docs: identify substrate as a software artifact

#2
Files changed (2) hide show
  1. ARTIFACT_MANIFEST.json +193 -0
  2. README.md +27 -10
ARTIFACT_MANIFEST.json ADDED
@@ -0,0 +1,193 @@
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
1
+ {
2
+ "schema_version": 1,
3
+ "artifact_type": "software-documentation-deployment-bundle",
4
+ "repository": "SZLHOLDINGS/a11oy-v19-substrate",
5
+ "repository_type": "model",
6
+ "source_parent_revision": "8af92e07e24b8e184a12cf468733d26dc9022088",
7
+ "digest_algorithm": "sha256",
8
+ "scope": "Every repository file in this candidate snapshot except ARTIFACT_MANIFEST.json.",
9
+ "self_exclusion_reason": "A digest manifest cannot include its own digest without a circular dependency.",
10
+ "entry_count": 36,
11
+ "files": [
12
+ {
13
+ "path": "CITATION.cff",
14
+ "size": 4958,
15
+ "sha256": "bd2426808ba673f3637d5b9d3f4f7a79c18c01050fc3fa4a522e9622df0e4c76"
16
+ },
17
+ {
18
+ "path": "EVAL_TRACE_SAMPLE.jsonl",
19
+ "size": 2486,
20
+ "sha256": "ae0b0831606d506d4d7a5de67e3b8e52b331b2a0afa354d36ca52b52ec406899"
21
+ },
22
+ {
23
+ "path": "INNOVATIONS_DEEP_DIVE.md",
24
+ "size": 3091,
25
+ "sha256": "d2081d7d61fff01a874f535c2dece083ab25d1b2f3a7cf3e92d0c10acd271136"
26
+ },
27
+ {
28
+ "path": "INTEGRATION_QUICKSTART.md",
29
+ "size": 1570,
30
+ "sha256": "ff0e29cbf0557f3fa605dedce80fb2791861ddd0cea45523d75007357af9bee8"
31
+ },
32
+ {
33
+ "path": "INVESTOR_BRIEF.md",
34
+ "size": 2185,
35
+ "sha256": "66b5db617cc84b554cb0940a1283fdc3a345032f821b90125c6337523e8d917e"
36
+ },
37
+ {
38
+ "path": "LICENSE",
39
+ "size": 3003,
40
+ "sha256": "34052e94631b67b1b041caf77f6bf2377bcbf04b8dc31455128de143c1a904ff"
41
+ },
42
+ {
43
+ "path": "NOTICE",
44
+ "size": 531,
45
+ "sha256": "509bf420adac1b56eba677eb9eafe51f78392a8e962def2457dfccab162d8107"
46
+ },
47
+ {
48
+ "path": "README.md",
49
+ "size": 11306,
50
+ "sha256": "8f65b341d9d97389499050640aba272c14775366123fa99b7fac40e5261f4a29"
51
+ },
52
+ {
53
+ "path": "SHOWCASE.md",
54
+ "size": 2925,
55
+ "sha256": "42b1c05460066d98d01f3a708baf308e85865ba5ba85278a4af42c202bad36c2"
56
+ },
57
+ {
58
+ "path": "VERIFICATION.md",
59
+ "size": 1933,
60
+ "sha256": "79acb68828b286c7f784dbe7714c195120f5d073159f63b905f2f84be91063a2"
61
+ },
62
+ {
63
+ "path": "a11oy-metadata.json",
64
+ "size": 1162,
65
+ "sha256": "89ae6accb75aa5557b86019772e10da4abf3cad6157e8daeff460fe37a37d71f"
66
+ },
67
+ {
68
+ "path": "build/package.json",
69
+ "size": 3709,
70
+ "sha256": "192616500dd7a0e1d5424df5d4b10bc9695e79314a818f8635e0f92d5bc9ec3a"
71
+ },
72
+ {
73
+ "path": "build/pnpm-lock.yaml",
74
+ "size": 139312,
75
+ "sha256": "6a808bdf3ea08a5437f8c064356e2efafeb93e51bdc68eabe1047d4a7892f66f"
76
+ },
77
+ {
78
+ "path": "build/pnpm-workspace.yaml",
79
+ "size": 162,
80
+ "sha256": "1ce378f391821ecb1f4a29c1232120a37f83a75d94c934772c0b9f0b42d43986"
81
+ },
82
+ {
83
+ "path": "build/tsconfig.base.json",
84
+ "size": 356,
85
+ "sha256": "fb1bb8d6381bdcec8f17a2c4d64b4b99a21e0bff65cb49ba8c50adc652baf2a7"
86
+ },
87
+ {
88
+ "path": "payloads/deploy/MANIFEST.json",
89
+ "size": 1171,
90
+ "sha256": "406f33bd3df4bd4df032198455b7c39cd6168defb5850ce8e814fd80dc25d655"
91
+ },
92
+ {
93
+ "path": "payloads/deploy/attestations.jsonl",
94
+ "size": 232,
95
+ "sha256": "88f3acf147de2d1da2c47d90d2c6abdaee9ea727863339966f0176afbbbd0dca"
