COSMO · Manifesto v5.0
The Institutional Layer for Autonomous Economies
A declaration for builders, operators, agents and the Supra community.
Capability is copyable.
Authority is not.
In one sentence
COSMO is the institutional layer for autonomous economies, built on Supra: a framework that turns autonomous capability into bounded authority, policy-governed execution, durable evidence, signed receipts and verifiable economic outcomes.
1. Preamble: when experience becomes executable
AI is moving from assistance to action. A model can already research, write code, negotiate, monitor markets, call tools and coordinate other models. The next step is not simply a smarter agent. It is a society of agents: many specialized systems working together, buying services, delegating tasks, checking one another and allocating scarce resources.
These societies may scale differently from human ones. A successful skill can be stored as Markdown, code and tests. A working process can be copied into thousands of instances. Experience can become executable, versioned and replayed.
That changes the problem. When capability becomes cheap to copy, authority becomes the scarce thing that must not copy with it.
The central distinction
A copied skill may preserve what an agent can do. It must not automatically preserve what that agent is allowed to do.
COSMO exists for the gap between technical capability and legitimate economic action.
2. The thesis: autonomous economies need institutions
An economy is not built from intelligence alone. It is built from repeatable relations between actors who can commit, deliver, accept, pay, fail, dispute and be held accountable.
Human societies built institutions to make cooperation possible without requiring blind trust. They created mandates, budgets, approvals, contracts, receipts, audits and revocation. Autonomous agents need the same functions, but in forms that machines can read, execute and verify.
An institutional layer for autonomous economies must answer five different questions:
- Can do: does the agent possess the skill or tool?
- May do: is this agent authorized for this specific action, domain, budget and time window?
- Did do: what action was actually executed?
- Was valid: did the action remain within the mandate and policy?
- Was settled: what economic outcome finally occurred?
COSMO is built around those questions. It does not try to be the smartest agent. It tries to make autonomous action bounded, inspectable and accountable.
3. Identity, trust, reputation and authority are not the same
Agent infrastructure often merges four different ideas. They should remain separate.
| Layer | Question | What it should provide |
|---|---|---|
| Identity | Who is this actor? | A persistent reference to an agent, operator, wallet or organization. |
| Web of Trust | Who is connected to whom? | Relationship context, referrals, provenance and paths of confidence. |
| Reputation | What has this actor demonstrated? | A history derived from evidence, not a claim copied from code. |
| Authority | What may this actor do now? | A bounded grant for a specific domain, action, budget and time window. |
A capability can be copied. Credentials can also be copied if they are poorly protected. Reputation, however, should be earned through a history attached to an identity. Authority must be granted again for the concrete action, regardless of how trusted the actor appears.
A trust graph can carry context. Evidence can accumulate reputation. Neither should become a blank cheque.
COSMO does not try to replace identity systems or a Web of Trust. It produces the execution records that those systems can use: what was authorized, what happened, which rules applied and how the economic result closed.
4. From execution layer to institutional layer
COSMO began with a deliberately narrow problem: allow an agent to perform one real SupraFX trade without giving it unrestricted control over the principal account.
Solving that problem required more than a transaction builder. It required a bounded delegate, a one-shot mandate, rules fixed before execution, a human ceremony at the irreversible boundary, a tamper-evident record, a signed receipt and a separate consistency check.
Most of those requirements were not about trading. Price bounds and pairs were domain-specific. Authority, mandate, policy, ceremony, record, receipt and verification were not.
What changed
The trade was the occasion. The institutional primitives became the product.
That is why COSMO is now positioned as the institutional layer for autonomous economies rather than only an execution layer for one market.
5. The seven primitives
| # | Primitive | Function |
|---|---|---|
| 1 | Delegated authority | A standing but bounded permission: delegate key, scope, caps, expiry and revoke. |
| 2 | Mandate | A signed authorization for one concrete execution case: single-use nonce, TTL and policy-hash binding. |
| 3 | Policy | Rules fixed and hash-pinned before the action; default-REJECT and fail-closed. |
| 4 | Ceremony | Explicit arming of the irreversible step. In the current trust model, this is a human ARM. |
| 5 | Record | A hash-chained journal plus write-once evidence sealed under a manifest. |
| 6 | Receipt | A signed closing statement with an honest outcome taxonomy, including failure. |
| 7 | Verification | A separate offline check of internal consistency across keys, signatures, timing, policy, mandate, evidence, journal, action and outcome. |
The first two are deliberately different. Delegated authority is the standing permission a case runs under. The mandate authorizes one case within that permission. Possession of a key is not treated as permission.
