EVIDENCE / SNAPSHOT 2026-07-16

Every claim gets a boundary.

This page deliberately distinguishes accepted evidence, candidate evidence, unrun gates, and the unfinished product. A strong candidate is still not a release.

CURRENT GATE LEDGER

One accepted historical anchor.

The authoritative project ledger still marks the integrated OS-R1 release NOT_DONE and every non-historical gate unaccepted.

PG-S0

Stage 0 substrate

Accepted for the exact QEMU-tested image only. This is not physical-hardware or product-completion evidence.

accepted
G-PAGING

Paging activation

Real bounded activation evidence exists. Required invalidation, teardown, higher-half, fault-delivery, and cross-core work remains.

candidate
G-TRAPS

Trap containment

Planned after paging. No acceptance claim has been made.

not run
G-OS-R1

Integrated release

The release gate has not run. There is no public OS image or gateway download yet.

NOT_DONE

LATEST BOUNDED CANDIDATE

U03 paging activation

The recorded Lenovo-hosted QEMU campaign validates a real low-identity page-table transition for the exact candidate. It does not accept G-PAGING.

Production + refute tests
259 passed
Plan tests
93 passed
Lenovo-hosted QEMU boots
20 + 20
Physical Lenovo boot
NOT_DONE
Gate promotion
not run
Product completion
NOT_DONE

STILL REQUIRED FOR G-PAGING

The missing work stays visible.

  • Local invalidation after mutationComplete INVLPG or local CR3 invalidation evidence.
  • Safe active-context teardownProve reuse cannot expose stale translations or capabilities.
  • Higher-half and ASLR policyMove beyond the bounded low-identity transition.
  • Delivered guard-page faultsRequires the owned trap path rather than a modeled check.
  • Cross-core shootdownRequires later SMP coherence evidence.
RELEASE NOT READY

No binary is being offered yet.

When the signed public bundle exists, the release page will carry the image, manifest, checksums, verification path, hardware scope, and recovery instructions together.

See release policy