What ENTITY actually is

One governed fabric for identity, authority, information, rights, evidence and economic consequence.

ENTITY is a Canadian-designed digital authority and operating infrastructure created by Blackmore Technology Group Limited. Its codebase is built to govern people, organizations, AI agents, datasets, software, devices, physical assets and transactions through persistent identity, explicit authority, machine-readable rights, verifiable events, causal provenance, economic state and provider-independent recovery.

Explore the architectureSee real-world evidenceInspect the source
The shortest useful definition: ENTITY is a digital authority and economic operating fabric for deciding what exists, who or what may act, what rights apply, what happened, what evidence supports it, what value or obligation resulted, and whether the governed state can survive the application or provider that originally held it. Provider-independent sovereignty is a continuity property of that fabric, not its complete definition.
5core primitives
16governed object classes
12machine-readable right actions
6economic value states
The five primitives

ENTITY reduces a very large digital system to five governed building blocks.

Across identity, data, AI, commerce, evidence and recovery, the implementation preserves the same five primitives so applications do not need to invent a new trust model for every domain.

ENTITYwhat exists
AUTHORITYwho may act
RIGHTwhat may be done
EVENTwhat happened
VALUEwhat consequence followed
ENTITY → AUTHORITY → RIGHT → EVENT → VALUE
What can exist inside the fabric

ENTITY is not limited to users or files.

The universal transaction fabric has native object classes for digital, institutional and real-world subjects.

PERSONORGANIZATIONAI AGENTDATASETDOCUMENTMODELSOFTWAREAPIDEVICEVEHICLEBUILDINGRESEARCHDIGITAL TWINFINANCIAL INSTRUMENTPHYSICAL ASSETOTHER

Authority is explicit

Delegated authority can be bounded to actions such as act, sign, access data, execute, purchase, license, settle, publish, resolve, delegate or control. Delegations can expire and be revoked; implicit privilege escalation is prohibited.

Rights are separate from authority

Rights can cover inspect, read, copy, derive, train, infer, execute, modify, redistribute, commercialize, control or transfer, with purpose, jurisdiction, duration and economic constraints. Access is not treated as ownership.

POTENTIAL → OFFER → CONTRACTED → ACCRUED → SETTLED → REALIZED
Implemented capability map

The repository is a platform, not a single protocol library.

Identity & registry

Persistent entities, signed proofs, append-only claims, protocol graphs, typed relationships, audit history and controlled mutations.

Policy & delegated authority

Explicit permissions, scoped delegation, revocation, policy evaluation, purpose restrictions and fail-closed authorization.

Encrypted data vaults

Owner-controlled AES-256-GCM content storage with metadata-only ledger state, deletion, cryptographic erasure and retention states.

BTDU information universe

Governed atoms, bonds, exact information objects, relationships, derivations, indexes, repository manifests, economic topology and exact reconstruction.

ADAM state engine

Deterministic atomic state transformation, event replay, recovery and execution coordination underneath BTDU.

NIKI causal intelligence

Bounded causal reasoning over approved models and governed evidence. NIKI may reason, but activation authority remains ENTITY.

Universal transaction fabric

Objects, authorities, rights, events, provenance, value records, attestations, trust policies, resolution and settlement bridges in one fabric.

Economic exchange

Venues, rights instruments, listings, disclosures, order books, call auctions, RFQs, trades, clearing, entitlements, usage and payment attestations.

Economic participation

Treasuries, originator participation policies, reserves, contractual participation, service revenue, economic obligations and verified settlement records.

Market recovery

Provider-independent logical snapshots of market, entitlement and participation state with semantic hashes and controlled restore.

Verifiable reality

Evidence objects, typed claim states, external anchors and causal economic graphs that keep attribution, evidence and truth claims separate.

Privacy & retention

Purpose-bound grants, use caps, expiry, revocation, selective disclosure, retention schedules, legal holds and evidenced destruction.

Sovereign domains

Entity-owned domains, signed node authority, service manifests, provider migration, resolution, presence, recovery and revocation.

