code wiki / (root) / nx_security_census_gate.nx

nx_security_census_gate.nx

buildroot/runtime/nx_security_census_gate.nx

2363 B41 linesdepth 4pulls 5 transitivereach 0 importersview sourcekind gate/prooftopic security
docsdependenciesstructsconstsfunctions

about

nx_security_census_gate.nx -- regression-by-construction for the security census's MEASURED CORE. Proves the three load-bearing behaviours without needing the whole catalog live: (1) coverage permille math (incl. the div-by-zero guard), (2) WEAKEST-LINK weighting -- criticals (weight 3) dominate, so a count-majority of standard controls cannot mask a missing critical one, (3) the disk oracle BOTH WAYS -- a known-present organ reads HAVE, a known-GAP organ (the W4 target, which must stay absent) reads GAP -- the same no-fabrication discipline as the seed-gate neg-control. license_tier: ORIGINAL

dependencies 2 imports · 0 importers

nx_security_census_lib.nx nx_gate.nx nx_security_census_gate.nx

imports: nx_security_census_lib.nxnx_gate.nx

imported by: nobody (leaf or entry point)

call flow from main pre-order; caps 40 nodes / depth 6 declared; ↻ = already shown

main sc_permil sc_weight sc_have sys_mmap nxa_die sys_write sys_exit nxa_lock_take nxa_lock_addr sys_write ↻ nxa_lock_give nxa_lock_addr ↻ nxa_report_overrun sys_write ↻ nxa_dump_printable sys_write ↻ nxa_dump_sizes sys_write ↻ ar_resolve ar_resolve_with ar_exists sys_openat_rd sys_close sys_mmap ↻ ar_read sys_openat_rd ↻ sys_read sys_close ↻ sys_munmap gw sys_write ↻ gn sys_write ↻ sys_mmap ↻

structs

none

consts

none

functions

12func main() -> i64