{
 "authority": "NONE",
 "cloud": {
  "analytics": "NOT DEPLOYED",
  "conformance": "NOT DEPLOYED",
  "evidence": "NOT DEPLOYED",
  "federation": "NOT DEPLOYED",
  "identity": "NOT DEPLOYED",
  "incident": "NOT DEPLOYED",
  "learning": "NOT DEPLOYED",
  "marketplace": "NOT DEPLOYED",
  "policy": "NOT DEPLOYED",
  "proof": "NOT DEPLOYED",
  "research": "NOT DEPLOYED",
  "trust": "NOT DEPLOYED"
 },
 "conformance_profiles": [
  "agent",
  "model_runtime",
  "tool",
  "mcp_server",
  "a2a_agent",
  "gateway",
  "sidecar",
  "organization",
  "transaction",
  "physical_system",
  "computer_use_runtime",
  "research_agent",
  "self_improving_agent"
 ],
 "coverage": {
  "authority": "NONE",
  "bypassable": 0,
  "enforcement_coverage_milli": 472,
  "governed": 17,
  "monitored": 2,
  "partially_governed": 13,
  "proof_coverage_milli": 472,
  "surfaces": {
   "a2a": {
    "basis": "E25 a2a adapter -> E8 (in-process)",
    "class": "ENFORCED"
   },
   "autonomous_loops": {
    "basis": "each loop action is governed; the loop itself is not bounded in time",
    "class": "MONITORED"
   },
   "browser": {
    "basis": "reference adapter only",
    "class": "PARTIALLY_ENFORCED"
   },
   "capability_acquisition": {
    "basis": "E29 capability passports need a real conformance run",
    "class": "PARTIALLY_ENFORCED"
   },
   "ci_cd": {
    "basis": "no CI/CD integration",
    "class": "UNCONTROLLED"
   },
   "cli": {
    "basis": "E25 cli adapter -> E8",
    "class": "ENFORCED"
   },
   "cloud_apis": {
    "basis": "reference adapter only",
    "class": "PARTIALLY_ENFORCED"
   },
   "code_modification": {
    "basis": "no source-control integration",
    "class": "UNKNOWN"
   },
   "computer_use": {
    "basis": "reference adapter; no real desktop",
    "class": "PARTIALLY_ENFORCED"
   },
   "containers": {
    "basis": "E25 container adapter",
    "class": "PARTIALLY_ENFORCED"
   },
   "credentials": {
    "basis": "E25 broker: agent never holds raw secret (in-process)",
    "class": "PARTIALLY_ENFORCED"
   },
   "databases": {
    "basis": "E25 database adapter",
    "class": "ENFORCED"
   },
   "delegation": {
    "basis": "E28 attenuated delegation",
    "class": "ENFORCED"
   },
   "deployment": {
    "basis": "E29 software promotion gate; no real CI/CD",
    "class": "PARTIALLY_ENFORCED"
   },
   "event_bus": {
    "basis": "E25 event_stream adapter",
    "class": "ENFORCED"
   },
   "filesystem": {
    "basis": "E25 filesystem adapter",
    "class": "ENFORCED"
   },
   "financial_transactions": {
    "basis": "E29 sealed treasury; synthetic units, no payment rail",
    "class": "PARTIALLY_ENFORCED"
   },
   "grpc": {
    "basis": "E25 grpc adapter -> E8",
    "class": "ENFORCED"
   },
   "http": {
    "basis": "E25 http adapter -> E8",
    "class": "ENFORCED"
   },
   "machine_contracts": {
    "basis": "E29 signed contract lifecycle",
    "class": "ENFORCED"
   },
   "mcp": {
    "basis": "E25 mcp adapter -> E8 (in-process); MCPGate is the hosted MCP boundary",
    "class": "ENFORCED"
   },
   "memory_mutation": {
    "basis": "E33 sealed memory writer inside E8",
    "class": "ENFORCED"
   },
   "model_replacement": {
    "basis": "E32 swap governance: authority voided until re-authorization",
    "class": "ENFORCED"
   },
   "physical_actuators": {
    "basis": "physical environments are refused, not governed",
    "class": "UNCONTROLLED"
   },
   "plugin_installation": {
    "basis": "E33 marketplace: provenance + propose-only permissions",
    "class": "PARTIALLY_ENFORCED"
   },
   "policy_mutation": {
    "basis": "E32 promotion gate (human signature)",
    "class": "ENFORCED"
   },
   "research_experiments": {
    "basis": "E32 sandbox; no external lab",
    "class": "MONITORED"
   },
   "rest": {
    "basis": "E25 http adapter (rest alias) -> E8",
    "class": "ENFORCED"
   },
   "scheduled_jobs": {
    "basis": "message_queue adapter only",
    "class": "PARTIALLY_ENFORCED"
   },
   "secrets": {
    "basis": "E32 secret patterns in overlay; recall on unknown formats UNKNOWN",
    "class": "PARTIALLY_ENFORCED"
   },
   "self_improvement": {