Federated & offline operation

Core, regional, edge, satellite and offline topology; signed partition checkpoints, vector clocks, bounded offline envelopes and fail-closed conflicts.

Passports & adoption

Rights passports and global passports that bind existing authority, rights, evidence, jurisdiction, custody, provenance and economic context without replacing them.

Operations & qualification

Backup, migration, recovery, scale, telemetry, transaction evidence, updates, release gates, clean-room kits, conformance and qualification tooling.

Governed information + deterministic state + bounded intelligence

BTDU, ADAM and NIKI have different jobs by design.

ENTITY — authority

Identity, authority, rights, evidence and economics. ENTITY determines the governed relationships and the evidence required to rely on them.

ADAM — state

Deterministic transformation and replay. ADAM is the atom/bond state engine that applies and recovers governed transitions.

BTDU — information

Governed information topology. BTDU binds exact content, atoms, bonds, derivations, indexes, repository state and economic relationships under ENTITY authority.

NIKI — reasoning

Causal intelligence inside explicit boundaries. NIKI receives bounded projections and approved causal models; it does not manufacture permission, ownership or settlement.

Measured BTDU engineering results

Compact representation without giving up exact recovery.

97.14% lower in the reproduced Level-3 benchmark

The fresh 2026-10-01 run generated 250 million bonds for 50 million entities. The compact bond-plus-index representation was 4.4 GB versus 153.6 GB for the tested 768-dimension float32 vector baseline: 97.1354167% lower. All 1,000 sampled lookups were correct and the regenerated artifact hashes matched the historical qualification.

100% exact recovery in the qualified destruction test

The fresh 2026-10-01 Memnox rerun reconstructed the accepted source archive, manifest and acceptance receipt from sealed ADAM/BTDU state. All 865 of 865 tracked Git blobs matched with zero missing, extra or mismatched paths; Git, GitHub, network and the source clone were not used.

INGEST → GOVERNED BTDU STATE → ORIGINAL WORKSPACE REMOVED FROM THE RECOVERY PATH → COLD RECOVERY → EXACT HASH / BLOB VERIFICATION

Claim boundary: 97.1354167% is the measured result of the specified Level-3 comparison against a 768-dimension float32 vector baseline, not a universal compression guarantee. 100% recovery describes the qualified 865-blob corpus and evidence path, not every conceivable damaged system.

Open recorded tests
Data as productive capital

ENTITY separates information from the economic rights surrounding it.

The implementation explicitly rejects the idea that copied bytes must be artificially scarce. Economic scarcity can instead exist in bounded rights, entitlements, capacity, duration, jurisdiction, usage quantity, derivation, participation and transferability.

DCO → INSTRUMENT → LISTING → DISCLOSURE → ORDER / RFQ / AUCTION → PRICE DISCOVERY → TRADE → CLEARING → SETTLEMENT → ENTITLEMENT → USAGE → DERIVED OUTPUT → ECONOMIC CONSEQUENCE

Rights-based instruments

The Exchange Protocol supports spot licences, subscriptions, compute-to-data, procurement, contribution instruments and secondary licences.

Multiple market mechanisms

Order-book, call-auction and RFQ execution models are implemented alongside signed listings, orders, quotes, cancellations, surveillance and entitlements.

Evidence before settlement claims

Payment attestations and authorized settlement verifiers are separate from a trade record. Technical acceptance, an obligation and actual settlement remain distinct states.

Economic participation without a token

ENTITY can represent participation and revenue without imposing a protocol tax or cryptocurrency.

Contractual participation

Originator and treasury profiles can record validly established reserve units, primary participation, secondary royalty terms, derivative participation and service revenue. Terms must exist legitimately; provenance does not create them retroactively.

Service economy

The participation layer recognizes listing, execution, clearing, settlement, market data, certification, managed infrastructure, API and index-licence services, with separate obligations and settlement evidence.

