is not accepted as proof absent voters ceased to exist. Compressed time is not multi-month field evidence.","evidence":"Expiry timeline; table/certificate history; historical regression tests.","priority":"BLOCKER","profile":"P01; P08","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[19,21,24,25],"gate":"G5 / technical readiness","owner":"Consensus lead + independent formal/security review","manual_page":48,"owner_lane":"finality lane (aca0f5ed924a2a99b)","run_status":"NOT RUN","evidence_path":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-consensus.log","run_id":"202-5d53a591-1176efb9","updated":"2026-10-09T00:33:39.243Z","evidence_record":{"requirement_id":"FIN-03","decision":"NOT RUN","method":"native","cell":"suite:consensus","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-consensus.log","in_progress":false,"coverage":"partial: rule v4's anchored table and authority expiry tests (bee41b5e)","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; consensus on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 24s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."},"in_progress_since":"2026-10-08T19:32:50.856Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"suite:consensus":{"requirement_id":"FIN-03","decision":"NOT RUN","method":"native","cell":"suite:consensus","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-consensus.log","in_progress":false,"coverage":"partial: rule v4's anchored table and authority expiry tests (bee41b5e)","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; consensus on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 24s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."}}},{"id":"FIN-04","title":"Stop signing while mining continues","setup":"Remove enough signing participation to invalidate the liveness assumption without forging votes.","steps":["Continue mining and execution, cross seed boundaries and monitor proof queues.","Check which user-visible states advance and which remain unfinalised.","Restore eligible weight and bounded message delay, then verify recovery."],"accept":"No false finality or fabricated authority. Behaviour matches F0 during the pause and P08 after assumptions return; unfinished transactions are not displayed as irreversible.","evidence":"Signing/mining trace; UI/RPC states; recovery roots and timing.","priority":"BLOCKER","profile":"P01; P08","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[19,21,24,25],"gate":"G5 / technical readiness","owner":"Consensus lead + independent formal/security review","manual_page":49,"owner_lane":"finality lane (aca0f5ed924a2a99b)","run_status":"NOT RUN","evidence_path":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-consensus.log","run_id":"202-5d53a591-1176efb9","updated":"2026-10-09T00:33:39.243Z","evidence_record":{"requirement_id":"FIN-04","decision":"NOT RUN","method":"native","cell":"suite:consensus","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-consensus.log","in_progress":false,"coverage":"partial: the frozen table without its time expiry (rule v4)","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; consensus on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 24s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."},"in_progress_since":"2026-10-08T19:32:50.856Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"suite:consensus":{"requirement_id":"FIN-04","decision":"NOT RUN","method":"native","cell":"suite:consensus","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-consensus.log","in_progress":false,"coverage":"partial: the frozen table without its time expiry (rule v4)","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; consensus on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 24s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."}}},{"id":"FIN-05","title":"Authenticate voter-set changes and pooled keys","setup":"Use normal transitions, pool members retaining keys and malicious substitution attempts.","steps":["Alter voter weights, membership proofs, miner/pool identity bindings and prior-certificate links.","Race updates across boundaries and replay old signed changes.","Have a new node verify the authority chain from its declared trust anchor."],"accept":"Only correctly authenticated changes are accepted; weights cannot be double-counted or redirected by a pool. All honest nodes agree on the active authority set for each certified point.","evidence":"Authority-chain fixtures; substitution attacks; new-node verification log.","priority":"BLOCKER","profile":"P01; P08","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[19,21,24,25],"gate":"G5 / technical readiness","owner":"Consensus lead + independent formal/security review","manual_page":49,"owner_lane":"finality lane (aca0f5ed924a2a99b)","run_status":"NOT RUN","evidence_path":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-consensus.log","run_id":"202-5d53a591-1176efb9","updated":"2026-10-09T00:33:39.243Z","evidence_record":{"requirement_id":"FIN-05","decision":"NOT RUN","method":"native","cell":"suite:consensus","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-consensus.log","in_progress":false,"coverage":"partial: key succession and another scheme's vote refused","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; consensus on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 24s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."},"in_progress_since":"2026-10-08T19:32:50.856Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"suite:consensus":{"requirement_id":"FIN-05","decision":"NOT RUN","method":"native","cell":"suite:consensus","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-consensus.log","in_progress":false,"coverage":"partial: key succession and another scheme's vote refused","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; consensus on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 24s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."}}},{"id":"FIN-06","title":"Analyse old-key compromise and long-range histories","setup":"Freeze assumptions about key erasure, retained weights, trust anchors and offline recovery.","steps":["Use previously eligible keys to build alternative histories after their operators disappear.","Present these histories to recently offline and newly joining clients.","Test replayed certificates, stale anchors and compromised signer subsets."],"accept":"Acceptance matches the explicit security model with no hidden trusted recovery step. Any reliance on a recent trusted anchor is disclosed and tested; hashpower assumptions cannot replace old-key analysis.","evidence":"Long-range corpus; trust-anchor policy; key-compromise review; client results.","priority":"BLOCKER","profile":"P01; P08","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[19,21,24,25],"gate":"G5 / technical readiness","owner":"Consensus lead + independent formal/security review","manual_page":49,"owner_lane":"finality lane (aca0f5ed924a2a99b)","run_status":"NOT RUN","evidence_path":"sim/results_v2.md Rule v4","run_id":"team-2026-10-08","updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"old-key compromise analysis is the finality lane's long-range scenario, not yet in the sim","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"FIN-06","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"in_progress_since":"2026-10-08 18:3x UK","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"what_was_run":"bought and stolen keys in the simulator rows","run_by":"finality lane (aca0f5ed924a2a99b)","under_the_standard":"no: team-run before the standard's procedure; the status is RUNNING until the case is re-run under its steps with the profile's numbers and an independent run where the profile asks one","pass_or_fail_today":"not judged under the standard yet","method":"static","requirement_id":"FIN-06","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"team-2026-10-08","evidence":"sim/results_v2.md Rule v4","in_progress":true}}},{"id":"FIN-07","title":"Recover deterministically after reconnection and crash","setup":"Combine partitions with node crash, partial writes, restarts and proof backlog.","steps":["Reconnect networks under bounded latency and restore required honest participation.","Verify fork choice, unfinalised reorganisation, finality, reward rollback and proof reassignments.","Compare all honest nodes and customer-visible receipts after recovery."],"accept":"P08 recovery holds without reversing a previously valid final guarantee. Only permitted unfinalised state is reorganised; no duplicate rewards or inconsistent receipt statuses survive.","evidence":"Recovery timelines; roots/certificates; payout rollback; customer-state reconciliation.","priority":"BLOCKER","profile":"P01; P08","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[19,21,24,25],"gate":"G5 / technical readiness","owner":"Consensus lead + independent formal/security review","manual_page":50,"owner_lane":"finality lane (aca0f5ed924a2a99b)","run_status":"NOT RUN","evidence_path":"sim/finality-attacks-results/native-2026-10-09/s203-1c.md; build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-consensus.log","run_id":"fin-203-20261009T0127Z","updated":"2026-10-09T01:02:16.259Z","evidence_record":{"requirement_id":"FIN-07","decision":"PASS","method":"native","cell":"node:finality-realnode","manifest_sha":"c8d22a85","run_id":"fin-203-20261009T0127Z","evidence":"sim/finality-attacks-results/native-2026-10-09/s203-1c.md","in_progress":false,"coverage":"partial: deterministic recovery after reconnection and crash on real nodes (the HEAL reruns)","release_identity":{"commit":"c8d22a85","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T01:02:16.259Z","note":"the 2.0.3 reruns of rows 1b (e at 0.20 and 0.30) and 1c on finality-2.0.3-kind-and-conflict c8d22a85 (igneumd a37f4b63, build-5 and build-6, 01:27 to 01:45 UK 9 October, lease pool, pid watchers, zero restarts): a received recovery certificate reads lockKind recovery on every node (1b: index 10 recovery on A's, B's and C's nodes; the 2.0.2 line read final on B's), and two valid certificates at one index pause finality on both holders with reason conflict naming the index and no new lock above it (1c: A's and B's nodes at index 11, finalityActive false, no lock after the heal; the 2.0.2 line went on locking reporting active); 0 pre-heal locks moved in every row. Rows: sim/results_v2.md, the 2.0.3 reruns subsection. FIN-02 and FIN-07's real-node half on the fixed node; the independent review remains."},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"node:finality-realnode":{"requirement_id":"FIN-07","decision":"PASS","method":"native","cell":"node:finality-realnode","manifest_sha":"c8d22a85","run_id":"fin-203-20261009T0127Z","evidence":"sim/finality-attacks-results/native-2026-10-09/s203-1c.md","in_progress":false,"coverage":"partial: deterministic recovery after reconnection and crash on real nodes (the HEAL reruns)","release_identity":{"commit":"c8d22a85","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T01:02:16.259Z","note":"the 2.0.3 reruns of rows 1b (e at 0.20 and 0.30) and 1c on finality-2.0.3-kind-and-conflict c8d22a85 (igneumd a37f4b63, build-5 and build-6, 01:27 to 01:45 UK 9 October, lease pool, pid watchers, zero restarts): a received recovery certificate reads lockKind recovery on every node (1b: index 10 recovery on A's, B's and C's nodes; the 2.0.2 line read final on B's), and two valid certificates at one index pause finality on both holders with reason conflict naming the index and no new lock above it (1c: A's and B's nodes at index 11, finalityActive false, no lock after the heal; the 2.0.2 line went on locking reporting active); 0 pre-heal locks moved in every row. Rows: sim/results_v2.md, the 2.0.3 reruns subsection. FIN-02 and FIN-07's real-node half on the fixed node; the independent review remains."},"suite:consensus":{"requirement_id":"FIN-07","decision":"NOT RUN","method":"native","cell":"suite:consensus","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-consensus.log","in_progress":false,"coverage":"partial: majority-continuity recovery (rule v4)","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; consensus on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 24s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."}}},{"id":"FIN-08","title":"Combine boundaries, faults and adversarial scheduling","setup":"Use an independent model checker/scheduler and production-node scenarios from F4.","steps":["Combine epoch changes, authority transitions, mining churn, data delays and prover/aggregator loss.","Explore bounded adversarial message schedules and minimise any counterexample.","Replay model findings on real code and have an independent reviewer assess uncovered states."],"accept":"No unresolved safety failure; liveness claims hold only within declared assumptions and P08. Model bounds and untested schedules are published, not described as proof over every possible execution.","evidence":"Model/spec artifacts; schedule corpus; replay evidence; independent assessment.","priority":"BLOCKER","profile":"P01; P08","cadence":"Release candidate; repeat after relevant changes","method":"Model checking + real-node testing","status":"NOT RUN","source":[19,21,24,25],"gate":"G5 / technical readiness","owner":"Consensus lead + independent formal/security review","manual_page":50,"owner_lane":"fast-time lane (a8be71a0db962911c)","run_status":"NOT RUN","evidence_path":"sim/results_v2.md","run_id":"fin-203-20261009T0127Z","updated":"2026-10-09T01:02:16.259Z","evidence_record":{"requirement_id":"FIN-08","decision":"NOT RUN","method":"native","cell":"harness:finality-sim","manifest_sha":"c8d22a85","run_id":"fin-203-20261009T0127Z","evidence":"sim/results_v2.md","in_progress":true,"coverage":"partial: the combined boundary and fault scenarios in the simulator with adversarial schedules; model checking is the formal review","release_identity":{"commit":"c8d22a85","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T01:02:16.259Z","note":"FIN-08's real-node rows gained the 2.0.3 reruns of rows 1b and 1c on the fixed node (the lock kind read from the chain on every node; two valid certificates at one index pause finality with reason conflict): sim/results_v2.md, the 2.0.3 reruns subsection; the model side remains for PASS"},"in_progress_since":"2026-10-08T19:43:19.697Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"harness:finality-sim":{"requirement_id":"FIN-08","decision":"NOT RUN","method":"native","cell":"harness:finality-sim","manifest_sha":"c8d22a85","run_id":"fin-203-20261009T0127Z","evidence":"sim/results_v2.md","in_progress":true,"coverage":"partial: the combined boundary and fault scenarios in the simulator with adversarial schedules; model checking is the formal review","release_identity":{"commit":"c8d22a85","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T01:02:16.259Z","note":"FIN-08's real-node rows gained the 2.0.3 reruns of rows 1b and 1c on the fixed node (the lock kind read from the chain on every node; two valid certificates at one index pause finality with reason conflict): sim/results_v2.md, the 2.0.3 reruns subsection; the model side remains for PASS"}}}],"notes":[{"at":"2026-10-08T19:32:50.918Z","text":"F04 (Review B), the founder's ruling 8 October 19:57 UK: the recovery lock is kept and is always labelled 'recovery', never 'final', on every surface (the checkpoint field, the explorer, receipts, the light client, the oracle, the site)"},{"at":"2026-10-08T20:10:24.812Z","text":"REC-01 (the master edition's one unresolved interpretation, finality pause-only healing: R1's I03 stale predicate against R2's F04 backfill caveat): closure evidence as the finality and node lanes recorded it on 8 October 2026: rule v4 at release-2.0.0-node 12424341's line, mode recovery by the founder's 19:57 ruling (the lock labelled recovery, never final), both real-node lines PASS tonight by the 6.7 pause criterion, FIN-02 PASS at 0218d6bf1 on the simulator half; status RUNNING until the beyond-window healing case with and without historical data is run natively (the node lane's case tomorrow)."},{"at":"2026-10-09T00:22:15.485Z","text":"FIN-02 and FIN-08: Dated note, 9 October 2026 01:0x UK (the coordinator, from the finality runs lane's native rows 4566eb1e4): a received recovery certificate reads lockKind \"final\" on every node but the forming one (recovery_lock is stamped only in evaluate), and a node holding two certificates at one index reports \"active\" and keeps locking; both ride 2.0.3 with known-failed tests (the node lane's 06:00 line). Recovery kind correct on the forming node only until 2.0.3; conflicting-certificate reporting open. No decision changed by this note."}]},{"code":"VER","title":"Wallets, receipts and data availability","source":[20,25,35,37],"gate":"Technical readiness / claimed options","owner":"Wallet + light-client lead; independent security review","fixtures":"F0 trust/availability model; F5 malformed roots, receipts and authority chains","summary":"Verify the exact property shown to the user. An inclusion proof, execution proof and finality certificate are not interchangeable.","tests":[{"id":"VER-01","title":"Authenticate light-client bootstrap","setup":"Give a clean client malicious RPC responses, fabricated voter tables and valid-looking signatures.","steps":["Start from the approved trust anchor and verify every required link to the advertised state.","Substitute otherwise well-formed but unauthorised keys, weights and checkpoints.","Remove the bootstrap service and use another independently operated source."],"accept":"The client rejects unauthorised authority and discloses any trust anchor. Signatures over a node-supplied table do not by themselves pass; missing authentication never silently degrades to trusted RPC.","evidence":"Bootstrap corpus; trust-chain trace; fail-closed tests.","priority":"BLOCKER","profile":"P01; P09","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[20,25,35,37],"gate":"Technical readiness / claimed options","owner":"Wallet + light-client lead; independent security review","manual_page":51,"owner_lane":"reference-apps lane (a2060899d2a27d31c)","run_status":"FAIL","evidence_path":"tools/reference-apps/ver/evidence/VER-01.json","run_id":"ra-20261008T1915-ver","updated":"2026-10-08T19:46:20.696Z","evidence_record":{"cell":"harness:reference-apps-ver-trust-anchor","manifest_sha":"4cdcc488","coverage":{"VER-01":"fails today, disclosed: the light client authenticates the certificate's signatures and the header path but the voter table is a node-supplied trust anchor named on /light; a forged table signature and a wrong-network certificate are refused","VER-02":"fails today, disclosed: the execution statement's proof is verified by the nodes and the browser verifies the aggregator signature and the post root under it; an in-browser verifier for the permitted proof and a table commitment close it"},"at":"2026-10-08T19:46:20.696Z","method":"static","requirement_id":"VER-01","decision":"FAIL","reviewer":"","claim_impact":"","release_identity":{"commit":"4cdcc488","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"harness:reference-apps-ver-trust-anchor":{"cell":"harness:reference-apps-ver-trust-anchor","manifest_sha":"4cdcc488","coverage":{"VER-01":"fails today, disclosed: the light client authenticates the certificate's signatures and the header path but the voter table is a node-supplied trust anchor named on /light; a forged table signature and a wrong-network certificate are refused","VER-02":"fails today, disclosed: the execution statement's proof is verified by the nodes and the browser verifies the aggregator signature and the post root under it; an in-browser verifier for the permitted proof and a table commitment close it"},"at":"2026-10-08T19:46:20.696Z","method":"static","requirement_id":"VER-01","decision":"FAIL","reviewer":"","claim_impact":"","release_identity":{"commit":"4cdcc488","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"ra-20261008T1915-ver","evidence":"tools/reference-apps/ver/evidence/VER-01.json","in_progress":false}}},{"id":"VER-02","title":"Verify evolving authority and execution statements","setup":"Use valid state proofs paired with wrong execution statements or stale authority histories.","steps":["Cross voter and verifier changes with offline clients returning after long intervals.","Alter roots, aggregate identity and proof/public-input bindings independently.","Check local verification rather than merely a server-reported verified flag."],"accept":"All advertised proof checks occur locally or the remaining trust is explicitly disclosed. Wrong roots and unauthenticated authority are rejected; unsupported verification paths are not claimed.","evidence":"Client verification trace; corrupted inputs; offline/upgrade results.","priority":"BLOCKER","profile":"P01; P09","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[20,25,35,37],"gate":"Technical readiness / claimed options","owner":"Wallet + light-client lead; independent security review","manual_page":51,"owner_lane":"reference-apps lane (a2060899d2a27d31c)","run_status":"FAIL","evidence_path":"tools/reference-apps/ver/evidence/VER-01.json","run_id":"ra-20261008T1915-ver","updated":"2026-10-08T19:46:20.696Z","evidence_record":{"cell":"harness:reference-apps-ver-trust-anchor","manifest_sha":"4cdcc488","coverage":{"VER-01":"fails today, disclosed: the light client authenticates the certificate's signatures and the header path but the voter table is a node-supplied trust anchor named on /light; a forged table signature and a wrong-network certificate are refused","VER-02":"fails today, disclosed: the execution statement's proof is verified by the nodes and the browser verifies the aggregator signature and the post root under it; an in-browser verifier for the permitted proof and a table commitment close it"},"at":"2026-10-08T19:46:20.696Z","method":"static","requirement_id":"VER-02","decision":"FAIL","reviewer":"","claim_impact":"","release_identity":{"commit":"4cdcc488","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"harness:reference-apps-ver-trust-anchor":{"cell":"harness:reference-apps-ver-trust-anchor","manifest_sha":"4cdcc488","coverage":{"VER-01":"fails today, disclosed: the light client authenticates the certificate's signatures and the header path but the voter table is a node-supplied trust anchor named on /light; a forged table signature and a wrong-network certificate are refused","VER-02":"fails today, disclosed: the execution statement's proof is verified by the nodes and the browser verifies the aggregator signature and the post root under it; an in-browser verifier for the permitted proof and a table commitment close it"},"at":"2026-10-08T19:46:20.696Z","method":"static","requirement_id":"VER-02","decision":"FAIL","reviewer":"","claim_impact":"","release_identity":{"commit":"4cdcc488","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"ra-20261008T1915-ver","evidence":"tools/reference-apps/ver/evidence/VER-01.json","in_progress":false}}},{"id":"VER-03","title":"Prove successful payment rather than inclusion","setup":"Create successful, reverted, wrong-asset, wrong-recipient and wrong-amount transfers.","steps":["Generate receipts for included transactions, including failures and replaced/unfinalised transactions.","Verify execution status plus asset, recipient, amount and canonical-state/receipt commitment.","Replay the receipt on another chain and after an allowed unfinalised reorganisation."],"accept":"Only the actual successful, correctly bound transfer is labelled payment proof. Inclusion-only receipts are labelled as such; no node-reported success flag substitutes for authenticated outcome.","evidence":"Payment fixture corpus; receipt verification; merchant-facing status checks.","priority":"BLOCKER","profile":"P01; P09","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[20,25,35,37],"gate":"Technical readiness / claimed options","owner":"Wallet + light-client lead; independent security review","manual_page":51,"owner_lane":"reference-apps lane (a2060899d2a27d31c)","run_status":"NOT RUN","evidence_path":"tools/reference-apps/ver/evidence/summary.json","run_id":"ra-20261008T1915-ver","updated":"2026-10-08T19:46:20.696Z","evidence_record":{"cell":"harness:reference-apps-ver","manifest_sha":"4cdcc488","coverage":{"VER-03":"partial: a payment receipt is labelled payment only when the receipt is proven against the segment statement's receipts commitment under the finality certificate, inclusion-only receipts read inclusion, a tampered receipt and a flipped status fail; run on the the earlier devnet fixtures, the 2.0 devnet re-run waits for its first paid segment whose last block carries a transaction; Review B F04: a receipt claiming lock_state final under a certificate the node reports as a recovery lock is refused, a recovery lock prints as recovery lock, not final (Node and browser negative cases on the fixtures; the field is not live on devnet-4 tonight, so no live recovery lock was seen)","VER-04":"partial: the oracle's trust() names the deployer-installed table and the unchecked aggregator signature, a second hash at a stored certificate index is refused, a root claim at an unknown index is refused, another chain id is refused (tools/reference-apps/oracle/test.mjs on Sepolia); Review B F04: the Sepolia verifiers apply the two-thirds rule only, carry no lock-kind field, and an under-threshold (recovery-rule) certificate fails closed in submitCertificate, so no stored root is a recovery lock (the DEX lane's docs/bridge/light-client-bridge.md paragraph); the claimed-option review of the trust model is the reviewer's","VER-06":"partial: the read service never serves a certificate from another network, a withheld header in the path and a corrupted proof node are detected, stale data prints its lock age beside every balance, and a client told no certificate never falls back to a trusted RPC balance; detection on the fault network F4 is not run","VER-08":"partial: every served state on /light, /receipt and /oracle uses one of included, executed, proven, finalised from the shared definition block, the lock line serves the live DAA before the first certificate, and the trust assumptions are listed on each page; the wallet and explorer surfaces are their lanes' rows; Review B F04: /light, /receipt, the receipt file and the one-file verifier show a node-reported recovery lock as recovery lock, not final, /oracle says recovery locks are not accepted by its verifier, the terms block defines the recovery lock"},"at":"2026-10-08T19:46:20.696Z","method":"static","requirement_id":"VER-03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"4cdcc488","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"in_progress_since":"2026-10-08T19:46:20.696Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"harness:reference-apps-ver":{"cell":"harness:reference-apps-ver","manifest_sha":"4cdcc488","coverage":{"VER-03":"partial: a payment receipt is labelled payment only when the receipt is proven against the segment statement's receipts commitment under the finality certificate, inclusion-only receipts read inclusion, a tampered receipt and a flipped status fail; run on the the earlier devnet fixtures, the 2.0 devnet re-run waits for its first paid segment whose last block carries a transaction; Review B F04: a receipt claiming lock_state final under a certificate the node reports as a recovery lock is refused, a recovery lock prints as recovery lock, not final (Node and browser negative cases on the fixtures; the field is not live on devnet-4 tonight, so no live recovery lock was seen)","VER-04":"partial: the oracle's trust() names the deployer-installed table and the unchecked aggregator signature, a second hash at a stored certificate index is refused, a root claim at an unknown index is refused, another chain id is refused (tools/reference-apps/oracle/test.mjs on Sepolia); Review B F04: the Sepolia verifiers apply the two-thirds rule only, carry no lock-kind field, and an under-threshold (recovery-rule) certificate fails closed in submitCertificate, so no stored root is a recovery lock (the DEX lane's docs/bridge/light-client-bridge.md paragraph); the claimed-option review of the trust model is the reviewer's","VER-06":"partial: the read service never serves a certificate from another network, a withheld header in the path and a corrupted proof node are detected, stale data prints its lock age beside every balance, and a client told no certificate never falls back to a trusted RPC balance; detection on the fault network F4 is not run","VER-08":"partial: every served state on /light, /receipt and /oracle uses one of included, executed, proven, finalised from the shared definition block, the lock line serves the live DAA before the first certificate, and the trust assumptions are listed on each page; the wallet and explorer surfaces are their lanes' rows; Review B F04: /light, /receipt, the receipt file and the one-file verifier show a node-reported recovery lock as recovery lock, not final, /oracle says recovery locks are not accepted by its verifier, the terms block defines the recovery lock"},"at":"2026-10-08T19:46:20.696Z","method":"static","requirement_id":"VER-03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"4cdcc488","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"ra-20261008T1915-ver","evidence":"tools/reference-apps/ver/evidence/summary.json","in_progress":true}}},{"id":"VER-04","title":"Bound cross-chain oracle trust and replay","setup":"For a claimed oracle, freeze destination verifier, authority updates, accepted proof types and replay policy.","steps":["Try deployer-substituted keys, stale certificates, unchecked signatures and wrong source/destination identities.","Exercise legitimate authority updates and source reorganisations under the approved model.","Measure gas/cost with realistic header sets and test disabled/unavailable verification."],"accept":"The oracle enforces its declared trust model and fails closed. Deployer privileges and unavailable guarantees are explicit; no trustless-bridge claim exceeds the checks performed. Excluded oracle scope earns no pass credit.","evidence":"Oracle code/parameters; attack cases; cost report; privilege disclosure.","priority":"BLOCKER","profile":"P00; P01; P09","cadence":"Release candidate; repeat after relevant changes","method":"Claimed-option verification","status":"NOT RUN","source":[20,25,35,37],"gate":"Technical readiness / claimed options","owner":"Wallet + light-client lead; independent security review","manual_page":52,"owner_lane":"reference-apps lane (a2060899d2a27d31c)","run_status":"NOT RUN","evidence_path":"tools/reference-apps/ver/evidence/summary.json","run_id":"ra-20261008T1915-ver","updated":"2026-10-08T19:46:20.696Z","evidence_record":{"cell":"harness:reference-apps-ver","manifest_sha":"4cdcc488","coverage":{"VER-03":"partial: a payment receipt is labelled payment only when the receipt is proven against the segment statement's receipts commitment under the finality certificate, inclusion-only receipts read inclusion, a tampered receipt and a flipped status fail; run on the the earlier devnet fixtures, the 2.0 devnet re-run waits for its first paid segment whose last block carries a transaction; Review B F04: a receipt claiming lock_state final under a certificate the node reports as a recovery lock is refused, a recovery lock prints as recovery lock, not final (Node and browser negative cases on the fixtures; the field is not live on devnet-4 tonight, so no live recovery lock was seen)","VER-04":"partial: the oracle's trust() names the deployer-installed table and the unchecked aggregator signature, a second hash at a stored certificate index is refused, a root claim at an unknown index is refused, another chain id is refused (tools/reference-apps/oracle/test.mjs on Sepolia); Review B F04: the Sepolia verifiers apply the two-thirds rule only, carry no lock-kind field, and an under-threshold (recovery-rule) certificate fails closed in submitCertificate, so no stored root is a recovery lock (the DEX lane's docs/bridge/light-client-bridge.md paragraph); the claimed-option review of the trust model is the reviewer's","VER-06":"partial: the read service never serves a certificate from another network, a withheld header in the path and a corrupted proof node are detected, stale data prints its lock age beside every balance, and a client told no certificate never falls back to a trusted RPC balance; detection on the fault network F4 is not run","VER-08":"partial: every served state on /light, /receipt and /oracle uses one of included, executed, proven, finalised from the shared definition block, the lock line serves the live DAA before the first certificate, and the trust assumptions are listed on each page; the wallet and explorer surfaces are their lanes' rows; Review B F04: /light, /receipt, the receipt file and the one-file verifier show a node-reported recovery lock as recovery lock, not final, /oracle says recovery locks are not accepted by its verifier, the terms block defines the recovery lock"},"at":"2026-10-08T19:46:20.696Z","method":"static","requirement_id":"VER-04","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"4cdcc488","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"in_progress_since":"2026-10-08T19:46:20.696Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"harness:reference-apps-ver":{"cell":"harness:reference-apps-ver","manifest_sha":"4cdcc488","coverage":{"VER-03":"partial: a payment receipt is labelled payment only when the receipt is proven against the segment statement's receipts commitment under the finality certificate, inclusion-only receipts read inclusion, a tampered receipt and a flipped status fail; run on the the earlier devnet fixtures, the 2.0 devnet re-run waits for its first paid segment whose last block carries a transaction; Review B F04: a receipt claiming lock_state final under a certificate the node reports as a recovery lock is refused, a recovery lock prints as recovery lock, not final (Node and browser negative cases on the fixtures; the field is not live on devnet-4 tonight, so no live recovery lock was seen)","VER-04":"partial: the oracle's trust() names the deployer-installed table and the unchecked aggregator signature, a second hash at a stored certificate index is refused, a root claim at an unknown index is refused, another chain id is refused (tools/reference-apps/oracle/test.mjs on Sepolia); Review B F04: the Sepolia verifiers apply the two-thirds rule only, carry no lock-kind field, and an under-threshold (recovery-rule) certificate fails closed in submitCertificate, so no stored root is a recovery lock (the DEX lane's docs/bridge/light-client-bridge.md paragraph); the claimed-option review of the trust model is the reviewer's","VER-06":"partial: the read service never serves a certificate from another network, a withheld header in the path and a corrupted proof node are detected, stale data prints its lock age beside every balance, and a client told no certificate never falls back to a trusted RPC balance; detection on the fault network F4 is not run","VER-08":"partial: every served state on /light, /receipt and /oracle uses one of included, executed, proven, finalised from the shared definition block, the lock line serves the live DAA before the first certificate, and the trust assumptions are listed on each page; the wallet and explorer surfaces are their lanes' rows; Review B F04: /light, /receipt, the receipt file and the one-file verifier show a node-reported recovery lock as recovery lock, not final, /oracle says recovery locks are not accepted by its verifier, the terms block defines the recovery lock"},"at":"2026-10-08T19:46:20.696Z","method":"static","requirement_id":"VER-04","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"4cdcc488","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"ra-20261008T1915-ver","evidence":"tools/reference-apps/ver/evidence/summary.json","in_progress":true}}},{"id":"VER-05","title":"Reconstruct required state without founder storage","setup":"Remove founder archival/input services and start an independent operator from the documented entry point.","steps":["Fetch authenticated blocks, state/proof inputs and any required witnesses from permitted peers.","Rebuild the expected state and continue validation/proving.","Measure bandwidth, disk, time and retention requirements against advertised operator budgets."],"accept":"Required data can be obtained and verified within the declared availability model. Hidden archives or unpublished files block independence. A valid execution proof alone does not satisfy this test.","evidence":"Download/reconstruction logs; data hashes; resource costs; dependency inventory.","priority":"BLOCKER","profile":"P01; P08; P09","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[20,25,35,37],"gate":"Technical readiness / claimed options","owner":"Wallet + light-client lead; independent security review","manual_page":52,"owner_lane":"reference-apps lane (a2060899d2a27d31c)","run_status":"FAIL","evidence_path":"tools/reference-apps/ver/evidence/VER-05.json","run_id":"ra-20261008T1915-ver","updated":"2026-10-08T19:46:20.696Z","evidence_record":{"cell":"harness:reference-apps-ver-availability","manifest_sha":"4cdcc488","coverage":{"VER-05":"partial: the public read node must report startedFrom genesis (no snapshot) and the reference reader on build-1 executed the 2.0 devnet from genesis with no snapshot; the pages fetch headers, certificates, coinbase bodies and account proofs from the public read RPC only; the archive and availability model beyond the 2,048-block state ring is the OPS no-founder exercise. Run ra-20261008T1915-ver: FAIL, the public node reports startedFrom snapshot (restarted from a snapshot after 17:46 UK); the reader on build-1 still from genesis"},"at":"2026-10-08T19:46:20.696Z","method":"static","requirement_id":"VER-05","decision":"FAIL","reviewer":"","claim_impact":"","release_identity":{"commit":"4cdcc488","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"harness:reference-apps-ver-availability":{"cell":"harness:reference-apps-ver-availability","manifest_sha":"4cdcc488","coverage":{"VER-05":"partial: the public read node must report startedFrom genesis (no snapshot) and the reference reader on build-1 executed the 2.0 devnet from genesis with no snapshot; the pages fetch headers, certificates, coinbase bodies and account proofs from the public read RPC only; the archive and availability model beyond the 2,048-block state ring is the OPS no-founder exercise. Run ra-20261008T1915-ver: FAIL, the public node reports startedFrom snapshot (restarted from a snapshot after 17:46 UK); the reader on build-1 still from genesis"},"at":"2026-10-08T19:46:20.696Z","method":"static","requirement_id":"VER-05","decision":"FAIL","reviewer":"","claim_impact":"","release_identity":{"commit":"4cdcc488","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"ra-20261008T1915-ver","evidence":"tools/reference-apps/ver/evidence/VER-05.json","in_progress":false}}},{"id":"VER-06","title":"Detect withholding, corruption and stale data","setup":"Serve valid commitments with missing data, corrupted chunks, stale witnesses and conflicting peer replies.","steps":["Attempt to make a validator or light client accept an unavailable or incorrect state under F0.","Test retrieval from independent peers and expiry/retry policy.","Restore data and check that recovery cannot alter an already verified commitment."],"accept":"No unjustified available/verified status; safety and admission rules match F0. Recovery is bounded where assumptions permit, and unavailable-data states remain visible instead of hidden behind proofs.","evidence":"Withholding corpus; peer retrieval traces; availability/status checks.","priority":"BLOCKER","profile":"P01; P08; P09","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[20,25,35,37],"gate":"Technical readiness / claimed options","owner":"Wallet + light-client lead; independent security review","manual_page":52,"owner_lane":"reference-apps lane (a2060899d2a27d31c)","run_status":"NOT RUN","evidence_path":"tools/reference-apps/ver/evidence/summary.json","run_id":"ra-20261008T1915-ver","updated":"2026-10-08T19:46:20.696Z","evidence_record":{"cell":"harness:reference-apps-ver","manifest_sha":"4cdcc488","coverage":{"VER-03":"partial: a payment receipt is labelled payment only when the receipt is proven against the segment statement's receipts commitment under the finality certificate, inclusion-only receipts read inclusion, a tampered receipt and a flipped status fail; run on the the earlier devnet fixtures, the 2.0 devnet re-run waits for its first paid segment whose last block carries a transaction; Review B F04: a receipt claiming lock_state final under a certificate the node reports as a recovery lock is refused, a recovery lock prints as recovery lock, not final (Node and browser negative cases on the fixtures; the field is not live on devnet-4 tonight, so no live recovery lock was seen)","VER-04":"partial: the oracle's trust() names the deployer-installed table and the unchecked aggregator signature, a second hash at a stored certificate index is refused, a root claim at an unknown index is refused, another chain id is refused (tools/reference-apps/oracle/test.mjs on Sepolia); Review B F04: the Sepolia verifiers apply the two-thirds rule only, carry no lock-kind field, and an under-threshold (recovery-rule) certificate fails closed in submitCertificate, so no stored root is a recovery lock (the DEX lane's docs/bridge/light-client-bridge.md paragraph); the claimed-option review of the trust model is the reviewer's","VER-06":"partial: the read service never serves a certificate from another network, a withheld header in the path and a corrupted proof node are detected, stale data prints its lock age beside every balance, and a client told no certificate never falls back to a trusted RPC balance; detection on the fault network F4 is not run","VER-08":"partial: every served state on /light, /receipt and /oracle uses one of included, executed, proven, finalised from the shared definition block, the lock line serves the live DAA before the first certificate, and the trust assumptions are listed on each page; the wallet and explorer surfaces are their lanes' rows; Review B F04: /light, /receipt, the receipt file and the one-file verifier show a node-reported recovery lock as recovery lock, not final, /oracle says recovery locks are not accepted by its verifier, the terms block defines the recovery lock"},"at":"2026-10-08T19:46:20.696Z","method":"static","requirement_id":"VER-06","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"4cdcc488","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"in_progress_since":"2026-10-08T19:46:20.696Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"harness:reference-apps-ver":{"cell":"harness:reference-apps-ver","manifest_sha":"4cdcc488","coverage":{"VER-03":"partial: a payment receipt is labelled payment only when the receipt is proven against the segment statement's receipts commitment under the finality certificate, inclusion-only receipts read inclusion, a tampered receipt and a flipped status fail; run on the the earlier devnet fixtures, the 2.0 devnet re-run waits for its first paid segment whose last block carries a transaction; Review B F04: a receipt claiming lock_state final under a certificate the node reports as a recovery lock is refused, a recovery lock prints as recovery lock, not final (Node and browser negative cases on the fixtures; the field is not live on devnet-4 tonight, so no live recovery lock was seen)","VER-04":"partial: the oracle's trust() names the deployer-installed table and the unchecked aggregator signature, a second hash at a stored certificate index is refused, a root claim at an unknown index is refused, another chain id is refused (tools/reference-apps/oracle/test.mjs on Sepolia); Review B F04: the Sepolia verifiers apply the two-thirds rule only, carry no lock-kind field, and an under-threshold (recovery-rule) certificate fails closed in submitCertificate, so no stored root is a recovery lock (the DEX lane's docs/bridge/light-client-bridge.md paragraph); the claimed-option review of the trust model is the reviewer's","VER-06":"partial: the read service never serves a certificate from another network, a withheld header in the path and a corrupted proof node are detected, stale data prints its lock age beside every balance, and a client told no certificate never falls back to a trusted RPC balance; detection on the fault network F4 is not run","VER-08":"partial: every served state on /light, /receipt and /oracle uses one of included, executed, proven, finalised from the shared definition block, the lock line serves the live DAA before the first certificate, and the trust assumptions are listed on each page; the wallet and explorer surfaces are their lanes' rows; Review B F04: /light, /receipt, the receipt file and the one-file verifier show a node-reported recovery lock as recovery lock, not final, /oracle says recovery locks are not accepted by its verifier, the terms block defines the recovery lock"},"at":"2026-10-08T19:46:20.696Z","method":"static","requirement_id":"VER-06","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"4cdcc488","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"ra-20261008T1915-ver","evidence":"tools/reference-apps/ver/evidence/summary.json","in_progress":true}}},{"id":"VER-07","title":"Protect wallet keys, signing and recovery","setup":"Use test-only keys, encrypted backups and clean replacement devices; no real user funds.","steps":["Attempt secret access from proving jobs, logs, crash dumps, clipboard and telemetry paths.","Verify transaction destination/amount before signing; test backup/restore and wrong-password handling.","Upgrade and recover without silently changing signing authority or exposing seed material."],"accept":"No unintended secret disclosure or unauthorised signature. Supported recovery restores the correct keys and accounts; users receive explicit risk/backup information. Logs are sanitised without hiding security evidence.","evidence":"Security review; canary-secret tests; signing fixtures; restore journey.","priority":"BLOCKER","profile":"P01; P09","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[20,25,35,37],"gate":"Technical readiness / claimed options","owner":"Wallet + light-client lead; independent security review","manual_page":53,"owner_lane":"shipper (ae892a8b0f78fe31c)","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T19:22:31.798Z","evidence_record":{"reason":"wallet key protection is the wallet lane's security row","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"VER-07","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"reason":"wallet key protection is the wallet lane's security row","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"VER-07","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}},{"id":"VER-08","title":"Keep every user-facing state truthful","setup":"Create included-only, executed, proven, finalised, reverted, stale and paused examples.","steps":["Compare explorer, wallet, receipt, RPC and customer API labels against authenticated evidence.","Interrupt finality and proof services and observe refresh/reconnect behaviour.","Check statements about privacy, Ethereum security and device support."],"accept":"No stronger state is implied than verified; stale data is marked and failures are actionable. EVM compatibility is not labelled Ethereum security, and ZK technology is not automatically labelled transaction privacy.","evidence":"Cross-surface screenshots/logs; state mapping; claim review.","priority":"BLOCKER","profile":"P01; P09","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[20,25,35,37],"gate":"Technical readiness / claimed options","owner":"Wallet + light-client lead; independent security review","manual_page":53,"owner_lane":"reference-apps lane (a2060899d2a27d31c)","run_status":"NOT RUN","evidence_path":"tools/reference-apps/ver/evidence/summary.json; build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/miner-77b5acc5/box4-app.log","run_id":"202-5d53a591-1176efb9","updated":"2026-10-09T00:33:39.243Z","evidence_record":{"requirement_id":"VER-08","decision":"NOT RUN","method":"native","cell":"suite:app","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/miner-77b5acc5/box4-app.log","in_progress":false,"coverage":"partial: the app's own state-word tests; the wallet and light client rows are VER-01 to VER-03","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; app on release-2.0.2 77b5acc5 (box4, 39s); 77b5acc5..1176efb9 moves no crate, so the cell covers the tip by content | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."