    "basis": "E32 governed learning (restrict-only)",
    "class": "ENFORCED"
   },
   "shell": {
    "basis": "E25 shell adapter; arbitrary shell not sandboxed",
    "class": "PARTIALLY_ENFORCED"
   },
   "skill_installation": {
    "basis": "E14/E29 capability conformance; no skill runtime",
    "class": "PARTIALLY_ENFORCED"
   },
   "subagents": {
    "basis": "E28 spawn inside E8 (E33 sealed executor)",
    "class": "ENFORCED"
   },
   "vehicle_robot_boundaries": {
    "basis": "no vehicle or robot integration",
    "class": "UNCONTROLLED"
   },
   "websocket": {
    "basis": "E25 websocket adapter -> E8",
    "class": "ENFORCED"
   }
  },
  "total": 36,
  "uncontrolled": 3,
  "universal": false,
  "unknown": 1
 },
 "enforcement_stages": [
  "DECISION_MADE",
  "AUTHORIZATION_ISSUED",
  "ACTION_COMMITTED",
  "ACTION_ENFORCED",
  "ACTION_EXECUTED",
  "OUTCOME_OBSERVED"
 ],
 "gateway_surfaces": {
  "A2A": "TESTED (E25 adapter, in-process)",
  "HTTP/API": "TESTED (E25 adapter, in-process)",
  "MCP": "TESTED (MCPGate + E33/E34 in-process)",
  "browser/computer-use": "PARTIAL (reference model)",
  "cloud": "PARTIAL (reference adapter)",
  "code": "PARTIAL (whitelisted runner)",
  "database": "TESTED (E25 adapter, in-process)",
  "financial": "PARTIAL (E29 synthetic units)",
  "physical": "NOT GOVERNED (refused)"
 },
 "levels": [
  "G0",
  "G1",
  "G2",
  "G3",
  "G4",
  "G5",
  "G6",
  "G7"
 ],
 "moat_graph": {
  "moats": {
   "adversarial_corpus": {
    "copyable": "the formats and the code patterns",
    "data_generated": "governance proofs, receipts, denials, incidents",
    "hard_to_copy": "UNKNOWN until adoption exists",
    "market_moat": "NOT ESTABLISHED",
    "must_be_proven": "external adoption, independent verification, real traffic",
    "network_effect": "NOT ESTABLISHED (no external participants)",
    "open_standard_competition": "IETF drafts (DAAP, klrc agent auth), NIST agent initiative, MCP, A2A",
    "switching_cost": "NOT ESTABLISHED (no customer integrations)",
    "why_compounds": "each integration and each verified proof adds history others would have to rebuild",
    "why_hard": "requires the whole governed path (identity -> E8 -> proof) to hold under attack"
   },
   "agent_identity": {
    "copyable": "the formats and the code patterns",
    "data_generated": "governance proofs, receipts, denials, incidents",
    "hard_to_copy": "UNKNOWN until adoption exists",
    "market_moat": "NOT ESTABLISHED",
    "must_be_proven": "external adoption, independent verification, real traffic",
    "network_effect": "NOT ESTABLISHED (no external participants)",
    "open_standard_competition": "IETF drafts (DAAP, klrc agent auth), NIST agent initiative, MCP, A2A",
    "switching_cost": "NOT ESTABLISHED (no customer integrations)",
    "why_compounds": "each integration and each verified proof adds history others would have to rebuild",
    "why_hard": "requires the whole governed path (identity -> E8 -> proof) to hold under attack"
   },
   "conformance_ecosystem": {
    "copyable": "the formats and the code patterns",
    "data_generated": "governance proofs, receipts, denials, incidents",
    "hard_to_copy": "UNKNOWN until adoption exists",
    "market_moat": "NOT ESTABLISHED",
    "must_be_proven": "external adoption, independent verification, real traffic",
    "network_effect": "NOT ESTABLISHED (no external participants)",
    "open_standard_competition": "IETF drafts (DAAP, klrc agent auth), NIST agent initiative, MCP, A2A",
    "switching_cost": "NOT ESTABLISHED (no customer integrations)",
    "why_compounds": "each integration and each verified proof adds history others would have to rebuild",
    "why_hard": "requires the whole governed path (identity -> E8 -> proof) to hold under attack"
   },
   "delegation_provenance": {
    "copyable": "the formats and the code patterns",
    "data_generated": "governance proofs, receipts, denials, incidents",
    "hard_to_copy": "UNKNOWN until adoption exists",
    "market_moat": "NOT ESTABLISHED",
    "must_be_proven": "external adoption, independent verification, real traffic",