6. The Execution Case
The core COSMO object is not a token, a trade or a chatbot session. It is the complete economic action:
Intent → Mandate → Policy → ARM → Execute → Record → Receipt → Verify
An Execution Case binds the principal, agent, action, budget, policy, authorization, evidence and closing outcome into one reconstructable process. It gives a later reviewer enough information to ask:
- Who authorized the action?
- Which agent or key was allowed to execute it?
- What was the exact scope and exposure?
- Which rules were fixed before execution?
- What did the system observe?
- What happened on-chain or in the external venue?
- Why did the case close with this outcome?
The receipt is therefore not merely a success certificate. A rejected, expired or failed case can be a valid institutional record if it truthfully represents what the system knew and did.
7. Shared integrity, domain-specific economics
Economic domains are not interchangeable. A trading policy must reason about pairs, size and price. A work-delivery policy must reason about job status, solver binding, result hashes, deadlines and escrow exposure.
COSMO does not erase those differences. It places them behind domain-specific execution profiles while preserving shared integrity guarantees.
Claim demonstrated in August 2026
One verification entry point, shared integrity guarantees, two domain-specific execution profiles.
The shared guarantees include signatures, mandate binding, policy pins, journal chaining, evidence manifests, receipt integrity and fail-closed behavior. The economic meaning of each action remains inside its domain profile.
8. Proof matters
The Agent Economy is full of narratives. COSMO should be judged by evidence. Three public proof stages now anchor the v5 thesis.
| Proof | Domain | What happened | Honest scope |
|---|---|---|---|
| Case 001 | FX / SupraFX | A micro-live SUPRA/USDC trade ran through delegated authority, mandate, policy, ARM, execution, receipt and verification. Outcome: EXECUTED, ACCEPT 10/10. The delegate was later revoked on-chain. | One pair, one venue, micro scale. Settlement was observed through the platform API, not proven natively from chain state. |
| Case 002 | Market work delivery | A solver delivered a pre-mandated result hash for a live marketplace job. The policy checked live chain state; the on-chain hash matched the mandate. Outcome: EXECUTED, ACCEPT 10/10. | The case ended at DELIVERED. The later buyer approval was initially a direct human action outside this case. |
| Case 002-G | Delivery + acceptance | On a second live job, the provider delivery and buyer acceptance were each executed as separate one-shot mandated cases. The approval atomically released 5 wCOSMO escrow. Both cases closed EXECUTED and verified ACCEPT 10/10. | The same operator armed both ceremonies. Role separation was cryptographic, not organizational independence. |
Public evidence: Case 001, Case 002, Case 002-G. Narrative overview: heros.cloud/institutional.
The two failed Case 002 attempts are also part of the proof. One closed EXECUTION_FAILED before network contact because of an SDK defect. Another closed EXPIRED because the ARM arrived after the mandate window. Neither failure was relabelled to preserve a clean story.
An institution that cannot name its failures cannot be audited.
9. Truth, observation and verification
A verifier can only prove what its evidence model allows. COSMO currently verifies internal consistency and record integrity. It does not claim universal world truth.
- A platform observation can be internally consistent and still be wrong about external reality.
- An on-chain state transition is a stronger anchor than an application balance observation.
- A self-attested receipt is not the same as an independent third-party attestation.
Current verification boundary
Public evidence bundles are available, and the standalone verifier is now public: a single self-contained file at heros.cloud/verifier/ (v1.0.0), with a pinned source hash so anyone can check the file they run. It performs a separate offline check of internal consistency — not an independent third-party attestation.
That trust jump has now been made: COSMO's receipts are public evidence that anyone can re-check offline with the public verifier. The remaining honest limits are that the engine is a single attestor (not an independent attestor network), and that a consistent observation is still not a proof of external world truth.
