Kungfu UNGFU™Developer Platform

Back to KFD-13formal reference / KFD-13

KFD-13 formal reference

Project settlement must bind authorities without absorbing them

Formal reference metadata

Decision
KFD-13
Stable URL
https://kfd.libkungfu.dev/13/formal
Source path
docs/KFD-13-formal.md
Relationship
formal-reference-child-of-decision
Normative
false
Model status
experimental
Model version
1
Authority path
decisions/KFD-13.md

KFD-13 Formal Reference

Authoritative decision · Usage · KFD-12 formal reference

  • Status: experimental
  • Normative: no
  • Formal model version: 1
  • Authority: decisions/KFD-13.md
  • Decision status: draft

Object

For software project domain S, a Project Cut is:

PC^v = (
  protocol_version,
  predecessor_roots,
  source_projection_root,
  atlas_root,
  admitted_episode_delta_root,
  policy_and_protocol_roots,
  omissions,
  conflicts,
  unknowns,
  residual_risk
)

project_cut_root = Hash(CanonicalEncode(PC^v))

The root commits to bindings. It does not absorb the semantics or authority of the bound systems.

Validity

ValidProjectCut(PC) =
  Canonical(PC)
  and AllInputsNamed(PC)
  and AllInputsVerifiedUnderOwnAuthority(PC)
  and NoCircularRootDependency(PC)
  and OmissionsConflictsUnknownsDeclared(PC)
  and RecomputableRoot(PC)
  and IndependentlyCheckableReceipt(PC)
ValidProjectCut does not imply WorkComplete
ValidProjectCut does not imply ReleaseFit
ValidProjectCut does not imply PursuitSettled

Machine witness predicate

Witness_13 =
  RequiredAuthorities(source, Atlas, Episode, policy)
  and VerifiedUnderOwnAuthority(each binding)
  and OwnsSemantics(each authority)
  and not AbsorbedByProjectCut(each authority)
  and Canonical(ProjectCutBinding)
  and ResidualRiskDeclared
  and IndependentlyVerified(Export(ProjectCut))
  and Preserved(PredecessorLineage)

The version 1 witness keeps canonical binding validity separate from work completion, release fitness, and activation.

Invariants

C1 Source, Atlas, Episode, and policy authorities remain distinct.
C2 Equal canonical inputs produce the same Project Cut root.
C3 The containing publication coordinate is not an input to its own root.
C4 Successor cuts preserve predecessor lineage.
C5 Missing, stale, conflicting, or unverifiable bindings fail visibly.
C6 A receipt reports verification; it does not self-certify semantic fitness.
C7 Project Cut remains software-domain vocabulary unless separately qualified.

Applicability predicate

Applies_13(profile) =
  SoftwareDevelopment(profile)
  and PublishesProjectSettlement(profile)
  and DeclaresAdoption(profile, KFD-13)

KFD-13 is not implied by adopting KFD-7 through KFD-12.

Falsifiers

The draft weakens if a single existing authority can preserve equivalent project decisions without hidden reconstruction, if independent roots cannot be bound deterministically without semantic fusion, or if Project Cut adds no decision value over ordinary release or source coordinates.