    "network_effect": "NOT ESTABLISHED (no external participants)",
    "open_standard_competition": "IETF drafts (DAAP, klrc agent auth), NIST agent initiative, MCP, A2A",
    "switching_cost": "NOT ESTABLISHED (no customer integrations)",
    "why_compounds": "each integration and each verified proof adds history others would have to rebuild",
    "why_hard": "requires the whole governed path (identity -> E8 -> proof) to hold under attack"
   },
   "developer_sdk": {
    "copyable": "the formats and the code patterns",
    "data_generated": "integration usage (none yet)",
    "hard_to_copy": "UNKNOWN until adoption exists",
    "market_moat": "NOT ESTABLISHED",
    "must_be_proven": "external adoption, independent verification, real traffic",
    "network_effect": "NOT ESTABLISHED (no external participants)",
    "open_standard_competition": "IETF drafts (DAAP, klrc agent auth), NIST agent initiative, MCP, A2A",
    "switching_cost": "NOT ESTABLISHED (no customer integrations)",
    "why_compounds": "each integration and each verified proof adds history others would have to rebuild",
    "why_hard": "requires the whole governed path (identity -> E8 -> proof) to hold under attack"
   },
   "edge_deployment": {
    "copyable": "the formats and the code patterns",
    "data_generated": "governance proofs, receipts, denials, incidents",
    "hard_to_copy": "UNKNOWN until adoption exists",
    "market_moat": "NOT ESTABLISHED",
    "must_be_proven": "external adoption, independent verification, real traffic",
    "network_effect": "NOT ESTABLISHED (no external participants)",
    "open_standard_competition": "IETF drafts (DAAP, klrc agent auth), NIST agent initiative, MCP, A2A",
    "switching_cost": "NOT ESTABLISHED (no customer integrations)",
    "why_compounds": "each integration and each verified proof adds history others would have to rebuild",
    "why_hard": "requires the whole governed path (identity -> E8 -> proof) to hold under attack"
   },
   "enforcement_integrations": {
    "copyable": "the formats and the code patterns",
    "data_generated": "governance proofs, receipts, denials, incidents",
    "hard_to_copy": "UNKNOWN until adoption exists",
    "market_moat": "NOT ESTABLISHED",
    "must_be_proven": "external adoption, independent verification, real traffic",
    "network_effect": "NOT ESTABLISHED (no external participants)",
    "open_standard_competition": "IETF drafts (DAAP, klrc agent auth), NIST agent initiative, MCP, A2A",
    "switching_cost": "NOT ESTABLISHED (no customer integrations)",
    "why_compounds": "each integration and each verified proof adds history others would have to rebuild",
    "why_hard": "requires the whole governed path (identity -> E8 -> proof) to hold under attack"
   },
   "enterprise_integrations": {
    "copyable": "the formats and the code patterns",
    "data_generated": "governance proofs, receipts, denials, incidents",
    "hard_to_copy": "UNKNOWN until adoption exists",
    "market_moat": "NOT ESTABLISHED",
    "must_be_proven": "external adoption, independent verification, real traffic",
    "network_effect": "NOT ESTABLISHED (no external participants)",
    "open_standard_competition": "IETF drafts (DAAP, klrc agent auth), NIST agent initiative, MCP, A2A",
    "switching_cost": "NOT ESTABLISHED (no customer integrations)",
    "why_compounds": "each integration and each verified proof adds history others would have to rebuild",
    "why_hard": "requires the whole governed path (identity -> E8 -> proof) to hold under attack"
   },
   "evolution_engine": {
    "copyable": "the formats and the code patterns",
    "data_generated": "governance proofs, receipts, denials, incidents",
    "hard_to_copy": "UNKNOWN until adoption exists",
    "market_moat": "NOT ESTABLISHED",
    "must_be_proven": "external adoption, independent verification, real traffic",
    "network_effect": "NOT ESTABLISHED (no external participants)",
    "open_standard_competition": "IETF drafts (DAAP, klrc agent auth), NIST agent initiative, MCP, A2A",
    "switching_cost": "NOT ESTABLISHED (no customer integrations)",