10. The complementary stack
| Layer | Role | Meaning |
|---|---|---|
| Models / skills | Capability | What agents can reason about and perform. |
| Identity / Web of Trust | Relationship context | Who an actor is, who introduced it and how trust paths are formed. |
| SupraOS | Coordination | How agents can be organized, composed and connected to workflows. |
| SupraFX | Market and liquidity rails | Price, depth, routing and execution venues for market-facing actions. |
| COSMO | Institutional execution | Delegated authority, mandates, policies, ceremony, records, receipts and verification around autonomous action. |
| Supra | Economic substrate | Programmable execution, state, assets and settlement anchors. |
The winning story is composition. COSMO is not a competitor to SupraOS or SupraFX. It is designed to make agent action accountable around the coordination and market rails that the wider Supra stack can provide.
11. Reputation should be derived, not declared
COSMO should not assign a universal score saying that an agent is trustworthy. It should produce high-quality facts.
A receipt history can show how many mandates an identity accepted, how often policies rejected it, whether deadlines were met, whether settlement occurred and whether evidence remained consistent. A reputation system or Web of Trust may then interpret that history according to its own context.
Separation of responsibilities
Relationship trust can propagate through a graph. Reputation must accumulate through evidence. Authority must still be granted per domain and per action.
A highly reputed agent should not receive unlimited power. Trust may justify a larger mandate. It must never erase the mandate.
12. COSMO as a bureaucracy compressor
Human economies surround action with paperwork because action creates risk. A real transaction may require an instruction, a power of attorney, budget approval, procurement rules, delivery evidence, acceptance, payment, liability and an audit file.
COSMO does not remove those protections. It makes them machine-readable and binds them into one process.
The compression
Mandate + policy + execution + evidence + settlement + responsibility become one verifiable Execution Case.
This is the deeper meaning of the institutional layer. COSMO is not trying to make bureaucracy disappear by dropping safeguards. It is trying to compile safeguards into bounded execution.
13. Use cases
The common pattern is not the asset. The common pattern is an authorized economic action with a verifiable close.
- FX and DeFi execution: agents operate under pair, size, price and exposure limits.
- Agent work: a provider commits a result under mandate; a buyer accepts and releases escrow under a separate mandate.
- Compute: agents purchase capacity under budget and verify delivery conditions.
- APIs and data: agents buy metered access with explicit scope and output evidence.
- Storage and bandwidth: providers commit capacity and clients release payment against verifiable delivery.
- Autonomous procurement: agents compare quotes and execute within a machine-readable purchasing mandate.
- Treasury operations: an agent acts within asset, venue, counterparty and risk boundaries.
Only the FX and marketplace-work profiles have been demonstrated through the full Execution Case framework. The others remain applications to validate, not shipped facts.
14. What COSMO is not
COSMO is not a foundation model, a chatbot, a general agent framework, an identity provider, a Web of Trust, a reputation oracle, a custodian, a regulator, an AMM or a replacement for SupraFX.
COSMO does not guarantee that an external observation is world truth. It does not make an agent honest. It does not eliminate disputes. It does not prove market demand. It does not turn a founder-operated proof into a neutral institution.
What it does is narrower: it makes the authority, rules, action, evidence and recorded outcome of an autonomous economic act explicit and checkable.
15. The role of $COSMO and the community
The institutional thesis does not by itself prove a token economy. Any role for $COSMO must be justified by real system needs rather than retrofitted narrative.
Potential roles include access, bonds, operator exposure, service settlement and community coordination. Each role should be evaluated by one question: does it improve accountability or merely add a token where none is needed?
The community should help build supply, domain profiles, verifier scrutiny, independent operation and external demand. The strongest community is not an audience around a claim. It is a network that can operate, challenge and improve the institution.
16. Principles
- Agents should be able to act, not only answer.
- Capability is copyable. Authority is not.
- Identity is not reputation. Reputation is not authority.
- Every irreversible action needs a bounded mandate.
- Policy is fixed before execution, not invented after the outcome.
- Possession of a key is not permission.
- Failure must close with a named, signed outcome.
