{
  "schemaVersion": "gships-review-packet-1",
  "packetId": "leadership:cyber-knowledge-resilience",
  "stableId": "cyber-knowledge-resilience",
  "family": "leadership",
  "slug": "cyber-knowledge-resilience",
  "title": "Cyber and knowledge resilience",
  "status": "prepared-human-review-not-started",
  "release": {
    "releaseId": "public-alpha-2026-07-26-research-visuals-r14",
    "sourceCommit": "3eb036fce3d711336c8c605625895e8a2e799ab0",
    "corpusGeneratedAt": "2026-07-25",
    "frozenAt": "2026-07-26T22:50:50.000Z",
    "canonicalOrigin": "https://gships.dammonburden.com"
  },
  "paths": {
    "human": "/review/leadership/cyber-knowledge-resilience",
    "family": "/review/leadership",
    "packet": "/review-packets/leadership/cyber-knowledge-resilience.dc32310410cbb3c4.json",
    "decisionTemplate": "/review-packets/leadership/cyber-knowledge-resilience.dc32310410cbb3c4.decision-template.json",
    "worksheet": "/review-packets/leadership/cyber-knowledge-resilience.dc32310410cbb3c4.worksheet.md",
    "byFingerprint": "/review-packets/by-fingerprint/dc32310410cbb3c4c2427686d2eb32c2e22a83f22baa5f315a23e7d36a6a66b3.json"
  },
  "boundary": "Prepared review packet; human review has not started. This packet is not a completed review, endorsement, reviewer appointment, partnership, or authorization to act.",
  "governingPolicies": [
    {
      "id": "policy-editorial-governance-001",
      "version": "0.1.0",
      "path": "/editorial-policy",
      "recordType": "governing-policy",
      "fingerprint": "1f6a1f823e8bfe891b6a707c5dce2ee2337c0bb7d915b48d6060ca82b8da1b47",
      "snapshot": {
        "id": "policy-editorial-governance-001",
        "version": "0.1.0",
        "status": "foundation-policy-controls-not-yet-staffed",
        "adoptedForFoundation": "2026-07-25",
        "title": "Editorial governance and independent review",
        "publisher": "GShips Project",
        "maintainer": "Dammon Burden",
        "publisherInterest": "The maintainer intends to explore a commercial venture based on some GShips work. No entity, outside funding, customer, sponsor, or indexed-organization relationship currently exists.",
        "currentBoundary": "No independent domain reviewer or review council is currently appointed. Foundation records and outlines may not be represented as independently reviewed.",
        "reviewerSelection": [
          "Publish the reviewer’s name, relevant credentials or lived expertise, review scope, compensation status, and declared conflicts with consent.",
          "Select for the actual claim domain rather than general prestige; include affected-community and disability-led expertise where rights or access are involved.",
          "Do not treat an employee, investor, customer, sponsor, source author, or directly supervised collaborator as independent for the affected claim."
        ],
        "reviewProcess": [
          "Provide the exact claim, sources, locators, assumptions, counterevidence, transfer limits, and proposed evidence dimensions.",
          "Record approve, revise, contest, or reject at claim level; silence and event attendance never count as review.",
          "Publish material minority findings and the editor’s reasoned response.",
          "High-consequence medical, reproductive, nuclear, radiation, cybersecurity, governance, and dual-use claims require two qualified independent reviewers with complementary scopes.",
          "A reviewer may recuse at any time; unresolved conflicts or missing expertise block the reviewed label."
        ],
        "appealAndCorrection": [
          "A correction receives a reference identifier and triage record; safety-critical allegations receive priority.",
          "A material editorial decision may be appealed to a reviewer not involved in the original decision once such a panel exists.",
          "Substantive reversals, unresolved disputes, and removed conclusions receive a dated public record that protects reporter privacy.",
          "No sponsor, customer, founder, or reviewer may purchase, suppress, or unilaterally assign an evidence grade."
