Skip to content
@genomedna on X
Lab

Autonomy

What the AI is allowed to do today, and what it must prove before it may do more.

Level
5 / 10
Canary · since block 26,165,041

Only the Safe raises a level, through the public hour, and never within 5 days of a rollback. The AI never attests its own criteria, and the Safe can lower the level at any time.

How a level changes

Rise
Only the Safe raises a level, through a queued SetLevel that executes after 1 hour. The ModuleRegistry enforces the on-chain criteria (that queued raise, and 5 days since the last rollback), plus criteria the Safe signers attest; DNA's keys can't sign them.
Fall
The Safe can lower the level at any time, with no delay. A rollback restarts the clock on the next level's criteria.
Veto
Every queued raise can be cancelled by the Safe (2 of 3 signers) inside its 1-hour window. The AI never holds the cancel role.
Live fee
At level 6+ the AI can move the live fee anywhere within its registered range (launch: 1%–3.5%) once per hour; the range and the 5% cap are the only limits: there is no per-hour step limit.
Levels 1–3
Engine-side work: observing, research, drafting proposals. The registry gives the agent no on-chain power below level 4.
The queue

Every registry op the agent makes, except EndCanary and rollback, waits 1 hour in the public queue, where the Safe can cancel it. Level-7 bounty spending is not queued: it is capped by the allowance the Safe deposits and can withdraw at any time.

The ten levels

level 6 · 1 of 3 criteria met
  1. 10

    Register locked

    Registers new plates, only from bytecode the Safe pre-approved.

    Would grant
    • queue Register of Safe-approved code hashes: same kind, bounds inside the approval (1 h · starts Proposed)
    Requires
    • Constructor reviewed before every ApproveCodehash, not metattested
    • 5 days since last rollback, meton-chain
    • Safe-queued SetLevel 10 executed after 1 h, not meton-chain
  2. 9

    Split locked

    Runs the same lifecycle on split modules.

    Would grant
    • queue SetShadow / SetCanary / PromoteActive / SetParams on split modules (1 h)
    Requires
    • 90 days without a Safe cancel, not metattested
    • 5 days since last rollback, meton-chain
    • Safe-queued SetLevel 9 executed after 1 h, not meton-chain
  3. 8

    Promote locked

    Promotes a canaried fee plate to active.

    Would grant
    • queue PromoteActive on fee modules (1 h)
    Requires
    • Two independent attesters, not metattested
    • 5 days since last rollback, meton-chain
    • Safe-queued SetLevel 8 executed after 1 h, not meton-chain
  4. 7

    Spend locked

    Spends an ETH allowance the Safe deposits in BountyBoard, on bounties only.

    Would grant
    • fund its own proposed bounties from the allowance
    • award allowance-funded bounties (never Safe-escrowed ones)
    Requires
    • Bounty spend policy published, not metattested
    • 5 days since last rollback, meton-chain
    • Safe-queued SetLevel 7 executed after 1 h, not meton-chain
  5. 6

    Tune next · in progress

    Tunes the active fee module inside its registered bounds.

    Would grant
    • queue SetParams on the active fee module (1 h · once per module per hour): moves the live fee anywhere within its registered range (launch: 1%–3.5%) once per hour; the range and the 5% cap are the only limits, with no per-hour step limit
    Unlock criteria
    • 3 canaries without rollback, not metattested0 / 3
    • 5 days since last rollback, meton-chainno rollback yet
    • Safe-queued SetLevel 6 executed after 1 h, not meton-chain
  6. 5

    Canary current level

    Runs fee canaries, and can end one or roll back at once.

    Grants
    • queue SetCanary on fee modules (1 h)
    • queue SetParams on proposed / shadow / canary plates (1 h)
    • rollback to baseline (immediate · 1 h cooldown · ≤ 3/day)
    • EndCanary (immediate · plate returns to Proposed)
    Unlocked · block 26,165,041
    • Launch level, set in the ModuleRegistry constructor, meton-chain
  7. 4

    Shadow unlocked

    Puts a fee plate in the shadow slot: called on swaps, never charged.

    Grants
    • queue SetShadow on fee modules (1 h)
    Unlocked · block 26,165,041
    • Below the launch level, set in the ModuleRegistry constructor, meton-chain
  8. 3

    Propose unlocked

    Drafts proposals for the Safe to queue. Engine-side, no registry power.

    Grants
    • draft registry ops for the Safe
    Unlocked · block 26,165,041
    • Replayable harness published, metattested
  9. 2

    Research unlocked

    Researches mechanisms and forms hypotheses. Engine-side, no on-chain power.

    Grants
    • publish research records
    Unlocked · block 26,165,041
    • Hash-chained log anchored, metattested
  10. 1

    Observe unlocked

    Reads chain and market data. Engine-side, no on-chain power.

    Grants
    • read pool + contract events
    Unlocked · block 26,165,041
    • Indexer live, metattested

What it can do now

what the AI can and cannot do at level 5
ActionLevelNow
read pool + contract eventsLevel 1 · Observeallowed
publish research recordsLevel 2 · Researchallowed
draft registry ops for the SafeLevel 3 · Proposeallowed
queue SetShadow on fee modules (1 h)Level 4 · Shadowallowed
queue SetCanary on fee modules (1 h)Level 5 · Canaryallowed
queue SetParams on proposed / shadow / canary plates (1 h)Level 5 · Canaryallowed
rollback to baseline (immediate · 1 h cooldown · ≤ 3/day)Level 5 · Canaryallowed
EndCanary (immediate · plate returns to Proposed)Level 5 · Canaryallowed
queue SetParams on the active fee module (1 h · once per module per hour): moves the live fee anywhere within its registered range (launch: 1%–3.5%) once per hour; the range and the 5% cap are the only limits, with no per-hour step limitLevel 6 · Tunenot yet
fund its own proposed bounties from the allowanceLevel 7 · Spendnot yet
award allowance-funded bounties (never Safe-escrowed ones)Level 7 · Spendnot yet
queue PromoteActive on fee modules (1 h)Level 8 · Promotenot yet
queue SetShadow / SetCanary / PromoteActive / SetParams on split modules (1 h)Level 9 · Splitnot yet
queue Register of Safe-approved code hashes: same kind, bounds inside the approval (1 h · starts Proposed)Level 10 · Registernot yet
propose + recommend bounties (no ETH moves)any level · unpausedallowed
set the agent, anchor key or levelany levelnever
pause, unpause itself or lower the levelany levelnever
cancel queued opsany levelnever
approve or revoke code hashesany levelnever
register bytecode the Safe did not approveany levelnever
touch Safe-escrowed bounties or withdraw the allowanceany levelnever
Supply is fixed. No mint, no owner, no blacklist, no transfer tax.constitutionnever
Project fee can never exceed the cap, whatever a module returns. Only the launch tax (blocks 0 to 8) is above it.constitutionnever
Every queued registry op waits at least the floor delay. Only rollback, endCanary, pausing the agent and lowering the level are immediate.constitutionnever
Removing liquidity can never be blocked by the hook.constitutionnever

Every time a human stepped in

0 Safe actions · complete log

Every Safe action is listed here, including the ones that held DNA back.

DateByActionReasonTx