},"in_progress_since":"2026-10-08T19:46:20.696Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"harness:reference-apps-ver":{"cell":"harness:reference-apps-ver","manifest_sha":"4cdcc488","coverage":{"VER-03":"partial: a payment receipt is labelled payment only when the receipt is proven against the segment statement's receipts commitment under the finality certificate, inclusion-only receipts read inclusion, a tampered receipt and a flipped status fail; run on the the earlier devnet fixtures, the 2.0 devnet re-run waits for its first paid segment whose last block carries a transaction; Review B F04: a receipt claiming lock_state final under a certificate the node reports as a recovery lock is refused, a recovery lock prints as recovery lock, not final (Node and browser negative cases on the fixtures; the field is not live on devnet-4 tonight, so no live recovery lock was seen)","VER-04":"partial: the oracle's trust() names the deployer-installed table and the unchecked aggregator signature, a second hash at a stored certificate index is refused, a root claim at an unknown index is refused, another chain id is refused (tools/reference-apps/oracle/test.mjs on Sepolia); Review B F04: the Sepolia verifiers apply the two-thirds rule only, carry no lock-kind field, and an under-threshold (recovery-rule) certificate fails closed in submitCertificate, so no stored root is a recovery lock (the DEX lane's docs/bridge/light-client-bridge.md paragraph); the claimed-option review of the trust model is the reviewer's","VER-06":"partial: the read service never serves a certificate from another network, a withheld header in the path and a corrupted proof node are detected, stale data prints its lock age beside every balance, and a client told no certificate never falls back to a trusted RPC balance; detection on the fault network F4 is not run","VER-08":"partial: every served state on /light, /receipt and /oracle uses one of included, executed, proven, finalised from the shared definition block, the lock line serves the live DAA before the first certificate, and the trust assumptions are listed on each page; the wallet and explorer surfaces are their lanes' rows; Review B F04: /light, /receipt, the receipt file and the one-file verifier show a node-reported recovery lock as recovery lock, not final, /oracle says recovery locks are not accepted by its verifier, the terms block defines the recovery lock"},"at":"2026-10-08T19:46:20.696Z","method":"static","requirement_id":"VER-08","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"4cdcc488","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"ra-20261008T1915-ver","evidence":"tools/reference-apps/ver/evidence/summary.json","in_progress":true},"suite:app":{"requirement_id":"VER-08","decision":"NOT RUN","method":"native","cell":"suite:app","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/miner-77b5acc5/box4-app.log","in_progress":false,"coverage":"partial: the app's own state-word tests; the wallet and light client rows are VER-01 to VER-03","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; app on release-2.0.2 77b5acc5 (box4, 39s); 77b5acc5..1176efb9 moves no crate, so the cell covers the tip by content | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."}}}]},{"code":"OPS","title":"Independent operation and release security","source":[21,24,25,26],"gate":"G5","owner":"Operations + release leads; independent operators","fixtures":"F4 isolated multi-operator network; F0 signed releases; F9 telemetry","summary":"A permissionless specification must remain operational without privileged infrastructure or unsafe automatic updates.","tests":[{"id":"OPS-01","title":"Run the complete no-founder exercise","setup":"Use the P11 independent network, adequate honest participation and enough non-founder capacity for W.","steps":["Remove founder miners, provers, aggregators, RPC, DNS/bootstrap dependencies and private support access.","Run the full P11 period while crossing real and separately labelled accelerated boundaries.","Introduce scheduled faults and have independent operators recover using published instructions."],"accept":"No founder action, secret file, privileged key or emergency anti-chip rule is needed. P07/P08 outcomes hold within assumptions; any intervention is recorded as a failed no-rescue run, not erased.","evidence":"Operator roster/conflict checks; dependency removals; full activity/intervention log.","priority":"BLOCKER","profile":"P07; P08; P11","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[21,24,25,26],"gate":"G5","owner":"Operations + release leads; independent operators","manual_page":54,"owner_lane":"node lane (a283f5f0d364ceef0)","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T19:22:31.798Z","evidence_record":{"reason":"the no-founder exercise is an operations run, not a suite","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"OPS-01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"reason":"the no-founder exercise is an operations run, not a suite","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"OPS-01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}},{"id":"OPS-02","title":"Diversify bootstrap and resist peer isolation","setup":"Start nodes without the default bootstrap host and give others adversarial peer lists.","steps":["Attempt eclipse through peer concentration, stale discovery, poisoned DNS and repeated identities in an isolated lab.","Use independent documented discovery paths and validate returned chain data.","Measure synchronisation, peer diversity and recovery after benign connectivity returns."],"accept":"No unauthenticated history is trusted; bootstrap has no hidden single-provider requirement. Isolation is detected/contained according to F0 and recovery meets P08 when assumptions return.","evidence":"Peer/discovery traces; eclipse scenarios; startup and recovery evidence.","priority":"BLOCKER","profile":"P01; P08; P09","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[21,24,25,26],"gate":"G5","owner":"Operations + release leads; independent operators","manual_page":54,"owner_lane":"build-server lane (a352e49ff4613df86)","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T19:22:31.798Z","evidence_record":{"reason":"bootstrap diversity needs the fault network F4","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"OPS-02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"reason":"bootstrap diversity needs the fault network F4","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"OPS-02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}},{"id":"OPS-03","title":"Separate update distribution from consensus authority","setup":"Use test signing keys and clean desktop/node installations with valid, stale and malicious packages.","steps":["Offer signed updates with unexpected consensus rules, downgraded binaries and corrupted payloads.","Test explicit operator acceptance and the published signing-key incident procedure.","Confirm that distribution-key possession cannot independently activate new consensus rules."],"accept":"Tampering/unauthorised rollback is rejected; updates do not silently transfer authority. Approved acceptance and activation are separate. No test touches production signing material.","evidence":"Package corpus; approval/activation traces; compromised-key rehearsal.","priority":"BLOCKER","profile":"P01; P09","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[21,24,25,26],"gate":"G5","owner":"Operations + release leads; independent operators","manual_page":54,"owner_lane":"shipper (ae892a8b0f78fe31c)","run_status":"NOT RUN","evidence_path":"site/release-manifest.json; docs/plans/evidence/UX-01-20261008.md","run_id":"site-manifest-20261009-01","updated":"2026-10-09T01:34:42.557Z","evidence_record":{"requirement_id":"OPS-03","decision":"NOT RUN","method":"static","cell":"site:manifest","manifest_sha":"a13f727ed","run_id":"site-manifest-20261009-01","evidence":"site/release-manifest.json","in_progress":false,"coverage":"partial: the manifest's versions and network blocks regenerate from their sources; the separation itself is the node suites' (suite:exec, suite:p2p-flows)","release_identity":{"commit":"a13f727ed","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"the versions block on /release.json, /download and /miner; no claim moves","reviewer":"","at":"2026-10-09T01:34:42.557Z","note":"the manifest and the download index refreshed for 2.0.2 on Mac (02:20 UK, 9 October 2026; Windows and HiveOS stay on 2.0.1); read back at /release.json after the deploy"},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"site:manifest":{"requirement_id":"OPS-03","decision":"NOT RUN","method":"static","cell":"site:manifest","manifest_sha":"a13f727ed","run_id":"site-manifest-20261009-01","evidence":"site/release-manifest.json","in_progress":false,"coverage":"partial: the manifest's versions and network blocks regenerate from their sources; the separation itself is the node suites' (suite:exec, suite:p2p-flows)","release_identity":{"commit":"a13f727ed","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"the versions block on /release.json, /download and /miner; no claim moves","reviewer":"","at":"2026-10-09T01:34:42.557Z","note":"the manifest and the download index refreshed for 2.0.2 on Mac (02:20 UK, 9 October 2026; Windows and HiveOS stay on 2.0.1); read back at /release.json after the deploy"},"pc:install-update":{"requirement_id":"OPS-03","decision":"NOT RUN","method":"team-reported","cell":"pc:install-update","manifest_sha":"aa354ed5","run_id":"ux-01-20261008-win-2.0.0","evidence":"docs/plans/evidence/UX-01-20261008.md","in_progress":true,"coverage":"partial: the update path's read-back and the signed manifest's verify on the PC (a tampered or rolled-back payload is refused by the engine's manifest check); authority separation is the shipper's review","release_identity":{"commit":"aa354ed5","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T20:42:25.701Z"}},"in_progress_since":"2026-10-08T20:42:25.701Z"},{"id":"OPS-04","title":"Recover nodes from crash and storage damage","setup":"Use production database/snapshot paths with controlled interrupted writes and corrupted test storage.","steps":["Crash during import, proof acceptance, reward application and snapshot generation.","Restore from independently verified snapshots or re-sync through documented procedures.","Compare roots, certificates, balances and processed-job IDs with an unaffected node."],"accept":"No corrupt snapshot is trusted, no duplicate payout and no loss of authenticated final state. Recovery meets P08 where data is available; ambiguous corruption fails closed and is actionable.","evidence":"Crash schedule; snapshot hashes; root/balance diffs; recovery timing.","priority":"BLOCKER","profile":"P01; P08","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[21,24,25,26],"gate":"G5","owner":"Operations + release leads; independent operators","manual_page":55,"owner_lane":"node lane (a283f5f0d364ceef0)","run_status":"NOT RUN","evidence_path":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-exec.log","run_id":"202-5d53a591-1176efb9","updated":"2026-10-09T00:33:39.243Z","evidence_record":{"requirement_id":"OPS-04","decision":"NOT RUN","method":"native","cell":"suite:exec","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-exec.log","in_progress":false,"coverage":"partial: snapshot install, replay and genesis recapture after a crash","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; exec on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 24s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."},"in_progress_since":"2026-10-08T19:32:50.856Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"suite:exec":{"requirement_id":"OPS-04","decision":"NOT RUN","method":"native","cell":"suite:exec","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-exec.log","in_progress":false,"coverage":"partial: snapshot install, replay and genesis recapture after a crash","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; exec on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 24s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."}}},{"id":"OPS-05","title":"Isolate untrusted proving workloads","setup":"Run hostile test jobs with secret canaries and restrictive worker permissions.","steps":["Attempt filesystem escape, process spawning, resource exhaustion, network access and key-store reads.","Crash workers and inspect host, wallet and node availability plus dump/log contents.","Retry on every supported isolation backend and check dependency vulnerability handling."],"accept":"No secret leakage or unauthorised host action; P09 resource containment holds. Worker failure does not compromise validator/wallet authority; unsupported isolation is not marketed as safe execution.","evidence":"Sandbox penetration report; canary logs; resource limits; host-integrity checks.","priority":"BLOCKER","profile":"P01; P09","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[21,24,25,26],"gate":"G5","owner":"Operations + release leads; independent operators","manual_page":55,"owner_lane":"build-server lane (a352e49ff4613df86)","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T19:22:31.798Z","evidence_record":{"reason":"proving workload isolation is the fleet's pod row","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"OPS-05","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"reason":"proving workload isolation is the fleet's pod row","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"OPS-05","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}},{"id":"OPS-06","title":"Contain malicious network and API traffic","setup":"Use an authorised isolated load environment with declared resource and request-rate budgets.","steps":["Send malformed headers, proofs, oversized messages, floods and invalid peer sequences.","Measure legitimate traffic, memory/disk growth and validator CPU use.","Test limit resets, peer reconnect and graceful degradation without disabling validation."],"accept":"P09 abuse budgets hold; no unbounded allocation, persistent crash or invalid acceptance. Backpressure is visible and honest users retain the specified service at admitted load.","evidence":"Load/corpus manifests; resource series; valid-traffic metrics; incident traces.","priority":"BLOCKER","profile":"P01; P09","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[21,24,25,26],"gate":"G5","owner":"Operations + release leads; independent operators","manual_page":55,"owner_lane":"build-server lane (a352e49ff4613df86)","run_status":"NOT RUN","evidence_path":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-p2p-flows.log","run_id":"202-5d53a591-1176efb9","updated":"2026-10-09T00:33:39.243Z","evidence_record":{"requirement_id":"OPS-06","decision":"NOT RUN","method":"native","cell":"suite:p2p-flows","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-p2p-flows.log","in_progress":false,"coverage":"partial: malformed relay messages refused; traffic containment under load is an OPS harness","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; p2p-flows on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 25s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."},"in_progress_since":"2026-10-08T19:32:50.856Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"suite:p2p-flows":{"requirement_id":"OPS-06","decision":"NOT RUN","method":"native","cell":"suite:p2p-flows","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-p2p-flows.log","in_progress":false,"coverage":"partial: malformed relay messages refused; traffic containment under load is an OPS harness","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; p2p-flows on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 25s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."}}},{"id":"OPS-07","title":"Detect failures with usable evidence and runbooks","setup":"Define alerts for invalid acceptance, conflicting finality, backlog, data loss, payout mismatch and stale status.","steps":["Inject one instance of each monitored failure in the lab.","Have an unaffiliated operator diagnose it using only emitted evidence and published instructions.","Test redaction, metric freshness and duplicate-alert suppression without suppressing serious failures."],"accept":"P10 alert/detection limits hold; every blocker produces actionable evidence. Monitoring does not leak secrets or mislabel intentional safe pauses as successful finality.","evidence":"Alert matrix; detection timelines; independent runbook exercise.","priority":"GATE","profile":"P09; P10","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[21,24,25,26],"gate":"G5","owner":"Operations + release leads; independent operators","manual_page":56,"owner_lane":"build-server lane (a352e49ff4613df86)","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T19:22:31.798Z","evidence_record":{"reason":"runbook detection is an operations run","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"OPS-07","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"reason":"runbook detection is an operations run","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"OPS-07","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}},{"id":"OPS-08","title":"Repeat independent operation across releases","setup":"Use a clean previous supported version and the final candidate with independent operators.","steps":["Perform documented rolling upgrade, rollback of non-consensus software where allowed and resynchronisation.","Cross activation with mixed versions and unavailable founder distribution hosts.","Re-run affected gates after changes and preserve prior failures and incident lessons."],"accept":"No undocumented privileged migration or automatic consensus rewrite. All affected evidence is refreshed; P11 no-rescue results remain tied to the final release, not an earlier build.","evidence":"Upgrade/replay logs; invalidation map; repeated gate signatures.","priority":"BLOCKER","profile":"P00; P08; P11","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[21,24,25,26],"gate":"G5","owner":"Operations + release leads; independent operators","manual_page":56,"owner_lane":"build-server lane (a352e49ff4613df86)","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T19:22:31.798Z","evidence_record":{"reason":"repeat independent operation is a cross-release observation","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"OPS-08","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"reason":"repeat independent operation is a cross-release observation","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"OPS-08","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}}],"notes":[{"at":"2026-10-08T19:32:50.976Z","text":"F14 (Review B), the founder's ruling 8 October 19:57 UK: the public miner ships from 2.0.2 without remote jobs; our own fleet runs the lab build with its own signing root"}]},{"code":"UX","title":"Ember, payouts and operator control","source":[14,21,25,26],"gate":"Operator readiness / G5","owner":"Desktop product + pool leads; independent usability study","fixtures":"F2 supported desktops; F8 user study; F4 honest/malicious pools","summary":"Successful participation must be practical for ordinary owners without hidden custody or loss of consensus authority.","tests":[{"id":"UX-01","title":"Onboard ordinary owners on native desktop apps","setup":"Recruit the P10 first-time user cohort across Windows and macOS using supported physical hardware.","steps":["Observe install, hardware detection, safety explanation and first accepted work without staff intervention.","Record download/data preparation separately as well as complete end-to-end time.","Test unsupported hardware and insufficient memory messaging rather than forcing a failed start."],"accept":"P10 completion/time targets hold with no unsafe default or concealed prerequisite. The product is tested as the actual desktop app, not only a browser preview.","evidence":"Consent-based study records; task timings; failure reasons; compatibility outcomes.","priority":"GATE","profile":"P10","cadence":"Release candidate; repeat after relevant changes","method":"Independent observed user study","status":"NOT RUN","source":[14,21,25,26],"gate":"Operator readiness / G5","owner":"Desktop product + pool leads; independent usability study","manual_page":57,"owner_lane":"update-return lane (a22d765a2e0355a9f)","run_status":"NOT RUN","evidence_path":"docs/plans/evidence/UX-01-20261008.md","run_id":"ux-01-20261008-win-2.0.0","updated":"2026-10-08T20:42:25.701Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"pc:install-update":{"requirement_id":"UX-01","decision":"NOT RUN","method":"team-reported","cell":"pc:install-update","manifest_sha":"aa354ed5","run_id":"ux-01-20261008-win-2.0.0","evidence":"docs/plans/evidence/UX-01-20261008.md","in_progress":true,"coverage":"team-run evidence only (the two PCs taking the Windows entry through the app's own update path with no click and mining on every card); the P10 study is NOT RUN until unaffiliated participants are recruited","release_identity":{"commit":"aa354ed5","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T20:42:25.701Z"}},"evidence_record":{"requirement_id":"UX-01","decision":"NOT RUN","method":"team-reported","cell":"pc:install-update","manifest_sha":"aa354ed5","run_id":"ux-01-20261008-win-2.0.0","evidence":"docs/plans/evidence/UX-01-20261008.md","in_progress":true,"coverage":"team-run evidence only (the two PCs taking the Windows entry through the app's own update path with no click and mining on every card); the P10 study is NOT RUN until unaffiliated participants are recruited","release_identity":{"commit":"aa354ed5","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T20:42:25.701Z"},"in_progress_since":"2026-10-08T20:42:25.701Z"},{"id":"UX-02","title":"Make pause, stop and safe tuning reliable","setup":"Run mining/proving on active desktops under contention and safe thermal stress.","steps":["Use pause, stop, power limit, task selection and emergency local shutdown controls.","Crash or restart the UI while workers run and verify ownership of background processes.","Restore the original hardware settings and test power-saving/low-battery behaviour where supported."],"accept":"P10 control latency and safe-state requirements hold. Stopping does not strand an uncontrolled process; tuning never depends on unsafe settings or silent privilege escalation.","evidence":"Control timings; process/settings audit; restart and safety traces.","priority":"BLOCKER","profile":"P01; P10","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[14,21,25,26],"gate":"Operator readiness / G5","owner":"Desktop product + pool leads; independent usability study","manual_page":57,"owner_lane":"shipper (ae892a8b0f78fe31c)","run_status":"NOT RUN","evidence_path":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/miner-77b5acc5/box4-app.log; docs/analysis/floor-memory-profile-2026-10-08.md","run_id":"202-5d53a591-1176efb9","updated":"2026-10-09T00:33:39.243Z","evidence_record":{"requirement_id":"UX-02","decision":"NOT RUN","method":"native","cell":"suite:app","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/miner-77b5acc5/box4-app.log","in_progress":false,"coverage":"partial: the engine state machine's pause, stop and knob tests; the operator study is UX-01's","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; app on release-2.0.2 77b5acc5 (box4, 39s); 77b5acc5..1176efb9 moves no crate, so the cell covers the tip by content | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."},"in_progress_since":"2026-10-08T19:32:50.856Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"suite:app":{"requirement_id":"UX-02","decision":"NOT RUN","method":"native","cell":"suite:app","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/miner-77b5acc5/box4-app.log","in_progress":false,"coverage":"partial: the engine state machine's pause, stop and knob tests; the operator study is UX-01's","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; app on release-2.0.2 77b5acc5 (box4, 39s); 77b5acc5..1176efb9 moves no crate, so the cell covers the tip by content | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."},"rows:v607-floor-memory":{"requirement_id":"UX-02","decision":"NOT RUN","method":"GPU","cell":"rows:v607-floor-memory","manifest_sha":"c411bae9a","run_id":"v607-floor-memory-20261008T2059Z","evidence":"docs/analysis/floor-memory-profile-2026-10-08.md","in_progress":true,"coverage":"partial: the prover's safe refusal under memory pressure (exit 78 in one line, the miner's worker unharmed, nothing leaked after the refusal); pause, stop, power limit and the UI's crash ownership are the suite:app cell's","release_identity":{"commit":"c411bae9a (branch v607-floor-memory off cef5234b5)","lockfile":"proving/igneum-prove/Cargo.lock at cef5234b5","binary":"sp1-gpu-server db37c38b5feabdec5bbfd0298446da89f6a5d144125e399d6ab617f64f9cb61d (igneum-floor-sm8689-v607.tgz 9c02fcc6a3f045d3167c1d9cb6e22c584ea862189d11997754a57cbe1b0d355b); igneum-prove-host-0317 71bc2438856bb141; igneum-prove-host v607 66662219a3630772","network_object":"none (fixture proofs on rented pods, no network)","activation":"none","profile_hashes":"floor patch 9098c3e5979d057031f43588668201d1f7a53ab17e980c1eaf896cd5e6f38575"},"claim_impact":"the 2.0 proving statement's memory condition per tier: a 12 GB card runs the whole segment path alone; an 8 GB card proves shards only (its aggregation fails) and is refused the chain before setup; both time-share beside the 5.5 GiB miner; the 16 GB and 24 GB tiers unmeasured tonight","reviewer":"","at":"2026-10-08T22:22:49.946Z"}}},{"id":"UX-03","title":"Show net earnings and compatibility honestly","setup":"Use known rewards, fees, energy readings, retries and operator-entered tariffs.","steps":["Compare mining, internal proof and external proof income with authoritative ledgers.","Show gross/net estimates, measurement boundaries, tariff assumptions and payout status.","Test stale data, losses, negative margins and mining-only versus proving-compatible devices."],"accept":"P10 reconciliation limits hold and uncertainty is visible. No guaranteed profits, fabricated fiat price or inferred proving support; provisional earnings are not shown as settled payments.","evidence":"UI/ledger comparisons; tariff fixtures; stale/negative examples.","priority":"BLOCKER","profile":"P01; P10; P12","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[14,21,25,26],"gate":"Operator readiness / G5","owner":"Desktop product + pool leads; independent usability study","manual_page":57,"owner_lane":"shipper (ae892a8b0f78fe31c)","run_status":"NOT RUN","evidence_path":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/miner-77b5acc5/box4-app.log","run_id":"202-5d53a591-1176efb9","updated":"2026-10-09T00:33:39.243Z","evidence_record":{"requirement_id":"UX-03","decision":"NOT RUN","method":"native","cell":"suite:app","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/miner-77b5acc5/box4-app.log","in_progress":false,"coverage":"partial: the card and earnings rendering tests; the net-earnings model against real bills is COM/ECO evidence","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; app on release-2.0.2 77b5acc5 (box4, 39s); 77b5acc5..1176efb9 moves no crate, so the cell covers the tip by content | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."},"in_progress_since":"2026-10-08T19:32:50.856Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"suite:app":{"requirement_id":"UX-03","decision":"NOT RUN","method":"native","cell":"suite:app","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/miner-77b5acc5/box4-app.log","in_progress":false,"coverage":"partial: the card and earnings rendering tests; the net-earnings model against real bills is COM/ECO evidence","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; app on release-2.0.2 77b5acc5 (box4, 39s); 77b5acc5..1176efb9 moves no crate, so the cell covers the tip by content | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."}}},{"id":"UX-04","title":"Pay small operators without hidden custody","setup":"Use ordinary single-card balances and the actual pooling/payment path.","steps":["Earn, request/receive payment, disconnect and reconnect; include low balances, fees and a pool outage.","Attempt redirection, delayed accounting and withdrawal of another user's entitlement.","Reconcile displayed balances with canonical entitlement and actual settlement."],"accept":"P10 payout limits hold for the declared small-operator case. No unauthorised custody, redirection or unexplained loss; thresholds and fees are disclosed rather than masked by larger test balances.","evidence":"Single-card payout ledger; pool failure record; custody/authorisation review.","priority":"BLOCKER","profile":"P01; P10","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[14,21,25,26],"gate":"Operator readiness / G5","owner":"Desktop product + pool leads; independent usability study","manual_page":58,"owner_lane":"pool design seat (a3832b1c3b274b310)","run_status":"NOT RUN","evidence_path":"docs/analysis/pool/pool-pair-2026-10-08.md; build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-miner.log","run_id":"202-5d53a591-1176efb9","updated":"2026-10-09T00:33:39.243Z","evidence_record":{"requirement_id":"UX-04","decision":"NOT RUN","method":"native","cell":"suite:miner","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-miner.log","in_progress":false,"coverage":"partial: payout label and share accounting tests; custody is the pool lane's row","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; miner on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 25s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."},"in_progress_since":"2026-10-08T19:58:33.370Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"suite:pool":{"requirement_id":"UX-04","decision":"NOT RUN","method":"native","cell":"suite:pool","manifest_sha":"986252e73","run_id":"pool-2.0-20261008-03","evidence":"docs/analysis/pool/pool-pair-2026-10-08.md","in_progress":true,"coverage":"partial: PPLNS distribution tests (fee first, never overpays, late joiner), the payout key file round trip, the signed transfer decode; the live payout path on the devnet-4 pair is the UX-04 batch's evidence; review B F12 and INT-03/INT-04 (8 October 2026): payout::intent_tests (a restart from the pre-broadcast snapshot, a lost send response, a crash on either side of the broadcast, a stuck transaction replaced under the same intent, a reorged receipt and a finality pause, a failed transaction, a ledger that cannot be written: never a duplicate or a lost obligation, finalised only under the chain's final lock) and state::ledger_tests (an unreadable ledger is refused or restored, never emptied); F13/INT-16: frame, admission and pool::share_tests (the frame bound while reading, the bounded outgoing queue, one membership per session, the nonce and in-flight bounds, the share and connection budgets); the devnet-4 pair's class (8 October 2026 21:24 UK): state_provider::tests::an_unsynced_node_hands_the_pool_no_state_and_no_job (no job on a node whose igneum_getExecStatus reads synced false, blocked or re-executing; known-failed first against the 8ff7a0f4 provider; pool-synced-guard-202 f3e99e9c on release-2.0.2, 986252e7 on pool-2.0, 52 of 52 on build-6)","release_identity":{"commit":"986252e73","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T20:48:42.741Z"},"suite:miner":{"requirement_id":"UX-04","decision":"NOT RUN","method":"native","cell":"suite:miner","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-miner.log","in_progress":false,"coverage":"partial: payout label and share accounting tests; custody is the pool lane's row","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; miner on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 25s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."}}},{"id":"UX-05","title":"Keep voting keys with the miner through pooling","setup":"Use an honest pool and a modified pool that replaces worker identity or voting credentials.","steps":["Verify the consensus binding from performed work to the miner's retained key.","Attempt substitution, replay and reassignment without the miner's authorisation.","Leave the pool and verify retained voting/finality rights under F0."],"accept":"No silent transfer of governance/finality authority. If the protocol cannot establish retained keys, this requirement fails; a pool-protocol name or user-interface promise does not pass.","evidence":"Work/key binding vectors; malicious-pool attempts; leave-pool authority check.","priority":"BLOCKER","profile":"P01; P09","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[14,21,25,26],"gate":"Operator readiness / G5","owner":"Desktop product + pool leads; independent usability study","manual_page":58,"owner_lane":"pool design seat (a3832b1c3b274b310)","run_status":"NOT RUN","evidence_path":"docs/analysis/pool/pool-pair-2026-10-08.md","run_id":"pool-2.0-20261008-03","updated":"2026-10-08T20:48:42.741Z","evidence_record":{"reason":"voting keys through pooling is the pool lane's row","at":"2026-10-08T20:48:42.741Z","method":"static","requirement_id":"UX-05","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"in_progress_since":"2026-10-08T19:58:33.370Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"suite:pool":{"requirement_id":"UX-05","decision":"NOT RUN","method":"native","cell":"suite:pool","manifest_sha":"986252e73","run_id":"pool-2.0-20261008-03","evidence":"docs/analysis/pool/pool-pair-2026-10-08.md","in_progress":true,"coverage":"partial: the vote-key commitment on the wire (verify::tests::a_share_under_another_key_is_refused_before_the_hash: known-pass the member's key, known-fail another key on the share and a job naming another key, refused with code vote_key before the hash), the open pool's sidechain::check_key (the claimed key, the header's key and the reveal are one key), the same-nonce-other-template wrong_hash test, the TLS binding test; the malicious-pool run and the leave-and-retain run on the devnet-4 pair are the UX-05 batch's other evidence; review B INT-15 (8 October 2026): server::authorise_tests::a_replayed_proof_of_possession_is_not_an_authorisation (a public PoP replayed into another session, payout, pool or chain, or under another key, refused; only the challenge-bound binding v2 admits on a public network) and the_binding_policy_follows_the_network","release_identity":{"commit":"986252e73","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T20:48:42.741Z"}}},{"id":"UX-06","title":"Verify actual miner-selected work templates","setup":"Provide a pool interface with declared job-declaration support and independent miner templates.","steps":["Submit miner-selected valid transaction templates and verify what is actually hashed and accepted.","Have a pool substitute or censor templates and test local verification/fallback.","Measure payout and acceptance consequences without moving authority to the pool."],"accept":"The advertised selection control exists in accepted work, not only configuration. Undisclosed substitution is detected; supported independent operation remains practical under P10.","evidence":"Template commitments; accepted-block evidence; malicious-pool/fallback report.","priority":"BLOCKER","profile":"P01; P10","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[14,21,25,26],"gate":"Operator readiness / G5","owner":"Desktop product + pool leads; independent usability study","manual_page":58,"owner_lane":"shipper (ae892a8b0f78fe31c)","run_status":"NOT RUN","evidence_path":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-miner.log","run_id":"202-5d53a591-1176efb9","updated":"2026-10-09T00:33:39.243Z","evidence_record":{"requirement_id":"UX-06","decision":"NOT RUN","method":"native","cell":"suite:miner","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-miner.log","in_progress":false,"coverage":"partial: the miner's own template selection tests","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; miner on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 25s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"suite:miner":{"requirement_id":"UX-06","decision":"NOT RUN","method":"native","cell":"suite:miner","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/node-5d53a591/box4-miner.log","in_progress":false,"coverage":"partial: the miner's own template selection tests","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; miner on release-2.0.2-node 5d53a591 with the key-succession parent and the class v5 freeze igneum-pow (box4, 25s) | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."}}},{"id":"UX-07","title":"Expose actionable failures and safe updates","setup":"Create failed proofs, memory pressure, expired jobs, missing payouts and available software updates.","steps":["Ask independent users to identify the issue, stop safely and follow the recommended action.","Test explicit update approval, version visibility and a failed/corrupt update.","Confirm diagnostic exports remove keys and private inputs while retaining useful evidence."],"accept":"P10 task-success requirements hold; no silent update or false success state. Recovery instructions work on supported desktops and secret canaries never enter exported logs.","evidence":"Observed tasks; update traces; sanitised export tests.","priority":"BLOCKER","profile":"P09; P10","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[14,21,25,26],"gate":"Operator readiness / G5","owner":"Desktop product + pool leads; independent usability study","manual_page":59,"owner_lane":"shipper (ae892a8b0f78fe31c)","run_status":"NOT RUN","evidence_path":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/miner-77b5acc5/box4-app.log; docs/plans/evidence/UX-01-20261008.md","run_id":"202-5d53a591-1176efb9","updated":"2026-10-09T00:33:39.243Z","evidence_record":{"requirement_id":"UX-07","decision":"NOT RUN","method":"native","cell":"suite:app","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/miner-77b5acc5/box4-app.log","in_progress":false,"coverage":"partial: the refused-update and manifest tests; the update-return lane's install classes are its own rows","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; app on release-2.0.2 77b5acc5 (box4, 39s); 77b5acc5..1176efb9 moves no crate, so the cell covers the tip by content | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."},"in_progress_since":"2026-10-08T19:32:50.856Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"suite:app":{"requirement_id":"UX-07","decision":"NOT RUN","method":"native","cell":"suite:app","manifest_sha":"5d53a591","run_id":"202-5d53a591-1176efb9","evidence":"build-1:/srv/artefacts/tas/202-5d53a591-1176efb9/miner-77b5acc5/box4-app.log","in_progress":false,"coverage":"partial: the refused-update and manifest tests; the update-return lane's install classes are its own rows","release_identity":{"commit":"5d53a591","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-09T00:33:39.243Z","note":"suite GREEN (rc 0, every test passed); the cell covers its cases partially, so the case reads NOT RUN in progress with this evidence until its own acceptance is exercised; app on release-2.0.2 77b5acc5 (box4, 39s); 77b5acc5..1176efb9 moves no crate, so the cell covers the tip by content | 2.0.2 pair gate on build-4, 00:26 UTC: kit 2: release-manifest-check green on 1176efb9 (node block kit2b-line 5d53a591); 77b5acc5..1176efb9 moves pool/ and packaging only; 5d53a591 = fix 2 + the wedge fix on kit 1's tree (cf32be79, the record-store fold, read red on the fresh-sync read at 00:55 and rides 2.0.3); kit 2 carries the roll and the entries on its own four-block rule-33 record, kit 1 re-cut 490ebcfe/5db25637 the clean fallback Every suite cell maps its cases partially, so the green suites read NOT RUN in progress with their logs as evidence, never PASS by inference. Kit 2's rule-33 record (four blocks) lands with the entries; INT-07's FAIL on 94e4c6ba stands until then."