ACTOR ROLE CLASSIFICATION READINESS LAYER

Verified identity is not authority. Role is the boundary.

A role classification readiness layer that defines founder, operator, reviewer, system, and observer authority before identity can be used for real persistence or control.

CivilizationFull system mapWatchObserve livePredictStrategic foresightExecuteAction routesAcademyLearn + trainVaultMemory + proofVillageMissions + exchangeMobilePocket command
Universal Time Scroll

Every TheoB pathway can move through Past, Present, and Future without losing context.

Present

Read current signals, conditions, and live context.

🎙
Universal Voice Orb

Voice ready

SYSTEM STATE
StableFounder ControlledHuman Reviewed
ROLE CLASSIFICATION

No role, no authority.

Actor Role Classification Readiness Layer defines who can view, review, operate, recommend, or authorize. Founder authority, operator delegation, reviewer separation, system limits, and observer read-only boundaries must be clear before identity becomes usable.

falseRole Classification Ready
falseIdentity Can Use Roles
4Ready Rules
6Review Required
Reason

Actor role classification is intentionally not ready until founder authority, operator delegation, least privilege, role-change auditing, and critical-action authority rules are finalized.

review-required
founder

Can authorize founder-level actions after explicit confirmation and elevated verification.

Founder role must still pass consent, MFA, and audit boundaries.
authority: highestapprove persistence activationconfirm safe mode activationpause or restore autonomydelegate operator scopeapprove critical audit policy changes
review-required
operator

Can operate assigned cockpit workflows within delegated scope.

Operator authority must be explicitly delegated and revocable.
authority: limitedrun simulationsreview provider healthprepare recommendationsrequest founder confirmation
review-required
reviewer

Can inspect records, flag issues, and verify governance requirements.

Reviewer can advise, not command.
authority: review-onlyreview audit trailflag policy gapsreview receiptsrecommend corrections
ready
system

Can generate structural status, readiness reports, receipts, and non-destructive simulations.

System role must never silently escalate into human authority.
authority: automated-structuralrender readiness statessummarize provider healthproduce simulated receiptssurface missing requirements
ready
observer

Can view public-safe or permissioned summaries without control authority.

Observer role is read-only by default.
authority: read-onlyview safe summariesview non-sensitive statuslearn system state
review-required
Role Required For Every Actor

Every authenticated actor must be assigned an explicit role.

No authenticated actor should float around as undefined authority.
review-required
Founder Role Is Not Inherited

Founder authority must be explicitly granted, never inferred from login alone.

No accidental founder power from generic auth.
review-required
Operator Scope Must Be Delegated

Operators must have a defined scope, expiration, and revocation path.

Operators can help steer the ship, not claim the throne.
ready
Reviewer Cannot Execute

Reviewer authority must remain separate from execution authority.

Review and command should not collapse into one button.
ready
System Cannot Self-Promote

System-generated recommendations must never become self-approved actions.

No machine should crown itself founder.
ready
Observer Is Read-Only

Observers can see safe summaries but cannot confirm or mutate actions.

Viewing is not authority.
review-required
Critical Actions Require Founder Authority

Persistence activation, safe mode activation, and autonomy pause require founder-level authority.

Critical controls stay behind founder confirmation.
review-required
Role Changes Must Be Audited

Future role assignment, delegation, promotion, or revocation must produce an audit record.

No invisible permission changes.
review-required
Least Privilege Default

New actors should start with observer or no-control authority until elevated.

Default small. Expand carefully.
ready
Role Redaction

Role records should expose safe labels and avoid sensitive auth payloads.

Role metadata should not leak raw identity data.
Allowed NowRender role classification readiness.Define role boundaries.Display future authority levels.Keep identity and persistence blocked from real control.Continue simulations without treating roles as live permissions.
Not Allowed YetGrant real founder authority.Delegate real operator scope.Persist role assignments.Use roles to authorize real safe mode or autonomy actions.Treat system recommendations as self-approved commands.Allow observer or reviewer roles to mutate control state.
Future Role Assignment Shape
actorId: authenticated actor idactorRole: founder/operator/reviewer/system/observerauthorityLevel: highest/limited/review-only/automated-structural/read-onlydelegatedBy: optional founder actor idscope: allowed route/action scopeexpiresAt: optional ISO timestamprevocationStatus: active/revoked/expiredcreatedAt: ISO timestampredactionStatus: redacted-safe
Future Role Audit Shape
roleAuditId: stable role audit event idactorId: target actor idpreviousRole: previous safe role labelnewRole: new safe role labelchangedBy: authenticated founder/operator id with authorityreason: safe text reasoncreatedAt: ISO timestampproductionMutation: true/false
PrimeTheoB
Voice owner · high visibility preserved · routes consolidated into TheoB · expands with text, images, video, and files after activation.
VerifiedEmergingContestedExperimental Finding
Liveconnectedopen
⚡ Live🎙 Mic
🌍Explore the Observatory
TheoB.aiguide owner
HomeWorldPrimeDashVault