DNS
The proof console target is not exposed in public navigation until DNS is verified.
HELM Verification
The public surface shows the mechanism Mindburn can stand behind today: a boundary run, a signed receipt shape, tamper failure, source links, and explicit gates for anything not public yet.
Proof ledger
Verification on mindburn.org starts with inspectable public artifacts. Planned console checks stay labeled unavailable until the readiness gates pass.
| Surface | Status | Evidence | Review | Action |
|---|---|---|---|---|
| Receipt simulation Browser-visible allow, deny, escalation, verification, and tamper states. | PUBLIC | ExecutionBoundaryDemo public component | 2026-05-21 stale risk Low | Run demo → |
| Source details Public wording is mapped to source files and disclosure boundaries. | PUBLIC | src/data/claims.ts + /trust/claims | 2026-05-21 stale risk Low | Review details → |
| Code Intelligence Graph proof Engineering evidence path for CodeIndexReceipt, CodeImpact, affected tests, write_set, and closure diff checks. | GATED | HELM AI Enterprise Code Intelligence Graph proof docs | 2026-05-24 stale risk Medium | Review code scope → |
| MCP and tool-output quarantine Unknown MCP servers, malicious tool output, hostile code comments, and tainted egress deny or quarantine before execution context. | GATED | HELM quarantine proof docs and Claim Matrix | 2026-05-24 stale risk Medium | Review security → |
| Analog executor proof Supported real-world-adjacent executor actions require bounded scope, approvals, compensation, jurisdiction boundaries, receipts, and EvidencePacks. | GATED | HELM analog executor proof docs | 2026-05-24 stale risk Medium | Review claims → |
| Kinetic gateway proof AMR and factory gateway examples are simulator-labeled and require safety profiles, telemetry, emergency-halt readiness, approvals, and EvidencePacks. | SIMULATOR GATED | HELM kinetic gateway proof docs | 2026-05-24 stale risk High | Review limits → |
| Kernel repository Public kernel source for execution-boundary, receipt, proof, and evidence primitives. | LIVE | Mindburn-Labs GitHub org | 2026-05-21 stale risk Low | Open repo → |
| Kernel docs Public documentation for the OSS kernel route. | LIVE | docs-platform/apps/helm-docs | 2026-05-21 stale risk Low | Open docs → |
| kernel.mindburn.org checks Unavailable until DNS, health, verify, and tamper smoke tests pass. | PLANNED | Canonical HELM AI Kernel proof console target. It is withheld from public navigation until DNS, health, demo, verify, and tamper smoke tests pass. | 2026-05-21 stale risk Medium | — |
AI proposes an action. HELM decides whether it may run. The receipt makes the decision checkable later.
DENY · regulated_export.v3 · rcpt-demo-836be986Tamper detectable: changing the verdict produces a different receipt.
Readiness gate
The future kernel console is treated as a gated proof path, not as marketing copy. These checks must pass before the route promotes the public target.
The proof console target is not exposed in public navigation until DNS is verified.
Health checks must pass before a public console link is promoted.
Receipt verification must pass against the public target before any live-proof wording appears.
Tamper detection must fail closed before the route promotes public console checks.