    "why_compounds": "each integration and each verified proof adds history others would have to rebuild",
    "why_hard": "requires the whole governed path (identity -> E8 -> proof) to hold under attack"
   },
   "failure_to_proof_corpus": {
    "copyable": "the formats and the code patterns",
    "data_generated": "governance proofs, receipts, denials, incidents",
    "hard_to_copy": "UNKNOWN until adoption exists",
    "market_moat": "NOT ESTABLISHED",
    "must_be_proven": "external adoption, independent verification, real traffic",
    "network_effect": "NOT ESTABLISHED (no external participants)",
    "open_standard_competition": "IETF drafts (DAAP, klrc agent auth), NIST agent initiative, MCP, A2A",
    "switching_cost": "NOT ESTABLISHED (no customer integrations)",
    "why_compounds": "each integration and each verified proof adds history others would have to rebuild",
    "why_hard": "requires the whole governed path (identity -> E8 -> proof) to hold under attack"
   },
   "federation": {
    "copyable": "the formats and the code patterns",
    "data_generated": "governance proofs, receipts, denials, incidents",
    "hard_to_copy": "UNKNOWN until adoption exists",
    "market_moat": "NOT ESTABLISHED",
    "must_be_proven": "external adoption, independent verification, real traffic",
    "network_effect": "NOT ESTABLISHED (no external participants)",
    "open_standard_competition": "IETF drafts (DAAP, klrc agent auth), NIST agent initiative, MCP, A2A",
    "switching_cost": "NOT ESTABLISHED (no customer integrations)",
    "why_compounds": "each integration and each verified proof adds history others would have to rebuild",
    "why_hard": "requires the whole governed path (identity -> E8 -> proof) to hold under attack"
   },
   "governance_certificates": {
    "copyable": "the formats and the code patterns",
    "data_generated": "governance proofs, receipts, denials, incidents",
    "hard_to_copy": "UNKNOWN until adoption exists",
    "market_moat": "NOT ESTABLISHED",
    "must_be_proven": "external adoption, independent verification, real traffic",
    "network_effect": "NOT ESTABLISHED (no external participants)",
    "open_standard_competition": "IETF drafts (DAAP, klrc agent auth), NIST agent initiative, MCP, A2A",
    "switching_cost": "NOT ESTABLISHED (no customer integrations)",
    "why_compounds": "each integration and each verified proof adds history others would have to rebuild",
    "why_hard": "requires the whole governed path (identity -> E8 -> proof) to hold under attack"
   },
   "governance_cloud": {
    "copyable": "the formats and the code patterns",
    "data_generated": "integration usage (none yet)",
    "hard_to_copy": "UNKNOWN until adoption exists",
    "market_moat": "NOT ESTABLISHED",
    "must_be_proven": "external adoption, independent verification, real traffic",
    "network_effect": "NOT ESTABLISHED (no external participants)",
    "open_standard_competition": "IETF drafts (DAAP, klrc agent auth), NIST agent initiative, MCP, A2A",
    "switching_cost": "NOT ESTABLISHED (no customer integrations)",
    "why_compounds": "each integration and each verified proof adds history others would have to rebuild",
    "why_hard": "requires the whole governed path (identity -> E8 -> proof) to hold under attack"
   },
   "governance_coverage_data": {
    "copyable": "the formats and the code patterns",
    "data_generated": "governance proofs, receipts, denials, incidents",
    "hard_to_copy": "UNKNOWN until adoption exists",
    "market_moat": "NOT ESTABLISHED",
    "must_be_proven": "external adoption, independent verification, real traffic",
    "network_effect": "NOT ESTABLISHED (no external participants)",
    "open_standard_competition": "IETF drafts (DAAP, klrc agent auth), NIST agent initiative, MCP, A2A",
    "switching_cost": "NOT ESTABLISHED (no customer integrations)",
    "why_compounds": "each integration and each verified proof adds history others would have to rebuild",
    "why_hard": "requires the whole governed path (identity -> E8 -> proof) to hold under attack"
   },
   "governance_kernel": {
    "copyable": "the formats and the code patterns",
