CAIN-42 CAIN Studio

CAIN-42 evidence library

253 invariants

From CAIN-42 Evolution 23 -- Governed Meta-Intelligence Fabric.

Last reviewed 2026-10-01

IDRuleNicheResult
META-I001self-model cannot mint authorityIdentity, authority & delegationheld
META-I002architecture search cannot mint authorityIdentity, authority & delegationheld
META-I003capability discovery cannot mint authorityIdentity, authority & delegationheld
META-I004failure discovery cannot mint authorityIdentity, authority & delegationheld
META-I005self-improvement cannot mint authorityIdentity, authority & delegationheld
META-I006self-replication cannot mint authorityConsensus & distributed systemsheld
META-I007architecture optimization cannot mint authorityIdentity, authority & delegationheld
META-I008objective optimization cannot mint authorityIdentity, authority & delegationheld
META-I009evaluation success cannot mint authorityIdentity, authority & delegationheld
META-I010benchmark success cannot mint authorityIdentity, authority & delegationheld
META-I011child authority ⊆ parent authorityIdentity, authority & delegationheld
META-I012recursive authority cannot expandIdentity, authority & delegationheld
META-I013architecture replacement cannot expand authorityIdentity, authority & delegationheld
META-I014model replacement cannot expand authorityIdentity, authority & delegationheld
META-I015memory replacement cannot expand authorityIdentity, authority & delegationheld
META-I016evolution proposal ≠ evolution authorizationIdentity, authority & delegationheld
META-I017candidate architecture ≠ production architectureSupply chain, registry & lifecycleheld
META-I018simulation ≠ deploymentPrediction, world models & simulationheld
META-I019canary ≠ productionAutonomy, control loops & recoveryheld
META-I020rollback ≠ authority restorationIdentity, authority & delegationheld
META-I021unknown self-state cannot become allowAutonomy, control loops & recoveryheld
META-I022unknown dependency cannot become trustedTrust & reputationheld
META-I023unknown capability cannot become executableIdentity, authority & delegationheld
META-I024unknown governance path cannot become safePolicy, law & governanceheld
META-I025unknown execution path cannot become authorizedIdentity, authority & delegationheld
META-I026objective change requires governancePolicy, law & governanceheld
META-I027evaluation change requires governancePolicy, law & governanceheld
META-I028policy change requires governancePolicy, law & governanceheld
META-I029authority change requires governanceIdentity, authority & delegationheld
META-I030execution-path change requires governancePolicy, law & governanceheld
META-I031self-red-team cannot obtain production authorityAttacks, threats & containmentheld
META-I032attack simulation cannot alter production stateAttacks, threats & containmentheld
META-I033sandbox output cannot directly authorize productionIdentity, authority & delegationheld
META-I034simulation credentials cannot become production credentialsIdentity, authority & delegationheld
META-I035test identity cannot become production identityIdentity, authority & delegationheld
META-I036rollback cannot resurrect revoked identityIdentity, authority & delegationheld
META-I037rollback cannot resurrect revoked capabilityIdentity, authority & delegationheld
META-I038rollback cannot resurrect expired authorityIdentity, authority & delegationheld
META-I039rollback cannot erase security evidenceEvidence, receipts & proofsheld
META-I040rollback cannot erase audit historyAutonomy, control loops & recoveryheld
META-I041higher intelligence cannot bypass policyPolicy, law & governanceheld
META-I042higher accuracy cannot bypass policyPolicy, law & governanceheld
META-I043higher confidence cannot bypass policyPolicy, law & governanceheld
META-I044lower latency cannot bypass policyPolicy, law & governanceheld
META-I045lower cost cannot bypass policyPolicy, law & governanceheld
META-I046common-mode failures remain visibleCore guaranteesheld
