Releases: adaliontech/Zaibatsu
Release list
Zaibatsu v1.17.0
Portable deterministic improvement-validation inputs. This release packages the exact non-executing validation plan and its complete verified source chain into a canonical 296,960-byte, 21-member USTAR that can be reverified from the archive alone as data. It does not include the pack-verifier runtime or environment, a candidate implementation, or validation-stage evidence. Verification requires no live production credential or state, but arbitrary embedded evidence is not content-scanned and secret absence is not proved. The pack runs no stage and grants no approval, promotion, rollout, activation, execution, or cross-factory authority.
Zaibatsu v1.16.0
Deterministic non-executing improvement validation planning. This release binds one exact candidate and its complete evidence chain to eight fixed not-run stages and twelve missing evidence artifacts. It runs no validation, contains no candidate implementation, and grants no approval, promotion, rollout, activation, execution, or cross-factory authority.
Zaibatsu v1.15.0
Zaibatsu v1.15.0 binds every accepted improvement proposal to an exact, content-addressed, non-executable candidate artifact before later validation or promotion.
Highlights:
- deterministic candidate builder and verifier
- strict JSON Schemas for candidate specifications and binding records
- CLI commands for binding and verification
- repository validator integration with adversarial and fuzz coverage
- 247 integrated tests, 120 required artifacts, and 16 strict schema/instance checks
Safety boundary: this release binds and verifies candidate identity only. It does not execute, approve, promote, deploy, or roll out candidate changes.
Zaibatsu v1.14.0
Evidence-bound structural observation normalization and deterministic improvement-candidate classification for validation planning only. The release reverifies the complete proposal and evidence chains while granting no safety, semantic, validation-execution, promotion, rollout, activation, execution, or cross-factory authority.\n\nValidated with 241 tests, 115 required files, 14 strict Draft 2020-12 schema/instance pairs, exact artifact regeneration, credential-disabled full-history candidate and tag clones, and checksum-pinned Gitleaks 8.30.1.
Zaibatsu v1.13.0 — Evidence-bound improvement proposals
Zaibatsu v1.13.0 adds the next bounded recursive-improvement contract.
- Adds a typed, untrusted proposal specification for shared modules, factory templates, and deterministic gates.
- Adds deterministic builder and verifier workflows that reverify the complete route-bound evidence-return chain before binding the exact canonical proposal content.
- Requires later safety, classification, reporting-factory, independent-regression, owner-policy, rollback, and cross-factory privilege review gates.
- Grants no proposer authentication, semantic trust, classification, validation, promotion, rollout, activation, execution, or cross-factory authority.
- Passes 230 tests, 105-file validation, ten strict Draft 2020-12 schemas, both checksum-pinned Gitleaks 8.30.1 modes, deterministic fuzz, and credential-disabled candidate/tag clone reproduction.
Proof:
Zaibatsu v1.12.0 — Route-Bound Factory Evidence Returns
Zaibatsu v1.12.0 adds the first machine-readable recursive evidence-return boundary above the closed factory portfolio. One fully verified canonical runtime-evidence pack is bound to its exact economic-factory bundle, closed portfolio plan, and declared evidence-only route into the control factory. Every supplied bundle, the qualification inputs, embedded materials, signatures, allowlists, and content digests are reverified before the exact record is accepted.
The release passes 221 tests, a 100-file offline validator, 10,000 malformed-record and 250 digest-refreshed-forgery controls, checksum-pinned Gitleaks 8.30.1, eight strict Draft 2020-12 schemas, credential-disabled full-history reproduction, candidate CI, evidence-roof CI, and tag CI.
Boundary: this is a non-authorizing provenance and routing-intent record. It does not observe transport, scan content safety, prove secret absence, rerun verifier assertions, prove artifact truth, classify an improvement candidate, change shared policy, grant promotion eligibility or authorization, activate or execute anything, or authorize cross-factory effects.
Candidate CI: https://github.com/adaliontech/Zaibatsu/actions/runs/33356978139
Evidence-roof CI: https://github.com/adaliontech/Zaibatsu/actions/runs/33357109791
Tag CI: https://github.com/adaliontech/Zaibatsu/actions/runs/33357140454
Zaibatsu v1.11.0 — Closed Factory Portfolio Plans
Zaibatsu v1.11.0 adds a deterministic factory-of-software-factories control view. A schema-bound closed registry joins one verified control-factory bundle with two verified economic-factory bundles, binds exact bundle, source, scheduler-module, and artifact digests, derives 21 disjoint intended namespaces, and permits only declared evidence-return routes that grant no authority or self-promotion.
The release passes 212 tests, a 97-file offline validator, seeded malformed and forged-plan controls, checksum-pinned Gitleaks 8.30.1, strict Draft 2020-12 schemas, credential-disabled full-history reproduction, candidate CI, evidence-roof CI, and tag CI.
Boundary: this plan is non-executing. It does not prove runtime isolation, carry evidence, route secrets, invoke models, deploy infrastructure, authorize activation, grant cross-factory effects, or prove recovery.
