"""estateview - the estate map as a cockpit view. The same model as ESTATE.md (the canonical committed version), rendered interactively for humans, with RUNTIME as a first-class dimension: every entity dossier states whether anything is actually running, where, and when it starts and stops. A sync test guards name-level drift between this page and ESTATE.md. """ ESTATE_HTML = r'''LTL estate map — repos, services, loops

LTL estate map

Every persisting entity of the Lean Transparency Log endeavour, arranged as five lanes of custody — click any card for its dossier. The two colored routes are the loops that make this estate hard to hold in one head.
log 13 leaves root 3488a2d0… key 874c8a00… paper v0.9 · 23 pp · camera-ready attested components 5 pacta suite 130 green state as of 2026-07-20
ALWAYS ON droplet: caddy (TLS, static blog) · LTL web service (read-only container) · Forgejo (+ 03:00 mirror cron) ON-DEMAND operator machine: append/publish/sign ceremonies · cockpit · MCP — exist only while invoked NOT RUNNING warden: implemented prototype, no deployed instance, no funds watched everything else: static files or external parties — no process at all
extract / feed attest append / publish template (CI-pinned) serve / deploy consume Loop 1 — dogfood signer Loop 2 — self-attestation
Upstream inputs · frozen

curve25519-dalek-source

upstream Rust, pinned clone

anza-cryptography-source

Solana fork, pinned clone

risc0-…-dalek-source

RISC Zero fork, pinned clone

betrusted-…-dalek-source

Betrusted fork (+ xous-core, litex-boards context)

pasta_curves-source

Pasta curves, pinned clone
Verified subjects

dalek-ed25519-verified

16 certs · leaf 8 (gen 3)
attestedsigner source

anza-ed25519-verified

16 certs · leaf 9
attested

risc0-ed25519-verified

16 certs · leaf 10
attested

betrusted-ed25519-verified

16 certs · leaf 11
attested

pasta-pallas-verified

field layer proven · curve layer pending
not attested

ltl-accumulator-verified

61 certs · proofs about the log's own accumulator model
attested · entry 13frozen 172a1d0loop 2
Machinery & operator-held
proof-aware-crypto-tooling-agent(pacta)

Provider service

check → append → publish · site & API code · publish templates
templates CI-pinned

Dogfood signer

verified-dalek-serial binary — signs every head
loop 1

Consumer library

verify · pin store · receipts · R0–R5 risk model

warden (code)

quorum-custody wallet · MCP · custody card

Paper

ltl.tex — v0.9 camera-ready · archives v0.1 / v0.2

Course + llms.txt

14 notebooks · agent-readable index
Operator-held · never in git

Signing key

offline · sole copy + encrypted SD backup

Operational log state

transparency-log-main — the true accumulator

Evidence archive (offline)

review kits · stamped artifacts
Published faces

lean-transparency-log

public mirror — leaves, heads, receipts, fail-closed verify.py + selftest
generated by publish

ltl.zkdefi.org

homepage from live leaves · /v1 API · /paper (+v0.2, v0.1) · key endpoint

Forgejo mirror

droplet · nightly 03:00 · full saymrwulf account
disaster copy

Infra as code (private)

droplet configuration in a private repo — unnamed so this map stays shareable

verifying-crypto-with-lean

undergraduate book — educational face, no LTL coupling
Consumers

Offline cloner

git clone → verify.py --all (fails closed) → own witness view

warden (runtime)

internal consumer — quorum of 4 attested fork verifiers

Agents

MCP tools · custody card with embedded inclusion proofs

swisspost-evoting-go-poc

prospective — dalek family-level match only, no receipt code
prospective

External reviewers

GPT-5.6 + Claude — adversarial consumers of paper, corpus, log
'''