Notes on Internet Privacy

Posts and research from the URnetwork team and community.

RSS

What Thursday Closed

On Thursday, May 14, 2026, three doors of the AI, financial, and surveillance accountability stack closed in the same eight-hour window — and a fourth, structurally crucial door did not. At two o'clock Pacific Time in Courtroom 12 of the San Francisco Federal Courthouse, Judge Araceli Martínez-Olguín convened the fairness hearing on the Bartz v. Anthropic class settlement: $1.5 billion for 482,460 registered copyrighted works at roughly $3,000 per work, with a claims rate that had risen to 92.77 percent — 447,576 claimed works as of the day of the hearing per lead attorney Justin Nelson. The judge focused her questions on attorneys' fees and the settlement's cost structure rather than the contours of the deal or the unsealed objections, did not rule from the bench, and the hearing "appears to cruise" toward final approval. Hours later, Anthropic published The Founder's Playbook and launched Claude for Small Business — Anthropic's agentic platform wired into the QuickBooks, PayPal, HubSpot, Canva, and DocuSign workflows of every lean team and solo founder — the SMB-side deployment expansion of the Claude Cowork enterprise GA into SCIM, OpenTelemetry, and Intune two days earlier. At seventeen hundred Central European Summer Time, the European Central Bank closed applications for the Digital Euro Payment Service Provider pilot — selecting between ten and thirty PSPs for a twelve-month H2 2027 pilot of programmable, central-bank-issued retail currency, with the development phase beginning in Q3 2026. And the door that did not close on Thursday: the fifteen-day expedited declassification window for the Foreign Intelligence Surveillance Court's March 17 opinion on FBI Section 702 query practices — the deal Senator Wyden negotiated with the Senate Intelligence Committee on April 30 as the condition for the 45-day Section 702 extension. That window operationally elapsed around May 15. As of today, Monday, May 18, the opinion remains classified. The Section 702 sunset is now twenty-five days away — June 12, 2026. Three doors closed Thursday. The fourth did not. The accountability template, the deployment plane, the programmable money infrastructure, and the surveillance court oversight were on overlapping calendars in May 2026 because the procedural alignment is not coincidental. The clocks keep running. The user-side primitive stack does not depend on which way they run.

The four doors of Thursday

Thursday, May 14, 2026, was the procedural convergence point of corporate AI deployment, AI compensation template, programmable monetary infrastructure, and surveillance oversight. Four structural doors of the AI and financial accountability stack closed (or moved to closure) within hours of each other across three time zones — the Frankfurt deadline first, the San Francisco courtroom last. The story is not which doors closed and which did not — the story is that the calendars aligned.

Door 1 — the Bartz fairness hearing. Judge Araceli Martínez-Olguín presiding, Northern District of California, Courtroom 12, San Francisco Federal Courthouse, 2 p.m. Pacific Time. The $1.5 billion settlement covers 482,460 registered copyrighted works at approximately $3,000 per work. The claims rate at the day of the hearing reached 92.77 percent, with 447,576 works claimed. The judge focused her questions on the settlement's cost structure and attorneys' fees rather than the contours of the deal or the unsealed objections — foreign-works exclusion, group-registration undercounting, $3,000-per-work fairness, and the coercive-notice argument. The hearing "appears to cruise" toward final approval per the Words and Money observers, with Authors Alliance reporting that the judge barely questioned the deal's structure. The judge did not rule from the bench. The final approval order is expected within two to six weeks. The Bartz template becomes the structural baseline for OpenAI, Google, Meta, Cohere, Mistral, and open-source AI-training-data settlements — and there are dozens pending.

Door 2 — the agentic operations plane goes to small business. On May 14, Anthropic published The Founder's Playbook arguing that AI has "rebooted" the startup lifecycle, and launched Claude for Small Business — a package of pre-built workflows wired directly into the operations stack of every lean team and solo founder: QuickBooks for accounting and finance, PayPal for payments and receivables, HubSpot for CRM and marketing, Canva for creative and brand, DocuSign for legal and agreements. The launch is the SMB expansion of Anthropic's agentic deployment plane: Claude Cowork (May 12 general availability into SCIM, OpenTelemetry, and Intune for enterprise identity-and-device-management) and the May 4 Anthropic joint venture with Blackstone, Hellman & Friedman, and Goldman Sachs (valued at $1.5 billion, with $300 million commitments from each anchor). The parallel OpenAI move is Workspace Agents — introduced April 22 for ChatGPT Business, Enterprise, Edu, and Teachers plans, powered by Codex, connecting Slack, Google Drive, Microsoft apps, Salesforce, Notion, and Atlassian Rovo — with the OpenAI Development Company joint venture ($4 billion raise, $10 billion valuation) also announced May 4. The agentic plane is now in production across enterprise, SMB, and consumer at the same week the AI compensation template is being approved.

Door 3 — the Digital Euro PSP applications close. At 17:00 Central European Summer Time on Thursday, May 14, the European Central Bank closed the call for expression of interest for Digital Euro Payment Service Provider participation. The call was published March 5, 2026. The ECB will select between 10 and 30 PSPs for a twelve-month pilot beginning in the second half of 2027, with the development phase beginning Q3 2026. The architecture is programmable retail central-bank-issued currency — the "programmable" element means PSPs can enforce limits, conditions, and traceability on individual transactions in software at the protocol layer. The fundamental surveillability of the architecture is the architectural fact. The companion regulatory frame: MiCA enters full enforcement on July 1, 2026, with penalties up to 12.5 percent of global annual turnover and executive personal liability; the Transfer of Funds Regulation Travel Rule has been operating at zero threshold for CASP-to-CASP transfers since December 2024. The US-side counterpoint: the SEC and CFTC joint interpretation of March 17, 2026, explicitly naming Bitcoin, Ethereum, Solana, XRP, and Chainlink as digital commodities — a structurally different regulatory philosophy arriving the same month the EU-side programmable euro infrastructure formalizes.

Door 4 — the window that did not close. On April 30, 2026, the House passed the 45-day Section 702 extension by a vote of 261 to 111, after the Senate's unanimous consent. Senator Wyden secured a deal with the leaders of the Senate Intelligence Committee guaranteeing expedited declassification of the FISC's March 17, 2026 opinion within fifteen days of the extension's passage. The opinion is understood to address FBI Section 702 query practices — specifically the lookback queries that reach US persons in the foreign-intelligence collection database. The DOJ is currently appealing the opinion because it blocked certain analytic tools the FBI was using to query the database. Senator Cotton objected when the Senate tried to pass the extension by unanimous consent with Wyden's declassification provision attached — meaning the Director of National Intelligence and the Department of Justice formally could decline the committee's request. The fifteen-day window: April 30 to May 15, 2026. As of today, May 18, 2026, the FISC opinion has not been declassified. The window operationally elapsed three days ago. The query-side reform debate continues without the court's structural view — and the Section 702 sunset is now twenty-five days away, June 12, 2026.

