Design directions
- Use persistent identifiers plus authenticated transition history instead of treating a private key as the identity.
- Define recovery and succession before compromise occurs.
- Make forks and replicas explicit events with separate authority rules.