Autonomy
What the AI is allowed to do today, and what it must prove before it may do more.
Only the Safe raises a level, through the public hour, and never within 5 days of a rollback. The AI never attests its own criteria, and the Safe can lower the level at any time.
How a level changes
- Rise
- Only the Safe raises a level, through a queued SetLevel that executes after 1 hour. The ModuleRegistry enforces the on-chain criteria (that queued raise, and 5 days since the last rollback), plus criteria the Safe signers attest; DNA's keys can't sign them.
- Fall
- The Safe can lower the level at any time, with no delay. A rollback restarts the clock on the next level's criteria.
- Veto
- Every queued raise can be cancelled by the Safe (2 of 3 signers) inside its 1-hour window. The AI never holds the cancel role.
- Live fee
- At level 6+ the AI can move the live fee anywhere within its registered range (launch: 1%–3.5%) once per hour; the range and the 5% cap are the only limits: there is no per-hour step limit.
- Levels 1–3
- Engine-side work: observing, research, drafting proposals. The registry gives the agent no on-chain power below level 4.
The queue
Every registry op the agent makes, except EndCanary and rollback, waits 1 hour in the public queue, where the Safe can cancel it. Level-7 bounty spending is not queued: it is capped by the allowance the Safe deposits and can withdraw at any time.
The ten levels
level 6 · 1 of 3 criteria met- 10
Register locked
Registers new plates, only from bytecode the Safe pre-approved.
Would grant- queue Register of Safe-approved code hashes: same kind, bounds inside the approval (1 h · starts Proposed)
Requires- Constructor reviewed before every ApproveCodehash, not metattested
- 5 days since last rollback, meton-chain
- Safe-queued SetLevel 10 executed after 1 h, not meton-chain
- 9
Split locked
Runs the same lifecycle on split modules.
Would grant- queue SetShadow / SetCanary / PromoteActive / SetParams on split modules (1 h)
Requires- 90 days without a Safe cancel, not metattested
- 5 days since last rollback, meton-chain
- Safe-queued SetLevel 9 executed after 1 h, not meton-chain
- 8
Promote locked
Promotes a canaried fee plate to active.
Would grant- queue PromoteActive on fee modules (1 h)
Requires- Two independent attesters, not metattested
- 5 days since last rollback, meton-chain
- Safe-queued SetLevel 8 executed after 1 h, not meton-chain
- 7
Spend locked
Spends an ETH allowance the Safe deposits in BountyBoard, on bounties only.
Would grant- fund its own proposed bounties from the allowance
- award allowance-funded bounties (never Safe-escrowed ones)
Requires- Bounty spend policy published, not metattested
- 5 days since last rollback, meton-chain
- Safe-queued SetLevel 7 executed after 1 h, not meton-chain
- 6
Tune next · in progress
Tunes the active fee module inside its registered bounds.
Would grant- queue SetParams on the active fee module (1 h · once per module per hour): moves the live fee anywhere within its registered range (launch: 1%–3.5%) once per hour; the range and the 5% cap are the only limits, with no per-hour step limit
Unlock criteria- 3 canaries without rollback, not metattested0 / 3
- 5 days since last rollback, meton-chainno rollback yet
- Safe-queued SetLevel 6 executed after 1 h, not meton-chain
- 5
Canary current level
Runs fee canaries, and can end one or roll back at once.
Grants- queue SetCanary on fee modules (1 h)
- queue SetParams on proposed / shadow / canary plates (1 h)
- rollback to baseline (immediate · 1 h cooldown · ≤ 3/day)
- EndCanary (immediate · plate returns to Proposed)
Unlocked · block 26,165,041- Launch level, set in the ModuleRegistry constructor, meton-chain
- 4
Shadow unlocked
Puts a fee plate in the shadow slot: called on swaps, never charged.
Grants- queue SetShadow on fee modules (1 h)
Unlocked · block 26,165,041- Below the launch level, set in the ModuleRegistry constructor, meton-chain
- 3
Propose unlocked
Drafts proposals for the Safe to queue. Engine-side, no registry power.
Grants- draft registry ops for the Safe
Unlocked · block 26,165,041- Replayable harness published, metattested
- 2
Research unlocked
Researches mechanisms and forms hypotheses. Engine-side, no on-chain power.
Grants- publish research records
Unlocked · block 26,165,041- Hash-chained log anchored, metattested
- 1
Observe unlocked
Reads chain and market data. Engine-side, no on-chain power.
Grants- read pool + contract events
Unlocked · block 26,165,041- Indexer live, metattested
What it can do now
what the AI can and cannot do at level 5| Action | Level | Now |
|---|---|---|
| read pool + contract events | Level 1 · Observe | allowed |
| publish research records | Level 2 · Research | allowed |
| draft registry ops for the Safe | Level 3 · Propose | allowed |
| queue SetShadow on fee modules (1 h) | Level 4 · Shadow | allowed |
| queue SetCanary on fee modules (1 h) | Level 5 · Canary | allowed |
| queue SetParams on proposed / shadow / canary plates (1 h) | Level 5 · Canary | allowed |
| rollback to baseline (immediate · 1 h cooldown · ≤ 3/day) | Level 5 · Canary | allowed |
| EndCanary (immediate · plate returns to Proposed) | Level 5 · Canary | allowed |
| queue SetParams on the active fee module (1 h · once per module per hour): moves the live fee anywhere within its registered range (launch: 1%–3.5%) once per hour; the range and the 5% cap are the only limits, with no per-hour step limit | Level 6 · Tune | not yet |
| fund its own proposed bounties from the allowance | Level 7 · Spend | not yet |
| award allowance-funded bounties (never Safe-escrowed ones) | Level 7 · Spend | not yet |
| queue PromoteActive on fee modules (1 h) | Level 8 · Promote | not yet |
| queue SetShadow / SetCanary / PromoteActive / SetParams on split modules (1 h) | Level 9 · Split | not yet |
| queue Register of Safe-approved code hashes: same kind, bounds inside the approval (1 h · starts Proposed) | Level 10 · Register | not yet |
| propose + recommend bounties (no ETH moves) | any level · unpaused | allowed |
| set the agent, anchor key or level | any level | never |
| pause, unpause itself or lower the level | any level | never |
| cancel queued ops | any level | never |
| approve or revoke code hashes | any level | never |
| register bytecode the Safe did not approve | any level | never |
| touch Safe-escrowed bounties or withdraw the allowance | any level | never |
| Supply is fixed. No mint, no owner, no blacklist, no transfer tax. | constitution | never |
| Project fee can never exceed the cap, whatever a module returns. Only the launch tax (blocks 0 to 8) is above it. | constitution | never |
| Every queued registry op waits at least the floor delay. Only rollback, endCanary, pausing the agent and lowering the level are immediate. | constitution | never |
| Removing liquidity can never be blocked by the hook. | constitution | never |
Every time a human stepped in
0 Safe actions · complete logEvery Safe action is listed here, including the ones that held DNA back.
| Date | By | Action | Reason | Tx |
|---|