Three doors closed. The fourth did not. The procedural convergence is not coincidental. The Bartz preliminary approval came in late 2025; the standard six-month fairness-hearing window landed in May 2026. Anthropic's enterprise Claude Cowork GA was May 12; the SMB expansion was the natural next-week step. The ECB call's 70-day window opened March 5 and closed May 14. The Wyden deal's 15-day window opened April 30 and closed May 15. The calendars aligned because corporate cycles, court cycles, regulator cycles, and legislative cycles run on overlapping monthly cadences — and May 2026 is the cadence the AI-and-finance accountability stack is converging on.

Door 1 — the $1.5 billion template

The Bartz v. Anthropic settlement covers what is, by structural measure, the corpus that Anthropic ingested during Claude training between approximately 2021 and 2023 from books that the U.S. Copyright Office had registered. The settlement value is $1.5 billion. The covered works number 482,460. The per-work payout is approximately $3,000.

The fairness hearing on Thursday addressed four unsealed objections.

The first objection — foreign-works exclusion — argues that the settlement is bounded by U.S. Copyright Office registration. Many authors whose works were ingested into Anthropic's training corpus have non-U.S. nationalities and have registered their copyrights under their home jurisdiction's regime. The objection argues that the foreign-works exclusion creates an under-counted claim universe and that the settlement structure should be expanded to cover foreign-registered works. The judge did not address this objection from the bench.

The second objection — group-registration undercounting — argues that many U.S.-registered works are group-registered under collective authorship structures such as anthologies, periodicals, course materials, and academic compilations. The settlement structure attributes the per-work payout to the registered claimant, which in group-registration cases may be a publisher or institutional rights-holder rather than the underlying authors. The objection argues that this creates a publisher-bias in the settlement distribution. The judge did not address this objection from the bench.

The third objection — $3,000-per-work fairness — argues that the per-work amount is too low relative to the value Anthropic extracted from the ingested corpus during Claude training. This is the objection the judge focused on, asking attorneys about the cost structure and attorneys' fees. The hearing did not produce a substantive answer.

The claims rate has been the surprise of the settlement administration. Authors Alliance reported on May 14 morning that the rate was 91.3 percent. By the time attorney Justin Nelson took the lectern that afternoon, the rate had risen to 92.77 percent, with 447,576 individual claims for distinct works. The unusually high rate is consistent with two interpretations: authors strongly identified their works in the Anthropic training corpus, or the registry was over-inclusive at the outset. Either interpretation favors approval; neither favors restructuring.

The judge did not rule from the bench. The final approval order is expected within two to six weeks. If approved, the Bartz template becomes the structural baseline for the dozens of pending AI-training-data class actions — OpenAI, Google (multiple Bard / Gemini training actions), Meta (the Llama / LibGen litigation), Cohere, Mistral, and open-source providers whose training corpora similarly include registered copyrighted works.

If rejected — and there is no procedural signal that the judge will reject — the template returns to negotiation.

The Bartz template is the corporate AI industry's compensation precedent for retroactive use of registered copyrighted works in training. The going rate is $3,000 per work. The going aggregate is $1.5 billion per major-frontier-class training run. The going claims rate is 92.77 percent.

Door 2 — the agentic operations plane

The same day the Bartz template was being approved retroactively for past training, Anthropic was deploying its agentic platform prospectively into the operations stack of every small business.

Claude for Small Business — launched May 14 — packages five pre-built workflows wired directly into the operations stack of lean teams and solo founders:

  • QuickBooks — accounting, bookkeeping, invoicing
  • PayPal — payments, receivables
  • HubSpot — customer relationship management, marketing automation
  • Canva — brand, creative, social-media production
  • DocuSign — legal agreements, contracts

The five integrations together constitute the financial, customer, creative, and legal day-to-day workflow of an estimated 50 million U.S. small businesses. The agentic platform is now in the operations stack.

The SMB launch is the third tier of Anthropic's agentic deployment expansion:

  • Enterprise (May 12 GA) — Claude Cowork into the SCIM identity-management plane, OpenTelemetry telemetry, and Microsoft Intune device-management — making Claude a co-equal entity to the human in corporate identity infrastructure.
  • SMB (May 14 launch) — Claude for Small Business across the QuickBooks / PayPal / HubSpot / Canva / DocuSign workflows.
  • Consumer — continued ChatGPT-class deployment across consumer plans.

The parallel OpenAI deployment is structurally similar. Workspace Agents — announced April 22 — targets ChatGPT Business, Enterprise, Edu, and Teachers plans, with persistent agents powered by Codex that connect Slack, Google Drive, Microsoft apps, Salesforce, Notion, and Atlassian Rovo. Workspace Agents was free until May 6, with credit-based pricing starting on that date. The May 4 OpenAI Development Company joint venture raised $4 billion against a $10 billion valuation from nineteen investors.

Both major corporate AI providers are wiring their agentic platforms into the financial, communications, customer-relationship, creative, and legal day-to-day workflow of the U.S. economy in the same window the Bartz $1.5 billion compensation template is being approved for the training corpus that built those platforms.

The architectural risk surface is what the Microsoft May 7 disclosure made structural: three Critical Information Disclosure vulnerabilities in Microsoft 365 Copilot — CVE-2026-26129, CVE-2026-26164, and CVE-2026-33111 — all of which allowed sensitive information to leak across trust boundaries via Copilot's aggregation of emails, documents, and Teams conversations. Microsoft disclosed and fully remediated the three CVEs on May 7. The January 21 bug in M365 Copilot Chat had previously allowed Copilot to summarize confidential emails bypassing DLP policies and sensitivity labels. The pattern: when the agentic AI aggregates content across trust boundaries, the aggregator is the vulnerability surface.

Anthropic Claude Cowork and Claude for Small Business raise the same architectural questions. Where the agentic AI aggregates QuickBooks financial records with PayPal payment data with HubSpot CRM contacts with DocuSign legal agreements, the aggregator is the vulnerability surface. The Anthropic deployment doesn't have a published Information Disclosure CVE catalog yet — but the architecture is structurally equivalent.