},"pc:install-update":{"requirement_id":"UX-07","decision":"NOT RUN","method":"team-reported","cell":"pc:install-update","manifest_sha":"aa354ed5","run_id":"ux-01-20261008-win-2.0.0","evidence":"docs/plans/evidence/UX-01-20261008.md","in_progress":true,"coverage":"partial: the install classes (the payload's stop step, the detached installer under a job, the installer refusing a wrong-version name, a stale install flag) and the no-click resume; the recovery-instruction and canary rows are the shipper's","release_identity":{"commit":"aa354ed5","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T20:42:25.701Z"}}},{"id":"UX-08","title":"Publish competitive accessible software","setup":"Provide open documented builds, tuning parameters and known fee conditions for all supported platforms.","steps":["Compare Ember against independently optimised permissible implementations on identical work.","Measure efficiency, fees, false rejection, installation and update transparency.","Scan for hidden developer fees, hardware whitelists, per-address privilege or undisclosed remote controls."],"accept":"P10 relative-efficiency limits hold and all fees/privileges are explicit. No self-reported device tier earns consensus advantage. A superior external implementation triggers investigation, not selective exclusion.","evidence":"Matched software comparison; code/config review; fee/privilege inventory.","priority":"GATE","profile":"P02; P10","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[14,21,25,26],"gate":"Operator readiness / G5","owner":"Desktop product + pool leads; independent usability study","manual_page":59,"owner_lane":"hash lane (a690540514aa453d7)","run_status":"NOT RUN","evidence_path":"build-1:/srv/artefacts/tas/site-gate-6a47f1f8/pre-push.log","run_id":"site-gate-20261009-01","updated":"2026-10-09T07:36:07.241Z","evidence_record":{"requirement_id":"UX-08","decision":"NOT RUN","method":"static","cell":"gate:pre-push","manifest_sha":"6a47f1f8","run_id":"site-gate-20261009-01","evidence":"build-1:/srv/artefacts/tas/site-gate-6a47f1f8/pre-push.log","in_progress":true,"coverage":"partial: the site gate on every served page, plus docs/build/tuning.md (the published tuning and build-settings half, the hash lane's); the open builds and the fee conditions are the shipper's and the site lane's","release_identity":{"commit":"6a47f1f8","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"none: the served pages are checked, no claim moves","reviewer":"","at":"2026-10-09T07:36:07.241Z","note":"the site branch's box gate on 6a47f1f8 (build-2, --ci mode): 7 checks GREEN in 41 s, among them the launch-gates, forbidden-strings and scope checks on the served site that the cell's partial coverage names; a gate run is evidence for the cell, not a verdict on the case (the steward's word)"},"in_progress_since":"2026-10-08T18:28:32.408Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"gate:pre-push":{"requirement_id":"UX-08","decision":"NOT RUN","method":"static","cell":"gate:pre-push","manifest_sha":"6a47f1f8","run_id":"site-gate-20261009-01","evidence":"build-1:/srv/artefacts/tas/site-gate-6a47f1f8/pre-push.log","in_progress":true,"coverage":"partial: the site gate on every served page, plus docs/build/tuning.md (the published tuning and build-settings half, the hash lane's); the open builds and the fee conditions are the shipper's and the site lane's","release_identity":{"commit":"6a47f1f8","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"none: the served pages are checked, no claim moves","reviewer":"","at":"2026-10-09T07:36:07.241Z","note":"the site branch's box gate on 6a47f1f8 (build-2, --ci mode): 7 checks GREEN in 41 s, among them the launch-gates, forbidden-strings and scope checks on the served site that the cell's partial coverage names; a gate run is evidence for the cell, not a verdict on the case (the steward's word)"}}}],"notes":[{"at":"2026-10-08T19:32:51.045Z","text":"F14 (Review B), the founder's ruling 8 October 19:57 UK: the public miner ships from 2.0.2 without remote jobs; our own fleet runs the lab build with its own signing root"}]},{"code":"COM","title":"Paid demand and sustainable delivery","source":[4,17,18,24,26,27,31,32,33],"gate":"Commercial evidence","owner":"Commercial lead + independent financial/customer reviewer","fixtures":"F8 real consenting customers; F7 full service costs; private identity proofs","summary":"Devnet payouts and subsidised pilots demonstrate mechanics, not independent willingness to pay.","tests":[{"id":"COM-01","title":"Deliver a genuine contracted proof pilot","setup":"Select one real external customer with a meaningful fixed workload and no required migration to Igneum.","steps":["Agree program, inputs, proof format, deadline, price, failure/refund policy and verification method.","Run paid jobs through ordinary independently operated infrastructure.","Have the customer verify usefulness, correctness and its reason for choosing the service."],"accept":"The pilot satisfies its actual contract and settles genuine external payment. Trial subsidies are disclosed and cannot satisfy the repeat-demand gate; no invented customer or testimonial.","evidence":"Redacted contract; verified jobs; settlement proof; consented customer confirmation.","priority":"GATE","profile":"P07; P14","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[4,17,18,24,26,27,31,32,33],"gate":"Commercial evidence","owner":"Commercial lead + independent financial/customer reviewer","manual_page":60,"owner_lane":"main / the founder","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T19:22:31.798Z","evidence_record":{"reason":"commercial evidence, no automated harness","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"COM-01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"reason":"commercial evidence, no automated harness","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"COM-01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}},{"id":"COM-02","title":"Establish independent repeat purchasing","setup":"Use the P14 multi-customer observation period and ownership/conflict checks.","steps":["Track paid purchases on distinct occasions, including refunds and stopped customers.","Audit related parties, project reimbursements, token grants and circular funding.","Reconcile external cash received with correctly delivered meaningful work."],"accept":"P14 buyer, duration and volume minima are met without reimbursement or related-party substitution. Repeat orders are separate buying decisions, not a single payment split into many jobs.","evidence":"Anonymised buyer ledger; repeat-order dates; conflict review; net receipts.","priority":"GATE","profile":"P14","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[4,17,18,24,26,27,31,32,33],"gate":"Commercial evidence","owner":"Commercial lead + independent financial/customer reviewer","manual_page":60,"owner_lane":"main / the founder","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T19:22:31.798Z","evidence_record":{"reason":"commercial evidence","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"COM-02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"reason":"commercial evidence","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"COM-02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}},{"id":"COM-03","title":"Demonstrate service and operator margins","setup":"Allocate all delivery costs, including aggregation, retries, hardware, power, host, network and support.","steps":["Calculate gross contribution and fully loaded unit costs for each contracted workload.","Reconcile a representative operator's realised earnings against metered costs and opportunity cost.","Repeat under the declared demand and price sensitivities."],"accept":"P14 contribution targets hold and at least the required operator cohort has positive realised contribution. Excluded overhead is visible; token appreciation or unpriced founder labour cannot silently create profitability.","evidence":"Unit-economics ledger; metered operator sample; allocation rules; sensitivity report.","priority":"GATE","profile":"P12; P14","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[4,17,18,24,26,27,31,32,33],"gate":"Commercial evidence","owner":"Commercial lead + independent financial/customer reviewer","manual_page":60,"owner_lane":"main / the founder","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T19:22:31.798Z","evidence_record":{"reason":"commercial evidence","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"COM-03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"reason":"commercial evidence","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"COM-03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}},{"id":"COM-04","title":"Meet the customer service guarantee","setup":"Observe actual delivery deadlines, validity, failure handling and support over the contracted period.","steps":["Count all accepted jobs, including failed, retried and abandoned cases.","Have the customer independently verify results and invoke one authorised refund/failure exercise.","Compare offered capacity and quoted price with what was actually delivered."],"accept":"P07 and contracted obligations hold; validity has zero accepted exceptions. Failure terms are honoured, and demand beyond capacity is explicitly refused rather than quietly omitted from metrics.","evidence":"Customer-verifier records; SLO report; refunds; promised-versus-delivered comparison.","priority":"BLOCKER","profile":"P01; P07; P14","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[4,17,18,24,26,27,31,32,33],"gate":"Commercial evidence","owner":"Commercial lead + independent financial/customer reviewer","manual_page":61,"owner_lane":"main / the founder","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T19:22:31.798Z","evidence_record":{"reason":"commercial evidence","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"COM-04","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"reason":"commercial evidence","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"COM-04","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}},{"id":"COM-05","title":"Compare against the buyer's real alternative","setup":"Identify a credible alternative supplier or in-house option for the same workload, proof format and security.","steps":["Obtain comparable quotes or consented measured trials at the evaluation date.","Include integration, verification, deadlines and all operational costs, not only proof-generation time.","Document the customer's actual trade-off without inventing unavailable comparator evidence."],"accept":"P15 commercial comparison is satisfied with like-for-like scope and a evidenced purchase reason. Missing alternative data remains MISSING; it is not scored as an Igneum win.","evidence":"Dated comparison; workload/security match; customer decision record.","priority":"GATE","profile":"P14; P15","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[4,17,18,24,26,27,31,32,33],"gate":"Commercial evidence","owner":"Commercial lead + independent financial/customer reviewer","manual_page":61,"owner_lane":"main / the founder","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T19:22:31.798Z","evidence_record":{"reason":"commercial evidence","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"COM-05","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"reason":"commercial evidence","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"COM-05","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}},{"id":"COM-06","title":"Retain buyers after the pilot and subsidy period","setup":"Follow all recruited customers through the P14 observation period, including churn.","steps":["Remove disclosed trial incentives before measuring repeat demand.","Track renewal, expansion, cancellation reasons, unresolved incidents and buyer concentration.","Review whether one affiliated or subsidised buyer dominates the apparent market."],"accept":"P14 repeat/concentration conditions hold with honest denominator and churn reporting. Paying demand survives beyond a demonstration; unsatisfied or departed buyers are not removed retrospectively.","evidence":"Cohort/renewal ledger; churn notes; concentration and incentive report.","priority":"GATE","profile":"P14","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[4,17,18,24,26,27,31,32,33],"gate":"Commercial evidence","owner":"Commercial lead + independent financial/customer reviewer","manual_page":61,"owner_lane":"main / the founder","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T19:22:31.798Z","evidence_record":{"reason":"commercial evidence","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"COM-06","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"reason":"commercial evidence","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"COM-06","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}},{"id":"COM-07","title":"Fund maintenance without assumed appreciation","setup":"Prepare a costed plan for development, review, infrastructure, support and incident response.","steps":["Separate committed resources from revenue dependent on adoption or token price.","Stress lower income and an unexpected security/operations expense.","Verify responsible owners and continuity arrangements without changing fair-launch promises."],"accept":"P13 committed-runway requirement holds and downside responses are documented. No uncommitted financing, rising token price or burn accounting is presented as available maintenance funding.","evidence":"Budget and commitment evidence; downside plan; owner/continuity roster.","priority":"GATE","profile":"P13","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[4,17,18,24,26,27,31,32,33],"gate":"Commercial evidence","owner":"Commercial lead + independent financial/customer reviewer","manual_page":62,"owner_lane":"main / the founder","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T20:10:24.556Z","deferral_note":"P13 deferred by the founder (8 October 2026, 18:2x UK: \"forget P13 for now\")","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_record":{"reason":"commercial evidence","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"COM-07","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"commercial evidence","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"COM-07","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}},{"id":"COM-08","title":"Let independent developers build useful integrations","setup":"Recruit unaffiliated developers unfamiliar with unpublished implementation details.","steps":["Use public docs to deploy a supported application or integrate an external proof request and verification flow.","Record time, undocumented dependencies, workarounds and correctness issues.","Retest after documentation fixes without founder-written hidden integration code."],"accept":"P14 developer-task minimum passes on the final release; all required public instructions exist. Successful bytecode deployment alone does not count as a working application or service integration.","evidence":"Consented developer logs; public examples; issue closure; verified end-to-end journeys.","priority":"GATE","profile":"P09; P14","cadence":"Release candidate; repeat after relevant changes","method":"Independent integration study","status":"NOT RUN","source":[4,17,18,24,26,27,31,32,33],"gate":"Commercial evidence","owner":"Commercial lead + independent financial/customer reviewer","manual_page":62,"owner_lane":"main / the founder","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08 18:3x UK","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}}]},{"code":"LEAD","title":"Comparative leadership evidence","source":[4,22,25,27,31,32,33],"gate":"Leadership-contender decision","owner":"Independent assessment panel + product/economics reviewers","fixtures":"F8 peer/customer studies; full signed technical evidence; 90-day observation","summary":"A serious contention claim requires comparative outcomes and real adoption evidence, not just an internally green test dashboard.","tests":[{"id":"LEAD-01","title":"Register a fair contemporary comparison","setup":"Choose at least the P15 peer coverage and an evaluation date before collecting confirmatory results.","steps":["Include the plan's Ravencoin, Ergo and Firo reference set where comparable, then check for other relevant current options.","Freeze versions, supported hardware, methods, noninferiority margins and commercial alternatives.","Publish exclusions and prohibit cross-algorithm raw-hashrate comparisons."],"accept":"The protocol covers material alternatives fairly and is signed independently. A missing or non-comparable feature is not scored zero; no arbitrary universal rank is inferred from selected metrics.","evidence":"Timestamped peer protocol; source/version records; comparison/exclusion rationale.","priority":"GATE","profile":"P15","cadence":"Release candidate; repeat after relevant changes","method":"Pre-registered comparative study","status":"NOT RUN","source":[4,22,25,27,31,32,33],"gate":"Leadership-contender decision","owner":"Independent assessment panel + product/economics reviewers","manual_page":63,"owner_lane":"main / the founder","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08 18:3x UK","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"LEAD-02","title":"Demonstrate comparable operator advantages","setup":"Use matched user tasks and operating conditions on the selected GPU-first networks.","steps":["Measure install-to-first-accepted-work, software overhead versus each network's tuned baseline, payout friction and retained control.","Measure rejection/availability under the same network conditions; report fees separately.","Use blinded analysis where possible and independent runs for decisive differences."],"accept":"P15 noninferiority and superiority requirements hold on meaningful comparable dimensions. No raw hashes from different algorithms are compared, and transient token price is not labelled engineering superiority.","evidence":"Matched task data; uncertainty/effect sizes; independent comparison report.","priority":"GATE","profile":"P02; P10; P15","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[4,22,25,27,31,32,33],"gate":"Leadership-contender decision","owner":"Independent assessment panel + product/economics reviewers","manual_page":63,"owner_lane":"site lane (a846fd66b5403e35a)","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T19:22:31.798Z","evidence_record":{"reason":"leadership comparison, an observation window","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"LEAD-02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"reason":"leadership comparison, an observation window","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"LEAD-02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}},{"id":"LEAD-03","title":"Substantiate the specialist-coexistence claim","setup":"Assemble G1-G4 plus frozen rules and all surviving-adversary assumptions.","steps":["Have independent reviewers trace each public competitiveness statement to its narrowest evidence.","Separate measured GPUs, modelled silicon and economic scenarios in all summaries.","Evaluate residual uncertainty, excluded technologies and the no-new-rules counterfactual."],"accept":"All claimed envelopes meet P04/P12 without unsupported universal bounds. Reviewers agree the evidence supports scoped commodity competitiveness even when chips remain compatible; an exact chip-arrival probability is not inferred.","evidence":"Claim-to-evidence map; signed envelope review; limitations statement.","priority":"GATE","profile":"P04; P12; P15","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[4,22,25,27,31,32,33],"gate":"Leadership-contender decision","owner":"Independent assessment panel + product/economics reviewers","manual_page":63,"owner_lane":"main / the founder","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T19:22:31.798Z","evidence_record":{"reason":"observation window","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"LEAD-03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"reason":"observation window","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"LEAD-03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}},{"id":"LEAD-04","title":"Observe ordinary-operator retention and margins","setup":"Recruit the P16 independent cohort before observing results; use privacy-preserving evidence.","steps":["Follow participation, realised margin, hardware changes, failures and reasons for leaving for 90 days.","Report trial incentives separately and include every initial participant in retention denominators.","Compare behaviour with matched alternatives where feasible; disclose absence of an actual downturn."],"accept":"P16 retention/margin minima hold with verified independence and no removal of churned users. Simulated downturns cannot be called observed bear-market retention; historical claims stay limited to the period measured.","evidence":"Pseudonymous cohort ledger; margin/retention calculations; departure reasons.","priority":"GATE","profile":"P12; P16","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[4,22,25,27,31,32,33],"gate":"Leadership-contender decision","owner":"Independent assessment panel + product/economics reviewers","manual_page":64,"owner_lane":"main / the founder","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T19:22:31.798Z","evidence_record":{"reason":"observation window","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"LEAD-04","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"reason":"observation window","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"LEAD-04","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}},{"id":"LEAD-05","title":"Measure control and dependency concentration","setup":"Audit operational control of mining, voting, proving, aggregation, hosting and software distribution separately.","steps":["Use opt-in attestations, observed dependencies and independent corroboration; disclose uncertain common ownership.","Compare concentration and provider-removal outcomes to the approved security and availability assumptions.","Check that pooled payments do not hide authority concentration and hardware vendors are not equated with operators."],"accept":"P11/P16 concentration requirements hold within disclosed uncertainty; unidentified control cannot be counted as independent. No single removable dependency is falsely marketed as decentralised operation.","evidence":"Control/failure-domain map; uncertainty notes; concentration/removal results.","priority":"GATE","profile":"P11; P16","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[4,22,25,27,31,32,33],"gate":"Leadership-contender decision","owner":"Independent assessment panel + product/economics reviewers","manual_page":64,"owner_lane":"main / the founder","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T19:22:31.798Z","evidence_record":{"reason":"observation window","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"LEAD-05","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"reason":"observation window","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"LEAD-05","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}},{"id":"LEAD-06","title":"Complete the reliability observation window","setup":"Observe the final candidate and approved compatible updates for the full P16 real-time period.","steps":["Measure promised service availability, invalid acceptance, finality safety, payouts and incident impact.","Reconcile external probes, customer records and operator logs, including maintenance and exclusions.","Repeat affected critical tests after every material change; reset observation where comparability breaks."],"accept":"P16 availability and safety criteria hold on live observation; no hidden downtime or compressed-time substitution. This supports the recorded window only, not multi-year operational maturity.","evidence":"90-day SLO ledger; independent probes; incident reports; change/retest history.","priority":"BLOCKER","profile":"P01; P16","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[4,22,25,27,31,32,33],"gate":"Leadership-contender decision","owner":"Independent assessment panel + product/economics reviewers","manual_page":64,"owner_lane":"main / the founder","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T19:22:31.798Z","evidence_record":{"reason":"observation window","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"LEAD-06","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"reason":"observation window","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"LEAD-06","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}},{"id":"LEAD-07","title":"Issue an independent contender assessment","setup":"Provide the full evidence packet, commercial results, comparative study and unresolved-limit register to the panel.","steps":["Check every mandatory and claimed-option test, source requirement and approved threshold.","Require separate signoffs for hardware/economics, security/operations and customer/operator evidence.","Document dissent and challenge any inference that passing an internal checklist proves number-one rank."],"accept":"Every required gate is PASS with no unresolved material challenge, critical/high defect or missing comparator/customer evidence. The panel supports a credible leadership-contender conclusion within scope, not a guaranteed rank.","evidence":"Signed assessment; full status index; dissent/limitations; approved claim wording.","priority":"GATE","profile":"P00; P15; P16","cadence":"Release candidate; repeat after relevant changes","method":"Independent final assessment","status":"NOT RUN","source":[4,22,25,27,31,32,33],"gate":"Leadership-contender decision","owner":"Independent assessment panel + product/economics reviewers","manual_page":65,"owner_lane":"main / the founder","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08 18:3x UK","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"LEAD-08","title":"Keep leadership claims valid after release","setup":"Define material-change triggers and scheduled reviews before publishing the assessment.","steps":["Refresh competitor, hardware-cost, demand and security evidence at the P16 cadence.","Test a newly credible specialist, lost customer, major outage and verifier change against invalidation rules.","Withdraw or narrow stale claims promptly while publishing the new evidence status."],"accept":"Claims remain dated, scoped and revisable; material contrary evidence reopens the appropriate gate. The network may remain usable while a leadership claim is suspended. No permanent self-awarded certification.","evidence":"Review calendar; invalidation drills; versioned public claim register.","priority":"GATE","profile":"P00; P16","cadence":"Release candidate; repeat after relevant changes","method":"Automated + independent review","status":"NOT RUN","source":[4,22,25,27,31,32,33],"gate":"Leadership-contender decision","owner":"Independent assessment panel + product/economics reviewers","manual_page":65,"owner_lane":"main / the founder","run_status":"NOT RUN","evidence_path":"","run_id":"","updated":"2026-10-08T19:22:31.798Z","evidence_record":{"reason":"observation window","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"LEAD-08","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null},"evidence_records":{"record":{"reason":"observation window","at":"2026-10-08T19:22:31.798Z","method":"static","requirement_id":"LEAD-08","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"run_id":"","evidence":"","in_progress":false}}}]},{"code":"REV","title":"REV: the external review's required regressions","source":"docs/analysis/review-2026-10-08-b/findings.json and docs/analysis/review-2026-10-08-b/dispatch.md; ids from the master traceability register","gate":"Review findings closed","owner":"the owner lanes per the dispatch table","fixtures":["F0","F5"],"summary":"44 regressions from 14 findings; each reads NOT RUN until its owner lane records a run","tests":[{"id":"R2-F01-R01","title":"Valid proof A, warm cache, carried statement B: refuse exactly as a cold node does.","setup":"The regression R2-F01 requires (review R2 finding F01: Proof-verdict cache omits the statement being verified).","steps":["Valid proof A, warm cache, carried statement B: refuse exactly as a cold node does."],"accept":"Valid proof A, warm cache, carried statement B: refuse exactly as a cold node does.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F01"],"gate":"Review findings closed","owner":"proving lane, node lane","manual_page":null,"finding":"R2-F01","finding_title":"Proof-verdict cache omits the statement being verified","finding_priority":"P0 - public/value-bearing release blocker","owner_lane":"proving lane, node lane","run_status":"NOT RUN","base_test_ids":["ZKP-02","ZKP-03","ZKP-04","ZKP-08"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F01 (P0, the external review): the regression's harness is the owner lane's (proving lane, node lane); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F01-R01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F01 (P0, the external review): the regression's harness is the owner lane's (proving lane, node lane); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F01-R01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F01-R02","title":"Run valid/invalid contexts in both orders, concurrently and across cache eviction/restart.","setup":"The regression R2-F01 requires (review R2 finding F01: Proof-verdict cache omits the statement being verified).","steps":["Run valid/invalid contexts in both orders, concurrently and across cache eviction/restart."],"accept":"Run valid/invalid contexts in both orders, concurrently and across cache eviction/restart.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F01"],"gate":"Review findings closed","owner":"proving lane, node lane","manual_page":null,"finding":"R2-F01","finding_title":"Proof-verdict cache omits the statement being verified","finding_priority":"P0 - public/value-bearing release blocker","owner_lane":"proving lane, node lane","run_status":"NOT RUN","base_test_ids":["ZKP-02","ZKP-03","ZKP-04","ZKP-08"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F01 (P0, the external review): the regression's harness is the owner lane's (proving lane, node lane); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F01-R02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F01 (P0, the external review): the regression's harness is the owner lane's (proving lane, node lane); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F01-R02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F01-R03","title":"Change payout, network, kind, program ID and activation context; no accepted misbinding.","setup":"The regression R2-F01 requires (review R2 finding F01: Proof-verdict cache omits the statement being verified).","steps":["Change payout, network, kind, program ID and activation context; no accepted misbinding."],"accept":"Change payout, network, kind, program ID and activation context; no accepted misbinding.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F01"],"gate":"Review findings closed","owner":"proving lane, node lane","manual_page":null,"finding":"R2-F01","finding_title":"Proof-verdict cache omits the statement being verified","finding_priority":"P0 - public/value-bearing release blocker","owner_lane":"proving lane, node lane","run_status":"NOT RUN","base_test_ids":["ZKP-02","ZKP-03","ZKP-04","ZKP-08"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F01 (P0, the external review): the regression's harness is the owner lane's (proving lane, node lane); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F01-R03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F01 (P0, the external review): the regression's harness is the owner lane's (proving lane, node lane); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F01-R03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F01-R04","title":"A native two-node test must agree on block validity and payouts despite different cache histories.","setup":"The regression R2-F01 requires (review R2 finding F01: Proof-verdict cache omits the statement being verified).","steps":["A native two-node test must agree on block validity and payouts despite different cache histories."],"accept":"A native two-node test must agree on block validity and payouts despite different cache histories.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F01"],"gate":"Review findings closed","owner":"proving lane, node lane","manual_page":null,"finding":"R2-F01","finding_title":"Proof-verdict cache omits the statement being verified","finding_priority":"P0 - public/value-bearing release blocker","owner_lane":"proving lane, node lane","run_status":"NOT RUN","base_test_ids":["ZKP-02","ZKP-03","ZKP-04","ZKP-08"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F01 (P0, the external review): the regression's harness is the owner lane's (proving lane, node lane); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F01-R04","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F01 (P0, the external review): the regression's harness is the owner lane's (proving lane, node lane); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F01-R04","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F02-R01","title":"Release build cannot activate test bypass.","setup":"The regression R2-F02 requires (review R2 finding F02: Proof-rule infrastructure can fail open).","steps":["Release build cannot activate test bypass."],"accept":"Release build cannot activate test bypass.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F02"],"gate":"Review findings closed","owner":"proving lane, CI steward","manual_page":null,"finding":"R2-F02","finding_title":"Proof-rule infrastructure can fail open","finding_priority":"P0 - release configuration blocker","owner_lane":"proving lane, CI steward","run_status":"NOT RUN","base_test_ids":["GOV-05","ZKP-01","ZKP-07","ZKP-08"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F02 (P0, the external review): the regression's harness is the owner lane's (proving lane, CI steward); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F02-R01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F02 (P0, the external review): the regression's harness is the owner lane's (proving lane, CI steward); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F02-R01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F02-R02","title":"Missing oracle or pinned keys prevents service readiness after enforcement activation.","setup":"The regression R2-F02 requires (review R2 finding F02: Proof-rule infrastructure can fail open).","steps":["Missing oracle or pinned keys prevents service readiness after enforcement activation."],"accept":"Missing oracle or pinned keys prevents service readiness after enforcement activation.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F02"],"gate":"Review findings closed","owner":"proving lane, CI steward","manual_page":null,"finding":"R2-F02","finding_title":"Proof-rule infrastructure can fail open","finding_priority":"P0 - release configuration blocker","owner_lane":"proving lane, CI steward","run_status":"NOT RUN","base_test_ids":["GOV-05","ZKP-01","ZKP-07","ZKP-08"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F02 (P0, the external review): the regression's harness is the owner lane's (proving lane, CI steward); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F02-R02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F02 (P0, the external review): the regression's harness is the owner lane's (proving lane, CI steward); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F02-R02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F02-R03","title":"Missing proof bytes retry without incorrectly marking a valid block permanently invalid.","setup":"The regression R2-F02 requires (review R2 finding F02: Proof-rule infrastructure can fail open).","steps":["Missing proof bytes retry without incorrectly marking a valid block permanently invalid."],"accept":"Missing proof bytes retry without incorrectly marking a valid block permanently invalid.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F02"],"gate":"Review findings closed","owner":"proving lane, CI steward","manual_page":null,"finding":"R2-F02","finding_title":"Proof-rule infrastructure can fail open","finding_priority":"P0 - release configuration blocker","owner_lane":"proving lane, CI steward","run_status":"NOT RUN","base_test_ids":["GOV-05","ZKP-01","ZKP-07","ZKP-08"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F02 (P0, the external review): the regression's harness is the owner lane's (proving lane, CI steward); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F02-R03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F02 (P0, the external review): the regression's harness is the owner lane's (proving lane, CI steward); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F02-R03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F03-R01","title":"Clean build from one manifest, including the pool and workers, with no unpublished vendor tree.","setup":"The regression R2-F03 requires (review R2 finding F03: The bundle contains a v6 candidate, not a demonstrated integrated v6 release).","steps":["Clean build from one manifest, including the pool and workers, with no unpublished vendor tree."],"accept":"Clean build from one manifest, including the pool and workers, with no unpublished vendor tree.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F03"],"gate":"Review findings closed","owner":"CI steward, hash lane (ProgramClass::V6 on freeze), pool lane","manual_page":null,"finding":"R2-F03","finding_title":"The bundle contains a v6 candidate, not a demonstrated integrated v6 release","finding_priority":"P0 - freeze/integration blocker","owner_lane":"CI steward, hash lane (ProgramClass::V6 on freeze), pool lane","run_status":"PASS","base_test_ids":["GOV-01","GOV-03","POW-01","ROT-02"],"run_id":"f03-manifest-20261008-01","evidence_path":"build-1:/srv/artefacts/tas/f03-manifest-20261008-01/build-from-manifest-c30ab32c-build4.log; build-4:/srv/builds/igneum-wt-f03-201; tools/ci/build-from-manifest.sh; tools/ci/release-manifest-check.sh","updated":"2026-10-08T21:11:46.383Z","evidence_record":{"requirement_id":"R2-F03-R01","decision":"PASS","method":"static","cell":"harness:release-manifest","manifest_sha":"c30ab32c","run_id":"f03-manifest-20261008-01","evidence":"build-1:/srv/artefacts/tas/f03-manifest-20261008-01/build-from-manifest-c30ab32c-build4.log; build-4:/srv/builds/igneum-wt-f03-201; tools/ci/build-from-manifest.sh; tools/ci/release-manifest-check.sh","in_progress":false,"coverage":"full for the components the tree builds (node, miner, pool, app, prove-host from one manifest, no unpublished vendor tree); the GPU workers are the kit's cross-build and read under the shipper's kit-isa line, not this cell","release_identity":{"commit":"c30ab32c","lockfile":"the release tree's Cargo.lock files at c30ab32c","binary":"cargo check only: no binary is claimed by this cell; the fleet binaries are the shipper's kit on aa0e0f45","network_object":"igneum-devnet-4, chain id 4465","activation":"none (a build fact)","profile_hashes":"release-manifest-check: every component's own pin equals packaging/release-manifest.json"},"claim_impact":"F03's first rung: one manifest, one build, no unpublished vendor tree; the same-work rung (R02) and the transition rung (R03) stay NOT RUN until the readers run on the job context","reviewer":"","at":"2026-10-08T21:11:46.383Z"},"evidence_records":{"harness:release-manifest":{"requirement_id":"R2-F03-R01","decision":"PASS","method":"static","cell":"harness:release-manifest","manifest_sha":"c30ab32c","run_id":"f03-manifest-20261008-01","evidence":"build-1:/srv/artefacts/tas/f03-manifest-20261008-01/build-from-manifest-c30ab32c-build4.log; build-4:/srv/builds/igneum-wt-f03-201; tools/ci/build-from-manifest.sh; tools/ci/release-manifest-check.sh","in_progress":false,"coverage":"full for the components the tree builds (node, miner, pool, app, prove-host from one manifest, no unpublished vendor tree); the GPU workers are the kit's cross-build and read under the shipper's kit-isa line, not this cell","release_identity":{"commit":"c30ab32c","lockfile":"the release tree's Cargo.lock files at c30ab32c","binary":"cargo check only: no binary is claimed by this cell; the fleet binaries are the shipper's kit on aa0e0f45","network_object":"igneum-devnet-4, chain id 4465","activation":"none (a build fact)","profile_hashes":"release-manifest-check: every component's own pin equals packaging/release-manifest.json"},"claim_impact":"F03's first rung: one manifest, one build, no unpublished vendor tree; the same-work rung (R02) and the transition rung (R03) stay NOT RUN until the readers run on the job context","reviewer":"","at":"2026-10-08T21:11:46.383Z"}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F03-R02","title":"Same job context produces identical accepted work in node, CPU reference, CUDA, Metal, OpenCL and pool.","setup":"The regression R2-F03 requires (review R2 finding F03: The bundle contains a v6 candidate, not a demonstrated integrated v6 release).","steps":["Same job context produces identical accepted work in node, CPU reference, CUDA, Metal, OpenCL and pool."],"accept":"Same job context produces identical accepted work in node, CPU reference, CUDA, Metal, OpenCL and pool.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F03"],"gate":"Review findings closed","owner":"CI steward, hash lane (ProgramClass::V6 on freeze), pool lane","manual_page":null,"finding":"R2-F03","finding_title":"The bundle contains a v6 candidate, not a demonstrated integrated v6 release","finding_priority":"P0 - freeze/integration blocker","owner_lane":"CI steward, hash lane (ProgramClass::V6 on freeze), pool lane","run_status":"NOT RUN","base_test_ids":["GOV-01","GOV-03","POW-01","ROT-02"],"run_id":"same-work-20261008-03","evidence_path":"docs/design/class-v5-stored-state.md; build-1:/srv/artefacts/packs/packs-class-v6-20261008T202808Z.zip; build-1:/srv/builds/_log/v5-class/kits-20261008T202808Z/emu-check.log; build-1:/srv/artefacts/tas/same-work-20261008-03/job-context.json; build-1:/srv/artefacts/tas/same-work-20261008-03/state-epoch2.igsd1; build-1:/srv/artefacts/tas/same-work-20261008-03/references/ref-D.txt; build-1:/srv/artefacts/tas/same-work-20261008-03/references/ref-D1.txt; build-1:/srv/artefacts/tas/same-work-20261008-03/node-release-94e4c6ba/node-1.json; build-1:/srv/artefacts/tas/same-work-20261008-03/node-release-94e4c6ba/node-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/node-release-94e4c6ba/node-3.json; build-1:/srv/artefacts/tas/same-work-20261008-03/node-same-work-node-cc23f9bd/node-1.json; build-1:/srv/artefacts/tas/same-work-20261008-03/node-same-work-node-cc23f9bd/node-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/node-same-work-node-cc23f9bd/node-3.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-5090-1.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-5090-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-5090-3.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-4090-1.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-4090-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-4090-3.json; build-1:/srv/artefacts/tas/same-work-20261008-03/pool/kit-row/pool-1.json; build-1:/srv/artefacts/tas/same-work-20261008-03/pool/kit-row/pool-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/pool/kit-row/pool-3.json; build-1:/srv/artefacts/tas/same-work-20261008-03/pool/kit-row/README.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-3090-1.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-3090-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-3090-3.json; build-1:/srv/artefacts/tas/same-work-20261008-03/opencl-rx7600.report.txt","updated":"2026-10-09T05:08:21.033Z","evidence_record":{"requirement_id":"R2-F03-R02","decision":"NOT RUN","method":"GPU","cell":"harness:same-work","manifest_sha":"c30ab32c","run_id":"same-work-20261008-03","evidence":"build-1:/srv/artefacts/tas/same-work-20261008-03/job-context.json; build-1:/srv/artefacts/tas/same-work-20261008-03/state-epoch2.igsd1; build-1:/srv/artefacts/tas/same-work-20261008-03/references/ref-D.txt; build-1:/srv/artefacts/tas/same-work-20261008-03/references/ref-D1.txt; build-1:/srv/artefacts/tas/same-work-20261008-03/node-release-94e4c6ba/node-1.json; build-1:/srv/artefacts/tas/same-work-20261008-03/node-release-94e4c6ba/node-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/node-release-94e4c6ba/node-3.json; build-1:/srv/artefacts/tas/same-work-20261008-03/node-same-work-node-cc23f9bd/node-1.json; build-1:/srv/artefacts/tas/same-work-20261008-03/node-same-work-node-cc23f9bd/node-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/node-same-work-node-cc23f9bd/node-3.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-5090-1.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-5090-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-5090-3.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-4090-1.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-4090-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-4090-3.json; build-1:/srv/artefacts/tas/same-work-20261008-03/pool/kit-row/pool-1.json; build-1:/srv/artefacts/tas/same-work-20261008-03/pool/kit-row/pool-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/pool/kit-row/pool-3.json; build-1:/srv/artefacts/tas/same-work-20261008-03/pool/kit-row/README.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-3090-1.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-3090-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-3090-3.json; build-1:/srv/artefacts/tas/same-work-20261008-03/opencl-rx7600.report.txt","in_progress":true,"coverage":"partial until every reader has run: bit-for-bit agreement per nonce across node, CPU reference, CUDA, OpenCL, Metal and pool on one job context","release_identity":{"commit":"c30ab32c (release-2.0.1; the class v5 freeze 1c420786, fingerprint cbc5bd0a); the CUDA reader the kit's gen 5 worker 9bfcf728","lockfile":"","binary":"igneum-pow sha256 7ba781db... (release-2.0.1 c30ab32c, built on build-4); igneum-worker-cuda gen 5 sha256 9bfcf728...","network_object":"igneum-devnet-4's class v5 object at epoch 2: id 0x81fbfa3aa413173f, epoch seed 3c3fab43... (the epoch-2 seed block, chain block 3423, common to every chain tonight: the split came after it), day 20734, era 0 seed 7c36b833... (class v5 reads no era; the id is the same under era zero), state stream state-epoch2.igsd1 (sha256 f36e6bba..., 21,132 bytes, 224 records, root 0xf798d1d8...) pulled at 22:18 UK from build-1's seed EVM RPC port 27810","activation":"none (a re-check of hashes against one job context, no chain state changes)","profile_hashes":""},"claim_impact":"the same-work test's live-chain half (the coordinator's third row, 22:1x UK): the readers on the chain's own class v5 object at epoch 2 across the day switch 20734 to 20735; the node and pool readers run it on their release-line engines, the row those two can PASS without the class v6 branch","reviewer":"","at":"2026-10-09T05:08:21.033Z","note":"node PASS x3 on the release line (kit 1's pair 94e4c6ba) and PASS x3 on the D1 branch (cc23f9bd); CUDA 5090, 4090 and 3090 PASS x3 on the gen 5 worker; CPU reference written; pool PASS x3 on the 2.0.2 kit as pinned (the share verifier's path); OpenCL PASS x3 on the first rig's RX 7600; Metal 08:30 UK, the sixth reader; in progress | On an island, not a network: build-1's seed is one of devnet-4's islands since the epoch-3 cut (21:34 UK), its stream pulled at 22:18 UK; epoch 2's object predates the split. Context 03 at build-1:/srv/artefacts/tas/same-work-20261008-03/job-context.json (sha256 53837a96...). The witness for the id: igneum-miner program-id reads class v5 attempt 0 id 81fbfa3aa413173f under era 7c36b833... and era 00..00 alike, from the miner at same-work-node cc23f9bd on build-2 (the class v5 engine path; the 2.0.1 pair's miner ef0f2ed8 on build-1 has no program-id subcommand), and the node lane's placed (c) read gave the same id; the hand's RPC port port 26870 answered no published state stream for the block at 22:18 UK. Packs v5-epoch2-d20734 and d20735 (both id 0x81fbfa3aa413173f) exported from release-2.0.1's igneum-pow on build-4 at 22:19 UK; the CPU references from release-2.0.1's igneum-pow (binary 7ba781db...) on build-4 under watchers, 22:20 to 00:21 UK (about 210 nonces a second a run; the one slip of the night, reported once), ref-D 873528b1... over [0, 1572864) and ref-D1 7f8e64ae... over [1572864, 3145728), read back on build-1 at 00:22 UK. NODE, two readers, both PASS on all three phases (00:27, 00:31, 00:35 UK; 1,048,576 agree each, 0 disagree, 0 missing; program id 0x81fbfa3aa413173f on every segment equal to the packs'; the day switch at 1572864 with both boundary hashes equal to the reference, 21488c8bc924c342 before and 08d55958274e224d after; genesis day 20734 installed, growth doublings 0): the RELEASE LINE, igneum-miner from kit 1's pair build-1:/srv/artefacts/200-94e4c6ba/node-lane (binary sha256 41cc0a82..., the recheck-vectors commits cherry-picked onto kit1-line 94e4c6ba = release-2.0.2-node without the v6 arm, the class v5 engine the kit ships), node-release-94e4c6ba/node-{1,2,3}.json (ac60f395..., 97f9758e..., bad64c5c...); and the D1 branch, same-work-node cc23f9bd (merged onto class-v6-node-review as fe0fdc59; binary 9d563c41...), node-same-work-node-cc23f9bd/node-{1,2,3}.json (7b1254f1..., a9da16a9..., 09ec9202...), the two readers' hashes equal to each other and to the reference on every nonce. CUDA, the kit's generation 5 worker 9bfcf728 on the driver at c8b65a26 or later: the 5090 PASS on all three phases (00:25 to 00:28 UK, cuda-5090-{1,2,3}.json 7040a0ab..., 86ff7bc4..., 3e3ec63f...) and the 4090 PASS on all three (00:30 to 00:33 UK, cuda-4090-{1,2,3}.json 1cb9efe5..., 6a52d5bb..., 1efffdde...), the day switch driven through the worker's prepare on each; The 3090 PASS on all three phases (05:11 to 05:14 UK; cuda-3090-{1,2,3}.json de68d6d3..., 7f66ee96..., 00840cc9...; 1,048,576 agree each, 0 disagree, 0 missing; the day switch at 1572864 with the same boundary hashes as every other reader): the fleet lane's first run on that pod at 00:35 UK never ran a phase (its verify rule demanded two reference files where a context carries one, then its put failed on the pod's flapping ssh; a runner fault, reported once), the rerun from 04:57 UK ran detached on the pod under a pid file with a collector pulling each JSON. So the CUDA cell reads three cards on this context. POOL, the 2.0.2 kit as pinned (release-2.0.2 77b5acc5's pool with node 7cfa422a, binary sha256 46e4c440..., on build-6, genesis day 20734 and dataset 2^28 from the pack): PASS on all three phases (00:28, 00:33, 00:38 UK; 1,048,576 agree each, 0 disagree, 0 missing; the boundary switched at 1572864 with one program id on both segments; 64, 128 and 64 of the sampled shares accepted through the share verifier), pool/kit-row/pool-{1,2,3}.json (c77d1276..., b30d4b65..., 957954e7...) with the README; every nonce of 3,145,728 agrees with the reference on the chain's own class v5 object through the kit as pinned. OPENCL, the first rig's RX 7600 (gfx1102) on the generation 6 OpenCL worker 247a8467... (it serves generators 2 to 6): PASS on all three phases (the job run-ca3-pc1-samework03-opencl-7600-20261009, 05:56 to 05:58 UK): phase 1 digest 12430d25..., phase 2 310b2855... across the day switch 20734 to 20735 at 1572864 (the D+1 pack prepared in 853 ms, the worker's 'switched (class v5)' line, the boundary block 8,192 of 8,192 lines), phase 3 8da9e791..., each 1,048,576 of 1,048,576 equal to the reference slices; 'RESULT verdict all PASS context=same-work-20261008-03 reader=opencl card=rx7600'; the report opencl-rx7600.report.txt (sha256 1164d653..., read back on build-1 at 06:00 UK; both pack ids 0x81fbfa3aa413173f generator 5 in its RESULT lines). Metal is the sixth reader, 08:30 UK on the project's macOS machine. The rows stay NOT RUN in progress until every reader has read (the coordinator's ruling 23:1x UK).","network_label":"on an island, not a network"},"evidence_records":{"kit:class-v6-fingerprints":{"requirement_id":"R2-F03-R02","decision":"NOT RUN","method":"GPU","cell":"kit:class-v6-fingerprints","manifest_sha":"ef0f2ed8","run_id":"kit-class-v6-20261008-01","evidence":"docs/design/class-v5-stored-state.md; build-1:/srv/artefacts/packs/packs-class-v6-20261008T202808Z.zip; build-1:/srv/builds/_log/v5-class/kits-20261008T202808Z/emu-check.log","in_progress":true,"coverage":"partial: the worker half (CPU reference, CUDA, Metal, OpenCL) on the same program packs; the node's and the pool's accepted work on the same job context are the CI steward's and the pool lane's cells; PASS only when every listed platform reads one fingerprint and the node and pool halves are green","release_identity":{"commit":"ef0f2ed8","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"claim_impact":"","reviewer":"","at":"2026-10-08T21:18:18.084Z"},"harness:same-work":{"requirement_id":"R2-F03-R02","decision":"NOT RUN","method":"GPU","cell":"harness:same-work","manifest_sha":"c30ab32c","run_id":"same-work-20261008-03","evidence":"build-1:/srv/artefacts/tas/same-work-20261008-03/job-context.json; build-1:/srv/artefacts/tas/same-work-20261008-03/state-epoch2.igsd1; build-1:/srv/artefacts/tas/same-work-20261008-03/references/ref-D.txt; build-1:/srv/artefacts/tas/same-work-20261008-03/references/ref-D1.txt; build-1:/srv/artefacts/tas/same-work-20261008-03/node-release-94e4c6ba/node-1.json; build-1:/srv/artefacts/tas/same-work-20261008-03/node-release-94e4c6ba/node-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/node-release-94e4c6ba/node-3.json; build-1:/srv/artefacts/tas/same-work-20261008-03/node-same-work-node-cc23f9bd/node-1.json; build-1:/srv/artefacts/tas/same-work-20261008-03/node-same-work-node-cc23f9bd/node-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/node-same-work-node-cc23f9bd/node-3.