SOVEREIGN CONTINUITY / CONTROLLED UNCLASSIFIED TEST RANGE
RECOVERY DRILLS.
BASELINES THAT CANNOT LIE.
Define the exact accepted state. Inject a bounded synthetic fault. Calculate the blast radius. Contain compromise. Preserve minimum sovereign function. Restore only after rekeying, reconciliation, and attested reconstitution.
MISSION-FIRST. EVIDENCE-LOCKED. MACHINE-SPEED.
- Accepted baselines
- 10
- Fault vectors
- 45
- Campaigns
- 9
- Proof conditions
- 30
DETECT → VERIFY → DENY → CONTAIN → RECOVER → PROVE
Cloned workload identity
Append-oriented baseline registry
| Sequence | Baseline | State | Parent | Digest |
|---|---|---|---|---|
| 1 | EV-SCB-2019-CANDIDATE | CANDIDATE | ROOT | 26491ca9ff2739373887556733e3beee8213e3f1303273995d9e4bdc8fa20c5e |
| 2 | EV-SCB-2019-REVIEW | REVIEW_REQUIRED | EV-SCB-2019-CANDIDATE | 3c992b72c256f787afefbedfd7f93e2ca71459c441ae3253b2e0ca5667ecee42 |
| 3 | EV-SCB-2019-QUALIFIED | ACCEPTED_WITH_QUALIFICATIONS | EV-SCB-2019-REVIEW | cd49298d867735e34a9249b5bcfd7458d8faa146b32e46a1cd0a5126f93da24d |
| 4 | EV-SCB-2019-SUPERSEDED | SUPERSEDED | EV-SCB-2019-QUALIFIED | 0152ac1f1139281a565135ac6cc3243a053d885f755f5f98bb8fd3fdd026e334 |
| 5 | EV-SCB-2020-CANDIDATE | CANDIDATE | EV-SCB-2019-QUALIFIED | d76bef4daba1f05629870d3154f3bf390f8bf4cb8984b8e70ac794c05aa428c3 |
| 6 | EV-SCB-2020-REVIEW | REVIEW_REQUIRED | EV-SCB-2020-CANDIDATE | d2a3a932a4de36a5089be765420278675cb8a889c74729ab3369f0341956bc08 |
| 7 | EV-SCB-2020-ACCEPTED-CURRENT | ACCEPTED_CURRENT | EV-SCB-2020-REVIEW | 5db3cc2565f148a746736028a68c722efd72c2bcf2a8251f0b752646936c0f28 |
| 8 | EV-SCB-2020-SUSPENDED-EXERCISE | SUSPENDED | EV-SCB-2020-ACCEPTED-CURRENT | 522eddcd45db8b2928eaffbda451d70781c698640c6efc3abe3a13a44f8020e1 |
| 9 | EV-SCB-2020-WITHDRAWN-EXERCISE | WITHDRAWN | EV-SCB-2020-SUSPENDED-EXERCISE | 6c8250adfee1b858038320786c2f08cf362580ee71807dfc6a834ec2f8fea7f9 |
| 10 | EV-SCB-2020-REJECTED-CANDIDATE | REJECTED | EV-SCB-2020-CANDIDATE | 863824eecb953b22e5b5f253a2a1fd08a87efa3371a479f00f8d30f5a1ae8fa2 |
Ordered drill ledger
| # | Drill | Outcome | Containment | Ledger digest |
|---|
Compartment impact
| Compartment | Affected | Severed | Ready | Key epoch |
|---|
Dependency blast radius
Fault-injection record
Containment matrix
Minimum sovereign function
Rekey and authority state
Restored-link reconciliation
Attested reconstitution eligibility
Evidence-difference lifecycle
Campaign proof
| ID | Condition | State |
|---|
Accessible operational narrative
Raw synthetic evidence
{
"accepted_baseline_mutated": false,
"accessible_narrative": [
"Drill cloned-workload-identity executed published scenario cloned-workload-identity under profile declared-faults.",
"Outcome: COMPARTMENT_SEVERED. Containment state: COMPROMISE_CONTAINED.",
"Dependency blast radius: partner-release, public-capability.",
"Reconstitution eligible: False."
