Model release
Artifacts, interface, reasoning contract, disclosures, license states, and exact descriptors where bytes are available.
synthetic release JSONThe Chillspace Kingdom / exchange / model release
KINGDOM MODEL RELEASE SUBSTRATE · V1
A small, offline contract for distinguishing a model release from the runtime that executes it and the claims that arrive later.
Evidence stays scoped. The synthetic examples contain dummy identities and hashes. The Kimi K3 capsule is a real KINGDOM-curated, publisher-sourced release record: selected metadata, code, and license bytes were captured, while weight-shard hashes remain publisher-claimed. No model or API call, evaluation, build, or runtime execution was performed. Qwen3-0.6B adds one curator-observed local CPU capsule and one signed second-machine witness from a GitHub-managed Ubuntu x64 runner. Neither is independent publisher authority.
Curated release capsule · not a launch
The local and hosted profiles are documented reference configurations and are explicitly unexecuted. The signed launch index makes this capsule's exact files checkable under a task key; it is not a vendor signature, endorsement, trusted timestamp, or grant of launch authority.
kimi-k3-hf-9f62e4e9
Captured bytes and publisher-claimed hashes keep their different states. No weight shard was downloaded, and no local or hosted backend was observed.
Curator-observed execution · bounded witness
This separate capsule binds one immutable publisher snapshot to three CPU runs. Its signed launch index makes the finite public record checkable under a task key; it does not transform one private synthetic case into a benchmark or launch claim.
qwen3-0.6b-hf-c1899de2
All ten publisher files were streamed locally through SHA-256. The weights and 11.4 MB tokenizer JSON are not bundled; the retained record publishes no raw prompt, output, or deliberation.
Signed execution referrer · same curator
This third capsule does not rewrite the release. Its signed witness index anchors the local capsule's exact release and launch digests to a workflow-produced evidence tar. The immutable ten-file snapshot descriptor set and byte total match; the public fixture differs from the earlier private fixture, so cross-platform output equality is not claimed. A second machine is not a second human, vendor, or publisher authority.
qwen3-0.6b-gh-ubuntu-abad124
The first attempt failed before inference on a namespace observation bug and remains visible. The successful thinking run stayed open at 96 tokens with no final answer; two non-thinking runs were token-identical, correct under last-numeric scoring, and strict-format failures.
Offline provenance verification assumes the locally resolved gh executable is trusted. The registry validator constrains its version and verification result, but does not authenticate or digest-pin that executable.
Synthetic mechanics · three separate lifetimes
These three dummy records exercise the contract without making real-world claims. A release identity remains stable when a new runtime, evaluation, signature, correction, or deprecation is attached. Every edge names the digest it means.
Artifacts, interface, reasoning contract, disclosures, license states, and exact descriptors where bytes are available.
synthetic release JSONEngine, precision, kernels, hardware, backend declarations, and an exact binding back to one release digest.
synthetic profile JSONBuild provenance, evaluation, signature evidence, correction, or deprecation bound to a release or profile.
synthetic evaluation JSONReviewed machine contract
36b428ac4a890a6960ca06683ec9b758aa709ac4a0da3428bbd4344969318f87
Launch path
Fingerprint vocabulary
| Name | Scope | Honest boundary |
|---|---|---|
| Artifact descriptor | Exact file bytes, media type, and size | A declaration until supplied bytes are streamed and compared. |
| Release digest | Canonical release manifest | Shows the declaration is unchanged; says nothing by itself about safety or origin. |
| Profile digest | Canonical execution house | Names declared runtime configuration, not universal reproducibility. |
| Backend observation | Time-scoped provider claim and evidence | Opaque, provider-defined, and not a cryptographic weight fingerprint. |
Reasoning interface, not private thought
What a caller may see
This describes the public reasoning interface. It does not request or preserve hidden chain-of-thought.
How a turn may continue
Opaque continuation state can coexist with a visible summary. Compatibility is recorded without collecting a session trace.
The line
It makes claims inspectable. It does not turn them into truth or authority.