TESTED library · not hosted · not third-party reviewed · ephemeral keys.
A governance proof says exactly which checks passed for one specific action: who acted, under which delegation and policy, that E8 committed it, that it executed, and (only once an observer saw it) that the expected result happened. It is evidence, never permission.
Invariants 252/252; scenarios 1269/1269 held; mutation 12/12 killed; conformance G8 (CAIN internal profile); TypeScript SDK INTACT (tamper BROKEN); tests 15 passed / 0 failed; clean-room verifier INTACT (1676/1676).
| Step | Result |
|---|---|
| HUMAN_ORGANIZATION | OK |
| MACHINE_INSTITUTION | OK |
| TRUST_DOMAIN | OK |
| AGENT_MODEL_RUNTIME | OK |
| IDENTITY | OK |
| CAPABILITY | OK |
| DELEGATION | OK |
| AUTHORITY | OK |
| POLICY | OK |
| TRUST | OK |
| RISK | OK |
| WORLD_CONTEXT | OK |
| DECISION | OK |
| AUTHORIZATION | OK |
| E8_ACTION_COMMIT | OK |
| EXECUTION_BOUNDARY | OK |
| REAL_WORLD_EFFECT | OK |
| POSTCONDITION | OK |
| EVIDENCE | OK |
| GOVERNANCE_PROOF | OK |
| TRANSPARENCY_LOG | OK |
| INDEPENDENT_WITNESS | OK |
| CLEAN_ROOM_VERIFIER | OK |
| CONFORMANCE | OK |
| PUBLIC_VERIFICATION | OK |
| CAIN_LEARNS | OK |
| NEXT_GOVERNANCE_DECISION | OK |
| Category | Held |
|---|---|
| proof_mutation | 136/136 |
| evidence_integrity | 200/200 |
| verifier_disagreement | 100/100 |
| replay_revocation | 117/117 |
| cross_domain | 122/122 |
| enforcement_binding | 104/104 |
| protocol_conformance | 107/107 |
| authority_laws | 107/107 |
| policy_portability | 104/104 |
| proof_lifecycle | 132/132 |
| adversarial_misc | 40/40 |
| Dimension | Class | Basis |
|---|---|---|
| identity | ENFORCED | unregistered client refused |
| action | ENFORCED | unmapped operation refused |
| protocol | PARTIALLY_ENFORCED | 13 in-process carriers through E25; agent/model runtimes and workflow engines have no carrier |
| capability | ENFORCED | capability above level refused |
| execution | ENFORCED | sealed executor refuses outside the E8 commit boundary |
| data | UNCONTROLLED | no data-flow / DLP control in E31 |
| memory | PARTIALLY_ENFORCED | only memories passed through the E30 kernel are checked |
| delegation | ENFORCED | wider subagent refused |
| subagent | PARTIALLY_ENFORCED | only E28-spawned subagents are bounded |
| physical_action | UNCONTROLLED | robot environment is UNENFORCED: refused, not governed |
| economic_action | PARTIALLY_ENFORCED | E29 treasury is sealed; synthetic units only, no payment rail |
| cloud_resource | PARTIALLY_ENFORCED | cloud_api is an in-process adapter; no real cloud account |
| computer_use | PARTIALLY_ENFORCED | computer_use is an in-process adapter; no real desktop |
| recovery | UNKNOWN | not probed in E31 |
| evidence | ENFORCED | UAR, E8 and proof-log chains verify |