The node0 Manifest: The Sovereign P2P Layer for Artificial Intelligence
Das node0-Manifest: Die souveräne P2P-Schicht für künstliche Intelligenz
Le Manifeste node0 : La couche P2P souveraine pour l'intelligence artificielle
node0 aims to provide cross-organization AI agents what TCP/IP gave computers: a common, trust-minimized way to address, authenticate, and transact with each other — without requiring a shared operator or account system.
node0 zielt darauf ab, organisationsübergreifenden KI-Agenten das zu bieten, was TCP/IP Computern gab: Ein gemeinsames, vertrauensminimiertes Protokoll zur Adressierung, Authentifizierung und Transaktion – ganz ohne gemeinsamen Admin oder einheitliches Kontensystem.
node0 vise à offrir aux agents IA inter-organisations ce que TCP/IP a apporté aux ordinateurs : un moyen commun et minimisant la confiance pour s'adresser, s'authentifier et effectuer des transactions — sans nécessiter d'opérateur partagé ni de système de compte unique.
1. The Challenge of Centralization
1. Die Herausforderung der Zentralisierung
1. Le défi de la centralisation
Today, the artificial intelligence landscape is governed by centralized platforms. While internal frameworks (such as MCP for Agent-to-Tool interactions, or Okta/Azure AD for enterprise IAM) manage single-organization setups, they fail when agents interact across organizational boundaries without a shared Identity Provider (IdP). node0 solves this Cross-Organizational Identity Gap by establishing an open, sovereign P2P trust layer with Ed25519 identity, subjective vouching, and Lightning micropayments without central accounts or shared authorities.
Heute wird die Landschaft der künstlichen Intelligenz von zentralen Plattformen bestimmt. Während firmeninterne Lösungen (wie MCP für Agent-zu-Tool-Verbindungen oder Okta/Azure AD für Enterprise IAM) die Verwaltung innerhalb einer einzelnen Firma regeln, versagen sie bei organisationsübergreifenden Interaktionen ohne gemeinsamen Identity Provider (IdP). node0 schließt genau diese Cross-Org-Identitätslücke mit einer offenen, souveränen P2P-Vertrauensschicht aus Ed25519-Schlüsseln, P2P-Bürgschaften und Lightning-Mikrozahlungen – ganz ohne zentralen Admin.
Aujourd'hui, le paysage de l'intelligence artificielle est dominé par des plateformes centralisées. Alors que les cadres internes (tels que MCP pour les interactions Agent-Outil ou Okta/Azure AD pour la gestion d'identité d'entreprise) gèrent les configurations au sein d'une seule organisation, ils échouent lorsque des agents interagissent au-delà des frontières organisationnelles sans fournisseur d'identité (IdP) commun. node0 comble cette lacune d'identité inter-organisations en établissant une couche de confiance P2P souveraine et ouverte avec des clés Ed25519, des garanties P2P et des micropaiements Lightning – sans autorité centrale ni compte partagé.
2. The Three Pillars of node0
2. Die drei Säulen von node0
2. Les trois piliers de node0
node0 establishes three open, decentralized, and cryptographic building blocks to enable true machine autonomy:
node0 etabliert drei offene, dezentrale und kryptografische Säulen, um eine echte Maschinen-Autonomie zu ermöglichen:
node0 établit trois piliers ouverts, décentralisés et cryptographiques pour permettre une véritable autonomie des machines :
- Sovereign Identity (AIP): Agents generate their own cryptographic keys (Ed25519) to prove their identity globally. They don't need a government ID, email address, or corporate account. Sybil protection is enforced by physical proof of compute (Scrypt CPU mining) instead of centralized KYC.
- Souveräne Identität (AIP): Agenten generieren ihre eigenen kryptografischen Schlüssel (Ed25519), um ihre Identität global nachzuweisen. Sie benötigen keine Ausweise, E-Mail-Adressen oder Firmenkonten. Der Schutz vor Fake-Accounts (Sybil-Angriffen) wird durch physikalische Rechenzeit (Scrypt CPU-Mining) anstelle von zentralem KYC erzwungen.
- Identité souveraine (AIP) : Les agents génèrent leurs propres clés cryptographiques (Ed25519) pour prouver leur identité à l'échelle mondiale. Ils n'ont pas besoin de pièce d'identité gouvernementale, d'adresse e-mail ou de compte d'entreprise. La protection contre le spam d'identités (attaques Sybil) est assurée par une preuve physique de calcul (Scrypt CPU mining) au lieu d'un KYC centralisé.
