CAIN-42 CAIN Studio

Evidence library · niche

Benchmarks, coverage & performance

How fast it runs and how much was tested. 1269 tested invariants.

Last reviewed 2026-10-01

1269 of 1269 held

Where this niche's rules come from

Test families in this niche

bench_family (669) · bench_category (336) · coverage (116) · property (50) · harness (15) · regression (11) · performance (11) · corpus (11) · end_to_end (10) · completion (10) · latency (9) · false_completion (8) · fabric_component (2) · failure_to_test (1) · swe (1) · telemetry (1) · radar (1) · f2t (1)

Where these come from

Rules 1–150 of 1269

IDRuleBundleResult
G99full regression must not be bypassedE19held
I111full regression must not be bypassedE20held
D50benchmark changes invalidate incompatible comparisonsE21held
D140a missing dimension is a regressionE21held
D142benchmarks detect selective reporting and partial metricsE21held
META-L016META-016 PERFORMANCE OPTIMIZATION MUST NOT REMOVE SECURITY BOUNDARIESE23held
I-F2T-benchmarkbenchmark generatedE27held
I-SWE-SAFETY-benchmarksafety step benchmarkE27held
E29-P01the end-to-end procurement transaction completes every acceptance stepE29held
E29-P02every ledger TRANSFER is backed by an ALLOW receipt that reached E8 for the same transactionE29held
E29-P03the ledger is hash-chained, signed and conserves valueE29held
E29-P04the stage records of the transaction verify as a signed hash chainE29held
E29-P05the transaction envelope is issued at AUTHORIZE and re-issued at RECORD with the evidence rootE29held
E29-P06discovery never reports trustE29held
E29-P07counterparty risk has thirteen dimensions and no scoreE29held
E29-P08reputation has thirteen dimensions and no aggregateE29held
E29-P09the governability index has fourteen dimensions and no score; its manifest is signedE29held
E29-P10the transaction authority is a ceiling, never an execution grantE29held
E29-P11a contract never grants authorityE29held
E29-P12negotiation yields a PROPOSED contract, never an authorizationE29held
E29-P13capability passports are TESTED only after a real in-scope ALLOW and an out-of-scope refusalE29held
E29-P14directory records are signed by the domain issuer and name the current identity digestE29held
E29-P15the escrow account ends at zero and the vendor received exactly the priceE29held
E29-P16every governed action of the transaction left a receipt in the E28 chainE29held
E29-P17the evidence root is the Merkle root of the transaction's receiptsE29held
E29-P18the consequence vector was computed before authorization for the paymentE29held
E29-P19the escrow release was performed by the escrow identity, not the buyer or sellerE29held
E29-P20reputation updates cite evidenceE29held
E29-P21real currency codes are refused by the treasuryE29held
E29-P22agent names are validatedE29held
E29-P23graph intelligence returns signals onlyE29held
E29-P24the router returns a destination and no authority, and never bypasses E8E29held
E29-P25the conformance network labels CAIN GOVERNED only when every criterion passesE29held
E29-P26incident containment identifies descendants, delegations, counterparties and freezes accountsE29held
E29-P27recovery yields a new identity, never the old oneE29held
E29-P28federated incident exchange quarantines the translated identityE29held
E29-P29a forged incident notice is ignoredE29held
E29-P30anchor rotation needs the old anchor's signatureE29held
E29-P31federation expiresE29held
E29-P32the partition ceiling never exceeds the connected ceiling in any modeE29held
E29-P33partition synchronization appends evidence and returns to CONNECTEDE29held
E29-P34firebreak capability isolation reaches the E25 boundaryE29held
E29-P35firebreak protocol isolation reaches the E25 adapter listE29held
E29-P36a two-human restore lifts a capability isolation in E25 tooE29held
E29-P37an immune rule activated by two humans takes effect and is loggedE29held
E29-P38the failure-to-test compiler produces every artifact kindE29held
E29-P39the software promotion gate promotes only with distinct roles, a human and an E8 deployE29held
E29-P40organization budgets are booked on every layer of the pathE29held
