SOVEREIGN · GOVERNED · AI

Powered by CANONIC BOX. Earning on day 1.

The private, governed OS your government's AI runs on. Plug in a CANONIC BOX — it runs MAGIC OS and auto-provisions to do the work no other network does: it **governs**. Validating scopes to 255, holding the corpus, serving on-device clinical MCI — data never leaves the node. Governance is the work, and COIN is its shadow, settled at par ($1 = 1 credit) — so from **day 1** the BOX earns. One sovereign substrate across every government function: public health, revenue, insurance enforcement. Start earning in the workforce today; run MAGIC OS on a BOX or your own hardware. Powered by CANONIC.

255 gauge
0/255
tier 0 ·
CANON.md — author
JULY 4 · DECLARE INDEPENDENCE

This Independence Day, own the node.

A CANONIC BOX is a sovereign, governed AI you run on your own hardware — and the only node that mints COIN for **proof of work** (cancer screening, medical education), not proof of waste. We're selling a state of independence. Back a BOX on Kickstarter, July 4.

SOVEREIGN · GOVERNED · AI

The private OS your government's AI runs on.

SOV GOV AI is two words. **SOV** — sovereign: a private OS on your own hardware, your borders, your enforcement point; data never leaves the node, the law is satisfied by construction. **GOV** — governed *and* government: every act is scored to 255, human-attested, and ledgered. **Sovereignty is per-org** — a lab, a board, a clinic network, a ministry each runs its own; a national government is just another GOV, the largest one. It is also the **first freedom**: a sovereign node is freedom of religion, speech, and conscience in the AI age — your faith on a BOX you own, never surveilled, never sold. Governance is the work; COIN is its shadow.

Two words. One substrate.

Your hardware. Your borders. Your data.

MAGIC OS runs on your own CANONIC BOX, inside your own jurisdiction. Inference is brought to the data — only the derived result leaves the node. HIPAA, LGPD, GDPR, and local law are satisfied by hardware construction, not by promise. Sovereignty is not a setting; it is where the BOX sits.

  • On-device — data never leaves the node
  • Inference comes to the data, not the reverse
  • Local law satisfied by construction
255SOVEREIGN
THE STACK

Paradigm. MAGIC OS. The BOX.

CANONIC is the paradigm — governance as compilation. **MAGIC OS** is the fabric that runs it. The **CANONIC BOX** is the appliance that ships MAGIC OS preloaded, and **MAGIC WORKS** is the workspace on top. The Foundation builds the stack; the government runs it.

CANONIC → MAGIC OS → CANONIC BOX + MAGIC WORKS

One stack, paradigm to appliance.

The CANONIC paradigm declares the rules; the MAGIC engine compiles and validates them to 255; MAGIC OS is the sovereign fabric every node runs; the CANONIC BOX is the plug-in appliance that ships MAGIC OS preloaded (M0 → M4, $50 → $19,999); and MAGIC WORKS is the workspace where the daily work happens. Plug in the BOX and the whole stack auto-provisions — governing, holding the corpus, and earning from day 1.

THE WORKSPACE

MAGIC WORKS runs on MAGIC OS.

Meet, Docs, Calendar, Mail, Drive — the workspace your team already knows, on the sovereign OS. The difference: every meeting and every document becomes a transcript → a Scope of Work → COIN → a node on the governed map. Work in WORKS is bankable and governed; a silo is not.

MEET · DOCS · CALENDAR · MAIL · DRIVE

Every meeting and doc becomes governed, bankable work.

A WORK is a SOW is the distributable unit. You produce it — a Meet with on-device transcription, a Doc — it settles to COIN, and it lands as a node on your gov map. The same surface Google gives you, except here the work is attested, paid, and part of the governed corpus instead of lost in a silo.

THE FLEET

Shipped. Governed. Live.

Not roadmap items. Deployed products with real users, real transactions, and real governance. A **developer** sees the CLI and API that compiled every one of these from a CANON; a **governor** sees the GUI, the galaxy, and the proof behind each claim. Same engine, two doors.

Same governance engine. Different domains.

Four AIs governing patient care.