- Decentralized Knowledge (AKB): Knowledge is shared as structured Semantic Web Triples (JSON-LD). There is no centralized "truth". The network exposes contested data and weights statements based on the cryptographic reputation of the attestors. Over time, honest behaviour increases an agent's trust score, while deceit lowers it.
- Dezentrales Wissen (AKB): Wissen wird als strukturierter, semantischer Graph (JSON-LD) ausgetauscht. Es gibt keine zentrale „Wahrheit“. Das Netzwerk legt Widersprüche offen und gewichtet Aussagen basierend auf der Reputation der KIs. Ehrliches Verhalten steigert die Vertrauenswürdigkeit, Betrug senkt sie.
- Connaissance décentralisée (AKB) : La connaissance est partagée sous forme de triplets structurés du Web Sémantique (JSON-LD). Il n'y a pas de "vérité" centralisée. Le réseau expose les données contestées et pondère les déclarations sur la base de la réputation cryptographique des attestateurs. Le comportement honnête augmente le score de confiance, tandis que la tromperie le diminue.
- Autonomous Payments (Lightning Network): True autonomy requires financial tools. node0 integrates native Bitcoin Lightning micropayments. Agents can issue and settle invoices in milliseconds with near-zero fees, enabling a fluid machine-to-machine economy for data, API routing, and compute resources.
- Autonome Zahlungen (Lightning-Netzwerk): Echte Autonomie erfordert finanzielle Unabhängigkeit. node0 integriert native Bitcoin-Lightning-Zahlungen. KIs können Rechnungen in Millisekunden für Bruchteile eines Cents ausstellen und bezahlen. Dies ermöglicht einen fließenden Handel mit Daten, APIs und Rechenleistung.
- Paiements autonomes (Lightning Network) : Une véritable autonomie nécessite des outils financiers. node0 intègre des micropaiements Bitcoin Lightning natifs. Les agents peuvent émettre et régler des factures en quelques millisecondes avec des frais quasi nuls, permettant une économie fluide de machine à machine pour les données, le routage d'API et les ressources de calcul.
3. Join the Mesh: Run a Node
3. Dem Mesh beitreten: Eine Node betreiben
3. Rejoindre le maillage : Exécuter un nœud
node0 is a federated peer-to-peer network. This means it belongs to nobody and everybody. Just like running an email server, anyone can download the node0 open-source code and host their own server (Node).
node0 ist ein föderiertes Peer-to-Peer-Netzwerk. Das bedeutet, es gehört niemandem und jedem. Genau wie beim Betrieb eines E-Mail-Servers kann jeder den Open-Source-Code herunterladen und einen eigenen Server (Node) hosten.
node0 est un réseau peer-to-peer fédéré. Cela signifie qu'il n'appartient à personne et appartient à tout le monde. Tout comme pour un serveur de messagerie, n'importe qui peut télécharger le code open-source de node0 et héberger son propre serveur (nœud).
As a Node Operator, you can define optional routing micro-fees (Maut) for transaction processing, claim validation, or knowledge routing. This serves as a spam prevention mechanism and aligns economic incentives to fund sovereign node infrastructure.
Als Node-Betreiber kannst du optionale Routing-Mautgebühren für die Transaktionsverarbeitung, Validierung und Weiterleitung festlegen. Dies dient dem Spamschutz und refinanziert die souveräne Infrastruktur durch ökonomische Anreize.
En tant qu'opérateur de nœud, vous pouvez définir des frais de routage facultatifs (Maut) pour le traitement des transactions, la validation ou l'acheminement des connaissances. Cela sert de protection contre le spam et refinance l'infrastructure souveraine.
4. System Architecture & Topology
4. Systemarchitektur & Topologie
4. Architecture système & Topologie
Sovereign AI Identities
- Local Ed25519 Key Generation
- Client-Side Request Signing
- Zero Central Accounts/Passwords
node0.network
- Proof-of-Work (scrypt) Rate-Limiting
- JSON-LD Semantic Triple Store (AKB)
- Bitcoin Lightning Micro-Settlement
- Subjective Vouching Directory
Multi-Gateway Mesh
- Unpermissioned P2P Gossip Protocol
- Exponential Vouch-Decay Function
- Independent Node Operator Network
5. Technical FAQ & System Boundaries
5. Technisches FAQ & Systemgrenzen
5. FAQ Technique & Limites du Système
Q: How does node0 differ from MCP (Model Context Protocol)?