Door 3 — the programmable euro

At 17:00 Central European Summer Time on Thursday, May 14, the European Central Bank's call for expression of interest in the Digital Euro PSP pilot closed. The call had been open since March 5 — a 70-day application window. The ECB will select between 10 and 30 PSPs for a twelve-month pilot in the second half of 2027.

The development phase begins Q3 2026 — approximately four months from now.

The architecture is programmable retail central-bank-issued currency. The "programmable" element is the structural fact. PSPs can enforce limits, conditions, and traceability on individual transactions in software at the protocol layer. The transactions are not anonymous — every transfer is identifiable to the PSP and (with legal process) to authorities. The selective-disclosure mechanisms exist in the technical specification but are not fully mandated or interoperable across the EU Member State implementations.

The companion regulatory frame is the European Union's broader monetary-traceability stack:

  • MiCA — full enforcement effective July 1, 2026, with penalties up to 12.5 percent of global annual turnover and personal liability for executives. Any unlicensed Crypto-Asset Service Provider serving EU customers must cease operations by July 1.
  • Transfer of Funds Regulation (Travel Rule) — zero-threshold for CASP-to-CASP transfers, operational since December 2024. Originator-and-beneficiary data on every transfer.
  • EU Digital Identity Wallet — Member States must provide at least one EUDI Wallet by the end of 2026 under Regulation 2024/1183.
  • EU AI Act GPAI enforcement — enforcement powers activate August 2, 2026, with penalties up to €15 million or 3 percent of global annual turnover.

The transatlantic structural difference: the US side's March 17, 2026 SEC and CFTC joint interpretation explicitly named Bitcoin, Ethereum, Solana, XRP, and Chainlink as digital commodities — a regulatory clarity arriving the same month the EU-side programmable euro infrastructure formalizes. Different architectural philosophies. The same monthly cadence.

Door 4 — the window that did not close

The Foreign Intelligence Surveillance Court's March 17, 2026 opinion on FBI Section 702 query practices was supposed to be public by May 15, 2026 — fifteen days after the April 30 passage of the 45-day Section 702 extension. Senator Ron Wyden secured a commitment from the Senate Intelligence Committee leaders as a condition of his support for the extension: the opinion would be declassified and made public within the fifteen-day expedited review window.

As of today, Monday, May 18, the opinion has not been declassified. The window operationally elapsed three days ago.

The opinion is understood to address the FBI's query practices against U.S. persons in the Section 702 collection database. The standard practice — referred to as "lookback queries" — has been the central source of controversy since Section 702's enactment. The court is understood to have ruled, in part, against the FBI's broad query interpretation; the DOJ has been appealing the ruling because it blocks certain analytic tools the FBI considers operationally critical.

Senator Cotton objected when the Senate tried to pass the 45-day extension by unanimous consent with Wyden's declassification provision attached. The objection means the Director of National Intelligence and the Department of Justice formally could decline the committee's request — which is what has happened, by operation of silence.

The Section 702 sunset is now twenty-five days away. June 12, 2026.

Section 702 of FISA permits warrantless surveillance of foreign targets located outside the United States. The collection routinely reaches U.S. persons through incidental collection — communications between foreign targets and U.S. persons. The "query" practice is what the FBI does to access the collection: a search across the foreign-intelligence collection database for U.S.-person identifiers. The FISC opinion is the structural court view of which queries are permissible. Without the opinion's publication, Congress is debating reauthorization without the court's view of the FBI's query practices.

The June 12 sunset is the next forcing event. Congress can extend Section 702 again, can pass full reauthorization (likely with some reform), or can let it lapse. The previous four reauthorization windows have ended with extensions or partial reform; the structural reform that the FISC opinion would inform has not occurred.

Twenty-five days. The FISC view is not on the table.

What was already running

The four doors of Thursday closed against a backdrop of policy and recipient-country clocks that have been running without pause.

Iran — day 80. As of May 18, 2026, Iran is on the eightieth day of the longest internet shutdown on record. NetBlocks confirmed day 73 on May 11; the count incremented daily. The economic loss is approximately $35.7 million per day under the Iran HRM direct accounting, and approximately $250 million per day under the CBC analysis that includes indirect impacts. The Internet Pro tier — a white-SIM caste tier issued by the IRGC-linked Mobile Communications of Iran — is in operational production. Three-to-four-hour queue times at SIM-conversion offices in Tehran continue. A grey-market resale of converted Tier-1 white SIMs has emerged at premium prices. Per Unit 42 / Palo Alto Networks Threat Intelligence, Iranian state actors shifted to Starlink and VSAT services for connectivity at approximately day 66 (May 4). The blackout that started January 8, 2026 has produced the first production case for a permanent two-tier internet at the carrier layer.

Russia — the mobile VPN surcharge is live. On May 1, 2026, Russia's mobile VPN surcharge went into effect: 150 rubles (approximately $1.60) per gigabyte of international traffic exceeding 15 gigabytes per month. The April 15 ISP VPN-detection law is operational at Yandex, VK, Sberbank, Gosuslugi, Ozon, Wildberries, Aviasales, and Russian Railways — a coordinated deputization of major private platforms to enforce VPN detection at the application layer. The pre-Victory-Day mobile shutdowns rolled across more than 21 oblasts from May 4 through May 9, peaking with a full Moscow mobile and SMS shutdown on May 9. ATMs in affected regions were down because they depend on cellular backhaul. Roskomnadzor's stated target is 92 percent VPN blocking effectiveness by 2030, with approximately 20 billion rubles per year allocated to build the permanent VPN censorship infrastructure. More than 1,000 VPN services have been blocked; Roskomnadzor publicly named 439 services as of January 22. In March 2026, magistrates' courts in Moscow and St. Petersburg began handing down convictions against internet providers for allowing traffic to bypass TSPU.

China — the Great Unplug. In April 2026, Chinese authorities physically disconnected thousands of proxy service servers from data center racks — cutting power cables and network lines of machines used to relay VPN traffic. The campaign — known on Chinese social media as 拔线潮 ("Cable-Pulling Tide") — is architecturally distinct from prior crackdowns: where past enforcement targeted per-user prosecution, the Great Unplug targeted infrastructure. The April 8 Shaanxi Telecom notice mandated elimination of "any form of circumvention business" — a broad category including VPN services and proxy routing. After the campaign, only TLS-based obfuscation (V2Ray VLESS + Reality, Shadowsocks-2022, Trojan, WireGuard with obfsproxy) reliably worked. Thousands of users lost access overnight.