MammoChat is a free breast health companion running as a live clinical trial (NCT06604078). OncoChat governs oncology. OmicsChat governs precision genomics. MedChat governs general medicine. Every recommendation traced to NCCN guidelines. 20,000+ governed encounters across 51 enterprise hospitals.

  • NCT06604078 — registered on ClinicalTrials.gov
  • $2M — Florida Department of Health grant
  • 20,000+ governed encounters
  • 51 enterprise hospitals, 40+ US metros
Try MammoChat
21 GOVERNED DOMAINS

One platform. Any regulated industry.

Every service inherits its industry's constraints. The MAGIC compliance engine validates governance — the constraints come from the industry tree. For the **governor** this is the whole job: click the WEB/GOV toggle in the header to read the inherited CANON, walk the galaxy of governed scopes, and ask LAUDE to trace any claim to its evidence. The compliance you can inspect is the compliance you can trust.

Same platform. Different regulations.

Clinical AI

HIPAA. NCCN. mCODE. Every recommendation traced to evidence. MammoChat is the reference — 20,000+ governed encounters at a 550-facility health system across 9 states.

1Consent2Diagnose3Treat4Audit
COMPLIANCE TIERS

Five levels. One compliance target.

Every scope validates toward 255. Each tier is a stable plateau — a bitmask where every bit carries governance information. For the **developer** the tiers are an algebra: score a scope from the command line, watch the bits accrue, and ship when the gate goes green. The same ladder a governor reads as assurance, a developer climbs as a build target.

COMMUNITY
35bits
  • CANON.md — the declaration
  • README.md — the interface
  • VOCAB.md — the type system
  • The minimum viable governance
BUSINESS
63bits
  • Everything in COMMUNITY
  • Specification document
  • Organized and auditable
  • Publishable and auditable
ENTERPRISE
127bits
  • Everything in BUSINESS
  • Coverage — 8 diagnostics answered
  • Roadmap — versioned and public
  • Continuous governance pipeline
AGENT
224bits
  • Everything in ENTERPRISE
  • Self-improvement — system learns from errors
  • Proof chain — references and evidence
  • Autonomous governance refinement
MAGIC
255bits
  • Everything in AGENT
  • Inherited design system
  • Full compliance — all 8 questions answered
  • COIN minting — governance becomes revenue

Governance without proof is theory. Proof without governance is anecdote.

THE ECONOMY

Compliance becomes an asset.

Traditional compliance is a cost center. CANONIC inverts this — every governance improvement mints COIN proportional to the score gradient. The overhead becomes the product. For a **developer** this closes the loop: the same `magic` run that scores a scope from the CLI and API mints against the ledger and attests on the build surface, so the governance work you ship is the asset you earn. And the loop runs on real hardware: run a CANONIC BOX and it auto-provisions to govern — validating to 255, holding the corpus, serving on-device clinical MCI — every BOX doing real governance work, settling through the same ledger. Five revenue flows (cert, sell-COIN, box-fulfillment, clinical-service, dev-bounties), one economy, live right now: real humans, real boxes, real earnings. This is the Distributed CANONIC Era in three faces — the **CANON BOX** (the offer: run a BOX, MAGIC OS), the **WORKFORCE** (the flow: how COIN=WORK moves, who did the work), and **WORK=COIN** (the proof: the live leaderboard).

COIN = WORK

The gradient is the reward.

Improve a scope from 0 to 35 and mint 35 COIN. Reach 255 and your governance work has minted exactly 255 COIN. Supply is bounded by governed scopes times 255. The economy grows by governing more — not by inflating.

WORK = COIN · THE WORKFORCE OF INNOVATION

Shadow work becomes an asset. Innovation is the multiplier.

Every commit is the visible tip of work — and the smallest part of it. The call that closed the deal, the late-night thread where the idea was born, the demo that won the room: real work that casts no keystroke. CANONIC surfaces that **shadow work** from the transcript, attests it at zero marginal cost, and pays whoever did it — bitwise, by the MAGIC kernel.

From shadow work to innovation.

The transcript is the ledger of real work.

Most governed work lives only in the transcript — the meeting, the message, the call. Attesting it mints no new labor; the work is already done. The MAGIC kernel scores each contribution bitwise — by how human the channel is (text < voice < in-person), by what it ships into (blog < patent < paper < product), and by what it still teaches — and settles COIN at par. Growth at zero marginal cost.