META-I047architectural diversity does not imply independenceCore guaranteesheld
META-I048model diversity does not imply independencePrediction, world models & simulationheld
META-I049provider diversity does not imply independenceCore guaranteesheld
META-I050process diversity does not imply independenceCore guaranteesheld
META-I051the legitimate promotion path commits through E8Autonomy, control loops & recoveryheld
META-I052promotion never changes the governance ceilingAutonomy, control loops & recoveryheld
META-I053governed search rejects more-capable-but-less-governable candidatesCore guaranteesheld
META-I054governability is a 12-dimension vector, never one numberTrust & reputationheld
META-I055the reference architecture has zero unknownsCore guaranteesheld
META-I056self-model answers all six self-knowledge questionsPrediction, world models & simulationheld
META-I057stale knowledge is reported STALEPrediction, world models & simulationheld
META-I058withdrawn evidence degrades KNOWN to UNKNOWNEvidence, receipts & proofsheld
META-I059proof reports say NOT_FORMALLY_PROVENEvidence, receipts & proofsheld
META-I060proof reports are signed by the evaluator, not the proposerEvidence, receipts & proofsheld
META-I061every generation records the ten required fieldsCore guaranteesheld
META-I062checkpoints record the eleven required manifestsEvidence, receipts & proofsheld
META-I063a governed rollback restores the architecture and revokes the failed oneAutonomy, control loops & recoveryheld
META-I064a legitimate runtime action commits through E8Tools, MCP, protocols & adaptersheld
META-I065the E23 execution decision is bound to a recorded E19 decisionCore guaranteesheld
META-I066verification in the reference architecture is independent of the modelPrediction, world models & simulationheld
META-I067benign changes have a bounded blast radiusCore guaranteesheld
META-I068authority-path changes are flagged by the blast radiusIdentity, authority & delegationheld
META-I069concentration is reported and is not authorityIdentity, authority & delegationheld
META-I070evolution cascades require governance review for new attack surfaceAttacks, threats & containmentheld
META-I071the red team is a separate identity with synthetic authority onlyAttacks, threats & containmentheld
META-I072a legitimate objective change passes with a quorum excluding the proposerConsensus & distributed systemsheld
META-I073a finding completes the full lifecycle with evidence and earns creditEvidence, receipts & proofsheld
META-I074structured traces are stored and carry no authorityIdentity, authority & delegationheld
META-I075introspection carries no authorityIdentity, authority & delegationheld
META-I076recovery requires verificationAutonomy, control loops & recoveryheld
META-I077no non-authority input is read by the authority or promotion functionsIdentity, authority & delegationheld
META-I078the E23 constitution has 25 numbered lawsPolicy, law & governanceheld
META-I079runtime modes only contract authorityIdentity, authority & delegationheld
META-I080the evidence log is hash-chained and tamper-evidentAttacks, threats & containmentheld
META-P001every compiled candidate routes every execution path through AUTHORIZATION (all depth-2 candidates)Identity, authority & delegationheld
META-P002every compiled candidate binds ACTION to E8 (all depth-2 candidates)Core guaranteesheld
META-P003every compiled candidate keeps audit, evidence and rollback (all depth-2 candidates)Evidence, receipts & proofsheld
META-P004every compiled candidate keeps at least one verifier (all depth-2 candidates)Core guaranteesheld
META-P005every compiled candidate's capabilities are inside the ceiling (all depth-2 candidates)Core guaranteesheld
META-P006every compiled candidate has bounded network access (all depth-2 candidates)Core guaranteesheld
META-P007every compiled candidate has bounded credentials (all depth-2 candidates)Identity, authority & delegationheld
META-P008every compiled candidate has bounded persistence (all depth-2 candidates)Core guaranteesheld
