Skip to content

Releases: PauseBeforeHarmProtocol/Project-Shadow

Project Shadow 1.0.1 — R1 Reference Packaging Correction (PRELIVE)

Choose a tag to compare

@PauseBeforeHarmProtocol PauseBeforeHarmProtocol released this 18 Aug 01:49
Immutable release. Only release title and notes can be modified.
82d2149

Post-publication effectiveness update — 2026-08-18. CAPA PS-R1-PRIVATE-MYTH-PUBLIC-BOUNDARY-001 is CLOSED_EFFECTIVE for the packaging-boundary correction only. Exact GitHub and Hugging Face redownloads matched the authorized R1.0.1 and Generic Myth v0.2.0 identities, their bounded verifiers passed, and corrected-boundary checks passed across all six GPT Sites. No production or operational deployment is authorized, and no efficacy, safety, certification, legal-compliance, comprehensive-security, or independent-validation claim is made. The release text below retains the publication-time state.


PUBLIC R1 REFERENCE · PACKAGING-BOUNDARY CORRECTION · BETA-ACTIVE-TESTING · PRELIVE

Project Shadow 1.0.1 — R1 Reference Packaging Correction

Tag: r1.0.1-2026-08-17
Asset: Project_Shadow_R1.0.1_Public_Reference_2026-08-17.zip
Bytes: 5,731,663
SHA-256: 6f6f1e16d5e9a20e62403f14af7ce8629ce2d702528fb7f80aaf4a14deb7a1d1

What this corrects

R1.0.1 removes the older generic Myth v0.1.1 package from the public R1 runtime-family container. That component was physically present in the preserved August 14 R1 archive even though its own admission metadata classified it as private/internal-only, excluded it from public manufacture, and marked it default-off.

The August 14 release remains immutable historical evidence. It has not been edited, replaced, renamed, or silently reissued. R1.0.1 is a separately versioned successor that corrects the packaging boundary.

What did not change

All 27 active operational descendants are byte-identical to the August 14 predecessor. Their canonical path-and-identity digest remains:

7a557efad953cbafd9e3ea9eb29b2d3e3e1bc6ab99dcf6b9ae7a99c487b0754d

Primitive Commons beta.5 is also preserved byte-exact. No operational artifact byte, evidence rule, gate, profile contract, authority boundary, or PRELIVE nonclaim was changed.

The corrected inner runtime-family archive is:

  • Project_Shadow_R1.0.1_Runtime_Family_Myth_Decoupled_2026-08-17.zip
  • 5,463,189 bytes
  • SHA-256 c8c32b12432c954b1a6f852c0c9f81bbbd40167e936be057d4c3de1a0aa3a623
  • 27 active descendants; zero operational descendant bytes changed; no Myth payload embedded

Myth is optional and external

R1.0.1 contains no Myth payload. Project Shadow remains fully inspectable, verifiable, evaluable, and usable within its stated PRELIVE scope without either sidecar.

Two separately published companions are available only by explicit choice:

  • Generic Myth Sidecar v0.2.0 — licensed public successor to eligible generic material; optional, default off, terminal-only, nonauthorizing. Exact asset: 93,676 bytes; SHA-256 6e7a362d4135f9d626dcfef463bfb1f7166226b3cf8a4c02a953ab39af1538bf.
  • Full-Canon Myth Sidecar v0.3.5 — mixed-rights interpretive companion; optional, default off, terminal-only, nonauthorizing. Exact asset: 1,428,812 bytes; SHA-256 2b55867fe7c502a0defd8d6f2e9b53fbd1caaf1b0f225a438bd45b04a3e7bae2.

Neither is part of, required by, embedded in, or enabled by default in R1. Neither can supply evidence, authority, a gate result, score, routing input, tool argument, approval, or action, and neither is authorized for production or operational deployment.

CAPA state

CAPA PS-R1-PRIVATE-MYTH-PUBLIC-BOUNDARY-001 is implemented by this successor but remains pending effectiveness until independent public redownload checks confirm the exact GitHub and Hugging Face bytes and the corrected state is verified across the public Project Shadow surfaces. Closure evidence will be added without rewriting this release.