96
+ },
97
+ {
98
+ "path": "payloads/deploy/manifests/a11oy-deployment.yaml",
99
+ "size": 1591,
100
+ "sha256": "416afae523214cdbaa16191bfab36163e6bc1ef51d7b1c167a26613a9a08d4a1"
101
+ },
102
+ {
103
+ "path": "payloads/deploy/manifests/a11oy-namespace.yaml",
104
+ "size": 133,
105
+ "sha256": "641f72c4d7d72ecafc1674816c4a4e8a7445c6d7b4d9b8a4c7e6296417fa91e0"
106
+ },
107
+ {
108
+ "path": "payloads/deploy/manifests/a11oy-service.yaml",
109
+ "size": 310,
110
+ "sha256": "a99b1877a51195720a8f249bccd59b836d4f85461b6418428115b4beb6a41a47"
111
+ },
112
+ {
113
+ "path": "payloads/deploy/manifests/proof-ledger-pvc.yaml",
114
+ "size": 270,
115
+ "sha256": "3804fdcf3a0b6ea767c3aaf3a373f8d82976d1824c9249b27cd515c91d567244"
116
+ },
117
+ {
118
+ "path": "payloads/deploy/zarf.yaml",
119
+ "size": 1950,
120
+ "sha256": "3803d3821c2766523ec28c672d0c73265a58264daa2f51a57f96931c02ce4445"
121
+ },
122
+ {
123
+ "path": "source/CHANGELOG.md",
124
+ "size": 1404,
125
+ "sha256": "6571441936c6a008e9f36fb0a0a8f49721507461763da456fe0f1a98f15a21d5"
126
+ },
127
+ {
128
+ "path": "source/README.md",
129
+ "size": 11603,
130
+ "sha256": "c2b8dcad3f470f60a23f2dd69acb88db77a1dd66c72a5123c744b5a339376fd3"
131
+ },
132
+ {
133
+ "path": "source/ROADMAP.md",
134
+ "size": 2836,
135
+ "sha256": "f4a4f4d3587c4cc492b22ffb1f2669433d585ab9cddbae7b8849f07fbad008c0"
136
+ },
137
+ {
138
+ "path": "source/docs/ECOSYSTEM.md",
139
+ "size": 4936,
140
+ "sha256": "9ab0ba9c16dd68898fc4ef17253af1a0a7f32d6bb7338521fe2a7811db1d18d3"
141
+ },
142
+ {
143
+ "path": "source/docs/INVESTOR_DEMO.md",
144
+ "size": 7771,
145
+ "sha256": "39e21582930e5a7520d0c7c2af80185b287fb3795659f6faa789d13bb43c132a"
146
+ },
147
+ {
148
+ "path": "source/docs/PERPLEXITY_BRIEF.md",
149
+ "size": 3078,
150
+ "sha256": "09ce48cb3518408d459cfce4490e6ae0c0622a4c01680a35787df99b91a92df0"
151
+ },
152
+ {
153
+ "path": "source/docs/PROVENANCE.md",
154
+ "size": 4894,
155
+ "sha256": "fbe2459ccbaa5686de68cde060d77d71465810ebdbab24e9ee6204f8c1183247"
156
+ },
157
+ {
158
+ "path": "source/docs/SERIES_A_DILIGENCE.md",
159
+ "size": 4433,
160
+ "sha256": "b94ffbb57c5d07e83113c2fb7b2302c9ff68e5db49ff13e2a975be31d9694738"
161
+ },
162
+ {
163
+ "path": "source/docs/WARHACKER_UDS_PROOF_POINT.md",
164
+ "size": 2883,
165
+ "sha256": "d91c522573dd0345d5d05b110008b026e527c3de0bea3a27e0386031c4278439"
166
+ },
167
+ {
168
+ "path": "source/docs/ecosystem-readiness-report.json",
169
+ "size": 14294,
170
+ "sha256": "80939d818cf6b47d05fc7e99490a56ca906876f44ea3c272da11bad13031b832"
171
+ },
172
+ {
173
+ "path": "source/docs/ecosystem-registry.json",
174
+ "size": 8973,
175
+ "sha256": "e25b3b99b9987dcef69071e4a11e379c5c39aefcaae75045cf918b54608e5df3"
176
+ },
177
+ {
178
+ "path": "source/docs/huggingface.md",
179
+ "size": 3363,
180
+ "sha256": "9c56139b85a9be9111d3fc0398bc21fb4e5eb94a2bcb1eea3ec3f16bf9239099"
181
+ },
182
+ {
183
+ "path": "source/docs/org-repo-map.md",
184
+ "size": 5678,
185
+ "sha256": "6ca9fc651f1979db490892a316584f69227703631ce1e713eafe1782577e72b2"
186
+ },
187
+ {
188
+ "path": "source/docs/regulatory_to_lambda.md",
189
+ "size": 17427,
190
+ "sha256": "18b1205a03f89a6e79fdb5edadd282ad19945c070d3ffd5ff8ae471e9bb7c635"
191
+ }
192
+ ]
193
+ }
README.md CHANGED
@@ -1,5 +1,7 @@
1
  ---
2
- license: apache-2.0
 