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-5090-1.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-5090-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-5090-3.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-4090-1.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-4090-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-4090-3.json; build-1:/srv/artefacts/tas/same-work-20261008-03/pool/kit-row/pool-1.json; build-1:/srv/artefacts/tas/same-work-20261008-03/pool/kit-row/pool-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/pool/kit-row/pool-3.json; build-1:/srv/artefacts/tas/same-work-20261008-03/pool/kit-row/README.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-3090-1.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-3090-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-3090-3.json; build-1:/srv/artefacts/tas/same-work-20261008-03/opencl-rx7600.report.txt","in_progress":true,"coverage":"partial until every reader has run: bit-for-bit agreement per nonce across node, CPU reference, CUDA, OpenCL, Metal and pool on one job context","release_identity":{"commit":"c30ab32c (release-2.0.1; the class v5 freeze 1c420786, fingerprint cbc5bd0a); the CUDA reader the kit's gen 5 worker 9bfcf728","lockfile":"","binary":"igneum-pow sha256 7ba781db... (release-2.0.1 c30ab32c, built on build-4); igneum-worker-cuda gen 5 sha256 9bfcf728...","network_object":"igneum-devnet-4's class v5 object at epoch 2: id 0x81fbfa3aa413173f, epoch seed 3c3fab43... (the epoch-2 seed block, chain block 3423, common to every chain tonight: the split came after it), day 20734, era 0 seed 7c36b833... (class v5 reads no era; the id is the same under era zero), state stream state-epoch2.igsd1 (sha256 f36e6bba..., 21,132 bytes, 224 records, root 0xf798d1d8...) pulled at 22:18 UK from build-1's seed EVM RPC port 27810","activation":"none (a re-check of hashes against one job context, no chain state changes)","profile_hashes":""},"claim_impact":"the same-work test's live-chain half (the coordinator's third row, 22:1x UK): the readers on the chain's own class v5 object at epoch 2 across the day switch 20734 to 20735; the node and pool readers run it on their release-line engines, the row those two can PASS without the class v6 branch","reviewer":"","at":"2026-10-09T05:08:21.033Z","note":"node PASS x3 on the release line (kit 1's pair 94e4c6ba) and PASS x3 on the D1 branch (cc23f9bd); CUDA 5090, 4090 and 3090 PASS x3 on the gen 5 worker; CPU reference written; pool PASS x3 on the 2.0.2 kit as pinned (the share verifier's path); OpenCL PASS x3 on the first rig's RX 7600; Metal 08:30 UK, the sixth reader; in progress | On an island, not a network: build-1's seed is one of devnet-4's islands since the epoch-3 cut (21:34 UK), its stream pulled at 22:18 UK; epoch 2's object predates the split. Context 03 at build-1:/srv/artefacts/tas/same-work-20261008-03/job-context.json (sha256 53837a96...). The witness for the id: igneum-miner program-id reads class v5 attempt 0 id 81fbfa3aa413173f under era 7c36b833... and era 00..00 alike, from the miner at same-work-node cc23f9bd on build-2 (the class v5 engine path; the 2.0.1 pair's miner ef0f2ed8 on build-1 has no program-id subcommand), and the node lane's placed (c) read gave the same id; the hand's RPC port port 26870 answered no published state stream for the block at 22:18 UK. Packs v5-epoch2-d20734 and d20735 (both id 0x81fbfa3aa413173f) exported from release-2.0.1's igneum-pow on build-4 at 22:19 UK; the CPU references from release-2.0.1's igneum-pow (binary 7ba781db...) on build-4 under watchers, 22:20 to 00:21 UK (about 210 nonces a second a run; the one slip of the night, reported once), ref-D 873528b1... over [0, 1572864) and ref-D1 7f8e64ae... over [1572864, 3145728), read back on build-1 at 00:22 UK. NODE, two readers, both PASS on all three phases (00:27, 00:31, 00:35 UK; 1,048,576 agree each, 0 disagree, 0 missing; program id 0x81fbfa3aa413173f on every segment equal to the packs'; the day switch at 1572864 with both boundary hashes equal to the reference, 21488c8bc924c342 before and 08d55958274e224d after; genesis day 20734 installed, growth doublings 0): the RELEASE LINE, igneum-miner from kit 1's pair build-1:/srv/artefacts/200-94e4c6ba/node-lane (binary sha256 41cc0a82..., the recheck-vectors commits cherry-picked onto kit1-line 94e4c6ba = release-2.0.2-node without the v6 arm, the class v5 engine the kit ships), node-release-94e4c6ba/node-{1,2,3}.json (ac60f395..., 97f9758e..., bad64c5c...); and the D1 branch, same-work-node cc23f9bd (merged onto class-v6-node-review as fe0fdc59; binary 9d563c41...), node-same-work-node-cc23f9bd/node-{1,2,3}.json (7b1254f1..., a9da16a9..., 09ec9202...), the two readers' hashes equal to each other and to the reference on every nonce. CUDA, the kit's generation 5 worker 9bfcf728 on the driver at c8b65a26 or later: the 5090 PASS on all three phases (00:25 to 00:28 UK, cuda-5090-{1,2,3}.json 7040a0ab..., 86ff7bc4..., 3e3ec63f...) and the 4090 PASS on all three (00:30 to 00:33 UK, cuda-4090-{1,2,3}.json 1cb9efe5..., 6a52d5bb..., 1efffdde...), the day switch driven through the worker's prepare on each; The 3090 PASS on all three phases (05:11 to 05:14 UK; cuda-3090-{1,2,3}.json de68d6d3..., 7f66ee96..., 00840cc9...; 1,048,576 agree each, 0 disagree, 0 missing; the day switch at 1572864 with the same boundary hashes as every other reader): the fleet lane's first run on that pod at 00:35 UK never ran a phase (its verify rule demanded two reference files where a context carries one, then its put failed on the pod's flapping ssh; a runner fault, reported once), the rerun from 04:57 UK ran detached on the pod under a pid file with a collector pulling each JSON. So the CUDA cell reads three cards on this context. POOL, the 2.0.2 kit as pinned (release-2.0.2 77b5acc5's pool with node 7cfa422a, binary sha256 46e4c440..., on build-6, genesis day 20734 and dataset 2^28 from the pack): PASS on all three phases (00:28, 00:33, 00:38 UK; 1,048,576 agree each, 0 disagree, 0 missing; the boundary switched at 1572864 with one program id on both segments; 64, 128 and 64 of the sampled shares accepted through the share verifier), pool/kit-row/pool-{1,2,3}.json (c77d1276..., b30d4b65..., 957954e7...) with the README; every nonce of 3,145,728 agrees with the reference on the chain's own class v5 object through the kit as pinned. OPENCL, the first rig's RX 7600 (gfx1102) on the generation 6 OpenCL worker 247a8467... (it serves generators 2 to 6): PASS on all three phases (the job run-ca3-pc1-samework03-opencl-7600-20261009, 05:56 to 05:58 UK): phase 1 digest 12430d25..., phase 2 310b2855... across the day switch 20734 to 20735 at 1572864 (the D+1 pack prepared in 853 ms, the worker's 'switched (class v5)' line, the boundary block 8,192 of 8,192 lines), phase 3 8da9e791..., each 1,048,576 of 1,048,576 equal to the reference slices; 'RESULT verdict all PASS context=same-work-20261008-03 reader=opencl card=rx7600'; the report opencl-rx7600.report.txt (sha256 1164d653..., read back on build-1 at 06:00 UK; both pack ids 0x81fbfa3aa413173f generator 5 in its RESULT lines). Metal is the sixth reader, 08:30 UK on the project's macOS machine. The rows stay NOT RUN in progress until every reader has read (the coordinator's ruling 23:1x UK).","network_label":"on an island, not a network"}},"in_progress_since":"2026-10-08T21:18:18.084Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F03-R03","title":"Cross every scheduled transition with old/new client behavior documented and identical rule identities.","setup":"The regression R2-F03 requires (review R2 finding F03: The bundle contains a v6 candidate, not a demonstrated integrated v6 release).","steps":["Cross every scheduled transition with old/new client behavior documented and identical rule identities."],"accept":"Cross every scheduled transition with old/new client behavior documented and identical rule identities.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F03"],"gate":"Review findings closed","owner":"CI steward, hash lane (ProgramClass::V6 on freeze), pool lane","manual_page":null,"finding":"R2-F03","finding_title":"The bundle contains a v6 candidate, not a demonstrated integrated v6 release","finding_priority":"P0 - freeze/integration blocker","owner_lane":"CI steward, hash lane (ProgramClass::V6 on freeze), pool lane","run_status":"NOT RUN","base_test_ids":["GOV-01","GOV-03","POW-01","ROT-02"],"run_id":"same-work-20261008-03","evidence_path":"build-1:/srv/artefacts/tas/same-work-20261008-03/job-context.json; build-1:/srv/artefacts/tas/same-work-20261008-03/node-release-94e4c6ba/node-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/node-same-work-node-cc23f9bd/node-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-5090-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-4090-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/pool/kit-row/pool-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-3090-1.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-3090-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-3090-3.json; build-1:/srv/artefacts/tas/same-work-20261008-03/opencl-rx7600.report.txt","updated":"2026-10-09T05:08:21.033Z","evidence_record":{"requirement_id":"R2-F03-R03","decision":"NOT RUN","method":"GPU","cell":"harness:same-work","manifest_sha":"c30ab32c","run_id":"same-work-20261008-03","evidence":"build-1:/srv/artefacts/tas/same-work-20261008-03/job-context.json; build-1:/srv/artefacts/tas/same-work-20261008-03/node-release-94e4c6ba/node-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/node-same-work-node-cc23f9bd/node-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-5090-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-4090-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/pool/kit-row/pool-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-3090-1.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-3090-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-3090-3.json; build-1:/srv/artefacts/tas/same-work-20261008-03/opencl-rx7600.report.txt","in_progress":true,"coverage":"partial: the day-boundary transition in phase 2 (the one transition every live network crosses hourly at 60x); a class rotation is the same test on a research object until a v6 floor is set","release_identity":{"commit":"c30ab32c (release-2.0.1; the class v5 freeze 1c420786, fingerprint cbc5bd0a); the CUDA reader the kit's gen 5 worker 9bfcf728","lockfile":"","binary":"igneum-pow sha256 7ba781db... (release-2.0.1 c30ab32c, built on build-4); igneum-worker-cuda gen 5 sha256 9bfcf728...","network_object":"igneum-devnet-4's class v5 object at epoch 2: id 0x81fbfa3aa413173f, epoch seed 3c3fab43... (the epoch-2 seed block, chain block 3423, common to every chain tonight: the split came after it), day 20734, era 0 seed 7c36b833... (class v5 reads no era; the id is the same under era zero), state stream state-epoch2.igsd1 (sha256 f36e6bba..., 21,132 bytes, 224 records, root 0xf798d1d8...) pulled at 22:18 UK from build-1's seed EVM RPC port 27810","activation":"none (a re-check of hashes against one job context, no chain state changes)","profile_hashes":""},"claim_impact":"the same-work test's live-chain half (the coordinator's third row, 22:1x UK): the readers on the chain's own class v5 object at epoch 2 across the day switch 20734 to 20735; the node and pool readers run it on their release-line engines, the row those two can PASS without the class v6 branch","reviewer":"","at":"2026-10-09T05:08:21.033Z","note":"the day switch 20734 to 20735 at nonce 1572864 on the live object: both node readers, the kit's pool, the 5090 and the 4090 each switched program and dataset there with the program id unchanged and both boundary hashes equal to the reference; OpenCL PASS x3 on the first rig's RX 7600 (the day switch seen); Metal pending (08:30 UK); in progress | On an island, not a network: build-1's seed is one of devnet-4's islands since the epoch-3 cut (21:34 UK), its stream pulled at 22:18 UK; epoch 2's object predates the split. Context 03 at build-1:/srv/artefacts/tas/same-work-20261008-03/job-context.json (sha256 53837a96...). The witness for the id: igneum-miner program-id reads class v5 attempt 0 id 81fbfa3aa413173f under era 7c36b833... and era 00..00 alike, from the miner at same-work-node cc23f9bd on build-2 (the class v5 engine path; the 2.0.1 pair's miner ef0f2ed8 on build-1 has no program-id subcommand), and the node lane's placed (c) read gave the same id; the hand's RPC port port 26870 answered no published state stream for the block at 22:18 UK. Packs v5-epoch2-d20734 and d20735 (both id 0x81fbfa3aa413173f) exported from release-2.0.1's igneum-pow on build-4 at 22:19 UK; the CPU references from release-2.0.1's igneum-pow (binary 7ba781db...) on build-4 under watchers, 22:20 to 00:21 UK (about 210 nonces a second a run; the one slip of the night, reported once), ref-D 873528b1... over [0, 1572864) and ref-D1 7f8e64ae... over [1572864, 3145728), read back on build-1 at 00:22 UK. NODE, two readers, both PASS on all three phases (00:27, 00:31, 00:35 UK; 1,048,576 agree each, 0 disagree, 0 missing; program id 0x81fbfa3aa413173f on every segment equal to the packs'; the day switch at 1572864 with both boundary hashes equal to the reference, 21488c8bc924c342 before and 08d55958274e224d after; genesis day 20734 installed, growth doublings 0): the RELEASE LINE, igneum-miner from kit 1's pair build-1:/srv/artefacts/200-94e4c6ba/node-lane (binary sha256 41cc0a82..., the recheck-vectors commits cherry-picked onto kit1-line 94e4c6ba = release-2.0.2-node without the v6 arm, the class v5 engine the kit ships), node-release-94e4c6ba/node-{1,2,3}.json (ac60f395..., 97f9758e..., bad64c5c...); and the D1 branch, same-work-node cc23f9bd (merged onto class-v6-node-review as fe0fdc59; binary 9d563c41...), node-same-work-node-cc23f9bd/node-{1,2,3}.json (7b1254f1..., a9da16a9..., 09ec9202...), the two readers' hashes equal to each other and to the reference on every nonce. CUDA, the kit's generation 5 worker 9bfcf728 on the driver at c8b65a26 or later: the 5090 PASS on all three phases (00:25 to 00:28 UK, cuda-5090-{1,2,3}.json 7040a0ab..., 86ff7bc4..., 3e3ec63f...) and the 4090 PASS on all three (00:30 to 00:33 UK, cuda-4090-{1,2,3}.json 1cb9efe5..., 6a52d5bb..., 1efffdde...), the day switch driven through the worker's prepare on each; The 3090 PASS on all three phases (05:11 to 05:14 UK; cuda-3090-{1,2,3}.json de68d6d3..., 7f66ee96..., 00840cc9...; 1,048,576 agree each, 0 disagree, 0 missing; the day switch at 1572864 with the same boundary hashes as every other reader): the fleet lane's first run on that pod at 00:35 UK never ran a phase (its verify rule demanded two reference files where a context carries one, then its put failed on the pod's flapping ssh; a runner fault, reported once), the rerun from 04:57 UK ran detached on the pod under a pid file with a collector pulling each JSON. So the CUDA cell reads three cards on this context. POOL, the 2.0.2 kit as pinned (release-2.0.2 77b5acc5's pool with node 7cfa422a, binary sha256 46e4c440..., on build-6, genesis day 20734 and dataset 2^28 from the pack): PASS on all three phases (00:28, 00:33, 00:38 UK; 1,048,576 agree each, 0 disagree, 0 missing; the boundary switched at 1572864 with one program id on both segments; 64, 128 and 64 of the sampled shares accepted through the share verifier), pool/kit-row/pool-{1,2,3}.json (c77d1276..., b30d4b65..., 957954e7...) with the README; every nonce of 3,145,728 agrees with the reference on the chain's own class v5 object through the kit as pinned. OPENCL, the first rig's RX 7600 (gfx1102) on the generation 6 OpenCL worker 247a8467... (it serves generators 2 to 6): PASS on all three phases (the job run-ca3-pc1-samework03-opencl-7600-20261009, 05:56 to 05:58 UK): phase 1 digest 12430d25..., phase 2 310b2855... across the day switch 20734 to 20735 at 1572864 (the D+1 pack prepared in 853 ms, the worker's 'switched (class v5)' line, the boundary block 8,192 of 8,192 lines), phase 3 8da9e791..., each 1,048,576 of 1,048,576 equal to the reference slices; 'RESULT verdict all PASS context=same-work-20261008-03 reader=opencl card=rx7600'; the report opencl-rx7600.report.txt (sha256 1164d653..., read back on build-1 at 06:00 UK; both pack ids 0x81fbfa3aa413173f generator 5 in its RESULT lines). Metal is the sixth reader, 08:30 UK on the project's macOS machine. The rows stay NOT RUN in progress until every reader has read (the coordinator's ruling 23:1x UK).","network_label":"on an island, not a network"},"evidence_records":{"harness:same-work":{"requirement_id":"R2-F03-R03","decision":"NOT RUN","method":"GPU","cell":"harness:same-work","manifest_sha":"c30ab32c","run_id":"same-work-20261008-03","evidence":"build-1:/srv/artefacts/tas/same-work-20261008-03/job-context.json; build-1:/srv/artefacts/tas/same-work-20261008-03/node-release-94e4c6ba/node-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/node-same-work-node-cc23f9bd/node-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-5090-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-4090-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/pool/kit-row/pool-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-3090-1.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-3090-2.json; build-1:/srv/artefacts/tas/same-work-20261008-03/cuda-3090-3.json; build-1:/srv/artefacts/tas/same-work-20261008-03/opencl-rx7600.report.txt","in_progress":true,"coverage":"partial: the day-boundary transition in phase 2 (the one transition every live network crosses hourly at 60x); a class rotation is the same test on a research object until a v6 floor is set","release_identity":{"commit":"c30ab32c (release-2.0.1; the class v5 freeze 1c420786, fingerprint cbc5bd0a); the CUDA reader the kit's gen 5 worker 9bfcf728","lockfile":"","binary":"igneum-pow sha256 7ba781db... (release-2.0.1 c30ab32c, built on build-4); igneum-worker-cuda gen 5 sha256 9bfcf728...","network_object":"igneum-devnet-4's class v5 object at epoch 2: id 0x81fbfa3aa413173f, epoch seed 3c3fab43... (the epoch-2 seed block, chain block 3423, common to every chain tonight: the split came after it), day 20734, era 0 seed 7c36b833... (class v5 reads no era; the id is the same under era zero), state stream state-epoch2.igsd1 (sha256 f36e6bba..., 21,132 bytes, 224 records, root 0xf798d1d8...) pulled at 22:18 UK from build-1's seed EVM RPC port 27810","activation":"none (a re-check of hashes against one job context, no chain state changes)","profile_hashes":""},"claim_impact":"the same-work test's live-chain half (the coordinator's third row, 22:1x UK): the readers on the chain's own class v5 object at epoch 2 across the day switch 20734 to 20735; the node and pool readers run it on their release-line engines, the row those two can PASS without the class v6 branch","reviewer":"","at":"2026-10-09T05:08:21.033Z","note":"the day switch 20734 to 20735 at nonce 1572864 on the live object: both node readers, the kit's pool, the 5090 and the 4090 each switched program and dataset there with the program id unchanged and both boundary hashes equal to the reference; OpenCL PASS x3 on the first rig's RX 7600 (the day switch seen); Metal pending (08:30 UK); in progress | On an island, not a network: build-1's seed is one of devnet-4's islands since the epoch-3 cut (21:34 UK), its stream pulled at 22:18 UK; epoch 2's object predates the split. Context 03 at build-1:/srv/artefacts/tas/same-work-20261008-03/job-context.json (sha256 53837a96...). The witness for the id: igneum-miner program-id reads class v5 attempt 0 id 81fbfa3aa413173f under era 7c36b833... and era 00..00 alike, from the miner at same-work-node cc23f9bd on build-2 (the class v5 engine path; the 2.0.1 pair's miner ef0f2ed8 on build-1 has no program-id subcommand), and the node lane's placed (c) read gave the same id; the hand's RPC port port 26870 answered no published state stream for the block at 22:18 UK. Packs v5-epoch2-d20734 and d20735 (both id 0x81fbfa3aa413173f) exported from release-2.0.1's igneum-pow on build-4 at 22:19 UK; the CPU references from release-2.0.1's igneum-pow (binary 7ba781db...) on build-4 under watchers, 22:20 to 00:21 UK (about 210 nonces a second a run; the one slip of the night, reported once), ref-D 873528b1... over [0, 1572864) and ref-D1 7f8e64ae... over [1572864, 3145728), read back on build-1 at 00:22 UK. NODE, two readers, both PASS on all three phases (00:27, 00:31, 00:35 UK; 1,048,576 agree each, 0 disagree, 0 missing; program id 0x81fbfa3aa413173f on every segment equal to the packs'; the day switch at 1572864 with both boundary hashes equal to the reference, 21488c8bc924c342 before and 08d55958274e224d after; genesis day 20734 installed, growth doublings 0): the RELEASE LINE, igneum-miner from kit 1's pair build-1:/srv/artefacts/200-94e4c6ba/node-lane (binary sha256 41cc0a82..., the recheck-vectors commits cherry-picked onto kit1-line 94e4c6ba = release-2.0.2-node without the v6 arm, the class v5 engine the kit ships), node-release-94e4c6ba/node-{1,2,3}.json (ac60f395..., 97f9758e..., bad64c5c...); and the D1 branch, same-work-node cc23f9bd (merged onto class-v6-node-review as fe0fdc59; binary 9d563c41...), node-same-work-node-cc23f9bd/node-{1,2,3}.json (7b1254f1..., a9da16a9..., 09ec9202...), the two readers' hashes equal to each other and to the reference on every nonce. CUDA, the kit's generation 5 worker 9bfcf728 on the driver at c8b65a26 or later: the 5090 PASS on all three phases (00:25 to 00:28 UK, cuda-5090-{1,2,3}.json 7040a0ab..., 86ff7bc4..., 3e3ec63f...) and the 4090 PASS on all three (00:30 to 00:33 UK, cuda-4090-{1,2,3}.json 1cb9efe5..., 6a52d5bb..., 1efffdde...), the day switch driven through the worker's prepare on each; The 3090 PASS on all three phases (05:11 to 05:14 UK; cuda-3090-{1,2,3}.json de68d6d3..., 7f66ee96..., 00840cc9...; 1,048,576 agree each, 0 disagree, 0 missing; the day switch at 1572864 with the same boundary hashes as every other reader): the fleet lane's first run on that pod at 00:35 UK never ran a phase (its verify rule demanded two reference files where a context carries one, then its put failed on the pod's flapping ssh; a runner fault, reported once), the rerun from 04:57 UK ran detached on the pod under a pid file with a collector pulling each JSON. So the CUDA cell reads three cards on this context. POOL, the 2.0.2 kit as pinned (release-2.0.2 77b5acc5's pool with node 7cfa422a, binary sha256 46e4c440..., on build-6, genesis day 20734 and dataset 2^28 from the pack): PASS on all three phases (00:28, 00:33, 00:38 UK; 1,048,576 agree each, 0 disagree, 0 missing; the boundary switched at 1572864 with one program id on both segments; 64, 128 and 64 of the sampled shares accepted through the share verifier), pool/kit-row/pool-{1,2,3}.json (c77d1276..., b30d4b65..., 957954e7...) with the README; every nonce of 3,145,728 agrees with the reference on the chain's own class v5 object through the kit as pinned. OPENCL, the first rig's RX 7600 (gfx1102) on the generation 6 OpenCL worker 247a8467... (it serves generators 2 to 6): PASS on all three phases (the job run-ca3-pc1-samework03-opencl-7600-20261009, 05:56 to 05:58 UK): phase 1 digest 12430d25..., phase 2 310b2855... across the day switch 20734 to 20735 at 1572864 (the D+1 pack prepared in 853 ms, the worker's 'switched (class v5)' line, the boundary block 8,192 of 8,192 lines), phase 3 8da9e791..., each 1,048,576 of 1,048,576 equal to the reference slices; 'RESULT verdict all PASS context=same-work-20261008-03 reader=opencl card=rx7600'; the report opencl-rx7600.report.txt (sha256 1164d653..., read back on build-1 at 06:00 UK; both pack ids 0x81fbfa3aa413173f generator 5 in its RESULT lines). Metal is the sixth reader, 08:30 UK on the project's macOS machine. The rows stay NOT RUN in progress until every reader has read (the coordinator's ruling 23:1x UK).","network_label":"on an island, not a network"}},"in_progress_since":"2026-10-09T04:34:04.893Z","approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F04-R01","title":"Native multi-node 40/40/20 partition, equivocation and dust-valid mining on both sides past the window.","setup":"The regression R2-F04 requires (review R2 finding F04: Finality v4 recovery deliberately has a weaker safety boundary).","steps":["Native multi-node 40/40/20 partition, equivocation and dust-valid mining on both sides past the window."],"accept":"Native multi-node 40/40/20 partition, equivocation and dust-valid mining on both sides past the window.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F04"],"gate":"Review findings closed","owner":"node lane, reference apps, site (explorer)","manual_page":null,"finding":"R2-F04","finding_title":"Finality v4 recovery deliberately has a weaker safety boundary","finding_priority":"P0 - finality guarantee decision","owner_lane":"node lane, reference apps, site (explorer)","run_status":"NOT RUN","base_test_ids":["FIN-02","FIN-03","FIN-07","FIN-08","VER-08"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F04 (P0, the external review): the regression's harness is the owner lane's (node lane, reference apps, site (explorer)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F04-R01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F04 (P0, the external review): the regression's harness is the owner lane's (node lane, reference apps, site (explorer)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F04-R01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F04-R02","title":"Proof that the chosen recovery guarantee matches the public finality claim; two valid contradictory certificates are a hard failure for strong finality.","setup":"The regression R2-F04 requires (review R2 finding F04: Finality v4 recovery deliberately has a weaker safety boundary).","steps":["Proof that the chosen recovery guarantee matches the public finality claim; two valid contradictory certificates are a hard failure for strong finality."],"accept":"Proof that the chosen recovery guarantee matches the public finality claim; two valid contradictory certificates are a hard failure for strong finality.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F04"],"gate":"Review findings closed","owner":"node lane, reference apps, site (explorer)","manual_page":null,"finding":"R2-F04","finding_title":"Finality v4 recovery deliberately has a weaker safety boundary","finding_priority":"P0 - finality guarantee decision","owner_lane":"node lane, reference apps, site (explorer)","run_status":"NOT RUN","base_test_ids":["FIN-02","FIN-03","FIN-07","FIN-08","VER-08"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F04 (P0, the external review): the regression's harness is the owner lane's (node lane, reference apps, site (explorer)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F04-R02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F04 (P0, the external review): the regression's harness is the owner lane's (node lane, reference apps, site (explorer)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F04-R02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F04-R03","title":"Pause-only resume with historical backfill, missing historical data and all old keys returning.","setup":"The regression R2-F04 requires (review R2 finding F04: Finality v4 recovery deliberately has a weaker safety boundary).","steps":["Pause-only resume with historical backfill, missing historical data and all old keys returning."],"accept":"Pause-only resume with historical backfill, missing historical data and all old keys returning.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F04"],"gate":"Review findings closed","owner":"node lane, reference apps, site (explorer)","manual_page":null,"finding":"R2-F04","finding_title":"Finality v4 recovery deliberately has a weaker safety boundary","finding_priority":"P0 - finality guarantee decision","owner_lane":"node lane, reference apps, site (explorer)","run_status":"NOT RUN","base_test_ids":["FIN-02","FIN-03","FIN-07","FIN-08","VER-08"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F04 (P0, the external review): the regression's harness is the owner lane's (node lane, reference apps, site (explorer)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F04-R03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F04 (P0, the external review): the regression's harness is the owner lane's (node lane, reference apps, site (explorer)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F04-R03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F04-R04","title":"Wallet, receipt and oracle consumers distinguish any weaker recovery state.","setup":"The regression R2-F04 requires (review R2 finding F04: Finality v4 recovery deliberately has a weaker safety boundary).","steps":["Wallet, receipt and oracle consumers distinguish any weaker recovery state."],"accept":"Wallet, receipt and oracle consumers distinguish any weaker recovery state.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F04"],"gate":"Review findings closed","owner":"node lane, reference apps, site (explorer)","manual_page":null,"finding":"R2-F04","finding_title":"Finality v4 recovery deliberately has a weaker safety boundary","finding_priority":"P0 - finality guarantee decision","owner_lane":"node lane, reference apps, site (explorer)","run_status":"NOT RUN","base_test_ids":["FIN-02","FIN-03","FIN-07","FIN-08","VER-08"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F04 (P0, the external review): the regression's harness is the owner lane's (node lane, reference apps, site (explorer)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F04-R04","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F04 (P0, the external review): the regression's harness is the owner lane's (node lane, reference apps, site (explorer)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F04-R04","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F05-R01","title":"Native reference-vs-incremental expression equivalence across all source registers and real instruction updates.","setup":"The regression R2-F05 requires (review R2 finding F05: reg64 address coupling has an exact incremental alternative).","steps":["Native reference-vs-incremental expression equivalence across all source registers and real instruction updates."],"accept":"Native reference-vs-incremental expression equivalence across all source registers and real instruction updates.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P1","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F05"],"gate":"Review findings closed","owner":"hash lane, adversary lane, floor lane 3","manual_page":null,"finding":"R2-F05","finding_title":"reg64 address coupling has an exact incremental alternative","finding_priority":"P1 - adversarial hardware evaluation","owner_lane":"hash lane, adversary lane, floor lane 3","run_status":"NOT RUN","base_test_ids":["POW-03","POW-04","ADV-03","ADV-05"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F05 (P1, the external review): the regression's harness is the owner lane's (hash lane, adversary lane, floor lane 3); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F05-R01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F05 (P1, the external review): the regression's harness is the owner lane's (hash lane, adversary lane, floor lane 3); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F05-R01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F05-R02","title":"Full-kernel output equivalence, registers, spills, wall power and accepted throughput across target GPUs.","setup":"The regression R2-F05 requires (review R2 finding F05: reg64 address coupling has an exact incremental alternative).","steps":["Full-kernel output equivalence, registers, spills, wall power and accepted throughput across target GPUs."],"accept":"Full-kernel output equivalence, registers, spills, wall power and accepted throughput across target GPUs.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P1","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F05"],"gate":"Review findings closed","owner":"hash lane, adversary lane, floor lane 3","manual_page":null,"finding":"R2-F05","finding_title":"reg64 address coupling has an exact incremental alternative","finding_priority":"P1 - adversarial hardware evaluation","owner_lane":"hash lane, adversary lane, floor lane 3","run_status":"NOT RUN","base_test_ids":["POW-03","POW-04","ADV-03","ADV-05"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F05 (P1, the external review): the regression's harness is the owner lane's (hash lane, adversary lane, floor lane 3); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F05-R02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F05 (P1, the external review): the regression's harness is the owner lane's (hash lane, adversary lane, floor lane 3); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F05-R02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F05-R03","title":"Adversary physical design includes prefix caching/recomputation cost; no assumed full 63-read cost on every load.","setup":"The regression R2-F05 requires (review R2 finding F05: reg64 address coupling has an exact incremental alternative).","steps":["Adversary physical design includes prefix caching/recomputation cost; no assumed full 63-read cost on every load."],"accept":"Adversary physical design includes prefix caching/recomputation cost; no assumed full 63-read cost on every load.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P1","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F05"],"gate":"Review findings closed","owner":"hash lane, adversary lane, floor lane 3","manual_page":null,"finding":"R2-F05","finding_title":"reg64 address coupling has an exact incremental alternative","finding_priority":"P1 - adversarial hardware evaluation","owner_lane":"hash lane, adversary lane, floor lane 3","run_status":"NOT RUN","base_test_ids":["POW-03","POW-04","ADV-03","ADV-05"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F05 (P1, the external review): the regression's harness is the owner lane's (hash lane, adversary lane, floor lane 3); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F05-R03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F05 (P1, the external review): the regression's harness is the owner lane's (hash lane, adversary lane, floor lane 3); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F05-R03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F06-R01","title":"Acceptance/reference/emitter evaluate the same activated schedule.","setup":"The regression R2-F06 requires (review R2 finding F06: The v6 acceptance and census gates are not complete for the final execution).","steps":["Acceptance/reference/emitter evaluate the same activated schedule."],"accept":"Acceptance/reference/emitter evaluate the same activated schedule.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P1","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F06"],"gate":"Review findings closed","owner":"hash lane, research lane D","manual_page":null,"finding":"R2-F06","finding_title":"The v6 acceptance and census gates are not complete for the final execution","finding_priority":"P1 - freeze blocker","owner_lane":"hash lane, research lane D","run_status":"NOT RUN","base_test_ids":["GOV-05","POW-01","POW-02","POW-06"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F06 (P1, the external review): the regression's harness is the owner lane's (hash lane, research lane D); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F06-R01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F06 (P1, the external review): the regression's harness is the owner lane's (hash lane, research lane D); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F06-R01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F06-R02","title":"Full live-dataset census on unseen seeds and the complete v6 pack.","setup":"The regression R2-F06 requires (review R2 finding F06: The v6 acceptance and census gates are not complete for the final execution).","steps":["Full live-dataset census on unseen seeds and the complete v6 pack."],"accept":"Full live-dataset census on unseen seeds and the complete v6 pack.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P1","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F06"],"gate":"Review findings closed","owner":"hash lane, research lane D","manual_page":null,"finding":"R2-F06","finding_title":"The v6 acceptance and census gates are not complete for the final execution","finding_priority":"P1 - freeze blocker","owner_lane":"hash lane, research lane D","run_status":"NOT RUN","base_test_ids":["GOV-05","POW-01","POW-02","POW-06"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F06 (P1, the external review): the regression's harness is the owner lane's (hash lane, research lane D); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F06-R02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F06 (P1, the external review): the regression's harness is the owner lane's (hash lane, research lane D); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F06-R02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F06-R03","title":"A failed experimental rule does not silently exhaust generation or bypass the intended resource requirement.","setup":"The regression R2-F06 requires (review R2 finding F06: The v6 acceptance and census gates are not complete for the final execution).","steps":["A failed experimental rule does not silently exhaust generation or bypass the intended resource requirement."],"accept":"A failed experimental rule does not silently exhaust generation or bypass the intended resource requirement.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P1","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F06"],"gate":"Review findings closed","owner":"hash lane, research lane D","manual_page":null,"finding":"R2-F06","finding_title":"The v6 acceptance and census gates are not complete for the final execution","finding_priority":"P1 - freeze blocker","owner_lane":"hash lane, research lane D","run_status":"NOT RUN","base_test_ids":["GOV-05","POW-01","POW-02","POW-06"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F06 (P1, the external review): the regression's harness is the owner lane's (hash lane, research lane D); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F06-R03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F06 (P1, the external review): the regression's harness is the owner lane's (hash lane, research lane D); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F06-R03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F07-R01","title":"Same final v6 configuration: mine -> evict -> prove -> aggregate -> submit -> rebuild -> resume; no leaked reservations.","setup":"The regression R2-F07 requires (review R2 finding F07: VRAM admission and proving deadlines need one operator-level scheduler).","steps":["Same final v6 configuration: mine -> evict -> prove -> aggregate -> submit -> rebuild -> resume; no leaked reservations."],"accept":"Same final v6 configuration: mine -> evict -> prove -> aggregate -> submit -> rebuild -> resume; no leaked reservations.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P1","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F07"],"gate":"Review findings closed","owner":"app lane, fleet lane","manual_page":null,"finding":"R2-F07","finding_title":"VRAM admission and proving deadlines need one operator-level scheduler","finding_priority":"P1 - miner economics and reliability","owner_lane":"app lane, fleet lane","run_status":"NOT RUN","base_test_ids":["GPU-05","CAP-02","CAP-05","UX-02"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F07 (P1, the external review): the regression's harness is the owner lane's (app lane, fleet lane); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F07-R01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F07 (P1, the external review): the regression's harness is the owner lane's (app lane, fleet lane); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F07-R01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F07-R02","title":"OOM, process crash and stale work recover without losing wallet state or silently consuming power.","setup":"The regression R2-F07 requires (review R2 finding F07: VRAM admission and proving deadlines need one operator-level scheduler).","steps":["OOM, process crash and stale work recover without losing wallet state or silently consuming power."],"accept":"OOM, process crash and stale work recover without losing wallet state or silently consuming power.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P1","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F07"],"gate":"Review findings closed","owner":"app lane, fleet lane","manual_page":null,"finding":"R2-F07","finding_title":"VRAM admission and proving deadlines need one operator-level scheduler","finding_priority":"P1 - miner economics and reliability","owner_lane":"app lane, fleet lane","run_status":"NOT RUN","base_test_ids":["GPU-05","CAP-02","CAP-05","UX-02"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F07 (P1, the external review): the regression's harness is the owner lane's (app lane, fleet lane); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F07-R02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F07 (P1, the external review): the regression's harness is the owner lane's (app lane, fleet lane); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F07-R02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F07-R03","title":"16 GB+ simultaneous mode only after measured peak plus next-epoch headroom; smaller-card modes labelled separately.","setup":"The regression R2-F07 requires (review R2 finding F07: VRAM admission and proving deadlines need one operator-level scheduler).","steps":["16 GB+ simultaneous mode only after measured peak plus next-epoch headroom; smaller-card modes labelled separately."],"accept":"16 GB+ simultaneous mode only after measured peak plus next-epoch headroom; smaller-card modes labelled separately.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P1","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F07"],"gate":"Review findings closed","owner":"app lane, fleet lane","manual_page":null,"finding":"R2-F07","finding_title":"VRAM admission and proving deadlines need one operator-level scheduler","finding_priority":"P1 - miner economics and reliability","owner_lane":"app lane, fleet lane","run_status":"NOT RUN","base_test_ids":["GPU-05","CAP-02","CAP-05","UX-02"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F07 (P1, the external review): the regression's harness is the owner lane's (app lane, fleet lane); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F07-R03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F07 (P1, the external review): the regression's harness is the owner lane's (app lane, fleet lane); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F07-R03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F08-R01","title":"Report every eligible job outcome, including expired work; a bounded list cannot hide losses.","setup":"The regression R2-F08 requires (review R2 finding F08: The proving pipeline reports waste and deadline censoring, not sustained capacity).","steps":["Report every eligible job outcome, including expired work; a bounded list cannot hide losses."],"accept":"Report every eligible job outcome, including expired work; a bounded list cannot hide losses.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P1","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F08"],"gate":"Review findings closed","owner":"proving lane, fleet lane, site (ops page)","manual_page":null,"finding":"R2-F08","finding_title":"The proving pipeline reports waste and deadline censoring, not sustained capacity","finding_priority":"P1 - proving product gate","owner_lane":"proving lane, fleet lane, site (ops page)","run_status":"NOT RUN","base_test_ids":["CAP-03","CAP-04","CAP-06","CAP-07"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F08 (P1, the external review): the regression's harness is the owner lane's (proving lane, fleet lane, site (ops page)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F08-R01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F08 (P1, the external review): the regression's harness is the owner lane's (proving lane, fleet lane, site (ops page)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F08-R01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F08-R02","title":"Consumer tiers complete and receive payment for declared jobs before claims about income.","setup":"The regression R2-F08 requires (review R2 finding F08: The proving pipeline reports waste and deadline censoring, not sustained capacity).","steps":["Consumer tiers complete and receive payment for declared jobs before claims about income."],"accept":"Consumer tiers complete and receive payment for declared jobs before claims about income.