{
 "schema": "cain42.epoch10.status_matrix.v1",
 "generated_at": 1789928875.1092396,
 "problems": [],
 "counts": {
  "A0": 2,
  "A1": 7,
  "A2": 22,
  "A3": 11,
  "A4": 0,
  "A5": 0
 },
 "scale": {
  "A0": "not implemented",
  "A1": "implemented",
  "A2": "tested (attack tests, guard mutations)",
  "A3": "verified: an independent re-implementation re-derives the result",
  "A4": "independently verified by a different party (none exist)",
  "A5": "continuously verified (none)"
 },
 "note": "SLICE-1 (evidence/epoch10) and SLICE-2 (cain_*_10 tests/bundle) are complementary. Earlier SLICE-1 files listed most items as NOT_IMPLEMENTED; that meant 'not exercised by that matrix', not 'absent'.",
 "items": [
  {
   "item": "10.1",
   "name": "Agent identity fabric",
   "module": "cain_agent_identity_10",
   "symbol": "AgentIdentityFabric",
   "assurance": "A3",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "SLICE-1 matrices + verifier B; SLICE-2 bundle verifier B",
   "limitations": "records carry UNSPECIFIED unless the caller supplies deployment facts; no attestation report"
  },
  {
   "item": "10.2",
   "name": "Invocation-bound authority",
   "module": "cain_agent_identity_10",
   "symbol": "InvocationAuthorityGate",
   "assurance": "A3",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "SLICE-1 23-case matrix; SLICE-2 22-decision bundle re-derived by verifier B",
   "limitations": "nonce cache is in memory, single process"
  },
  {
   "item": "10.3",
   "name": "Trusted capability directory",
   "module": "cain_capability_directory_10",
   "symbol": "TrustedCapabilityDirectory",
   "assurance": "A2",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "tests/test_cain_10_sovereignty.py",
   "limitations": "in-memory; no discovery protocol on the wire"
  },
  {
   "item": "10.4",
   "name": "Verifiable agent cards",
   "module": "cain_capability_directory_10",
   "symbol": "AgentCardTrustVerifier",
   "assurance": "A2",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "tests/test_cain_10_sovereignty.py",
   "limitations": "card verified against a locally registered key; no A2A wire format tested"
  },
  {
   "item": "10.5",
   "name": "Trust negotiation 2.0",
   "module": "cain_trust_negotiation_10",
   "symbol": "TrustNegotiationEngine2",
   "assurance": "A2",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "tests/test_cain_10_sovereignty.py",
   "limitations": "single process; no cross-organisation run"
  },
  {
   "item": "10.6",
   "name": "Autonomous trust handshake",
   "module": "cain_trust_negotiation_10",
   "symbol": "AutonomousTrustHandshake",
   "assurance": "A2",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "tests/test_cain_10_sovereignty.py (audited late: 4 fail-open defects fixed)",
   "limitations": "in-memory session; not run between two real processes"
  },
  {
   "item": "10.7",
   "name": "Agent society trust graph",
   "module": "cain_agent_society_graph_10",
   "symbol": "AgentSocietyTrustGraph",
   "assurance": "A3",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "tests/test_cain_10_sovereignty.py; SLICE-2 bundle path re-derived by verifier B",
   "limitations": "in-memory graph"
  },
  {
   "item": "10.8",
   "name": "Trust path finder",
   "module": "cain_agent_society_graph_10",
   "symbol": "TrustPathFinder",
   "assurance": "A3",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "tests/test_cain_10_sovereignty.py; SLICE-2 bundle path search re-implemented in verifier B",
   "limitations": ""
  },
  {
   "item": "10.9",
   "name": "Agentic trajectory proof",
   "module": "cain_trajectory_budget_10",
   "symbol": "AgenticTrajectoryProofEngine",
   "assurance": "A3",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "SLICE-1 20-case matrix + tests/test_cain_10_sovereignty.py",
   "limitations": ""
  },
  {
   "item": "10.10",
   "name": "Trajectory budgets",
   "module": "cain_trajectory_budget_10",
   "symbol": "TrajectoryBudgetTracker",
   "assurance": "A3",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "SLICE-1 matrix + tests/test_cain_10_sovereignty.py",
   "limitations": ""
  },
  {
   "item": "10.11",
   "name": "Agentic blast radius 2.0",
   "module": "cain_trajectory_budget_10",
   "symbol": "AgenticBlastRadiusCalculator2",
   "assurance": "A2",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "tests/test_cain_10_sovereignty.py",
   "limitations": "weights are policy constants, not measured"
  },
  {
   "item": "10.12",
   "name": "Proof-carrying tasks",
   "module": "cain_trajectory_budget_10",
   "symbol": "ProofCarryingTaskEnvelope",
   "assurance": "A1",
   "importable": true,
   "referenced_by_tests": false,
   "evidence": "no dedicated attack test",
   "limitations": "envelope replay checks signature and counts only"
  },
  {
   "item": "10.13",
   "name": "Proof-carrying agents",
   "module": "cain_agent_identity_10",
   "symbol": "ProofCarryingAgentVerifier",
