Coordinated CPU release — 2026-09-16
Status: published. This report supersedes the pre-release candidate status in older audits; their logs and findings remain historical evidence.
Every release contains the same six native archives, each with trident, trident-lsp, trisha and joy, plus the complete source archive, validation records and checksums. Native targets cover macOS, Linux glibc and Windows MSVC on ARM64 and x64. Windows binaries use the static MSVC runtime.
Evidence
- Native build and validation run: CPU suites, 133 execution fixtures, installed proof/certificate smoke and native process/file probes on each target; macOS ARM64 uses the dedicated local worker.
- Cross-platform verification: all 36 producer/consumer pairs pass 47 checks each, including 18 valid artifacts and 29 rejected mutations. The local ARM Mac consumer receipt is included in the validation bundle.
- The final ARM Mac binaries generated and verified all 198 baseline proofs, covering 99 positive fixtures and 43 hand programs; all 34 negative fixtures rejected. This full proof gate was measured once on the 48 GiB worker, not on every desktop target.
- The exact released Linux ARM64 client passed genuine SingleProof admission against pinned Neptune 0.15.1 in a loopback-only namespace. The node admitted the exact kernel and rejected an altered public kernel; invalid gateway credentials rejected before forwarding. No funds or public-network block confirmation were involved.
- Source repack and every native binary repack reproduced byte for byte. Unpacked binaries retain the tested identities; LSP initialization and proof exchange passed.
Machine-readable validation, logs, receipts and proof corpora, and SHA256SUMS bind these results to the released artifacts.
Exact source
Source archive SHA-256: 5918806be44e25e59a6fbb9836297159a04e81bf923deb4d6ca00508b94ee861.
| Repository | Tested release commit |
|---|---|
| bbg | 1d39975ad199b48c350fa4cc011cbf6f289480ee |
| hemera | a931a0a8e7ed369852ce0f8bc6451a59745ee692 |
| honeycrisp | ff735e6c262926bc9bab7534786a575020cbe442 |
| joy | d4d8e3dd587ba8d246f4905c9bb24ce3f75429a3 |
| lens | 17cafe91431977b738e5b72361187cd01ad93638 |
| neuron | fd24e768d623604b67e20b4b93fa8e82c83ac373 |
| nox | f8807c5a5b173c286b23d3125ac9ec480a2669b5 |
| strata | d2eb1763b8caf04e6c7647ac6fe99761519c2ef9 |
| trident | 531e93c4a08bd715a8e8ec61d2089ba7768c6d39 |
| trisha | ba5fca686c81dbf4c5cd1970b309553b0d875b14 |
| zheng | 80a8ca90208c3b49c4f2a8507d75fd17785fdfe3 |
The coordinated source archive contains the locked 11-repository closure and patched Triton sources. Cargo still needs locked upstream dependencies. No crates.io publication or blanket merge of unrelated dependency development branches is claimed.
Scope
This release covers the implemented default CPU paths. Public Joy certificates disclose their witnesses and have linear verification cost; private execution hides private inputs over the supported bounded relation. State tables remain public and bounded. Broader nox execution, dynamic continuations, live node/database integration, self-hosting, secure FHE and full GPU proving are roadmap work rather than unfinished acceptance gates for these artifacts. Experimental tagged-CCS proving is outside this release.
Compiler API 3 requires coordinated compiler/warrior upgrades. Regenerate legacy proofs and state certificates. Trident 0.3 follows published 0.2; the intermediate 0.4 development candidate was never released.