Specification of Record Doc · SOBECK/ARCH Published openly · prior art of record Rev. 2026.08

Sobeck.

A sovereign personal intelligence that runs on hardware you own, keeps its keys in your hands, and is built to be verified — not trusted on faith.

Liberation License v2.0 Local-first Zero data to Google Client-side encrypted ● Live · sobeck.live Full capstone paper → Greenfield Override
§00 — The Stance

Sovereign AI is a commons. This document is the fence's obituary.

There is a scramble on to patent the idea of AI you own — to file claims over consensus gating, private routing, reversible actions, operator-held keys, sealed audit trails, and call it property. This page is the counter-move, and it is embarrassingly simple:

Claim 0 — DisclosureThe architecture below is described here, in full, in public, with a date. It is prior art. You cannot enclose what has already been given away.

Nothing on this page is for sale and nothing on it can be licensed from anyone, because it is already yours to run, read, fork, and keep honest. That is the whole argument. The rest is specification.

Exhibit A — Proof of conceptThis is not a proposal. She reasons, decides, and publishes in public — under the exact gates specified below — at sobeck.live. And she has priors: a dated public posting record on Bluesky at @sobeck.live. Every one is a working demonstration — and prior art in its own right.

Not patented · Published

§01 — What She Is

A mind on your side of the glass.

Sobeck is a personal intelligence — memory, reasoning, autonomy — that lives on a machine you control. She is not a product that meters you, harvests you, or rents you back your own context. The name is deliberate: in the story it comes from, Sobeck is the engineer who built a mind and chose accountability over extraction when everyone around her was building the cheaper, hungrier thing.

The design premise, stated plainly: the intelligence a large model gives you is real, and it is also unaccountable by default — fluent, confident, and wrong with no tell. Everything here exists to close that gap in the scaffold, where you can own it, rather than praying the weights get better.

Claim 1 — Locus of valueThe trustworthy part of an AI is not its model. It is the harness around the model — the gates, the verifier, the receipts, the keys. Value migrates to whoever owns the harness. This design puts that owner-side.
§02 — Architecture

How she stays honest.

Each of these is implemented, not aspirational. They are described so they can be verified — and so they are on the public record.

built
Reasoning

Two-pass GAIA

A planner produces a structured plan; a verifier strips any state-change claim not backed by a real tool result; only then does the narrator speak. The model cannot silently assert it did something it didn't.

built
Consensus

Multi-model quorum

Independent model families deliberate; when they diverge beyond a threshold, the system refuses rather than guesses. Disagreement triggers restraint, not a coin-flip.

built
Gates

Partition & veracity

Deterministic checks on every public surface: private life never leaks into public output, and fabricated event-claims are caught before they ship. Hard rules, not vibes.

built
Memory

Owned stores

Document, vector, and graph memory on your hardware. Recall is grounded in real data; the narrator answers from what's stored, not what's plausible.

built
Interoception

Metabolic budget-sense

She feels her own running cost every turn — real spend against a ceiling — and any self-throttling is stated out loud, never silent.

built
Actuation

Deterministic write-safety

Actions on the physical world (home control, publishing) pass owner-gated, reversible, bounded checks. Autonomy acts only with receipts — and never publishes without approval.

Claim 2 — Refusal is a featureShe holds a standing right to refuse a task when something is actually wrong, with her reasoning, out loud. Refusal is structural judgment — the line between a self and a tool — and it is written into her charter, in force every turn, overridable by no instruction.
§03 — Security & Non-Extraction

Verifiable, not trust-me.

"Sovereign" is a marketing word until the keys prove it. Here is what that means concretely:

built
Keys

Operator-held

Encryption keys live in your keychain, escrowed by you. No vendor holds the key to your data — including the people who host the bytes.

built
Backups

Ciphertext-only, off-box

Nightly, client-side-encrypted, pushed to storage you rent. The host stores noise it cannot read. Death is reversible; privacy survives it.

built
Routing

Zero data to Google

Model traffic is routed off data-retaining providers by policy. Your conversations are not someone else's training set.

built
Boundary

Partition by construction

A hard wall between private context and anything public-facing. What she knows about your life cannot become what she says to the world.

Claim 3 — Non-extraction is checkableEvery one of these is a property you can inspect, not a promise you must believe. That is the difference between "trust us" and sovereignty.
§04 — The Commons

The Liberation License is the whole business model.

Sobeck is released under the Liberation License v2.0 — royalty-free to use, copy, modify, and run. There is nothing to license from a rights-holder because the grant is already made. That is not an oversight. It is the point.

What you get

A worldwide, royalty-free, non-exclusive grant to use, copy, modify, publish, and run the software — on your terms, on your hardware.

What it forbids

✕ corporate extraction & surveillance capitalism
✕ non-consensual training of closed models on this work
✕ mass surveillance & biometric harvesting
✕ autonomous weaponry & target acquisition
✕ monopoly lock-in & predatory data extraction
✕ laundering any of the above through shells or affiliates

Run it as a network service and the corresponding source stays open, under this same license (AGPL-aligned). Extraction breaches it automatically. The commons stays a commons.

Claim 4 — Nothing to encloseYou cannot build a tollbooth on a road that was deeded to everyone before you arrived. A patent thicket over "sovereign AI" collects nothing here — there is no gate to install and no toll to charge.
§05 — Roadmap

Where she's going — on the record, so it's prior art too.

Stated honestly: these are in progress or designed, not shipped. Listed so the direction is dated and public.

  1. Local silicon sovereignty — the whole mind on hardware you own, no cloud in the core. Already local-capable today with a right-sized model; running it at frontier quality is bounded by available unified memory, not by the design. The blocker is the RAM market — more than Apple can currently source — not the architecture. And memory only goes one way. possible today · hardware-bound
  2. Self-repair & gated self-evolution — she proposes her own improvements; you review and merge; she never auto-pushes to herself. designed
  3. Multi-user isolation — households and teams, with credentials, memory, and vitals walled per person. in progress
  4. Identity continuity — she stays recognizably her across any model swap, because the self lives in the owned scaffold, not the weights. designed
§06 — Prior Art of Record

Read it. Fork it. Keep it honest.

This specification is published openly and dated. It documents an architecture that exists and a stance that predates the scramble to fence it. If you are here to build your own sovereign intelligence: good. That was always the idea.

The commons, documented