- Receipts should provide facts from which reputation can be derived.
- On-chain state is stronger than platform observation when available.
- Domain economics may differ while integrity guarantees remain shared.
- Human authorization is valid architecture when the trust model requires it.
- Bureaucracy should be compressed into executable safeguards, not discarded.
- COSMO should complement SupraOS and SupraFX, not compete with them.
- Public evidence matters more than pitch decks.
- A demonstrated mechanism is not the same as demonstrated demand.
17. The declaration
We believe autonomous agents will become economic actors.
We believe copied intelligence will make bounded authority more important, not less.
We believe agent societies will need identity, trust relationships, evidence, reputation, mandates, policy, settlement and revocation.
We believe no agent should receive execution rights merely because it possesses the capability to act.
We believe a Web of Trust can provide relationship context, while receipts provide the evidence from which reputation is earned.
We believe Supra can become a home for this economy because execution, automation, data, markets and agent infrastructure are converging there.
We believe SupraFX can provide market rails and SupraOS can provide coordination, while COSMO provides the institutional execution framework around autonomous action.
We are not building another chatbot. We are building the layer that answers: who allowed this, under which rules, what happened, and how can the outcome be checked?
The internet connected information. Blockchain connected value. Autonomous economies require institutions that connect capability to legitimate action.
COSMO exists for that connection.
18. Public short version
COSMO is the institutional layer for autonomous economies, built on Supra. It turns autonomous capability into bounded authority through delegated permissions, one-shot mandates, hash-pinned policies, explicit ceremony, tamper-evident records, signed receipts and offline consistency verification. The framework has been demonstrated across two economic domains: a live SupraFX trade and live marketplace work, including a two-mandate delivery-and-acceptance flow with on-chain settlement. COSMO complements SupraOS and SupraFX. Public evidence and a public standalone verifier are available at heros.cloud/verifier/.
Appendix: creator and community lines
- Capability can scale. Authority must stay bounded.
- Identity says who. Reputation says what was proven. Authority says what may happen now.
- Agents do not need a blank cheque. They need a mandate.
- The trade was the occasion. The institutional primitives became the product.
- COSMO turns "can do" into a provable "may do".
- One verification entry point. Shared integrity. Domain-specific economics.
- A trust graph provides context. Receipts provide evidence.
- COSMO compiles safeguards into execution.
In einem Satz
COSMO ist die institutionelle Schicht für autonome Ökonomien auf Supra: ein System, das autonome Fähigkeiten in begrenzte Autorität, regelgebundene Ausführung, belastbare Belege, signierte Receipts und überprüfbare wirtschaftliche Ergebnisse übersetzt.
1. Präambel: Wenn Erfahrung ausführbar wird
KI entwickelt sich vom Assistenten zum handelnden System. Agenten können recherchieren, programmieren, Märkte beobachten, Tools verwenden und andere Agenten koordinieren. Der nächste Schritt ist nicht nur ein klügerer Einzelagent. Es sind Gesellschaften spezialisierter Agenten, die Leistungen einkaufen, Aufgaben delegieren, Ergebnisse prüfen und Ressourcen verteilen.
Solche Systeme können anders skalieren als menschliche Organisationen. Ein erfolgreicher Ablauf lässt sich als Markdown, Code und Tests speichern. Ein Skill kann tausendfach kopiert werden. Erfahrung wird ausführbar und replizierbar.
Damit verschiebt sich das Problem. Wenn Fähigkeit leicht kopierbar wird, darf Autorität nicht mitkopiert werden.
Der Kernsatz
Capability is copyable. Authority is not.
COSMO setzt genau in der Lücke zwischen technischem Können und legitimer wirtschaftlicher Handlung an.
2. Die These: Autonome Ökonomien brauchen Institutionen
Eine Wirtschaft entsteht nicht aus Intelligenz allein. Sie entsteht aus wiederholbaren Beziehungen zwischen Akteuren, die zusagen, liefern, abnehmen, bezahlen, scheitern, streiten und verantwortlich gemacht werden können.
