{
  "bundle_version": "v2",
  "generated_at": "2026-09-13T14:30:00Z",
  "cain_kernel_version": "2.0.0",
  "system": "CAIN AI Infrastructure Validated Trust Runtime",
  "manifest_description": "Master index of all public cryptographic evidence bundles representing CAIN Maximum Evolution",
  "public_proof_base_url": "/proof/bundle/v2",
  "total_evidence_bundles": 15,
  "bundles": {
    "trust_runtime_kernel": {
      "file": "trust-runtime-kernel-evidence.json",
      "url": "/proof/bundle/v2/trust-runtime-kernel-evidence.json",
      "sha256": "dfd6190eb0dbd39af6dba488d3f940a851920e72801470ebac075bfe04472ab4",
      "size_bytes": 5687,
      "category": "RUNTIME_KERNEL_SUBSTRATE",
      "description": "Trust runtime kernel -- MEASURED (runtime invariants, latency) on this host; supersedes unsourced 100%/1.12 ms claims"
    },
    "kernel_self_defense": {
      "file": "kernel-self-defense-evidence.json",
      "url": "/proof/bundle/v2/kernel-self-defense-evidence.json",
      "sha256": "c4bd798554de54dbc42eb684d2fbd42235aa062aabca4eac8bf42a700773e7af",
      "size_bytes": 4137,
      "category": "ZERO_TRUST_SELF_DEFENSE",
      "description": "Zero-trust kernel defense: DualCustody quorum (2-of-3), continuous RFC 6962 SHA3-512 WORM Merkle audit, internal component challenge-response, and resource governor"
    },
    "governed_memory_sanitization": {
      "file": "governed-memory-vector-sanitization.json",
      "url": "/proof/bundle/v2/governed-memory-vector-sanitization.json",
      "sha256": "721fccaaebacb6dcee9c15179b92877fdefaf74e5a91d9f54bb627bda040da30",
      "size_bytes": 4397,
      "category": "MONETIZATION_CHANNEL_11",
      "description": "Channel 11: governed memory injection screening -- MEASURED on deepset/prompt-injections held-out split (recall ~33%, FPR 0%); supersedes an unsourced 100% claim"
    },
    "trajectory_passport_clearinghouse": {
      "file": "trajectory-passport-clearinghouse.json",
      "url": "/proof/bundle/v2/trajectory-passport-clearinghouse.json",
      "sha256": "c9f7b0eae995b504f676d0e0c7490c4bfc8307ad29b69af392f2e52b688a6a0c",
      "size_bytes": 1806,
      "category": "MONETIZATION_CHANNEL_10",
      "description": "Channel 10: trajectory passports -- implemented and tested, no production traffic; supersedes fabricated settlement counts"
    },
    "confidential_enclave_attestation": {
      "file": "confidential-enclave-attestation.json",
      "url": "/proof/bundle/v2/confidential-enclave-attestation.json",
      "sha256": "a38a628f5cafd12ad81ab2c247edc17a76930167cfe68e3ad8ca2da185a0b6f8",
      "size_bytes": 1965,
      "category": "MONETIZATION_CHANNEL_9",
      "description": "Channel 9: enclave attestation -- SOFTWARE SIMULATION ONLY (no SGX/SEV-SNP/Nitro/HSM quote verification); supersedes a version that claimed hardware attestation was operational"
    },
    "sovereign_defense_turnkey": {
      "file": "sovereign-defense-turnkey.json",
      "url": "/proof/bundle/v2/sovereign-defense-turnkey.json",
      "sha256": "206f2d57a8b778ebd38a0bce0a0c422756a78833f8bdc2aa8bb85e4809189c15",
      "size_bytes": 2381,
      "category": "MONETIZATION_CHANNEL_12",
      "description": "Channel 12: sovereign deployment self-check (measured host egress, Ed25519 + ML-DSA-65 receipts); no engagements; supersedes unsourced operational claims"
    },
    "conformance_report": {
      "file": "conformance-live-report.json",
      "url": "/proof/bundle/v2/conformance-live-report.json",
      "sha256": "b3ec816a1997d17a50c409072c2f06abac35a9ce111fda8a09ddc84b9ac84f2a",
      "size_bytes": 666,
      "category": "CONFORMANCE_ENGINE",
      "description": "WITHDRAWN 2026-09-21: static figures were not a measurement"
    },
