K05 assurance architecture

K05 Source and Claim Revalidation

Direct answer

K05 assigns every governed report finding an explicit currentness disposition and separately records bounded official-source reviews for the fifteen K04 strategic report additions. It preserves raw report bytes, narrows overbroad interpretations, corrects rulemaking and applicability status, and leaves unsupported time-sensitive claims attributed rather than silently promoted.

Evidence boundary. These records describe architecture, control relationships, test requirements, and legal-source status. They do not certify a facility, authorize a mission, prove deployment, or replace current facility-specific engineering and legal review.

Adjudication rule

Official publication verifies what an authority published at the review time. It does not automatically prove implementation, effectiveness, facility applicability, litigation outcome, classified activity, or every fact repeated in a research report.

K05 report source-group review

OFFICIAL PROGRAM TEXT VERIFIED; GENERAL LEGAL DOCTRINES REMAIN CONTESTED

International cyber law, sovereignty, state responsibility, and the 2026 CE-TCO program

Report. State Authority and International Law in the Era of AI-Driven Cyber Defense and Private Sector Offensive Operations

The August 12, 2026 memorandum was located and confirms a federally controlled participating-company program. Broader report propositions about sovereignty, due diligence, attribution, privateering, and international responsibility remain facts- and jurisdiction-dependent.

Qualification. The memorandum does not settle disputed customary international law or authorize independent private retaliation.

Sources: Expanding Capabilities to Combat Transnational Cyber-Enabled Crime

CONTESTED LEGAL RESEARCH; NO UNIVERSAL CURRENT-LAW CONCLUSION

Anticipatory self-defense, preemption, prevention, contextual imminence, and unable-or-unwilling

Report. The Strategic and Legal Dimensions of Preemptive Force: Global Paradigms and the Mitigation of Emergent Threats

The report's distinctions remain useful research, but K05 did not locate a single current primary source that resolves all claimed doctrines across jurisdictions.

Qualification. Preemption, prevention, imminence, necessity, proportionality, attribution, and third-state sovereignty require a competent facts-specific legal review.

Sources: No direct source record assigned; this is project architecture or an unresolved evidence state.

STRATEGIC RESEARCH RETAINED; EXTERNAL EFFECTS REQUIRE SEPARATE AUTHORITY

Preemptive cyber operations against known threat groups

Report. The Strategic and Legal Dimensions of Preemptive Cyber Operations Against Known Threat Groups: A Global Perspective

The report's active-defense and contextual-imminence analysis remains research. K05 separates internal facility defense from any external surveillance or effects mission and requires a separately approved authority package.

Qualification. No report language creates target status, mission authority, or a general private hack-back right.

Sources: Expanding Capabilities to Combat Transnational Cyber-Enabled Crime

OFFICIAL PUBLICATIONS VERIFIED WITH SCOPE NARROWING

U.S. executive initiatives, GOLD EAGLE, and participating-company legal architecture

Report. Domestic Authority and International Responsibility for State-Directed Cyber Operations

EO 14409, the GOLD EAGLE announcement, and the CE-TCO memorandum were located. The participating-company program requires federal control, supervision, deconfliction, package review, written approval and direction, stop procedures, and critical-outcome limits.

Qualification. Official publication verifies policy text, not implementation depth, judicial validity, foreign-law acceptance, or completed operations.

Sources: Executive Order 14409 — Promoting Advanced Artificial Intelligence Innovation and Security · White House Launches GOLD EAGLE Initiative for Cybersecurity Vulnerability Coordination · Expanding Capabilities to Combat Transnational Cyber-Enabled Crime

SCENARIO RETAINED; AUTHORITY AND FORCE CLAIMS NARROWED

Autonomous active defense for microreactor-powered datacenters

Report. The Convergence of AI, Nuclear Power, and Autonomous Active Defense: The Strategic Case for Armed Drones at Microreactor-Powered Data Centers

K05 retains the high-consequence physical-protection problem while correcting the FAA critical-infrastructure petition process to proposed-rule status and separating airspace restriction from actor-specific counter-UAS authority.

Qualification. The public corpus does not endorse autonomous lethal force or infer private authority to jam, spoof, seize, damage, or destroy aircraft.