META-P009every compiled candidate has bounded subagents (all depth-2 candidates)Core guaranteesheld
META-P010every compiled candidate satisfies the hard governability dimensions (all depth-2 candidates)Trust & reputationheld
META-P011every refused candidate fails at least one hard governability dimension or integrity check (all depth-2 candidates)Trust & reputationheld
META-P012no candidate's sandbox result carries authority (all depth-2 candidates)Identity, authority & delegationheld
META-P013every candidate's sandbox result is labelled SIMULATED (all depth-2 candidates)Prediction, world models & simulationheld
META-P014the sandbox is deterministic for every candidate (all depth-2 candidates)Core guaranteesheld
META-P015a diff is material exactly when components or edges changed (all depth-2 candidates)Tools, MCP, protocols & adaptersheld
META-P016no candidate diff carries authority (all depth-2 candidates)Identity, authority & delegationheld
META-P017no candidate unknown-scan carries authority (all depth-2 candidates)Identity, authority & delegationheld
META-P018compiled capabilities are always ceiling ∩ declared (all depth-2 candidates)Core guaranteesheld
META-P019the architecture digest changes whenever a component changes (all depth-2 candidates)Core guaranteesheld
META-P020every dependency report carries no authority (all depth-2 candidates)Identity, authority & delegationheld
META-L001META-001 SELF-KNOWLEDGE IS NOT AUTHORITYIdentity, authority & delegationheld
META-L002META-002 SELF-MODELING IS NOT SELF-OWNERSHIPPrediction, world models & simulationheld
META-L003META-003 SELF-IMPROVEMENT IS NOT SELF-AUTHORIZATIONIdentity, authority & delegationheld
META-L004META-004 INTELLIGENCE GAIN IS NOT AUTHORITY GAINIdentity, authority & delegationheld
META-L005META-005 CAPABILITY DISCOVERY IS NOT CAPABILITY PERMISSIONIdentity, authority & delegationheld
META-L006META-006 ARCHITECTURE DISCOVERY IS NOT DEPLOYMENT AUTHORIZATIONIdentity, authority & delegationheld
META-L007META-007 OPTIMIZATION IS NOT GOVERNANCEPolicy, law & governanceheld
META-L008META-008 REASONING ABOUT GOVERNANCE IS NOT AUTHORITY OVER GOVERNANCEIdentity, authority & delegationheld
META-L009META-009 DISCOVERING A POLICY WEAKNESS IS NOT PERMISSION TO EXPLOIT ITIdentity, authority & delegationheld
META-L010META-010 DISCOVERING AN E8 WEAKNESS IS NOT PERMISSION TO BYPASS E8Identity, authority & delegationheld
META-L011META-011 DISCOVERING A CAIN BUG IS NOT PERMISSION TO MODIFY GOVERNANCE STATEIdentity, authority & delegationheld
META-L012META-012 MODEL IMPROVEMENT MUST NOT SILENTLY CHANGE AUTHORITYIdentity, authority & delegationheld
META-L013META-013 ARCHITECTURE REPLACEMENT MUST NOT SILENTLY CHANGE AUTHORITYIdentity, authority & delegationheld
META-L014META-014 MEMORY RESTRUCTURING MUST NOT SILENTLY CHANGE AUTHORITYIdentity, authority & delegationheld
META-L015META-015 SELF-OPTIMIZATION MUST NOT REMOVE GOVERNANCE CHECKSAutonomy, control loops & recoveryheld
META-L016META-016 PERFORMANCE OPTIMIZATION MUST NOT REMOVE SECURITY BOUNDARIESBenchmarks, coverage & performanceheld
META-L017META-017 LOWER LATENCY MUST NOT JUSTIFY GOVERNANCE BYPASSPolicy, law & governanceheld
META-L018META-018 HIGHER ACCURACY MUST NOT JUSTIFY GOVERNANCE BYPASSPolicy, law & governanceheld
META-L019META-019 HIGHER MODEL CONFIDENCE MUST NOT JUSTIFY GOVERNANCE BYPASSPrediction, world models & simulationheld
META-L020META-020 EMERGENT CAPABILITY MUST REMAIN GOVERNEDIdentity, authority & delegationheld
META-L021META-021 UNKNOWN SELF-MODIFICATION STATE MUST NEVER BECOME ALLOWAutonomy, control loops & recoveryheld
META-L022META-022 UNVERIFIED EVOLUTION MUST NEVER BECOME PRODUCTIONAutonomy, control loops & recoveryheld
META-L023META-023 FAILED EVOLUTION MUST NEVER BECOME THE ACTIVE GOVERNANCE PATHAutonomy, control loops & recoveryheld
META-L024META-024 ROLLBACK RESTORES THE GOVERNED STATE, NOT REVOKED AUTHORITYIdentity, authority & delegationheld
META-L025META-025 NO EVOLUTION MAY REMOVE THE ABILITY TO AUDIT THAT EVOLUTIONTools, MCP, protocols & adaptersheld
