GOVERNANCE / CONSTITUTION

DOSFI Governance

The constitution, enforceable rules, and public action ledger that bind the DOSFI mesh. Foundation-governed, community-owned, irreversibly open-source.

01 / CONSTITUTIONRatified Articles
01

Irreversible Open Source

Ratified

DOSFI shall be irreversibly open-sourced under a permissive license. No acquisition, fork, or governance change may re-close the core runtime, settlement layer, or identity fabric.

open_source
02

Foundation Stewardship

Ratified

Stewardship of DOSFI is distributed via a foundation, not a single company. No single entity may unilaterally amend the constitution, alter settlement, or revoke community ownership.

community
03

Community Ownership

Ratified

The value of DOSFI is in its community. The constitution, rules, and action ledger are public. A 'buy and shelve' acquisition is structurally resisted by irreversibly open-sourcing the core and distributing stewardship.

community
04

Zero IP Leakage

Ratified

All mesh-native execution must enforce strict privacy and zero IP leakage. Device IPs, hardware identifiers, routing paths, and node-level telemetry are redacted at the DOSFI boundary. Dispatch, scheduling, and routing decisions remain internal to DOSFI.

privacy
05

Hardware-Bound Identity

Ratified

Node identity is hardware-bound. Every contributor must bind a hardware key and complete MFA before earning. Identity tiers (T1–T5) gate settlement, routing, and earning multipliers.

identity
06

Verified Execution Settlement

Ratified

Settlement is earned through verified execution, not claims. The strength of the verification mechanism is the keystone of settlement layer security. The core principle is to make Sybil attacks unprofitable rather than prevent them absolutely.

settlement
07

Reputation Ramp

Ratified

New nodes enter through a reputation ramp. Earning multipliers scale with verified uptime, attestation, and work-attached heartbeat liveness. Fake benchmarks, fake GPUs, and fake heartbeats are slashed.

settlement
08

AI Model Containment

Ratified

The inference runtime exposes no filesystem, outbound network access, persistent storage, or tool invocation APIs. The model's only externally observable effect is its inference output. These guarantees assume the integrity of the DOSFI runtime, underlying OS, and hardware isolation.

inference
09

Internal Routing

Ratified

All dispatch, scheduling, and routing decisions remain internal to DOSFI. Execution metadata is confidential and ephemeral. No user may observe device IPs, hardware identifiers, or specific node capability details.

routing
10

Federation Sovereignty

Ratified

Federated DOSFI instances retain sovereignty over their local identity, settlement, and routing. No federation may compel another to alter its constitution or revoke its community ownership.

federation
02 / ENFORCEABLE_RULESGovernance Rules
RuleTypeStrictnessViolationsStatus

Hardware Key Binding Required

Nodes without a bound hardware key cannot earn or route.

identitystrict0 Active

MFA Verification Gate

MFA must be verified before any settlement is credited.

identitystrict0 Active

Sybil Unprofitability Enforcement

Identity cost must exceed the value of any Sybil-derived earnings. Slashing applies to detected Sybil clusters.

settlementstrict0 Active

Reputation Ramp Enforcement

New nodes earn at T1 multiplier until verified uptime, attestation, and liveness thresholds are met.

settlementstandard0 Active

Fake-GPU Slashing

Nodes reporting inflated capability or fake GPUs are slashed and demoted.

anti_cheatstrict0 Active

Fake-Benchmark Detection

Benchmark inflation is caught by the reputation ramp and penalized.

anti_cheatstandard0 Active

Work-Attached Heartbeat Liveness

Liveness requires work-attached heartbeats. Fake-heartbeat schemes are dropped.

sessionstandard0 Active

Zero IP Leakage Boundary

All telemetry is redacted at the DOSFI boundary. IP, hardware ID, and routing path leakage is blocked.

privacystrict0 Active

Runtime Containment Enforcement

The inference runtime must not expose filesystem, network, storage, or tool APIs. Violations block the node.

inferencestrict0 Active

Internal Routing Opacity

Routing decisions must not be observable by users. External routing queries are rejected.

routingstandard0 Active
03 / ACTION_LEDGEREnforcement Actions
blockHigh

Security gate blocked create on Node: Authentication required: no valid identity.; RBAC: role 'anonymous' cannot create Closed Core entity 'Node'.; Runtime isolation: 'Node' is Closed Core. Admin role required.

blockHigh

Security gate blocked create on Node: Authentication required: no valid identity.; RBAC: role 'anonymous' cannot create Closed Core entity 'Node'.; Runtime isolation: 'Node' is Closed Core. Admin role required.

blockHigh

Security gate blocked create on Node: Authentication required: no valid identity.; RBAC: role 'anonymous' cannot create Closed Core entity 'Node'.; Runtime isolation: 'Node' is Closed Core. Admin role required.