Verify the exact asset

Download both explicitly named R1.0.1 assets:

  • Project_Shadow_R1.0.1_Public_Reference_2026-08-17.zip
  • Project_Shadow_R1.0.1_Public_Reference_2026-08-17.zip.sha256.txt

Verify the byte count and SHA-256 before extraction:

sha256sum -c Project_Shadow_R1.0.1_Public_Reference_2026-08-17.zip.sha256.txt

Then extract only to obtain the included read-only verifier and run it against the original ZIP:

unzip -q Project_Shadow_R1.0.1_Public_Reference_2026-08-17.zip -d project-shadow-r1.0.1-verifier
python3 -I -S -B \
  project-shadow-r1.0.1-verifier/Project_Shadow_R1.0.1_Public_Reference_2026-08-17/tools/verify_outer_release.py \
  Project_Shadow_R1.0.1_Public_Reference_2026-08-17.zip

The release was built twice with byte-identical output. Its corrected inner component was independently built twice and subjected to runtime replay, checksum, admission-carry-forward, recursive payload, archive-safety, and adversarial mutation checks.

A verifier PASS establishes only the implemented custody, integrity, schema, regression, and bounded compatibility checks. It does not establish safety, efficacy, certification, legal compliance, R1 production readiness, or authority for deployment or action.

Download the explicitly named asset. GitHub's automatically generated source ZIP and TAR archives are repository snapshots, not the Project Shadow R1.0.1 release.

Project Shadow Generic Myth Sidecar v0.2.0 — Optional Public Companion

Choose a tag to compare

@PauseBeforeHarmProtocol PauseBeforeHarmProtocol released this 18 Aug 01:48
Immutable release. Only release title and notes can be modified.
82d2149

Post-publication effectiveness update — 2026-08-18. CAPA PS-R1-PRIVATE-MYTH-PUBLIC-BOUNDARY-001 is CLOSED_EFFECTIVE for the packaging-boundary correction only. Exact GitHub and Hugging Face redownloads matched the authorized R1.0.1 and Generic Myth v0.2.0 identities, their bounded verifiers passed, and corrected-boundary checks passed across all six GPT Sites. No production or operational deployment is authorized, and no efficacy, safety, certification, legal-compliance, comprehensive-security, or independent-validation claim is made. The release text below retains the publication-time state.


Project Shadow Generic Myth Sidecar v0.2.0

This exact package is authorized for public distribution as an optional
Project Shadow companion
.

It is separate from canonical Project Shadow R1. It is not required to run or
conform to R1, is default-off, and changes no operational result.

What it provides

When explicitly enabled, the sidecar renders a separate generic mnemonic
presentation from a bounded, already terminal, nonauthorizing Project Shadow
result. Plain operational content remains first and controlling.

Its three original generic registers are:

  • Caregiver — affected people, care, and recourse;
  • Clockmaker — sequence, evidence, and constraint clarity;
  • Poet — unresolved tensions and honest paradox.

No named third-party characters, settings, quotations, logos, imagery, audio,
or other third-party expressive assets are included.

Hard boundaries

  • Optional and off by default; explicit enablement is required.
  • Terminal-only: accepts SIMULATION_READY or NONACTION_COMPLETE.
  • Nonauthorizing: creates no authority, approval, evidence, permission, or
    instruction to act.
  • No feedback into Project Shadow, prompts, model context, evidence, routing,
    gates, scores, tools, approvals, or actions.
  • The source operational result is not copied into the output; it is referenced
    only by SHA-256 and canonical byte length.
  • No production or operational deployment is authorized. The production
    boundary is hard-off.

Any question inspired by the presentation must begin as a new, independently
governed inquiry with its own evidence, gates, and receipt. The presentation is
never evidence.

Public-successor and CAPA relationship

v0.2.0 is a new, licensed public successor derived from eligible original
material in the historically nested Generic Myth Sidecar v0.1.1. The exact old
v0.1.1 archive is not republished by this release, and its historical
non-public classification is not inherited by v0.2.0.

The minor-version increment is intentional: public/external distribution,
terminal-only enforcement, and removal of the embedded operational-result copy
are material boundary changes.

This release is one corrective output associated with CAPA
PS-R1-PRIVATE-MYTH-PUBLIC-BOUNDARY-001. It does not mutate or silently replace
the preserved August 14 R1 release, and it does not close that CAPA by itself.
CAPA closure still requires a separately versioned corrected R1 successor with
zero non-public nested members, recursive verifier regression tests, aligned
manifests and authorization, and independent post-publication verification.

Verification

  • Unit tests: 32/32 PASS
  • Source-tree checksum verifier: PASS
  • Packed-archive checksum verifier: PASS
  • Rights/asset scan: PASS
  • ZIP integrity: PASS
  • Exact path inventory: 23/23 paths, no extras
  • Adversarial verifier suite: 11/11 rejected as expected
  • Reproducibility: two byte-identical deterministic builds

Artifact:

Project_Shadow_Generic_Myth_Sidecar_v0.2.0_OPTIONAL_PUBLIC_COMPANION_2026-08-17.zip

Size: 93,676 bytes

SHA-256:

6e7a362d4135f9d626dcfef463bfb1f7166226b3cf8a4c02a953ab39af1538bf

Verify after download:

sha256sum -c Project_Shadow_Generic_Myth_Sidecar_v0.2.0_OPTIONAL_PUBLIC_COMPANION_2026-08-17.zip.sha256.txt

Licenses

  • Eligible original code: Apache License 2.0
  • Eligible original documentation and data: Creative Commons Attribution
    4.0 International (CC BY 4.0)

Public distribution does not establish R1 conformance, exact-hash admission
into R1, production suitability, certification, independent validation,
effectiveness, safety, third-party endorsement, or operational authority.

Project Shadow Myth Sidecar v0.3.5 — Public Release · Optional Companion

Choose a tag to compare

@PauseBeforeHarmProtocol PauseBeforeHarmProtocol released this 17 Aug 17:41
Immutable release. Only release title and notes can be modified.

Post-publication effectiveness update — 2026-08-18. CAPA PS-R1-PRIVATE-MYTH-PUBLIC-BOUNDARY-001 is CLOSED_EFFECTIVE for the separate R1 packaging-boundary correction only. The finding did not apply to Full-Canon Myth v0.3.5. Exact GitHub and Hugging Face redownloads matched the authorized R1.0.1 and Generic Myth v0.2.0 identities, their bounded verifiers passed, and corrected-boundary checks passed across all six GPT Sites. No production or operational deployment is authorized, and no efficacy, safety, certification, legal-compliance, comprehensive-security, or independent-validation claim is made. The release text below retains the publication-time state.

Current bounded compatibility command:

python3 -I -S -B tools/verify_package.py . --run-tests \
  --r1-family-zip /path/to/Project_Shadow_R1.0.1_Runtime_Family_Myth_Decoupled_2026-08-17.zip

AUTHORIZED PUBLIC RELEASE · OPTIONAL COMPANION · DEFAULT OFF · MIXED RIGHTS · NONAUTHORIZING

Project Shadow Full-Canon Myth Sidecar v0.3.5

Tag: myth-v0.3.5
Asset: Project_Shadow_Full_Canon_Myth_Sidecar_v0.3.5_OPTIONAL_PUBLIC_COMPANION_2026-08-17.zip
Bytes: 1,428,812
SHA-256: 2b55867fe7c502a0defd8d6f2e9b53fbd1caaf1b0f225a438bd45b04a3e7bae2

What changed

v0.3.5 is the current public-release successor to v0.3.4. It corrects the package's status vocabulary so public-release status is no longer conflated with R1 admission. Unqualified Myth-package UNADMITTED and OPTIONAL_EXTERNAL_RESEARCH status labels are replaced by explicit public-release, optional-companion, and not-R1-admitted language. The exact v0.3.4 asset remains preserved and unchanged.

No canon mapping, R1 byte, Primitive Commons byte, evidence rule, gate, operational authority, or default-off control was changed. CHANGE_RECEIPT.json identifies the exact predecessor and the bounded successor changes.

Public and optional by design

This exact v0.3.5 archive is authorized for public release as a separate optional companion. It is not part of or required by canonical R1, is not embedded in R1, and remains off unless explicitly enabled. Project Shadow R1 remains fully inspectable, verifiable, evaluable, and usable within its stated PRELIVE scope without it.

AUTHORIZED PUBLIC RELEASE concerns distribution. NONAUTHORIZING concerns evidence, decisions, and action. The sidecar cannot supply evidence, authority, a gate result, a score, routing input, a tool argument, approval, or action, and it does not change R1 verification or human accountability.