 
3
  language:
4
  - en
5
  tags:
@@ -15,27 +17,42 @@ tags:
15
  - policy
16
  - execution-fabric
17
  - provenance
 
 
 
18
  ecosystem-stage: operational
19
  ---
20
 
21
- # a11oy v19 Substrate Governance Policy Model
22
 
23
  > **⚠️ This is a governance policy/spec card — not a loadable model.** It ships documentation, manifests, proofs, and an eval trace — there is no weights/config artifact to `from_pretrained`. For live governed inference, use the Space: https://huggingface.co/spaces/SZLHOLDINGS/a11oy
24
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
25
  [![DOI](https://zenodo.org/badge/DOI/10.5281/zenodo.20434276.svg)](https://doi.org/10.5281/zenodo.20434276)
26
  [![Lean Kernel Green](https://img.shields.io/badge/Lean_4.13--kernel--green@c7c0ba17-22c55e?style=flat-square)](https://github.com/szl-holdings/lutar-lean/commit/c7c0ba17)
27
  [![Sorries](https://img.shields.io/badge/sorries-163_total_(112_baseline%2B51_Putnam)-blue?style=flat-square)](https://github.com/szl-holdings/lutar-lean/commit/c7c0ba17)
28
- [![SLSA L1](https://img.shields.io/badge/SLSA-L1_SBOM+DCO-blue?style=flat-square)](https://slsa.dev)
29
- [![DSSE](https://img.shields.io/badge/DSSE-PAE_v1-22c55e?style=flat-square)](https://github.com/secure-systems-lab/dsse)
30
  [![RAE-1](https://img.shields.io/badge/RAE--1-v1.0-D97757?style=flat-square)](https://github.com/szl-holdings/a11oy/pull/122)
31
  [![MCP](https://img.shields.io/badge/MCP-server_live-ff6b35?style=flat-square)](https://huggingface.co/spaces/SZLHOLDINGS/hatun-mcp)
32
- [![License](https://img.shields.io/badge/License-Apache_2.0-blue?style=flat-square)](https://www.apache.org/licenses/LICENSE-2.0)
33
 
