Power Resilience
Losing power costs work, not correctness
Each inference is a completion transaction with defined stop points. Checkpoint integrity and Energy Contract terms are validated before anything resumes.
Design targets · not measured silicon results
- Trust boundary
- Supporting logic
- Signed data in flight
A half-finished result looks finished
Brownouts and outages are normal at the edge. Resuming from inconsistent intermediate state produces wrong answers with no visible marker that anything failed.
- Measured epoch
- Flagged for re-measure
- Light = the digest being extended
Transactions with safe boundaries
The Inference Completion State Machine checkpoints only at consistent points. RESTORE_VALIDATE checks integrity and Energy Contract compatibility before work continues.
Sequence
Order is the mechanism, and nothing here is optional.
- Ordered step
- Only exit
What follows from the diagram
-
Transactional requests
Complete and export, or abort as untrusted, no middle
-
Consistent checkpoints
Discard-and-retry is sound only at consistent boundaries
-
RESTORE_VALIDATE
Integrity and contract terms checked together
-
Defined degradation
Lower clock profile or refuse admission, never undefined
Reviewing this mechanism?
The specification can still change. That stops being true after tape-out.