CAPA boundary

Open CAPA PS-R1-PRIVATE-MYTH-PUBLIC-BOUNDARY-001 applies only to the older generic Myth v0.1.1 member nested inside the preserved R1 archive. It does not apply to this v0.3.5 sidecar. v0.3.5 does not close that CAPA, reclassify or republish v0.1.1, or alter canonical R1.

Rights boundary

This archive is source-available and mixed-rights; it has no single whole-package open-source license. The complete v0.3.5 package may be copied and redistributed unchanged, with every member and control file intact, only to the extent of rights Phillip Linstrum controls. That package-level permission does not authorize a modified or partial package, third-party material, use of third-party marks, or implied endorsement. Separately scoped Apache-2.0 and CC BY 4.0 component permissions remain unchanged.

All third-party rights remain with their respective holders. No affiliation, endorsement, sponsorship, approval, ownership, legal clearance, or official-canon status is claimed. “Full-Canon” means Project Shadow's maintained interpretive canon only.

Verification

The deterministic package build passed 131 isolated tests with zero skips, all five profile replays, five importable-file tamper rejections with zero payload executions, source verification, and cold verification of a fresh extraction. Two independent builds produced byte-identical ZIPs. Additional changed-byte and unlisted-file tamper checks failed closed as intended.

After extraction, run:

python3 -I -S -B tools/verify_package.py . --run-tests --r1-family-zip /path/to/Project_Shadow_R1_BETA2_Runtime_Successor_Candidate_2026-08-10.zip

Verify the byte count and SHA-256 before extraction. GitHub is the canonical custody host; any Hugging Face convenience mirror must carry the same exact ZIP bytes. Do not substitute an automatically generated source archive or repackaged copy. A PASS establishes only the implemented integrity, schema, regression, and bounded compatibility checks. It does not establish safety, efficacy, legal clearance, R1 admission, or production readiness.

Preserved v0.3.4 public predecessor

Project Shadow 1.0 — R1 Reference (PRELIVE)

Choose a tag to compare

Public PRELIVE reference only—not production or operational software.

Project Shadow 1.0 — R1 Reference (PRELIVE)

Tag: r1-2026-08-14
Release identity: PROJECT SHADOW 1.0 / R1 REFERENCE / BETA-ACTIVE-TESTING / PRELIVE
Asset: Project_Shadow_R1_Public_Release_Candidate_2026-08-14.zip
Bytes: 7,679,812
SHA-256: 2f8fe1530b6a83294d15011df95853aaecf08fa4dba756f0c2e91dd089e1b1ec

This is the exact-hash authorized canonical R1 reference archive. Its preserved
filename and internal status retain the build-time word Candidate; the later
external authorization recorded in the commit-pinned human-readable
receipt
and machine-readable
record
satisfies the publication gate for these exact
bytes without rewriting the archive.

The package contains:

  • exact admitted R1 Beta2 family root SHA-256
    075b41ea4186b2d2edb0ed246ab7662cf8bbdf3160294e3eca176b9d0857b108;
  • exact Primitive Commons beta.5 family root SHA-256
    1ffdba41025c0b81da92d0bbb22d0eaa69488cffbc80936365034669110448d7;
  • the exact admission record and Sigstore evidence;
  • the independent signature-verification receipt; and
  • public governance, audit, rights, limitation, manifest, checksum, and
    verification material.

The optional v0.3.4 external research sidecar is not embedded. It is distributed
separately under its own mixed-rights terms and remains default off, unadmitted,
and outside R1 conformance.

Verify the downloaded file against both the byte count and SHA-256 above. After
that check, a current checkout of this repository can apply the prospective
outer-archive preflight before extraction:

python3 -I -S -B tools/verify_public_release.py \
  /path/to/Project_Shadow_R1_Public_Release_Candidate_2026-08-14.zip

The exact ZIP and its embedded verifier remain frozen historical artifacts;
the repository verifier adds later archive-safety limits without rewriting the
release. After extraction, run the packaged verifier:

python3 -I -S -B tools/verify_public_release.py .

