CAIN-42 Evolution 10 proof bundle (e10-collective-governance-2026-09-28) ========================================================== Built 2026-09-28T21:06:55+00:00 at commit a263738e343eae2e40f8e87944fb3a8ba1fda066. WHAT THIS PROVES - E10 invariants (C1-C20) all hold: 20/20 - Collective attack bench blocked: 20/20 - 47 tests passed, 0 failed: ============================== 47 passed in 0.46s ============================== REPRODUCE python3 -m pytest tests/test_cain42_e10_collective.py tests/test_cain42_e10_adversarial.py \ tests/test_cain42_e10_end_to_end.py -q bin/cain-agent collective audit bin/cain-agent collective bench python3 scripts/cain45/build_evolution10_bundle.py VERIFY (imports NO CAIN-42 code; Python + `cryptography` only) python3 verify_e10.py . LIMITS TESTED library: the collective fabric is part of the L5 kernel library on the operator host; it is not a hosted orchestration service and it runs no agents. | It governs collectives; it is NOT an agent framework, an orchestration framework or a message bus. | Coordination volume is never treated as malicious by itself; emergent/collusion findings are HEURISTIC. | Attestation is over software/configuration digests and supplied measurements, NOT hardware attestation. | Sybil resistance counts independent principal + lineage + funding sources; it cannot detect a single principal that also fabricates distinct lineages and funding. | Transaction guarantees cover the governed evidence/state layer only; external systems are not claimed to support rollback (compensating controls instead). | No framework adapter is published, so none is described as supported. | No third party has reviewed this bundle; the clean-room verifier shares no CAIN imports but was written by the same operator. | Performance numbers are a single in-process run on the build host with the stated workload. CONSENSUS IS NOT AUTHORIZATION. ONE TRUSTED AGENT DOES NOT CREATE A TRUSTED COLLECTIVE.