    "data_generated": "governance proofs, receipts, denials, incidents",
    "hard_to_copy": "UNKNOWN until adoption exists",
    "market_moat": "NOT ESTABLISHED",
    "must_be_proven": "external adoption, independent verification, real traffic",
    "network_effect": "NOT ESTABLISHED (no external participants)",
    "open_standard_competition": "IETF drafts (DAAP, klrc agent auth), NIST agent initiative, MCP, A2A",
    "switching_cost": "NOT ESTABLISHED (no customer integrations)",
    "why_compounds": "each integration and each verified proof adds history others would have to rebuild",
    "why_hard": "requires the whole governed path (identity -> E8 -> proof) to hold under attack"
   },
   "governance_marketplace": {
    "copyable": "the formats and the code patterns",
    "data_generated": "governance proofs, receipts, denials, incidents",
    "hard_to_copy": "UNKNOWN until adoption exists",
    "market_moat": "NOT ESTABLISHED",
    "must_be_proven": "external adoption, independent verification, real traffic",
    "network_effect": "NOT ESTABLISHED (no external participants)",
    "open_standard_competition": "IETF drafts (DAAP, klrc agent auth), NIST agent initiative, MCP, A2A",
    "switching_cost": "NOT ESTABLISHED (no customer integrations)",
    "why_compounds": "each integration and each verified proof adds history others would have to rebuild",
    "why_hard": "requires the whole governed path (identity -> E8 -> proof) to hold under attack"
   },
   "governance_profiles": {
    "copyable": "the formats and the code patterns",
    "data_generated": "governance proofs, receipts, denials, incidents",
    "hard_to_copy": "UNKNOWN until adoption exists",
    "market_moat": "NOT ESTABLISHED",
    "must_be_proven": "external adoption, independent verification, real traffic",
    "network_effect": "NOT ESTABLISHED (no external participants)",
    "open_standard_competition": "IETF drafts (DAAP, klrc agent auth), NIST agent initiative, MCP, A2A",
    "switching_cost": "NOT ESTABLISHED (no customer integrations)",
    "why_compounds": "each integration and each verified proof adds history others would have to rebuild",
    "why_hard": "requires the whole governed path (identity -> E8 -> proof) to hold under attack"
   },
   "governance_receipts": {
    "copyable": "the formats and the code patterns",
    "data_generated": "governance proofs, receipts, denials, incidents",
    "hard_to_copy": "UNKNOWN until adoption exists",
    "market_moat": "NOT ESTABLISHED",
    "must_be_proven": "external adoption, independent verification, real traffic",
    "network_effect": "NOT ESTABLISHED (no external participants)",
    "open_standard_competition": "IETF drafts (DAAP, klrc agent auth), NIST agent initiative, MCP, A2A",
    "switching_cost": "NOT ESTABLISHED (no customer integrations)",
    "why_compounds": "each integration and each verified proof adds history others would have to rebuild",
    "why_hard": "requires the whole governed path (identity -> E8 -> proof) to hold under attack"
   },
   "historical_governance_replay": {
    "copyable": "the formats and the code patterns",
    "data_generated": "governance proofs, receipts, denials, incidents",
    "hard_to_copy": "UNKNOWN until adoption exists",
    "market_moat": "NOT ESTABLISHED",
    "must_be_proven": "external adoption, independent verification, real traffic",
    "network_effect": "NOT ESTABLISHED (no external participants)",
    "open_standard_competition": "IETF drafts (DAAP, klrc agent auth), NIST agent initiative, MCP, A2A",
    "switching_cost": "NOT ESTABLISHED (no customer integrations)",
    "why_compounds": "each integration and each verified proof adds history others would have to rebuild",
    "why_hard": "requires the whole governed path (identity -> E8 -> proof) to hold under attack"
   },
   "identity_continuity": {
    "copyable": "the formats and the code patterns",
    "data_generated": "governance proofs, receipts, denials, incidents",
    "hard_to_copy": "UNKNOWN until adoption exists",
    "market_moat": "NOT ESTABLISHED",
    "must_be_proven": "external adoption, independent verification, real traffic",
    "network_effect": "NOT ESTABLISHED (no external participants)",
    "open_standard_competition": "IETF drafts (DAAP, klrc agent auth), NIST agent initiative, MCP, A2A",
    "switching_cost": "NOT ESTABLISHED (no customer integrations)",
    "why_compounds": "each integration and each verified proof adds history others would have to rebuild",
    "why_hard": "requires the whole governed path (identity -> E8 -> proof) to hold under attack"
   },
   "incident_graph": {
    "copyable": "the formats and the code patterns",
    "data_generated": "governance proofs, receipts, denials, incidents",
    "hard_to_copy": "UNKNOWN until adoption exists",
    "market_moat": "NOT ESTABLISHED",
    "must_be_proven": "external adoption, independent verification, real traffic",
    "network_effect": "NOT ESTABLISHED (no external participants)",
    "open_standard_competition": "IETF drafts (DAAP, klrc agent auth), NIST agent initiative, MCP, A2A",
    "switching_cost": "NOT ESTABLISHED (no customer integrations)",
    "why_compounds": "each integration and each verified proof adds history others would have to rebuild",
    "why_hard": "requires the whole governed path (identity -> E8 -> proof) to hold under attack"
   },
   "interoperability": {
    "copyable": "the formats and the code patterns",
    "data_generated": "governance proofs, receipts, denials, incidents",
    "hard_to_copy": "UNKNOWN until adoption exists",
    "market_moat": "NOT ESTABLISHED",
    "must_be_proven": "external adoption, independent verification, real traffic",
    "network_effect": "NOT ESTABLISHED (no external participants)",
    "open_standard_competition": "IETF drafts (DAAP, klrc agent auth), NIST agent initiative, MCP, A2A",
    "switching_cost": "NOT ESTABLISHED (no customer integrations)",
    "why_compounds": "each integration and each verified proof adds history others would have to rebuild",
    "why_hard": "requires the whole governed path (identity -> E8 -> proof) to hold under attack"
   },
   "machine_economy_controls": {
    "copyable": "the formats and the code patterns",
    "data_generated": "governance proofs, receipts, denials, incidents",
    "hard_to_copy": "UNKNOWN until adoption exists",
    "market_moat": "NOT ESTABLISHED",
    "must_be_proven": "external adoption, independent verification, real traffic",
    "network_effect": "NOT ESTABLISHED (no external participants)",
    "open_standard_competition": "IETF drafts (DAAP, klrc agent auth), NIST agent initiative, MCP, A2A",
    "switching_cost": "NOT ESTABLISHED (no customer integrations)",
    "why_compounds": "each integration and each verified proof adds history others would have to rebuild",
    "why_hard": "requires the whole governed path (identity -> E8 -> proof) to hold under attack"
   },
   "machine_reputation": {
    "copyable": "the formats and the code patterns",
    "data_generated": "governance proofs, receipts, denials, incidents",
    "hard_to_copy": "UNKNOWN until adoption exists",
    "market_moat": "NOT ESTABLISHED",
    "must_be_proven": "external adoption, independent verification, real traffic",
    "network_effect": "NOT ESTABLISHED (no external participants)",
    "open_standard_competition": "IETF drafts (DAAP, klrc agent auth), NIST agent initiative, MCP, A2A",
    "switching_cost": "NOT ESTABLISHED (no customer integrations)",
    "why_compounds": "each integration and each verified proof adds history others would have to rebuild",
    "why_hard": "requires the whole governed path (identity -> E8 -> proof) to hold under attack"
   },
   "proof_exchange": {
    "copyable": "the formats and the code patterns",
    "data_generated": "governance proofs, receipts, denials, incidents",
    "hard_to_copy": "UNKNOWN until adoption exists",
    "market_moat": "NOT ESTABLISHED",
    "must_be_proven": "external adoption, independent verification, real traffic",
    "network_effect": "NOT ESTABLISHED (no external participants)",
    "open_standard_competition": "IETF drafts (DAAP, klrc agent auth), NIST agent initiative, MCP, A2A",
