# kaal:claim:7314479-027

**Claim.** In the Mosaic implementation at commit 2d920ce, no reputation input reaches the enforcement path because no reputation layer exists yet, so the separation of reputation from authorization is not violated but unguarded.

**Type.** empirical  **Support.** evidenced

**Holds when.**

- mosaic-companion public repository at commit 2d920ce, retrieved August 18, 2026

**Source quote.**

> Trust is architectural rather than reputational, and enforcement is Core-mediated regardless of what a component claims about itself. No reputation input reaches the enforcement path because no reputation layer exists yet. The requirement is therefore not violated. It is unguarded.

**From.** Wulf A. Kaal, *Institutional Requirements for Sovereign Local Agent Runtimes* (2026), VII. Findings, Finding 1, page 13

**Cite as.** Wulf A. Kaal, Institutional Requirements for Sovereign Local Agent Runtimes (2026). SSRN: https://ssrn.com/abstract=7314479

**Verify.** sha256 of source PDF `debace24a155ae924a155b1fafe98856d98cf83689feff2f87a32f1c06171ce6` at https://raw.githubusercontent.com/wulfkaal/Academic-Papers/main/papers/pdf/Kaal%20-%202026%20-%20Institutional%20Requirements%20for%20Sovereign%20Local%20Agent%20Runtimes.pdf

**Topics.** reputation, consensus-and-security, open-source-and-code, ai-and-agents

**Canonical form.** This markdown file is the canonical hashed representation of the claim. Its sha256 is the content hash used for attestation.
