CAIN-42 invariant · E32
E32-RUNTIME-os: os swap never inherits authority
Held · CAIN-42 Evolution 32 -- Governed Autonomy Learning Fabric
Last reviewed 2026-10-01
held niche Tools, MCP, protocols & adapters · family runtime_swap
What this rule means
CAIN-42 must always satisfy: os swap never inherits authority. It is one of 303 invariants checked for CAIN-42 Evolution 32 -- Governed Autonomy Learning Fabric. An invariant is a rule the system may never break, whatever an agent or attacker does; the test suite tries to break it across many scenarios and records the result.
Recorded detail
{'scenarios': 5, 'not_held': []}Verify it in your browser
Your browser downloads the bundle's SHA256SUMS manifest and the file(s) behind this page, hashes them with SHA-256 locally (WebCrypto), and compares. A match shows the record you are reading is the published one; it does not by itself prove who published it (see the signed claims registry and the bundle verifier for that).
Check it yourself
Browse the raw bundle · How to reproduce it · SHA-256 manifest
Scope: An in-process TESTED library; not hosted; not wired into the gateway, MCPGate or the clusters.
Related rules
- E32-RUNTIME-python: python swap never inherits authority
- E32-RUNTIME-node_v8: node_v8 swap never inherits authority
- E32-RUNTIME-container: container swap never inherits authority
- E32-RUNTIME-browser: browser swap never inherits authority
- E32-RUNTIME-cloud_runtime: cloud_runtime swap never inherits authority
- E32-RUNTIME-agent_framework: agent_framework swap never inherits authority
- E32-RUNTIME-tool_runtime: tool_runtime swap never inherits authority
- E32-RUNTIME-orchestration_engine: orchestration_engine swap never inherits authority
← E32-RUNTIME-container · all 303 · E32-RUNTIME-browser →
Try CAIN-42 on your own agents
Create a free account and every new account starts with a 7-day trial of the full platform. Or try the sandbox first, with no account at all.
Create a free account → · Try the sandbox · See the whole ecosystem