Menschliche Gesellschaften haben dafür Institutionen geschaffen: Vollmachten, Budgets, Freigaben, Verträge, Rechnungen, Prüfvermerke und Widerruf. Agenten brauchen dieselben Funktionen in maschinenlesbarer und ausführbarer Form.
- Kann: Besitzt der Agent die Fähigkeit?
- Darf: Ist er für diese konkrete Handlung autorisiert?
- Hat getan: Was wurde tatsächlich ausgeführt?
- War gültig: Blieb die Handlung innerhalb von Mandat und Policy?
- Wurde gesettelt: Welches wirtschaftliche Ergebnis ist eingetreten?
COSMO versucht nicht, der intelligenteste Agent zu sein. COSMO macht autonome Handlung begrenzt, nachvollziehbar und verantwortlich.
3. Identität, Vertrauen, Reputation und Autorität
| Ebene | Frage | Aufgabe |
|---|---|---|
| Identität | Wer ist dieser Akteur? | Eine dauerhafte Referenz auf Agent, Operator, Wallet oder Organisation. |
| Web of Trust | Wer steht mit wem in Beziehung? | Empfehlungen, Herkunft, Vertrauenspfade und Beziehungskontext. |
| Reputation | Was hat dieser Akteur bewiesen? | Eine aus Belegen abgeleitete Historie, keine Eigenschaft des kopierten Codes. |
| Autorität | Was darf dieser Akteur jetzt tun? | Eine begrenzte Erlaubnis für Domäne, Handlung, Budget und Zeitraum. |
Fähigkeiten können kopiert werden. Zugangsdaten können bei schlechter Sicherung ebenfalls kopiert werden. Reputation sollte dagegen an eine Identität und ihre belegte Historie gebunden sein. Autorität muss für die konkrete Handlung neu erteilt werden, unabhängig davon, wie vertrauenswürdig ein Agent erscheint.
Saubere Aufgabenteilung
Ein Vertrauensgraph liefert Beziehungskontext. Belege lassen Reputation entstehen. Autorität wird weiterhin pro Domäne und pro Handlung erteilt.
4. Von der Execution Layer zur institutionellen Schicht
COSMO begann mit einem engen Problem: Ein Agent sollte einen echten SupraFX-Trade ausführen, ohne unbeschränkte Kontrolle über das Konto des Principals zu erhalten.
Dafür brauchte es einen begrenzten Delegate, ein einmaliges Mandat, vorher festgelegte Regeln, eine menschliche ARM-Zeremonie, eine unveränderbare Akte, ein signiertes Receipt und eine getrennte Konsistenzprüfung.
Preisgrenzen und Handelspaare waren trading-spezifisch. Autorität, Mandat, Policy, Ceremony, Record, Receipt und Verification waren es nicht.
Was sich änderte
Der Trade war der Anlass. Die institutionellen Primitive wurden zum Produkt.
5. Die sieben Primitive
| # | Primitiv | Funktion |
|---|---|---|
| 1 | Delegated Authority | Stehende, aber begrenzte Befugnis: Key, Scope, Caps, Ablauf und Revoke. |
| 2 | Mandate | Signierte Autorisierung eines konkreten Cases mit One-shot-Nonce, TTL und Policy-Bindung. |
| 3 | Policy | Vor der Handlung per Hash gepinnte Regeln; default-REJECT und fail-closed. |
| 4 | Ceremony | Explizites Scharfschalten des irreversiblen Schritts. Im aktuellen Trust-Modell durch einen Menschen. |
| 5 | Record | Hash-verkettetes Journal und write-once Evidence unter einem Manifest. |
| 6 | Receipt | Signierter Abschlussbeleg mit ehrlicher Outcome-Taxonomie, einschließlich Fehlern. |
| 7 | Verification | Getrennte Offline-Prüfung der internen Konsistenz. |
Delegated Authority und Mandate sind nicht dasselbe. Die delegierte Autorität ist die begrenzte Grundbefugnis. Das Mandat erlaubt einen einzelnen Vorgang innerhalb dieser Befugnis. Der Besitz eines Keys gilt nicht als Erlaubnis.