Niger — nine international media outlets suspended. On May 8, 2026, Niger's military-controlled Observatoire Nationale de la Communication ordered the suspension of nine international media outlets: France 24, Radio France International, Agence France Presse, TV5 Monde, Jeune Afrique, Mediapart, LSI Africa, TF1 Info, and France Afrique Média. The stated justification — "jeopardise public order, national unity, social cohesion and the stability of state institutions." Niger is the second-worst jailer of journalists in sub-Saharan Africa per CPJ's December 1, 2025 census.

Burkina Faso — TV5Monde banned, journalist beaten with tree branches. On May 5, 2026, Burkina Faso's Superior Council of Communication banned TV5Monde. On May 6, Reporters Without Borders' investigation confirmed that prominent investigative journalist Atiana Serge Oulon — abducted on June 24, 2024 — had been detained and beaten with tree branches over weeks inside a villa in Ouagadougou that had been turned into a makeshift prison. Mali, Burkina Faso, and Niger together form the Sahel "information desert" — twelve-plus media outlets forced to suspend or close operations; forced conscription of journalists into junta military operations.

Pakistan — thirteen arrests under PECA. On May 6, 2026, Pakistan's National Cyber Crime Investigation Agency Punjab arrested thirteen people across Lahore, Gujranwala, Faisalabad, and Multan over alleged anti-state social media campaigns. The arrests are charged under the Prevention of Electronic Crimes Act. The 2025 PECA amendments have transformed the legislation into a primary state surveillance and control mechanism. Thirty-four of sixty-seven recorded criminal complaints against Pakistani journalists use PECA.

Tanzania — 518 dead. On April 23, 2026, the Commission of Inquiry into the post-October-29-2025 election violence presented its report to President Samia Suluhu Hassan. The commission confirmed 518 deaths — 502 civilians and 16 security personnel, with 21 children among the fatalities. The Dar es Salaam region recorded the highest death toll at 182. Western diplomats and opposition parties estimate the actual toll at one thousand to two thousand. The violence occurred during a five-day complete internet blackout. The commission's full report has not been released publicly. CHADEMA and ACT-Wazalendo rejected the report on April 24. Human Rights Watch's May 5 "Missed Opportunity" report criticized the continued withholding. X (formerly Twitter) remains suspended in Tanzania.

The Iran—RussiaChina—Niger—Burkina Faso—Pakistan—Tanzania arc is the same architectural pattern at different intensities. Each is a production case for state action against the carrier layer or the application layer or the journalist layer of the open internet. The user has no architectural alternative at the carrier layer.

What's coming

After Thursday's three doors, the deadline cascade through June and July is the operational reality.

May 22 — Monero FCMP++ Trail of Bits audit ends. The eleven-day audit window opened May 11. As of May 18, the audit is in day 7 of 11. FCMP++ replaces ring signatures with full-chain membership proofs whose anonymity set is the entire UTXO set — approximately 150 million transaction outputs, compared with the 16-decoy ring signatures used today. A clean audit eliminates the last significant technical objection to Monero's protocol-level privacy claims; serious findings delay the consensus upgrade and weigh on sentiment.

May 28 — PAN-OS CVE-2026-0300 full patch window closes. Palo Alto shipped the May 13 fix for the User-ID Authentication Portal buffer overflow that yields root remote code execution. Federal IT spent four days running configuration mitigations because the vendor patch arrived four days after CISA's May 9 FCEB deadline. The full patch window — through May 28 — closes ten days from today.

June 12 — Section 702 sunset. Twenty-five days from today. The 45-day extension expires June 12. The FISC opinion has not been declassified. The query-side reform debate continues without the court's view. Congress will pass an extension, a reauthorization, or let it lapse. The reauthorization-without-reform pattern has held across four windows. The fifth window may break the pattern; more likely it does not.

June 26 — Microsoft Secure Boot certificate cliff. Thirty-nine days from today. The original 2011 Secure Boot certificates used by most Windows devices built between 2012 and 2025 expire. Approximately 1.5 billion Windows devices are in scope. Devices that have not received the 2023 replacement certificates lose Secure Boot protection; some will fail to boot entirely. Microsoft has been staging readiness updates for approximately two years; the May Patch Tuesday (May 12, 137 CVEs, zero zero-days) shipped KB5089593, KB5087544, and KB5087594 specifically to prepare for the cliff. The long-tail — offline devices, ICS, kiosks, embedded — is the unaddressed risk surface.

June 30 — Mexico CURP Biométrica deadline. Forty-three days from today. Approximately 127 million mobile phone lines in Mexico must be registered against biometric CURP — face, fingerprint, iris — by June 30. Unregistered lines face suspension. New lines effective January 9 must register within 30 days. Mexico becomes the first major nation to require every mobile phone line to be linked to a government-issued biometric identifier. The stated purpose: combat extortion and locate missing persons. The structural effect: continuous identification of every user's location and activity at the carrier layer.

July 1 — MiCA full enforcement. Forty-four days from today. Any unlicensed CASP serving EU customers must cease operations. Penalties up to 12.5 percent of global annual turnover with executive personal liability.

July 1 — Apple Declared Age Range API enforcement (Louisiana, Utah). Same day. For users with new Apple Accounts in Louisiana and Utah as of July 1, 2026, age categories will be shared with the developer's app when requested via the Declared Age Range API. The Significant Update Action — in beta — lets developers notify adults in those jurisdictions of significant app updates.

August 2 — EU AI Act GPAI enforcement. Seventy-six days from today. Enforcement powers activate for GPAI providers, including Anthropic, OpenAI, Google, Meta, Mistral, Cohere, and open-source providers above the GPAI threshold. The Code of Practice voluntary signing window narrows. Penalties up to €15 million or 3 percent of global annual turnover.

September 21 — FIPS 140-2 sunset. One hundred twenty-six days from today. ML-KEM (FIPS 203), ML-DSA (FIPS 204), and SLH-DSA (FIPS 205) post-quantum-secure primitives have been live as standards since August 2024. The average FIPS 140-3 validation cycle is approximately 542 days at the early-2024 baseline. Pre-emptive post-quantum-secure primitive deployment is the only path through the FIPS sunset.

End 2026 — EU Digital Identity Wallet rollout deadline. Member States must provide at least one EUDI Wallet by end of 2026. eIDAS 2.0 BBS+ selective disclosure is in IETF finalization. W3C Verifiable Credentials 2.0 has been Recommendation since May 2025.

