Provider-independent recovery of the economic state
ENTITY does not treat an exchange database as the authority. The market-recovery layer exports a canonical logical snapshot of the economic fabric, binds it to identity/attestation evidence and can restore it into a clean compatible destination while preserving semantic hashes and authority boundaries.
Exchange state included in recovery
Market structure
venues, instruments, balances, listings, disclosures.
Execution state
orders, trades, rfqs, quotes, rfq_acceptances, order_cancellations.
Post-trade state
clearing, entitlements, usage, authorized settlement_verifiers and payment_attestations.
Economic allocation state
revenue_rules, revenue_rule_sets, trade_revenue_bindings, surveillance state and optional revenue events.
Economic participation state included in recovery
This second state set preserves issuer/originator participation separately from the exchange itself. It allows economic participation terms and obligations to remain connected to the rights instruments and market events they depend on.
Recovery model
| Control | Purpose |
|---|---|
| Canonical logical rows | Recover semantics instead of treating SQLite/database bytes as sovereign authority. |
| Semantic SHA-256 per table | Detect altered logical state independent of storage-file layout. |
| Identity manifests | Carry the public identity material required to verify signed market/economic records. |
| Controller attestations | Bind the recovery package to explicit ENTITY actors instead of a storage provider. |
| Clean-destination restore | Avoid silently merging stale/foreign state into recovered authoritative state. |
| Required-table enforcement | Fail closed when a required economic subsystem is absent instead of restoring a partial market as complete. |
What a recoverable market means
A venue operator can disappear without automatically becoming the owner of participant rights. A cloud account can be lost without redefining instrument issuance. A new runtime can restore balances, open/closed execution history, entitlements, revenue bindings and settlement evidence while verification remains tied to ENTITY identities and signatures.