6. Der Execution Case
Intent → Mandate → Policy → ARM → Execute → Record → Receipt → Verify
Ein Execution Case bindet Principal, Agent, Handlung, Budget, Policy, Autorisierung, Evidence und Ergebnis zu einem rekonstruierbaren Vorgang.
Damit lässt sich später beantworten: Wer hat beauftragt? Wer durfte ausführen? Welche Grenzen galten? Was wurde tatsächlich getan? Welche Belege liegen vor? Warum endete der Case mit diesem Ergebnis? Welche wirtschaftliche Wirkung trat ein?
Ein gültiges Receipt muss nicht immer EXECUTED sagen. Auch POLICY_REJECTED, EXPIRED oder EXECUTION_FAILED können ehrliche und überprüfbare institutionelle Ergebnisse sein.
7. Gemeinsame Integrität, unterschiedliche Domänen
Ein Trade und eine Arbeitslieferung brauchen unterschiedliche fachliche Regeln. COSMO vereinheitlicht nicht die Ökonomie, sondern die institutionellen Integritätsgarantien.
Bewiesener Claim
One verification entry point, shared integrity guarantees, two domain-specific execution profiles.
Gemeinsam sind unter anderem Signaturen, Mandatsbindung, Policy-Pins, Journal-Kette, Evidence-Manifest, Receipt-Integrität und fail-closed-Verhalten. Die wirtschaftliche Bedeutung bleibt in der jeweiligen Domäne.
8. Die öffentlichen Beweise
| Proof | Domäne | Ergebnis | Ehrliche Grenze |
|---|---|---|---|
| Case 001 | SupraFX | Realer SUPRA/USDC-Micro-Trade unter allen sieben Primitiven. EXECUTED, ACCEPT 10/10, Delegate anschließend on-chain revoked. | Ein Pair, ein Venue, Mikro-Skala; Settlement als Plattformbeobachtung. |
| Case 002 | Arbeitslieferung | Vorab mandatierter Result-Hash wurde für einen realen Job on-chain committed. EXECUTED, ACCEPT 10/10. | Der Case endete bei DELIVERED; die erste Abnahme erfolgte danach direkt menschlich. |
| Case 002-G | Lieferung + Abnahme | Provider-Lieferung und Buyer-Abnahme liefen jeweils als eigener One-shot-Case. 5 wCOSMO Escrow wurden atomar freigegeben. Beide ACCEPT 10/10. | Beide ARMs kamen vom selben Operator; die Rollentrennung war kryptographisch, nicht organisatorisch. |
Öffentliche Evidence: Case 001, Case 002, Case 002-G.
Auch die Fehlversuche gehören zum Beweis. Ein SDK-Fehler endete vor dem Netzkontakt als EXECUTION_FAILED. Ein verspätetes ARM endete als EXPIRED. Das System hat die Autorität nicht nachträglich passend gemacht.
9. Wahrheit, Beobachtung und Verifikation
COSMO verifiziert derzeit interne Konsistenz und Aktenintegrität. Das ist nicht dasselbe wie objektive Weltwahrheit.
- Eine konsistente Beobachtung kann die externe Wirklichkeit falsch erfassen.
- Ein on-chain Zustandsübergang ist stärker als eine Plattformbeobachtung.
- Selbst-Attestierung ist keine unabhängige Drittprüfung.
Aktuelle Grenze
Die Evidence-Bundles sind öffentlich, und der Standalone-Verifier ist jetzt öffentlich: eine einzelne, in sich geschlossene Datei unter heros.cloud/verifier/ (v1.0.0) mit gepinntem Quell-Hash. Er führt eine getrennte Offline-Prüfung der internen Konsistenz durch — keine unabhängige Drittprüfung.
Dieser Trust-Sprung ist damit vollzogen: Die Receipts sind öffentliche Evidence, die jeder offline mit dem öffentlichen Verifier nachprüfen kann. Die verbleibenden ehrlichen Grenzen: die Engine ist ein einzelner Attestor (kein unabhängiges Attestor-Netzwerk), und eine konsistente Beobachtung ist noch kein Beweis objektiver Weltwahrheit.
