Aperture Bastion / Daylight / public review capsule

No Such Machine

Public evidence for defensive machine-code research. Claims stay bounded to what the repository can regenerate.

Wuci-Ji Systems field scene with the official emblem and armored vehicle in a dark forest
Public brand
No Such Machine
Project surface
Wuci-Ji / 无此机
Current OS path
Noether Forge · source-only review
Not production cryptography Classical and fixture evidence does not create production authority.
Not runtime sandboxing No OS containment claim is shown without equivalent enforcement and tests.
Not external certification No independent audit, government validation, FIPS validation, or endorsement is claimed.
Evidence-bound public review NoEvidence(x) -> NoClaim(x). NoProof(x) -> NoRelease(x).

Public preview · activation pending at last live readback

Daylight Bottle uses a browser-local encryption path before its API request.

With a manually approved recipient record, the implemented browser client encrypts before upload and decrypts after ciphertext retrieval. The same-origin service accepts ciphertext and public metadata.

Activation status observed at . Point-in-time readback; not continuous availability.

local content boundary

Browser-local encryption path

In the reviewed client flow, messages are encrypted before upload. Private identities, passphrases, and decrypted bodies are not API fields.

Does not prove: uncompromised JavaScript delivery, browser integrity, or device integrity.

curated recipient directory

No public key registration

Recipients create identities locally and submit only a public record for manual owner review.

Does not prove: a keyname holder's real-world identity.

inspectable receipt

Evidence is visible

Accepted bottles receive public metadata, a ciphertext digest, retention timestamps, and a same-origin evidence URL.

Does not prove: the server was honest or never observed plaintext outside the implemented request path.

Aperture review surface

A public capsule, not a trust shortcut.

Aperture Bastion binds public artifacts to subject bytes, manifest references, and non-claim boundaries. The capsule gives reviewers handles to inspect; it does not promote local evidence into external authority.

01 / subject bytes

Subject bytes pinned

The capsule digest is published with the release tag and commit reference.

Does not prove: production cryptography or runtime containment.

aperture-status.json
02 / public artifact

Firewalled artifact

The public artifact profile rejects private-material patterns and unexpected files before publication.

Does not prove: host cleanliness or unknown-secret absence.

hosting-requirements.json
03 / references

Evidence references checked

Claim text is mapped to paths, commands, status values, and explicit non-claims.

Does not prove: certification, endorsement, or independent audit completion.

claim-evidence.json
04 / hosted surface

Hosted/local comparison

Hosting requirements declare canonical HTTPS, redirects, status JSON, and required public assets.

Does not prove: current hosted compliance until the live gate passes.

hosting requirements

Evidence index

Inspection ports for the public surface.

Each handle below answers what is shown, what local evidence checks it, and what it does not claim.

claim map

claim-evidence.json

Maps public claims to local files, values, and validation commands.

Does not prove: external certification or government validation.

Open JSON
capsule status

aperture-status.json

Publishes release tag, capsule digest, hosted workflow, and artifact-diff status.

Runtime sandboxing is not proven. Host cleanliness is not proven.

Open status
daylight gate

daylight-v20 status

Records declaration refusal, fixture limits, external evidence gaps, and blockers.

Does not prove: Singularity declaration or independent audit.

Open status
metadata

CodeMeta / citation

Provides machine-readable research software metadata and citation information.

Does not prove: third-party indexing or endorsement.

CodeMeta
hosting

hosting-requirements.json

Declares canonical URL, header expectations, redirects, and public assets.

Does not prove: server compromise resistance.

Open requirements
boundary

product-boundary.html

Separates evidence-bound claim verification from production security replacement claims.

Does not prove: endpoint protection, SIEM replacement, or IAM replacement.

Read boundary

Daylight proof ladder

Conservative claim, self-progress, external evidence.

Daylight distinguishes repository-owned progress from claim-usable external evidence. The v20 surface records a refusal, not a declaration.

Conservative claim

Aperture Bastion capsule

Release evidence is local and reviewable through the Aperture status file and CI handles.

make daylight-v19-aperture-bastion-ci
Declaration refused

Daylight v20 Gate

Repo-owned ceiling progress is recorded, while fixture vectors and missing external evidence keep the declaration blocked.

make daylight-v20-aperture-singularity-ci
External evidence required

Review challenge

Review evidence, reproduce the lane, find a false claim, or show a reproducibility failure. Endorsement is not implied.

make site-validate
Daylight v17 score
999999687 AM+
Daylight v20 score
999,801,305 AM+
Repository-owned gates
repo_owned_code_gap_count = 0 · repo_owned_ceiling_reached = true
Declaration boundary
singularity_possible_without_external_validation = false · declaration_allowed = false
Aperture capsule
v2.2.0-aperture-bastion · ce077fea615528634ad27fec516fdb402f101602 · 9109e7d9364f305a0618e6f5d810f3dd665d995e5c56f9d0ccc8d01875b9eec0 · aperture-bastion-public-v1
Hosted review handle
28564990503 · make daylight-public-artifact-firewall
Daylight v20 public technical review challenge poster
Daylight v20 public challenge: Technical review requested. No endorsement is requested or implied.

Public technical review requested

Challenge the evidence, not the boundary.

The requested review actions are narrow: inspect the evidence map, reproduce the lane, identify false claim text, or show a reproducibility failure. No bounty, certification, or adoption claim is made here.

WuciOS 2.4.0 · Noether Forge

Source review is published. The ISO is not.

Noether Forge is the current Alpine-based realization of the WuciOS Noether Core profile. Reviewers can inspect the build source, pinned input lock, authenticated-fetch procedure, schemas, tests, and bounded instructions at immutable commit 4783ebc.

No ISO, APK payload, package cache, compiled Wuci-Ji binary, kernel, initramfs, modloop, EFI image, firmware, or bootloader binary is distributed through this review lane. Reviewers fetch pinned Alpine 3.24.1 x86_64 inputs directly from upstream and build privately.

Distribution

source-review-merged · source-only

Alpine closure

3.24.1 x86_64 · 52 locked APKs

Repeat-build scope

one clean checkout + host toolchain

Private boot gates

QEMU SeaBIOS + OVMF/UEFI

The earlier WuciOS v2.4 Reduction Gate and its Alpine substrate trial score remain design history; they are not a Noether Forge release score or binary-release authorization.

Wuci-Ji Systems wide scene showing ship, aircraft, and armored vehicle across sea, air, and land
Sea, air, and land review lanes; not an operational capability claim.

Cross-surface review

Every lane returns to evidence.

Public trust is earned through the claim map, status files, commands, and reproducible repository evidence.

  • Open the published handle.
  • Run the listed command.
  • Reject unsupported claims.

Gödel Boundary

The claim boundary is the trust anchor.

Wuci-Ji and WuciOS v2.4 are not externally certified, not production authorized, not government approved, not a runtime sandbox claim, and not a quantum-safe claim from classical-only evidence.

This surface is not production cryptography, not a general runtime sandbox, not host-cleanliness proof, not whole-system post-quantum secure, not FIPS validation, not government validation, not external certification, and not independently audited.

  • NoEvidence(x) -> NoClaim(x)
  • NoProof(x) -> NoRelease(x)
  • ManualScore(x) -> Reject(x)
Open WuciOS non-claims