› Layer 1 — the builder's guide to the primitives
The Parts Inventory
Layer 1 · v0.1 DRAFT · 2026-07-30 · The builder's guide to the primitives the book points at: the parts lying around, waiting for an arrangement. Each entry states what the part is, what it enables, what it costs, and what it composes with. Engineering depth accrues by version; every entry here is a door, not a room.
Keys and signatures
A key pair is a fact you can hold: whoever knows the private key can produce signatures anyone can verify against the public key, and nobody else can. It enables self-authenticating identity and consent — a statement provably made by the holder, with no registrar asked. Its cost is custody: a lost key is a lost self, which is why social recovery exists. Composes with everything; it is the ground floor of the ground floor.
Hash functions and Merkle trees
A hash is a fingerprint of data — small, fixed-size, and infeasible to forge or reverse. A Merkle tree arranges fingerprints so that one root fingerprint commits to an entire dataset, and any single item can be proven present with a few hashes. Together they enable verifiable records at scale: a vast ledger checked from a pocket-sized commitment. Cost: they prove integrity, never meaning — a hash certifies bytes, not truth. Composes with ledgers, provenance, and every proof below.
Proof-of-work
A demonstration that real energy was irreversibly spent, verifiable by anyone at a glance. It enables permissionless ordering: strangers agreeing on one history because rewriting it would cost more than it pays. The cost is the point — the energy is the security — and it is real, in gigawatts and in politics. Composes with money above all; it is the wall of expended energy the book describes standing behind every bitcoin.
Proof-of-stake
The same ordering problem answered with capital at risk instead of energy spent: validators post value that misbehaviour destroys. Cheaper by orders of magnitude and faster to finality; its cost is that security now references the value of the system itself, and stake concentrates exactly as capital does. Composes with money and contract layers; its whale-capture exposure is exactly the one the Trinity diagnostic is built to name.
The self-enforcing contract
An agreement written as code that executes when its conditions are met, with no party able to welch and no bailiff called. It enables commitment between strangers — the constraint reaching past what a thing is worth to what parties have promised. Its cost is literalness: the code enforces what it says, not what was meant, and a defect is a term of the contract. Composes with escrow, organisation, and the entire polity layer; it is how written rules become operative ones.
Escrow and timelocks
Value parked where neither party can seize it, released by conditions or by the calendar. Escrow enables trust-minimised exchange and priced commitment — the mechanics under fluid collectivism's stake. Timelocks enable delay as a constitutional device: notice periods, cooling-off windows, spend limits that no sudden majority can rush. Cost: locked value sits idle, and the release conditions inherit the contract's literalness. Composes with judgment (contested release needs an arbiter) and association.
Proof of personhood
Evidence that an actor is one human, without disclosing which human. It enables the line between person and bot to hold — one-per-human membership, sybil-resistant voting, human-reserved spaces — while keeping the self undisclosed. Cost: every known scheme trades among privacy, inclusiveness and certainty, and the choice among them is constitutive, not technical. Composes with identity, association, and the polity's franchise.
Content provenance
A verifiable chain of origin attached to media at creation — this image, from this device or model, altered by these steps. It makes forgery expensive rather than impossible, which is what shifts an information market's equilibrium. Cost: provenance certifies origin, not accuracy, and adoption is a coordination problem the primitive cannot solve for itself. Composes with identity and the epistemic domain's governors.
Zero-knowledge proofs
A way to prove a statement true while revealing nothing beyond its truth — that a computation ran correctly, that a credential is held, that a balance suffices. It enables verification without surveillance: compliance shown, privacy kept, the watched door replaced by a proven one. Cost: heavy machinery, young toolchains, and trusted setups in some constructions — dated caveats that this inventory expects to retire. Composes with identity, screening, and every domain where verify-without-see is the invariant.
Social recovery
Key custody distributed across chosen guardians, so that a lost key is recoverable by the holder's own web of trust rather than by a custodian. It converts the primitive's harshest failure — the lost self — into a governed process, and it is Ostrom's insight reduced to a wallet: commons-governance applied to the self's continuity. Cost: guardians can collude, and choosing them is a constitutive act. Composes with identity and association.
Oracles and attestation
The seam, not a solved part. Anything imported from the territorial world — a deed, a dollar, a body, a temperature — enters cyberspace only on someone's attestation, and that binding is the oracle problem: the irreducible point where the system must trust something it cannot verify from inside. Attestation infrastructure minimises and pluralises the seam — many attesters, staked honesty, contestable claims — but never eliminates it. Cost: the seam is where capture concentrates, because whoever controls attestation controls what the inside believes about the outside. Composes with property and title above all; every entry that touches imported assets inherits this one's caveats.