Mandatory before release.
Enabling the dweb opens the user's browser to a peer-to-peer abuse surface — peers (and, once it ships, the agent acting on inbound) reaching into the browser via messaging, dwapps, and the always-on base network. That surface is not yet locked down: the inbound → unattended-action security model is specced but unbuilt (docs/specs/FEATURE-FIRST-CLASS-MESSAGING.md §7 — tier topology, two-layer fail-closed clamp, rate cap, consent grants, vault posture).
Until that lands, the backstop is a user-reachable kill switch to shut down all dweb networking.
Blockers (must be true before release)
The kill switch (PR #14) is the immediate, mandatory piece; the §7 lockdown gates turning the unattended surface on at all.
Mandatory before release.
Enabling the dweb opens the user's browser to a peer-to-peer abuse surface — peers (and, once it ships, the agent acting on inbound) reaching into the browser via messaging, dwapps, and the always-on base network. That surface is not yet locked down: the inbound → unattended-action security model is specced but unbuilt (
docs/specs/FEATURE-FIRST-CLASS-MESSAGING.md§7 — tier topology, two-layer fail-closed clamp, rate cap, consent grants, vault posture).Until that lands, the backstop is a user-reachable kill switch to shut down all dweb networking.
Blockers (must be true before release)
feat/dweb-kill-switch).The kill switch (PR #14) is the immediate, mandatory piece; the §7 lockdown gates turning the unattended surface on at all.