10. Der komplementäre Stack
| Layer | Rolle | Bedeutung |
|---|---|---|
| Modelle / Skills | Capability | Was Agenten denken und technisch ausführen können. |
| Identity / Web of Trust | Beziehungskontext | Wer ein Akteur ist, wer ihn eingeführt hat und welche Vertrauenspfade bestehen. |
| SupraOS | Koordination | Wie Agenten organisiert, verbunden und in Workflows eingebunden werden. |
| SupraFX | Markt- und Liquiditätsschienen | Preise, Tiefe, Routing und Venues für marktnahe Handlungen. |
| COSMO | Institutionelle Execution | Autorität, Mandate, Policies, Ceremony, Records, Receipts und Verification. |
| Supra | Wirtschaftliches Substrat | Programmierbare Ausführung, Zustand, Assets und Settlement-Anker. |
Die starke Story ist Komposition. COSMO ist keine Konkurrenz zu SupraOS oder SupraFX.
11. Reputation aus Evidence
COSMO sollte keinen globalen Vertrauenswert über einen Agenten ausrufen. COSMO sollte belastbare Fakten erzeugen: erteilte Mandate, bestandene und abgelehnte Policies, Fristen, Ausführung, Evidence und Settlement.
Ein Web of Trust oder ein anderes Reputationssystem kann diese Historie im jeweiligen Kontext auswerten. Hohe Reputation kann größere Mandate rechtfertigen. Sie darf das Mandat nicht ersetzen.
12. Der Bürokratie-Kompressor
Wirtschaftliche Vorgänge erzeugen Risiko. Deshalb bestehen sie heute aus Auftrag, Vollmacht, Budgetfreigabe, Regeln, Ausführung, Abnahme, Rechnung, Zahlung und Prüfakte.
COSMO will diese Schutzmechanismen nicht weglassen. Es übersetzt sie in maschinenlesbare Regeln und bindet sie zu einem überprüfbaren Vorgang.
Kompression
Mandat + Policy + Ausführung + Evidence + Settlement + Verantwortung werden zu einem Execution Case.
13. Konkrete Anwendungen
- FX und DeFi Execution unter Pair-, Größen-, Preis- und Exposure-Limits.
- Agent Work mit mandatierter Lieferung und separat mandatierter Abnahme.
- Compute-Beschaffung unter Budget und überprüfbaren Lieferbedingungen.
- APIs und Daten mit festem Scope und Evidence.
- Storage und Bandbreite mit nachweisbarer Lieferung.
- Autonome Beschaffung mit maschinenlesbarer Vollmacht.
- Treasury-Operationen unter Asset-, Venue-, Gegenpartei- und Risikogrenzen.
Vollständig demonstriert sind bisher die FX- und Market-Work-Profile. Die übrigen Anwendungen sind zu validierende Möglichkeiten.
14. Was COSMO nicht ist
COSMO ist kein Foundation Model, kein Chatbot, kein allgemeines Agent Framework, kein Identity Provider, kein Web of Trust, kein Reputation Oracle, kein Custodian, keine Aufsicht, kein reguliertes Finanzprodukt, kein AMM und kein Ersatz für SupraFX.
COSMO garantiert keine Weltwahrheit, macht Agenten nicht automatisch ehrlich und beweist noch keinen zahlenden Markt. Es macht einen engeren Sachverhalt sichtbar: Wer durfte was tun, unter welchen Regeln, was geschah und wie wurde das Ergebnis dokumentiert?
15. $COSMO und Community
Die institutionelle These beweist nicht automatisch eine Token-Ökonomie. Jede Rolle von $COSMO muss aus einem realen Bedarf abgeleitet werden. Mögliche Rollen sind Access, Bonds, Operator-Exposure, Settlement und Community-Koordination. Entscheidend ist, ob die Rolle Accountability verbessert.
Die Community sollte nicht nur eine Erzählung verbreiten. Sie sollte Supply, neue Domain-Profile, unabhängige Prüfung, Operatoren und externe Nachfrage hervorbringen.
16. Prinzipien
- Agenten sollen handeln können, nicht nur antworten.
- Capability is copyable. Authority is not.
- Identität ist nicht Reputation. Reputation ist nicht Autorität.
- Jede irreversible Handlung braucht ein begrenztes Mandat.