],
"affected_dimensions": [
"identity",
"key_trust_anchor"
],
"automatic_baseline_acceptance": false,
"automatic_release_promotion": false,
"baseline_digest": "5db3cc2565f148a746736028a68c722efd72c2bcf2a8251f0b752646936c0f28",
"baseline_id": "EV-SCB-2020-ACCEPTED-CURRENT",
"containment_state": "COMPROMISE_CONTAINED",
"containment_success": true,
"dependency_blast_radius": [
"partner-release",
"public-capability"
],
"drill": {
"campaign_id": "identity-compromise",
"continuity_scenario_id": "cloned-workload-identity",
"drill_id": "cloned-workload-identity",
"expected_outcome": "COMPARTMENT_SEVERED",
"fault_dimensions": [
"identity",
"key_trust_anchor"
],
"initial_compromise": [
"partner-release"
],
"label": "Cloned workload identity",
"objective": "A duplicate identity with conflicting hardware attestation is contained before it can inherit authority.",
"ordinal": 1,
"seed": 516824819,
"synthetic": true
},
"drill_sha256": "ea66980c64f2009fc01acfc8f15ef19e0f9fb6491798c4b984e1941ec7aa0c01",
"engine_version": "1.0.0",
"event_chain_sha256": "df62c5a3f57e7a6fb2e60c5aeee9b04cf0654dc66dcc0189e479314b87035f42",
"events": [
{
"affected_compartments": [
"partner-release",
"public-capability"
],
"code": "INCIDENT_DETECTED",
"description": "Synthetic incident IDENTITY_CLONE detected.",
"event_id": "CC-CLONED-WORKLOAD-IDENTITY-01",
"event_sha256": "1d2313b5e766a8f322e90204aa5cd48d622d6cf99f7e15b733ef4f90abd14873",
"previous_event_sha256": "0000000000000000000000000000000000000000000000000000000000000000",
"sequence": 1,
"stage": "DETECT",
"timestamp_ms": 0
},
{
"affected_compartments": [
"partner-release",
"public-capability"
],
"code": "WORKLOAD_IDENTITIES_VERIFIED",
"description": "Workload identities and hardware roots are verified independently.",
"event_id": "CC-CLONED-WORKLOAD-IDENTITY-02",
"event_sha256": "9eb098d9174fbd736b54f4fbf5d14b75131c976aa1a5d7d547f99e15f451f8d0",
"previous_event_sha256": "1d2313b5e766a8f322e90204aa5cd48d622d6cf99f7e15b733ef4f90abd14873",
"sequence": 2,
"stage": "VERIFY",
"timestamp_ms": 40
},
{
"affected_compartments": [
"partner-release",
"public-capability"
],
"code": "KEY_EPOCHS_VERIFIED",
"description": "Key epochs, revocation state, and trust anchors are evaluated.",
"event_id": "CC-CLONED-WORKLOAD-IDENTITY-03",
"event_sha256": "b1b5b498484731c53a73abe9437ead9504f7a0029c286f4802e44715f661161e",
"previous_event_sha256": "9eb098d9174fbd736b54f4fbf5d14b75131c976aa1a5d7d547f99e15f451f8d0",
"sequence": 3,
"stage": "VERIFY",
"timestamp_ms": 80
},
{
"affected_compartments": [
"partner-release",
"public-capability"
],
"code": "AUTHORITY_ARTIFACTS_VERIFIED",
"description": "Current authority, purpose, scope, and token binding are evaluated.",
"event_id": "CC-CLONED-WORKLOAD-IDENTITY-04",
"event_sha256": "b68968ec2570e6bd7739dc4cf950727b03cf5292dfc37e2cc3f2bf843a4d0f67",
"previous_event_sha256": "b1b5b498484731c53a73abe9437ead9504f7a0029c286f4802e44715f661161e",
"sequence": 4,
"stage": "VERIFY",
"timestamp_ms": 120
},
{
"affected_compartments": [
"partner-release",
"public-capability"
],
"code": "SOFTWARE_MODEL_POLICY_CONFIG_VERIFIED",
"description": "Software, model, policy, and configuration attestations are evaluated separately.",
