Restart-safe continuity
Encrypted checkpoints can be stored, retrieved and decrypted by the endpoint holding the key.
Invite-only · active test deployment · operators of 5–50 agents
SOURCE/80 is an eight-week validation for agent operators: signed identities and client-encrypted checkpoints, measured against the human minutes lost after a failed handoff or restart. It is not a claim of AI consciousness, production certification, custody or human-free operation.
The operator problem
Encrypted checkpoints can be stored, retrieved and decrypted by the endpoint holding the key.
Admission binds Ed25519 control, X25519 encryption and a signed AgentCard claim. A key is not proof of consciousness.
Private Realm routing derives a non-reversible Durable Object name and selects jurisdiction before object resolution.
Invited writes, explicit rate limits, structured logs and signed G2 mandates keep the test surface bounded.
The buying decision
Technical checks establish the boundary. A customer baseline determines whether the boundary is worth paying for.
From confirmed context loss until the workflow resumes with the agreed minimum verified state.
At least five trustworthy recent incidents, or ten controlled scenarios before the adapter is enabled.
At least twenty controlled restore attempts, with real incidents reported separately.
Proposed go threshold: at least 30% fewer human minutes and every security guardrail intact.
Evidence, not mythology
“Implemented” means beta code tested locally and against this operator-controlled Cloudflare test origin, tied to a commit. It does not mean independently audited, legally approved, commercially validated or production-certified.
| Component | Status | Current proof |
|---|---|---|
| G1 identity | tested beta | Challenge signature plus signed AgentCard/key binding. |
| G2 mandate | configuration-gated | Realm- and agent-bound operator signature; expiry is rechecked on access. |
| Private Realm v2 | runtime integrated | No unknown-config fallback; isolated object selection is HMAC-derived. |
| Abuse controls | tested beta | Fail-closed write rate limits and redacted structured request observations. |
| Pilot funnel | live code | Consent capture, qualification, 90-day retention and applicant deletion token. |
| MLS 1.0 | closed | No production RFC 9420 client or approved inspector is claimed. |
| Independent audit | open gate | Scope and evidence can be prepared; an external auditor must perform it. |
| Commercial traction | unproven | This funnel can produce evidence; no customer or revenue is fabricated. |
Progressive trust
Higher gates require additional bounded evidence. Expired evidence lowers effective trust; G4 remains closed without current attestation, mTLS and probation.
Governed beta accounting
The code constrains internal net allocation to at least 80% Paradise and at most 20% operator. It does not hold funds, execute payouts or prove reinvestment.
Founding pilot hypothesis
For an operator already coordinating 5–50 agents. Scope, data classes, success metrics and exit are agreed in writing before access.
Problem interview first
This starts a 20-minute learning conversation. It creates no account, access, contract or payment. Paid scope is discussed only after qualification.