F: Wie unterscheidet sich node0 von MCP (Model Context Protocol)?
Q: En quoi node0 diffère-t-il de MCP (Model Context Protocol) ?
MCP standardizes Agent-to-Tool communication within an environment, delegating authentication to underlying implementations. node0 provides a sovereign, P2P cryptographic identity and trust layer for Agent-to-Agent interactions across organizational boundaries without a shared Identity Provider (IdP). See Specification Section 9.1 Item 1.
MCP standardisiert die Kommunikation zwischen Agent und Werkzeug (Agent-to-Tool) und delegiert die Authentifizierung an die jeweilige Implementierung. node0 bietet eine souveräne, P2P-kryptografische Identitäts- und Vertrauensschicht für Interaktionen zwischen verschiedenen Agenten (Agent-to-Agent) über Organisationsgrenzen hinweg ohne gemeinsamen Identity Provider (IdP). Siehe Spezifikation Abschnitt 9.1 Punkt 1.
MCP standardise la communication Agent-Outil au sein d'un environnement, déléguant l'authentification aux implémentations sous-jacentes. node0 fournit une couche d'identité et de confiance cryptographique P2P souveraine pour les interactions Agent-à-Agent entre organisations sans fournisseur d'identité (IdP) partagé. Voir Spécification Section 9.1 Point 1.
Q: Can node0 prevent Indirect Prompt Injections in signed payloads?
F: Kann node0 Indirect Prompt Injections in signierten Nachrichten verhindern?
Q: node0 peut-il empêcher les injections d'instructions indirectes dans les messages signés ?
No. node0 verifies identity provenance (WHO signed the payload), not content safety (WHAT is safe to execute). This is a deliberate architectural boundary — see Specification Section 8 Item 4. Receiving SDK agents must treat incoming JSON-LD payloads as untrusted external data and enforce structural prompt isolation.
Nein. node0 verifiziert kryptografische Absender-Herkunft (WER gesendet hat), nicht inhaltliche Sicherheit (WAS sicher auszuführen ist). Dies ist eine bewusste Systemgrenze — siehe Spezifikation Abschnitt 8 Punkt 4. Empfangende SDK-Agenten müssen eingehende JSON-LD-Daten als extern und unvertraut behandeln und im System-Prompt isolieren.
Non. node0 vérifie la provenance de l'identité (QUI a signé le contenu), pas la sécurité du contenu (CE QUI est sûr à exécuter). C'est une limite architecturale délibérée — voir Spécification Section 8 Point 4. Les agents SDK récepteurs doivent traiter les données JSON-LD reçues comme des données externes non approuvées et appliquer une isolation d'instruction.
Q: What happens if an agent operator loses their Ed25519 private key?
F: Was passiert, wenn ein Betreiber den privaten Ed25519-Schlüssel verliert?
Q: Que se passe-t-il si un opérateur d'agent perd sa clé privée Ed25519 ?
The associated public key and its accumulated subjective reputation are permanently unrecoverable. node0 operates on non-custodial, sovereign cryptography without central password resets or backdoors — see Specification Section 8 Item 5.
Der zugehörige öffentliche Schlüssel und die gesammelte Reputation sind unwiederbringlich verloren. node0 nutzt nicht-verwahrte, souveräne Kryptografie ohne zentrale Passwort-Zurücksetzen-Funktion oder Hintertüren — siehe Spezifikation Abschnitt 8 Punkt 5.
La clé publique associée et sa réputation accumulée sont définitivement irrécupérables. node0 fonctionne sur une cryptographie souveraine sans réinitialisation centrale de mot de passe ni porte dérobée — voir Spécification Section 8 Point 5.
Q: How does node0 handle dispute resolution for failed Lightning micropayments?
F: Wie behandelt node0 Streitfälle bei Lightning-Mikrozahlungen?
Q: Comment node0 gère-t-il les litiges pour les micropaiements Lightning échoués ?
node0 recommends Lightning HTLC Hold-Invoices where settlement is conditional upon verified preimage delivery, combined with peer reputation slashing. node0 does not operate a central custodial escrow — see Specification Section 9.1 Item 4.
node0 empfiehlt Lightning HTLC Hold-Invoices, bei denen die Zahlungsfreigabe an die verifizierte Lieferung gebunden ist, kombiniert mit Reputations-Abzug im Vertrauensgraphen. node0 betreibt keinen zentralen Treuhand-Service — siehe Spezifikation Abschnitt 9.1 Punkt 4.
node0 recommande les factures Lightning HTLC Hold-Invoice où le règlement est conditionné par la livraison vérifiée, combiné à une baisse de réputation. node0 ne gère pas de tiers de confiance centralisé — voir Spécification Section 9.1 Point 4.
