Test USD
Permanent no-value demonstration product.
- Bitcoin signet
opencsv-test-usd-v2- Existing test root, database, backup, and fee tree
- Exact test-only manifests
- Never promoted or converted
Test USD stays on signet forever. Any future production USD starts with new keys, new storage, a new fee tree, and one exact issuer-registry release that humans have actually reviewed.
Permanent no-value demonstration product.
opencsv-test-usd-v2Inactive until every review and owner gate passes.
opencsv-mainnet-account-v1 derivationMainnet refuses loose issuer policy. The candidate wallet recomputes one commitment over the production deployment, registry version, ordered manifests and priorities, activation phase, exact rollout ceilings, source revision, and public approval receipts before it can arm a consumer write.
planned / fee_reserved resume advances that same operationopencsv-registry uses the account wallet's Rust serializer and verifierproduction_activation_not_authorizedproduction_root_vk_authentication_requiredproduction_issuance_not_authorized without exact threshold evidenceThe consumer registry selects spendable instruments; it is not mint authority. The stacked Rust candidate requires registry v2 to commit an exact threshold policy, then requires every mint to carry signatures over its registry, policy, recipient, amounts, exact confirmed funding outpoint, sequence, and supply transition. Operation and supply-floor admission are atomic and backup-carried. A crash resumes that one operation; it cannot reuse the approval or substitute another fee coin. The signed outpoint prevents an older valid backup from replaying one approval with fresh Bitcoin funding. There is still no real policy, authority key set, production issuer, or activation.
Elapsed time changes nothing. Source, build, manifest, review, and owner receipts must identify the exact state transition.
Read, restore, sync, and export evidence. New consumer Bitcoin writes return production_usd_not_configured.
Freeze deployment, registry v2, consumer rollout ceilings, threshold-key ceremony, issuance policy, supply envelope, recovery namespace, and build inputs. The committed phase is candidate; writes stay disabled.
Independent protocol, wallet, Signal, operational, and issuer reviews approve exact hashes. The release remains candidate and cannot write.
A reproducible signed build passes recovery and signet acceptance. Distribution still needs explicit owner approval; policy remains candidate.
Requires D5 root-key authentication first. A higher limited release then permits fresh wallets only inside its exact transfer, batch, daily, reserve, and miner-fee ceilings.
Requires limited-operation evidence, incident procedures, support readiness, and a higher general release. Its ceilings still apply.