What goes
An object whose change alters continuity, authority, exposure, evidence, cost or reputation is an asset.If it can change outcome, it is governed. If its state cannot be verified, it is not ready for operation.
Evaluation · Blackbook
Blackbook is the operations manual for the company and its systems. It states what goes and what does not, who gets what and who does not, when someone acts and when they do not, when they must not even if they could, and what becomes of the organization when the book cannot be enforced.
Overview
A rule that cannot be enforced has already collapsed to zero. Compromised agentic systems are not a patch surface. They require a root fix. Sixteen patches on a cracked dam is still a flood that has not yet shown pressure. There is no in-between.
The public register below is Level 1: thirty-three continuity axioms with notation, and the operating variant of those thirty-three. Further axioms release through the newsletter. Formal internal registers stay internal. Use requires judgment. No authority is assumed. Responsibility remains external.
An object whose change alters continuity, authority, exposure, evidence, cost or reputation is an asset.If it can change outcome, it is governed. If its state cannot be verified, it is not ready for operation.
Authority names who may decide, issue, revoke or hold.Permission is a scoped opening. Access that cannot be scoped cannot be defended. Undocumented access is active risk.
Structure precedes action.Verification precedes use. Threshold precedes scale. Operation is bounded use under a recorded grant.
Ambiguity holds.Unmarked unknowns hold. A plan is not issuance. Fluency does not promote. Technical reachability is not consent. Stop when attribution is unclear or a residual path remains.
Capability is not permission.A model, agent or actuator that can act outside the book still holds. Convenience under load is how residual paths stay open.
An unenforced constraint is not a rule.Protocol without evidence is theater. The organization has already dissolved into performance.
Repeated partial correction leaves the structure available for recurrence.Closure means the path that produced the incident no longer exists in recoverable form. Quiet is not closed.
Blackbook is the manual.Blackbox Systems is the evidence machinery that makes the rules checkable without vendor trust.
Public Register
These statements stabilize meaning across transitions, reviews and disputes. The notation is structure, not scientific branding.
Attribution continuity is invariant under authority change.
Let A_t denote authority at time t. If A_t ≠ A_{t+1}, then Attr(A_{t+1}) = Attr(A_t).
Exposure increases as boundary definition decreases.
Let B denote boundary clarity. Exposure E is inversely related to B: E/B < 0.
A reversal implies recorded preconditions.
If a decision D is reversed, D^{-1} implies Record(Conditions_D).
Every claim requires an addressable reference.
Claim(x) implies there exists r such that Reference(r, x).
If state changes, the transition must be logged.
State_{t+1} ≠ State_t implies Log(State_t to State_{t+1}).
Control increases monotonically with load.
Let L denote system load and C denote control strictness. C/L > 0.
Structure preserves intent independent of context.
As contextual information approaches null: lim_{Context to 0} Structure(Intent) = constant.
No owner implies elevated risk.
If Owner = ∅, then Risk > Risk_defined.
Ambiguity in naming causes drift in interpretation.
Ambiguity(Title) implies Drift(Interpretation).
If definitions move, execution moves with them.
ΔDefinition ≠ 0 implies ΔExecution ≠ 0.
Unenforced constraints collapse to zero.
Constraint(x) and not Enforced(x) implies Constraint(x) = 0.
An exception must carry an explicit rationale record.
Exception(x) implies Record(Rationale_x).
Permission is invalid without scope.
Permission(x) implies Scope(x).
Scope is void without defined inputs.
Scope(x) implies Inputs(x) ≠ ∅.
Inputs must be verified before use.
Inputs(x) implies Verify(x).
More verification yields less error.
Error/Verification < 0.
Unknowns must be explicitly labeled as such.
Unknown(x) implies Marked(x).
Marking unknowns prevents implicit assumption.
Marked(x) implies Assumption_implicit(x) = 0.
Every decision must have an accountable actor.
Decision(x) implies Actor(x).
What can be attributed can be reviewed.
Attributed(x) implies Reviewable(x).
Targeted review increases control quality.
Review_specific implies Control_improved.
Increasing control reduces variance.
Variance/Control < 0.
Variance is meaningless without tolerance.
Variance(x) implies Tolerance(x).
Tolerance implies an explicit threshold.
Tolerance(x) implies Threshold(x).
A threshold must define a stop condition.
Threshold(x) implies Stop(x).
Stopping preserves optionality.
Stop(x) implies Optionality_preserved.
Optionality is maintained by restraint.
Optionality(x) implies Restraint(x).
Limits keep exposure bounded.
Limit(x) implies Exposure_bounded.
Limits are void without defined access.
Limit(x) implies Access(x).
Access must be recorded at the moment it is granted.
Access(x) implies Record(Grant_x).
Recorded grants make auditing possible.
Record(Grant_x) implies Audit(x).
Factual audit preserves continuity under dispute.
Audit_factual implies Continuity_preserved.
Continuity requires both restraint and action.
Continuity(x) implies Restraint(x) and Action(x).
Public Variant
The same thirty-three, restated as operating law. This is the public variant: what the system does when the book is in force.
Newsletter
The public register and its operating variant are the Level 1 surface. Additional axioms release through the newsletter. Subscribe by mail. No form, no tenant, no self-serve account.
Proof
Blackbook editions exist as operator manuals. They are not hosted here as file dumps. Evaluation lanes apply this manual to AI that can act, to deep reasoning that can settle, and to robotics that can move.