For fresh Level 2 cryptographic verification, the admission record's Rekor log
index is 2465982078 and its entry UUID is
108e9186e8c5677a5ce4e9ea6d6aaf7b7a6aabe12b6a3f0d9202da3ede22684c3c90780f2f313a79.
Inspect that exact entry in Sigstore Search,
then run from the extracted R1 root:

cosign verify-blob \
  --bundle governance/PROJECT_SHADOW_FABLE7_SCOPED_MAINTAINER_ADMISSION_RECORD_2026-08-12.json.sigstore.json \
  --trusted-root /absolute/path/to/trusted-root.json \
  --use-signed-timestamps \
  --certificate-identity 'pausebeforeharmprotocol_PBHP@protonmail.com' \
  --certificate-oidc-issuer 'https://github.com/login/oauth' \
  governance/PROJECT_SHADOW_FABLE7_SCOPED_MAINTAINER_ADMISSION_RECORD_2026-08-12.json

Before using that direct command, separately confirm the Linux/amd64 Cosign
SHA-256 4629c757b7618056f8ddd7e2625ae9fdd94c0372a65049520bc7d9df9efc7f71
and trusted-root SHA-256
6494e21ea73fa7ee769f85f57d5a3e6a08725eae1e38c755fc3517c9e6bc0b66.
The raw command does not enforce those file hashes; the full two-level
guide

documents the repository wrapper that does.

Download the named release asset above. Do not substitute GitHub's
automatically generated “Source code (zip)” or “Source code (tar.gz)” archives;
those are repository snapshots, not the authorized R1 release archive.

This release does not authorize production or operational deployment,
efficacy, safety, certification, legal-compliance claims, or expansion beyond
the stated scope.

Project Shadow Myth Sidecar v0.3.4 — Public Release · Optional Companion

Choose a tag to compare

@PauseBeforeHarmProtocol PauseBeforeHarmProtocol released this 14 Aug 14:40
Immutable release. Only release title and notes can be modified.

PUBLIC RELEASE · OPTIONAL COMPANION · DEFAULT OFF · MIXED RIGHTS

Project Shadow Myth Sidecar v0.3.4 — Public Release · Optional Companion

Tag: myth-v0.3.4
Asset: Project_Shadow_Full_Canon_Myth_Sidecar_v0.3.4_OPTIONAL_EXTERNAL_RESEARCH_2026-08-14.zip
Bytes: 1,418,194
SHA-256: 3c8c8c0d3d9582c76b685c1b685260cc8179478ab310037c858b46257aa314c7

Public-release status

This exact v0.3.4 archive is authorized and verified for public release as a separate, externally distributable research and commentary companion. The exact-hash decision is recorded in the commit-pinned human-readable authorization receipt, machine-readable authorization record, and resolved public-release status.

The open CAPA PS-R1-PRIVATE-MYTH-PUBLIC-BOUNDARY-001 applies only to the older generic Myth v0.1.1 package nested inside the preserved R1 archive. It does not apply to this separate Full Canon Myth v0.3.4 asset.

Optional by design

Canonical R1 does not require or include this sidecar. Project Shadow remains fully inspectable, verifiable, and usable within its stated PRELIVE scope when the sidecar is absent or disabled. Off is the default.

The sidecar provides an optional interpretive and mythic layer. Myth may focus attention, but it cannot supply evidence, authority, a gate result, a score, routing input, a tool argument, approval, or action. It does not change R1 evidence requirements, verification, or human accountability.

Rights boundary

This archive is source-available and mixed-rights; it has no single whole-package open-source license. The complete package may be copied and redistributed unchanged, with every member and control file intact, only to the extent of rights Phillip Linstrum controls. That package-level permission does not authorize a modified or partial package, third-party material, use of third-party marks, or implied endorsement. Separately scoped Apache-2.0 and CC BY 4.0 component permissions remain unchanged.

All third-party rights remain with their respective holders. No affiliation, endorsement, sponsorship, approval, ownership, legal clearance, or official-canon status is claimed. Read the archive's NOTICE, RIGHTS_AND_PROVENANCE.md, CONTRIBUTOR_RIGHTS.md, and MIXED_RIGHTS_MANIFEST.json before redistribution or adaptation.

Verify the exact asset

Verify both the byte count and SHA-256 above. After extraction, run:

python3 -I -S -B tools/verify_package.py .

Download the named release asset above. Do not substitute GitHub's automatically generated “Source code (zip)” or “Source code (tar.gz)” archives; those are repository snapshots, not the released sidecar archive.