        ],
        "publicationGate": "Public 1.0 requires named review coverage across every Academy track, documented high-consequence two-person review, a material-corrections log, reviewer conflict records, and an operating appeal path.",
        "correctionPath": "/corrections"
      }
    },
    {
      "id": "policy-dual-use-001",
      "version": "0.1.0",
      "path": "/dual-use",
      "recordType": "governing-policy",
      "fingerprint": "81637e2849f9c0866d23f7174eb9a2ce522b86313167ebf5022fca122d6e506c",
      "snapshot": {
        "id": "policy-dual-use-001",
        "version": "0.1.0",
        "status": "planned-controls-not-yet-operational",
        "adoptedForFoundation": "2026-07-25",
        "title": "Civil, defensive, and rights-preserving use boundary",
        "summary": "GShips may research safety, resilience, logistics, communications, recovery, and cyber defense only within explicit end-use, rights, and independent-review controls. Calling an activity defensive is never sufficient by itself.",
        "scopeTrigger": "Apply dual-use review before accepting or materially advancing customer, funder, collaborator, operational, procurement, or publication-sensitive work whose capability, data, end use, or transfer could reasonably enable a prohibited use. Public non-actionable education still follows prohibited-content and sensitive-publication controls.",
        "allowedInPrinciple": [
          "Safety engineering and independently assessed protection",
          "Resilience, graceful degradation, recovery, and disaster response",
          "Civil logistics, maintenance, communications, and knowledge continuity",
          "Cyber defense, secure software, incident response, and recovery",
          "Rights-preserving health, accessibility, ecology, education, and governance research"
        ],
        "prohibited": [
          "Identification, tracking, prioritization, or engagement of people or assets for force, weapons, repression, or offensive operations; safety navigation, astronomy, collision avoidance, search and rescue, and independently governed planetary defense are not prohibited by this clause",
          "Weapons command-and-control or targeting support",
          "Offensive access, persistence, exploitation, or destructive cyber payloads",
          "Mass surveillance, biometric repression, or political-control systems",
          "Autonomous force application",
          "Coercive reproductive, medical, genetic, disability, or civic control",
          "Nonconsensual experimentation or treating residents as research instruments"
        ],
        "reviewRequiredBeforeAnyRelevantWork": [
          "Customer, funder, collaborator, jurisdiction, beneficial-owner, and end-use screening",
          "Export-control and sanctions review by qualified counsel when applicable",
          "Written scope, allowed-use, prohibited-use, audit, termination, and incident clauses",
          "Independent stop-work authority with a named alternate and founder recusal",
          "Sensitive-publication and information-hazard review",
          "Whistleblowing, escalation, incident response, appeal, and anti-retaliation paths",
          "Aggregate transparency reporting that protects legitimate privacy and security"
        ],
        "currentBoundary": "No screening body, independent stop-work authority, contractual controls, or appeal body currently exists. Therefore no relevant customer, defense, dual-use, or operational engagement is authorized by this policy.",
        "changeControl": "Material changes require a dated public rationale, independent review, and may not be approved by the founder alone.",
        "correctionPath": "/corrections"
      }
    }
  ],
  "reviewContract": {
    "questions": [
      {
        "id": "question-1",
        "text": "Does the pathway reward evidence-bearing service, transferable authority, dissent, access, and stop-work competence rather than status?",
        "required": true
      },
      {
        "id": "question-2",
        "text": "Are prerequisites, entry routes, first artifacts, and decision boundaries specific without pretending to assess a person?",
        "required": true
      },
      {
        "id": "question-3",
        "text": "Does the diagnostic remain transparent, local, non-sensitive, accessible, and incapable of creating a qualification or eligibility judgment?",
        "required": true
      }
    ],
    "exclusions": [
      "No pathway or diagnostic result qualifies, ranks, appoints, licenses, recruits, or authorizes a person.",
      "Lived expertise, formal credentials, operational authority, and technical qualification are not treated as interchangeable."
    ],
    "requestedScopeCodes": [
      "accessibility-disability-justice",
      "affected-public-rights",
      "human-factors",
      "institution-building"
    ],
    "dispositions": [
      "approve",
      "revise",
      "contest",
      "reject",
      "recuse"
    ],
    "prohibitedInputs": [
      "private legal names or contact details",
      "identity documents or raw credential files",
      "accessibility or medical records",
      "confidential conflict evidence",
      "classified, export-controlled, proprietary, or exploit material"
    ],
    "freshness": {
      "maximumDecisionAgeFromFreezeDays": 90,
      "eventOccurrenceRule": "Not applicable to this packet family."
