Evaluation · Blackbook

This text defines. It does not instruct.

Blackbook is the operations manual for the company and its systems. It states what goes and what does not, who gets what and who does not, when someone acts and when they do not, when they must not even if they could, and what becomes of the organization when the book cannot be enforced.

Overview

When the book cannot be enforced, there is no organization.

A rule that cannot be enforced has already collapsed to zero. Compromised agentic systems are not a patch surface. They require a root fix. Sixteen patches on a cracked dam is still a flood that has not yet shown pressure. There is no in-between.

The public register below is Level 1: thirty-three continuity axioms with notation, and the operating variant of those thirty-three. Further axioms release through the newsletter. Formal internal registers stay internal. Use requires judgment. No authority is assumed. Responsibility remains external.

What goes

An object whose change alters continuity, authority, exposure, evidence, cost or reputation is an asset.If it can change outcome, it is governed. If its state cannot be verified, it is not ready for operation.

Who gets what

Authority names who may decide, issue, revoke or hold.Permission is a scoped opening. Access that cannot be scoped cannot be defended. Undocumented access is active risk.

When they act

Structure precedes action.Verification precedes use. Threshold precedes scale. Operation is bounded use under a recorded grant.

When they must not

Ambiguity holds.Unmarked unknowns hold. A plan is not issuance. Fluency does not promote. Technical reachability is not consent. Stop when attribution is unclear or a residual path remains.

When they should not, even if they could

Capability is not permission.A model, agent or actuator that can act outside the book still holds. Convenience under load is how residual paths stay open.

When the book cannot be enforced

An unenforced constraint is not a rule.Protocol without evidence is theater. The organization has already dissolved into performance.

Root fix

Repeated partial correction leaves the structure available for recurrence.Closure means the path that produced the incident no longer exists in recoverable form. Quiet is not closed.

Blackbox spine

Blackbook is the manual.Blackbox Systems is the evidence machinery that makes the rules checkable without vendor trust.

Public Register

Thirty-three continuity axioms.

These statements stabilize meaning across transitions, reviews and disputes. The notation is structure, not scientific branding.

  1. 01 Authority Transition Preserves Attribution

    Attribution continuity is invariant under authority change.

    Let A_t denote authority at time t. If A_t ≠ A_{t+1}, then Attr(A_{t+1}) = Attr(A_t).

  2. 02 Boundary Degradation Increases Exposure

    Exposure increases as boundary definition decreases.

    Let B denote boundary clarity. Exposure E is inversely related to B: E/B < 0.

  3. 03 Decision Reversal Requires Record

    A reversal implies recorded preconditions.

    If a decision D is reversed, D^{-1} implies Record(Conditions_D).

  4. 04 Claims Require Addressable Reference

    Every claim requires an addressable reference.

    Claim(x) implies there exists r such that Reference(r, x).

  5. 05 State Transition Requires Logging

    If state changes, the transition must be logged.

    State_{t+1} ≠ State_t implies Log(State_t to State_{t+1}).

  6. 06 Load Implies Control Tightening

    Control increases monotonically with load.

    Let L denote system load and C denote control strictness. C/L > 0.

  7. 07 Context Decay Requires Structural Preservation

    Structure preserves intent independent of context.

    As contextual information approaches null: lim_{Context to 0} Structure(Intent) = constant.

  8. 08 Undefined Ownership Elevates Risk

    No owner implies elevated risk.

    If Owner = ∅, then Risk > Risk_defined.

  9. 09 Ambiguity Generates Interpretive Drift

    Ambiguity in naming causes drift in interpretation.

    Ambiguity(Title) implies Drift(Interpretation).

  10. 10 Definition Drift Implies Execution Drift

    If definitions move, execution moves with them.

    ΔDefinition ≠ 0 implies ΔExecution ≠ 0.

  11. 11 Constraints Exist Only Under Enforcement

    Unenforced constraints collapse to zero.

    Constraint(x) and not Enforced(x) implies Constraint(x) = 0.

  12. 12 Exceptions Require Logged Rationale

    An exception must carry an explicit rationale record.

    Exception(x) implies Record(Rationale_x).

  13. 13 Permission Requires Defined Scope

    Permission is invalid without scope.

    Permission(x) implies Scope(x).

  14. 14 Scope Requires Defined Inputs

    Scope is void without defined inputs.

    Scope(x) implies Inputs(x) ≠ ∅.

  15. 15 Inputs Require Verification

    Inputs must be verified before use.

    Inputs(x) implies Verify(x).

  16. 16 Verification Reduces Error

    More verification yields less error.

    Error/Verification < 0.