   "assurance": "A3",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "SLICE-1 matrix + verifier B",
   "limitations": ""
  },
  {
   "item": "10.14",
   "name": "Model-agnostic trust plane",
   "module": "cain_protocol_adapters_10",
   "symbol": "ModelAgnosticTrustPlane",
   "assurance": "A2",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "tests/test_cain_10_sovereignty.py",
   "limitations": "swap flags are supplied by the caller (self-attested)"
  },
  {
   "item": "10.15",
   "name": "Model-swap continuity",
   "module": "cain_protocol_adapters_10",
   "symbol": "ModelAgnosticTrustPlane",
   "assurance": "A2",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "tests/test_cain_10_sovereignty.py",
   "limitations": "same as 10.14"
  },
  {
   "item": "10.16",
   "name": "MCP 2026 security adapter",
   "module": "cain_protocol_adapters_10",
   "symbol": "MCP2026SecurityAdapter",
   "assurance": "A2",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "tests/test_cain_10_sovereignty.py",
   "limitations": "TOKEN CHECKS ONLY. No MCP conformance suite has been run; do not read this as MCP compatibility"
  },
  {
   "item": "10.17",
   "name": "A2A trust adapter",
   "module": "cain_protocol_adapters_10",
   "symbol": "A2ATrustAdapter",
   "assurance": "A2",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "tests/test_cain_10_sovereignty.py",
   "limitations": "TOKEN CHECKS ONLY. No A2A conformance suite has been run"
  },
  {
   "item": "10.18",
   "name": "Multi-protocol normalisation",
   "module": "cain_protocol_adapters_10",
   "symbol": "MultiProtocolTrustNormalizer",
   "assurance": "A1",
   "importable": true,
   "referenced_by_tests": false,
   "evidence": "exercised through 10.16/10.17 tests",
   "limitations": "no round-trip or downgrade test of its own"
  },
  {
   "item": "10.19",
   "name": "Confidential trust / hardware attestation",
   "module": "cain_confidential_compound_10",
   "symbol": "ConfidentialTrustEvaluator",
   "assurance": "A2",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "tests/test_cain_10_sovereignty.py",
   "limitations": "NOT IMPLEMENTED for hardware: no quote verifier exists; result is never VERIFIED without one"
  },
  {
   "item": "10.20",
   "name": "Compound attestation",
   "module": "cain_confidential_compound_10",
   "symbol": "CompoundAttestationEngine",
   "assurance": "A2",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "tests/test_cain_10_sovereignty.py",
   "limitations": "depends on an external verifier having checked the evidence"
  },
  {
   "item": "10.21",
   "name": "Privacy-preserving proof",
   "module": "cain_confidential_compound_10",
   "symbol": "PrivacyPreservingProof",
   "assurance": "A2",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "tests/test_cain_10_sovereignty.py",
   "limitations": "Merkle selective disclosure ONLY; not zero-knowledge"
  },
  {
   "item": "10.22",
   "name": "Autonomous trust market",
   "module": "cain_capability_directory_10",
   "symbol": "MarketCapabilityQuote",
   "assurance": "A1",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "quotes are data; routing tested under 10.23",
   "limitations": "no settlement or market simulation"
  },
  {
   "item": "10.23",
   "name": "Trust-aware routing",
   "module": "cain_capability_directory_10",
   "symbol": "TrustAwareAgentRouter",
   "assurance": "A2",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "tests/test_cain_10_sovereignty.py",
   "limitations": ""
  },
  {
   "item": "10.24",
   "name": "Trust degradation routing",
   "module": "cain_immune_response_10",
   "symbol": "TrustDegradationStateMachine",
   "assurance": "A2",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "tests/test_cain_10_sovereignty.py",
   "limitations": ""
  },
  {
   "item": "10.25",
   "name": "Autonomous incident response",
   "module": "cain_immune_response_10",
   "symbol": "AutonomousIncidentResponder",
   "assurance": "A1",
   "importable": true,
   "referenced_by_tests": false,
   "evidence": "used by the red team step 15 only",
   "limitations": "responder authority set is caller-supplied"
  },
  {
   "item": "10.26",
   "name": "Trust recovery protocol",
   "module": "cain_immune_response_10",
   "symbol": "TrustRecoveryProtocol",
   "assurance": "A2",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "tests/test_cain_10_sovereignty.py",
   "limitations": "evidence hashes are format-checked, not verified against artifacts"
  },
  {
   "item": "10.27",
   "name": "Agentic immune system 2.0",
   "module": "cain_immune_response_10",
   "symbol": "AgenticImmuneLoop",
   "assurance": "A1",
   "importable": true,
   "referenced_by_tests": false,
   "evidence": "red team step 15",
   "limitations": "the loop only quarantines and records; no LEARN/UPDATE-DEFENSE stage"
  },
  {
   "item": "10.28",
   "name": "Adversarial agent society",
   "module": null,
   "symbol": null,