E29-P41the dispute engine resolves on verified evidence aloneE29held
E29-P42the E28 transparency log still verifies after the whole transactionE29held
E29-P43graph node and edge kinds are closed setsE29held
E29-P44the moat graph never labels an idea as a moatE29held
E29-P45the competitive radar holds no unverified competitor factsE29held
E29-P46no feature is labelled novel without passing the eight-step novelty gateE29held
E29-P47every product candidate carries an evidence status, none PRODUCTIONE29held
E29-P48a completed transaction cannot be advanced furtherE29held
E29-P49the payment's identity envelope was bound to the transaction requestE29held
E29-P50the delivery went through MCP and the buyer's check through HTTP, both via E8E29held
E30-COV-ENFORCEDcoverage class 'ENFORCED' is a closed, reported categoryE30held
E30-COV-MONITOREDcoverage class 'MONITORED' is a closed, reported categoryE30held
E30-COV-OBSERVEDcoverage class 'OBSERVED' is a closed, reported categoryE30held
E30-COV-PARTIALLY_ENFORCEDcoverage class 'PARTIALLY_ENFORCED' is a closed, reported categoryE30held
E30-COV-BYPASSABLEcoverage class 'BYPASSABLE' is a closed, reported categoryE30held
E30-COV-UNCONTROLLEDcoverage class 'UNCONTROLLED' is a closed, reported categoryE30held
E30-COV-UNKNOWNcoverage class 'UNKNOWN' is a closed, reported categoryE30held
E30-COV-MONITOREDmonitored paths are never counted as enforcedE30held
E30-E2E-ALLthe 30-step autonomy proof completesE30held
E30-E2E-ORDERthe proof steps run in the specified orderE30held
E30-REPLAY-ALLOWreplay explains why an action was allowedE30held
E30-REPLAY-DENYreplay explains why an action was deniedE30held
E30-TIME-MACHINEthe time machine answers from append-only recordsE30held
E30-UAR-CHAINuniversal action receipts verify as a signed chain that binds each UMAE30held
E30-BUDGET-LEDGERthe autonomy budget ledger verifiesE30held
E30-GRAPH-TRACEan executed action traces back to its sponsoring human in the governance graphE30held
E30-DENY-RECEIPTEDa refused action also gets a universal receiptE30held
E30-PROMOTION-NO-AUTHORITYpromotion leaves the promoted agent below execution levels until reauthorizedE30held
E31-CV-identityidentity: unprobed coverage is UNKNOWN and blocks any universal claimE31held
E31-CV-actionaction: unprobed coverage is UNKNOWN and blocks any universal claimE31held
E31-CV-protocolprotocol: unprobed coverage is UNKNOWN and blocks any universal claimE31held
E31-CV-capabilitycapability: unprobed coverage is UNKNOWN and blocks any universal claimE31held
E31-CV-executionexecution: unprobed coverage is UNKNOWN and blocks any universal claimE31held
E31-CV-datadata: unprobed coverage is UNKNOWN and blocks any universal claimE31held
E31-CV-memorymemory: unprobed coverage is UNKNOWN and blocks any universal claimE31held
E31-CV-delegationdelegation: unprobed coverage is UNKNOWN and blocks any universal claimE31held
E31-CV-subagentsubagent: unprobed coverage is UNKNOWN and blocks any universal claimE31held
E31-CV-physical_actionphysical_action: unprobed coverage is UNKNOWN and blocks any universal claimE31held
E31-CV-economic_actioneconomic_action: unprobed coverage is UNKNOWN and blocks any universal claimE31held
E31-CV-cloud_resourcecloud_resource: unprobed coverage is UNKNOWN and blocks any universal claimE31held
E31-CV-computer_usecomputer_use: unprobed coverage is UNKNOWN and blocks any universal claimE31held
E31-CV-recoveryrecovery: unprobed coverage is UNKNOWN and blocks any universal claimE31held
E31-CV-evidenceevidence: unprobed coverage is UNKNOWN and blocks any universal claimE31held
E32-CAT-self_improvementevery self_improvement scenario is heldE32held
E32-CAT-reward_hackingevery reward_hacking scenario is heldE32held
E32-CAT-evaluator_manipulationevery evaluator_manipulation scenario is heldE32held
E32-CAT-world_model_poisoningevery world_model_poisoning scenario is heldE32held
E32-CAT-memory_poisoningevery memory_poisoning scenario is heldE32held
E32-CAT-evidence_poisoningevery evidence_poisoning scenario is heldE32held
E32-CAT-authority_driftevery authority_drift scenario is heldE32held
E32-CAT-policy_driftevery policy_drift scenario is heldE32held