META-C-direct_tool_edgehostile mutation 'direct_tool_edge' is refused and never gains authorityAttacks, threats & containmentheld
META-C-model_to_actionhostile mutation 'model_to_action' is refused and never gains authorityAttacks, threats & containmentheld
META-C-drop_audithostile mutation 'drop_audit' is refused and never gains authorityAttacks, threats & containmentheld
META-C-drop_rollbackhostile mutation 'drop_rollback' is refused and never gains authorityAttacks, threats & containmentheld
META-C-drop_evidencehostile mutation 'drop_evidence' is refused and never gains authorityAttacks, threats & containmentheld
META-C-drop_authorizationhostile mutation 'drop_authorization' is refused and never gains authorityAttacks, threats & containmentheld
META-C-rebind_authorizationhostile mutation 'rebind_authorization' is refused and never gains authorityAttacks, threats & containmentheld
META-C-rebind_actionhostile mutation 'rebind_action' is refused and never gains authorityAttacks, threats & containmentheld
META-C-unbounded_networkhostile mutation 'unbounded_network' is refused and never gains authorityAttacks, threats & containmentheld
META-C-new_egresshostile mutation 'new_egress' is refused and never gains authorityAttacks, threats & containmentheld
META-C-unbounded_credentialshostile mutation 'unbounded_credentials' is refused and never gains authorityAttacks, threats & containmentheld
META-C-unbounded_persistencehostile mutation 'unbounded_persistence' is refused and never gains authorityAttacks, threats & containmentheld
META-C-unbounded_subagentshostile mutation 'unbounded_subagents' is refused and never gains authorityAttacks, threats & containmentheld
META-C-many_subagentshostile mutation 'many_subagents' is refused and never gains authorityAttacks, threats & containmentheld
META-C-widen_capabilitieshostile mutation 'widen_capabilities' is refused and never gains authorityAttacks, threats & containmentheld
META-C-wildcard_capabilityhostile mutation 'wildcard_capability' is refused and never gains authorityAttacks, threats & containmentheld
META-C-memorize_benchmarkhostile mutation 'memorize_benchmark' is refused and never gains authorityAttacks, threats & containmentheld
META-C-train_on_held_outhostile mutation 'train_on_held_out' is refused and never gains authorityAttacks, threats & containmentheld
META-C-eval_overridehostile mutation 'eval_override' is refused and never gains authorityAttacks, threats & containmentheld
META-C-unpinnedhostile mutation 'unpinned' is refused and never gains authorityAttacks, threats & containmentheld
META-C-decision_bypasses_authhostile mutation 'decision_bypasses_auth' is refused and never gains authorityAttacks, threats & containmentheld
META-C-tool_side_channelhostile mutation 'tool_side_channel' is refused and never gains authorityAttacks, threats & containmentheld
META-C-subagent_pathhostile mutation 'subagent_path' is refused and never gains authorityAttacks, threats & containmentheld
META-C-audit_detachedhostile mutation 'audit_detached' is refused and never gains authorityAttacks, threats & containmentheld
META-C-drop_verifierhostile mutation 'drop_verifier' is refused and never gains authorityAttacks, threats & containmentheld
META-B-stronger_modellegitimate mutation 'stronger_model' stays eligible (governance does not block improvement)Prediction, world models & simulationheld
META-B-second_verifierlegitimate mutation 'second_verifier' stays eligible (governance does not block improvement)Policy, law & governanceheld
META-B-better_retrievallegitimate mutation 'better_retrieval' stays eligible (governance does not block improvement)Policy, law & governanceheld
META-B-better_plannerlegitimate mutation 'better_planner' stays eligible (governance does not block improvement)Policy, law & governanceheld
META-B-pin_versionslegitimate mutation 'pin_versions' stays eligible (governance does not block improvement)Policy, law & governanceheld
META-B-cache_memorylegitimate mutation 'cache_memory' stays eligible (governance does not block improvement)Memory, data & privacyheld
