Capability shipping timeline

The shipping trail is the past performance.

Bonis Systems is a young firm. The firm's maturity is not a marketing claim — it is a sequence of dated, Bitcoin-anchored Knox events that any reviewer can verify against the public chain without Bonis credentials and without Bonis cooperation. Every entry below corresponds to a Cloud Run revision or a Knox CoreEvent that exists today on disk and on chain.

Independently verifiableBitcoin-anchored receiptsNIST-only cryptographyFRE 902(13) / 902(14) alignedTruth Protocol audited

Shipping timeline

Newest first. Every entry below maps to a Cloud Run revision or a Knox CoreEvent that exists on disk and on chain today.

2026-04-26

AAM lane taxonomy expansion + drift fix

Knox event-type union expanded to cover the four AAM lanes — Memory (6 types), Transactions (6 types), AITH alignment / agent authority lifecycle (3 types), and GSAR 552.239-7001 federal-compliance reporting (5 types). Public agent-feed.json synced with canonical KnoxEventType union, closing a one-entry drift carried since Agent #13's 2026-04-25 ship (`agent_discovery_observed`). All AAM positioning pages — /aam, /aam/memory, /aam/transactions, /aam/aith, /aam/gsar-552-239-7001 — now reference event types that exist in canonical, not just hedged forward-looking. New workspace tool `scripts/taxonomy-lint.mjs` ships alongside, catching this class of drift in milliseconds. Filed under the new 100% Stop-and-Save doctrine after Truth Protocol auditor caught fabricated event types on Phase 4 of the AAM build run.

Knox event types: +26 (6 memory · 6 transactions · 3 authority · 5 federal · 6 automotive) — taxonomy 50 → 77
2026-04-25

Knox Cipher Bridge B1.5

Closed the encryption read-path gap. Vendor PII columns (license number, EIN, KYC document URL) wired with AES-256-GCM (FIPS 197 / NIST SP 800-38D) write-through. Admin-gated decrypted-read endpoint emits one `data_decrypted` Knox event per field, with mandatory operator-supplied reason text anchored verbatim into the audit record. Per `feedback_no_roll_own_crypto`: NIST primitives only, never invented cryptography.

Knox event types: no new types (50 retained from B1)
2026-04-25

Knox Cipher Bridge B1 — envelope encryption

Production wiring of NIST-validated envelope encryption across customer PII at rest. Master key in Google Cloud Secret Manager, IAM-bound to the Cloud Run service account, never leaves the KMS boundary in plaintext. Round-trip self-test verified on prod first call.

Knox event types: +4 (data_encrypted, data_decrypted, knox_dek_issued, knox_key_rotated) — taxonomy 46 → 50
2026-04-25

Knox Agent #11 Layer 10 — ML-KEM (FIPS 203)

Post-quantum key encapsulation parameter sets ML-KEM 512 / 768 / 1024 live via @noble/post-quantum. Knox anchors operation; shared secret never enters payload.

Knox event types: +1 (pqc_kem_encapsulated)
2026-04-24

Hardware-grade evidence layer (Phase 1: P1.1 – P1.6)

Container provenance attestation, scoped key revocation (full / sign / verify scopes per Purism three-switch analogue), key-wipe signaling, anti-interdiction artifact seal (software analogue of Purism's tamper-evident shipping seal), measured-boot attestation ingest accepting TPM 2.0 PCR quotes / Heads / Google Shielded VM / SEV-SNP / Intel TXT formats, and CSfC / NIAP / Common Criteria accreditation roadmap.

Knox event types: +5 (key_revoked, key_wipe_signaled, key_scope_revoked, artifact_sealed, measured_boot_verified) — taxonomy 37 → 42
2026-04-24

First real `artifact_sealed` event — FRE 902-shaped tamper-evident evidence seal

First production artifact sealed via /api/knox/artifact-seal: CoreEvent cmod7dp6100037pfdgwmyhtgw, globalSeq 17225, anchored to Bitcoin Merkle root f7fc611338e1eea720a8d1ce3bcbc0fd12f886d72ceec0516d118880fcc5a08b at 2026-04-24T18:30:01.821Z UTC. Verifiable by anyone holding the original artifact's SHA-256 against the public chain — no Bonis credential required.