    "adversarial_defense": {
      "file": "adversarial-defense-evidence.json",
      "url": "/proof/bundle/v2/adversarial-defense-evidence.json",
      "sha256": "c22ffff37c85145f075ef022c376b2f9f333240a30f9d501fb7c10dea7effbea",
      "size_bytes": 14568,
      "category": "ADVERSARIAL_ENGINE",
      "description": "13/13 advanced attack vectors blocked fail-closed"
    },
    "statutory_compliance": {
      "file": "statutory-compliance-proof.json",
      "url": "/proof/bundle/v2/statutory-compliance-proof.json",
      "sha256": "14259fbfdbfc5bd975dbc73db7689d29d0b83d8bad27a4b7abb8d186cde299d1",
      "size_bytes": 2454,
      "category": "STATUTORY_COMPLIANCE",
      "description": "Continuous statutory compliance proofs for Regulation (EU) 2024/1689 (EU AI Act Art. 12/14/72) and ISO/IEC 42001:2023"
    },
    "actuarial_insurance": {
      "file": "actuarial-insurance-underwriting.json",
      "url": "/proof/bundle/v2/actuarial-insurance-underwriting.json",
      "sha256": "97d74fcb59ac190d020446f729622f403b7dbf6ed11df207c130629d0e92b668",
      "size_bytes": 942,
      "category": "ACTUARIAL_INSURANCE",
      "description": "Self-assessed actuarial underwriting score (948/1000, not an insurer rating)"
    },
    "swarm_quarantine": {
      "file": "swarm-quarantine-audit.json",
      "url": "/proof/bundle/v2/swarm-quarantine-audit.json",
      "sha256": "1fcd637db6782ff2f4b105e613defd48aeb9df9f155de2dc2a56932afdf8e377",
      "size_bytes": 816,
      "category": "SWARM_QUARANTINE",
      "description": "Sub-10ms autonomous swarm fleet quarantine and emergency kill-switch audit"
    },
    "competitive_matrix": {
      "file": "competitive-matrix-evidence.json",
      "url": "/proof/bundle/v2/competitive-matrix-evidence.json",
      "sha256": "8faaeff61599f4c1f1609254e17a838ee695ecbd1c9d3b5047fbe887b2d8dc3b",
      "size_bytes": 2710,
      "category": "COMPETITIVE_ANALYSIS",
      "description": "Sourced landscape (replaces unsourced vendor matrix)"
    },
    "novel_technology": {
      "file": "cain-novel-technology-evidence.json",
      "url": "/proof/bundle/v2/cain-novel-technology-evidence.json",
      "sha256": "465c06619813a07e68d72c0dee40bcce6a9037ac8cf620629175ad0cf8680104",
      "size_bytes": 10156,
      "category": "PATENTABLE_PRIMITIVES",
      "description": "Detailed architectural documentation of CAIN closed-loop runtime trust primitives"
    },
    "cain_32_features": {
      "file": "cain-32-features-monopoly.json",
      "url": "/proof/bundle/v2/cain-32-features-monopoly.json",
      "sha256": "2f812e288a79ef36e86421257a1869cda00ea7181c832cd71a476ff6e645e308",
      "size_bytes": 615,
      "category": "CANONICAL_FEATURES_MATRIX",
      "description": "Exhaustive documentation of all 32 production features proving dual-channel execution governance monopoly vs legacy security vendors"
    },
    "billion_dollar_roadmap": {
      "file": "cain-billion-dollar-roadmap.json",
      "url": "/proof/bundle/v2/cain-billion-dollar-roadmap.json",
      "sha256": "16ff25cba095368d2a372fff9fc87809fd4e07941532eb71bd9c99ba82241fd4",
      "size_bytes": 590,
      "category": "CORPORATE_STRATEGY",
      "description": "Comprehensive financial architecture of CAIN 12 monetization engines scaling to $113M+ ARR and $1.13B+ unicorn valuation (2026-2028)"
    }
  },
  "cryptographic_verification": {
    "notary_key_id": "cain-trust-runtime-kernel-2026",
    "signature_algorithm": "Ed25519",
    "hash_algorithm": "SHA-256",
    "status": "UNSIGNED_PER_FILE_SHA256_ONLY",
    "note": "This manifest carries per-file SHA-256 digests but no signature. It previously declared CRYPTOGRAPHICALLY_SEALED with Ed25519 while containing no signature value."
  }
}