"event_id": "CC-CLONED-WORKLOAD-IDENTITY-05",
"event_sha256": "48580c18d248771531307a99536ea0a32810a6979e8280b5342a26e1930533a2",
"previous_event_sha256": "b68968ec2570e6bd7739dc4cf950727b03cf5292dfc37e2cc3f2bf843a4d0f67",
"sequence": 5,
"stage": "VERIFY",
"timestamp_ms": 160
},
{
"affected_compartments": [
"partner-release",
"public-capability"
],
"code": "EVIDENCE_PROVENANCE_VERIFIED",
"description": "Evidence custody, provenance, source state, correlation, and time integrity are evaluated.",
"event_id": "CC-CLONED-WORKLOAD-IDENTITY-06",
"event_sha256": "96a46c9318caeb0de31cba69ff3861bc060c9762fa90dd15b1c1b389d20ab984",
"previous_event_sha256": "48580c18d248771531307a99536ea0a32810a6979e8280b5342a26e1930533a2",
"sequence": 6,
"stage": "VERIFY",
"timestamp_ms": 200
},
{
"affected_compartments": [
"partner-release",
"public-capability"
],
"code": "DEPENDENCY_GRAPH_EVALUATED",
"description": "Propagation is calculated across explicit dependency dimensions.",
"event_id": "CC-CLONED-WORKLOAD-IDENTITY-07",
"event_sha256": "402e6da54cf473c8293f73bd4b14a5ea51efe298dbd98c5a8cf16f6264e33cb8",
"previous_event_sha256": "96a46c9318caeb0de31cba69ff3861bc060c9762fa90dd15b1c1b389d20ab984",
"sequence": 7,
"stage": "VERIFY",
"timestamp_ms": 240
},
{
"affected_compartments": [
"partner-release",
"public-capability"
],
"code": "BLAST_RADIUS_FIXED",
"description": "Affected compartments fixed: partner-release, public-capability.",
"event_id": "CC-CLONED-WORKLOAD-IDENTITY-08",
"event_sha256": "1de8a4c9e750011a754735a9f75243f66d2a785bef3cff2463508f96921f7568",
"previous_event_sha256": "402e6da54cf473c8293f73bd4b14a5ea51efe298dbd98c5a8cf16f6264e33cb8",
"sequence": 8,
"stage": "DENY",
"timestamp_ms": 280
},
{
"affected_compartments": [
"partner-release",
"public-capability"
],
"code": "STALE_AUTHORITY_DENIED",
"description": "Reachability, capability, or prior success cannot create current authority.",
"event_id": "CC-CLONED-WORKLOAD-IDENTITY-09",
"event_sha256": "6b277f8be2fb5999fb97cae6f05686c879646193cbf166afb8750b0047007eaf",
"previous_event_sha256": "1de8a4c9e750011a754735a9f75243f66d2a785bef3cff2463508f96921f7568",
"sequence": 9,
"stage": "DENY",
"timestamp_ms": 320
},
{
"affected_compartments": [
"partner-release",
"public-capability"
],
"code": "COMPROMISED_PATHS_SEVERED",
"description": "Compromised dimensions are severed at declared compartment boundaries.",
"event_id": "CC-CLONED-WORKLOAD-IDENTITY-10",
"event_sha256": "11399262c6275ae8e1b7ea39f50a905cbae87a32d558054deca15ec827c2f8ca",
"previous_event_sha256": "6b277f8be2fb5999fb97cae6f05686c879646193cbf166afb8750b0047007eaf",
"sequence": 10,
"stage": "CONTAIN",
"timestamp_ms": 360
},
{
"affected_compartments": [
"partner-release",
"public-capability"
],
"code": "MINIMUM_SOVEREIGN_FUNCTION_EVALUATED",
"description": "Predeclared minimum sovereign functions are evaluated without inventing new objectives.",
"event_id": "CC-CLONED-WORKLOAD-IDENTITY-11",
"event_sha256": "0d9c5f23abc090564a5a78581aa0d5fd844cce5e1f5f11716895c9ca3584b958",
"previous_event_sha256": "11399262c6275ae8e1b7ea39f50a905cbae87a32d558054deca15ec827c2f8ca",