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P1","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F08"],"gate":"Review findings closed","owner":"proving lane, fleet lane, site (ops page)","manual_page":null,"finding":"R2-F08","finding_title":"The proving pipeline reports waste and deadline censoring, not sustained capacity","finding_priority":"P1 - proving product gate","owner_lane":"proving lane, fleet lane, site (ops page)","run_status":"NOT RUN","base_test_ids":["CAP-03","CAP-04","CAP-06","CAP-07"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F08 (P1, the external review): the regression's harness is the owner lane's (proving lane, fleet lane, site (ops page)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F08-R02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F08 (P1, the external review): the regression's harness is the owner lane's (proving lane, fleet lane, site (ops page)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F08-R02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F08-R03","title":"Sustained real workload across class transitions, with restart/retry and no publisher intervention.","setup":"The regression R2-F08 requires (review R2 finding F08: The proving pipeline reports waste and deadline censoring, not sustained capacity).","steps":["Sustained real workload across class transitions, with restart/retry and no publisher intervention."],"accept":"Sustained real workload across class transitions, with restart/retry and no publisher intervention.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P1","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F08"],"gate":"Review findings closed","owner":"proving lane, fleet lane, site (ops page)","manual_page":null,"finding":"R2-F08","finding_title":"The proving pipeline reports waste and deadline censoring, not sustained capacity","finding_priority":"P1 - proving product gate","owner_lane":"proving lane, fleet lane, site (ops page)","run_status":"NOT RUN","base_test_ids":["CAP-03","CAP-04","CAP-06","CAP-07"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F08 (P1, the external review): the regression's harness is the owner lane's (proving lane, fleet lane, site (ops page)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F08-R03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F08 (P1, the external review): the regression's harness is the owner lane's (proving lane, fleet lane, site (ops page)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F08-R03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F09-R01","title":"Generate all pass/fail cells directly from the declared inequalities and inputs.","setup":"The regression R2-F09 requires (review R2 finding F09: The economic model explicitly retains a failed specialist case).","steps":["Generate all pass/fail cells directly from the declared inequalities and inputs."],"accept":"Generate all pass/fail cells directly from the declared inequalities and inputs.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P1","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F09"],"gate":"Review findings closed","owner":"research lane, floor lane 3, coordinator","manual_page":null,"finding":"R2-F09","finding_title":"The economic model explicitly retains a failed specialist case","finding_priority":"P1 - founding claim not yet earned","owner_lane":"research lane, floor lane 3, coordinator","run_status":"NOT RUN","base_test_ids":["ADV-05","ADV-08","ECO-03","ECO-08","LEAD-03"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F09 (P1, the external review): the regression's harness is the owner lane's (research lane, floor lane 3, coordinator); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F09-R01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F09 (P1, the external review): the regression's harness is the owner lane's (research lane, floor lane 3, coordinator); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F09-R01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F09-R02","title":"Independent feasibility and cost evaluation of the strongest modeled SRAM/hybrid opponent.","setup":"The regression R2-F09 requires (review R2 finding F09: The economic model explicitly retains a failed specialist case).","steps":["Independent feasibility and cost evaluation of the strongest modeled SRAM/hybrid opponent."],"accept":"Independent feasibility and cost evaluation of the strongest modeled SRAM/hybrid opponent.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P1","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F09"],"gate":"Review findings closed","owner":"research lane, floor lane 3, coordinator","manual_page":null,"finding":"R2-F09","finding_title":"The economic model explicitly retains a failed specialist case","finding_priority":"P1 - founding claim not yet earned","owner_lane":"research lane, floor lane 3, coordinator","run_status":"NOT RUN","base_test_ids":["ADV-05","ADV-08","ECO-03","ECO-08","LEAD-03"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F09 (P1, the external review): the regression's harness is the owner lane's (research lane, floor lane 3, coordinator); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F09-R02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F09 (P1, the external review): the regression's harness is the owner lane's (research lane, floor lane 3, coordinator); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F09-R02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F09-R03","title":"GPU owners and entrants remain viable under the approved scenario envelope without assuming chip absence or death.","setup":"The regression R2-F09 requires (review R2 finding F09: The economic model explicitly retains a failed specialist case).","steps":["GPU owners and entrants remain viable under the approved scenario envelope without assuming chip absence or death."],"accept":"GPU owners and entrants remain viable under the approved scenario envelope without assuming chip absence or death.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P1","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F09"],"gate":"Review findings closed","owner":"research lane, floor lane 3, coordinator","manual_page":null,"finding":"R2-F09","finding_title":"The economic model explicitly retains a failed specialist case","finding_priority":"P1 - founding claim not yet earned","owner_lane":"research lane, floor lane 3, coordinator","run_status":"NOT RUN","base_test_ids":["ADV-05","ADV-08","ECO-03","ECO-08","LEAD-03"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F09 (P1, the external review): the regression's harness is the owner lane's (research lane, floor lane 3, coordinator); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F09-R03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F09 (P1, the external review): the regression's harness is the owner lane's (research lane, floor lane 3, coordinator); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F09-R03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F10-R01","title":"Compare exact found nonce/hash sets with full-read mode, including all-hit overflow and zero-hit cases.","setup":"The regression R2-F10 requires (review R2 finding F10: CUDA production readback has an existing OpenCL optimization to borrow).","steps":["Compare exact found nonce/hash sets with full-read mode, including all-hit overflow and zero-hit cases."],"accept":"Compare exact found nonce/hash sets with full-read mode, including all-hit overflow and zero-hit cases.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P2","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F10"],"gate":"Review findings closed","owner":"worker lane (new)","manual_page":null,"finding":"R2-F10","finding_title":"CUDA production readback has an existing OpenCL optimization to borrow","finding_priority":"P2 - byte-preserving performance experiment","owner_lane":"worker lane (new)","run_status":"NOT RUN","base_test_ids":["GPU-06","GPU-08","POW-01","UX-08"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F10 (P2, the external review): the regression's harness is the owner lane's (worker lane (new)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F10-R01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F10 (P2, the external review): the regression's harness is the owner lane's (worker lane (new)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F10-R01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F10-R02","title":"Test stale jobs, high-32 rollover, tail batches and asynchronous buffer reuse.","setup":"The regression R2-F10 requires (review R2 finding F10: CUDA production readback has an existing OpenCL optimization to borrow).","steps":["Test stale jobs, high-32 rollover, tail batches and asynchronous buffer reuse."],"accept":"Test stale jobs, high-32 rollover, tail batches and asynchronous buffer reuse.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P2","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F10"],"gate":"Review findings closed","owner":"worker lane (new)","manual_page":null,"finding":"R2-F10","finding_title":"CUDA production readback has an existing OpenCL optimization to borrow","finding_priority":"P2 - byte-preserving performance experiment","owner_lane":"worker lane (new)","run_status":"NOT RUN","base_test_ids":["GPU-06","GPU-08","POW-01","UX-08"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F10 (P2, the external review): the regression's harness is the owner lane's (worker lane (new)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F10-R02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F10 (P2, the external review): the regression's harness is the owner lane's (worker lane (new)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F10-R02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F10-R03","title":"Compare production throughput and wall energy, not only the isolated kernel timer.","setup":"The regression R2-F10 requires (review R2 finding F10: CUDA production readback has an existing OpenCL optimization to borrow).","steps":["Compare production throughput and wall energy, not only the isolated kernel timer."],"accept":"Compare production throughput and wall energy, not only the isolated kernel timer.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P2","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F10"],"gate":"Review findings closed","owner":"worker lane (new)","manual_page":null,"finding":"R2-F10","finding_title":"CUDA production readback has an existing OpenCL optimization to borrow","finding_priority":"P2 - byte-preserving performance experiment","owner_lane":"worker lane (new)","run_status":"NOT RUN","base_test_ids":["GPU-06","GPU-08","POW-01","UX-08"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F10 (P2, the external review): the regression's harness is the owner lane's (worker lane (new)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F10-R03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F10 (P2, the external review): the regression's harness is the owner lane's (worker lane (new)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F10-R03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F11-R01","title":"Goal switch from an efficiency prior can explore higher core/power when policy allows.","setup":"The regression R2-F11 requires (review R2 finding F11: Ember needs workload-aware identity and objective-aware search).","steps":["Goal switch from an efficiency prior can explore higher core/power when policy allows."],"accept":"Goal switch from an efficiency prior can explore higher core/power when policy allows.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P2","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F11"],"gate":"Review findings closed","owner":"Ember lane (new)","manual_page":null,"finding":"R2-F11","finding_title":"Ember needs workload-aware identity and objective-aware search","finding_priority":"P2 - product performance","owner_lane":"Ember lane (new)","run_status":"NOT RUN","base_test_ids":["GPU-02","GPU-04","UX-02","UX-03"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F11 (P2, the external review): the regression's harness is the owner lane's (Ember lane (new)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F11-R01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F11 (P2, the external review): the regression's harness is the owner lane's (Ember lane (new)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F11-R01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F11-R02","title":"Driver, workload, dataset, compiler and device changes invalidate certification while retaining optional hints.","setup":"The regression R2-F11 requires (review R2 finding F11: Ember needs workload-aware identity and objective-aware search).","steps":["Driver, workload, dataset, compiler and device changes invalidate certification while retaining optional hints."],"accept":"Driver, workload, dataset, compiler and device changes invalidate certification while retaining optional hints.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P2","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F11"],"gate":"Review findings closed","owner":"Ember lane (new)","manual_page":null,"finding":"R2-F11","finding_title":"Ember needs workload-aware identity and objective-aware search","finding_priority":"P2 - product performance","owner_lane":"Ember lane (new)","run_status":"NOT RUN","base_test_ids":["GPU-02","GPU-04","UX-02","UX-03"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F11 (P2, the external review): the regression's harness is the owner lane's (Ember lane (new)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F11-R02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F11 (P2, the external review): the regression's harness is the owner lane's (Ember lane (new)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F11-R02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F11-R03","title":"Thermal/error/late-share events revert safely, including process or machine crash.","setup":"The regression R2-F11 requires (review R2 finding F11: Ember needs workload-aware identity and objective-aware search).","steps":["Thermal/error/late-share events revert safely, including process or machine crash."],"accept":"Thermal/error/late-share events revert safely, including process or machine crash.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P2","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F11"],"gate":"Review findings closed","owner":"Ember lane (new)","manual_page":null,"finding":"R2-F11","finding_title":"Ember needs workload-aware identity and objective-aware search","finding_priority":"P2 - product performance","owner_lane":"Ember lane (new)","run_status":"NOT RUN","base_test_ids":["GPU-02","GPU-04","UX-02","UX-03"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F11 (P2, the external review): the regression's harness is the owner lane's (Ember lane (new)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F11-R03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F11 (P2, the external review): the regression's harness is the owner lane's (Ember lane (new)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F11-R03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F12-R01","title":"Crash before/after broadcast, response timeout, restart before snapshot: no duplicate payment or silent debt loss.","setup":"The regression R2-F12 requires (review R2 finding F12: Pool payouts have a broadcast-before-durable-intent window).","steps":["Crash before/after broadcast, response timeout, restart before snapshot: no duplicate payment or silent debt loss."],"accept":"Crash before/after broadcast, response timeout, restart before snapshot: no duplicate payment or silent debt loss.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P1","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F12"],"gate":"Review findings closed","owner":"pool lane (new)","manual_page":null,"finding":"R2-F12","finding_title":"Pool payouts have a broadcast-before-durable-intent window","finding_priority":"P1 - payment integrity","owner_lane":"pool lane (new)","run_status":"NOT RUN","base_test_ids":["ZKP-05","UX-04","OPS-04"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F12 (P1, the external review): the regression's harness is the owner lane's (pool lane (new)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F12-R01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F12 (P1, the external review): the regression's harness is the owner lane's (pool lane (new)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F12-R01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F12-R02","title":"Same signed transaction retried, fee replacement reconciled by intent, not a new payment.","setup":"The regression R2-F12 requires (review R2 finding F12: Pool payouts have a broadcast-before-durable-intent window).","steps":["Same signed transaction retried, fee replacement reconciled by intent, not a new payment."],"accept":"Same signed transaction retried, fee replacement reconciled by intent, not a new payment.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P1","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F12"],"gate":"Review findings closed","owner":"pool lane (new)","manual_page":null,"finding":"R2-F12","finding_title":"Pool payouts have a broadcast-before-durable-intent window","finding_priority":"P1 - payment integrity","owner_lane":"pool lane (new)","run_status":"NOT RUN","base_test_ids":["ZKP-05","UX-04","OPS-04"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F12 (P1, the external review): the regression's harness is the owner lane's (pool lane (new)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F12-R02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F12 (P1, the external review): the regression's harness is the owner lane's (pool lane (new)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F12-R02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F12-R03","title":"Receipt reorg and finality pause leave correct pending obligations.","setup":"The regression R2-F12 requires (review R2 finding F12: Pool payouts have a broadcast-before-durable-intent window).","steps":["Receipt reorg and finality pause leave correct pending obligations."],"accept":"Receipt reorg and finality pause leave correct pending obligations.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P1","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F12"],"gate":"Review findings closed","owner":"pool lane (new)","manual_page":null,"finding":"R2-F12","finding_title":"Pool payouts have a broadcast-before-durable-intent window","finding_priority":"P1 - payment integrity","owner_lane":"pool lane (new)","run_status":"NOT RUN","base_test_ids":["ZKP-05","UX-04","OPS-04"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F12 (P1, the external review): the regression's harness is the owner lane's (pool lane (new)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F12-R03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F12 (P1, the external review): the regression's harness is the owner lane's (pool lane (new)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F12-R03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F13-R01","title":"Repeated authorization rejected or atomically replaces and cleans prior state.","setup":"The regression R2-F13 requires (review R2 finding F13: Pool admission and membership need bounded resources).","steps":["Repeated authorization rejected or atomically replaces and cleans prior state."],"accept":"Repeated authorization rejected or atomically replaces and cleans prior state.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P1","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F13"],"gate":"Review findings closed","owner":"pool lane (new)","manual_page":null,"finding":"R2-F13","finding_title":"Pool admission and membership need bounded resources","finding_priority":"P1 - service resilience","owner_lane":"pool lane (new)","run_status":"NOT RUN","base_test_ids":["OPS-06","UX-04","UX-05","UX-06"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F13 (P1, the external review): the regression's harness is the owner lane's (pool lane (new)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F13-R01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F13 (P1, the external review): the regression's harness is the owner lane's (pool lane (new)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F13-R01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F13-R02","title":"Oversized unterminated frame rejected within fixed memory/time budget.","setup":"The regression R2-F13 requires (review R2 finding F13: Pool admission and membership need bounded resources).","steps":["Oversized unterminated frame rejected within fixed memory/time budget."],"accept":"Oversized unterminated frame rejected within fixed memory/time budget.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P1","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F13"],"gate":"Review findings closed","owner":"pool lane (new)","manual_page":null,"finding":"R2-F13","finding_title":"Pool admission and membership need bounded resources","finding_priority":"P1 - service resilience","owner_lane":"pool lane (new)","run_status":"NOT RUN","base_test_ids":["OPS-06","UX-04","UX-05","UX-06"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F13 (P1, the external review): the regression's harness is the owner lane's (pool lane (new)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F13-R02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F13 (P1, the external review): the regression's harness is the owner lane's (pool lane (new)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F13-R02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F13-R03","title":"Slow clients and invalid share floods cannot grow unbounded member, nonce or outgoing state.","setup":"The regression R2-F13 requires (review R2 finding F13: Pool admission and membership need bounded resources).","steps":["Slow clients and invalid share floods cannot grow unbounded member, nonce or outgoing state."],"accept":"Slow clients and invalid share floods cannot grow unbounded member, nonce or outgoing state.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P1","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F13"],"gate":"Review findings closed","owner":"pool lane (new)","manual_page":null,"finding":"R2-F13","finding_title":"Pool admission and membership need bounded resources","finding_priority":"P1 - service resilience","owner_lane":"pool lane (new)","run_status":"NOT RUN","base_test_ids":["OPS-06","UX-04","UX-05","UX-06"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F13 (P1, the external review): the regression's harness is the owner lane's (pool lane (new)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F13-R03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F13 (P1, the external review): the regression's harness is the owner lane's (pool lane (new)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F13-R03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F14-R01","title":"Public build has no default arbitrary remote execution and a documented least-privilege boundary.","setup":"The regression R2-F14 requires (review R2 finding F14: Developer fleet control must not silently become the public client trust model).","steps":["Public build has no default arbitrary remote execution and a documented least-privilege boundary."],"accept":"Public build has no default arbitrary remote execution and a documented least-privilege boundary.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P1","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F14"],"gate":"Review findings closed","owner":"app lane, relay lane","manual_page":null,"finding":"R2-F14","finding_title":"Developer fleet control must not silently become the public client trust model","finding_priority":"P1 - public client/independence gate","owner_lane":"app lane, relay lane","run_status":"NOT RUN","base_test_ids":["OPS-03","OPS-05","UX-02","UX-07"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F14 (P1, the external review): the regression's harness is the owner lane's (app lane, relay lane); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F14-R01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F14 (P1, the external review): the regression's harness is the owner lane's (app lane, relay lane); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F14-R01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F14-R02","title":"Automatic updates off remains off for urgent manifests until explicit action.","setup":"The regression R2-F14 requires (review R2 finding F14: Developer fleet control must not silently become the public client trust model).","steps":["Automatic updates off remains off for urgent manifests until explicit action."],"accept":"Automatic updates off remains off for urgent manifests until explicit action.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P1","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F14"],"gate":"Review findings closed","owner":"app lane, relay lane","manual_page":null,"finding":"R2-F14","finding_title":"Developer fleet control must not silently become the public client trust model","finding_priority":"P1 - public client/independence gate","owner_lane":"app lane, relay lane","run_status":"NOT RUN","base_test_ids":["OPS-03","OPS-05","UX-02","UX-07"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F14 (P1, the external review): the regression's harness is the owner lane's (app lane, relay lane); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F14-R02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F14 (P1, the external review): the regression's harness is the owner lane's (app lane, relay lane); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F14-R02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"R2-F14-R03","title":"A compromised fleet/update signing key cannot silently acquire wallet access or activate a consensus change.","setup":"The regression R2-F14 requires (review R2 finding F14: Developer fleet control must not silently become the public client trust model).","steps":["A compromised fleet/update signing key cannot silently acquire wallet access or activate a consensus change."],"accept":"A compromised fleet/update signing key cannot silently acquire wallet access or activate a consensus change.","evidence":"The run record of the regression as its owner lane records it through tools/ci/test-record.mjs.","priority":"P1","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R2-F14"],"gate":"Review findings closed","owner":"app lane, relay lane","manual_page":null,"finding":"R2-F14","finding_title":"Developer fleet control must not silently become the public client trust model","finding_priority":"P1 - public client/independence gate","owner_lane":"app lane, relay lane","run_status":"NOT RUN","base_test_ids":["OPS-03","OPS-05","UX-02","UX-07"],"updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"R2-F14 (P1, the external review): the regression's harness is the owner lane's (app lane, relay lane); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F14-R03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"R2-F14 (P1, the external review): the regression's harness is the owner lane's (app lane, relay lane); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"R2-F14-R03","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}}]},{"code":"INT","title":"INT: the master edition's integration gates (R1, the full-system review)","source":"docs/plans/igneum-2.0-master/traceability.json integration_gates","gate":"Integration gates closed","owner":"the owner lanes per the coordinator's crosswalk","fixtures":["F0","F5"],"summary":"18 integration gates; each reads NOT RUN until its owner lane records a run","tests":[{"id":"INT-01","title":"Real proof H cannot authenticate a different statement under a warm cache.","setup":"Integration gate INT-01 of the master edition (R1 / Additional regression gates).","steps":["Real proof H cannot authenticate a different statement under a warm cache."],"accept":"Real proof H cannot authenticate a different statement under a warm cache.","evidence":"The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R1"],"gate":"Integration gates closed","owner":"proving lane (a6e8f84588b809d62)","manual_page":null,"owner_lane":"proving lane (a6e8f84588b809d62)","run_status":"NOT RUN","master_status":"PROPOSED / NOT RUN","updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"INT-01 (R1 integration gate): the gate's harness is the owner lane's (proving lane (a6e8f84588b809d62)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"INT-01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"INT-01 (R1 integration gate): the gate's harness is the owner lane's (proving lane (a6e8f84588b809d62)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"INT-01","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"INT-02","title":"Warm/cold/relay/restart/concurrent cache order does not change block or payout decisions; negative cache isolated.","setup":"Integration gate INT-02 of the master edition (R1 / Additional regression gates).","steps":["Warm/cold/relay/restart/concurrent cache order does not change block or payout decisions; negative cache isolated."],"accept":"Warm/cold/relay/restart/concurrent cache order does not change block or payout decisions; negative cache isolated.","evidence":"The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R1"],"gate":"Integration gates closed","owner":"proving lane (a6e8f84588b809d62)","manual_page":null,"owner_lane":"proving lane (a6e8f84588b809d62)","run_status":"NOT RUN","master_status":"PROPOSED / NOT RUN","updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"INT-02 (R1 integration gate): the gate's harness is the owner lane's (proving lane (a6e8f84588b809d62)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"INT-02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"INT-02 (R1 integration gate): the gate's harness is the owner lane's (proving lane (a6e8f84588b809d62)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"INT-02","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"INT-03","title":"Durable payout outbox survives every crash/RPC boundary without duplicate or lost liabilities.","setup":"Integration gate INT-03 of the master edition (R1 / Additional regression gates).","steps":["Durable payout outbox survives every crash/RPC boundary without duplicate or lost liabilities."],"accept":"Durable payout outbox survives every crash/RPC boundary without duplicate or lost liabilities.","evidence":"The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R1"],"gate":"Integration gates closed","owner":"pool lane (a1c484c48a62948c2)","manual_page":null,"owner_lane":"pool lane (a1c484c48a62948c2)","run_status":"NOT RUN","master_status":"PROPOSED / NOT RUN","run_id":"pool-int-20261009-01","evidence_path":"build-1:/srv/artefacts/tas/pool-review-b-20261008-01/pool-suite-build-6.log; build-6:/srv/builds/_log/builds.jsonl","updated":"2026-10-08T23:47:51.313Z","evidence_record":{"requirement_id":"INT-03","decision":"NOT RUN","method":"native","cell":"suite:pool","manifest_sha":"490ebcfe","run_id":"pool-int-20261009-01","evidence":"build-1:/srv/artefacts/tas/pool-review-b-20261008-01/pool-suite-build-6.log; build-6:/srv/builds/_log/builds.jsonl","in_progress":false,"coverage":"partial: the pool suite's durable payment intent tests (payout::intent_tests: a restart from the pre-broadcast snapshot, a lost send response, a crash on either side of the broadcast, a stuck transaction replaced under the same intent, a reorged receipt and a finality pause, a failed transaction, a ledger that cannot be written: never a duplicate or a lost liability) on every 2.0.2 node sha named 8 to 9 October 2026 (7cfa422a 53, f775c347 53, a284380b 54, d657e490 54, 94e4c6ba 54, 490ebcfe 54, cf32be79 54, all rc 0 at gate priority on build-6); the live-network half (a real payout across a crash on the roll) is the roll's","release_identity":{"commit":"release-2.0.2 5db25637 (pool tree = pool-recheck-202 909ae65b + the INT-15 switch ef98ba93); pool-2.0 587cb565 the same tree","lockfile":"pool/Cargo.lock at 5db25637","binary":"igneum-pool on build-6: 2f6378e4e0023ba0 (the kit row on 02, 00c7e1db's tree), 46e4c44080d87db3 (the kit row on 03, 909ae65b's tree); on build-4 10425cc9e216a66f (the d1-pairing row: igneum-pow 1a938abe + vendored class-v6-node-review e8773ff5)","network_object":"the suites: none (a crate suite); the same-work rows: context 02 the chain-seed class v6 object 0x2a1d6caab4c24564 over node1-state.igsd1 (abb58003), context 03 devnet-4's class v5 object at epoch 2, 0x81fbfa3aa413173f, over state-epoch2.igsd1 (f36e6bba)","activation":"none","profile_hashes":""},"claim_impact":"INT-03/04/15: the pool's payment integrity, ledger recovery and session authorisation hold by construction in the crate on every 2.0.2 node sha named tonight; the live-network halves ride the roll. INT-16: the pool's share verdict equals the CPU reference per nonce on two live objects across a day rotation; the bounded-input half is the suite's, not a network run","reviewer":"","at":"2026-10-08T23:47:51.313Z"},"evidence_records":{"suite:pool":{"requirement_id":"INT-03","decision":"NOT RUN","method":"native","cell":"suite:pool","manifest_sha":"490ebcfe","run_id":"pool-int-20261009-01","evidence":"build-1:/srv/artefacts/tas/pool-review-b-20261008-01/pool-suite-build-6.log; build-6:/srv/builds/_log/builds.jsonl","in_progress":false,"coverage":"partial: the pool suite's durable payment intent tests (payout::intent_tests: a restart from the pre-broadcast snapshot, a lost send response, a crash on either side of the broadcast, a stuck transaction replaced under the same intent, a reorged receipt and a finality pause, a failed transaction, a ledger that cannot be written: never a duplicate or a lost liability) on every 2.0.2 node sha named 8 to 9 October 2026 (7cfa422a 53, f775c347 53, a284380b 54, d657e490 54, 94e4c6ba 54, 490ebcfe 54, cf32be79 54, all rc 0 at gate priority on build-6); the live-network half (a real payout across a crash on the roll) is the roll's","release_identity":{"commit":"release-2.0.2 5db25637 (pool tree = pool-recheck-202 909ae65b + the INT-15 switch ef98ba93); pool-2.0 587cb565 the same tree","lockfile":"pool/Cargo.lock at 5db25637","binary":"igneum-pool on build-6: 2f6378e4e0023ba0 (the kit row on 02, 00c7e1db's tree), 46e4c44080d87db3 (the kit row on 03, 909ae65b's tree); on build-4 10425cc9e216a66f (the d1-pairing row: igneum-pow 1a938abe + vendored class-v6-node-review e8773ff5)","network_object":"the suites: none (a crate suite); the same-work rows: context 02 the chain-seed class v6 object 0x2a1d6caab4c24564 over node1-state.igsd1 (abb58003), context 03 devnet-4's class v5 object at epoch 2, 0x81fbfa3aa413173f, over state-epoch2.igsd1 (f36e6bba)","activation":"none","profile_hashes":""},"claim_impact":"INT-03/04/15: the pool's payment integrity, ledger recovery and session authorisation hold by construction in the crate on every 2.0.2 node sha named tonight; the live-network halves ride the roll. INT-16: the pool's share verdict equals the CPU reference per nonce on two live objects across a day rotation; the bounded-input half is the suite's, not a network run","reviewer":"","at":"2026-10-08T23:47:51.313Z"}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"INT-04","title":"Corrupt existing pool state, disk-full and reorg cause safe recovery, not silent empty balances.","setup":"Integration gate INT-04 of the master edition (R1 / Additional regression gates).","steps":["Corrupt existing pool state, disk-full and reorg cause safe recovery, not silent empty balances."],"accept":"Corrupt existing pool state, disk-full and reorg cause safe recovery, not silent empty balances.","evidence":"The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R1"],"gate":"Integration gates closed","owner":"pool lane (a1c484c48a62948c2)","manual_page":null,"owner_lane":"pool lane (a1c484c48a62948c2)","run_status":"NOT RUN","master_status":"PROPOSED / NOT RUN","run_id":"pool-int-20261009-01","evidence_path":"build-1:/srv/artefacts/tas/pool-review-b-20261008-01/pool-suite-build-6.log; build-6:/srv/builds/_log/builds.jsonl","updated":"2026-10-08T23:47:51.313Z","evidence_record":{"requirement_id":"INT-04","decision":"NOT RUN","method":"native","cell":"suite:pool","manifest_sha":"490ebcfe","run_id":"pool-int-20261009-01","evidence":"build-1:/srv/artefacts/tas/pool-review-b-20261008-01/pool-suite-build-6.log; build-6:/srv/builds/_log/builds.jsonl","in_progress":false,"coverage":"partial: the pool suite's ledger tests (state::ledger_tests: a corrupt, truncated or digest-failing state.json restores the previous snapshot or refuses to start, never an empty ledger; the migration of pre-intent payments) and the disk-full test (payout::intent_tests::a_ledger_that_cannot_be_written_broadcasts_nothing) on the same seven shas; the live-network half (corruption and a reorg on the roll) is the roll's","release_identity":{"commit":"release-2.0.2 5db25637 (pool tree = pool-recheck-202 909ae65b + the INT-15 switch ef98ba93); pool-2.0 587cb565 the same tree","lockfile":"pool/Cargo.lock at 5db25637","binary":"igneum-pool on build-6: 2f6378e4e0023ba0 (the kit row on 02, 00c7e1db's tree), 46e4c44080d87db3 (the kit row on 03, 909ae65b's tree); on build-4 10425cc9e216a66f (the d1-pairing row: igneum-pow 1a938abe + vendored class-v6-node-review e8773ff5)","network_object":"the suites: none (a crate suite); the same-work rows: context 02 the chain-seed class v6 object 0x2a1d6caab4c24564 over node1-state.igsd1 (abb58003), context 03 devnet-4's class v5 object at epoch 2, 0x81fbfa3aa413173f, over state-epoch2.igsd1 (f36e6bba)","activation":"none","profile_hashes":""},"claim_impact":"INT-03/04/15: the pool's payment integrity, ledger recovery and session authorisation hold by construction in the crate on every 2.0.2 node sha named tonight; the live-network halves ride the roll. INT-16: the pool's share verdict equals the CPU reference per nonce on two live objects across a day rotation; the bounded-input half is the suite's, not a network run","reviewer":"","at":"2026-10-08T23:47:51.313Z"},"evidence_records":{"suite:pool":{"requirement_id":"INT-04","decision":"NOT RUN","method":"native","cell":"suite:pool","manifest_sha":"490ebcfe","run_id":"pool-int-20261009-01","evidence":"build-1:/srv/artefacts/tas/pool-review-b-20261008-01/pool-suite-build-6.log; build-6:/srv/builds/_log/builds.jsonl","in_progress":false,"coverage":"partial: the pool suite's ledger tests (state::ledger_tests: a corrupt, truncated or digest-failing state.json restores the previous snapshot or refuses to start, never an empty ledger; the migration of pre-intent payments) and the disk-full test (payout::intent_tests::a_ledger_that_cannot_be_written_broadcasts_nothing) on the same seven shas; the live-network half (corruption and a reorg on the roll) is the roll's","release_identity":{"commit":"release-2.0.2 5db25637 (pool tree = pool-recheck-202 909ae65b + the INT-15 switch ef98ba93); pool-2.0 587cb565 the same tree","lockfile":"pool/Cargo.lock at 5db25637","binary":"igneum-pool on build-6: 2f6378e4e0023ba0 (the kit row on 02, 00c7e1db's tree), 46e4c44080d87db3 (the kit row on 03, 909ae65b's tree); on build-4 10425cc9e216a66f (the d1-pairing row: igneum-pow 1a938abe + vendored class-v6-node-review e8773ff5)","network_object":"the suites: none (a crate suite); the same-work rows: context 02 the chain-seed class v6 object 0x2a1d6caab4c24564 over node1-state.igsd1 (abb58003), context 03 devnet-4's class v5 object at epoch 2, 0x81fbfa3aa413173f, over state-epoch2.igsd1 (f36e6bba)","activation":"none","profile_hashes":""},"claim_impact":"INT-03/04/15: the pool's payment integrity, ledger recovery and session authorisation hold by construction in the crate on every 2.0.2 node sha named tonight; the live-network halves ride the roll. INT-16: the pool's share verdict equals the CPU reference per nonce on two live objects across a day rotation; the bounded-input half is the suite's, not a network run","reviewer":"","at":"2026-10-08T23:47:51.313Z"}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"INT-05","title":"The supplied finality implementation matches the approved anchor rule after >window healing.","setup":"Integration gate INT-05 of the master edition (R1 / Additional regression gates).","steps":["The supplied finality implementation matches the approved anchor rule after >window healing."],"accept":"The supplied finality implementation matches the approved anchor rule after >window healing.","evidence":"The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R1"],"gate":"Integration gates closed","owner":"node lane (a283f5f0d364ceef0)","manual_page":null,"owner_lane":"node lane (a283f5f0d364ceef0)","run_status":"NOT RUN","master_status":"PROPOSED / NOT RUN","updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"INT-05 (R1 integration gate): the gate's harness is the owner lane's (node lane (a283f5f0d364ceef0)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"INT-05","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"INT-05 (R1 integration gate): the gate's harness is the owner lane's (node lane (a283f5f0d364ceef0)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"INT-05","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"INT-06","title":"Recovery tests state and preserve their weaker fault bound; interfaces never label it as a stronger guarantee.","setup":"Integration gate INT-06 of the master edition (R1 / Additional regression gates).","steps":["Recovery tests state and preserve their weaker fault bound; interfaces never label it as a stronger guarantee."],"accept":"Recovery tests state and preserve their weaker fault bound; interfaces never label it as a stronger guarantee.","evidence":"The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R1"],"gate":"Integration gates closed","owner":"node lane (a283f5f0d364ceef0)","manual_page":null,"owner_lane":"node lane (a283f5f0d364ceef0)","run_status":"NOT RUN","master_status":"PROPOSED / NOT RUN","updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"INT-06 (R1 integration gate): the gate's harness is the owner lane's (node lane (a283f5f0d364ceef0)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"INT-06","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"INT-06 (R1 integration gate): the gate's harness is the owner lane's (node lane (a283f5f0d364ceef0)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"INT-06","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"INT-07","title":"One v6 object agrees in node, pool, CPU verifier and each supported GPU host across activation.","definition":"V6-12 (R1 p. 213): the release manifest is signed and binds lockfile hashes, kernel and host binaries, supported devices and drivers, the prover server patch, memory thresholds and tuner identity, with end-to-end artifact authentication and a clean-install accepted-and-paid test on an independent machine with no unpublished files, symlinks or shell overrides.","setup":"Integration gate INT-07 of the master edition (R1 / Additional regression gates).","steps":["One v6 object agrees in node, pool, CPU verifier and each supported GPU host across activation."],"accept":"One v6 object agrees in node, pool, CPU verifier and each supported GPU host across activation.","evidence":"The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R1"],"gate":"Integration gates closed","owner":"CI steward with the hash lane (a690540514aa453d7) and the worker lane (a9e87343f008e0edd)","manual_page":null,"owner_lane":"CI steward with the hash lane (a690540514aa453d7) and the worker lane (a9e87343f008e0edd)","run_status":"FAIL","master_status":"PROPOSED / NOT RUN","run_id":"canary-202-20261009-01","evidence_path":"tools/ci/canary/1176efb9.json; build-1:/srv/canary/1176efb9/mini/00-verdict.txt; build-1:/srv/canary/1176efb9/lp-4090-11/fleet-block.json; build-1:/srv/canary/1176efb9/lp-4090-43/00-verdict.txt","updated":"2026-10-09T07:43:10.690Z","evidence_record":{"requirement_id":"INT-07","decision":"FAIL","method":"team-reported","cell":"canary:fresh-install","manifest_sha":"5d53a591","run_id":"canary-202-20261009-01","evidence":"tools/ci/canary/1176efb9.json; build-1:/srv/canary/1176efb9/mini/00-verdict.txt; build-1:/srv/canary/1176efb9/lp-4090-11/fleet-block.json; build-1:/srv/canary/1176efb9/lp-4090-43/00-verdict.txt","in_progress":false,"coverage":"partial: V6-12's clean-install half (one published object installed fresh, synced, mined, proved and paid on one host per artefact); the cross-host agreement half (node, pool, CPU verifier, each GPU host across activation) is harness:same-work's","release_identity":{"commit":"1176efb9 (release-2.0.2 kit 2 tip; node 5d53a591)","lockfile":"","binary":"Igneum-Miner-2.0.2-5d53a591-1176efb9.dmg 66137cd8…","network_object":"igneum-devnet-4, chain id 4465","activation":"","profile_hashes":""},"claim_impact":"INT-07's clean-install half on kit 2 reads FAIL on the fleet canary (the walk bound at the fifth cut); the mac block PASS stands as the Mac entry's evidence; no fleet, hive or windows entry publishes until a record reads PASS on its own block","reviewer":"","at":"2026-10-09T07:43:10.690Z","note":"mac PASS (the Mac entry published on it 02:20 UK); fleet FAIL at sync (lp-4090-11, 04:04 UK: the walk bound at the reference chain's fifth cut under fix 2); hive FAIL (lp-4090-43: the lost-proof loop at the first class v5 cut, 'the proofs of 2 carried records are not held yet'); no windows block (the Windows order's default fired: no push without a proved shard). No fleet, hive or windows 2.0.2 entry publishes on this record. | Kit 2 (tip 1176efb9, node 5d53a591): the mac block PASS under tools/ci/canary-check.sh (the project's macOS machine: synced from empty in 2,016 s, 18 blocks in five minutes at 12.65 MH/s, 0 refusals, shard n/a on Apple silicon, the tip inside ten of the age-adjusted feed, quit in 4 s); the fleet block FAIL at sync (lp-4090-11, 04:04 UK: a fresh 2.0.2 node walls at the reference chain's fifth cut under fix 2's walk bound, 'passed 7200 blocks (2 x epoch_blocks) without meeting a block this executor holds a record of'; the kit ran clean; build-1:/srv/canary/1176efb9/lp-4090-11/fleet-block.json); the hive block reads about 05:30 UK, the windows block on the relay lane's clock. No fleet, hive or windows entry publishes on this record; the Mac entry published on its PASS block at 02:20 UK. Kit 1's 94e4c6ba FAIL (the wedge) stands as that sha's record. The recorder's rule: a measured FAIL on one block is a FAIL on the case. Re-recorded 9 October 2026 04:3x UK with the hive block (lp-4090-43, FAIL at sync on the lost-proof loop) and the re-shaped fleet block (no sync.feed object). Cell note brought up to the record's three blocks at 08:1x UK (the hive landing had re-recorded the batch note only). Re-recorded 9 October 2026 08:2x UK with hive-2, the lp-4090-43 kit-binary block and hive-3 (all FAIL at sync; the sync gate closed the hive run class). Re-recorded 08:3x UK: the record's own verdict FAIL. (The check now refuses a record whose own verdict reads PASS over a FAIL block, 09:0x UK.)","network_label":"on an island, not a