The evidence behind A11oy.
Inspect runtime truth, receipt verification, assurance evidence, benchmarks, source, and public-estate metadata without relying on the product interface. A link proves location; a browser observation may establish only a bounded transport result. Neither proves capability.
One public record, three ways in.
Start with the questions you need answered; each path preserves the same evidence labels and operating boundaries.
Investor diligence
Review thesis, controls, source, public estate, and known boundaries without relying on a product demo.
BUILDDeveloper entry
Start with executable contracts, machine endpoints, verification commands, and versioned source.
OPERATEOperational evidence
Inspect bounded browser observations without promoting a response into readiness or capability.
Six public ways to inspect the estate.
These links expose public evidence directly. Dynamic state remains labeled at the source; an HTTP response alone is never promoted to proof of quality or readiness.
Read the deployed revision and honesty posture from the product runtime.
/api/a11oy/v1/honest VerifierReceipt verificationOpen the public verifier before relying on a receipt or subject digest.
a-11-oy.com/verify AssuranceControls and evidenceInspect the assurance surface and its linked evidence rather than a marketing summary.
a-11-oy.com/assurance Public sourceGoverned-agent benchmarkReview the benchmark schema, cases, and implementation in versioned source.
benchmarks/governed-agent-bench Public sourceSource and CIInspect implementation history, checks, releases, and open review state.
github.com/szl-holdings/a11oy Public registryModels, datasets, and SpacesInspect the current public Hub inventory; runtime stage is transport evidence only.
huggingface.co/SZLHOLDINGSAn architecture designed to make claims accountable.
Alloy is designed to conduct agents across providers through callsigns, evidence labels, and audit logs. Operational behavior remains subject to the linked runtime evidence.
Doctrine-gated inference
The architecture applies doctrine gates to outputs: evidence labels are explicit, overclaim patterns are checked, and exceptions are designed to fail closed.
Receipts, not vibes
Qualifying work products can carry DSSE-wrapped receipts with subject digests that can be checked offline.
Estate control plane
The public architecture organizes models, kernels, datasets, and consoles around a shared evidence vocabulary.
Brain, body, proof, and control — one navigable surface.
The estate stays modular at the source and unified at the interface. Each card opens a public Hub listing. REPORTED identifies listing metadata only; runtime state, capability, and availability are not checked in this section.
SZL-Khipu-1.5B
The flagship governed retrieval navigator, with public weights, adapter, schema, receipts, and GGUF path.
Open model line →Sovereign router
The public Hub listing for the routing interface and its stated provider-status and bounded-inference scope.
Open router →Living anatomy
The body map for organs, contracts, trust boundaries, and the controller outside model weights.
Open anatomy →Holographic estate
A spatial front door into the wider public estate, built as a distinct interface over shared evidence.
Open holographic →Governed kernels
Reusable verifier and policy components with explicit source, license, and provenance boundaries.
Open kernel suite →A11oy command surface
The public Hub listing for the control-plane interface and its stated formulas, inventory, governance, and route scope.
Open control plane →How a claim earns its label
The pipeline is deliberately boring — and deliberately auditable.
- 01Emit
An agent produces a claim, artifact, or action proposal.
- 02Gate
Doctrine guards check labels, banned tokens, and overclaim patterns.
- 03Sign
Qualifying artifacts get DSSE receipts with subject digests.
- 04Publish
Surfaces ship with the label visible — UNKNOWN stays UNKNOWN.
- 05Verify
Anyone can re-check the receipt chain — trust ceiling 0.97, never blind.
Public surfaces and bounded reads
Product routes below are public links only and are not probed. The two Hugging Face rows use public runtime-metadata APIs from this browser; a reported stage remains transport metadata, not capability or uptime evidence.
REPORTED metadata is not promoted to measured capability or quality.
CHECKING, RUNNING · REPORTED, transitional states, and UNAVAILABLE describe this browser session only.
- NOT PROBED · UNKNOWN
- NOT PROBED · UNKNOWN
- NOT PROBED · UNKNOWN
- NOT OBSERVED · UNAVAILABLE
- NOT OBSERVED · UNAVAILABLE
No public Hub runtime metadata was observed by this document.
Product routes remain NOT PROBED · UNKNOWN. A schema-valid public Hub stage is REPORTED transport metadata only; malformed, missing, or failed metadata reads fail closed.
The public artifact registry, consolidated.
Search reported model, dataset, collection, and bucket listings without leaving the flagship. Executable Spaces and Killinchu-named resources are outside this evidence inventory.
Public metadata observation
REPORTED means point-in-time public Hub listing metadata only. It does not prove capability, quality, safety, data rights, or deployed equivalence.
Static snapshot observed 2026-08-11; live browser refresh pending.
55 public artifacts in the dated static snapshot.
The governed estate
Alloy is the conductor; these are the sections of the orchestra.