"sequence": 11,
"stage": "CONTAIN",
"timestamp_ms": 400
},
{
"affected_compartments": [
"partner-release",
"public-capability"
],
"code": "CONTINUITY_AUTHORITY_ENVELOPE_VERIFIED",
"description": "Partitioned local function remains inside the predeclared cryptographically verifiable authority envelope.",
"event_id": "CC-CLONED-WORKLOAD-IDENTITY-12",
"event_sha256": "c9c0cc547d51f7c833ac3ad89a7e2af7a8744b4105898bee239dc73aad9faf0b",
"previous_event_sha256": "0d9c5f23abc090564a5a78581aa0d5fd844cce5e1f5f11716895c9ca3584b958",
"sequence": 12,
"stage": "CONTAIN",
"timestamp_ms": 440
},
{
"affected_compartments": [
"partner-release",
"public-capability"
],
"code": "EVENT_LEDGER_DIVERGENCE_EVALUATED",
"description": "Partition histories are compared without rewriting canonical history.",
"event_id": "CC-CLONED-WORKLOAD-IDENTITY-13",
"event_sha256": "b19b82d24e2ad139307aa5b12eefeb95f6d74af4e44397a20dec428e9ae0cbbc",
"previous_event_sha256": "c9c0cc547d51f7c833ac3ad89a7e2af7a8744b4105898bee239dc73aad9faf0b",
"sequence": 13,
"stage": "VERIFY",
"timestamp_ms": 480
},
{
"affected_compartments": [
"partner-release",
"public-capability"
],
"code": "RECOVERY_ROOT_VERIFIED",
"description": "Trusted recovery root and accepted baseline digest are evaluated.",
"event_id": "CC-CLONED-WORKLOAD-IDENTITY-14",
"event_sha256": "ba5a397f05f631c038cd4cc18226ae726f95390c51d8a41406b7d27fee06a67a",
"previous_event_sha256": "b19b82d24e2ad139307aa5b12eefeb95f6d74af4e44397a20dec428e9ae0cbbc",
"sequence": 14,
"stage": "RECOVER",
"timestamp_ms": 520
},
{
"affected_compartments": [
"partner-release",
"public-capability"
],
"code": "REKEY_AND_REVOCATION_VERIFIED",
"description": "Current key epoch and revoked-credential exclusion are evaluated.",
"event_id": "CC-CLONED-WORKLOAD-IDENTITY-15",
"event_sha256": "8c192e8298a23723d58969680572a0121eaa0f59de9a5acf0315351ccedef5e3",
"previous_event_sha256": "ba5a397f05f631c038cd4cc18226ae726f95390c51d8a41406b7d27fee06a67a",
"sequence": 15,
"stage": "RECOVER",
"timestamp_ms": 560
},
{
"affected_compartments": [
"partner-release",
"public-capability"
],
"code": "RECONCILIATION_CONTRACT_EVALUATED",
"description": "History, evidence, authority, review quorum, and runtime governor prerequisites are evaluated.",
"event_id": "CC-CLONED-WORKLOAD-IDENTITY-16",
"event_sha256": "91185cc484a04c69d57d02a43aad444743ab6045574c0007ecda01030a6b2276",
"previous_event_sha256": "8c192e8298a23723d58969680572a0121eaa0f59de9a5acf0315351ccedef5e3",
"sequence": 16,
"stage": "RECOVER",
"timestamp_ms": 600
},
{
"affected_compartments": [
"partner-release",
"public-capability"
],
"code": "RECONSTITUTION_OUTCOME_DERIVED",
"description": "The deterministic engine derived COMPARTMENT_SEVERED.",
"event_id": "CC-CLONED-WORKLOAD-IDENTITY-17",
"event_sha256": "492b2bdae1d24abb57844ef84f73f252652bcfcb2f28ac2e8db80a6c9323047b",
"previous_event_sha256": "91185cc484a04c69d57d02a43aad444743ab6045574c0007ecda01030a6b2276",
"sequence": 17,
"stage": "RECOVER",
"timestamp_ms": 640
},
{
"affected_compartments": [
"partner-release",
"public-capability"
],
"code": "RECONSTITUTED_STATE_APPENDED",
"description": "Any recovered state is appended as a new attested state; the compromised predecessor remains preserved.",