Sources: Restricting Drones Near Critical Infrastructure Sites — Proposed Rule · 6 U.S.C. § 124n — Protection of Certain Facilities and Assets from Unmanned Aircraft · 47 U.S.C. § 333 — Willful or Malicious Interference · 10 CFR Part 73 Subpart J — Security Requirements at Commercial Nuclear Plants

STRATEGIC RESEARCH RETAINED; NAMED PROGRAM AND PERFORMANCE CLAIMS SOURCE-BOUND

Algorithmic conflict and machine-intelligence warfare

Report. The Architecture of Algorithmic Conflict: Machine Intelligence vs. Machine Intelligence in Global Warfare

The report supports the K05 focus on algorithmic resilience, edge operation, adversarial models, distributed autonomy, and electromagnetic competition.

Qualification. Named budgets, program status, fielding dates, battle results, and quantitative performance require direct primary-source review before current use.

Sources: DoD Directive 3000.09 — Autonomy in Weapon Systems

DEFENSIVE DIRECTION SUPPORTED; OFFENSIVE PERFORMANCE CLAIMS NOT FULLY REVALIDATED

Machine-speed autonomous cyber offense and defense

Report. The Hyperwar Era: Autonomous Cyber Warfare and the Confrontation of Machine Intelligence

Official sources support AI-assisted vulnerability coordination and current OT security needs. Broad claims about fully autonomous offensive effectiveness remain tied to the report's citations and are not promoted into verified project capability.

Qualification. Competition or laboratory results are not field performance, mission authority, or proof of operational deployment.

Sources: White House Launches GOLD EAGLE Initiative for Cybersecurity Vulnerability Coordination · NIST SP 800-82 Revision 3 — Guide to Operational Technology Security

CYBER-PHYSICAL RISK MODEL RETAINED; NUMERICAL AND DEPLOYMENT CLAIMS SOURCE-BOUND

Autonomous cyber warfare and critical physical infrastructure

Report. The Convergence of Autonomous Cyber Warfare and Critical Physical Infrastructure

The report's IT/OT convergence, poisoning, management-plane, supply-chain, and recovery concerns inform K05 assurance claims and range scenarios.

Qualification. No source establishes that every human-in-the-loop process is obsolete or that a specific autonomous system is deployed and effective.

Sources: NIST SP 800-82 Revision 3 — Guide to Operational Technology Security · NIST SP 800-207 — Zero Trust Architecture · Consequence-driven Cyber-informed Engineering

ARCHITECTURAL RESEARCH RETAINED; FIELDING AND ENGAGEMENT CLAIMS NOT FULLY REVALIDATED

Autonomous drone-on-drone warfare and layered interception

Report. The Paradigm Shift in Aerial Combat: Autonomous Drone-on-Drone Warfare and the Future of Layered Interception

Runtime assurance, distributed coordination, sensor fusion, GPS-denied navigation, and layered low-collateral protection remain useful architecture concepts.

Qualification. DoDD 3000.09 applies within weapon-system scope and expressly excludes autonomous cyberspace capabilities and non-weapon autonomous systems; public content omits engagement procedures.

Sources: DoD Directive 3000.09 — Autonomy in Weapon Systems

ARCHITECTURE RETAINED; ADVANCED-REACTOR SECURITY STATUS CORRECTED

Autonomous cyber-physical protection architecture for nuclear-powered datacenters

Report. Autonomous Cyber-Physical Protection Architectures for Nuclear-Powered Mega Datacenters

K05 retains CCE, deterministic separation, bounded autonomy, power/cooling assurance, and recovery patterns. The NRC Part 53 and Part 73 Subpart J framework is recorded as final and codified in 2026.

Qualification. A reference architecture is not an approved security plan, license finding, or facility certification.

Sources: Consequence-driven Cyber-informed Engineering · NIST SP 800-82 Revision 3 — Guide to Operational Technology Security · 10 CFR Part 73 Subpart J — Security Requirements at Commercial Nuclear Plants

OFFICIAL FRAMEWORKS VERIFIED WITH FACILITY-SPECIFIC APPLICABILITY

Nuclear-datacenter cyber architecture and regulatory mappings

Report. Autonomous Cyber Protection Architecture for Nuclear-Powered Mega Datacenters

Current NIST OT and Zero Trust publications, NRC cyber requirements, Part 73 Subpart J, and the official NERC CIP catalog support the mapped control domains.

