Prometheus is building toward decentralized, AI-assisted threat intelligence on Kaspa. The repository contains tested development foundations and one non-promotable Testnet-10 canary; no production protocol network or PROM emission is active.
The target path from anomaly to validated Kaspa rule after proof, observable, consensus, and rollout gates pass. Current verified ThreatHint v1 is deliberately non-actionable.
bbe7efb adds an operator-invoked Development/Testnet-10 preflight/run CLI with private strict local files, offline non-mutating preflight, loopback-IP-literal RPC/IPFS, redacted status, and signal cancellation; CI 31950806131, Security 31950806118, and Pages 31950805653 pass. It adds no signer, key-authority/rotation proof, persistent sequence authority, autonomous provider, wallet or chain write and is not an independently authenticated canonical L1/IPFS source, availability or replication proof, chain-truth or finality proof, deployment, or public rule-distribution network.13c1812 adds test-only real-binary loopback E2E evidence for offline/connected preflight, private checkpoint commit, SIGTERM/SIGINT drain, restart exact replay, rollback/equivocation rejection, and malformed, timeout, or disconnected peers; CI 31978132036, Security 31978132044, and Pages 31978131647 pass. This is local Development evidence only, not public Testnet operation, independent RPC/IPFS truth or availability, deployment, Mainnet, or production readiness.Target properties remain distinct from implemented fixtures, Testnet evidence, and production deployment.
GH-258/GH-261 is planned, not implemented: future endpoint detection includes unauthorized compute conscription of endpoints, accelerators, servers or data-center capacity into a distributed mesh. It would classify observable process/resource ownership, unexpected CPU/GPU workload, scheduler/orchestrator drift, workload-identity and outbound fan-out signals, not claim reliable AI/AGI attribution. The staged target is observe-only, warn-only, operator-confirmed reversible containment, then separately approved limited automation. No real-time endpoint sensor or response engine is implemented; quarantine, process termination, firewall mutation, credential rotation, remote commands, deletion, and host isolation are disabled and unauthorized.
GH-264 observe-only parser candidate: Rust and Python share one 512-byte-capped canonical statement with closed behavior domains/signals, bounded counts/windows, an opaque nonce, minute-granularity time and a separately trusted network. It reads no endpoint data, has no free-text or host-identifying fields, and proves no event truth, maliciousness, privacy, AI/actor attribution or authorization. No sensor, correlation, warning, transport, response authority or production behavior is added.
Validators stake KAS, never PROM. Planned primary PROM issuance is contribution-based; a later KAS/PROM pool would enable secondary trading.
Sprints, findings, evidence, and remaining gates are tracked in the public repository.
The contract design has no repository-controlled emergency-stop entrypoint. Current policy and membership inputs remain owner-controlled, and no public multi-host protocol network is operating. Availability and decentralized control are target properties, not current guarantees.