Economic boundary: ENTITY can record value states and economically relevant evidence, but an asserted amount is not automatically market value, accounting fair value, legal entitlement or settled cash.
Verifiable reality

ENTITY does not make reality indisputable. It makes claims attributable, contestable and evidence-bound.

UNKNOWNOBSERVEDASSERTEDINFERREDATTESTEDEXTERNALLY VERIFIEDADJUDICATEDDISPUTEDREVOKED

Evidence is typed

Evidence can include sensor observations, documents, registry records, lab results, payment records, images, API responses, certificates and court records.

External anchors are explicit

Government registries, sensor networks, bank settlement, labs, supply-chain systems, corporate registries, courts and certificate authorities can be referenced without becoming automatic ENTITY authority.

Causal economic lineage

Source data can be traced through rights, licences, usage, derived assets, products, transactions, revenue, settlement and contributors using an evidence-bound acyclic graph.

Truth boundary: a valid signature proves attribution and integrity; it does not automatically prove objective truth. Protocol verification, trust-policy satisfaction and external evidence remain distinct from factual certainty.
Privacy, custody and jurisdiction

Control follows the governed object instead of being silently delegated to the storage provider.

Purpose-bound access

Controllers can issue signed grants for specific purposes and actions with expiry, use caps and revocation. Every authorized use can bind its own evidence hash.

Selective retention

Retention policy supports payload deletion, source redaction, external-copy destruction and legal holds while preserving evidence commitments.

Provider-neutral custody

ENTITY locators support AWS S3, Azure Blob, Google Cloud Storage, Snowflake, Databricks, PostgreSQL, SQL Server, local filesystems and HTTP APIs without treating custody as authority.

Jurisdiction overlays

Versioned jurisdiction and domain profiles can allow, require or prohibit actions with precedence, effective dates, supersession, conflict detection and fail-closed evaluation. They are policy evidence, not legal determinations.

Sovereign networking and continuity

ENTITY is designed to continue when networks partition and providers change.

Entity-owned domains

Domains bind names, authorized nodes, service manifests, scopes, access classes, revocations and provider migrations to the Entity root rather than to a hosting vendor.

Federated nodes

Commissioned nodes publish signed domains and services and can establish encrypted direct sessions. Network participation requires owner commissioning; the network itself does not become sovereign authority.

Offline and partitioned operation

Core, regional, edge, satellite and offline nodes can publish signed causal checkpoints. Vector clocks identify converged, dominant or conflicting state; divergent concurrent state is not silently resolved by last-writer-wins.

Cryptographic agility

Crypto suites can be versioned through governed activation, deprecation and retirement, including dual-sign transition windows and explicit downgrade resistance.

Portable passports and interoperability

Authority, rights and evidence can travel without pretending every external standard means the same thing.

Rights passports

Signed immutable versions bind rights, authority references, jurisdiction, semantics, custody, provenance, disclosure, privacy profiles, economic terms and legal classification around an existing ENTITY object.

Global passports

A single portable envelope can compose rights passports, profile stacks, evidence, provenance, jurisdiction, standards mappings, economic state, industry context, protocol origin and BTDU bindings.

Standards adapters

Explicit adapters cover ODRL, W3C Verifiable Credentials, DID, Gaia-X and IDS. Repository requirements also define scoped interoperability with C2PA and standard SBOM formats. Mapping is evidence—not silent semantic equivalence or certification.

Industry implementation packages

The same core semantics are packaged for very different operating environments.

Healthcare

Clinical datasets, documents, models and medical devices with HL7 FHIR and DICOM mappings and restricted/purpose-bound privacy defaults.

Finance

Financial instruments, trades, settlement records and market data with ISO 20022, FIX and LEI mappings.

Manufacturing

Machines, digital twins, firmware, telemetry and maintenance records with OPC-UA and Asset Administration Shell mappings.

AI

Training data, corpora, models, weights, evaluations, agents and outputs with SPDX, CycloneDX and NIST AI RMF mappings.

Robotics

Robots, controllers, models, software, telemetry and action records with ROS 2 and Open-RMF mappings.