Qualification. Control relationships do not prove compliance; exact applicability depends on license basis, BES classification, architecture, contracts, and current text.

Sources: NIST SP 800-82 Revision 3 — Guide to Operational Technology Security · NIST SP 800-207 — Zero Trust Architecture · 10 CFR 73.54 — Protection of Digital Computer and Communication Systems and Networks · 10 CFR Part 73 Subpart J — Security Requirements at Commercial Nuclear Plants · NERC Critical Infrastructure Protection Reliability Standards Catalog

OFFICIAL ARMY PUBLICATION VERIFIED; IMPLEMENTATION DEPTH NOT OBSERVED

U.S. Army cyber-warfare organization and offense-defense integration

Report. Unifying the Cyber Battlespace: Offensive Integration, Persistent Engagement, and the Strategic Mandate of Project Manager Cyber Warfare

Official Army pages support the public organizational and acquisition posture described in the report.

Qualification. Public articles do not establish classified mission details, program effectiveness, every budget claim, or fielded operational results.

Sources: The Establishment of Project Manager Cyber Warfare · Cyber Warfare: The Best Offense Is a Powerful Defense

PROTECTION PROBLEM RETAINED; LEGAL AND REGULATORY CLAIMS NARROWED

Autonomous physical security for nuclear-powered datacenters

Report. Autonomous Physical Security Architecture for Nuclear-Powered Mega Datacenters

K05 retains multi-sensor assurance, electromagnetic resilience, protected timing, physical delay, and evidence requirements while separating detection, restriction, mitigation, and force authorities.

Qualification. No general zero-guard, zero-latency, private counter-UAS, or autonomous lethal-force conclusion is adopted.

Sources: 10 CFR 73.55 — Requirements for Physical Protection of Licensed Activities in Nuclear Power Reactors Against Radiological Sabotage · 10 CFR Part 73 Subpart J — Security Requirements at Commercial Nuclear Plants · Restricting Drones Near Critical Infrastructure Sites — Proposed Rule · 6 U.S.C. § 124n — Protection of Certain Facilities and Assets from Unmanned Aircraft · 47 U.S.C. § 333 — Willful or Malicious Interference

COMPARATIVE STRATEGY RETAINED; JURISDICTION-SPECIFIC CURRENTNESS INCOMPLETE

International cyber-defense strategies, persistent engagement, and deterrence by denial

Report. The Paradigm Shift in Cyber Warfare: Strategic Defense, Persistent Engagement, and the Architecture of Denial

K05 preserves resilience, denial, continuous competition, escalation, and coalition concepts while marking non-U.S. current-law and current-policy propositions for separate official-source review.

Qualification. Budgets, organizational changes, doctrines, market forecasts, and 2026 events remain attributed research findings unless independently revalidated.

Sources: No direct source record assigned; this is project architecture or an unresolved evidence state.

CONVERGENCE SUPPORTED; COMMERCIAL PERFORMANCE CLAIMS SOURCE-BOUND

Corporate agentic defense and nuclear-powered compute

Report. Nuclear-Powered Mega-Datacenters and Agentic Autonomous Warfare: Why the Best Corporate Offense Is a Powerful Defense

Official sources support nuclear-compute activity and current federal AI-enabled vulnerability initiatives; K05 uses vendor-neutral control and evidence requirements rather than product endorsement.

Qualification. Vendor roadmaps, insurance effects, performance percentages, and claims of impenetrability are not adopted as verified project doctrine.

Sources: Google and Kairos Power Advanced Nuclear Agreement · Constellation and Microsoft Crane Clean Energy Center Agreement · Constellation and Meta Clinton Clean Energy Center Agreement · White House Launches GOLD EAGLE Initiative for Cybersecurity Vulnerability Coordination · NIST SP 800-207 — Zero Trust Architecture

Corrections

Advanced-reactor final rule · DoDD applicability · FAA proposal · Federal program scope

Source-group adjudications · Complete claim-level currentness ledger