Repository navigation
ExecSurface v0.1.0-alpha.5
Pre-releaseExecSurface v0.1.0-alpha.5
Fifth public alpha of ExecSurface, a runtime behavioral-integrity and verification layer for observed execution-surface drift.
What advances in Alpha.5
- stronger semantics-preserving handling of the current evidence model, keeping ambiguous or incomplete evidence non-PASS-eligible;
- stronger proposition and backend authority boundaries rather than treating a backend name as universal authority;
- stronger legitimate-variance handling while retaining anti-poisoning constraints on accepted behavior;
- stronger attestation, provenance, executable binding and release-artifact verification;
- improved usability, packaging and reproducibility qualification;
- portable release construction on Ubuntu 22.04 with a GLIBC compatibility ceiling, followed by public-artifact tests on Ubuntu 22.04 and Ubuntu 24.04.
Evidence boundary
Frozen product source: 5067200452c174da6bc8d9d7ecf6957ee379f0a2.
Internal destructive release-artifact qualification passed in run 36902486872. The earlier failed A7 run 36901600086, which exposed reproducibility and ABI-portability problems, remains retained evidence and was repaired before the accepted run.
P8 independent external validation was not closed before publication. Publication was explicitly authorized by the owner with P8 waived only as a pre-publication gate. This release does not claim independent external validation. P8 remains open for post-release reproduction, criticism, counterexamples, interoperability review and real-workload evidence.
Public support boundary
- Linux x86_64 is the public support scope for this alpha.
- Native ptrace remains the bounded public reference observer for the portable line.
- ARM64 support is not claimed.
- Observed behavior is not all possible behavior.
- ExecSurface is not an antivirus, EDR, SIEM, sandbox, malware detector or proof of software safety.
- Incomplete or ambiguous evidence cannot silently become PASS.
Distribution verification
The release pipeline checks source quality, deterministic dual builds, GLIBC compatibility, checksums, provenance attestation, archive safety and privacy, clean public consumption on Ubuntu 22.04 and 24.04, source-to-artifact byte equivalence, immutable-tag installation, Action PASS/REVIEW/BLOCK/ERROR semantics, tamper rejection, stable v0.1 promotion only after public proofs, and registry installation after publication.
Release source commit: 9e73b925d55557e33de1b0813995609aaefdc037
Frozen product source: 5067200452c174da6bc8d9d7ecf6957ee379f0a2
Build and attestation run: https://github.com/AETHERXGLOBAL/execsurface/actions/runs/36910725515