  17. 17 Unknown Values Must Be Marked

    Unknowns must be explicitly labeled as such.

    Unknown(x) implies Marked(x).

  18. 18 Marked Unknowns Prevent Assumption

    Marking unknowns prevents implicit assumption.

    Marked(x) implies Assumption_implicit(x) = 0.

  19. 19 Decisions Must Be Attributable

    Every decision must have an accountable actor.

    Decision(x) implies Actor(x).

  20. 20 Attribution Enables Review

    What can be attributed can be reviewed.

    Attributed(x) implies Reviewable(x).

  21. 21 Specific Review Improves Control

    Targeted review increases control quality.

    Review_specific implies Control_improved.

  22. 22 Control Reduces Variance

    Increasing control reduces variance.

    Variance/Control < 0.

  23. 23 Variance Requires Tolerance Definition

    Variance is meaningless without tolerance.

    Variance(x) implies Tolerance(x).

  24. 24 Tolerance Requires Threshold

    Tolerance implies an explicit threshold.

    Tolerance(x) implies Threshold(x).

  25. 25 Threshold Requires Stop Condition

    A threshold must define a stop condition.

    Threshold(x) implies Stop(x).

  26. 26 Stop Preserves Optionality

    Stopping preserves optionality.

    Stop(x) implies Optionality_preserved.

  27. 27 Optionality Requires Restraint

    Optionality is maintained by restraint.

    Optionality(x) implies Restraint(x).

  28. 28 Exposure Remains Controllable Under Limitation

    Limits keep exposure bounded.

    Limit(x) implies Exposure_bounded.

  29. 29 Limits Require Access Definition

    Limits are void without defined access.

    Limit(x) implies Access(x).

  30. 30 Access Grants Must Be Recorded

    Access must be recorded at the moment it is granted.

    Access(x) implies Record(Grant_x).

  31. 31 Recorded Grants Enable Audit

    Recorded grants make auditing possible.

    Record(Grant_x) implies Audit(x).

  32. 32 Factual Audit Preserves Continuity

    Factual audit preserves continuity under dispute.

    Audit_factual implies Continuity_preserved.

  33. 33 Continuity Requires Restraint and Action

    Continuity requires both restraint and action.

    Continuity(x) implies Restraint(x) and Action(x).

Public Variant

Operating behavior, not secret capability.

The same thirty-three, restated as operating law. This is the public variant: what the system does when the book is in force.

  1. 01

    Integrity is computed, not asserted.

  2. 02

    Inputs are preserved as provided.

  3. 03

    Outputs are reproducible from identical inputs and toolchains.

  4. 04

    Determinism outranks convenience.

  5. 05

    Ambiguity resolves to explicit non-action.

  6. 06

    Logs behave append-only.

  7. 07

    Every transform is recorded or treated as non-existent.

  8. 08

    Scope is enforced at the boundary.

  9. 09

    Interpretation does not enter the artifact.

  10. 10

    Formatting does not imply authority.

  11. 11

    Traceability is part of the product surface.

  12. 12

    Naming is deterministic or classified as noise.

  13. 13

    Versioning is disclosed to prevent silent drift.

  14. 14

    Toolchain changes are treated as material deltas.

  15. 15

    Verification instructions accompany issuance.

  16. 16

    Re-verification does not require vendor trust.

  17. 17

    Unobservable properties are not claimed.

  18. 18

    Missing data is surfaced, not patched.

  19. 19

    Packaging does not modify content.

  20. 20

    Exports remain bounded to observable properties.

  21. 21

    The system does not grade truth.

  22. 22

    The system does not attribute intent.

  23. 23

    Custody continuity is documented, not assumed.

  24. 24

    External constraints are disclosed upon inquiry.

  25. 25

    Controllable constraints are tightened and versioned.

  26. 26

    Every issuance event has defined inputs.

  27. 27

    Every issuance event has defined outputs.

  28. 28

    Output ownership remains engagement-scoped.

  29. 29

    Internal operating materials do not ship by default.

  30. 30

    Language packs are versioned.

  31. 31

    Localization changes ship as deltas.

  32. 32

    Packets remain readable under adversarial review.

  33. 33

    Clarity is an engineered property under load.

Newsletter

Further axioms ship to subscribers.

The public register and its operating variant are the Level 1 surface. Additional axioms release through the newsletter. Subscribe by mail. No form, no tenant, no self-serve account.

Proof

Public operating surface only.

Blackbook editions exist as operator manuals. They are not hosted here as file dumps. Evaluation lanes apply this manual to AI that can act, to deep reasoning that can settle, and to robotics that can move.