Skip to main content
Work index
Tested architectureInstitutionalDemonstratedCS-W-004

The Authorized Path

Authority must survive the conversational interface.

Public, privacy-cleared evidence. The project page distinguishes an implemented artifact from broader claims still under research.

Execution traceNegative controls · Passed
01Authorize

A signed envelope establishes the permitted effect.

02Verify

The execution boundary checks authority independently.

03Prove

Bypasses fail and evidence remains reconstructable.

The approved route working is insufficient; the unauthorized route must fail.

A diagram can claim that action is authorized while an alternate path still reaches execution. Trust requires negative controls: the unauthorized path must demonstrably fail.

Identity belongs to the participant; providers supply capability. Consequential execution should verify authority at the boundary where the effect occurs and leave evidence that can be reconstructed later.

A tested kernel-to-substrate-to-execution-boundary-to-operator slice, signed authorization envelope, replay checks, bypass tests, reconstructable evidence, and a second-machine portability exercise.

What this work does not establish.

  • 01

    The proof does not establish production-scale process or network isolation.

  • 02

    Exactly-once mutation semantics remain unproven.

  • 03

    Frontier-provider substitution, device adapters, and recovery from partial production failures require separate proofs.

The key test is not whether the approved route works. It is whether any unapproved route can produce the same effect.

What the public record currently supports.

These signals are privacy-cleared and intentionally bounded. They show that work exists without inflating maturity or exposing protected source context.

  1. 01

    Both tested bypass paths failed without reaching execution.

  2. 02

    The execution boundary independently verified authorization and rejected replay.

  3. 03

    The evidence object was reconstructed from the ledger after the event.

  4. 04

    A clean checkout on a different physical machine exposed and corrected a real dependency assumption.

Prepare the public evidence packet and extend the proof to mutating effects and provider substitution.

Related research · CS-RC-001 · CS-RC-005

Continue

CS-W-005

Semantic Friction