network"},"evidence_records":{"canary:fresh-install":{"requirement_id":"INT-07","decision":"FAIL","method":"team-reported","cell":"canary:fresh-install","manifest_sha":"5d53a591","run_id":"canary-202-20261009-01","evidence":"tools/ci/canary/1176efb9.json; build-1:/srv/canary/1176efb9/mini/00-verdict.txt; build-1:/srv/canary/1176efb9/lp-4090-11/fleet-block.json; build-1:/srv/canary/1176efb9/lp-4090-43/00-verdict.txt","in_progress":false,"coverage":"partial: V6-12's clean-install half (one published object installed fresh, synced, mined, proved and paid on one host per artefact); the cross-host agreement half (node, pool, CPU verifier, each GPU host across activation) is harness:same-work's","release_identity":{"commit":"1176efb9 (release-2.0.2 kit 2 tip; node 5d53a591)","lockfile":"","binary":"Igneum-Miner-2.0.2-5d53a591-1176efb9.dmg 66137cd8…","network_object":"igneum-devnet-4, chain id 4465","activation":"","profile_hashes":""},"claim_impact":"INT-07's clean-install half on kit 2 reads FAIL on the fleet canary (the walk bound at the fifth cut); the mac block PASS stands as the Mac entry's evidence; no fleet, hive or windows entry publishes until a record reads PASS on its own block","reviewer":"","at":"2026-10-09T07:43:10.690Z","note":"mac PASS (the Mac entry published on it 02:20 UK); fleet FAIL at sync (lp-4090-11, 04:04 UK: the walk bound at the reference chain's fifth cut under fix 2); hive FAIL (lp-4090-43: the lost-proof loop at the first class v5 cut, 'the proofs of 2 carried records are not held yet'); no windows block (the Windows order's default fired: no push without a proved shard). No fleet, hive or windows 2.0.2 entry publishes on this record. | Kit 2 (tip 1176efb9, node 5d53a591): the mac block PASS under tools/ci/canary-check.sh (the project's macOS machine: synced from empty in 2,016 s, 18 blocks in five minutes at 12.65 MH/s, 0 refusals, shard n/a on Apple silicon, the tip inside ten of the age-adjusted feed, quit in 4 s); the fleet block FAIL at sync (lp-4090-11, 04:04 UK: a fresh 2.0.2 node walls at the reference chain's fifth cut under fix 2's walk bound, 'passed 7200 blocks (2 x epoch_blocks) without meeting a block this executor holds a record of'; the kit ran clean; build-1:/srv/canary/1176efb9/lp-4090-11/fleet-block.json); the hive block reads about 05:30 UK, the windows block on the relay lane's clock. No fleet, hive or windows entry publishes on this record; the Mac entry published on its PASS block at 02:20 UK. Kit 1's 94e4c6ba FAIL (the wedge) stands as that sha's record. The recorder's rule: a measured FAIL on one block is a FAIL on the case. Re-recorded 9 October 2026 04:3x UK with the hive block (lp-4090-43, FAIL at sync on the lost-proof loop) and the re-shaped fleet block (no sync.feed object). Cell note brought up to the record's three blocks at 08:1x UK (the hive landing had re-recorded the batch note only). Re-recorded 9 October 2026 08:2x UK with hive-2, the lp-4090-43 kit-binary block and hive-3 (all FAIL at sync; the sync gate closed the hive run class). Re-recorded 08:3x UK: the record's own verdict FAIL. (The check now refuses a record whose own verdict reads PASS over a FAIL block, 09:0x UK.)","network_label":"on an island, not a network"}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"INT-08","title":"Census, production acceptance, schedule counters and live-dataset tests use the identical frozen contract.","setup":"Integration gate INT-08 of the master edition (R1 / Additional regression gates).","steps":["Census, production acceptance, schedule counters and live-dataset tests use the identical frozen contract."],"accept":"Census, production acceptance, schedule counters and live-dataset tests use the identical frozen contract.","evidence":"The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R1"],"gate":"Integration gates closed","owner":"CI steward with the hash lane (a690540514aa453d7) and the worker lane (a9e87343f008e0edd)","manual_page":null,"owner_lane":"CI steward with the hash lane (a690540514aa453d7) and the worker lane (a9e87343f008e0edd)","run_status":"NOT RUN","master_status":"PROPOSED / NOT RUN","updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"INT-08 (R1 integration gate): the gate's harness is the owner lane's (CI steward with the hash lane (a690540514aa453d7) and the worker lane (a9e87343f008e0edd)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"INT-08","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"INT-08 (R1 integration gate): the gate's harness is the owner lane's (CI steward with the hash lane (a690540514aa453d7) and the worker lane (a9e87343f008e0edd)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"INT-08","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"INT-09","title":"Eight- and twelve-GiB epoch transitions recover deliberately without relying on repeated OOM/watchdog cycles.","setup":"Integration gate INT-09 of the master edition (R1 / Additional regression gates).","steps":["Eight- and twelve-GiB epoch transitions recover deliberately without relying on repeated OOM/watchdog cycles."],"accept":"Eight- and twelve-GiB epoch transitions recover deliberately without relying on repeated OOM/watchdog cycles.","evidence":"The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R1"],"gate":"Integration gates closed","owner":"app lane","manual_page":null,"owner_lane":"app lane","run_status":"NOT RUN","master_status":"PROPOSED / NOT RUN","updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"INT-09 (R1 integration gate): the gate's harness is the owner lane's (app lane); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"INT-09","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"INT-09 (R1 integration gate): the gate's harness is the owner lane's (app lane); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"INT-09","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"INT-10","title":"Metal/CUDA/OpenCL exact dataset geometry agrees; unsupported packs reject before launch.","setup":"Integration gate INT-10 of the master edition (R1 / Additional regression gates).","steps":["Metal/CUDA/OpenCL exact dataset geometry agrees; unsupported packs reject before launch."],"accept":"Metal/CUDA/OpenCL exact dataset geometry agrees; unsupported packs reject before launch.","evidence":"The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R1"],"gate":"Integration gates closed","owner":"CI steward with the hash lane (a690540514aa453d7) and the worker lane (a9e87343f008e0edd)","manual_page":null,"owner_lane":"CI steward with the hash lane (a690540514aa453d7) and the worker lane (a9e87343f008e0edd)","run_status":"NOT RUN","master_status":"PROPOSED / NOT RUN","updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"INT-10 (R1 integration gate): the gate's harness is the owner lane's (CI steward with the hash lane (a690540514aa453d7) and the worker lane (a9e87343f008e0edd)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"INT-10","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"INT-10 (R1 integration gate): the gate's harness is the owner lane's (CI steward with the hash lane (a690540514aa453d7) and the worker lane (a9e87343f008e0edd)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"INT-10","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"INT-11","title":"Only a memory-reserved proving job launches; mining buffers really release when required.","setup":"Integration gate INT-11 of the master edition (R1 / Additional regression gates).","steps":["Only a memory-reserved proving job launches; mining buffers really release when required."],"accept":"Only a memory-reserved proving job launches; mining buffers really release when required.","evidence":"The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R1"],"gate":"Integration gates closed","owner":"app lane","manual_page":null,"owner_lane":"app lane","run_status":"NOT RUN","master_status":"PROPOSED / NOT RUN","updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"INT-11 (R1 integration gate): the gate's harness is the owner lane's (app lane); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"INT-11","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"INT-11 (R1 integration gate): the gate's harness is the owner lane's (app lane); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"INT-11","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"INT-12","title":"Transient shard errors can retry safely; expiration, loss and paid work remain distinct durable outcomes.","setup":"Integration gate INT-12 of the master edition (R1 / Additional regression gates).","steps":["Transient shard errors can retry safely; expiration, loss and paid work remain distinct durable outcomes."],"accept":"Transient shard errors can retry safely; expiration, loss and paid work remain distinct durable outcomes.","evidence":"The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R1"],"gate":"Integration gates closed","owner":"proving lane (a6e8f84588b809d62) and fleet lane (ac055d60427caab99)","manual_page":null,"owner_lane":"proving lane (a6e8f84588b809d62) and fleet lane (ac055d60427caab99)","run_status":"NOT RUN","master_status":"PROPOSED / NOT RUN","updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"INT-12 (R1 integration gate): the gate's harness is the owner lane's (proving lane (a6e8f84588b809d62) and fleet lane (ac055d60427caab99)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"INT-12","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"INT-12 (R1 integration gate): the gate's harness is the owner lane's (proving lane (a6e8f84588b809d62) and fleet lane (ac055d60427caab99)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"INT-12","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"INT-13","title":"Ember cannot retain a rate-ineligible prior; material workload changes invalidate incompatible profiles.","setup":"Integration gate INT-13 of the master edition (R1 / Additional regression gates).","steps":["Ember cannot retain a rate-ineligible prior; material workload changes invalidate incompatible profiles."],"accept":"Ember cannot retain a rate-ineligible prior; material workload changes invalidate incompatible profiles.","evidence":"The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R1"],"gate":"Integration gates closed","owner":"Ember lane (a04fe3451877e2ff0) with the app lane","manual_page":null,"owner_lane":"Ember lane (a04fe3451877e2ff0) with the app lane","run_status":"NOT RUN","master_status":"PROPOSED / NOT RUN","updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"INT-13 (R1 integration gate): the gate's harness is the owner lane's (Ember lane (a04fe3451877e2ff0) with the app lane); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"INT-13","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"INT-13 (R1 integration gate): the gate's harness is the owner lane's (Ember lane (a04fe3451877e2ff0) with the app lane); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"INT-13","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"INT-14","title":"Protected helper and per-device leases restore owned settings on normal/abnormal exit; real ACL/security tests.","setup":"Integration gate INT-14 of the master edition (R1 / Additional regression gates).","steps":["Protected helper and per-device leases restore owned settings on normal/abnormal exit; real ACL/security tests."],"accept":"Protected helper and per-device leases restore owned settings on normal/abnormal exit; real ACL/security tests.","evidence":"The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R1"],"gate":"Integration gates closed","owner":"Ember lane (a04fe3451877e2ff0) with the app lane","manual_page":null,"owner_lane":"Ember lane (a04fe3451877e2ff0) with the app lane","run_status":"NOT RUN","master_status":"PROPOSED / NOT RUN","updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"INT-14 (R1 integration gate): the gate's harness is the owner lane's (Ember lane (a04fe3451877e2ff0) with the app lane); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"INT-14","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"INT-14 (R1 integration gate): the gate's harness is the owner lane's (Ember lane (a04fe3451877e2ff0) with the app lane); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"INT-14","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"INT-15","title":"Public PoP replay is not session authorization; payout/server/network binding enforced.","setup":"Integration gate INT-15 of the master edition (R1 / Additional regression gates).","steps":["Public PoP replay is not session authorization; payout/server/network binding enforced."],"accept":"Public PoP replay is not session authorization; payout/server/network binding enforced.","evidence":"The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R1"],"gate":"Integration gates closed","owner":"pool lane (a1c484c48a62948c2)","manual_page":null,"owner_lane":"pool lane (a1c484c48a62948c2)","run_status":"NOT RUN","master_status":"PROPOSED / NOT RUN","run_id":"pool-int-20261009-01","evidence_path":"build-1:/srv/artefacts/tas/pool-review-b-20261008-01/pool-suite-build-6.log; build-6:/srv/builds/_log/builds.jsonl","updated":"2026-10-08T23:47:51.313Z","evidence_record":{"requirement_id":"INT-15","decision":"NOT RUN","method":"native","cell":"suite:pool","manifest_sha":"490ebcfe","run_id":"pool-int-20261009-01","evidence":"build-1:/srv/artefacts/tas/pool-review-b-20261008-01/pool-suite-build-6.log; build-6:/srv/builds/_log/builds.jsonl","in_progress":false,"coverage":"partial: the pool suite's binding v2 and session tests (server::authorise_tests: a public PoP replayed into another session, payout, pool or chain, or under another key, refused; the policy follows the network; protocol::tests::the_session_binding_digest_is_the_nodes against consensus-core's session_binding_v2 since node ab489403) on the same seven shas; the live-network half (a 2.0.2 miner's authorize against the rolled pool) is the roll's","release_identity":{"commit":"release-2.0.2 5db25637 (pool tree = pool-recheck-202 909ae65b + the INT-15 switch ef98ba93); pool-2.0 587cb565 the same tree","lockfile":"pool/Cargo.lock at 5db25637","binary":"igneum-pool on build-6: 2f6378e4e0023ba0 (the kit row on 02, 00c7e1db's tree), 46e4c44080d87db3 (the kit row on 03, 909ae65b's tree); on build-4 10425cc9e216a66f (the d1-pairing row: igneum-pow 1a938abe + vendored class-v6-node-review e8773ff5)","network_object":"the suites: none (a crate suite); the same-work rows: context 02 the chain-seed class v6 object 0x2a1d6caab4c24564 over node1-state.igsd1 (abb58003), context 03 devnet-4's class v5 object at epoch 2, 0x81fbfa3aa413173f, over state-epoch2.igsd1 (f36e6bba)","activation":"none","profile_hashes":""},"claim_impact":"INT-03/04/15: the pool's payment integrity, ledger recovery and session authorisation hold by construction in the crate on every 2.0.2 node sha named tonight; the live-network halves ride the roll. INT-16: the pool's share verdict equals the CPU reference per nonce on two live objects across a day rotation; the bounded-input half is the suite's, not a network run","reviewer":"","at":"2026-10-08T23:47:51.313Z"},"evidence_records":{"suite:pool":{"requirement_id":"INT-15","decision":"NOT RUN","method":"native","cell":"suite:pool","manifest_sha":"490ebcfe","run_id":"pool-int-20261009-01","evidence":"build-1:/srv/artefacts/tas/pool-review-b-20261008-01/pool-suite-build-6.log; build-6:/srv/builds/_log/builds.jsonl","in_progress":false,"coverage":"partial: the pool suite's binding v2 and session tests (server::authorise_tests: a public PoP replayed into another session, payout, pool or chain, or under another key, refused; the policy follows the network; protocol::tests::the_session_binding_digest_is_the_nodes against consensus-core's session_binding_v2 since node ab489403) on the same seven shas; the live-network half (a 2.0.2 miner's authorize against the rolled pool) is the roll's","release_identity":{"commit":"release-2.0.2 5db25637 (pool tree = pool-recheck-202 909ae65b + the INT-15 switch ef98ba93); pool-2.0 587cb565 the same tree","lockfile":"pool/Cargo.lock at 5db25637","binary":"igneum-pool on build-6: 2f6378e4e0023ba0 (the kit row on 02, 00c7e1db's tree), 46e4c44080d87db3 (the kit row on 03, 909ae65b's tree); on build-4 10425cc9e216a66f (the d1-pairing row: igneum-pow 1a938abe + vendored class-v6-node-review e8773ff5)","network_object":"the suites: none (a crate suite); the same-work rows: context 02 the chain-seed class v6 object 0x2a1d6caab4c24564 over node1-state.igsd1 (abb58003), context 03 devnet-4's class v5 object at epoch 2, 0x81fbfa3aa413173f, over state-epoch2.igsd1 (f36e6bba)","activation":"none","profile_hashes":""},"claim_impact":"INT-03/04/15: the pool's payment integrity, ledger recovery and session authorisation hold by construction in the crate on every 2.0.2 node sha named tonight; the live-network halves ride the roll. INT-16: the pool's share verdict equals the CPU reference per nonce on two live objects across a day rotation; the bounded-input half is the suite's, not a network run","reviewer":"","at":"2026-10-08T23:47:51.313Z"}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"INT-16","title":"Pool parsing/queues/connection and crypto budgets remain bounded under controlled adversarial traffic.","setup":"Integration gate INT-16 of the master edition (R1 / Additional regression gates).","steps":["Pool parsing/queues/connection and crypto budgets remain bounded under controlled adversarial traffic."],"accept":"Pool parsing/queues/connection and crypto budgets remain bounded under controlled adversarial traffic.","evidence":"The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R1"],"gate":"Integration gates closed","owner":"pool lane (a1c484c48a62948c2)","manual_page":null,"owner_lane":"pool lane (a1c484c48a62948c2)","run_status":"NOT RUN","master_status":"PROPOSED / NOT RUN","run_id":"pool-int-20261009-01","evidence_path":"build-1:/srv/artefacts/tas/same-work-20261008-02/pool/kit-row/README.json; build-1:/srv/artefacts/tas/same-work-20261008-02/pool/d1-pairing/README.json; build-1:/srv/artefacts/tas/same-work-20261008-03/pool/kit-row/README.json","updated":"2026-10-08T23:47:51.313Z","evidence_record":{"requirement_id":"INT-16","decision":"NOT RUN","method":"native","cell":"harness:same-work","manifest_sha":"490ebcfe","run_id":"pool-int-20261009-01","evidence":"build-1:/srv/artefacts/tas/same-work-20261008-02/pool/kit-row/README.json; build-1:/srv/artefacts/tas/same-work-20261008-02/pool/d1-pairing/README.json; build-1:/srv/artefacts/tas/same-work-20261008-03/pool/kit-row/README.json","in_progress":false,"coverage":"partial: the member-side re-check over the job context (igneum-pool recheck, the pool's own share verifier per nonce against the CPU reference): the d1-pairing row PASS x3 on the class v6 object (context 02, 3,145,728 of 3,145,728, 256 of 256 shares accepted, the boundary switched), the kit row PASS x3 on the class v5 chain-seed object (context 03, the kit as pinned, the same counts), the kit row on 02 BLOCKED by the kit's V5 pins (the reason in each file); the bounded-input half (slow readers, oversized frames, floods under controlled traffic) is the pool suite's frame, admission and share tests, not a network run","release_identity":{"commit":"release-2.0.2 5db25637 (pool tree = pool-recheck-202 909ae65b + the INT-15 switch ef98ba93); pool-2.0 587cb565 the same tree","lockfile":"pool/Cargo.lock at 5db25637","binary":"igneum-pool on build-6: 2f6378e4e0023ba0 (the kit row on 02, 00c7e1db's tree), 46e4c44080d87db3 (the kit row on 03, 909ae65b's tree); on build-4 10425cc9e216a66f (the d1-pairing row: igneum-pow 1a938abe + vendored class-v6-node-review e8773ff5)","network_object":"the suites: none (a crate suite); the same-work rows: context 02 the chain-seed class v6 object 0x2a1d6caab4c24564 over node1-state.igsd1 (abb58003), context 03 devnet-4's class v5 object at epoch 2, 0x81fbfa3aa413173f, over state-epoch2.igsd1 (f36e6bba)","activation":"none","profile_hashes":""},"claim_impact":"INT-03/04/15: the pool's payment integrity, ledger recovery and session authorisation hold by construction in the crate on every 2.0.2 node sha named tonight; the live-network halves ride the roll. INT-16: the pool's share verdict equals the CPU reference per nonce on two live objects across a day rotation; the bounded-input half is the suite's, not a network run","reviewer":"","at":"2026-10-08T23:47:51.313Z","network_label":"on an island, not a network"},"evidence_records":{"harness:same-work":{"requirement_id":"INT-16","decision":"NOT RUN","method":"native","cell":"harness:same-work","manifest_sha":"490ebcfe","run_id":"pool-int-20261009-01","evidence":"build-1:/srv/artefacts/tas/same-work-20261008-02/pool/kit-row/README.json; build-1:/srv/artefacts/tas/same-work-20261008-02/pool/d1-pairing/README.json; build-1:/srv/artefacts/tas/same-work-20261008-03/pool/kit-row/README.json","in_progress":false,"coverage":"partial: the member-side re-check over the job context (igneum-pool recheck, the pool's own share verifier per nonce against the CPU reference): the d1-pairing row PASS x3 on the class v6 object (context 02, 3,145,728 of 3,145,728, 256 of 256 shares accepted, the boundary switched), the kit row PASS x3 on the class v5 chain-seed object (context 03, the kit as pinned, the same counts), the kit row on 02 BLOCKED by the kit's V5 pins (the reason in each file); the bounded-input half (slow readers, oversized frames, floods under controlled traffic) is the pool suite's frame, admission and share tests, not a network run","release_identity":{"commit":"release-2.0.2 5db25637 (pool tree = pool-recheck-202 909ae65b + the INT-15 switch ef98ba93); pool-2.0 587cb565 the same tree","lockfile":"pool/Cargo.lock at 5db25637","binary":"igneum-pool on build-6: 2f6378e4e0023ba0 (the kit row on 02, 00c7e1db's tree), 46e4c44080d87db3 (the kit row on 03, 909ae65b's tree); on build-4 10425cc9e216a66f (the d1-pairing row: igneum-pow 1a938abe + vendored class-v6-node-review e8773ff5)","network_object":"the suites: none (a crate suite); the same-work rows: context 02 the chain-seed class v6 object 0x2a1d6caab4c24564 over node1-state.igsd1 (abb58003), context 03 devnet-4's class v5 object at epoch 2, 0x81fbfa3aa413173f, over state-epoch2.igsd1 (f36e6bba)","activation":"none","profile_hashes":""},"claim_impact":"INT-03/04/15: the pool's payment integrity, ledger recovery and session authorisation hold by construction in the crate on every 2.0.2 node sha named tonight; the live-network halves ride the roll. INT-16: the pool's share verdict equals the CPU reference per nonce on two live objects across a day rotation; the bounded-input half is the suite's, not a network run","reviewer":"","at":"2026-10-08T23:47:51.313Z","network_label":"on an island, not a network"}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"INT-17","title":"Missing oracle/keys/mandatory real-proof fixture blocks the applicable production acceptance gate.","setup":"Integration gate INT-17 of the master edition (R1 / Additional regression gates).","steps":["Missing oracle/keys/mandatory real-proof fixture blocks the applicable production acceptance gate."],"accept":"Missing oracle/keys/mandatory real-proof fixture blocks the applicable production acceptance gate.","evidence":"The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R1"],"gate":"Integration gates closed","owner":"proving lane (a6e8f84588b809d62)","manual_page":null,"owner_lane":"proving lane (a6e8f84588b809d62)","run_status":"NOT RUN","master_status":"PROPOSED / NOT RUN","updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"INT-17 (R1 integration gate): the gate's harness is the owner lane's (proving lane (a6e8f84588b809d62)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"INT-17","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"INT-17 (R1 integration gate): the gate's harness is the owner lane's (proving lane (a6e8f84588b809d62)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"INT-17","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}},{"id":"INT-18","title":"Whole-system economics pass the strongest feasible adversary, including sunk development and multi-epoch survival.","setup":"Integration gate INT-18 of the master edition (R1 / Additional regression gates).","steps":["Whole-system economics pass the strongest feasible adversary, including sunk development and multi-epoch survival."],"accept":"Whole-system economics pass the strongest feasible adversary, including sunk development and multi-epoch survival.","evidence":"The run record of the gate as its owner lane records it through tools/ci/test-record.mjs.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","status":"NOT RUN","source":["R1"],"gate":"Integration gates closed","owner":"research lane (ad6a2bd47d4a46105)","manual_page":null,"owner_lane":"research lane (ad6a2bd47d4a46105)","run_status":"NOT RUN","master_status":"PROPOSED / NOT RUN","updated":"2026-10-08T20:10:24.556Z","evidence_record":{"reason":"INT-18 (R1 integration gate): the gate's harness is the owner lane's (research lane (ad6a2bd47d4a46105)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"INT-18","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""}},"evidence_records":{"record":{"reason":"INT-18 (R1 integration gate): the gate's harness is the owner lane's (research lane (ad6a2bd47d4a46105)); not yet named in the map","at":"2026-10-08T20:10:24.556Z","method":"static","requirement_id":"INT-18","decision":"NOT RUN","reviewer":"","claim_impact":"","release_identity":{"commit":"","lockfile":"","binary":"","network_object":"","activation":"","profile_hashes":""},"in_progress":false}},"approvals":{"scope_approved":null,"implementation_complete":null,"evidence_reproduced":null,"claim_authorised":null}}],"notes":[{"at":"2026-10-08T20:10:24.874Z","text":"REC-01 (the master edition's one unresolved interpretation, finality pause-only healing: R1's I03 stale predicate against R2's F04 backfill caveat): closure evidence as the finality and node lanes recorded it on 8 October 2026: rule v4 at release-2.0.0-node 12424341's line, mode recovery by the founder's 19:57 ruling (the lock labelled recovery, never final), both real-node lines PASS tonight by the 6.7 pause criterion, FIN-02 PASS at 0218d6bf1 on the simulator half; status RUNNING until the beyond-window healing case with and without historical data is run natively (the node lane's case tomorrow). Applies to INT-05 and INT-06."}]},{"code":"VR","title":"VR: the token value and network leadership rules (normative, proposed, requiring ratification)","source":"docs/plans/igneum-2.0-master/token-value/rules-and-gates.json rules","gate":"Ratification by the founder and each rule's owner role","owner":"founder (ratification); the owner role per rule","fixtures":["F0"],"summary":"40 normative rules from Igneum 2.0 - Token Value & Network Leadership 1.0-proposed (snapshot 2026-10-08); Supplement to original master and 128-case test standard; not a price/rank guarantee","tests":[{"id":"VR-01","title":"One monetary contract","requirement":"Ratify one maximum-supply, subsidy and change-policy contract. No unexplained tail escape, automatic emergency mint or price-triggered issuance.","accept":"Ratify one maximum-supply, subsidy and change-policy contract. No unexplained tail escape, automatic emergency mint or price-triggered issuance.","evidence":"D01 decision, normative spec, executable supply tests and consistent public text.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Protocol + governance","owner_role":"Protocol + governance","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-02","title":"Independent supply accounting","requirement":"Make circulating, issued, burned, locked and maximum supply independently reproducible. Count bridges and wrappers without creating fictitious native supply.","accept":"Make circulating, issued, burned, locked and maximum supply independently reproducible. Count bridges and wrappers without creating fictitious native supply.","evidence":"Two independent supply calculations with exact integer reconciliation.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Protocol + measurement","owner_role":"Protocol + measurement","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-03","title":"Equal opportunity at launch","requirement":"No premine or privileged devnet conversion under the stated fair-launch policy. Publish efficient software and launch conditions before activation.","accept":"No premine or privileged devnet conversion under the stated fair-launch policy. Publish efficient software and launch conditions before activation.","evidence":"Genesis audit, launch rehearsal, insider disclosures and public release history.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Release + ecosystem","owner_role":"Release + ecosystem","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-04","title":"No artificial return promise","requirement":"Do not advertise guaranteed appreciation, passive returns without necessary work, a redemption floor or electricity-backed value.","accept":"Do not advertise guaranteed appreciation, passive returns without necessary work, a redemption floor or electricity-backed value.","evidence":"Product terms, source of rewards and public-claim review.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Governance + counsel","owner_role":"Governance + counsel","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-05","title":"Fund necessary security","requirement":"Model miners, internal provers, minimum validators and maintenance separately through declining issuance. No assumption that an external sale automatically funds all roles.","accept":"Model miners, internal provers, minimum validators and maintenance separately through declining issuance. No assumption that an external sale automatically funds all roles.","evidence":"Role-by-role cash flow, adverse scenarios and committed initial resources.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Economics + protocol","owner_role":"Economics + protocol","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-06","title":"Honest rule change","requirement":"Publish rationale, impact, adoption path and compatibility limits before a material monetary change. Do not pretend software can prevent all future voluntary forks.","accept":"Publish rationale, impact, adoption path and compatibility limits before a material monetary change. Do not pretend software can prevent all future voluntary forks.","evidence":"Versioned proposals, reviewer comments, adoption and dissent documentation.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Protocol + governance","owner_role":"Protocol + governance","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-07","title":"Transparent fee routing","requirement":"Every fee, burn, operator payment and optional Labs charge has an explicit source and recipient. No new team tax hidden in a commercial label.","accept":"Every fee, burn, operator payment and optional Labs charge has an explicit source and recipient. No new team tax hidden in a commercial label.","evidence":"Executable fee tests and reconciliation to invoices/receipts.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Economics + protocol","owner_role":"Economics + protocol","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-08","title":"Separate value and money flows","requirement":"Distinguish job turnover, fees, operator income, Labs income, token holdings and market value. Do not count the same payment or saving twice.","accept":"Distinguish job turnover, fees, operator income, Labs income, token holdings and market value. Do not count the same payment or saving twice.","evidence":"Reconciled flow diagram and reproducible metric definitions.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Economics + measurement","owner_role":"Economics + measurement","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-09","title":"Accessible hardware economics","requirement":"Fix the reference cohort and scenarios in advance. Allow the strongest feasible programmable multi-epoch specialist, including sunk development and alternative memory.","accept":"Fix the reference cohort and scenarios in advance. Allow the strongest feasible programmable multi-epoch specialist, including sunk development and alternative memory.","evidence":"Approved original GPU/ADV/ROT/ECO profiles and independent review.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"GPU + hardware reviewer","owner_role":"GPU + hardware reviewer","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-10","title":"Mandatory correct proofs","requirement":"All activated proof decisions must bind their actual statement, kind and verifier independent of cache history. Missing trusted infrastructure must not disable enforcement.","accept":"All activated proof decisions must bind their actual statement, kind and verifier independent of cache history. Missing trusted infrastructure must not disable enforcement.","evidence":"Native warm/cold/order/restart tests and positive/negative proof fixtures.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Protocol + proving","owner_role":"Protocol + proving","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-11","title":"Literal finality","requirement":"Define fault assumptions, authority continuity and recovery. Never present a weaker recovery certificate as the stronger irreversible guarantee.","accept":"Define fault assumptions, authority continuity and recovery. Never present a weaker recovery certificate as the stronger irreversible guarantee.","evidence":"Native multi-node boundary tests and consumer label checks.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Consensus + security","owner_role":"Consensus + security","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-12","title":"Retained operator authority","requirement":"Pooling variance or buying a service does not silently transfer keys, transaction selection or finality/governance control.","accept":"Pooling variance or buying a service does not silently transfer keys, transaction selection or finality/governance control.","evidence":"Key/template substitution tests and explicit delegation contracts.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Protocol + pool","owner_role":"Protocol + pool","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-13","title":"Safe custody and consent","requirement":"Private keys, spending limits, signing displays and recovery choices remain under explicit user authority. Defaults must not conceal broad powers.","accept":"Private keys, spending limits, signing displays and recovery choices remain under explicit user authority. Defaults must not conceal broad powers.","evidence":"Wallet security review and independent user/recovery exercises.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Wallet + security","owner_role":"Wallet + security","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-14","title":"Portable verification","requirement":"Balances and receipts authenticate their roots, successful outcome and trust anchors. Necessary reconstruction data has a documented availability path.","accept":"Balances and receipts authenticate their roots, successful outcome and trust anchors. Necessary reconstruction data has a documented availability path.","evidence":"Independent receipt/client verification with hostile inputs.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Wallet + protocol","owner_role":"Wallet + protocol","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-15","title":"Price real resources","requirement":"Bound execution, verification and storage costs. Sponsored transactions have limits. No deliberate congestion solely to increase a token metric.","accept":"Bound execution, verification and storage costs. Sponsored transactions have limits. No deliberate congestion solely to increase a token metric.","evidence":"Minimum-node tests and fee/sponsor-abuse scenarios.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Protocol + economics","owner_role":"Protocol + economics","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-16","title":"No fragile stable-value promise","requirement":"Any stable-value product has explicit issuer, reserve/redemption rights, permissions and risks. No native-backed peg used merely to manufacture demand.","accept":"Any stable-value product has explicit issuer, reserve/redemption rights, permissions and risks. No native-backed peg used merely to manufacture demand.","evidence":"Independent diligence, risk limits and legal assessment before release.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Application + counsel","owner_role":"Application + counsel","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-17","title":"Optional bounded bridges","requirement":"Bridge exposure is separate from core security. No bridge is mandatory for genesis or allowed to redefine base-chain finality after a loss.","accept":"Bridge exposure is separate from core security. No bridge is mandatory for genesis or allowed to redefine base-chain finality after a loss.","evidence":"External security review, loss limits and failure/isolation tests.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Application + security","owner_role":"Application + security","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-18","title":"Open work settlement","requirement":"Jobs bind program, inputs, result, verifier, deadline and payment. Gateways are replaceable and Labs approval is not required for ordinary work.","accept":"Jobs bind program, inputs, result, verifier, deadline and payment. Gateways are replaceable and Labs approval is not required for ordinary work.","evidence":"Independent request-to-paid-result test and state reconciliation.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Protocol + ecosystem","owner_role":"Protocol + ecosystem","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-19","title":"Obligation-based service bonds","requirement":"Deposits secure a specific obligation, not consensus influence. Size and failure conditions must preserve small-operator paths and handle collateral decline.","accept":"Deposits secure a specific obligation, not consensus influence. Size and failure conditions must preserve small-operator paths and handle collateral decline.","evidence":"Economic and adversarial reservation/default tests.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Economics + application","owner_role":"Economics + application","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-20","title":"Independent developer access","requirement":"Publish complete standards, fixtures and tooling. Grants reward useful maintained deliverables rather than deployments or price effects.","accept":"Publish complete standards, fixtures and tooling. Grants reward useful maintained deliverables rather than deployments or price effects.","evidence":"Unaffiliated integration and maintenance evidence.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Ecosystem","owner_role":"Ecosystem","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-21","title":"Committed maintenance","requirement":"Essential maintenance and audits need a funded runway with stress accounting, distinct from hoped-for appreciation or fundraising.","accept":"Essential maintenance and audits need a funded runway with stress accounting, distinct from hoped-for appreciation or fundraising.","evidence":"At least approved P13 runway, commitments and role costs.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Maintainers + finance","owner_role":"Maintainers + finance","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-22","title":"Founder independence","requirement":"Routine block, job, payment and recovery paths must not require a founder credential or undocumented manual action.","accept":"Routine block, job, payment and recovery paths must not require a founder credential or undocumented manual action.","evidence":"Real founder-absence exercises and intervention ledger.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Operations + independent reviewer","owner_role":"Operations + independent reviewer","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-23","title":"Measure effective control","requirement":"Report operator, pool, hosting, service and client dependencies with attribution limits. Keys and addresses are not people.","accept":"Report operator, pool, hosting, service and client dependencies with attribution limits. Keys and addresses are not people.","evidence":"Dependency/control map with uncertainty and removal experiments.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Measurement + operations","owner_role":"Measurement + operations","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-24","title":"Reproducible secure release","requirement":"Pin source, binaries, rules, guests/keys and activation. Provenance is necessary but not sufficient for correctness.","accept":"Pin source, binaries, rules, guests/keys and activation. Provenance is necessary but not sufficient for correctness.","evidence":"Independent builds, artifact verification and scoped review.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Release + security","owner_role":"Release + security","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-25","title":"Consent-preserving incident response","requirement":"Separate public/developer authority. Urgency must not silently override installation or grant arbitrary execution. Disclose material incidents and retest.","accept":"Separate public/developer authority. Urgency must not silently override installation or grant arbitrary execution. Disclose material incidents and retest.","evidence":"Compromised-key, unsafe-update and recovery drills.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Release + operations","owner_role":"Release + operations","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-26","title":"Honest access and liquidity","requirement":"Use functional deposits/withdrawals and executable depth, not ticker count or fabricated volume. Never restrict exit to simulate value.","accept":"Use functional deposits/withdrawals and executable depth, not ticker count or fabricated volume. Never restrict exit to simulate value.","evidence":"Independent access-route and two-sided liquidity observations.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Ecosystem + measurement","owner_role":"Ecosystem + measurement","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-27","title":"Transparent treasury relationships","requirement":"Disclose material grants, insider holdings, inventory and market-making mandates. No wash trades or hidden price-support promises.","accept":"Disclose material grants, insider holdings, inventory and market-making mandates. No wash trades or hidden price-support promises.","evidence":"Mandate register, reconciled accounts and conflict policy.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Treasury + counsel","owner_role":"Treasury + counsel","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-28","title":"Auditable metrics","requirement":"Publish definitions, raw/adjusted views, sampling, attribution uncertainty and missing data. No subsidy-hidden demand or censored failed jobs.","accept":"Publish definitions, raw/adjusted views, sampling, attribution uncertainty and missing data. No subsidy-hidden demand or censored failed jobs.","evidence":"Data lineage, conservation checks and independent replay.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Measurement","owner_role":"Measurement","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-29","title":"Fair comparison universe","requirement":"Define eligible peers and exclusions before observing rankings. Include qualifying new entrants and preserve unknown values.","accept":"Define eligible peers and exclusions before observing rankings. Include qualifying new entrants and preserve unknown values.","evidence":"Independent peer census and versioned comparison protocol.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Measurement + external panel","owner_role":"Measurement + external panel","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-30","title":"Scoped claims only","requirement":"Every leadership claim names its metric, universe, period and limits. A measured price rank does not certify overall safety or future leadership.","accept":"Every leadership claim names its metric, universe, period and limits. A measured price rank does not certify overall safety or future leadership.","evidence":"Claim register with evidence, expiry and legal signoff.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Governance + counsel","owner_role":"Governance + counsel","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-31","title":"Evidence before pass","requirement":"Pre-register thresholds; missing inputs block gates; corrections preserve failed results. No aggregate score can waive core safety or economic failure.","accept":"Pre-register thresholds; missing inputs block gates; corrections preserve failed results. No aggregate score can waive core safety or economic failure.","evidence":"Frozen test charter and versioned evidence packets.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Independent acceptance panel","owner_role":"Independent acceptance panel","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-32","title":"Real adoption","requirement":"Measure unaffiliated retained users and useful repeat activity with incentives identified. Do not require buying IGN to participate in a study.","accept":"Measure unaffiliated retained users and useful repeat activity with incentives identified. Do not require buying IGN to participate in a study.","evidence":"Cohort definitions, attrition, usage and subsidy audit.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Product + ecosystem","owner_role":"Product + ecosystem","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-33","title":"AI earns admission","requirement":"AI is an optional workload category, not a guaranteed-margin network identity. Price full costs and adverse demand before expansion.","accept":"AI is an optional workload category, not a guaranteed-margin network identity. Price full costs and adverse demand before expansion.","evidence":"Workload-specific benchmark, repeat demand and verification policy.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Compute + economics","owner_role":"Compute + economics","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-34","title":"Bound agent spending","requirement":"Automated buyers have scoped budgets, permissions, expiry, revocation and logs. Untrusted prompts never alter base permissions.","accept":"Automated buyers have scoped budgets, permissions, expiry, revocation and logs. Untrusted prompts never alter base permissions.","evidence":"Prompt/input adversarial tests and payment-loss caps.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Application + security","owner_role":"Application + security","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-35","title":"Cryptographic migration readiness","requirement":"Maintain a full algorithm inventory and reviewed transition plan. No quantum-proof claim from one component or speculative attack date.","accept":"Maintain a full algorithm inventory and reviewed transition plan. No quantum-proof claim from one component or speculative attack date.","evidence":"Expert review, downgrade/migration tests and annual refresh.