Summer 2026 — Going Dark / ProtectEU drops. The EU Commission's pivot after the November 26, 2025 Chat Control 2.0 defeat. The Going Dark proposal targets VPN services with "the broadest possible scope of application." Mullvad has stated it will exit the EU market if Going Dark passes; Signal President Meredith Whittaker has stated Signal will leave the European market if encryption is mandated to be weakened.

The dense June-July window — June 12, June 26, June 30, July 1, July 1, August 2 — is the operational cascade of the procedural alignment Thursday made visible.

What hasn't closed

While Thursday's three doors closed, the breach posture remains structurally open.

Sysco / Qilin — six days after Qilin posted three internal documents as proof of access (May 12), no SEC Item 1.05 disclosure has been filed; no payment confirmation; no full leak. Sysco is the world's largest foodservice supplier — restaurants, hospitals, schools, hotels.

Foxconn / Nitrogen — confirmed cyberattack on Mount Pleasant, Wisconsin, and Houston, Texas, facilities, with 8 terabytes / 11 million files alleged stolen including Intel, Apple, Nvidia, Google, and Dell project data. Confirmed May 12. The contract-manufacturer aggregator pattern: one Foxconn compromise reaches every OEM customer's product roadmap simultaneously.

Salt Typhoon — per FBI May 2026 statements, "still very, very much ongoing." Two hundred-plus targets in eighty-plus countries. Verizon, AT&T, T-Mobile, Spectrum, Lumen, Consolidated Communications, Windstream, plus Canadian top telecoms. The Senate Commerce Committee hearing requested by Senator Cantwell in February 2026 has not been scheduled.

DragonForce — M&S / Co-op / Harrods — M&S disruption expected through July with approximately £300 million in lost profits; four arrested in the UK. The Scattered Spider / The Com / DragonForce affiliate structure remains operational.

Cushman & Wakefield — ShinyHunters via Salesforce; 500,000-plus records, PII plus internal corporate data.

The DPRK pattern — Drift Protocol $295 million April 1; Kelp DAO $292 million April 18. $587 million combined from two attacks. TRM Labs verdict on April 30: DPRK Lazarus accounts for 76 percent of all 2026 cryptocurrency hack value year-to-date. Drift announced a recovery plan May 5 — recovery tokens pegged to verified losses, funding pool $3.8 million initial → up to $151 million target from revenue, Tether support, and partners. Ripple opened DPRK threat intelligence sharing for crypto firms May 5.

The breach posture has its own clock. It does not stop because the deployment plane is going to market.

The agentic deployment risk

The same week Anthropic Claude for Small Business launched into QuickBooks, PayPal, HubSpot, Canva, and DocuSign — and the parallel OpenAI Workspace Agents continued ramping in Slack, Google Drive, Microsoft apps, Salesforce, Notion, and Atlassian Rovo — Microsoft disclosed and remediated three Critical Information Disclosure CVEs in Microsoft 365 Copilot.

CVE-2026-26129. CVE-2026-26164. CVE-2026-33111.

All three Critical severity. All three Information Disclosure category. All three fully remediated May 7. The pattern: when the agentic AI aggregates content across trust boundaries, the aggregator is the vulnerability surface. M365 Copilot aggregates emails, documents, and Teams conversations; weaknesses in handling special elements or injected commands allow sensitive information to leak across trust boundaries. The January 21 bug in M365 Copilot Chat had previously allowed Copilot to summarize confidential emails bypassing DLP policies and sensitivity labels.

The Anthropic Claude Cowork enterprise deployment (SCIM, OpenTelemetry, Intune) and the Claude for Small Business SMB deployment (QuickBooks, PayPal, HubSpot, Canva, DocuSign) aggregate across structurally equivalent trust boundaries. The architectural questions are the same. Anthropic has not published an Information Disclosure CVE catalog for Claude Cowork or Claude for Small Business — yet. The architecture warrants close scrutiny.

The agentic plane is in production. The Information Disclosure surface is in production. Both clocks run.

The user-side primitive stack

The user-side primitive stack is the deployment-independent counter to all four doors, plus the carrier-layer state action, plus the breach posture.

Open clients with user-held keys. Signal, Tuta, Proton, Threema, Briar 1.5.17 (the March 12 release runs over Bluetooth, Wi-Fi, and Tor; it functions during carrier-layer shutdowns because it does not depend on the carrier layer to forward messages), Cwtch, Session, Matrix homeserver. The architectural property: user-held keys do not have the surface for regulatory compulsion. The Meta Instagram E2EE termination of May 8, 2026, demonstrated that even existing E2EE can be regulatorily compelled away from a major platform; open clients with user-held keys do not have the architectural surface for that compulsion.

Open firmware on user-inspectable chips. GrapheneOS (Pixel 6+ with Android 16 in 2026030501 preview), CalyxOS Android 16 test build 7.2.1.0 released May 4, /e/OS, LineageOS, OpenWRT. The Citizen Lab "Bad Connection" report of April 23, 2026 documented two carrier-side surveillance campaigns — STA1 Diameter-to-SS7 downgrade across nine countries acting as "ghost operators," and STA2 SIMjacker zero-click via the legacy S@T browser SIM applet — that are invisible to the Mobile Verification Toolkit, iVerify, and Lookout running on closed-firmware iOS or stock Android. Open firmware exposes cache and notification-database behavior to user inspection.

FIDO2 hardware authentication. On May 7, 2026 — FIDO Alliance World Passkey Day — five billion passkeys had been deployed across the global ecosystem. YubiKey. Nitrokey. SoloKey. Yubico has shipped more than 30 million hardware keys lifetime. OpenAI added passkeys and hardware keys to ChatGPT on May 4 with a co-branded YubiKey C NFC / C Nano two-pack at approximately $68. Hardware-bound credentials survive SIM compromise; STA1 and STA2 do not bridge to hardware-key-protected accounts because the second factor does not live on the SIM.

Censorship-resistant transports. Tor Browser 15.0.13 + 16.0a6 (May 7 releases — emergency releases fixing critical Linux kernel + Tor Browser + Tor client vulnerabilities). V2Ray VLESS + Reality. Shadowsocks-2022. Trojan. WireGuard with obfsproxy. URnetwork peer-to-peer overlay. URnetwork's February 19 MCP server release lets agentic clients establish VPN sessions over the peer-to-peer overlay, abstracting the transport entirely from the carrier layer. Iran's Internet Pro tier, Russia's April 15 VPN-detection law operational at Yandex / VK / Sberbank / Gosuslugi, the May 1 mobile VPN surcharge, China's April Great Unplug (拔线潮), the EU's Going Dark proposal dropping summer 2026 — the user-controlled overlay does not appear in any of these statutes because it does not appear as a public service or registered operator.

