Skip to main content

Repository layout

Trust boundaries

  1. The model returns a proposal; it cannot directly call contracts or exchanges.
  2. Policy code constrains actions and target notional.
  3. Vault writes require the authorized onchain keeper.
  4. Exchange writes require explicit trading enablement and venue checks.
  5. Operator endpoints require X-Molq-Operator-Key.
  6. Decision evidence is committed to the logger and indexed independently.