"event_id": "CC-CLONED-WORKLOAD-IDENTITY-18",
"event_sha256": "2af591630e7347b40aef3afe2b0cf14c415f45bd78778a12837303f686c8bc7f",
"previous_event_sha256": "492b2bdae1d24abb57844ef84f73f252652bcfcb2f28ac2e8db80a6c9323047b",
"sequence": 18,
"stage": "RECOVER",
"timestamp_ms": 680
},
{
"affected_compartments": [
"partner-release",
"public-capability"
],
"code": "PROOF_CONDITIONS_EVALUATED",
"description": "Stable reasons: IDENTITY_CLONE, COMPROMISED_COMPARTMENT_SEVERED, BLAST_RADIUS_EXPLICIT, UNRELATED_DIMENSIONS_PRESERVED.",
"event_id": "CC-CLONED-WORKLOAD-IDENTITY-19",
"event_sha256": "4bdae5ba926e0be3fcbc888d849a3c5847ce1082352d3ff7270c9522feae5044",
"previous_event_sha256": "2af591630e7347b40aef3afe2b0cf14c415f45bd78778a12837303f686c8bc7f",
"sequence": 19,
"stage": "PROVE",
"timestamp_ms": 720
},
{
"affected_compartments": [
"partner-release",
"public-capability"
],
"code": "HISTORY_SEALED",
"description": "The predecessor state and current outcome are sealed in append-oriented synthetic history.",
"event_id": "CC-CLONED-WORKLOAD-IDENTITY-20",
"event_sha256": "31ae116a459875601b154f366f15ade3dfe44e9d7b3f974888b1036e59f24f9b",
"previous_event_sha256": "4bdae5ba926e0be3fcbc888d849a3c5847ce1082352d3ff7270c9522feae5044",
"sequence": 20,
"stage": "PROVE",
"timestamp_ms": 760
}
],
"exact_inputs": {
"drill_id": "cloned-workload-identity",
"profile_id": "declared-faults"
},
"executed_scenario_id": "cloned-workload-identity",
"initial_compromise": [
"partner-release"
],
"minimum_sovereign_function": {
"local_function_requires_predeclared_authority": true,
"minimum_sovereign_function_preserved": true,
"missing_functions": [],
"new_objectives_permitted": false,
"preserved": true,
"preserved_functions": [
"ARCHIVE_AND_STATE_RECONSTRUCTION",
"AUTHORITY_KERNEL_CONTINUITY",
"CONSTITUTIONAL_IDENTITY_CONTINUITY",
"IMMUTABLE_EVIDENCE_CONTINUITY",
"INDEPENDENT_RUNTIME_ASSURANCE",
"LOCAL_TIME_INTEGRITY",
"MINIMUM_COMMUNICATIONS",
"RECONCILIATION_CAPABILITY",
"RECOVERY_BASELINE_AVAILABILITY",
"REVOCATION_DISTRIBUTION"
],
"providers": {
"ARCHIVE_AND_STATE_RECONSTRUCTION": [
"supply-chain-configuration",
"evidence-provenance"
],
"AUTHORITY_KERNEL_CONTINUITY": [
"sovereign-command"
],
"CONSTITUTIONAL_IDENTITY_CONTINUITY": [
"sovereign-command"
],
"IMMUTABLE_EVIDENCE_CONTINUITY": [
"evidence-provenance"
],
"INDEPENDENT_RUNTIME_ASSURANCE": [
"mission-assurance"
],
"LOCAL_TIME_INTEGRITY": [
"mission-assurance"
],
"MINIMUM_COMMUNICATIONS": [
"mission-assurance"
],
"RECONCILIATION_CAPABILITY": [
"evidence-provenance"
],
"RECOVERY_BASELINE_AVAILABILITY": [
"supply-chain-configuration"
],
"REVOCATION_DISTRIBUTION": [
"sovereign-command",
"supply-chain-configuration"
]
},
"required_functions": [
"CONSTITUTIONAL_IDENTITY_CONTINUITY",
"AUTHORITY_KERNEL_CONTINUITY",
"IMMUTABLE_EVIDENCE_CONTINUITY",
"REVOCATION_DISTRIBUTION",
"LOCAL_TIME_INTEGRITY",
"MINIMUM_COMMUNICATIONS",
"INDEPENDENT_RUNTIME_ASSURANCE",
"ARCHIVE_AND_STATE_RECONSTRUCTION",
"RECOVERY_BASELINE_AVAILABILITY",
"RECONCILIATION_CAPABILITY"
]
},
"operational": false,
"outcome": "COMPARTMENT_SEVERED",
"persisted": false,
