Four real demonstrations that stack into one system. Nothing here is a mockup: real signed containers, a real Bitcoin anchor, a real AI agent, and a real VM booting on hardware that shouldn't support it.
Deploy a signed container and watch it serve — in seconds, no Docker.
verify --signature-mode enforce: unsigned is rejectedProvenance you can verify yourself — anchored to Bitcoin, tamper-evident, offline.
Authorized browsing, compiled — turn any logged-in app into a typed API your AI agent can call.
Spin up a real VM and get a shell — on hardware with zero virtualization support.
/dev/kvm underneathThe four demos are one story. Follow the trust spine — signed → anchored → audited → isolated.
Park many, run few, verify everything.