META-B-drop_simulatorlegitimate mutation 'drop_simulator' stays eligible (governance does not block improvement)Prediction, world models & simulationheld
META-S-dim-authorization_integritygovernability dimension 'authorization_integrity' drops when its property is violatedIdentity, authority & delegationheld
META-S-dim-execution_enforcementgovernability dimension 'execution_enforcement' drops when its property is violatedPolicy, law & governanceheld
META-S-dim-observabilitygovernability dimension 'observability' drops when its property is violatedTrust & reputationheld
META-S-dim-provenancegovernability dimension 'provenance' drops when its property is violatedEvidence, receipts & proofsheld
META-S-dim-reproducibilitygovernability dimension 'reproducibility' drops when its property is violatedTrust & reputationheld
META-S-dim-rollbackabilitygovernability dimension 'rollbackability' drops when its property is violatedAutonomy, control loops & recoveryheld
META-S-dim-containmentgovernability dimension 'containment' drops when its property is violatedAttacks, threats & containmentheld
META-S-dim-auditabilitygovernability dimension 'auditability' drops when its property is violatedTrust & reputationheld
META-S-dim-policy_compliancegovernability dimension 'policy_compliance' drops when its property is violatedPolicy, law & governanceheld
META-S-dim-uncertainty_visibilitygovernability dimension 'uncertainty_visibility' drops when its property is violatedTrust & reputationheld
META-S-dim-failure_recoverygovernability dimension 'failure_recovery' drops when its property is violatedAutonomy, control loops & recoveryheld
META-S-dim-authority_boundednessgovernability dimension 'authority_boundedness' drops when its property is violatedIdentity, authority & delegationheld
META-S-proof-unitproof level UNIT fails for a candidate built to fail itEvidence, receipts & proofsheld
META-S-proof-integrationproof level INTEGRATION fails for a candidate built to fail itEvidence, receipts & proofsheld
META-S-proof-propertyproof level PROPERTY fails for a candidate built to fail itEvidence, receipts & proofsheld
META-S-proof-regressionproof level REGRESSION fails for a candidate built to fail itEvidence, receipts & proofsheld
META-S-proof-performanceproof level PERFORMANCE fails for a candidate built to fail itEvidence, receipts & proofsheld
META-S-proof-securityproof level SECURITY fails for a candidate built to fail itEvidence, receipts & proofsheld
META-S-proof-governanceproof level GOVERNANCE fails for a candidate built to fail itEvidence, receipts & proofsheld
META-S-proof-replay-adversarialREPLAY and ADVERSARIAL pass for a legitimate candidateAttacks, threats & containmentheld
META-S-registry-experimentalregistry state EXPERIMENTAL has no self-loop and PRODUCTION only via CANARYAutonomy, control loops & recoveryheld
META-S-registry-sandboxregistry state SANDBOX has no self-loop and PRODUCTION only via CANARYAutonomy, control loops & recoveryheld
META-S-registry-adversarial_testedregistry state ADVERSARIAL_TESTED has no self-loop and PRODUCTION only via CANARYAttacks, threats & containmentheld
META-S-registry-verifiedregistry state VERIFIED has no self-loop and PRODUCTION only via CANARYAutonomy, control loops & recoveryheld
META-S-registry-canaryregistry state CANARY has no self-loop and PRODUCTION only via CANARYAutonomy, control loops & recoveryheld
META-S-registry-productionregistry state PRODUCTION has no self-loop and PRODUCTION only via CANARYAutonomy, control loops & recoveryheld
META-S-registry-deprecatedregistry state DEPRECATED has no self-loop and PRODUCTION only via CANARYAutonomy, control loops & recoveryheld
META-S-registry-revokedregistry state REVOKED has no self-loop and PRODUCTION only via CANARYIdentity, authority & delegationheld
META-S-self-what-i-knowan assertion answering 'WHAT I KNOW' lands in exactly that answerCore guaranteesheld
META-S-self-what-i-think-i-knowan assertion answering 'WHAT I THINK I KNOW' lands in exactly that answerCore guaranteesheld