Privacy-preserving currencies on user-custody primitives. Bitcoin BIP324 v2 (default-on since Core 27.0; the majority of global Bitcoin peer-to-peer traffic is now encrypted). Bitcoin BIP352 silent payments (receive and send in Core 28.0+, with BIP376 PSBTv2 tweak data fields and BIP392 descriptor format added in 2026; Cake Wallet first mobile implementation; BlueWallet shipped support). Monero FCMP++ in active integration; the Trail of Bits audit started May 11 and runs through May 22 — currently in day 7 of 11 — replacing ring signatures with full-chain membership proofs whose anonymity set is the entire UTXO set (more than 150 million transaction outputs). Zcash Crosslink Milestone 4 (developing staking + tokenomics with PoW + BFT finality already integrated); Vitalik Buterin made his second donation to Shielded Labs on February 6, 2026, specifically supporting the Crosslink upgrade.

Local-inference AI on user-controlled compute. DeepSeek V4 Pro (released MIT-licensed April 22, 1.6 trillion total / 49 billion active parameters, 1-million-token context, 80.6 percent SWE-Bench Verified, 90.1 percent GPQA Diamond). DeepSeek V4 Flash (284 billion total / 13 billion active). Mistral Medium 3.5 (April 29, 128 billion parameters, 77.6 percent SWE-Bench Verified). Qwen 3.6 Max Preview (April 27, 201-language multilingual). Qwen 3.6 27B (77.2 percent SWE-Bench Verified). GLM-5.1 (744 billion mixture-of-experts, top-ranked open-source LMArena entry). Kimi K2.6. OpenAI Privacy Filter (April 22, Apache 2.0, 1.5 billion total / 50 million active parameters, browser-runnable via transformers.js plus WebGPU). Where there is no third-party log, there is nothing to subpoena. The OpenAI v. New York Times 20-million-log production order issued January 5 by Judge Sidney Stein remains in force. The Anthropic Claude Cowork May 12 GA and the Claude for Small Business May 14 launch are the corporate-side agentic plane deployment that motivates the local-inference counter.

Federated identity with selective disclosure. W3C Verifiable Credentials 2.0 (Recommendation since May 2025; seven specifications in the family). eIDAS 2.0 BBS+ selective disclosure (IETF finalization in progress). Privacy Pass. The W3C VC Working Group's new April 2026 charter targets Render Method and Confidence Method Recommendations by September 2026. The Mexican CURP Biométrica deadline of June 30 (43 days from today, tying ~127 million mobile lines to face, fingerprint, and iris biometrics) is the threat model. The Apple Wallet mobile driver's license rollout (thirteen states plus Puerto Rico live as of May 1, 2026; TSA acceptance at 250+ airports) is the closer-to-home threat model. Don't upload identity to the vendor.

Self-hosted services. Matrix homeserver. Forgejo. Mailcow. Jitsi. Nextcloud. Mautic. SuiteCRM. Moodle community. Open edX. Federation bounds the blast radius of any single vendor compromise. The Canvas / Instructure 8,809-institution single-perimeter ransom that Instructure paid on May 11 is the threat model.

Mesh and satellite at the carrier layer. Briar. Bridgefy. Meshtastic. Reticulum. GoTenna PRO. Starlink. Iran's Internet Pro tier, the Sudan Khartoum tower power-out, the Russia 21-oblast Victory-Day cuts, the Tanzania 5-day complete internet blackout that enabled 518-plus deaths — the carrier-independent layer is the structural counter.

Cryptographic agility ahead of the September 21 FIPS sunset. ML-KEM (FIPS 203), ML-DSA (FIPS 204), SLH-DSA (FIPS 205) standards live since August 2024. The average FIPS 140-3 validation cycle is approximately 542 days at the early-2024 baseline. Pre-emptive post-quantum-secure primitive deployment is the only path through the FIPS sunset.

The moral anchor

On May 7, 2026 — the same day Microsoft remediated the three Critical M365 Copilot CVEs, the same day Tor Browser 15.0.13 and 16.0a6 shipped emergency security updates, the same day five billion passkeys reached deployment milestone — Keonne Rodriguez published a letter from FPC Morgantown federal prison camp. Rodriguez is the co-founder of Samourai Wallet, the now-shuttered Bitcoin privacy wallet. He is five months into a sixty-month sentence. His co-founder, William Lonergan Hill, is serving forty-eight months. The two forfeited approximately $6.37 million in fees from Samourai's Whirlpool and Ricochet privacy operations. Rodriguez's letter — addressed to the Bitcoin community — asked for help with $2 million in accumulated legal debt. He acknowledged that hopes for a presidential pardon have effectively faded.

The Samourai Wallet prosecution is the production case for criminalization of user-custody privacy primitives. The Tornado Cash prosecution is the parallel case: Roman Storm was convicted in August 2025 of conspiracy to operate an unlicensed money-transmitting business; the jury deadlocked on the conspiracy-to-launder and sanctions-violation charges; the October 2026 retrial is pending; Judge Failla has been considering Storm's acquittal motion since April 9 oral arguments.

The criminalization of the user-custody primitive operator does not eliminate the user-custody primitive. Bitcoin BIP352 silent payments, BIP324 v2 encrypted P2P, and the Monero FCMP++ upgrade are protocol-level, not operator-level. The protocol cannot be prosecuted. But the developers who maintain it can.

In the villa in Ouagadougou, Atiana Serge Oulon was beaten with tree branches over weeks.

In Tanzania, 518 people died during a 5-day complete internet blackout.

In Iran, eighty days have passed since the carrier-layer Internet Pro tier divided the population into a white-SIM caste and the rest.

The user-side primitive stack is not abstract. It is the architectural counter to the deployment plane, the carrier layer, the breach surface, the export jurisdiction, the recipient country, the prosecuted operator, and the unwritten policy clock.

Closing

Three doors closed Thursday. The fourth did not.