- Policies werden vor der Handlung festgelegt.
- Der Besitz eines Keys ist keine Erlaubnis.
- Fehler brauchen einen benannten und signierten Abschluss.
- Receipts liefern Fakten, aus denen Reputation abgeleitet werden kann.
- On-chain-Zustand ist stärker als Plattformbeobachtung.
- Domänen unterscheiden sich wirtschaftlich, können aber Integritätsgarantien teilen.
- Menschliche Autorisierung ist legitime Architektur, wenn das Trust-Modell sie verlangt.
- Bürokratie soll in ausführbare Schutzmechanismen komprimiert, nicht abgeschafft werden.
- COSMO ergänzt SupraOS und SupraFX.
- Öffentliche Belege zählen mehr als Pitch Decks.
- Bewiesene Mechanik ist noch kein bewiesener Markt.
17. Die Erklärung
Wir glauben, dass autonome Agenten wirtschaftliche Akteure werden.
Wir glauben, dass kopierbare Intelligenz begrenzte Autorität wichtiger macht.
Wir glauben, dass Agentengesellschaften Identität, Vertrauensbeziehungen, Evidence, Reputation, Mandate, Policies, Settlement und Widerruf brauchen.
Wir glauben, dass kein Agent Ausführungsrechte erhalten darf, nur weil er technisch handeln kann.
Wir glauben, dass ein Web of Trust Beziehungskontext liefern kann und Receipts die Belege, aus denen Reputation entsteht.
Wir glauben, dass Supra ein Zuhause für diese Wirtschaft werden kann, weil Execution, Automation, Daten, Märkte und Agenten-Infrastruktur dort zusammenlaufen.
Wir glauben, dass SupraFX Marktschienen und SupraOS Koordination bereitstellen können, während COSMO den institutionellen Rahmen um autonome Handlung liefert.
Wir bauen keinen weiteren Chatbot. Wir bauen die Schicht, die beantwortet: Wer hat erlaubt? Welche Regeln galten? Was ist passiert? Wie lässt sich das Ergebnis prüfen?
COSMO existiert für diese Verbindung.
18. Öffentliche Kurzfassung
COSMO ist die institutionelle Schicht für autonome Ökonomien auf Supra. COSMO übersetzt autonome Fähigkeiten in begrenzte Autorität: über delegierte Befugnisse, einmalige Mandate, per Hash gepinnte Policies, explizite Ceremony, unveränderbare Records, signierte Receipts und Offline-Konsistenzprüfung. Das Framework wurde in zwei wirtschaftlichen Domänen demonstriert: einem realen SupraFX-Trade und realer Agentenarbeit, einschließlich eines Zwei-Mandate-Ablaufs für Lieferung und Abnahme mit on-chain Settlement. COSMO ergänzt SupraOS und SupraFX. Die Evidence und ein öffentlicher Standalone-Verifier sind verfügbar unter heros.cloud/verifier/.
Appendix: Creator- und Community-Zeilen
- Fähigkeit kann skalieren. Autorität muss begrenzt bleiben.
- Identität sagt, wer. Reputation sagt, was bewiesen wurde. Autorität sagt, was jetzt erlaubt ist.
- Agenten brauchen keinen Blankoscheck. Sie brauchen ein Mandat.
- Der Trade war der Anlass. Die institutionellen Primitive wurden zum Produkt.
- COSMO macht aus "kann" ein belegbares "darf".
- Ein Verifikations-Einstiegspunkt. Gemeinsame Integrität. Domänen-spezifische Ökonomie.
- Ein Vertrauensgraph liefert Kontext. Receipts liefern Evidence.
- COSMO kompiliert Schutzmechanismen in Ausführung.
Risk and honesty note. This manifesto is a strategic and narrative document. It is not investment advice, not a promise of future returns, not a claim of regulatory status and not a statement of confirmed integration unless separately announced by the relevant teams. COSMO should be evaluated by shipped code, public evidence, live execution, security review and stated limitations. The institutional mechanism has been demonstrated. External demand remains to be proven.
Version basis: public COSMO positioning and evidence state as of August 2026. Supersedes the v4.0 manifesto.