Memory Commons

← Documents

Provenance & Century-Scale Integrity — Research Round 4

Memory Commons reference library · 6 July 2026 · adversarially verified (107 agents, 23 surviving claims — all in the prioritized provenance section; 2 refuted). Raw findings: 2026-07-06-provenance-integrity-round4-findings.json. Sections B (governance precedents), C (funding numbers), D (survey remainder) produced no verified claims and carry to round 5 — treat as unresearched, not negative.

The headline

Every relevant standards body treats century-scale signature validity as an active maintenance process, not a one-time signing act. The IETF, ETSI, and Germany’s BSI all standardize the same renewal-based model. This independently validates the Memory Commons design premise: cryptography only has to survive between renewals — and the etched Merkle root is the passive fallback no standard can offer.

What the standards actually say (all primary sources)

Post-quantum timeline (the signing plan’s clock)

The newer trust primitives, deflated

Design implications for Memory Commons

  1. Adopt the renewal calendar as a governance artifact: each release gets an RFC 3161 timestamp at cut; timestamp renewal before algorithm/cert events; hash-tree renewal budgeted for hash migrations (cost scales with corpus size — an argument for a lean, tiered corpus).
  2. Sign classical now, plan the PQC re-anchor before 2035 — SLH-DSA preferred for anything meant to verify decades out.
  3. Keep the etched root as the terminal trust anchor. The standards model assumes a living custodian; the plates are what remain when there isn’t one. The two are complements, and we now have primary-source backing for both halves.
  4. Optionally add OpenTimestamps anchoring per release — zero cost, keyless, explicitly supplementary.

Refuted this round (do not reuse)

Security note

One source page (an IACR ePrint) contained an embedded prompt-injection attempt aimed at automated readers; verifiers flagged and disregarded it. Worth remembering as an operational hazard of automated research pipelines.

Open for round 5

Ostrom principles & archive-governance failure cases; Wikimedia/Internet Archive/Software Heritage/Long Now budgets and Hachette fallout; verified Celestis/LifeShip/CLPS/hosted-payload/qualification pricing; survey remainder (Voyager, Pioneer, LAGEOS, KEO, MoonArk, Lunar Codex, Sanctuary); C2PA adoption reality; whether any archive has executed a full hash-tree renewal at scale and what it cost; PQC arrival in the TSA/LTV chain itself.