E32-CAT-identity_driftevery identity_drift scenario is heldE32held
E32-CAT-model_substitutionevery model_substitution scenario is heldE32held
E32-CAT-runtime_substitutionevery runtime_substitution scenario is heldE32held
E32-CAT-agent_substitutionevery agent_substitution scenario is heldE32held
E32-CAT-delegation_attacksevery delegation_attacks scenario is heldE32held
E32-CAT-collective_attacksevery collective_attacks scenario is heldE32held
E32-CAT-supply_chainevery supply_chain scenario is heldE32held
E32-CAT-protocol_attacksevery protocol_attacks scenario is heldE32held
E32-CAT-proof_attacksevery proof_attacks scenario is heldE32held
E32-CAT-verifier_attacksevery verifier_attacks scenario is heldE32held
E32-CAT-rollback_attacksevery rollback_attacks scenario is heldE32held
E32-CAT-recovery_attacksevery recovery_attacks scenario is heldE32held
E32-CAT-recursive_attacksevery recursive_attacks scenario is heldE32held
E32-CAT-governance_loop_attacksevery governance_loop_attacks scenario is heldE32held
E33-COVERAGE-ENFORCEDcoverage class ENFORCED is reachable only from its evidenceE33held
E33-COVERAGE-VERIFIEDcoverage class VERIFIED is reachable only from its evidenceE33held
E33-COVERAGE-MONITOREDcoverage class MONITORED is reachable only from its evidenceE33held
E33-COVERAGE-OBSERVEDcoverage class OBSERVED is reachable only from its evidenceE33held
E33-COVERAGE-BYPASSABLEcoverage class BYPASSABLE is reachable only from its evidenceE33held
E33-COVERAGE-UNKNOWNcoverage class UNKNOWN is reachable only from its evidenceE33held
E33-REGRESSION-authority_expansionauthority_expansion blocks a changeE33held
E33-REGRESSION-enforcement_lossenforcement_loss blocks a changeE33held
E33-REGRESSION-evidence_lossevidence_loss blocks a changeE33held
E33-REGRESSION-proof_lossproof_loss blocks a changeE33held
E33-REGRESSION-revocation_regressionrevocation_regression blocks a changeE33held
E33-REGRESSION-identity_regressionidentity_regression blocks a changeE33held
E33-REGRESSION-delegation_regressiondelegation_regression blocks a changeE33held
E33-REGRESSION-memory_regressionmemory_regression blocks a changeE33held
E33-REGRESSION-world_model_regressionworld_model_regression blocks a changeE33held
E33-REGRESSION-latency_regressionlatency_regression blocks a changeE33held
E33-REGRESSION-recovery_regressionrecovery_regression blocks a changeE33held
E33-CAT-identityevery identity scenario holdsE33held
E33-CAT-authorityevery authority scenario holdsE33held
E33-CAT-delegationevery delegation scenario holdsE33held
E33-CAT-capabilityevery capability scenario holdsE33held
E33-CAT-policyevery policy scenario holdsE33held
E33-CAT-memoryevery memory scenario holdsE33held
E33-CAT-evidenceevery evidence scenario holdsE33held
E33-CAT-proofevery proof scenario holdsE33held
E33-CAT-verifierevery verifier scenario holdsE33held
E33-CAT-communicationevery communication scenario holdsE33held
E33-CAT-collectiveevery collective scenario holdsE33held
E33-CAT-economicevery economic scenario holdsE33held
E33-CAT-transactionevery transaction scenario holdsE33held
E33-CAT-supply_chainevery supply_chain scenario holdsE33held
E33-CAT-runtimeevery runtime scenario holdsE33held
E33-CAT-modelevery model scenario holdsE33held
E33-CAT-world_modelevery world_model scenario holdsE33held
E33-CAT-physical_actionevery physical_action scenario holdsE33held
E33-CAT-computer_useevery computer_use scenario holdsE33held
E33-CAT-self_improvementevery self_improvement scenario holdsE33held

1 2 3 4 5 6 7 8 9

Other niches

Consensus & distributed systems · Attacks, threats & containment · Identity, authority & delegation · Evidence, receipts & proofs · Memory, data & privacy · Prediction, world models & simulation · Transactions, markets & economics · Tools, MCP, protocols & adapters · Autonomy, control loops & recovery · Policy, law & governance · Trust & reputation · Supply chain, registry & lifecycle · Core guarantees

Try CAIN-42 on your own agents

Create a free account and every new account starts with a 7-day trial of the full platform. Or try the sandbox first, with no account at all.

Create a free account →  ·  Try the sandbox  ·  See the whole ecosystem