Public defence context

Public/unclassified assets, data, software and custody records with originator-control mappings; the package explicitly prohibits classified-material ingestion.

These packages configure ENTITY semantics for industry use. They do not themselves constitute regulatory compliance, legal approval or certification.

SDK and adoption surface

ENTITY is intended to be consumed as infrastructure, not rebuilt by every application team.

The repository carries Android, Apple, Web and Windows SDK surfaces, open/reference SDKs, ecosystem and global-passport SDKs, principal binding, schemas and reference clients. The adoption facade exposes rights passports, authorization, exchange actions, settlement, positions and market data while preserving the authority of the underlying components.

WINDOWSWEBAPPLEANDROIDOPEN SDKREFERENCE CLIENTSGLOBAL PASSPORT SDKPRINCIPAL BINDING
Real-world proof path

The system is being exercised against work outside BTG's own repositories.

Vector and Memnox are public examples where BTG-authored fixes were reviewed and accepted by unrelated upstream projects, then captured through ENTITY lineage and recovery evidence. AWS #934 / PR #935 is a separate active case and remains below upstream acceptance until maintainer-controlled review and CI gates complete.

EXTERNAL PROBLEM → BTG CHANGE → EXACT LINEAGE → PUBLIC PR → INDEPENDENT REVIEW / CI → UPSTREAM ACCEPTANCE → ENTITY EVIDENCE → BTDU RECOVERY → ECONOMIC CONSEQUENCE WHEN EVIDENCED
Open the live contribution ledger
Engineering evidence

The implementation is surrounded by release, conformance, recovery and scale tooling.

Current v3.4.3 self-qualification

The v3.4.3 release manifest records 279/279 full-source tests passing and 76/76 tests passing for the issue-28 remediation module. BTDU remains component version 3.4.2 unchanged in that remediation.

Broader qualification surface

The repository contains clean-room kit builders, conformance campaigns, crypto/privacy qualification, scale and soak qualification, market-scale checks, recursive-closure qualification, global-passport verification, polyglot verification and industry-package verification.

Evidence boundary: BTG-controlled tests and clean-room baselines are engineering evidence, not unrelated third-party certification. Independent external interoperability, security review, institutional adoption and commercial settlement remain separate evidence classes.
What ENTITY deliberately refuses to collapse

The boundaries are part of the architecture.

Not a cryptocurrency

No token is required. The economic participation profile explicitly defines zero protocol tax and derives value from rights, contractual terms and services.

Not merely a blockchain

The architecture is about authority, rights, events, evidence and recoverable state; a particular ledger technology is not the definition of ENTITY.

Not an AI authority

NIKI and other AI agents can act only inside authority granted elsewhere. Model inference does not mint rights, ownership or settlement.

Not a truth oracle

Evidence and cryptographic verification make claims attributable and testable, not automatically true.

Not provider ownership

Cloud, database, custody and topology providers do not become the owner or sovereign authority merely because they host bytes or services.

Not automatic legal or market value

Provenance does not manufacture ownership, a licence does not imply every right, and an asserted amount does not become fair value or settled money without its own evidence.

Canonical origin and open infrastructure

Origin is preserved without turning provenance into ownership.

Shawn Blackmore → Blackmore Technology Group Limited → ENTITY

Canonical lineage

The canonical-status layer preserves ENTITY's origin and BTG stewardship. Removing or replacing that lineage changes canonical status; it does not grant BTG ownership of third-party assets, data or source code.

Open source

The core repository is public under Apache-2.0 so developers and organizations can inspect, test, reproduce, fork and independently implement published protocol material.

ENTITY source repository →
Current public runtime line

ENTITY v3.4.3 / BTDU 3.4.2

ENTITY v3.4.3 is the current public runtime line. Its bounded remediation did not change the BTDU implementation, which remains 3.4.2. Historical releases, hashes, receipts and qualification artifacts remain preserved rather than being silently rewritten.

Current releaseTechnology architectureEvidenceBuild with ENTITY