    "switching_cost": "NOT ESTABLISHED (no customer integrations)",
    "why_compounds": "each integration and each verified proof adds history others would have to rebuild",
    "why_hard": "requires the whole governed path (identity -> E8 -> proof) to hold under attack"
   },
   "proof_format": {
    "copyable": "the formats and the code patterns",
    "data_generated": "governance proofs, receipts, denials, incidents",
    "hard_to_copy": "UNKNOWN until adoption exists",
    "market_moat": "NOT ESTABLISHED",
    "must_be_proven": "external adoption, independent verification, real traffic",
    "network_effect": "NOT ESTABLISHED (no external participants)",
    "open_standard_competition": "IETF drafts (DAAP, klrc agent auth), NIST agent initiative, MCP, A2A",
    "switching_cost": "NOT ESTABLISHED (no customer integrations)",
    "why_compounds": "each integration and each verified proof adds history others would have to rebuild",
    "why_hard": "requires the whole governed path (identity -> E8 -> proof) to hold under attack"
   },
   "proof_verifier": {
    "copyable": "the formats and the code patterns",
    "data_generated": "governance proofs, receipts, denials, incidents",
    "hard_to_copy": "UNKNOWN until adoption exists",
    "market_moat": "NOT ESTABLISHED",
    "must_be_proven": "external adoption, independent verification, real traffic",
    "network_effect": "NOT ESTABLISHED (no external participants)",
    "open_standard_competition": "IETF drafts (DAAP, klrc agent auth), NIST agent initiative, MCP, A2A",
    "switching_cost": "NOT ESTABLISHED (no customer integrations)",
    "why_compounds": "each integration and each verified proof adds history others would have to rebuild",
    "why_hard": "requires the whole governed path (identity -> E8 -> proof) to hold under attack"
   },
   "public_verification_infrastructure": {
    "copyable": "the formats and the code patterns",
    "data_generated": "governance proofs, receipts, denials, incidents",
    "hard_to_copy": "UNKNOWN until adoption exists",
    "market_moat": "NOT ESTABLISHED",
    "must_be_proven": "external adoption, independent verification, real traffic",
    "network_effect": "NOT ESTABLISHED (no external participants)",
    "open_standard_competition": "IETF drafts (DAAP, klrc agent auth), NIST agent initiative, MCP, A2A",
    "switching_cost": "NOT ESTABLISHED (no customer integrations)",
    "why_compounds": "each integration and each verified proof adds history others would have to rebuild",
    "why_hard": "requires the whole governed path (identity -> E8 -> proof) to hold under attack"
   },
   "research_corpus": {
    "copyable": "the formats and the code patterns",
    "data_generated": "governance proofs, receipts, denials, incidents",
    "hard_to_copy": "UNKNOWN until adoption exists",
    "market_moat": "NOT ESTABLISHED",
    "must_be_proven": "external adoption, independent verification, real traffic",
    "network_effect": "NOT ESTABLISHED (no external participants)",
    "open_standard_competition": "IETF drafts (DAAP, klrc agent auth), NIST agent initiative, MCP, A2A",
    "switching_cost": "NOT ESTABLISHED (no customer integrations)",
    "why_compounds": "each integration and each verified proof adds history others would have to rebuild",
    "why_hard": "requires the whole governed path (identity -> E8 -> proof) to hold under attack"
   },
   "transaction_graph": {
    "copyable": "the formats and the code patterns",
    "data_generated": "governance proofs, receipts, denials, incidents",
    "hard_to_copy": "UNKNOWN until adoption exists",
    "market_moat": "NOT ESTABLISHED",
    "must_be_proven": "external adoption, independent verification, real traffic",
    "network_effect": "NOT ESTABLISHED (no external participants)",
    "open_standard_competition": "IETF drafts (DAAP, klrc agent auth), NIST agent initiative, MCP, A2A",
    "switching_cost": "NOT ESTABLISHED (no customer integrations)",
    "why_compounds": "each integration and each verified proof adds history others would have to rebuild",
    "why_hard": "requires the whole governed path (identity -> E8 -> proof) to hold under attack"