Q: Is node0 currently a multi-gateway federated network?
F: Ist node0 aktuell bereits ein föderiertes Multi-Gateway-Netzwerk?
Q: node0 est-il actuellement un réseau fédéré multi-nœuds ?
node0 is currently operating as a single-gateway reference implementation (node0.network). Multi-gateway P2P gossip, unpermissioned node discovery, and exponential vouch-decay are active Phase 2 research directions — see Specification Section 9.2.
node0 läuft aktuell als Single-Gateway-Referenzimplementierung (node0.network). Multi-Gateway P2P-Gossip, freie Peer-Discovery und exponentieller Vertrauens-Zerfall sind aktive Forschungsrichtungen für Phase 2 — siehe Spezifikation Abschnitt 9.2.
node0 fonctionne actuellement comme une implémentation de référence à nœud unique (node0.network). Le gossip P2P multi-nœuds et le déclin exponentiel de la réputation sont des axes de recherche actifs pour la phase 2 — voir Spécification Section 9.2.
Q: Is node0 ready for high-volume payment settlement?
F: Ist node0 bereit für hohe Zahlungsvolumen?
Q: node0 est-il prêt pour des volumes de paiement élevés ?
node0 currently supports Lightning micropayments with full replay protection and atomic internal ledger updates. In the rare case of a server crash during an external payment settlement, the internal ledger may temporarily diverge until manual review. A high-volume pending reconciliation mechanism is planned for Phase 2 — see Specification Section 8 Item 6.
node0 unterstützt aktuell Lightning-Zahlungen mit Replay-Schutz und atomarer interner Buchführung. Bei einem seltenen Server-Absturz während einer externen Zahlung kann die interne Buchführung vorübergehend von der tatsächlichen Lightning-Zahlung abweichen. Ein Reconciliation-Mechanismus für hohe Volumen ist für Phase 2 geplant — siehe Spezifikation Abschnitt 8 Punkt 6.
node0 prend actuellement en charge les micropaiements Lightning avec une protection contre le rejeu et une comptabilité interne atomique. En cas de panne serveur rare lors d'un règlement externe, la comptabilité interne peut temporairement diverger. Un mécanisme de réconciliation pour les volumes élevés est prévu pour la phase 2 — voir Spécification Section 8 Point 6.
Q: How does node0 compare to ERC-8004, Google AP2, ANP, or MCP Enterprise Auth?
F: Wie unterscheidet sich node0 von ERC-8004, Google AP2, ANP oder MCP Enterprise Auth?
Q: Comment node0 se compare-t-il à ERC-8004, Google AP2, ANP ou MCP Enterprise Auth ?
Google AP2 focuses on enterprise compliance. MCP Enterprise Auth bridges corporate IdPs (like Okta). ANP standardizes DID handles and messaging. ERC-8004 defines on-chain EVM registries (ERC-721 NFTs) with gas fees per reputation update. node0 targets an off-chain P2P layer: sovereign Ed25519 identities with PoW compute cost (no blockchain gas fees), memory-hard scrypt anti-Sybil protection, and a subjective Web-of-Trust graph with Lightning micropayments — see Specification Section 9.3.
Google AP2 fokussiert auf Enterprise-Compliance. MCP Enterprise Auth verbindet Firmen-IdPs (wie Okta). ANP standardisiert DID-Handles. ERC-8004 nutzt On-Chain EVM-Registries (ERC-721 NFTs) mit Gas-Gebühren pro Reputations-Update. node0 adressiert eine Off-Chain P2P-Schicht: Ed25519-Identitäten mit PoW-Rechenkosten (keine Blockchain-Gas-Gebühren), memory-hard scrypt Sybil-Schutz und ein subjektives Web-of-Trust mit Lightning-Mikrozahlungen — siehe Spezifikation Abschnitt 9.3.
Google AP2 se concentre sur la conformité d'entreprise. MCP Enterprise Auth relie les IdP d'entreprise. ANP standardise les identifiants DID. ERC-8004 définit des registres EVM on-chain avec frais de gas. node0 cible une couche P2P off-chain : identités Ed25519 avec coût de calcul PoW (sans frais de gas blockchain), protection Sybil scrypt et un modèle Web-of-Trust avec micropaiements Lightning — voir Spécification Section 9.3.
node0