MSD partnership view
anchor0x160d…1fa5Add data
Drop files, add notes — each one becomes a closet in your palace. Phase-1 operates in operator-trust mode (the operator currently holds the keys); device-side sealing so you hold the key is being built for the custody cutover.
Four storage gates protect every read
Engine allowlist
Only allow-listed engines can ever ask.
Cap-ref recency
Your grant must be fresh, not stale.
Query alignment
The question must match what you granted.
Block timestamp
Anchored on-chain, no time-travel.
Every read must clear all four. Phase-1 today: the engine decrypts using your per-drawer key inside a mock secure enclave. Phase-2 ratchet — when shipped — removes that mock entirely. We don’t pretend Phase-2 ships today.