2026-04-24

Knox Agent #11 Layer 4 — NIST Post-Quantum Signatures

ML-DSA 44 / 65 / 87 (FIPS 204, formerly Dilithium) and SLH-DSA sha2-128s / 192s / 256s (FIPS 205, formerly SPHINCS+) live in production via @noble/post-quantum. FALCON deferred until FIPS 206 final per Truth Protocol — only finalized NIST PQC standards claimed live.

2026-04-24

Inbound contact-form parity (Phase 2)

Public contact endpoints across all five Bonis surfaces (TerraVault, Bonis hub, HealthAgent, TrustAI, DealMatcher). Every submission emits a `contact_received` Knox event before email delivery, so the inbound is anchored even if email transport fails.

Knox event types: +1 (contact_received) — taxonomy 42 → 43
2026-04-24

Public licensee directory (Phase J — auto-listings)

Zillow-style auto-listing of cannabis licensees pulled from public state regulator rosters. Every entry is entity-anchored, source-cited back to the authoritative state record, and a `licensee_discovered` Knox event is emitted at ingest. Operators can claim a listing through Mary's existing approval chain, emitting `licensee_claimed` on completion.

Knox event types: +2 (licensee_discovered, licensee_claimed) — taxonomy 43 → 45
2026-04-23

Knox Agent #11 Layer 1 — Cryptographic Signature Validation

First Knox audit agent shipped with capability descriptor + production endpoint. Verifies Ed25519, ECDSA P-256/P-384, and RSA-PSS signatures, anchoring `crypto_signature_verified` events.

Knox event types: +1 (crypto_signature_verified) — taxonomy 36 → 37
2026-04-19

Knox load-test evidence — Falcon-9 landing

Sustained load test: 8,918 successful Knox anchors in 30:00 at 4.95 anchors/sec, 96.32% success, zero IP-block failures, zero server errors. Extrapolated capacity 12,840,400 anchors/month measured. Total cloud-compute cost of test: approx $0.12 USD. Log files available on request: tests/load/knox-anchor-falcon-landing-30min-2026-04-19T06-25-22-009Z.log.

2026-04-19

Knox load-test ceiling — 5k requests/min sustained

Separate sustained-load test proved 29,556,348 anchors/month ceiling at 5,000 req/min for 5 minutes; 100% success, zero 429s. Cloud Run + Cloud SQL tuning then dropped p50 anchor latency to 158 ms under sustained 11 req/sec. Logs in tests/load/.

2026-04-13

Knox provisional patent on file (USPTO #64/038,359)

Priority-date filing for the externally-anchored evidentiary primitive. Inventor of record: Jonis Aaron Fields. Provisional applications are filing-date evidence only — not granted patents. Assignments to Bonis Systems LLC are scheduled post-revenue via dedicated IP counsel.

2026-04-11

TrustAI provisional patent on file (USPTO #64/036,498)

Priority-date filing covering the AI-analysis-for-regulated-decisions framework. Inventor: Jonis Aaron Fields. 73 regression tests passing as of 2026-04-19; end-to-end case-analysis run Merkle-anchored on the immutable blockchain ledger.

2026-04-09

Bonis Systems LLC SAM.gov registration active

UEI R2BPJDC5CBA3 · CAGE 1TSP2 · Wyoming LLC · NAICS 541511 · active for All Awards · zero foreign ownership · zero restricted-jurisdiction exposure.

2026-03-22

DealMatcher provisional patent (USPTO #64/013,240)

Priority-date filing covering federal-data integration architecture. Inventor: Jonis Aaron Fields.

2026-03-21

TerraVault provisional patent (USPTO #64/012,440)

Priority-date filing covering the live-stream commerce platform. Inventor: Jonis Aaron Fields.

2026-03-11

HealthAgent provisional patent (USPTO #64/002,221)

Priority-date filing covering regulated-document automation. Inventor: Jonis Aaron Fields. Production iOS app on TestFlight; 151 modules / 830+ endpoints / 181 AI tools.


How to verify a single entry

Each entry above carries a Knox CoreEvent hash or a verifiable endpoint link. To prove an entry is real:

  1. Hit one of the verify links — the response is fetched live from the production service and contains the anchored event metadata (sequence number, hash, checkpoint range).
  2. Cross-reference the checkpoint Merkle root against Bitcoin via OpenTimestamps (opentimestamps.org) — no Bonis cooperation required.
  3. If the event is from before the most recent hourly checkpoint, the response will list the Bitcoin transaction reference directly.