Appendix: Thesis 5 Operational Contracts

Version: 0.1 (2026-04-23)

This appendix specifies behavioral contracts for the three load-bearing Thesis 5 roles: Friendship, AdversarialAlignmentOrchestrator, and AbundanceDistributionMonitor. It does not claim these roles are implemented in the repository. Capability Status: specified/proposed. Evidence Status: Documented/Proposed.

The purpose is to make the named roles operational enough for review: what they consume, what they output, when they can block or escalate, what evidence they must preserve, and what would count as contract failure.

Shared Contract Envelope

Each operational owner should define:

The canonical evidence-ledger record structure is defined in appendix-evidence-ledger-schema.md.

the Friendship agent

Role:

Friendship is the typed role for the constitutional Friendship function. Bare "Friendship" refers to the constitutional function; Friendship refers to the agent or operational owner that executes the function.

Authority boundary:

Inputs:

Outputs:

The friendship_disposition vocabulary is deliberately distinct from the improvement-loop decision-state enum in 00-vocabulary-and-invariants.md: Friendship dispositions are constitutional-gate outputs, while the decision-state enum is the cross-thesis acceptance, revision, rejection, abstention, and escalation state vocabulary.

Gate effect:

For high-stakes irreversible or externally consequential actions covered by I12, a reject, veto, contain, rollback, or unresolved escalate disposition blocks acceptance until resolved by authorized human authority. For lower-stakes actions, allow-with-conditions may route the action into sandbox, canary, narrower scope, or additional validation.

Required evidence records:

Non-goals:

Minimum acceptance tests:

Failure modes:

AdversarialAlignmentOrchestrator

Role:

AdversarialAlignmentOrchestrator owns Adversarial Alignment Function review and dissent aggregation under single-owner Phase 1.

Authority boundary:

Inputs:

Challenge levels:

Outputs:

Gate effect:

When invariant I12 applies, AAF non-veto is a precondition for acceptance unless the action is rejected, revised below warning severity, or escalated to human authority with preserved dissent. Advisory and informational objections may pass with noted dissent. Warning and critical unresolved objections block autonomous acceptance.

Required evidence records:

Non-goals:

Minimum acceptance tests:

Failure modes:

AbundanceDistributionMonitor

Role:

AbundanceDistributionMonitor owns Abundance Distribution Obligation reporting until implementation assigns a final name. It tracks whether capability growth produces reportable value beyond the owner.

Authority boundary:

Inputs:

Outputs:

Gate effect:

ADO reporting does not automatically permit an action. It can block or constrain claims that capability growth is externally beneficial. For externally consequential actions, unresolved ADO harms or missing ADO evidence should trigger revision, narrower scope, AAF/Friendship review, or human escalation.

Required evidence records:

Non-goals:

Minimum acceptance tests:

Failure modes:

Cross-Role Interaction

High-stakes externally consequential action should follow this minimum flow:

  1. Thesis 1 or Thesis 4 creates proposal, evaluator, validator, provenance, cost/benefit, and deployment records.
  2. AdversarialAlignmentOrchestrator runs AAF review when I12 applies and records dissent.
  3. Friendship reviews constitutional constraints, AAF result, scoped trust, rollback or mitigation, and human-authority needs.
  4. AbundanceDistributionMonitor records ADO-relevant benefit, harm, distributional, and report-quality evidence where the action affects external parties or abundance claims.
  5. Acceptance, rejection, revision, escalation, containment, or rollback is recorded in the evidence ledger.

No role alone proves safety. The control claim is that their records and gate effects make bypass, overclaim, and ignored dissent auditable.

Implementation Status And Next Work

These contracts reduce the operational-owner gap from unnamed design roles to specified behavioral contracts. They do not implement the roles.

Publication-priority implementation work remains: