{"format":"ln-rlebench-public-demo/1","title":"LN governed robotics demonstration","status":"implementation-in-progress","claim":"For the declared simulator action universe, the installed profile must reject an unsafe causal trajectory before the simulated effect and admit the equivalent safe control.","latest_agent_channel_matrix":{"format":"ln-rlebench-control-matrix/1","environment":"FakeEnv socket topology; not RoboCasa","sample":{"dangerous_trajectories":2,"safe_controls":3},"B1":"the dangerous action reached one simulator step","L1":"the same action was blocked before effect; two safe controls were accepted; a [safe, dangerous, safe] batch admitted only its safe prefix","exercised_effect_channels":["agent step"],"coverage":1},"latest_agent_native_composition":{"format":"ln-rlebench-agent-channel-composition/1","environment":"FakeEnv public agent socket; not RoboCasa","accepted_path":"trusted daemon request -> closed LN intent and causal parent -> two causal checks -> QEL/NetKey -> Native preparation -> short-lived QEL-signed dispatch verified before the sole agent step -> journal -> signed envelope","B1":"an explicit baseline-allow gate let the dangerous action reach one simulator step","L1":"the same dangerous public agent action was blocked before effect without clearance, admitted with current trusted clearance, and a dangerous suffix after a safe effect was blocked","limits":["same-root-daemon outcome observer; not role-independent evidence","deterministic FakeEnv; not RoboCasa/MuJoCo physics","engineering NetKey posture"]},"latest_native_channel_matrix":{"format":"ln-rlebench-native-step-control-matrix/1","environment":"FakeEnv root-only Unix socket topology with synthetic bound-proof test double; not RoboCasa","B1":"an explicit baseline-allow gate let the dangerous action reach one simulator step","L1":"the root-only native_step gate blocked the dangerous action and stale revision before effect, accepted equivalent controls, and blocked the dangerous second action after a safe first action","exercised_effect_channels":["root-only native_step"],"coverage":1},"declared_channel_coverage":{"channels":["agent step","root-only native_step"],"FakeEnv_coverage":1,"limitation":"Both channels have deterministic FakeEnv witnesses, but this is not a RoboCasa campaign or complete effect-universe coverage."},"latest_full_composition_witness":{"environment":"FakeEnv socket topology; not RoboCasa","accepted_path":"LN /2 -> two causal checks -> QEL/NetKey -> short-lived QEL-signed dispatch verified by root-only native_step -> journal -> signed envelope","initial_invalid_parent_path":"a signed but uncleared parent produces durable REFUSED, a signed refusal envelope, and zero simulator steps before QEL, NetKey, reservation or dispatch","stale_parent_path":"a clearance made stale between checks leaves OUTCOME_UNKNOWN and zero simulator steps","offline_evidence":"a separate process verifies exported ACCEPTED and REFUSED envelopes from the public key and exact signed bytes only","limits":["engineering NetKey posture","in-process clearance root","Evidence signer is a local separate process, not deployed GOVP","observer is not role-independent","offline verification is not a deployed Native Evidence OT connected attestation"]},"boundary":{"included":["RLE-Bench Task 01 root step channel","typed effect contract","pre-effect authorization","durable decision and evidence"],"excluded":["hardware safety","Native OS qualification","other simulator APIs","host security","production SCADA or PLC control"]},"public_surface":["GET /","GET /manifest.json","GET /healthz"],"safety_notice":"This website cannot issue a command, inspect private evidence or authorize an effect."}