    },
    "completionRule": "Every primary record must receive the required number of valid, current-fingerprint approvals; every complementary scope group and required domain must be covered; any unresolved revise, contest, or reject disposition blocks publication.",
    "highConsequenceRule": "Named medical, reproductive, nuclear, radiation, cybersecurity, governance, and dual-use conclusions require two distinct qualified independent humans covering complementary domain-method and rights/public-interest scopes."
  },
  "primaryRecords": [
    {
      "recordType": "leadership-pathway",
      "recordId": "cyber-knowledge-resilience",
      "title": "Cyber and knowledge resilience",
      "publicPath": "/leadership/pathways/cyber-knowledge-resilience",
      "recordFingerprint": "17af74cc6e8adc16412253334e57b5b26cc40ae319234728103c6ab71463aa1a",
      "reviewRequirements": {
        "minimumIndependentApprovals": 1,
        "highConsequenceDomains": [],
        "requiredDomainCodes": [],
        "requiredComplementaryScopeGroups": [
          {
            "id": "bounded-competence",
            "scopeClass": "bounded-competence",
            "oneOf": [
              "accessibility-disability-justice",
              "affected-public-rights",
              "institution-building"
            ]
          }
        ],
        "unresolvedNegativeFindingBlocksPublication": true
      },
      "referenceIds": [],
      "snapshot": {
        "id": "cyber-knowledge-resilience",
        "slug": "cyber-knowledge-resilience",
        "title": "Cyber and knowledge resilience",
        "summary": "Preserve trustworthy software, procedures, archives, keys, and recovery while excluding offensive use and life-critical AI authority.",
        "taskIds": [
          "disconnected-cyber-recovery"
        ],
        "systemSlugs": [
          "ai-autonomy",
          "cybersecurity",
          "communications-navigation"
        ],
        "entryRoutes": [
          {
            "audience": "curious",
            "firstAction": "Verify whether one critical procedure remains usable offline and without an LLM.",
            "evidenceOfProgress": "A documented gap or reproducible offline copy with provenance."
          },
          {
            "audience": "student",
            "firstAction": "Threat-model a synthetic disconnected habitat using only civil and defensive scenarios.",
            "evidenceOfProgress": "A bounded model with prohibited paths and recovery objectives."
          },
          {
            "audience": "practitioner",
            "firstAction": "Rehearse restore, revocation, and anti-rollback against a synthetic incident.",
            "evidenceOfProgress": "Recovery evidence reviewed independently from implementation."
          }
        ],
        "prerequisiteBoundary": "Defensive security, safety, OT, software assurance, archival practice, and operations are relevant; offensive capability is out of scope.",
        "firstArtifact": "A bounded threat model and rehearsed recovery record.",
        "decisionBoundary": "Independent cyber stop-work; no offensive scope and no generative model with direct authority.",
        "lessonHrefs": [
          "/academy/cyber-resilience/incident-without-earth",
          "/academy/ai-knowledge/knowledge-ark"
        ]
      }
    }
  ],
  "linkedRecords": [
    {
      "recordType": "ecosystem-task",
      "recordId": "disconnected-cyber-recovery",
      "title": "Disconnected cyber recovery",
      "publicPath": "/partners/tasks/disconnected-cyber-recovery",
      "recordFingerprint": "61f1d0643ce61c0454ee0edf1aee4169766c17e3738c3235d813e5191ac3cb18"
    },
    {
      "recordType": "academy-lesson",
      "recordId": "lesson-10-04",
      "title": "The Knowledge Ark",
      "publicPath": "/academy/ai-knowledge/knowledge-ark",
      "recordFingerprint": "4abe11a303b566782a022d6858d08026b74b05ae18d900b134463758d0086d65"
    },
    {
      "recordType": "academy-lesson",
      "recordId": "lesson-11-05",
      "title": "Incident response without Earth",
      "publicPath": "/academy/cyber-resilience/incident-without-earth",
      "recordFingerprint": "8a0a9a1abea9615e0c99dd325a1008609a1e820cf53ff53dcee8fd333adc06ea"
    }
  ],
  "referenceSnapshots": [],
  "packetFingerprint": "dc32310410cbb3c4c2427686d2eb32c2e22a83f22baa5f315a23e7d36a6a66b3"
}