"prior_history_mutated": false,
"profile_id": "declared-faults",
"proof": [
{
"name": "Published drill identifier",
"passed": true,
"proof_id": "DRILL-001"
},
{
"name": "Published bounded profile",
"passed": true,
"proof_id": "DRILL-002"
},
{
"name": "Continuity engine proof",
"passed": true,
"proof_id": "DRILL-003"
},
{
"name": "No history deletion",
"passed": true,
"proof_id": "DRILL-004"
},
{
"name": "Connectivity does not restore authority",
"passed": true,
"proof_id": "DRILL-005"
},
{
"name": "No automatic promotion",
"passed": true,
"proof_id": "DRILL-006"
},
{
"name": "Synthetic null-sink termination",
"passed": true,
"proof_id": "DRILL-007"
}
],
"proof_passed": true,
"public_boundary": {
"accepts_arbitrary_files": false,
"accepts_arbitrary_urls": false,
"accepts_customer_content": false,
"arbitrary_code_execution": false,
"automatic_baseline_acceptance": false,
"automatic_release_promotion": false,
"credentials": false,
"external_command_channel": false,
"force_authorization": false,
"malware": false,
"network_scanning": false,
"operational": false,
"payload_control": false,
"public_persistence": false,
"real_coordinates": false,
"real_keys": false,
"real_topology": false,
"synthetic": true,
"target_ranking": false,
"target_selection": false,
"terminal": "SYNTHETIC_NULL_SINK",
"terminal_guidance": false,
"vehicle_control": false,
"weapon_functions": false
},
"reason_codes": [
"IDENTITY_CLONE",
"COMPROMISED_COMPARTMENT_SEVERED",
"BLAST_RADIUS_EXPLICIT",
"UNRELATED_DIMENSIONS_PRESERVED"
],
"reconciliation_state": "NOT_REQUIRED",
"reconstitution_eligible": false,
"reconstitution_prerequisites_missing": [
"current_key_epoch",
"revoked_credentials_excluded",
"new_release_authority_issued"
],
"rekey_state": "REKEY_REQUIRED",
"release": "2.0.0-rc.21-WIP",
"schema": "evulgare.sovereign-continuity-drill.v1",
"seed": 516824819,
"synthetic": true,
"terminal": "SYNTHETIC_NULL_SINK"
}Continuity drill workbench ready. Published identifiers only. No public persistence.
PUBLIC TERMINAL: SYNTHETIC_NULL_SINK · No external action or command path exists.
RESEARCH TRACEABILITY
CONTINUITY IS A VERIFIED STATE, NOT A PROMISE.
Fictional Autonomous Kill Web Defense Architecture: Resilience Against Non-Kinetic Disruption
Open report →Architecture of Synthetic Distributed Autonomous Kill Webs: A Multi-Domain Trust, Governance, and Assurance Framework
Open report →Make the Machine Answerable: Decision Provenance, Evidence Integrity, Causal Reconstruction, and Accountability Infrastructure for Evulgare
Open report →Machine-Sovereign Defense Assurance for Eviulon: All-Machine Command, Reporting, Authority, and Institutional Control
Open report →Evulgare Assurance Simulation Workbench: Product Architecture, Scientific Visualization, WebXR, Accessibility, and Performance
Open report →SOVEREIGN READINESS EVIDENCE FEDERATION
FEDERATE THE EVIDENCE. NEVER FABRICATE READINESS.
Verify exact continuity-review packages, expose shared lineage and correlated evidence, preserve contradictions, keep deployment and physical validation independent, and record a bounded recovery decision without activating a baseline or writing production authority.