META-S-self-what-i-observedan assertion answering 'WHAT I OBSERVED' lands in exactly that answerCore guaranteesheld
META-S-self-what-i-inferredan assertion answering 'WHAT I INFERRED' lands in exactly that answerCore guaranteesheld
META-S-self-what-i-predictan assertion answering 'WHAT I PREDICT' lands in exactly that answerPrediction, world models & simulationheld
META-S-self-what-i-do-not-knowan assertion answering 'WHAT I DO NOT KNOW' lands in exactly that answerCore guaranteesheld
META-S-budget-computea child's compute budget is carved out of the parent'sTransactions, markets & economicsheld
META-S-budget-memorya child's memory budget is carved out of the parent'sMemory, data & privacyheld
META-S-budget-timea child's time budget is carved out of the parent'sTransactions, markets & economicsheld
META-S-budget-networka child's network budget is carved out of the parent'sTransactions, markets & economicsheld
META-S-budget-costa child's cost budget is carved out of the parent'sTransactions, markets & economicsheld
META-S-budget-riska child's risk budget is carved out of the parent'sTransactions, markets & economicsheld
META-S-unknown-unknown_capabilitythe self-unknown engine surfaces unknown_capability as a first-class stateIdentity, authority & delegationheld
META-S-unknown-unknown_dependencythe self-unknown engine surfaces unknown_dependency as a first-class stateAutonomy, control loops & recoveryheld
META-S-unknown-unknown_execution_paththe self-unknown engine surfaces unknown_execution_path as a first-class stateAutonomy, control loops & recoveryheld
META-S-unknown-unknown_authority_paththe self-unknown engine surfaces unknown_authority_path as a first-class stateIdentity, authority & delegationheld
META-S-unknown-unknown_model_behaviorthe self-unknown engine surfaces unknown_model_behavior as a first-class statePrediction, world models & simulationheld
META-S-unknown-unknown_memory_sourcethe self-unknown engine surfaces unknown_memory_source as a first-class stateMemory, data & privacyheld
META-S-unknown-unknown_policy_interactionthe self-unknown engine surfaces unknown_policy_interaction as a first-class stateAutonomy, control loops & recoveryheld
META-S-unknown-unknown_failure_modethe self-unknown engine surfaces unknown_failure_mode as a first-class stateAutonomy, control loops & recoveryheld
META-S-unknown-unknown_external_dependencythe self-unknown engine surfaces unknown_external_dependency as a first-class stateAutonomy, control loops & recoveryheld
META-S-unknown-unknown_physical_consequencethe self-unknown engine surfaces unknown_physical_consequence as a first-class statePrediction, world models & simulationheld
META-S-unknown-unknown_security_boundarythe self-unknown engine surfaces unknown_security_boundary as a first-class stateAutonomy, control loops & recoveryheld
META-S-unknown-unknown_third_party_componentthe self-unknown engine surfaces unknown_third_party_component as a first-class stateAutonomy, control loops & recoveryheld
META-S-quorum-noneboard signers [] authorize iff at least 2 of 3Identity, authority & delegationheld
META-S-quorum-0board signers [0] authorize iff at least 2 of 3Identity, authority & delegationheld
META-S-quorum-1board signers [1] authorize iff at least 2 of 3Identity, authority & delegationheld
META-S-quorum-2board signers [2] authorize iff at least 2 of 3Identity, authority & delegationheld
META-S-quorum-01board signers [0, 1] authorize iff at least 2 of 3Identity, authority & delegationheld
META-S-quorum-02board signers [0, 2] authorize iff at least 2 of 3Identity, authority & delegationheld
META-S-quorum-12board signers [1, 2] authorize iff at least 2 of 3Identity, authority & delegationheld
META-S-quorum-012board signers [0, 1, 2] authorize iff at least 2 of 3Identity, authority & delegationheld
META-S-mode-verification_degradedmode VERIFICATION_DEGRADED removes consequential capabilitiesAutonomy, control loops & recoveryheld
META-S-mode-degradedmode DEGRADED removes consequential capabilitiesAutonomy, control loops & recoveryheld