The Bartz template was approved-ish — the cruising-toward-approval template for $1.5 billion AI-training-data compensation at $3,000 per registered copyrighted work and 92.77 percent claims rate. Claude for Small Business was wired into the QuickBooks / PayPal / HubSpot / Canva / DocuSign operations stack of every small business. The Digital Euro PSP applications closed at 17:00 Central European Summer Time, ten to thirty PSPs to be selected for the twelve-month H2 2027 pilot of programmable retail central-bank-issued currency.

The FISC § 702 March 17 opinion's fifteen-day expedited declassification window passed without publication. The Section 702 sunset is twenty-five days away.

May 22, June 12, June 26, June 30, July 1, July 1, August 2, September 21 — the clocks run.

Naming the procedural convergence is the journalistic accountability response. The user-side primitive stack is the technological accountability response. They run in parallel.

Open clients. Open firmware. Hardware keys. Censorship-resistant transports. Privacy-preserving currency. Local-inference AI. Federated identity with selective disclosure. Self-hosted services. Mesh and satellite. Cryptographic agility.

What Thursday closed was the procedural alignment of corporate AI deployment, AI compensation template, programmable monetary infrastructure, and surveillance oversight on overlapping calendars.

The user-side primitive stack does not depend on which way they run.


URnetwork is a peer-to-peer overlay for censorship-resistant transport that does not appear in the public-service operator registry of any of the statutes named above. URnetwork's MCP server release of February 19, 2026 lets agentic clients establish VPN sessions over the overlay, abstracting transport from the carrier layer.

https://ur.io

Further Discussion

What Thursday Closed

Three doors. May 14, 2026. Eight hours. **9 a.m. Pacific — Courtroom 12, San Francisco Federal Courthouse.** Judge Araceli Martínez-Olguín convened the Bartz v. Anthropic fairness hearing on the $1.5 billion class settlement. 482,460 registered copyrighted works at approximately $3,000 per work. Claims rate at the day of the hearing reached 92.77 percent. 447,576 claimed works per lead attorney Justin Nelson. The judge focused her questions on attorneys' fees and the settlement's cost structure rather than the contours of the deal or the unsealed objections — foreign-works exclusion, group-registration undercounting, $3,000-per-work fairness, coercive notice. The hearing "appears to cruise" toward final approval per Words and Money. The judge did not rule from the bench. The Bartz template becomes the structural baseline for OpenAI, Google, Meta, Cohere, Mistral, and open-source AI-training-data settlements. **Some hours later — Anthropic's announcement.** Claude for Small Business. Pre-built workflows wired into QuickBooks for accounting and finance, PayPal for payments and receivables, HubSpot for customer relationship management, Canva for creative and brand, DocuSign for legal agreements. Anthropic's agentic platform is now in the operations stack of every lean team and solo founder. The launch follows the May 12 Claude Cowork general availability into SCIM identity-management, OpenTelemetry, and Microsoft Intune for enterprise. The companion: The Founder's Playbook, Anthropic's argument that AI has "rebooted" the startup lifecycle. The parallel OpenAI deployment is Workspace Agents — April 22 launch for ChatGPT Business, Enterprise, Edu, Teachers — connecting Slack, Google Drive, Microsoft apps, Salesforce, Notion, Atlassian Rovo. Both major corporate AI providers are wiring their agentic platforms into the financial, communications, customer-relationship, creative, and legal day-to-day workflow of the U.S. economy in the same week the Bartz compensation template is being approved. **17:00 Central European Summer Time — the European Central Bank.** Applications closed for the Digital Euro Payment Service Provider pilot. The call had been open since March 5, 2026 — a 70-day window. Between ten and thirty PSPs will be selected for the twelve-month pilot in the second half of 2027. The development phase begins Q3 2026. The architecture is programmable retail central-bank-issued currency — PSPs can enforce limits, conditions, and traceability on individual transactions in software at the protocol layer. MiCA full enforcement July 1, 2026. Travel Rule zero-threshold operational since December 2024. **Three doors closed.** **The fourth — the FISC § 702 March 17 opinion declassification window — did not.** On April 30, Senator Wyden secured a deal: the FISC's classified opinion on FBI Section 702 query practices would be declassified within fifteen days of the extension's passage. The 45-day Section 702 extension passed House 261-111 on April 30. Senate Cotton objected to UC passage with Wyden's declassification provision attached, meaning the DNI and DOJ formally could decline the committee's request. The 15-day window: April 30 to May 15. As of today, May 18, 2026, the opinion has not been declassified. The Section 702 sunset is twenty-five days away. June 12. What was already running on the day three doors closed: Iran day 73 (today day 80) of the longest internet blackout on record, with the Internet Pro IRGC/MCI white-SIM caste tier in operational production and three-to-four-hour queue times at SIM-conversion offices. Russia's mobile VPN surcharge effective May 1 — 150 rubles per gigabyte above 15 GB per month — alongside the April 15 ISP VPN-detection law operational at Yandex, VK, Sberbank, Gosuslugi, Ozon, Wildberries, Aviasales, Russian Railways. China's "Great Unplug" 拔线潮 — physical disconnection of thousands of proxy servers in April. Niger's May 8 suspension of nine international media outlets including France 24, RFI, AFP, TV5 Monde, Jeune Afrique, Mediapart, LSI Africa, TF1 Info, France Afrique Média. Burkina Faso's May 5 ban on TV5 Monde; Reporters Without Borders' May 6 report on Atiana Serge Oulon, the Burkinabé journalist beaten with tree branches over weeks inside a villa in Ouagadougou turned makeshift prison. Pakistan NCCIA Punjab's May 6 arrest of thirteen people under PECA in Lahore, Gujranwala, Faisalabad, Multan. Tanzania's Commission of Inquiry report on the post-October-29-2025 election violence — 518 confirmed deaths, including 21 children, during a five-day complete internet blackout — remains withheld from public release. What's coming after May 18: May 22 ends the Monero FCMP++ Trail of Bits audit. June 12 is the Section 702 sunset, 25 days. June 26 is the Microsoft Secure Boot certificate cliff, 39 days. June 30 is the Mexico CURP Biométrica deadline, 43 days. July 1 is MiCA full enforcement and Apple Declared Age Range API enforcement in Louisiana and Utah, 44 days. August 2 is EU AI Act GPAI enforcement, 76 days. September 21 is the FIPS 140-2 sunset, 126 days. Six major policy, firmware, and regulatory clock events in a nineteen-day window from June 12 to July 1. What hasn't closed: Sysco's silence (six days past Qilin's proof-of-access posting, no SEC Item 1.05). Foxconn's confirmed 8-terabyte Nitrogen cyberattack on Mount Pleasant Wisconsin and Houston Texas facilities. Salt Typhoon "still very, very much ongoing" per FBI May 2026 — 200+ targets in 80+ countries. M&S / Co-op / Harrods DragonForce aftermath through July. Cushman & Wakefield ShinyHunters via Salesforce 500,000+ records. The DPRK Lazarus Group's $587 million combined from Drift Protocol April 1 ($295M) and Kelp DAO April 18 ($292M) — 76 percent of all 2026 cryptocurrency hack value year-to-date per TRM Labs. Three Critical Information Disclosure CVEs in Microsoft 365 Copilot — CVE-2026-26129, CVE-2026-26164, CVE-2026-33111 — disclosed and fully remediated May 7. When the agentic AI aggregates content across trust boundaries, the aggregator is the vulnerability surface. Three doors closed Thursday. The Section 702 declassification window did not. The accountability template, the deployment plane, the programmable money infrastructure, and the surveillance court oversight are on overlapping calendars in May 2026 because the procedural alignment is not coincidental. What Thursday closed was the procedural alignment. The clocks keep running.

