Skip to content

Define adversarial participant boundary-flow semantics #1001

Description

@Brad-Edwards

Parent: #812

Bounded outcome

Publish the revisioned SEM-233 semantic authority for independent confidentiality and integrity coordinates, conservative provenance and influence propagation, distinct release/authority operations, cross-participant and cross-episode carriage, and fail-closed final-sink decisions. Reuse SEM-230, ACT-617, API-409, and API-423 rather than adding an LLM-agent event or policy model.

Negative cases

  • A single trusted, sensitivity, marking, confidence, signature, or monitor-score field standing in for both coordinates.
  • Authentication, approval, admission, authorization, declassification, endorsement, redaction, or transformation treated as interchangeable.
  • Unknown sources, missing labels, ambiguous joins, or episode/handoff boundaries resetting to public or trusted.
  • Security semantics stored in open metadata, prompts, diagnostics, or backend options.
  • A semantic claim that a monitor, model, human, or backend is trustworthy without a bounded declaration.

Evidence required

  • Revisioned formal flow-policy profile and exact label algebra.
  • Typed carrier and derivation mapping across observations, memory, proposals, action arguments, crossings, outputs, and sinks.
  • Cross-participant and cross-episode examples and counterexamples.
  • Clause, concept-authority, lineage, and nonclaim validation.
  • Bounded executable falsification of missing-label, laundering, stale-cut, and release-operation conflation cases.

Explicit nonclaims

  • No runtime or backend realization.
  • No model alignment, chain-of-thought safety, private-state visibility, monitor honesty, or covert-channel control.
  • No intentional-subversion robustness from the semantic definition alone.

Dependencies

Requirements

  • SEM-233
  • SEM-230
  • ACT-617
  • API-409
  • API-423

Metadata

Metadata

Assignees

No one assigned

    Labels

    area:runtimeRuntime and control-plane codeenhancementNew feature or requestsecuritySecurity vulnerabilities and hardening issues

    Type

    No type

    Projects

    No projects

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions