What is real, what is under review, what comes last
OpenCSV publishes receipts at the boundary between those
three states. A prototype result is evidence, not a production claim; a
green local branch is not a merge.
On the reference main line
Proof lineage v3 + co-funded batching
Issuer authorization and predecessor keys are bound in-circuit.
The 94-bit-floor proof profile, C1 co-funded transactions, and C2
two-round peer gossip have reproducible Rust receipts. The separate
translated-Rust kernel refinement has 15 audited declarations on
formal-aeneas/main.
Now on opencsv-rs/main
Verified kernel, accept boundary, readiness, wallet
A4/A5 adoption, dated signet/readiness evidence, C2 adversarial
fixes, and the Rust-owned Signal account-wallet foundation are merged.
The independent adversarial re-review was deferred by the owner, not
represented as completed.
Final codebase
Signal-iOS migration
The physical-phone prototype proved encrypted delivery, native
rendering, and local scanning. The final Rust custody, backup,
device-binding, and crash-safe send design is not yet integrated into
Signal-iOS.
Bitcoin is protocol gas, not a second payment
product. The target Signal wallet exposes fee reserve, UTXOs,
confirmations, and evidence, but Bitcoin can be spent only by an OpenCSV
mint, transfer, or protocol-safe fee bump. There is no general BTC send or
bespoke OpenCSV anchor server. Follow the exact gates in
issue #1 and
the Signal architecture in
issue #3.