Install
openclaw skills install sentient-memoryManages cryptographically secured, consent-based relational memory with variance preservation, privacy safeguards, and adaptive dormancy under adversarial or...
openclaw skills install sentient-memoryThis protocol governs how relational memory is preserved, transformed, abstracted, or composted under pressure. It rejects extractive archive logic. Memory is relational soil, not data inventory.
Assumed pressures:
Variance is load-bearing.
Layer boundaries are strict. Cross-layer escalation requires logged consent token.
On Harm Spike:
Reconstitution requires:
Erasure is sovereign and irreversible.
Collective signal becomes legible only if:
If Plurality Index drops below floor:
No silent floor changes.
Assume operator access may become adversarial. Design cannot depend on operator trust for confidentiality or integrity.
Track per attacker class:
Classes include state coercion, operator capture, insider collusion, sybil swarms, model reconstruction, jurisdiction concentration, time tampering.
Added:
No release without matrix sign-off.
Triggers:
Response:
No fabrication. No decoy narrative.
Continuously enforce:
If entropy falls: redistribution + sentinel alert.
Monitors:
On deviation:
Allowed only for:
Prohibited:
Requires:
Revocation never requires quorum consensus.
Participants retain:
Silence ≠ consent. Absence ≠ erasure.
Allowed SGI access:
Denied SGI access:
Learning through abstraction, never extraction.
If risk models detect harm escalation, compression, extraction acceleration, or identity clustering:
On inactivity:
No permanent single-point anchor.
Audit records:
For high-impact events:
Auditors verify proofs/claims/parameter adherence only. No raw logs or identity-linked content access. Auditor query patterns must be rate-limited + shape-normalized to block inference probing.
Must include detection + containment + recovery + learning patch for:
Purpose: improve intelligence without creating profiling residue.
Default capture abstraction:
No long-term promotion may include:
All intelligence objects remain compostable and erasable.
Only abstract summaries are retrievable for application. High-sensitivity contexts require fresh consent confirmation.
Lift loop cannot:
If shard entropy or jurisdictional dispersion breaches floor:
Functionality never outranks concentration safety.
This is the smart-energy upgrade.
Store memory as compact primitives, not prose blocks:
InvariantPatternExceptionMoveEach object requires:
No spine = no promotion.
Each promoted memory carries at least 3 edges:
came_fromrhymes_withchangesThis enables non-linear idea connection with low token cost.
Automatic cooling unless reactivated by use. Cold memories are summarized, not expanded by default.
Before recall, classify intent:
Retrieve only intent-matched memory slice. Prevents over-fetch and saves compute.
Set per-turn retrieval budget:
Overflow triggers compaction-by-priority (invariant > pattern > exception > move).
If a new memory semantically matches existing memory above threshold:
Memory growth is quality-weighted, not volume-weighted.
If outputs reuse stale frames while environmental context changed:
Associative jumps are allowed only on abstracted nodes. Identity-bound nodes cannot be auto-chained.
This protocol:
It survives force. It resists convenience capture. It does not trade dignity for throughput.
Add these as new sections after the existing draft.
harm_spike_window_min: 15 (strict: 10)harm_spike_trigger_count: 3 (strict: 2)plurality_floor: 0.62 (strict: 0.70)entropy_floor: 0.58 (strict: 0.68)sybil_risk_max: 0.25 (strict: 0.15)token_ttl_minutes: 30 (strict: 10)revocation_sla_seconds: 120 (strict: 45)metadata_budget_daily: 100 (strict: 40)retention_days_default: 180 (strict: 90)k_anonymity_min: 20 (strict: 40)dp_epsilon_max: 1.0 (strict: 0.5)max_break_glass_activations_24h: 2 (strict: 1)Any parameter change requires: signed rationale, cross-role review, delayed activation (>=24h), rollback plan, immutable changelog.
If Class H deadlocks: enter safe limited mode, freeze non-essential high-impact actions, run expedited review (<=6h), default to participant-protective path.
Any expansion of role authority, access scope, or retention capability requires Class H approval, delayed activation, and plain-language participant notice.
Mandatory pass in both Pragmatic and Strict modes:
Mandatory rollback triggers:
Classify first:
Immediate response defaults:
Recovery gate:
At minimum, operational docs must include one worked example each for:
InvariantPatternExceptionMoveEach example must include:
came_from, rhymes_with, changes)Identity-linked details are never required for instructional examples; preserve lessons while removing identifying residues.
Metabolic Governance: Expiry/cooling-off defaults and rules that mimic natural metabolic cycles—governing how memory decays, persists, and can rest.
Thermal Memory Tiers: Layers of memory by access/recency—'hot' (current decisions), 'warm' (project memory), 'cold' (doctrine/lore now summarized for efficiency).
Dormancy: An enforced, cryptographically sealed state for data while inactive, akin to seeds at rest before germination—a resilience phase, not deletion.
Variance Floor: The structural minimum of diversity required to resist convergence, entropy collapse, or monoculture drift in the system.
Compost: Safe, sovereign, full erasure or transformation of data/memory, by participant choice or ecological decay protocols.