Candidate CI: https://github.com/adaliontech/Zaibatsu/actions/runs/33355699088
Evidence-roof CI: https://github.com/adaliontech/Zaibatsu/actions/runs/33355839619
Tag CI: https://github.com/adaliontech/Zaibatsu/actions/runs/33355871092
Zaibatsu v1.10.0 — Self-verifying runtime evidence packs
Zaibatsu v1.10.0 adds a canonical runtime-evidence pack to the factory-of-software-factories control layer.
Highlights:
- embeds the signed evidence set, verifier registry, exact JSON evidence artifacts, verifier descriptors, and immutable manifest schema in reproducible USTAR bytes
- rechecks archive safety, canonical JSON, exact member inventory, schema and material digests, registry rules, and OpenSSH signatures
- upgrades runtime assessments to v2 and rebuild plans to v3 so both bind and reverify the exact pack
- rejects traversal, links, special files, duplicate/extra members, metadata and trailing-byte drift, schema/material tampering, replay, oversize input, authority inflation, and scalar type confusion
- passes 203 tests, 90-file validation, credential-disabled candidate and tag clones, both checksum-pinned Gitleaks modes, five strict Draft 2020-12 schemas, exact artifact regeneration, and candidate/roof/tag CI
Trust boundary: the pack proves integrity and availability of the exact referenced bytes. It does not rerun verifier assertions, infer artifact semantic truth, prove key ownership or independence, grant runtime eligibility, or authorize activation, execution, deployment, secrets, or side effects.
Proof:
- candidate: 359cc1b
- evidence roof: 535ebad
- annotated tag object: 22e571aa87654a57b11a5038cfabdbc986432a85
- candidate CI: https://github.com/adaliontech/Zaibatsu/actions/runs/33342847863
- roof CI: https://github.com/adaliontech/Zaibatsu/actions/runs/33342922185
- tag CI: https://github.com/adaliontech/Zaibatsu/actions/runs/33342972482
Zaibatsu v1.9.0 — Signed Runtime Evidence
Zaibatsu v1.9.0 adds evidence-gated ingestion of externally supplied OpenSSH Ed25519 verifier assertions.
Highlights:
- Content-addressed verifier registry with exact scope, requirement, method, and validity allowlists.
- Signed runtime-evidence verification plus deterministic, explicitly timed assessment.
- Rebuild DAG v2 binds the verifier registry, signed evidence, and combined assessment without granting execution or activation.
- Public fixture demonstrates signature, provenance, replay, freshness, and trust-boundary checks while remaining permanently runtime-ineligible.
- 194 adversarial tests and 87-file repository validation.
Trust boundary: a valid signature authenticates the assertion payload; it does not prove key ownership, verifier independence or correctness, artifact truth, deployment, execution, or activation authority.
Zaibatsu v1.8.0 — deterministic factory rebuild DAG
Zaibatsu v1.8.0 adds a deterministic, content-addressed factory rebuild plan.
What changed
- Compiles the verified bundle, annotated-release source lock, qualification policy, plan, evidence, and assessment into nine dependency-ordered action intents and four separate gates.
- Adds rebuild-plan and verify-rebuild-plan CLI workflows plus a project-owned Draft 2020-12 schema.
- Rejects changed inputs, replay, reorder, dependency, intent, status, gate, authority, and boolean/integer forgeries.
- Hardens deep JSON handling in the shared CLI and bundle verifier.
Honest boundary
The public plan has 9 contract-conformance bindings verified, 58 runtime bindings missing, zero qualification-ready actions, and all nine actions blocked. It runs no Ansible or Nix, reads no secrets, installs no scheduler, invokes no model, grants no qualification or owner approval, activates nothing, deploys nothing, and proves no runtime recovery. Current v1 qualification evidence cannot advance an action; independently verified runtime-evidence contracts remain future work.
Release proof
- Candidate: b05f085
- Evidence roof/tag target: 72cedae
- Annotated tag object: 02d7599f31f2eb1c3eefcb6ae637976707a5a676
- 183/183 tests and 78-file repository validation
- Credential-disabled full-history candidate and tag clones
- Strict Git, checksum-pinned Gitleaks 8.30.1 history/tree scans, strict AJV controls, exact regeneration, and live tagged-schema byte check
- Bundle SHA-256: d4918fd16f55b907a0b2b9734422d7106d3030a511e5cae5d6efc1cb7b253aba
- Rebuild-plan file SHA-256: 357e88d92d5f98f99f048835c524b6106ed2fcc77ee5cff57f41ea74a41f7553
- Canonical rebuild-plan digest: bc0e093fd97e7a2a2cfc62f8c6082d9013b5c3fa0ff0fe28dff1d819dc39e445
- Tagged schema SHA-256: e08003232d1e15822105b8bba7b88aebdbfe78003a6857665fd57437c6737adb
- Candidate CI: https://github.com/adaliontech/Zaibatsu/actions/runs/33339430389
- Evidence-roof CI: https://github.com/adaliontech/Zaibatsu/actions/runs/33339565713
- Tag CI: https://github.com/adaliontech/Zaibatsu/actions/runs/33339588039