What works today

Counted from the tree, not written from memory. A hand-maintained status page ages in the flattering direction — something gets marked working when its tests pass and nothing ever moves it back — so every number here is read out of a document that is maintained for another reason.

The short version

No hardware procedure has a recorded run, and that is the most important line on this page. Everything marked 🧪 below is code that compiles, passes its codec tests, and has never met an antenna — a template to confirm against your own hardware, not a claim that it works.

Nor has anything had an independent review. Every fault on record was found by the same people who wrote the thing, which is a real method with a known blind spot: it finds what its authors thought to look for.

What you can actually do right now

Bridges, by what has actually been proved

✅ Implemented and tested

🧪 Implemented, never run on the hardware it is for

The codec is tested off-device; the radio, the tap, the live peer is not. Treat each as a template to confirm against your own hardware — the repeatable procedure is in Hardware verification.

Several paths, unequally proved

One name, more than one route, and not all of them tested. The full status line is reproduced rather than reduced to its best marker.

🟡 Partly built

Some of the path exists and some does not. Each row says which half.

⚪ Planned, not written

Testing, per component

Of 12 components: 8 fuzzed, 4 property-tested, 3 exercised by a hardware procedure, 0 independently reviewed. The per-component table, including what an attacker controls in each case, is the security maturity matrix.

Where the numbers come from