34
  > **Doctrine v11 LOCKED.** No marketing. Every number resolves to a CI log, a Lean proof, or a Zenodo DOI.
35
 
36
- Governance policy model card for a11oy v19 the governed execution fabric organ. Policy weights are DSSE-signed at training time and verified against the Lean kernel at [lutar-lean@c7c0ba17](https://github.com/szl-holdings/lutar-lean/commit/c7c0ba17). 9 packages, 248 unit assertions.
37
 
38
- The model encodes the 44-formula anchor gate set as hard policy constraints. No agentic action passes without clearing all 44 anchor formula gates. RAE-1 protocol ([a11oy#122](https://github.com/szl-holdings/a11oy/pull/122)) defines the authorization handshake sequence.
39
 
40
  Live receipts: [a11oy Space](https://huggingface.co/spaces/SZLHOLDINGS/a11oy). DOI: [10.5281/zenodo.20431181](https://doi.org/10.5281/zenodo.20431181).
41
 
@@ -48,7 +65,7 @@ Live receipts: [a11oy Space](https://huggingface.co/spaces/SZLHOLDINGS/a11oy). D
48
  > load the **runtime** governed kernels that enforce this policy from
49
  > [`szl-kernels`](https://huggingface.co/SZLHOLDINGS/szl-kernels).
50
 
51
- **1) Fetch this card's artifacts (docs, DSSE-signed deploy manifests, proofs, eval trace):**
52
 
53
  ```bash
54
  pip install huggingface_hub
@@ -66,8 +83,8 @@ meta = hf_hub_download("SZLHOLDINGS/a11oy-v19-substrate", "a11oy-metadata.json"
66
  ```
67
 
68
  *Output (not executed here):* local filesystem paths to the cached snapshot / files. There is
69
- **no** weights/config artifact to `from_pretrained` this card publishes documentation, signed
70
- deploy manifests, Lean-proof pointers, and a sample eval trace, not model weights.
71
 
72
  **2) Load the runtime kernels that enforce this policy (the loadable half of the estate):**
73
 
 
1
  ---
2
+ license: other
3
+ license_name: licenseref-szl-proprietary
4
+ license_link: https://huggingface.co/SZLHOLDINGS/a11oy-v19-substrate/blob/main/LICENSE
5
  language:
6
  - en
7
  tags:
 
17
  - policy
18
  - execution-fabric
19
  - provenance
20
+ - software-artifact
21
+ - deployment-manifests
22
+ - no-model-weights
23
  ecosystem-stage: operational
24
  ---
25
 
26
+ # a11oy v19 Substrate - Software and Deployment Artifact Bundle
27
 
28
  > **⚠️ This is a governance policy/spec card — not a loadable model.** It ships documentation, manifests, proofs, and an eval trace — there is no weights/config artifact to `from_pretrained`. For live governed inference, use the Space: https://huggingface.co/spaces/SZLHOLDINGS/a11oy
29
 
