SZL HOLDINGS/a11oy IMMUNE · LIVE Immune Energy Fleet C2 Living Anatomy Code

Immune (Hukulla) — fail-closed egress gatedeny-by-default · real inspection · Khipu-signed

The Immune organ (Quechua role Hukulla) is a fail-closed, deny-by-default egress gate. Every action is inspected against a real threat-signature corpus, a 1 MB size guard and a Λ-gate floor (MIN of supplied trust axes < 0.5 → deny). Each verdict is signed into the shared Khipu chain (SZL.Immune.Verdict.v1). Proven Lean backing: ImmuneNeymanPearsonOpt.lean (Neyman–Pearson-optimal egress) and FrontierWelfordVariance.lean (Welford online variance). These back the gate but are not folded into the locked-8 proven set. Λ = Conjecture 1 (not a theorem); Khipu = Conjecture 2; trust is never 100%; effectors simulated; no fabricated data.

Verdicts (this process)
resets on restart
Deny rate
deny / total
Signature corpus
active signatures
Khipu chain depth
verified

Inspect an action POST /api/a11oy/v1/immune/verdict

Submit a real action payload. The gate runs the live inspection and signs a Khipu receipt. Optionally include axes (a JSON array of trust scores) to exercise the Λ-gate floor.

rm -rf / DROP TABLE <script> XSS path traversal echo hello (clean) low Λ axis

Live status GET /api/a11oy/v1/immune/status

loading…
Λ = Conjecture 1 (NOT a theorem). Khipu = Conjecture 2. Trust never 100%. Effectors simulated. Decision feed is in-memory (resets on restart) — empty means IDLE, never faked.

Gates GET /api/a11oy/v1/immune/gates

idnamelabelcategorysample → expected
loading…

Decision feed GET /api/a11oy/v1/immune/feed

timedecisionsignalsΛreceipt
loading…
Proven Lean backing: Lutar/Wave11/ImmuneNeymanPearsonOpt.lean · Lutar/Innovations/round11/FrontierWelfordVariance.lean. Locked-proven set = EXACTLY 8 {F1,F4,F7,F11,F12,F18,F19,F22} @ kernel c7c0ba17 — the immune Lean backing is cited, NOT folded in. SLSA L1/L2/L3-roadmap · 0 runtime CDN. This page reads only the live /api/a11oy/v1/immune/* endpoints.