   "assurance": "A0",
   "importable": null,
   "referenced_by_tests": null,
   "evidence": "",
   "limitations": "NOT IMPLEMENTED: no multi-agent society simulation exists; red-team scenario is a fixed 15-step script"
  },
  {
   "item": "10.29",
   "name": "Emergent behavior detector",
   "module": "cain_immune_response_10",
   "symbol": "EmergentBehaviorDetector",
   "assurance": "A2",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "tests/test_cain_10_sovereignty.py",
   "limitations": "one heuristic (pair interaction count)"
  },
  {
   "item": "10.30",
   "name": "Agentic economic safety",
   "module": "cain_trajectory_budget_10",
   "symbol": "AgenticEconomicSafetyEnforcer",
   "assurance": "A2",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "tests/test_cain_10_sovereignty.py",
   "limitations": "in-memory; CLAWX 22 economic package is separate"
  },
  {
   "item": "10.31",
   "name": "Trust composability",
   "module": "cain_confidential_compound_10",
   "symbol": "TrustComposabilityEngine",
   "assurance": "A3",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "SLICE-1 composition matrix + tests/test_cain_10_sovereignty.py",
   "limitations": "checks only declared conditions; does not establish non-interference"
  },
  {
   "item": "10.32",
   "name": "Compositional blast radius / common mode",
   "module": "cain_trust_composition",
   "symbol": null,
   "assurance": "A3",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "SLICE-1 common-mode matrix",
   "limitations": "module owned by SLICE-1"
  },
  {
   "item": "10.33",
   "name": "Trust graph attack engine 2.0",
   "module": "cain_agent_society_graph_10",
   "symbol": "TrustGraphAttackEngine2",
   "assurance": "A2",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "tests/test_cain_10_sovereignty.py",
   "limitations": "two structural attacks; runs on a copy"
  },
  {
   "item": "10.34",
   "name": "Continuous agentic red team",
   "module": null,
   "symbol": null,
   "assurance": "A0",
   "importable": null,
   "referenced_by_tests": null,
   "evidence": "",
   "limitations": "NOT IMPLEMENTED: scripts/redteam_epoch10.py is a single-run scenario, not a continuous mutating campaign"
  },
  {
   "item": "10.35",
   "name": "Machine-verifiable trust index",
   "module": "cain_supply_chain_deployment_10",
   "symbol": "MachineVerifiableTrustIndex",
   "assurance": "A1",
   "importable": true,
   "referenced_by_tests": false,
   "evidence": "data class only",
   "limitations": "no code computes or publishes it; the public manifest is separate"
  },
  {
   "item": "10.36",
   "name": "Research agent",
   "module": "cain_supply_chain_deployment_10",
   "symbol": "CAINResearchAgent",
   "assurance": "A2",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "tests/test_cain_10_sovereignty.py",
   "limitations": "answers only from a supplied bundle"
  },
  {
   "item": "10.37",
   "name": "AI-to-AI claim challenge",
   "module": "cain_trust_negotiation_10",
   "symbol": "AIClaimChallengeProtocol",
   "assurance": "A2",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "tests/test_cain_10_sovereignty.py (audited late: self-nominated authority key fixed)",
   "limitations": ""
  },
  {
   "item": "10.38",
   "name": "Trust proof replay",
   "module": "cain_agentic_trust_fabric_10",
   "symbol": "CAIN42AgenticTrustFabric",
   "assurance": "A3",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "replay_proof + verifier B re-derivation (CAIN42_EPOCH10_DECISIONS_BUNDLE)",
   "limitations": "no separate `cain proof replay` CLI"
  },
  {
   "item": "10.39",
   "name": "Trust proof portability",
   "module": "cain_agentic_trust_fabric_10",
   "symbol": "CAIN42AgenticTrustFabric",
   "assurance": "A3",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "bundle + verifiers B/C run offline without CAIN state",
   "limitations": "key and journal head must be obtained out of band"
  },
  {
   "item": "10.40",
   "name": "Supply-chain trust",
   "module": "cain_supply_chain_deployment_10",
   "symbol": "SupplyChainTrustTracker",
   "assurance": "A2",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "tests/test_cain_10_sovereignty.py",
   "limitations": "no SBOM or real build attestation"
  },
  {
   "item": "10.41",
   "name": "Trust-aware deployment",
   "module": "cain_supply_chain_deployment_10",
   "symbol": "TrustAwareDeploymentPipeline",
   "assurance": "A1",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "tests/test_cain_10_sovereignty.py (state machine only)",
   "limitations": "governs a record, not a real deployment"
  },
  {
   "item": "10.42",
   "name": "Unified autonomous trust fabric",
   "module": "cain_agentic_trust_fabric_10",
   "symbol": "CAIN42AgenticTrustFabric",
   "assurance": "A2",
   "importable": true,
   "referenced_by_tests": true,
   "evidence": "tests + API mount + public evidence surface",
   "limitations": "single process, ephemeral key"
  }
 ]
}