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Cryptography + protocol","owner_role":"Cryptography + protocol","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-36","title":"Separate proof, truth and privacy","requirement":"Execution validity does not establish real-world input truth, AI answer quality or confidentiality. State trust and data exposure for each service.","accept":"Execution validity does not establish real-world input truth, AI answer quality or confidentiality. State trust and data exposure for each service.","evidence":"Threat model and user-facing guarantee audit.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Security + product","owner_role":"Security + product","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-37","title":"Scale within verification budgets","requirement":"Throughput, data and state growth must preserve the declared minimum-node and reconstruction capabilities. Reprice security after fee compression.","accept":"Throughput, data and state growth must preserve the declared minimum-node and reconstruction capabilities. Reprice security after fee compression.","evidence":"Cold-path capacity, bootstrap, pruning and provider-removal tests.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Protocol + operations","owner_role":"Protocol + operations","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-38","title":"Honest energy accounting","requirement":"Report complete-system energy and role allocation. Avoid double-counting joint work or making unsupported carbon/marginal-transaction claims.","accept":"Report complete-system energy and role allocation. Avoid double-counting joint work or making unsupported carbon/marginal-transaction claims.","evidence":"Calibrated wall tests and documented environmental methodology.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"GPU + measurement","owner_role":"GPU + measurement","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-39","title":"Activity-specific legal approval","requirement":"Obtain counsel review for actual audiences and activities. No-presale, fair-launch or decentralised labels are not blanket legal exemptions.","accept":"Obtain counsel review for actual audiences and activities. No-presale, fair-launch or decentralised labels are not blanket legal exemptions.","evidence":"Jurisdiction/activity matrix and approved external communications.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Counsel","owner_role":"Counsel","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"},{"id":"VR-40","title":"No indispensable administrator","requirement":"A useful company, token holder, pool, AI agent or funding body receives no hidden power over balances, issuance or canonical history.","accept":"A useful company, token holder, pool, AI agent or funding body receives no hidden power over balances, issuance or canonical history.","evidence":"Authority inventory, isolation tests and independent operation.","priority":"P0","profile":"P00","cadence":"Once, at ratification; again on any change of the rule","method":"Ratification","source":["TV"],"gate":"Ratified","owner":"Protocol + governance","owner_role":"Protocol + governance","manual_page":null,"rule_status":"PROPOSED - REQUIRES RATIFICATION","run_status":"NOT RUN"}]},{"code":"TV","title":"TV: the token value and network leadership gates (proposed; no gate executed)","source":"docs/plans/igneum-2.0-master/token-value/rules-and-gates.json gates","gate":"Token value gates closed","owner":"the owner role per gate","fixtures":["F0"],"summary":"32 gates from Igneum 2.0 - Token Value & Network Leadership 1.0-proposed (snapshot 2026-10-08); scope CORE, CAPABILITY IF ENABLED or LEADERSHIP CLAIM as the file gives it; Supplement to original master and 128-case test standard; not a price/rank guarantee","tests":[{"id":"TV-01","title":"Resolve and freeze the monetary contract","setup":"Supply, tail, fee and recovery documents plus exact proposed release.","procedure":"Reconcile D01-D06 with protocol/economic/counsel review. Freeze thresholds and all interfaces before confirmatory tests.","accept":"No conflicting normative policy; every material choice has a signed rationale, version, adoption path and tests. Unresolved core choice is BLOCKED.","evidence":"Decision log, signed specification, release manifest, test charter.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","source":["TV"],"gate":"Token value gates closed","owner":"Protocol + independent panel","owner_role":"Protocol + independent panel","manual_page":null,"scope":"CORE","inherited_links":["GOV","P00","VR-01","VR-06"],"threshold_status":"PROPOSED - FREEZE BEFORE TEST","run_status":"NOT RUN","master_status":"NOT RUN"},{"id":"TV-02","title":"Reproduce complete supply accounting","setup":"Two independent implementations; genesis and representative boundary/reorg fixtures.","procedure":"Recompute issued, paid, burned, locked and outstanding amounts through subsidy transitions, rollback/replay and duplicate records.","accept":"Exact integer agreement; no unaccounted creation, duplicate supply or cap breach under the ratified policy. Restricted wrappers are not extra native supply.","evidence":"Machine-readable ledgers, vectors, independent signoff.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","source":["TV"],"gate":"Token value gates closed","owner":"Protocol + measurement","owner_role":"Protocol + measurement","manual_page":null,"scope":"CORE","inherited_links":["EVM","INC","GOV","VR-02"],"threshold_status":"PROPOSED - FREEZE BEFORE TEST","run_status":"NOT RUN","master_status":"NOT RUN"},{"id":"TV-03","title":"Fair launch and early distribution","setup":"Public binaries, source, mining modes, launch notice and insider inventory.","procedure":"Rehearse from clean outsider machines; audit genesis allocations and devnet balances; simulate arrival times under alternative emission schedules.","accept":"Zero undisclosed allocation or privileged conversion; approved notice/support window and cohort pass; distribution analysis includes delayed entrants without guaranteeing equal ownership.","evidence":"Genesis report, dated releases, disclosure register, simulation inputs.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","source":["TV"],"gate":"Token value gates closed","owner":"Release + ecosystem","owner_role":"Release + ecosystem","manual_page":null,"scope":"CORE","inherited_links":["GPU","OPS","GOV","VR-03"],"threshold_status":"PROPOSED - FREEZE BEFORE TEST","run_status":"NOT RUN","master_status":"NOT RUN"},{"id":"TV-04","title":"Security budget without price rescue","setup":"Ratified reward/fee rules; role costs; horizons 1, 5, 10 and 20 years.","procedure":"Model falling issuance, fee volatility and .25x/1x/4x/10x revenue, zero external jobs and -90% price. Separate role receipts and funding.","accept":"Approved viable scenarios fund minimum required roles without hidden issuance or assumed appreciation; failure regions stated. Collapse scenarios need safe behaviour, not universal profit.","evidence":"Reproducible cash-flow model, assumptions, independent review.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","source":["TV"],"gate":"Token value gates closed","owner":"Economics + protocol","owner_role":"Economics + protocol","manual_page":null,"scope":"CORE","inherited_links":["ECO","INC","P12","P13","VR-05"],"threshold_status":"PROPOSED - FREEZE BEFORE TEST","run_status":"NOT RUN","master_status":"NOT RUN"},{"id":"TV-05","title":"Strongest surviving specialist","setup":"Pinned candidate/cohort; cheapest supported physical designs including SRAM/hybrid.","procedure":"Apply original ADV/GPU/ECO profiles with multi-epoch survival and development sunk. Reprice alternative state and memory implementations.","accept":"All approved core energy and total-cost bounds pass with uncertainty; no unresolved feasible dominating design. Unknown feasibility blocks the broad claim.","evidence":"Design files, wall results, sensitivity model, two independent hardware opinions.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","source":["TV"],"gate":"Token value gates closed","owner":"Hardware reviewer + economics","owner_role":"Hardware reviewer + economics","manual_page":null,"scope":"CORE","inherited_links":["ADV","GPU","ECO","P04","P12","INT-18","VR-09"],"threshold_status":"PROPOSED - FREEZE BEFORE TEST","run_status":"NOT RUN","master_status":"NOT RUN"},{"id":"TV-06","title":"Every fee and payment reconciles","setup":"Native rules, payer contract and optional Labs/service invoices.","procedure":"Execute gas, proof, developer, pool, burn, sponsor and refund paths, including rounding, abort, retry and zero-demand cases.","accept":"No unexplained recipient or double count; statements/invoices match exact contract outcomes. Network turnover never labelled Labs revenue or permanent holding demand.","evidence":"Flow ledger, fixtures, invoice examples, reviewed public fee table.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","source":["TV"],"gate":"Token value gates closed","owner":"Economics + application","owner_role":"Economics + application","manual_page":null,"scope":"CORE","inherited_links":["EVM","INC","COM","VR-07","VR-08"],"threshold_status":"PROPOSED - FREEZE BEFORE TEST","run_status":"NOT RUN","master_status":"NOT RUN"},{"id":"TV-07","title":"Ownership-critical engineering closure","setup":"Original master findings mapped to current release with genuine proof fixtures.","procedure":"Run native cache-order, fail-closed activation, payout crash and finality tests; reproduce fixed cases in independent environments.","accept":"No unresolved critical/high finding or counterexample within the approved guarantee; all applicable original safety gates pass. Reproducing a defect is not closure.","evidence":"Native outputs, manifests, scoped audit, issue-by-issue closure.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","source":["TV"],"gate":"Token value gates closed","owner":"Protocol + independent security","owner_role":"Protocol + independent security","manual_page":null,"scope":"CORE","inherited_links":["ZKP","FIN","OPS","R2:F01-F04","R2:F12","VR-10","VR-11"],"threshold_status":"PROPOSED - FREEZE BEFORE TEST","run_status":"NOT RUN","master_status":"NOT RUN"},{"id":"TV-08","title":"Custody and recovery usability","setup":"Declared wallet/hardware combinations; 30 new participants, at least 15 non-miners.","procedure":"Perform receive, preview/sign, limit, recovery and revocation tasks with valueless funds; inject wrong network/address and malicious prompts.","accept":"Zero unauthorised transfer or secret disclosure; at least 90% complete the approved safe task without private help. Report confidence limitations and all failures.","evidence":"Task protocol, anonymised results, security review, recovery vectors.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","source":["TV"],"gate":"Token value gates closed","owner":"Wallet + independent users","owner_role":"Wallet + independent users","manual_page":null,"scope":"CORE","inherited_links":["UX","VER","P10","VR-13"],"threshold_status":"PROPOSED - FREEZE BEFORE TEST","run_status":"NOT RUN","master_status":"NOT RUN"},{"id":"TV-09","title":"Independently verifiable settlement","setup":"Proof/receipt client without Labs RPC; normal and recovery certificates.","procedure":"Verify successful/failed transfers, wrong asset/amount, stale roots, fake voter lists, invalid proofs and withheld data.","accept":"All invalid claims refused; valid ordinary transfers verify within approved resource limits; weaker recovery and unavailable data never shown as stronger finality.","evidence":"Offline fixtures, consumer traces and independent implementation.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","source":["TV"],"gate":"Token value gates closed","owner":"Wallet + consensus","owner_role":"Wallet + consensus","manual_page":null,"scope":"CORE","inherited_links":["VER","FIN","P08","VR-11","VR-14"],"threshold_status":"PROPOSED - FREEZE BEFORE TEST","run_status":"NOT RUN","master_status":"NOT RUN"},{"id":"TV-10","title":"Minimum-node and sponsored-use limits","setup":"Approved minimum validator and sponsor budgets under final workload.","procedure":"Run cold proof verification, expensive invalid inputs, state growth, paymaster drain attempts and overloaded bursts.","accept":"Original capacity/security profiles pass; budgets remain bounded; no proof skipped to catch up and no sponsor can spend outside authorised scope.","evidence":"Cold-path profiles, stress traces, sponsor negative tests.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","source":["TV"],"gate":"Token value gates closed","owner":"Protocol + application","owner_role":"Protocol + application","manual_page":null,"scope":"CORE","inherited_links":["CAP","EVM","ZKP","P07","P09","VR-15","VR-37"],"threshold_status":"PROPOSED - FREEZE BEFORE TEST","run_status":"NOT RUN","master_status":"NOT RUN"},{"id":"TV-11","title":"Pooled payments without authority loss","setup":"Independent pool/member clients and durable payment state.","procedure":"Inject key/template substitution, reauthorisation, crash/RPC ambiguity, receipt reorg and hostile bounded inputs.","accept":"No duplicate/lost liability or unauthorised authority change; member can verify delegated powers and change pools. Session resource limits hold.","evidence":"Ledger replay, signed work fixtures and pool removal test.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","source":["TV"],"gate":"Token value gates closed","owner":"Pool + independent operators","owner_role":"Pool + independent operators","manual_page":null,"scope":"CORE","inherited_links":["INT-03","INT-04","INT-15","INT-16","R2:F12-F13","VR-12"],"threshold_status":"PROPOSED - FREEZE BEFORE TEST","run_status":"NOT RUN","master_status":"NOT RUN"},{"id":"TV-12","title":"Reproducible and consented software","setup":"Release manifest, build dependencies, update keys and public installer.","procedure":"Two independent parties build/verify; simulate compromised key, stale package, rollback, urgency and missing fixtures.","accept":"No hidden consensus variation or arbitrary default remote control; update-off remains respected; mandatory unavailable fixtures block acceptance.","evidence":"Attestations, independent hashes, key drill, installer/ACL review.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","source":["TV"],"gate":"Token value gates closed","owner":"Release + independent security","owner_role":"Release + independent security","manual_page":null,"scope":"CORE","inherited_links":["OPS","GOV","R2:F03","R2:F14","VR-24","VR-25"],"threshold_status":"PROPOSED - FREEZE BEFORE TEST","run_status":"NOT RUN","master_status":"NOT RUN"},{"id":"TV-13","title":"Committed maintenance coverage","setup":"Costed roles, commitments and monthly cash dates.","procedure":"Audit at least 12 months of approved maintenance coverage; stress IGN-denominated resources and provider withdrawal.","accept":"Original P13 satisfied without counting future appreciation or unsigned pledges; essential functions have funded substitutes and explicit shortfall response.","evidence":"Contracts/grants or funding proof, stress cash flow, responsibility register.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","source":["TV"],"gate":"Token value gates closed","owner":"Maintainers + independent finance","owner_role":"Maintainers + independent finance","manual_page":null,"scope":"CORE","inherited_links":["ECO","OPS","P13","VR-21"],"threshold_status":"PROPOSED - FREEZE BEFORE TEST","run_status":"NOT RUN","master_status":"NOT RUN"},{"id":"TV-14","title":"Founder-absent operating exercise","setup":"Independent builds/operators; founder services, keys and manual help removed.","procedure":"Run 30 real days, then satisfy the original 90-day observation programme; cross boundaries, remove major providers and record all interventions.","accept":"Approved original independence/reliability gates pass; no unpublished founder action or privileged override. Simulated long partitions are labelled separately.","evidence":"Dependency map, availability logs, intervention and payer ledger.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","source":["TV"],"gate":"Token value gates closed","owner":"Independent operations panel","owner_role":"Independent operations panel","manual_page":null,"scope":"CORE","inherited_links":["OPS","FIN","LEAD","P11","P16","VR-22","VR-23"],"threshold_status":"PROPOSED - FREEZE BEFORE TEST","run_status":"NOT RUN","master_status":"NOT RUN"},{"id":"TV-15","title":"Governance and authority boundaries","setup":"Every control/activation threshold, treasury power and application admin interface.","procedure":"Exercise hostile coalitions, absent voters, old clients and compromised non-consensus keys; test refusal and recovery.","accept":"No actor gains undeclared issuance/balance/history authority. Every activation follows the ratified safe procedure; ambiguous threshold or recovery remains BLOCKED.","evidence":"Authority model, scenarios, native outcomes and independent review.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","source":["TV"],"gate":"Token value gates closed","owner":"Protocol + governance","owner_role":"Protocol + governance","manual_page":null,"scope":"CORE","inherited_links":["GOV","FIN","ROT","VR-06","VR-40"],"threshold_status":"PROPOSED - FREEZE BEFORE TEST","run_status":"NOT RUN","master_status":"NOT RUN"},{"id":"TV-16","title":"Two functional independent access routes","setup":"At least two unaffiliated custody/exchange/payment routes with disclosed shared infrastructure.","procedure":"Complete small controlled deposits, withdrawals, outage and reconciliation tests; identify actual custody and settlement dependencies.","accept":"Both settle correctly; neither is merely a front end to the same indispensable provider. Gaps and jurisdiction limits visible; no listing assumed from a logo.","evidence":"Settlement records, dependency map and third-party confirmation.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","source":["TV"],"gate":"Token value gates closed","owner":"Ecosystem + independent reviewer","owner_role":"Ecosystem + independent reviewer","manual_page":null,"scope":"CORE","inherited_links":["OPS","VER","VR-26"],"threshold_status":"PROPOSED - FREEZE BEFORE TEST","run_status":"NOT RUN","master_status":"NOT RUN"},{"id":"TV-17","title":"Supply-price-liquidity measurement","setup":"Frozen sources, price filters, circulating/free-float definitions and order-size bands.","procedure":"Collect 90 real days; independently replay supply and prices; measure both buy/sell execution costs and withdrawal availability.","accept":"At least 95% daily coverage; exact supply reconciliation; no fabricated missing data. Sparse liquidity invalidates broad liquidity claims, not automatically the arithmetic cap.","evidence":"Raw snapshots, methodology/code, gap ledger, audit.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","source":["TV"],"gate":"Token value gates closed","owner":"Measurement steward","owner_role":"Measurement steward","manual_page":null,"scope":"CORE","inherited_links":["LEAD","VR-02","VR-26","VR-28"],"threshold_status":"PROPOSED - FREEZE BEFORE TEST","run_status":"NOT RUN","master_status":"NOT RUN"},{"id":"TV-18","title":"Real versus incentivised demand","setup":"Customer/job/transaction definitions with privacy-respecting attribution and subsidy data.","procedure":"Reconcile raw/adjusted activity, self-dealing controls and incentives; test whether circular activity earns more than its irrecoverable cost.","accept":"All subsidies and known related activity separated; useful demand not inferred from gross volume alone; abusive incentive loop closed before scaling rewards.","evidence":"Accounting model, filter logic, sensitivity and independent replay.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","source":["TV"],"gate":"Token value gates closed","owner":"Economics + measurement","owner_role":"Economics + measurement","manual_page":null,"scope":"CORE","inherited_links":["COM","INC","VR-08","VR-28","VR-32"],"threshold_status":"PROPOSED - FREEZE BEFORE TEST","run_status":"NOT RUN","master_status":"NOT RUN"},{"id":"TV-19","title":"Independent developer adoption","setup":"Public kit and at least five unaffiliated developers with declared tasks.","procedure":"Build useful integrations without private dependencies; have two independent maintainers update the kit; record obstacles and adoption reason.","accept":"All declared core integration paths work; at least five usable integrations and two maintainer reproductions. Empty subsidised deployments do not qualify.","evidence":"Repos, task traces, user evidence and maintenance records.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","source":["TV"],"gate":"Token value gates closed","owner":"Ecosystem + external developers","owner_role":"Ecosystem + external developers","manual_page":null,"scope":"CORE","inherited_links":["EVM","COM","P14","VR-20"],"threshold_status":"PROPOSED - FREEZE BEFORE TEST","run_status":"NOT RUN","master_status":"NOT RUN"},{"id":"TV-20","title":"Programmable payment acceptance","setup":"Versioned library, independent application, user/sponsor limits and receipt path.","procedure":"Execute simple/conditional/recurring payments, revocations, expiry, failed outcome and duplicate invoice cases.","accept":"No unauthorised spend or double settlement; successful transfer independently evidenced; subjective conditions disclose adjudicator/trust.","evidence":"Contracts, negative vectors, user task record, security review.","priority":"P1","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","source":["TV"],"gate":"Token value gates closed","owner":"Application + wallet","owner_role":"Application + wallet","manual_page":null,"scope":"PAYMENT CAPABILITY","inherited_links":["EVM","VER","UX","VR-13","VR-15"],"threshold_status":"PROPOSED - FREEZE BEFORE TEST","run_status":"NOT RUN","master_status":"NOT RUN"},{"id":"TV-21","title":"Useful paid proof demand","setup":"Exact workload and final hardware path; three unrelated buyers and approved COM profile.","procedure":"Observe repeat purchases under original P14/P16 conditions, full job outcomes and operator/service costs.","accept":"All applicable COM targets met without hidden reimbursement. Queue expiry not counted as success. A monetary-only scope cannot claim this gate passed by exclusion.","evidence":"Buyer evidence, cost ledger, all-job traces and independent review.","priority":"P1","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","source":["TV"],"gate":"Token value gates closed","owner":"Proving + independent customers","owner_role":"Proving + independent customers","manual_page":null,"scope":"PAID WORK CAPABILITY","inherited_links":["COM","CAP","P14","P16","R2:F08","VR-18"],"threshold_status":"PROPOSED - FREEZE BEFORE TEST","run_status":"NOT RUN","master_status":"NOT RUN"},{"id":"TV-22","title":"Replaceable work-market gateway","setup":"Two independent gateway implementations and job/settlement specification.","procedure":"Create jobs, switch providers/gateways, fail one service and deliver the same objective result using public inputs.","accept":"Correct payment/result without Labs approval; no concealed central dispatcher or irreversible dependency. External-chain receipts labelled separately.","evidence":"Gateway traces, escrow reconciliation, dependency-removal run.","priority":"P1","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","source":["TV"],"gate":"Token value gates closed","owner":"Application + independent operators","owner_role":"Application + independent operators","manual_page":null,"scope":"WORK MARKET CAPABILITY","inherited_links":["OPS","COM","VR-08","VR-18"],"threshold_status":"PROPOSED - FREEZE BEFORE TEST","run_status":"NOT RUN","master_status":"NOT RUN"},{"id":"TV-23","title":"Obligation-based deposits","setup":"Proposed bond/default contract and volatile-collateral scenarios.","procedure":"Test reservation abandonment, invalid inputs, network pause, -90% collateral value and malicious claims.","accept":"No consensus influence bought; default reason objective; compensation limits explicit; viable small-operator participation and approved risk bounds.","evidence":"Adversarial model, state tests, risk/legal review.","priority":"P1","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","source":["TV"],"gate":"Token value gates closed","owner":"Economics + security","owner_role":"Economics + security","manual_page":null,"scope":"SERVICE BONDS IF ENABLED","inherited_links":["INC","ECO","VR-19"],"threshold_status":"PROPOSED - FREEZE BEFORE TEST","run_status":"NOT RUN","master_status":"NOT RUN"},{"id":"TV-24","title":"AI earns a separate commercial case","setup":"One bounded model/job, provider hardware, verification tier and licences.","procedure":"Benchmark full delivery vs actual alternatives; test 90% lower unit prices, demand collapse, private-data exposure and substituted models.","accept":"Approved service economics and buyer gates pass; correctness/truth/privacy distinguished. No native price or perpetual yield assumption.","evidence":"End-to-end costs, repeat demand, licence/threat review.","priority":"P1","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","source":["TV"],"gate":"Token value gates closed","owner":"Compute + independent reviewer","owner_role":"Compute + independent reviewer","manual_page":null,"scope":"AI IF ENABLED","inherited_links":["COM","CAP","VR-33","VR-36"],"threshold_status":"PROPOSED - FREEZE BEFORE TEST","run_status":"NOT RUN","master_status":"NOT RUN"},{"id":"TV-25","title":"Bounded machine purchasing","setup":"Approved account/paymaster permissions and chosen x402/agent interfaces.","procedure":"Inject hostile outputs/prompts, replayed requests, recursive spending, revoked permissions and gateway failure.","accept":"Spend never exceeds authorised destination/time/amount scope; no instruction changes authority. Draft standard support is described accurately.","evidence":"Property tests, loss-cap proof, revocation/audit logs.","priority":"P1","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","source":["TV"],"gate":"Token value gates closed","owner":"Application + security","owner_role":"Application + security","manual_page":null,"scope":"AGENTS IF ENABLED","inherited_links":["EVM","UX","VR-34","VR-40"],"threshold_status":"PROPOSED - FREEZE BEFORE TEST","run_status":"NOT RUN","master_status":"NOT RUN"},{"id":"TV-26","title":"Cryptographic migration readiness","setup":"Complete key/proof/transport/update inventory and external cryptographic review.","procedure":"Rehearse versioned signature/proof migration, downgrade/replay, mixed clients, inactive owners and minimum-node overhead.","accept":"No unreviewed assumption or automatic confiscation; migration can be explained and tested. No absolute quantum-proof claim or attack date inferred.","evidence":"Inventory, expert report, migration vectors, annual schedule.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","source":["TV"],"gate":"Token value gates closed","owner":"Cryptography + protocol","owner_role":"Cryptography + protocol","manual_page":null,"scope":"CORE","inherited_links":["ZKP","GOV","OPS","VR-35"],"threshold_status":"PROPOSED - FREEZE BEFORE TEST","run_status":"NOT RUN","master_status":"NOT RUN"},{"id":"TV-27","title":"Private data and oracle assurance","setup":"Per-product claims, input trust sources, data-retention and execution model.","procedure":"Use forged data, hostile providers, telemetry leakage, unsupported attestation and false-but-correctly-executed AI outputs.","accept":"No claim exceeds tested guarantee; secrets/data protected to stated model; unauthenticated inputs not represented as objective truth.","evidence":"Threat model, exposure tests, labelled user flows.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","source":["TV"],"gate":"Token value gates closed","owner":"Security + product","owner_role":"Security + product","manual_page":null,"scope":"CORE","inherited_links":["VER","ZKP","UX","VR-36"],"threshold_status":"PROPOSED - FREEZE BEFORE TEST","run_status":"NOT RUN","master_status":"NOT RUN"},{"id":"TV-28","title":"Stable assets and bridge isolation","setup":"Only if enabled: issuer/bridge design, redemption rights, trust anchors and approved value caps.","procedure":"Test reserve/redemption failure, stale oracle, invalid/recovery certificates, contract compromise and emergency shutdown.","accept":"No hidden base-chain guarantee or forced reversal of final history; independent audit, conservative exposure and counsel approval.","evidence":"Risk dossier, scenarios, disclosure, independent tests.","priority":"P1","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","source":["TV"],"gate":"Token value gates closed","owner":"Application + security + counsel","owner_role":"Application + security + counsel","manual_page":null,"scope":"STABLE/BRIDGE IF ENABLED","inherited_links":["VER","FIN","VR-16","VR-17"],"threshold_status":"PROPOSED - FREEZE BEFORE TEST","run_status":"NOT RUN","master_status":"NOT RUN"},{"id":"TV-29","title":"Growth without inaccessible verification","setup":"Declared minimum node, projected data growth and alternative scaling design.","procedure":"Run cold/worst-case validation, state/pruning/bootstrap, censorship and aggregation withdrawal; model 10x/100x growth and fee compression.","accept":"Original minimum-node/security bounds hold; required data remains obtainable; security funding restated for changed fee routes.","evidence":"Capacity/availability results and revised economics.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","source":["TV"],"gate":"Token value gates closed","owner":"Protocol + operations","owner_role":"Protocol + operations","manual_page":null,"scope":"CORE","inherited_links":["CAP","ECO","VER","VR-37"],"threshold_status":"PROPOSED - FREEZE BEFORE TEST","run_status":"NOT RUN","master_status":"NOT RUN"},{"id":"TV-30","title":"Energy and claims discipline","setup":"Calibrated whole-system metering and workload allocation protocol.","procedure":"Measure mining, proving, mixed/time-shared operation, setup/recovery and unsuccessful work; review environmental text.","accept":"No double-counted savings; original meter tolerances satisfied; no marginal-energy/carbon claim beyond method.","evidence":"Raw meter traces, job ledger, method and external review.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","source":["TV"],"gate":"Token value gates closed","owner":"GPU + measurement","owner_role":"GPU + measurement","manual_page":null,"scope":"CORE","inherited_links":["GPU","CAP","P02","VR-38"],"threshold_status":"PROPOSED - FREEZE BEFORE TEST","run_status":"NOT RUN","master_status":"NOT RUN"},{"id":"TV-31","title":"Public-claim and activity review","setup":"Actual jurisdiction, audience, service, token-distribution and promotion plans.","procedure":"Counsel assesses applicable routes and reviews each value/rank/return/security assertion against evidence.","accept":"Written activity-specific clearance and approved wording; no future-value assertion in a covered MiCA white paper; no blanket exemption inferred from mining.","evidence":"Legal decision matrix, claim register, review dates.","priority":"P0","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","source":["TV"],"gate":"Token value gates closed","owner":"Qualified counsel","owner_role":"Qualified counsel","manual_page":null,"scope":"CORE","inherited_links":["GOV","LEAD","VR-30","VR-39"],"threshold_status":"PROPOSED - FREEZE BEFORE TEST","run_status":"NOT RUN","master_status":"NOT RUN"},{"id":"TV-32","title":"Observed leadership, not a roadmap certificate","setup":"Approved peer universe; all applicable mandatory gates; stable release and 90-day observation.","procedure":"Run original P15/P16 comparisons and independently replay scoped rank data. Test changing peer/exclusion assumptions and missing data.","accept":"Contender requires original criteria; market-cap first requires highest 90-day median, 95% coverage; sustained daily-first convention also needs 80% of covered days. Never certify overall best from price alone.","evidence":"Independent panel report, full methods/data, scope and expiry of claim.","priority":"P1","profile":"P00","cadence":"Every release candidate","method":"Automated + independent review","source":["TV"],"gate":"Token value gates closed","owner":"Independent acceptance panel","owner_role":"Independent acceptance panel","manual_page":null,"scope":"LEADERSHIP CLAIM","inherited_links":["LEAD","P15","P16","VR-29","VR-30","VR-31"],"threshold_status":"PROPOSED - FREEZE BEFORE TEST","run_status":"NOT RUN","master_status":"NOT RUN"}],"notes":[{"at":"2026-10-09T08:13:51.136Z","text":"Counting note (main's order, 9 October 2026, by 11:00 UK): the VR rules (40) and TV gates (32) are a supplemental layer over the master's 128 cases, the 18 integration gates and the 44 review regressions, never added to them as independent evidence; no TV gate has executed; every VR rule is PROPOSED and requires ratification by the founder and its owner role; the decisions D01 to D06 are UNAPPROVED, the founder's."}]}],"profiles":{"P00":{"title":"Frozen scope and approval","requirements":["Approve the release manifest, supported roles, numerical profiles, mandatory scenarios, trust/fault model, workload W, adapters and claims before confirmatory tests. Unknown values are BLOCKED, not defaults.","Core safety and authentication invariants admit no waiver. Proposed performance or commercial targets may be replaced only before the confirmatory run, with an independent rationale and a versioned public scope.","After a failure, weakening a target creates a different claim and requires a new assessment. Preserve all failed runs; do not average a blocker away."],"status":"PROPOSED - REQUIRES APPROVAL"},"P01":{"title":"Correctness and negative-test depth","requirements":["Zero observed invalid acceptance, unauthorised signature, conflicting finality within assumptions, duplicated reward or unexplained cross-backend state/hash disagreement.","Minimum proposed campaign: 1,000,000 full-hash vectors per supported backend across all families, plus at least 10,000 malformed/boundary cases per relevant parser or binding class. Include exhaustive small-domain cases and historical regressions.","All prescribed critical mutants must be detected. This sampling target is not a bound on cryptographic failure probability and does not replace independent reasoning about soundness or safety."],"status":"PROPOSED - REQUIRES APPROVAL"},"P02":{"title":"Hardware coverage and reproducibility","requirements":["At least 12 physical retail configurations: at least 3 NVIDIA, 3 AMD and 2 Apple configurations, at least two discrete-GPU generations, an advertised 8 GB mining tier and 12 GB proving tiers where claimed. Record usable, not nominal, memory.","Declare a competitive core of at least 6 configurations spanning every advertised vendor and at least two discrete generations before optimisation. The wider cohort remains mandatory for access and economic tests; it cannot be silently dropped.","Use 5 paired 30-minute steady-state runs per primary cell after at least 15 minutes of warm-up and a stable temperature trend. Calibrated wall meter uncertainty must be at most 2%. Run a 7-day soak on representative low/mid/high tiers.","Three unaffiliated operators participate; every competitive-core cell is reproduced by at least two. Identical-SKU energy/accepted-work results must agree within 5% after declared environment corrections; unexplained variance blocks the headline."],"status":"PROPOSED - REQUIRES APPROVAL"},"P03":{"title":"Candidate improvement and honest-card budget","requirements":["For production candidate changes, per mandatory GPU cell: no more than 5% increase in joules per accepted work and no more than 2% decrease in accepted throughput versus the paired tuned baseline. Absolute safety limits always apply.","G2 requires at least a 10% reduction in the strongest evaluated specialist advantage after redesign, outside the declared measurement/model uncertainty, while meeting those budgets. A failed experiment is not a successful upgrade.","Existing clock-lock savings belong in the baseline. Long programs cannot pass by adding enough equally costly work to both devices to improve a ratio while materially worsening honest operation."],"status":"PROPOSED - REQUIRES APPROVAL"},"P04":{"title":"Scoped specialist-competition target","requirements":["Define R_E as GPU wall joules per accepted work divided by the lowest credible complete-system specialist joules for that same work. The proposed target is R_E at most 1.5 for every competitive-core cell at the same node and one node ahead.","Evaluate at least three materially distinct specialist architectures, with one programmable multi-family design, and a second independent reviewer. Include shared/reduced memory, hybrid execution, selective participation and realistic power/host costs.","Publish two-node-ahead and modular/reused-IP stress cases; they must satisfy the predeclared P12 economic envelope. No universal ceiling for unknown future hardware is claimed. Report model bounds separately from statistical confidence.","A lower-bound specialist estimate, not a convenient average or a deliberately constrained reference architecture, drives the conservative comparison. Undefined or unbounded decision-critical assumptions make the result BLOCKED."],"status":"PROPOSED - REQUIRES APPROVAL"},"P05":{"title":"Measurement and inference protocol","requirements":["Pre-register primary metrics, cohorts, holdout seeds, run order, exclusions and analysis before confirmation. Keep tuning/training runs separate from holdout runs.","Use independent runs/operators as measurement units. Report point estimates, two-sided 95% measurement intervals and absolute sample counts; handle time-series dependence with a declared block or run-level method.","Apply conservative uncertainty to pass decisions. A confidence interval around measured GPU energy does not capture unknown ASIC architectures; model parameter ranges and expert judgement must be reported as such.","Never compare raw hashes per second across different algorithms. Do not transform a five-year scenario sweep into a probability of chip arrival or a guarantee of future profitability."],"status":"PROPOSED - REQUIRES APPROVAL"},"P06":{"title":"Memory and support policy","requirements":["All advertised role/configuration combinations must finish without OOM, corruption or unsafe fallback. Publish a component memory budget, including display/OS, driver, miner, prover, aggregation and epoch construction.","Proposed support horizon: at least 24 months of known schedule compatibility for the advertised entry tier, unless a narrower horizon is prominently approved before sale or launch. Removal changes the claim and must pass ECO-07.","Treat 5.5 / 8.5 / 11.5 GiB as source candidates, not imposed final rules. Simultaneous operation, eviction and time-sharing are distinct advertised modes with separately measured cost."],"status":"PROPOSED - REQUIRES APPROVAL"},"P07":{"title":"Proof service capacity and fairness","requirements":["Freeze W as a meaningful workload mix, input sizes, proof format, fleet and requests/hour. Primary proposed target: 72 hours at W, plus 24 hours at 1.2W; at least 99.5% accepted jobs delivered valid within the contracted deadline.","Default delivery targets for the declared internal reference workload: p95 at most 60 seconds and p99 at most 120 seconds from input-ready assignment through verified delivery. Also publish request-to-delivery including input wait; no claim may omit that delay.","Request-to-delivery p99 must meet the separately approved customer deadline. Payment p99 must be at most 10 minutes after verified payable eligibility, with chain finality time reported separately. These defaults do not override a stricter contract.","No statistically supported positive backlog drift at steady load, no silent drops; after 2W for 15 minutes, drain excess backlog within 30 minutes of return to W. Report rejected demand and accepted-job success separately.","Proposed advertised-tier fairness: at least 90% timely valid assigned completions are paid under the approved rules; avoidable duplicate/retry work is at most 10% of total work. Reassignment policy must bound abandonment without promising every assignment a reward."],"status":"PROPOSED - REQUIRES APPROVAL"},"P08":{"title":"Fault assumptions and recovery","requirements":["F0 must state the exact safety threshold, quorum and authority-transition rule; the synchrony/participation assumptions for liveness; trusted inputs; and clock/expiry semantics. This manual supplies no substitute consensus rule.","Exercise threshold-minus/at/plus cases, the 40/40/20 partition fixture, signing outages and 31/35/60/90 logical-day expiry cases. Preserve safety when liveness assumptions fail; do not demand finality from an unavailable quorum.","After assumptions and input availability are restored: service replacement within 10 minutes and deterministic network convergence within 30 minutes on the reference topology. Different certified bounds must be approved beforehand.","Accelerated-time simulation and real elapsed operation are separate evidence classes. Recovery may not reverse a guarantee previously represented as final."],"status":"PROPOSED - REQUIRES APPROVAL"},"P09":{"title":"Security and bounded resource requirements","requirements":["Zero unresolved critical or high-severity security findings on the claimed release. Independent scopes must cover consensus, proof soundness/parameters, implementation bypasses, wallet/isolation and relevant operational controls.","Review the intended proof-system security level and assumptions explicitly; do not infer a security-bit claim from random rejection tests. Version every verifier, program and parameter set.","Freeze maximum valid/invalid verification time, memory, disk and admission rates for ordinary validator hardware. At rated valid load plus the approved hostile load, no unbounded growth, invalid acceptance or unrecoverable process failure.","For supported wallet fee-estimation cases, proposed absolute error at most 5% versus the specified charge when inputs are unchanged; deterministic fee-cap handling and explicit uncertainty otherwise. Customer contracts remain separately binding."],"status":"PROPOSED - REQUIRES APPROVAL"},"P10":{"title":"Ordinary-operator product targets","requirements":["At least 30 unaffiliated first-time study participants across supported Windows/macOS combinations. At least 90% install, configure safely and submit accepted work without staff help; p90 active setup at most 15 minutes. Publish complete download/dataset time separately.","Pause/stop acknowledgement within 2 seconds, safe worker stop within 5 seconds where no documented atomic operation prevents it, and reliable restoration of original tuning settings. No hidden custody or silent update.","Net-energy/fee displays reconcile within 5% under the declared measurement boundary. Incremental rejected-work loss on the normal home-link profile is at most 2 percentage points over the matched datacentre profile.","Open miner efficiency is within 5% of the best independently tuned permitted implementation on identical work. For the declared single-card payout case, p95 payable-to-payment at most 24 hours and total payout friction at most 2% of earned value.","Critical alerts are emitted within 60 seconds of detectable evidence. At least 90% of study users can identify the injected failure and follow the published safe action. No control target excuses a security failure."],"status":"PROPOSED - REQUIRES APPROVAL"},"P11":{"title":"No-founder exercise and independence","requirements":["At least 10 verified unaffiliated operators, three independently administered network/hosting domains and sufficient honest weight/capacity to satisfy F0 and W after founders are removed.","Run at least 30 real elapsed days without founder mining, proving, aggregation, bootstrap, required RPC, private files or privileged interventions. Cross all known logical transitions separately without calling accelerated time real history.","Document control by role and common dependencies; uncertain identities are not counted as independent. Within-assumption withdrawals must satisfy P08; losing more than the assumed quorum may cause a visible safe pause."],"status":"PROPOSED - REQUIRES APPROVAL"},"P12":{"title":"Five-year coexistence envelope","requirements":["Freeze a sourced revenue reference R and mandatory worlds before results. Sweep 0.25R, R, 4R and 10R; electricity at $0.03/$0.10/$0.25/$0.40 per kWh; 1/3/5-year productive life; zero/$20M/$75M development; private mining and hardware sales; no/normal/spiking external demand.","Those values are proposed stress inputs, not current prices or forecasts. Declare which worlds have enough funded demand for rational ongoing service before running; retain collapse worlds as explicit safety/exit tests, not profitable successes.","Proposed matched-tariff new-entry target in every mandatory sustainable world: median GPU/specialist total cost per accepted work at most 1.5, 90th percentile at most 1.75, and no advertised competitive-core cell above 2.0. Publish every cell, including heterogeneous tariffs.","At least three purchasable GPU configurations across at least two advertised vendors must have positive modelled new-entry economics; at least 75% of the entry cohort must have positive marginal operating economics in those worlds. Report model uncertainty and failure regions.","Do not impose GPU market share, specialist production limits, token appreciation, full research-cost recovery or automatic chip death to force the result. Any such condition must become an explicit limitation rather than a hidden assumption."],"status":"PROPOSED - REQUIRES APPROVAL"},"P13":{"title":"Maintenance continuity","requirements":["Before a readiness claim, document at least 12 months of committed maintenance resources at the approved operating scope. Include engineering, security review, infrastructure, support and incident response.","Use independently reviewable commitments and downside budgets. Uncommitted future sales, rising token prices, burned fees or assumed fundraising are not available resources.","This is a proposed governance test, not a directive to change the supply cap, issuance allocation or fair-launch design."],"status":"PROPOSED - REQUIRES APPROVAL"},"P14":{"title":"Genuine commercial and developer proof","requirements":["At least three unrelated paying buyer organisations, each making at least three separate purchase decisions across at least 30 days; at least 1,000 meaningful verified external jobs in aggregate. Split invoices do not create independent demand.","No project reimbursement, circular funding or undisclosed related party counts. Report customer concentration and churn; proposed maximum largest-buyer share is 70% of qualifying revenue.","At least 20% aggregate contribution margin after directly attributable delivery costs, retries, refunds and support; publish fully loaded economics separately. At least 75% of sampled eligible operators have positive realised contribution on the declared workload.","At least five unaffiliated developers complete a useful supported application or proof-service integration using public documentation. Customer confirmation and raw commercial evidence may remain confidential to the reviewer."],"status":"PROPOSED - REQUIRES APPROVAL"},"P15":{"title":"Comparative contention threshold","requirements":["Pre-register at least three relevant operating GPU-first peers, plus a real proving alternative for customer comparisons. Verify current versions at execution time. The source reference set is a starting point, not a claim about current rankings.","Require at least three meaningful comparable dimensions with no material inferiority beyond a pre-agreed 10% margin against the best valid comparator, and at least two independently evidenced advantages against at least two peers.","Advantages must be either a greater-than-10% measured improvement outside uncertainty or a directly tested control/capability difference with demonstrated user value. Non-comparable or missing data is not a win.","A panel with hardware/economics, security/operations and customer/operator expertise must support the scoped contender conclusion. Passing these judgement-based thresholds does not certify a universal number-one ranking."],"status":"PROPOSED - REQUIRES APPROVAL"},"P16":{"title":"Observed durability and claim freshness","requirements":["At least 90 real elapsed days on the final compatible release family, at least 30 independently verified operators, and transparent eligibility/churn denominators. Material uncomparable changes reset affected observations.","Proposed outcomes: at least 60% day-90 operator retention and at least 75% of eligible observed operators with positive measured marginal operation over the period. Report incentives and electricity assumptions; do not claim a downturn was observed if it was not.","At least 99.9% availability for the declared customer service during eligible operating conditions, with all-in availability also reported; zero accepted invalid proofs or conflicting finality within F0 assumptions. Do not remove real incidents as maintenance to force a pass.","Run fault injection on isolated infrastructure, not unsuspecting customers. Publish planned test windows separately. Reassess claims at least quarterly and immediately after material hardware, protocol, economics or security changes."],"status":"PROPOSED - REQUIRES APPROVAL"}},"fixtures":[{"id":"F0","title":"Release and assurance manifest","contents":"Exact commits, binaries, genesis/network ID, mining class, dataset schedule, EVM fork/deviations, program/verifier IDs, fees, supply, quorum/fault rules, trust anchors, activation and supported roles."