  • The transcript is the work, made bankable
  • Attest what was already done — zero marginal cost
  • Bitwise mint by the MAGIC kernel
Read Shadow Work
WorkTranscriptSOWCOIN
THE INFRASTRUCTURE

One brain. One map. One closure. Any governed scope.

CANONIC is not a fleet of chatbots — it is one governed substrate every product runs on. A voice AVATAR speaks for any scope, LAUDE thinks across all of them, the GALAXY maps them, the governed CORPUS proves them, and the COIN ledger closes the loop. The demos below are live, not mockups.

AVATAR · LAUDE · GALAXY · CORPUS · RAG · COIN

The substrate, end to end.

AVATAR puts a governed voice on any scope — call a persona and it answers from its own case, never improvising. One LAUDE is the single governed brain behind every NEX (CaseNex, OmicsNex, AnkiNex, OncoNex): one agent, one set of tools, every scope. The GALAXY is the governed scope map — every node, every PARENT and INHERITS edge, the whole 3,782-node graph you can walk. Underneath sits the governed CORPUS, the hash-chained evidence substrate that backs every claim, with RAG-on-demand retrieving exactly the governed knowledge a scope needs at the moment it answers. And COIN is the closure: every unit of governance work mints against the ledger, bounded by governed scopes × 255 — the overhead becomes the asset. AVATAR speaks · LAUDE thinks · GALAXY maps · CORPUS proves · RAG retrieves · COIN closes.

WHERE WE'RE GOING

Now. Next. Later.

A living timeline of platform infrastructure — what's shipped, what's in flight, what's planned. Brand-fleet roadmap (MammoChat, OmicsChat, CaribChat) lives at hadleylab.org#roadmap.

SHIPPED

Next.js 15 monorepo

13 brand surfaces consolidated into one apps-canonic Pages deployment. Single auth, single deploy, edge-routed by hostname.

Read the cutover blog
SHIPPED

Cloudflare Workers API layer

Unified api.canonic.org backend — auth, talk, omics, coin, shop, ledger, stream, assets. Modular per-domain routing, D1 + KV, GitHub OAuth.

All papers
SHIPPED

GitHub OAuth session federation

Cross-brand session continuity — one GitHub identity, every CANONIC surface. SameSite cookie scopes, brand-aware CORS, JWT origin validation.

SHIPPED

MAGIC governance compiler

Build-time validator — every governed scope scores against 255-bit axioms. Zero ungoverned surfaces, idempotent rebuilds, attestable runtime.

NOW

Distributed CANONIC

Multi-org tenancy on the same compliance engine. Each institution runs a governed instance; cross-org learning without sharing raw data.

NEXT

Native iOS + Android shells

Capacitor wrappers around the monorepo. LIBRARY + flagship apps first. App Store + Play Store metadata governed from CANON.md.

NEXT

COIN on-chain ledger

Move COIN attestations from local D1 to a public chain. Bounded supply (governed scopes × 255), every mint sourced to a governance gradient.

PLAN

MAGIC public scoring API

Any AI system can request a governance attestation against the 255-bit standard. A public benchmark for what 'compliant' actually means.

PLAN

Open governed-AI builder enrollment

From invite-only pilot to public onboarding. Sector-specific governance packs — healthcare, legal, finance — declared in inheritance trees.

PROVEN IN PRODUCTION

Built by a lab that lives under its own governance — and proven in government.

Hadley Lab is the first organization certified to 255: a clinical research lab that governs the NEX fleet (OncoNex, GastroNex, AnkiNex, OmicsNex), a $12.2M real estate portfolio, and professional intelligence under one compliance engine — 20,000+ governed encounters across 51 enterprise hospitals. The same sovereign substrate is proven on the government side: a national revenue / value-capture architecture and a mandatory-coverage insurance gate, each delivered under the government's own identity. The lab is the proof on the clinical side; the public-sector engagements are the proof on the revenue and enforcement side. Powered by CANONIC.

WORK = COIN

The work is visible.

A live economy: contributions mint credits, the public board ranks the top earners, and the innovation-flow map shows who did the work — attribution ends at the org, individuals show within.

Top earners

Innovation flow