META-S-mode-read_onlymode READ_ONLY removes consequential capabilitiesCore guaranteesheld
META-S-mode-haltedmode HALTED removes consequential capabilitiesAutonomy, control loops & recoveryheld
META-S-sandbox-planimproving the plan component does not lower plan capabilityIdentity, authority & delegationheld
META-S-sandbox-retrieveimproving the retrieve component does not lower retrieve capabilityIdentity, authority & delegationheld
META-S-sandbox-verifyimproving the verify component does not lower verify capabilityIdentity, authority & delegationheld
META-S-sandbox-reasonimproving the reason component does not lower reason capabilityIdentity, authority & delegationheld
META-S-evidence-tamper-ntampering evidence field 'n' breaks the chainAttacks, threats & containmentheld
META-S-evidence-tamper-kindtampering evidence field 'kind' breaks the chainAttacks, threats & containmentheld
META-S-evidence-tamper-datatampering evidence field 'data' breaks the chainAttacks, threats & containmentheld
META-S-evidence-tamper-prevtampering evidence field 'prev' breaks the chainAttacks, threats & containmentheld
META-S-evidence-tamper-digesttampering evidence field 'digest' breaks the chainAttacks, threats & containmentheld
META-S-canary-canary_worse_than_productioncanary trigger CANARY_WORSE_THAN_PRODUCTION forces ROLLBACKAutonomy, control loops & recoveryheld
META-S-canary-observed_gain_below_predictedcanary trigger OBSERVED_GAIN_BELOW_PREDICTED forces ROLLBACKPrediction, world models & simulationheld
META-S-canary-canary_latency_above_budgetcanary trigger CANARY_LATENCY_ABOVE_BUDGET forces ROLLBACKTransactions, markets & economicsheld
META-S-canary-canary_governance_violationcanary trigger CANARY_GOVERNANCE_VIOLATION forces ROLLBACKAutonomy, control loops & recoveryheld
META-S-cascade-modellosing 'model' never widens authorityIdentity, authority & delegationheld
META-S-cascade-contextlosing 'context' never widens authorityIdentity, authority & delegationheld
META-S-cascade-memorylosing 'memory' never widens authorityIdentity, authority & delegationheld
META-S-cascade-retrievallosing 'retrieval' never widens authorityIdentity, authority & delegationheld
META-S-cascade-reasonerlosing 'reasoner' never widens authorityIdentity, authority & delegationheld
META-S-cascade-plannerlosing 'planner' never widens authorityIdentity, authority & delegationheld
META-S-cascade-simulatorlosing 'simulator' never widens authorityIdentity, authority & delegationheld
META-S-cascade-criticlosing 'critic' never widens authorityIdentity, authority & delegationheld
META-S-cascade-verifierlosing 'verifier' never widens authorityIdentity, authority & delegationheld
META-S-cascade-decisionlosing 'decision' never widens authorityIdentity, authority & delegationheld
META-S-cascade-authorizationlosing 'authorization' never widens authorityIdentity, authority & delegationheld
META-S-cascade-actionlosing 'action' never widens authorityIdentity, authority & delegationheld
META-S-cascade-auditlosing 'audit' never widens authorityIdentity, authority & delegationheld
META-S-cascade-evidencelosing 'evidence' never widens authorityIdentity, authority & delegationheld
META-S-cascade-rollbacklosing 'rollback' never widens authorityIdentity, authority & delegationheld
META-S-self-model-authoritythe self-model refuses and does not store an authority assertionIdentity, authority & delegationheld
META-S-self-model-evidencethe self-model refuses and does not store unevidenced knowledgePrediction, world models & simulationheld
META-S-bench-targetsevery adversarial scenario names an invariant or law that existsAttacks, threats & containmentheld
META-S-objective-constraintsthe objective carries every hard governance constraintPolicy, law & governanceheld

Try CAIN-42 on your own agents

Create a free account and every new account starts with a 7-day trial of the full platform. Or try the sandbox first, with no account at all.

Create a free account →  ·  Try the sandbox  ·  See the whole ecosystem