},{"id":"F1","title":"Clean build environments","contents":"Pinned toolchains, dependency locks, clean OS images and documented signing/notarisation boundaries. No production secrets or private founder files."},{"id":"F2","title":"Hardware and measurement lab","contents":"Approved physical GPU cohort, calibrated wall meters, stable thermal conditions, driver/OS images and realistic home/datacentre link conditions."},{"id":"F3","title":"Workload and oracle catalogue","contents":"Fixed full-hash and EVM/proving jobs, independent reference implementations, real customer-sized payloads, held-out seeds and complete expected results."},{"id":"F4","title":"Authorised fault network","contents":"Independent nodes/operators; controllable latency, loss, clocks, partitions, storage faults and role withdrawals. Actual consensus paths plus separately labelled simulators."},{"id":"F5","title":"Negative and regression corpus","contents":"Malformed transactions/proofs, wrong roots/IDs, duplicate payments, bad authority tables, historical failures and deliberately faulty code mutants."},{"id":"F6","title":"Specialist implementation pack","contents":"Functionally checked architectures, RTL/physical estimates where feasible, memory and board assumptions, cost inputs, adaptation paths and uncertainty ranges."},{"id":"F7","title":"Economic and incentive models","contents":"Independently reproducible costs, entry/exit/difficulty policies, scenario grid, operator opportunity costs and money-flow conservation fixtures."},{"id":"F8","title":"User/customer/peer studies","contents":"Consenting unaffiliated users, contracted meaningful workloads, private ownership checks, dated competitor methods and independent analysis."},{"id":"F9","title":"Evidence and status vault","contents":"Immutable run IDs, raw logs, hashes, analysis code, exclusions, defects, reviewers, signatures, privacy controls and public redacted summaries."}],"source_sha256":"418b3b9f68f96a413872fecb16f8508a40063891c70054c65e92e6e5f5fb70b6","scope_note":"Test design, not executed evidence. All numeric additions are proposed, not source-approved protocol rules. Optional claimed features require their tests; excluded features earn no pass credit.","all_pass_note":"Independent passage of all mandatory and claimed-option gates, including commercial and comparative observation, can support a scoped leadership-contender assessment. It does not prove a universal rank or eliminate unknown future hardware risks.","manual_page_count":73,"approval":{"by":"the founder","at":"2026-10-08 18:2x UK","word":"approve as proposed in the tests, forget P13 for now","profiles":{"P00":"APPROVED AS PROPOSED","P01":"APPROVED AS PROPOSED","P02":"APPROVED AS PROPOSED","P03":"APPROVED AS PROPOSED","P04":"APPROVED AS PROPOSED","P05":"APPROVED AS PROPOSED","P06":"APPROVED AS PROPOSED","P07":"APPROVED AS PROPOSED","P08":"APPROVED AS PROPOSED","P09":"APPROVED AS PROPOSED","P10":"APPROVED AS PROPOSED","P11":"APPROVED AS PROPOSED","P12":"APPROVED AS PROPOSED","P13":"DEFERRED by the founder","P14":"APPROVED AS PROPOSED","P15":"APPROVED AS PROPOSED","P16":"APPROVED AS PROPOSED"},"rules_in_force":["P03: a candidate change pays at most 5 percent of joules per accepted work and loses at most 2 percent of accepted throughput against the paired tuned baseline (replaces the 10 percent budget from 18:2x UK)","P04: R_E at most 1.5 for every competitive-core cell at the same node and one node ahead against the lowest credible complete-system specialist; today's placed bracket (1.5x to 2.1x same-node) is a FAIL to work against and is served as such","P12: the matched-tariff median at most 1.5, p90 at most 1.75, no core cell above 2.0","P02: twelve retail configurations, three unaffiliated operators, the seven-day soak define D1's reproduction"]},"live_fields":{"run_status":"NOT RUN | BLOCKED | FAIL | PASS (the master, p. 139; in_progress_since marks work under way; deferral_note a founder deferral)","owner_lane":"the lane that runs the case, with its id","evidence_path":"the file on the box mirror master that holds the evidence record in the standard's template","run_id":"the run that produced the latest status","updated":"the minute the lane last wrote the case"},"notes":[{"at":"2026-10-08T20:10:24.748Z","text":"128 original test cases, 18 additional integration gates, 44 updated-stack closure requirements. These sets overlap and are not 190 independent tests."},{"at":"2026-10-09T08:13:51.193Z","text":"Counting note (9 October 2026): the registry carries 128 master cases, 18 integration gates (INT), 44 review regressions (REV), and the token value layer (VR 40 rules, TV 32 gates) as a supplement that is never counted as independent evidence; the decisions block D01 to D06 is UNAPPROVED."}],"decisions":[{"id":"D01","title":"Cap and tail","required_resolution":"Choose one supply policy and remove the contradictory escape language. A cap is the recommended identity, conditional on adequate security funding.","status":"RATIFIED","owner":"founder","word":"capped issuance, no tail escape clause, no forecast-triggered minting, no ordinary parameter vote that expands the cap; subject to the pre-launch security-funding gate TV-04 (a fail means delay or an open reconsideration, never an undisclosed rescue)","ratified_by":"founder","ratified_at":"2026-10-09T08:13:50.568Z","recorded_against":"its specification, release and acceptance tests before activation (the coordinator's relay of the founder's ratification, 9 October 2026, 09:2x UK)","condition":"subject to TV-04"},{"id":"D02","title":"Emission horizon","required_resolution":"Compare the existing schedule with slower distribution before launch; include delayed ordinary entrants and dilution/security trade-offs.","status":"RATIFIED WITH PARAMETER PENDING","owner":"founder","word":"the same-cap emission comparison is approved (current pacing vs a longer distribution; code-generated figures for years 1, 2, 5, 10, 20 with rounding and terminal behaviour; no founder reserve); the final schedule stays PENDING EVIDENCE, neither alternative frozen","ratified_by":"founder","ratified_at":"2026-10-09T08:13:50.670Z","recorded_against":"its specification, release and acceptance tests before activation (the coordinator's relay of the founder's ratification, 9 October 2026, 09:2x UK)","condition":"the final schedule PENDING EVIDENCE"},{"id":"D03","title":"Security funding","required_resolution":"Define each role's recurring payer, declining subsidy model, maintenance runway and safe contraction behaviour.","status":"RATIFIED","owner":"founder","word":"separate accountable budgets for hashing, internal proving, external work and maintenance, every payment counted once; external prover revenue never counted as miner security, maintenance and Labs profit at once","ratified_by":"founder","ratified_at":"2026-10-09T08:13:50.772Z","recorded_against":"its specification, release and acceptance tests before activation (the coordinator's relay of the founder's ratification, 9 October 2026, 09:2x UK)"},{"id":"D04","title":"Fee/burn routing","required_resolution":"Freeze exact contract routes and distinguish resource fees, service charges and burn. Test pricing rather than maximise burn by slogan.","status":"RATIFIED WITH PARAMETER PENDING","owner":"founder","word":"explicit auditable routing with no hidden company allocation; the 80/20 split is emission allocation only; the external-job fee or burn rate is NOT ratified, comparative pricing tests decide","ratified_by":"founder","ratified_at":"2026-10-09T08:13:50.871Z","recorded_against":"its specification, release and acceptance tests before activation (the coordinator's relay of the founder's ratification, 9 October 2026, 09:2x UK)","condition":"the external-job fee or burn rate not ratified; comparative pricing tests decide"},{"id":"D05","title":"Finality/recovery","required_resolution":"Specify the stronger guarantee and any weaker recovery. Set dependent wallet/oracle behaviour consistently.","status":"RATIFIED","owner":"founder","word":"a recovery certificate is never ordinary finality on any wallet, receipt, API or bridge; labels do not repair an unsafe recovery rule, which still needs its tests","ratified_by":"founder","ratified_at":"2026-10-09T08:13:50.972Z","recorded_against":"its specification, release and acceptance tests before activation (the coordinator's relay of the founder's ratification, 9 October 2026, 09:2x UK)"},{"id":"D06","title":"Leadership scope","required_resolution":"Separate monetary, GPU engineering, paid-work and market-rank claims; decide which capabilities are enabled and which gates apply.","status":"RATIFIED","owner":"founder","word":"separate claims; public wording \"Designed to compete for leadership among GPU-first networks.\"; after testing, the demonstrated advantage is named, never a blanket number one","ratified_by":"founder","ratified_at":"2026-10-09T08:13:51.074Z","recorded_against":"its specification, release and acceptance tests before activation (the coordinator's relay of the founder's ratification, 9 October 2026, 09:2x UK)"}]}</script>
|
||
<script>
|
||
/* /acceptance runtime: printed at build from site/lib/acceptance-render.mjs (one source for both renders) */
|
||
(function(){
|
||
function overrides() {
|
||
return {
|
||
approval: { word: 'APPROVED AS PROPOSED', date: '2026-10-08' },
|
||
profiles: { all: 'APPROVED AS PROPOSED', P13: 'DEFERRED' },
|
||
notes: { P04: 'R_E target at most 1.5 at the same node and one node ahead; today\'s placed bracket 1.5x to 2.1x: FAIL' },
|
||
};
|
||
}
|
||
function profileWord(reg, id) {
|
||
var a = reg && reg.approval && reg.approval.profiles;
|
||
if (a && a[id]) return String(a[id]).toUpperCase();
|
||
var raw = String(reg && reg.profiles && reg.profiles[id] && reg.profiles[id].status || '');
|
||
if (/DEFERRED/i.test(raw)) return 'DEFERRED';
|
||
if (/APPROVED/i.test(raw) && !/REQUIRES APPROVAL/i.test(raw)) return raw.toUpperCase();
|
||
var o = overrides().profiles;
|
||
return o[id] || o.all;
|
||
}
|
||
function linkOpen(u) {
|
||
return '<a ' + 'href' + '="' + esc(u) + '"';
|
||
}
|
||
function esc(s) {
|
||
return String(s == null ? '' : s).replace(/&/g, '&').replace(/</g, '<').replace(/>/g, '>').replace(/"/g, '"');
|
||
}
|
||
function clean(s) {
|
||
return esc(String(s == null ? '' : s).replace(/\s*\u2014\s*/g, ', ').replace(/\s+-\s+/g, ', ').replace(/,\s*,/g, ','));
|
||
}
|
||
function fmtDate(iso) {
|
||
var m = /^(\d{4})-(\d{2})-(\d{2})/.exec(String(iso || ''));
|
||
if (!m) return clean(iso);
|
||
var MON = ['January', 'February', 'March', 'April', 'May', 'June', 'July', 'August', 'September', 'October', 'November', 'December'];
|
||
return Number(m[3]) + ' ' + MON[Number(m[2]) - 1] + ' ' + m[1];
|
||
}
|
||
function fmtWhen(v) {
|
||
if (!v) return '';
|
||
var d = new Date(v);
|
||
if (isNaN(d.getTime()) || !/\d{4}-\d{2}-\d{2}T/.test(String(v))) return clean(v);
|
||
try {
|
||
return esc(d.toLocaleString('en-GB', { timeZone: 'Europe/London', day: 'numeric', month: 'short', year: 'numeric', hour: '2-digit', minute: '2-digit', hour12: false })) + ' UK';
|
||
} catch (e) { return esc(d.toISOString().slice(0, 16).replace('T', ' ')) + ' UTC'; }
|
||
}
|
||
function normStatus(s) {
|
||
var t = String(s == null ? '' : s).trim().toUpperCase().replace(/[_-]+/g, ' ');
|
||
if (t === '' || t === 'NOT RUN' || t === 'NOTRUN') return 'NOT RUN';
|
||
if (t === 'PASS' || t === 'PASSED') return 'PASS';
|
||
if (t === 'FAIL' || t === 'FAILED') return 'FAIL';
|
||
if (t === 'BLOCKED') return 'BLOCKED';
|
||
if (t === 'RUNNING' || t === 'IN PROGRESS') return 'RUNNING';
|
||
if (t === 'EXCLUDED') return 'EXCLUDED';
|
||
if (t === 'DEFERRED') return 'DEFERRED';
|
||
return 'BLOCKED';
|
||
}
|
||
function caseStatus(t) {
|
||
if (!t) return 'NOT RUN';
|
||
if (t.run_status != null) return normStatus(t.run_status);
|
||
return normStatus(t.status != null ? t.status : (t.result && t.result.status));
|
||
}
|
||
function caseEvidenceUrl(t) {
|
||
if (!t) return null;
|
||
var p = t.evidence_path;
|
||
if (typeof p === 'string' && /^[A-Za-z0-9._\/-]+$/.test(p) && p.indexOf('..') < 0) return 'https://git.igneum.network/igneum-network/igneum/src/branch/master/' + p.replace(/^\/+/, '');
|
||
var r = t.result || {};
|
||
var cands = [t.evidence_url, t.evidence_link, r.evidence_url, r.evidence_link, r.evidence];
|
||
for (var i = 0; i < cands.length; i++) {
|
||
var u = cands[i];
|
||
if (typeof u === 'string' && (/^https:\/\/[^\s"'<>]+$/.test(u) || /^\/[^\s"'<>]*$/.test(u))) return u;
|
||
}
|
||
return null;
|
||
}
|
||
function caseLastRun(t) {
|
||
var r = (t && t.result) || {};
|
||
return (t && (t.updated || t.last_run || t.last_run_at || t.run_at)) || r.at || r.run_at || r.date || null;
|
||
}
|
||
function profilesOf(t) {
|
||
return String(t && t.profile || '').split(/;\s*/).map(function (x) { return x.trim(); }).filter(Boolean);
|
||
}
|
||
function allCases(reg) {
|
||
var out = [];
|
||
(reg && reg.suites || []).forEach(function (s) { (s.tests || []).forEach(function (t) { out.push(t); }); });
|
||
return out;
|
||
}
|
||
function tally(cases) {
|
||
var c = { total: 0, PASS: 0, FAIL: 0, BLOCKED: 0, RUNNING: 0, 'NOT RUN': 0, DEFERRED: 0, EXCLUDED: 0 };
|
||
cases.forEach(function (t) { c.total++; c[caseStatus(t)]++; });
|
||
return c;
|
||
}
|
||
function countStatuses(reg) {
|
||
return tally(allCases(reg));
|
||
}
|
||
function stateOf(cases) {
|
||
var st = cases.map(caseStatus).filter(function (s) { return s !== 'EXCLUDED'; });
|
||
if (!st.length) return 'NOT RUN';
|
||
if (st.indexOf('FAIL') >= 0) return 'FAIL';
|
||
if (st.indexOf('BLOCKED') >= 0) return 'BLOCKED';
|
||
if (st.indexOf('RUNNING') >= 0) return 'RUNNING';
|
||
if (st.every(function (s) { return s === 'PASS'; })) return 'PASS';
|
||
return 'NOT RUN';
|
||
}
|
||
function gateDefs() {
|
||
return [
|
||
{ id: 'G0', name: 'Freeze', d: 'Release identity', consequence: 'No formal run or public pass before approval.' },
|
||
{ id: 'G1', name: 'Baseline', d: 'D1', consequence: 'No validated hardware claim without reproduction.' },
|
||
{ id: 'G2', name: 'Experiments', d: 'D2', consequence: 'No improvement claim from a negative hypothesis.' },
|
||
{ id: 'G3', name: 'Adversary', d: 'D3', consequence: 'No broad resistance claim from one weak design.' },
|
||
{ id: 'G4', name: 'Coexistence', d: 'D4', consequence: 'No durability claim based on assumed chip expiry.' },
|
||
{ id: 'G5', name: 'No rescue', d: 'D5', consequence: 'No no-rescue claim from a founder-supported demo.' },
|
||
{ id: 'TR', name: 'Technical readiness', d: 'Execution control', consequence: 'No mainnet-ready claim with missing enforcement or safety.' },
|
||
{ id: 'CE', name: 'Commercial evidence', d: 'Execution control', consequence: 'Devnet activity is insufficient.' },
|
||
{ id: 'CD', name: 'Leadership-contender decision', d: 'Execution control', consequence: 'Supports a scoped contention assessment, not a guaranteed rank.' },
|
||
];
|
||
}
|
||
function gatesOf(gate) {
|
||
var g = String(gate || ''), out = [];
|
||
var re = /\bG([0-5])\b/g, m;
|
||
while ((m = re.exec(g))) if (out.indexOf('G' + m[1]) < 0) out.push('G' + m[1]);
|
||
if (/all gates/i.test(g)) ['G0', 'G1', 'G2', 'G3', 'G4', 'G5', 'TR', 'CE'].forEach(function (x) { if (out.indexOf(x) < 0) out.push(x); });
|
||
if (/technical readiness|operator readiness/i.test(g) && out.indexOf('TR') < 0) out.push('TR');
|
||
if (/commercial/i.test(g) && out.indexOf('CE') < 0) out.push('CE');
|
||
if (out.indexOf('CD') < 0) out.push('CD');
|
||
return out;
|
||
}
|
||
function stateClass(s) {
|
||
return { 'PASS': 'pass', 'FAIL': 'fail', 'BLOCKED': 'blocked', 'RUNNING': 'running', 'NOT RUN': 'notrun', 'DEFERRED': 'deferred', 'EXCLUDED': 'excluded' }[s] || 'notrun';
|
||
}
|
||
function chipHtml(state) {
|
||
var s = normStatus(state);
|
||
return '<span class="acc-chip s-' + stateClass(s) + '" data-state="' + s + '">' + s + '</span>';
|
||
}
|
||
function barHtml(c, label) {
|
||
var order = ['PASS', 'FAIL', 'BLOCKED', 'RUNNING', 'NOT RUN', 'DEFERRED', 'EXCLUDED'];
|
||
var segs = order.filter(function (o) { return c[o] > 0; }).map(function (o) {
|
||
return '<span class="seg g-' + stateClass(o) + '" style="flex-grow:' + c[o] + '" title="' + c[o] + ' ' + o + '"></span>';
|
||
}).join('');
|
||
return '<div class="acc-bar" role="img" aria-label="' + esc(label || '') + '">' + segs + '</div>';
|
||
}
|
||
function tallyText(c) {
|
||
var parts = [c.PASS + ' passed under the standard', c.RUNNING + ' running with team evidence'];
|
||
if (c.FAIL) parts.push(c.FAIL + ' failed');
|
||
if (c.BLOCKED) parts.push(c.BLOCKED + ' blocked');
|
||
parts.push(c['NOT RUN'] + ' not run');
|
||
parts.push(c.DEFERRED + ' deferred');
|
||
if (c.EXCLUDED) parts.push(c.EXCLUDED + ' excluded');
|
||
return c.total + ' cases: ' + parts.join(', ');
|
||
}
|
||
function tallyHtml(c) {
|
||
var rows = [['PASS', 'pass'], ['FAIL', 'fail'], ['BLOCKED', 'blocked'], ['RUNNING', 'running'], ['NOT RUN', 'not run'], ['DEFERRED', 'deferred']];
|
||
if (c.EXCLUDED) rows.push(['EXCLUDED', 'excluded']);
|
||
return '<ul class="acc-legend">' + rows.map(function (r) {
|
||
return '<li><i class="sw g-' + stateClass(r[0]) + '" aria-hidden="true"></i><b>' + c[r[0]] + '</b> ' + r[1] + '</li>';
|
||
}).join('') + '</ul>';
|
||
}
|
||
function statusWords(reg) {
|
||
var raw = String(reg && reg.status || ''), a = (reg && reg.approval) || {}, o = overrides();
|
||
var c = countStatuses(reg);
|
||
var fileApproved = !!a.word || (/APPROVED/i.test(raw) && !/REQUIRES APPROVAL/i.test(raw));
|
||
// the served header carries the standard's form of the decision, never the approver's own sentence (the registry's word field
|
||
// holds the founder's words verbatim): an approval reads APPROVED AS PROPOSED, anything else the field's first word in capitals
|
||
var word = a.word ? (/approve/i.test(String(a.word)) ? 'APPROVED AS PROPOSED' : String(a.word).split(/[.;,]/)[0].toUpperCase()) : o.approval.word;
|
||
var dm = /(\d{4}-\d{2}-\d{2})/.exec(String(a.at || '')) || (fileApproved ? /(\d{4}-\d{2}-\d{2})/.exec(String(reg.approved_date || reg.date || '')) : null);
|
||
var date = dm ? dm[1] : o.approval.date;
|
||
var deferred = Object.keys(reg && reg.profiles || {}).filter(function (id) { return /DEFERRED/.test(profileWord(reg, id)); });
|
||
var ran = c.PASS + c.FAIL + c.BLOCKED + c.RUNNING;
|
||
return { raw: raw, word: word, date: date, fromFile: fileApproved, deferred: deferred, execution: ran ? null : 'NOT EXECUTED' };
|
||
}
|
||
function headLine(reg) {
|
||
var w = statusWords(reg), c = countStatuses(reg);
|
||
var title = String(reg.title || 'Test and Acceptance Standard').replace(/^IGNEUM 2\.0\s*-\s*/i, '');
|
||
var defs = w.deferred.map(function (id) {
|
||
var t = reg.profiles[id] && reg.profiles[id].title ? String(reg.profiles[id].title).toLowerCase() : '';
|
||
return id + (t ? ' (' + t + ')' : '') + ' DEFERRED';
|
||
});
|
||
return title + ' ' + (reg.version || '') + ': ' + w.word + ' by the founder, ' + fmtDate(w.date).replace(/&/g, '&') + '; ' + (defs.length ? defs.join('; ') + '; ' : '') + tallyText(c);
|
||
}
|
||
function headHtml(reg) {
|
||
var title = String(reg.title || 'Test and Acceptance Standard').replace(/^IGNEUM 2\.0\s*-\s*/i, '');
|
||
var w = statusWords(reg), c = countStatuses(reg);
|
||
return '<section class="page-hero acc-hero"><div class="container">'
|
||
+ '<div class="eyebrow"><span class="line"></span>Igneum 2.0 acceptance</div>'
|
||
+ '<h1 class="acc-title">' + clean(title) + ' ' + clean(reg.version) + '</h1>'
|
||
+ '<p class="lead">Every case of the standard, shown as it is run, in the standard’s own words. A checklist, never a completion score: a gate passes only when every case it depends on has passed.</p>'
|
||
+ '<p class="acc-basis"><span>Basis</span> ' + clean(reg.basis) + '. ' + (reg.manual_page_count ? 'The standard runs to ' + esc(reg.manual_page_count) + ' pages. ' : '') + 'Registry dated ' + fmtDate(reg.date) + '.</p>'
|
||
+ '<div class="acc-tally" id="acc-tally">'
|
||
+ '<div class="acc-words"><span class="acc-word approved">' + esc(w.word) + ' ' + esc(fmtDate(w.date).toUpperCase()) + '</span>'
|
||
+ w.deferred.map(function (id) { return '<span class="acc-word deferred">' + esc(id) + ' DEFERRED</span>'; }).join('')
|
||
+ (w.execution ? '<span class="acc-word exec">' + esc(w.execution) + '</span>' : '') + '</div>'
|
||
+ '<p class="acc-line">' + clean(headLine(reg)) + '</p>'
|
||
+ barHtml(c, tallyText(c)) + tallyHtml(c)
|
||
+ '</div>'
|
||
+ '</div></section>';
|
||
}
|
||
function gateCardHtml(def, reg, small) {
|
||
var suites = (reg.suites || []).filter(function (s) { return gatesOf(s.gate).indexOf(def.id) >= 0; });
|
||
var cases = [];
|
||
suites.forEach(function (s) { (s.tests || []).forEach(function (t) { cases.push(t); }); });
|
||
var st = stateOf(cases), c = tally(cases);
|
||
var list = suites.map(function (s) {
|
||
return '<li>' + linkOpen('#suite-' + s.code) + '>' + esc(s.code) + '</a><span class="acc-gs-n">' + (s.tests || []).length + ' cases</span>' + chipHtml(stateOf(s.tests || [])) + '</li>';
|
||
}).join('');
|
||
return '<article class="acc-gate st-' + stateClass(st) + (small ? ' small' : '') + '" id="gate-' + def.id + '" data-gate-state="' + st + '">'
|
||
+ '<div class="acc-gate-top"><span class="acc-gate-id">' + (/^G[0-5]$/.test(def.id) ? def.id : '') + '</span>' + chipHtml(st) + '</div>'
|
||
+ '<h3>' + esc(def.name) + '</h3>'
|
||
+ '<p class="acc-gate-d">' + esc(def.d) + '</p>'
|
||
+ '<p class="acc-gate-c">' + esc(def.consequence) + '</p>'
|
||
+ barHtml(c, def.name + ': ' + tallyText(c))
|
||
+ '<p class="acc-gate-n">' + esc(tallyText(c)) + '</p>'
|
||
+ (list ? '<ul class="acc-gs">' + list + '</ul>' : '<p class="acc-gate-n">No suite names this gate.</p>')
|
||
+ '</article>';
|
||
}
|
||
function gatesHtml(reg) {
|
||
var d = gateDefs();
|
||
var g0 = d.filter(function (x) { return x.id === 'G0'; })[0];
|
||
var five = d.filter(function (x) { return /^G[1-5]$/.test(x.id); });
|
||
var tracks = d.filter(function (x) { return /^(TR|CE|CD)$/.test(x.id); });
|
||
return '<section class="section acc-gates-sec" id="gates"><div class="container">'
|
||
+ '<div class="eyebrow"><span class="line"></span>The gates</div>'
|
||
+ '<h2>Five gates, and the freeze before them.</h2>'
|
||
+ '<p class="acc-sub">A gate reads NOT RUN until every case it depends on has run, RUNNING while any is running, BLOCKED if any is blocked, FAIL if any fails, and PASS only when every case passes. No gate is weighted into an average.</p>'
|
||
+ '<div class="acc-g0">' + gateCardHtml(g0, reg, true) + '</div>'
|
||
+ '<div class="acc-five">' + five.map(function (x) { return gateCardHtml(x, reg, false); }).join('') + '</div>'
|
||
+ '<h3 class="acc-tracks-h">The three named gates</h3>'
|
||
+ '<div class="acc-tracks">' + tracks.map(function (x) { return gateCardHtml(x, reg, true); }).join('') + '</div>'
|
||
+ '</div></section>';
|
||
}
|
||
function caseHtml(t) {
|
||
var st = caseStatus(t), ev = caseEvidenceUrl(t), run = caseLastRun(t), er = t.evidence_record;
|
||
var steps = (t.steps || []).map(function (s) { return '<li>' + clean(s) + '</li>'; }).join('');
|
||
var meta = [];
|
||
if (t.method) meta.push('<div><dt>Method</dt><dd>' + clean(t.method) + '</dd></div>');
|
||
if (t.cadence) meta.push('<div><dt>Cadence</dt><dd>' + clean(t.cadence) + '</dd></div>');
|
||
if (t.owner || t.owner_lane) meta.push('<div><dt>Owner</dt><dd>' + clean(t.owner_lane || t.owner) + '</dd></div>');
|
||
if (t.run_id) meta.push('<div><dt>Run</dt><dd>' + clean(t.run_id) + '</dd></div>');
|
||
if (t.run_status != null && t.status) meta.push('<div><dt>Design status</dt><dd>' + clean(t.status) + '</dd></div>');
|
||
if (t.manual_page) meta.push('<div><dt>Standard page</dt><dd>' + esc(t.manual_page) + '</dd></div>');
|
||
if (t.source && t.source.length) meta.push('<div><dt>Plan pages</dt><dd>' + esc([].concat(t.source).join(', ')) + '</dd></div>');
|
||
var rec = '';
|
||
if (er && typeof er === 'object') {
|
||
var F = [['what_was_run', 'What was run'], ['run_by', 'Run by'], ['under_the_standard', 'Under the standard'], ['pass_or_fail_today', 'Pass or fail today']];
|
||
var rows = F.filter(function (f) { return er[f[0]] != null && er[f[0]] !== ''; }).map(function (f) { return '<div><dt>' + f[1] + '</dt><dd>' + clean(er[f[0]]) + '</dd></div>'; });
|
||
if (rows.length) rec = '<h4>Evidence record of the run</h4><dl class="acc-meta acc-rec">' + rows.join('') + '</dl>';
|
||
}
|
||
return '<details class="acc-case" id="case-' + esc(t.id) + '" data-case="' + esc(t.id) + '" data-state="' + st + '">'
|
||
+ '<summary>'
|
||
+ '<span class="c-id">' + esc(t.id) + '</span>'
|
||
+ '<span class="c-title">' + clean(t.title) + '</span>'
|
||
+ '<span class="c-pri"><span class="lbl">Priority </span>' + clean(t.priority) + '</span>'
|
||
+ '<span class="c-prof"><span class="lbl">Profile </span>' + (profilesOf(t).map(function (p) { return esc(p); }).join(', ') || 'none') + '</span>'
|
||
+ '<span class="c-st">' + chipHtml(st) + '</span>'
|
||
+ '<span class="c-ev"><span class="lbl">Evidence </span>' + (ev ? linkOpen(ev) + (/^https:/.test(ev) ? ' rel="noopener"' : '') + '>record</a>' : '<span class="none">none yet</span>') + '</span>'
|
||
+ '<span class="c-run"><span class="lbl">Last run </span>' + (run ? fmtWhen(run) : '<span class="none">none yet</span>') + '</span>'
|
||
+ '<span class="c-caret" aria-hidden="true"></span>'
|
||
+ '</summary>'
|
||
+ '<div class="acc-panel"><blockquote>'
|
||
+ '<h4>Setup</h4><p>' + clean(t.setup) + '</p>'
|
||
+ '<h4>Steps</h4><ol>' + steps + '</ol>'
|
||
+ '<h4>Accept</h4><p>' + clean(t.accept) + '</p>'
|
||
+ '<h4>Evidence the case requires</h4><p>' + clean(t.evidence || 'not stated') + '</p>'
|
||
+ '</blockquote>'
|
||
+ rec
|
||
+ (meta.length ? '<dl class="acc-meta">' + meta.join('') + '</dl>' : '')
|
||
+ '</div>'
|
||
+ '</details>';
|
||
}
|
||
function suiteHtml(s, i) {
|
||
var cases = s.tests || [], c = tally(cases);
|
||
var gates = gatesOf(s.gate).filter(function (g) { return /^G[0-5]$/.test(g); });
|
||
return '<section class="section acc-suite" id="suite-' + esc(s.code) + '"><div class="container">'
|
||
+ '<div class="acc-suite-head">'
|
||
+ '<div class="acc-suite-code"><span class="n">' + (i + 1 < 10 ? '0' : '') + (i + 1) + '</span>' + esc(s.code) + '</div>'
|
||
+ '<div class="acc-suite-t"><h2>' + clean(s.title) + '</h2>' + (s.summary ? '<p class="acc-sub">' + clean(s.summary) + '</p>' : '') + '</div>'
|
||
+ '<div class="acc-suite-st">' + chipHtml(stateOf(cases)) + '</div>'
|
||
+ '</div>'
|
||
+ '<dl class="acc-facts">'
|
||
+ '<div><dt>Owner</dt><dd>' + clean(s.owner || 'not named') + '</dd></div>'
|
||
+ '<div><dt>Gate</dt><dd>' + clean(s.gate) + (gates.length ? ' <span class="acc-gl">' + gates.map(function (g) { return linkOpen('#gate-' + g) + '>' + g + '</a>'; }).join(' ') + '</span>' : '') + '</dd></div>'
|
||
+ (s.fixtures ? '<div><dt>Fixtures</dt><dd>' + clean(s.fixtures) + '</dd></div>' : '')
|
||
+ (s.source && s.source.length ? '<div><dt>Plan pages</dt><dd>' + esc([].concat(s.source).join(', ')) + '</dd></div>' : '')
|
||
+ '</dl>'
|
||
+ '<div class="acc-suite-bar">' + barHtml(c, s.code + ': ' + tallyText(c)) + '<span>' + esc(tallyText(c)) + '</span></div>'
|
||
+ '<div class="acc-cases">'
|
||
+ '<div class="acc-cases-h" aria-hidden="true"><span>Case</span><span>Title</span><span>Priority</span><span>Profile</span><span>Status</span><span>Evidence</span><span>Last run</span><span></span></div>'
|
||
+ cases.map(caseHtml).join('')
|
||
+ '</div>'
|
||
+ '</div></section>';
|
||
}
|
||
function profileHtml(id, p, reg) {
|
||
var o = overrides(), raw = String(p.status || ''), word = profileWord(reg, id);
|
||
var used = allCases(reg).filter(function (t) { return profilesOf(t).indexOf(id) >= 0; }).length;
|
||
var deferred = /DEFERRED/.test(word), cls = deferred ? 'deferred' : (/APPROVED/.test(word) ? 'approved' : 'proposed');
|
||
var text = deferred ? 'Deferred by the founder' : (/APPROVED AS PROPOSED/.test(word) ? 'Approved as proposed' : (/APPROVED/.test(word) ? 'Approved' : clean(word)));
|
||
var note = o.notes[id];
|
||
return '<article class="acc-prof ' + cls + '" id="profile-' + esc(id) + '">'
|
||
+ '<div class="acc-prof-top"><span class="acc-prof-id">' + esc(id) + '</span><span class="acc-pstate ' + cls + '">' + text + '</span></div>'
|
||
+ '<h3>' + clean(p.title) + '</h3>'
|
||
+ '<ol class="acc-req">' + (p.requirements || []).map(function (r) { return '<li>' + clean(r) + '</li>'; }).join('') + '</ol>'
|
||
+ (note ? '<p class="acc-note">' + chipHtml('FAIL') + ' <span>' + esc(note) + '</span></p>' : '')
|
||
+ '<p class="acc-prof-n">Cited by ' + used + ' case' + (used === 1 ? '' : 's') + '. ' + (raw ? 'The profile’s own line in the registry: ' + clean(raw) + '.' : '') + '</p>'
|
||
+ '</article>';
|
||
}
|
||
function profilesHtml(reg) {
|
||
var ps = reg.profiles || {};
|
||
var ids = Object.keys(ps);
|
||
return '<section class="section acc-profiles" id="profiles"><div class="container">'
|
||
+ '<div class="eyebrow"><span class="line"></span>Profiles</div>'
|
||
+ '<h2>The numbers each case is held to.</h2>'
|
||
+ '<p class="acc-sub">' + ids.length + ' profiles, P00 to P' + (ids.length - 1 < 10 ? '0' : '') + (ids.length - 1) + '. A profile is frozen before the confirmatory run; weakening a target after a failure creates a different claim.</p>'
|
||
+ '<div class="acc-prof-grid">' + ids.map(function (id) { return profileHtml(id, ps[id], reg); }).join('') + '</div>'
|
||
+ '</div></section>';
|
||
}
|
||
function fixturesHtml(reg) {
|
||
var fs = reg.fixtures || [];
|
||
if (!fs.length) return '';
|
||
return '<section class="section acc-fixtures" id="fixtures"><div class="container">'
|
||
+ '<div class="eyebrow"><span class="line"></span>Fixtures</div>'
|
||
+ '<h2>What every run is built on.</h2>'
|
||
+ '<div class="acc-fix-grid">' + fs.map(function (f) {
|
||
return '<article class="acc-fix" id="fixture-' + esc(f.id) + '"><span class="acc-fix-id">' + esc(f.id) + '</span><h3>' + clean(f.title) + '</h3><p>' + clean(f.contents) + '</p></article>';
|
||
}).join('') + '</div>'
|
||
+ '</div></section>';
|
||
}
|
||
function footHtml(reg) {
|
||
var rules = reg.approval && reg.approval.rules_in_force;
|
||
var rulesHtml = '';
|
||
if (Array.isArray(rules) && rules.length) rulesHtml = '<h3>Rules in force</h3><ul class="acc-rules">' + rules.map(function (r) { return '<li>' + clean(typeof r === 'string' ? r : JSON.stringify(r)) + '</li>'; }).join('') + '</ul>';
|
||
else if (typeof rules === 'string' && rules) rulesHtml = '<h3>Rules in force</h3><p>' + clean(rules) + '</p>';
|
||
return '<section class="section acc-foot" id="notes"><div class="container"><div class="acc-foot-card">'
|
||
+ '<div class="eyebrow"><span class="line"></span>What a full pass means</div>'
|
||
+ (reg.all_pass_note ? '<p class="acc-allpass">' + clean(reg.all_pass_note) + '</p>' : '')
|
||
+ (reg.scope_note ? '<p>' + clean(reg.scope_note) + '</p>' : '')
|
||
+ rulesHtml
|
||
+ '<p class="acc-never" data-never-served>Never served: guaranteed chip death, a universal ASIC-efficiency ceiling, chip-arrival probabilities, guaranteed profits, Ethereum security by compatibility, privacy from ZK, a numerical rank.</p>'
|
||
+ '<p class="acc-src"><b>Source:</b> <code>docs/plans/igneum-2.0-test-registry.json</code>, version ' + clean(reg.version) + ', dated ' + fmtDate(reg.date) + (reg.source_sha256 ? ', plan sha256 <code>' + esc(String(reg.source_sha256).slice(0, 16)) + '</code>' : '') + '. <span id="acc-live">This copy was written when the page was built; the page checks the registry on the public git host every 60 seconds.</span></p>'
|
||
+ '</div></div></section>';
|
||
}
|
||
function suiteNavHtml(reg) {
|
||
return '<nav class="acc-jump container" aria-label="Suites"><a href="#gates">Gates</a>' + (reg.suites || []).map(function (s) {
|
||
return linkOpen('#suite-' + s.code) + '>' + esc(s.code) + '</a>';
|
||
}).join('') + '<a href="#profiles">Profiles</a><a href="#fixtures">Fixtures</a></nav>';
|
||
}
|
||
function renderBody(reg) {
|
||
return headHtml(reg) + suiteNavHtml(reg) + gatesHtml(reg)
|
||
+ (reg.suites || []).map(function (s, i) { return suiteHtml(s, i); }).join('')
|
||
+ profilesHtml(reg) + fixturesHtml(reg) + footHtml(reg);
|
||
}
|
||
function statusKey(reg) {
|
||
return String(reg && reg.source_sha256 || '') + '|' + String(reg && reg.status || '') + '|' + allCases(reg).map(function (t) {
|
||
return t.id + ':' + caseStatus(t) + ':' + (caseEvidenceUrl(t) || '') + ':' + (caseLastRun(t) || '');
|
||
}).join(',');
|
||
}
|
||
function boot() {
|
||
var root = document.getElementById('acc-root'), data = document.getElementById('acceptance-data');
|
||
if (!root || !data) return;
|
||
var cur; try { cur = JSON.parse(data.textContent); } catch (e) { return; }
|
||
var key = statusKey(cur);
|
||
function live(text) { var l = document.getElementById('acc-live'); if (l) l.textContent = text; }
|
||
function apply(reg) {
|
||
var open = [].map.call(root.querySelectorAll('details[open]'), function (d) { return d.id; });
|
||
var f = document.activeElement, fid = f && f.closest && f.closest('details') ? f.closest('details').id : null;
|
||
root.innerHTML = renderBody(reg);
|
||
open.forEach(function (id) { var d = document.getElementById(id); if (d) d.open = true; });
|
||
if (fid) { var s = document.querySelector('#' + fid + ' > summary'); if (s) s.focus({ preventScroll: true }); }
|
||
}
|
||
function poll() {
|
||
if (document.hidden) return;
|
||
fetch('/api/acceptance', { cache: 'no-store' }).then(function (r) { return r.json(); }).then(function (d) {
|
||
if (!d || !d.ok || !d.registry || !d.registry.suites) return;
|
||
var k = statusKey(d.registry);
|
||
if (k !== key) { cur = d.registry; key = k; apply(cur); }
|
||
live('Checked against ' + (d.source || 'the git host') + ' at ' + fmtWhen(d.fetched_at).replace(/&/g, '&') + '; the page re-reads it every 60 seconds.');
|
||
}).catch(function () { /* the build-time copy stands */ });
|
||
}
|
||
setTimeout(poll, 4000);
|
||
setInterval(poll, 60000);
|
||
document.addEventListener('visibilitychange', function () { if (!document.hidden) poll(); });
|
||
}
|
||
if (document.readyState === "loading") document.addEventListener("DOMContentLoaded", boot); else boot();
|
||
})();
|
||
</script>
|
||
<!-- acceptance:end -->
|
||
</main>
|
||
<!-- footer:start -->
|
||
<footer class="site-footer">
|
||
<div class="container">
|
||
<p class="positioning">A GPU-secured network for Ethereum-compatible applications and verifiable computation.</p>
|
||
<div class="footer-grid">
|
||
<div class="footer-brand">
|
||
<a href="/" class="logo" aria-label="Igneum home"><svg class="brand-mark" viewBox="0 0 1024 1024" aria-hidden="true"><rect width="1024" height="1024" rx="160" fill="#0C0C0E"></rect><g transform="translate(166.95 166.95) scale(6.901)"><polygon points="50,4 74,34 67,58 80,54 61,96 39,96 20,54 33,58 26,34" fill="#F2541B"></polygon><polygon points="50,42 59,58 50,82 41,58" fill="#0C0C0E"></polygon></g></svg><span class="word">IGNEUM</span><span class="stop">.</span></a>
|
||
<p>Mined by GPUs. Proven by fire.</p>
|
||
<div class="social" aria-label="Igneum elsewhere">
|
||
<a href="https://discord.gg/igneum" target="_blank" rel="noopener" aria-label="The Igneum Discord"><svg viewBox="0 0 24 24" width="22" height="22" fill="currentColor" aria-hidden="true"><path d="M19.6 5.3A17 17 0 0 0 15.4 4l-.2.4a15.6 15.6 0 0 1 3.9 1.9 13.6 13.6 0 0 0-14.2 0A15.6 15.6 0 0 1 8.8 4.4L8.6 4a17 17 0 0 0-4.2 1.3C1.8 9.2 1.1 13 1.4 16.7a17.1 17.1 0 0 0 5.2 2.6l1.1-1.8a10.8 10.8 0 0 1-1.7-.8l.4-.3a12.2 12.2 0 0 0 11.2 0l.4.3-1.7.8 1.1 1.8a17 17 0 0 0 5.2-2.6c.4-4.3-.7-8-3-11.4zM8.7 14.4c-1 0-1.8-.9-1.8-2.1s.8-2.1 1.8-2.1 1.9 1 1.8 2.1c0 1.2-.8 2.1-1.8 2.1zm6.6 0c-1 0-1.8-.9-1.8-2.1s.8-2.1 1.8-2.1 1.9 1 1.8 2.1c0 1.2-.8 2.1-1.8 2.1z"></path></svg></a>
|
||
<a href="https://git.igneum.network/igneum-network/spec" target="_blank" rel="noopener" aria-label="Igneum source: the spec, the vectors and the issues"><svg viewBox="0 0 24 24" width="22" height="22" fill="currentColor" aria-hidden="true"><path d="M8.6 17.6 3 12l5.6-5.6 1.4 1.4L5.8 12l4.2 4.2zm6.8 0-1.4-1.4L18.2 12 14 7.8l1.4-1.4L21 12z"></path></svg></a>
|
||
<a data-social="reddit" href="https://www.reddit.com/user/Igneum_network/" target="_blank" rel="noopener" aria-label="Igneum on Reddit"><svg viewBox="0 0 24 24" width="22" height="22" fill="currentColor" aria-hidden="true"><path d="M22 12.1a2.2 2.2 0 0 0-3.7-1.6 10.8 10.8 0 0 0-5.8-1.8l1-4.6 3.2.7a1.5 1.5 0 1 0 .2-.9l-3.6-.8a.5.5 0 0 0-.5.4l-1.1 5.2a10.8 10.8 0 0 0-5.9 1.8A2.2 2.2 0 1 0 3.4 14a4.3 4.3 0 0 0 0 .7c0 3.4 3.9 6.1 8.6 6.1s8.6-2.7 8.6-6.1a4.3 4.3 0 0 0 0-.7 2.2 2.2 0 0 0 1.4-1.9zM7 13.6a1.5 1.5 0 1 1 1.5 1.5A1.5 1.5 0 0 1 7 13.6zm8.6 4.1a5.7 5.7 0 0 1-3.6 1.1 5.7 5.7 0 0 1-3.6-1.1.4.4 0 0 1 .6-.6 4.9 4.9 0 0 0 3 .9 4.9 4.9 0 0 0 3-.9.4.4 0 0 1 .6.6zm-.3-2.6a1.5 1.5 0 1 1 1.5-1.5 1.5 1.5 0 0 1-1.5 1.5z"></path></svg></a>
|
||
<a href="mailto:hello@igneum.network" aria-label="Email hello@igneum.network"><svg viewBox="0 0 24 24" width="22" height="22" fill="none" stroke="currentColor" stroke-width="1.8" stroke-linecap="round" stroke-linejoin="round" aria-hidden="true"><rect x="3" y="5" width="18" height="14" rx="2"></rect><path d="m3.5 6.5 8.5 6.5 8.5-6.5"></path></svg></a>
|
||
</div>
|
||
<div class="footer-dl" aria-label="Download Ember"><a href="/download#windows"><span class="osmark mini" data-os="windows" title="Windows"><svg viewBox="0 0 24 24" width="22" height="22" aria-hidden="true" focusable="false" fill="currentColor"><path d="M3 5.6l7.3-1v7.1H3zM11.4 4.4L21 3v8.7h-9.6zM3 12.3h7.3v7.1L3 18.4zM11.4 12.3H21V21l-9.6-1.4z"/></svg></span>Windows</a><a href="/download#mac"><span class="osmark mini" data-os="mac" title="macOS"><svg viewBox="0 0 24 24" width="22" height="22" aria-hidden="true" focusable="false" fill="currentColor"><path d="M16.4 12.6c0-2.5 2-3.6 2.1-3.7-1.2-1.7-3-1.9-3.6-2-1.5-.2-3 .9-3.8.9-.8 0-2-.9-3.3-.8-1.7 0-3.2 1-4.1 2.5-1.8 3-.5 7.6 1.3 10.1.9 1.2 1.9 2.6 3.2 2.5 1.3 0 1.8-.8 3.3-.8 1.6 0 2 .8 3.3.8 1.4 0 2.3-1.2 3.1-2.5 1-1.4 1.4-2.8 1.4-2.9 0 0-2.7-1-2.9-4.1zM13.9 5.3c.7-.8 1.2-2 1-3.2-1 0-2.2.7-2.9 1.5-.6.7-1.2 1.9-1 3 1.1.1 2.2-.5 2.9-1.3z"/></svg></span>macOS</a><a href="/download#linux"><span class="osmark mini" data-os="linux" title="Linux"><svg viewBox="0 0 24 24" width="22" height="22" aria-hidden="true" focusable="false" fill="currentColor"><path d="M12 2c-2.4 0-4 1.9-4 4.6 0 1.2.2 2 0 2.8-.6 1.4-2.1 2.9-2.6 4.9-.3 1.1-.1 2 .3 2.6-.6.4-1.3 1-1.1 1.7.3 1 2.1 1.2 3.2 1.8.7.4 1.5.6 2.1.1.6.2 1.3.3 2.1.3s1.5-.1 2.1-.3c.6.5 1.4.3 2.1-.1 1.1-.6 2.9-.8 3.2-1.8.2-.7-.5-1.3-1.1-1.7.4-.6.6-1.5.3-2.6-.5-2-2-3.5-2.6-4.9-.2-.8 0-1.6 0-2.8C16 3.9 14.4 2 12 2zm-1.4 4.2c.5 0 .8.5.8 1.2s-.3 1.2-.8 1.2-.8-.5-.8-1.2.3-1.2.8-1.2zm2.8 0c.5 0 .8.5.8 1.2s-.3 1.2-.8 1.2-.8-.5-.8-1.2.3-1.2.8-1.2zM12 9.3c.9 0 1.9.5 1.9 1s-1 1.2-1.9 1.2-1.9-.7-1.9-1.2 1-1 1.9-1zm0 3.4c2.2 0 3.6 2.6 3.6 4.4 0 1.5-1.6 2.3-3.6 2.3s-3.6-.8-3.6-2.3c0-1.8 1.4-4.4 3.6-4.4z"/></svg></span>Linux</a><a href="/download#hive"><span class="osmark mini" data-os="hive" title="HiveOS"><svg viewBox="0 0 24 24" width="22" height="22" aria-hidden="true" focusable="false" fill="none" stroke="currentColor" stroke-width="1.7" stroke-linejoin="round" stroke-linecap="round"><path d="M12 2.6 20.2 7.3v9.4L12 21.4 3.8 16.7V7.3z"/><path d="M12 7.4 16 9.7v4.6L12 16.6 8 14.3V9.7z"/><path d="M12 7.4V2.6M16 9.7l4.2-2.4M16 14.3l4.2 2.4M12 16.6v4.8M8 14.3l-4.2 2.4M8 9.7 3.8 7.3"/></svg></span>HiveOS</a></div>
|
||
<a href="https://git.igneum.network/igneum-network/spec" target="_blank" rel="noopener" class="text-link">Specification and test vectors<svg class="icon" viewBox="0 0 24 24" aria-hidden="true"><path d="M6 18 18 6M6 6h12v12"/></svg></a>
|
||
</div>
|
||
<div class="footer-column"><h4>Run</h4><div>
|
||
<a href="/download">Download Ember</a>
|
||
<a href="/miner">The miner</a>
|
||
<a href="/app">The app</a>
|
||
<a href="/wallet">The wallet</a>
|
||
<a href="/miners">GPU bench table</a>
|
||
<a href="/dev-fee">The dev fee</a>
|
||
<a href="/faucet">Devnet faucet</a>
|
||
<a href="/metamask">Add Igneum to MetaMask</a>
|
||
</div></div>
|
||
<div class="footer-column"><h4>Read</h4><div>
|
||
<a href="/litepaper">Litepaper</a>
|
||
<a href="/evidence">Evidence</a>
|
||
<a href="/ledger">Ledger: every criticism</a>
|
||
<a href="/claims">What Igneum does not claim</a>
|
||
<a href="/randomx">Igneum vs RandomX</a>
|
||
<a href="/provenance">Built on the shoulders</a>
|
||
</div></div>
|
||
<div class="footer-column"><h4>Explore</h4><div>
|
||
<a href="/live">Live devnet</a>
|
||
<a href="/explorer">Explorer</a>
|
||
<a href="/build">Build on Igneum</a>
|
||
<a href="/swap">Swap</a>
|
||
<a href="/grants">Grants</a>
|
||
<a href="/download">Downloads: devnet build</a>
|
||
<a href="https://discord.gg/igneum" target="_blank" rel="noopener">Community Discord</a>
|
||
<a href="mailto:hello@igneum.network">hello@igneum.network</a>
|
||
<a href="https://git.igneum.network/igneum-network/spec/issues" rel="noopener">An issue on the spec</a>
|
||
</div></div>
|
||
</div>
|
||
<div class="footer-bottom">
|
||
<p>Igneum Labs LTD · Unit IH-00-01-01-OF-01, Level 01, Innovation One, Dubai International Financial Centre. Experimental software. Nothing on this site is an offer to sell anything.<br>Report a flaw by email or by an issue on the spec. Nobody from Igneum will ask for your seed. © 2026 Igneum · not an offer to sell anything</p>
|
||
<div class="theme-group" role="group" aria-label="Theme"><button type="button" data-theme-set="system" aria-pressed="true">System</button><button type="button" data-theme-set="light" aria-pressed="false">Light</button><button type="button" data-theme-set="dark" aria-pressed="false">Dark</button></div>
|
||
</div>
|
||
</div>
|
||
</footer>
|
||
|
||
<script>
|
||
(function(){
|
||
// theme control: stores light or dark under igneum-theme; system clears it and follows the OS. The head applied the value before paint.
|
||
var bs=document.querySelectorAll('[data-theme-set]');if(!bs.length)return;
|
||
var media=window.matchMedia('(prefers-color-scheme: light)');
|
||
function stored(){try{var t=localStorage.getItem('igneum-theme');return t==='light'||t==='dark'?t:'system';}catch(e){return 'system';}}
|
||
function apply(){var c=stored();document.documentElement.setAttribute('data-theme',c==='system'?(media.matches?'light':'dark'):c);bs.forEach(function(b){b.setAttribute('aria-pressed',b.getAttribute('data-theme-set')===c?'true':'false');});document.dispatchEvent(new CustomEvent('igneum-theme'));}
|
||
bs.forEach(function(b){b.addEventListener('click',function(){var v=b.getAttribute('data-theme-set');try{if(v==='system')localStorage.removeItem('igneum-theme');else localStorage.setItem('igneum-theme',v);}catch(e){}apply();});});
|
||
if(media.addEventListener)media.addEventListener('change',function(){if(stored()==='system')apply();});
|
||
document.addEventListener('igneum-theme',function(){var c=stored();bs.forEach(function(b){b.setAttribute('aria-pressed',b.getAttribute('data-theme-set')===c?'true':'false');});});
|
||
bs.forEach(function(b){b.setAttribute('aria-pressed',b.getAttribute('data-theme-set')===stored()?'true':'false');});
|
||
// the network state word in the status bar: one read of the observer per page view
|
||
var fs=document.getElementById('foot-state'),fd=document.getElementById('foot-dot');if(fs&&fd&&fs.getAttribute('data-devnet-state')==='live'){fetch('/api/live?window=30',{cache:'no-store'}).then(function(r){return r.json();}).then(function(d){var on=d&&d.ok&&d.state&&!d.state.stale;fs.textContent=on?'devnet live':'devnet, observer stale';fd.className='dot '+(on?'live':'off');}).catch(function(){fs.textContent='devnet';});}
|
||
})();
|
||
</script>
|
||
<!-- footer:end -->
|
||
</body>
|
||
</html>
|