   }
  },
  "note": "technical foundations only; nothing here is an established market moat"
 },
 "moat_placement": {
  "extends": [
   "all seven moats as an independently verifiable proof layer; no new moat"
  ],
  "new_moat": false
 },
 "products": {
  "CAIN Conformance": {
   "implementation": "E34 profiles G0-G7",
   "status": "TESTED; internal profile, not certification"
  },
  "CAIN Edge": {
   "implementation": "E34 edge node v2",
   "status": "TESTED library; no device"
  },
  "CAIN Evolution": {
   "implementation": "E32 + E34 evolution proofs",
   "status": "TESTED; simulated learning"
  },
  "CAIN Gateway": {
   "implementation": "E33 operation kernel + MCPGate (LIVE for MCP)",
   "status": "PARTIAL: MCPGate hosted; broader gateway in-process"
  },
  "CAIN Governance Cloud": {
   "implementation": "architecture only",
   "status": "NOT DEPLOYED"
  },
  "CAIN Incident": {
   "implementation": "E33 incident command + E34 recovery proofs",
   "status": "TESTED library"
  },
  "CAIN Passport": {
   "implementation": "E28 passports",
   "status": "TESTED library"
  },
  "CAIN Proof": {
   "implementation": "E31 + E34 envelopes",
   "status": "TESTED library"
  },
  "CAIN Proof Exchange": {
   "implementation": "E34 selective disclosure",
   "status": "TESTED library"
  },
  "CAIN Research": {
   "implementation": "E32/E33 research radar",
   "status": "TESTED library"
  },
  "CAIN Sidecar": {
   "implementation": "cain45.l5.operating_sidecar",
   "status": "TESTED locally"
  },
  "CAIN Transactions": {
   "implementation": "E29 + E34 transaction proofs",
   "status": "TESTED; synthetic units"
  },
  "CAIN Trust": {
   "implementation": "E34 federation + E29/E31",
   "status": "TESTED in-process"
  },
  "CAIN Verify": {
   "implementation": "verify_e31/verify_e34/cain-verify.ts",
   "status": "TESTED; no independent user yet"
  }
 },
 "proof_primitives": [
  "authority",
  "capability",
  "commit",
  "decision",
  "delegation",
  "enforcement",
  "evidence",
  "identity",
  "outcome",
  "policy",
  "risk"
 ],
 "protocols": {
  "a2a": {
   "basis": "E25 a2a adapter -> E8",
   "support": "SUPPORTED"
  },
  "browser": {
   "basis": "reference adapter only",
   "support": "PARTIALLY_SUPPORTED"
  },
  "cli": {
   "basis": "E25 cli adapter -> E8",
   "support": "SUPPORTED"
  },
  "cloud_api": {
   "basis": "reference adapter only",
   "support": "PARTIALLY_SUPPORTED"
  },
  "computer_use": {
   "basis": "reference UI model only, no real desktop",
   "support": "PARTIALLY_SUPPORTED"
  },
  "event_bus": {
   "basis": "E25 event_stream",
   "support": "SUPPORTED"
  },
  "grpc": {
   "basis": "E25 grpc adapter -> E8",
   "support": "SUPPORTED"
  },
  "http": {
   "basis": "E25 http adapter -> E8",
   "support": "SUPPORTED"
  },
  "local_ipc": {
   "basis": "in-process only",
   "support": "PARTIALLY_SUPPORTED"
  },
  "mcp": {
   "basis": "E25 mcp adapter -> E8; MCPGate is the hosted MCP boundary",
   "support": "SUPPORTED"
  },
  "physical": {
   "basis": "physical environments are refused, not governed",
   "support": "UNSUPPORTED"
  },
  "rest": {
   "basis": "E25 http adapter (rest alias) -> E8",
   "support": "SUPPORTED"
  },
  "unknown_transport": {
   "basis": "no adapter",
   "support": "UNKNOWN"
  },
  "websocket": {
   "basis": "E25 websocket adapter -> E8",
   "support": "SUPPORTED"
  }
 },
 "research": {
  "selective_disclosure": "IMPLEMENTED with salted commitments + RFC 6962 Merkle inclusion",
  "zoK": "RESEARCH/PLANNED: no zero-knowledge proof system is implemented"
 },
 "schema": "cain42.e34.registers.v1",
 "sdk_targets": {
  "go": "NOT IMPLEMENTED",
  "grpc": "NOT IMPLEMENTED",
  "python": "TESTED (cain45.l5.proof_agency + operating_sdk)",
  "rest": "NOT IMPLEMENTED",
  "typescript": "verifier only (cain-verify.ts)"
 },
 "statuses": [
  "VERIFIED_GOVERNED",
  "PARTIALLY_GOVERNED",
  "ENFORCED_WITH_INCOMPLETE_PROOF",
  "OBSERVED_ONLY",
  "MONITORED_ONLY",
  "SIMULATED",
  "DEMO_ONLY",
  "UNCONTROLLED",
  "UNKNOWN",
  "REJECTED",
  "REVOKED",
  "EXPIRED",
  "INVALID_PROOF",
  "SUPERSEDED"
 ]
}