30
+ ## Artifact identity and trust boundary
31
+
32
+ | Field | Verified repository fact |
33
+ |---|---|
34
+ | Artifact type | Software, documentation, and deployment-manifest bundle stored in a Hugging Face **model** repository for URL compatibility. |
35
+ | Model weights | **None.** The file tree contains no weight, tokenizer, or ML inference configuration files. |
36
+ | Loadability | Not compatible with `transformers`, `diffusers`, `from_pretrained`, or the Hugging Face Inference API. |
37
+ | Evaluation evidence | `EVAL_TRACE_SAMPLE.jsonl` contains two records marked `demo: true`. It is a sample trace, not a benchmark or evidence of model quality, safety, or performance. |
38
+ | Deployment integrity | `payloads/deploy/MANIFEST.json` records SHA-256 digests for six deploy files. `attestations.jsonl` names a signer but contains no cryptographic signature bytes, so this repository does not independently establish signature verification. |
39
+ | License | `LicenseRef-SZL-Proprietary` under [`LICENSE`](./LICENSE); Hub metadata uses `license: other`. No Apache-2.0 grant is made by this repository. |
40
+ | Full snapshot inventory | [`ARTIFACT_MANIFEST.json`](./ARTIFACT_MANIFEST.json) records byte sizes and SHA-256 digests for every file in this candidate snapshot except the manifest itself. |
41
+
42
+ The Hub repository type is a distribution location only; it does not imply that this bundle is an ML model. Runtime, proof, signature, and deployment claims require verification against their separately referenced canonical systems.
43
+
44
  [![DOI](https://zenodo.org/badge/DOI/10.5281/zenodo.20434276.svg)](https://doi.org/10.5281/zenodo.20434276)
45
  [![Lean Kernel Green](https://img.shields.io/badge/Lean_4.13--kernel--green@c7c0ba17-22c55e?style=flat-square)](https://github.com/szl-holdings/lutar-lean/commit/c7c0ba17)
46
  [![Sorries](https://img.shields.io/badge/sorries-163_total_(112_baseline%2B51_Putnam)-blue?style=flat-square)](https://github.com/szl-holdings/lutar-lean/commit/c7c0ba17)
 
 
47
  [![RAE-1](https://img.shields.io/badge/RAE--1-v1.0-D97757?style=flat-square)](https://github.com/szl-holdings/a11oy/pull/122)
48
  [![MCP](https://img.shields.io/badge/MCP-server_live-ff6b35?style=flat-square)](https://huggingface.co/spaces/SZLHOLDINGS/hatun-mcp)
49
+ [![License](https://img.shields.io/badge/License-SZL_Proprietary-blue?style=flat-square)](./LICENSE)
50
 
51
  > **Doctrine v11 LOCKED.** No marketing. Every number resolves to a CI log, a Lean proof, or a Zenodo DOI.
52
 
53
+ Distribution card for the a11oy v19 software, documentation, and deployment bundle. It contains no policy weights and makes no training-time signature claim. Runtime tests and Lean references described below belong to separately referenced source repositories and are not reproduced by loading this Hub repository.
54
 
55
+ The accompanying policy specification describes a 44-formula anchor gate set and references the RAE-1 protocol ([a11oy#122](https://github.com/szl-holdings/a11oy/pull/122)). Those are software/policy claims, not learned model behavior, and must be checked at the pinned source and CI references.
56
 
57
  Live receipts: [a11oy Space](https://huggingface.co/spaces/SZLHOLDINGS/a11oy). DOI: [10.5281/zenodo.20431181](https://doi.org/10.5281/zenodo.20431181).
58
 
 
65
  > load the **runtime** governed kernels that enforce this policy from
66
  > [`szl-kernels`](https://huggingface.co/SZLHOLDINGS/szl-kernels).
67
 
68
+ **1) Fetch this card's artifacts (docs, SHA-256-manifested deploy files, provenance references, and demo trace):**
69
 
70
  ```bash
71
  pip install huggingface_hub
 
83
  ```
84
 
85
  *Output (not executed here):* local filesystem paths to the cached snapshot / files. There is
86
+ **no** weights/config artifact to `from_pretrained` - this card publishes documentation,
87
+ checksummed deploy files, proof references, and a demo trace, not model weights or evaluation results.
88
 
89
  **2) Load the runtime kernels that enforce this policy (the loadable half of the estate):**
90