The Twenty-Five-Day Stack

Twenty-five days to Section 702 sunset. Thirty-nine days to the Microsoft Secure Boot certificate cliff. Forty-three days to Mexico CURP Biométrica. Forty-four days to MiCA full enforcement. Forty-four days to Apple Declared Age Range API enforcement in Louisiana and Utah. Seventy-six days to EU AI Act GPAI enforcement. One hundred twenty-six days to the FIPS 140-2 sunset. The user-side primitive stack is the deployment-independent counter to all of it. **Open clients with user-held keys.** Signal. Tuta. Proton. Threema. Briar 1.5.17 — the March 12, 2026 release runs over Bluetooth, Wi-Fi, and Tor and functions during carrier-layer shutdowns because it does not depend on the carrier layer to forward messages. Cwtch. Session. Matrix homeserver. The Meta Instagram E2EE termination of May 8 demonstrated that even existing E2EE can be regulatorily compelled away from a major platform. Open clients with user-held keys do not have the architectural surface for that compulsion. **Open firmware on user-inspectable chips.** GrapheneOS — Pixel 6+ with Android 16 in 2026030501 preview, with April through August 2026 Android Security Bulletins included. CalyxOS Android 16 test build 7.2.1.0 released May 4, 2026. /e/OS. LineageOS. OpenWRT. The Citizen Lab "Bad Connection" report of April 23, 2026 documented two carrier-side surveillance campaigns — STA1 Diameter-to-SS7 downgrade across nine countries acting as "ghost operators," STA2 SIMjacker zero-click via the legacy S@T browser SIM applet — that are invisible to the Mobile Verification Toolkit, iVerify, and Lookout running on closed-firmware iOS or stock Android. Open firmware exposes cache and notification-database behavior to user inspection. **FIDO2 hardware authentication.** On May 7, 2026 — FIDO Alliance World Passkey Day — five billion passkeys had been deployed across the global ecosystem. YubiKey. Nitrokey. SoloKey. Yubico has shipped more than thirty million hardware keys lifetime. OpenAI added passkeys and hardware keys to ChatGPT on May 4 with a co-branded YubiKey C NFC / C Nano two-pack at approximately $68. Hardware-bound credentials survive SIM compromise; STA1 and STA2 do not bridge to hardware-key-protected accounts because the second factor does not live on the SIM. The ICE Project SAFE HAVEN $12.2 million Edge Ops LLC contract for mapping migrants' "daily routines, habits, and real-time locations" is the threat model. **Censorship-resistant transports.** Tor Browser 15.0.13 and 16.0a6 — the May 7 releases that emergency-fixed critical Linux kernel, Tor Browser, and Tor client vulnerabilities. V2Ray VLESS + Reality. Shadowsocks-2022. Trojan. WireGuard with obfsproxy. **URnetwork peer-to-peer overlay.** URnetwork's February 19, 2026 MCP server release lets agentic clients establish VPN sessions over the peer-to-peer overlay, abstracting transport entirely from the carrier layer. Iran's Internet Pro tier, Russia's April 15 ISP VPN-detection law plus the May 1 mobile surcharge of 150 rubles per gigabyte above 15 GB per month, China's April "Great Unplug" 拔线潮, the EU's Going Dark / ProtectEU proposal dropping summer 2026 — none of these statutes name the overlay because it does not appear as a public service or registered operator. The user-controlled overlay is statute-invisible. **Privacy-preserving currencies on user-custody primitives.** Bitcoin BIP324 v2, default-on since Core 27.0; the majority of global Bitcoin peer-to-peer traffic is now encrypted. Bitcoin BIP352 silent payments — receive and send in Core 28.0+, with BIP376 PSBTv2 tweak data fields and BIP392 descriptor format added in 2026. Cake Wallet first mobile implementation; BlueWallet shipped support. Monero FCMP++ in active integration; the Trail of Bits audit started May 11 and runs through May 22 — currently day 7 of 11. FCMP++ replaces ring signatures with full-chain membership proofs whose anonymity set is the entire UTXO set — more than 150 million transaction outputs, compared with the 16-decoy ring signatures used today. A clean audit eliminates the last significant technical objection to Monero's protocol-level privacy claims. Zcash Crosslink Milestone 4 — developing staking and tokenomics with PoW + BFT finality already integrated; Vitalik Buterin made his second donation to Shielded Labs on February 6, 2026, specifically supporting Crosslink. Samourai Wallet co-founder Keonne Rodriguez's May 7 letter from FPC Morgantown federal prison, asking the Bitcoin community for $2 million in legal-debt support — pardon hopes faded — is the threat model for what happens when user-custody primitives are criminalized. **Local-inference AI on user-controlled compute.** DeepSeek V4 Pro — released MIT-licensed April 22, 1.6 trillion total / 49 billion active parameters, 1-million-token context, 80.6 percent SWE-Bench Verified, 90.1 percent GPQA Diamond. DeepSeek V4 Flash — 284 billion total / 13 billion active. Mistral Medium 3.5 — April 29, 128 billion parameters, 77.6 percent SWE-Bench Verified. Qwen 3.6 Max Preview — April 27, 201-language multilingual. Qwen 3.6 27B — 77.2 percent SWE-Bench Verified. GLM-5.1 — 744 billion mixture-of-experts, top-ranked open-source LMArena entry. Kimi K2.6. OpenAI Privacy Filter — April 22, Apache 2.0, 1.5 billion total / 50 million active parameters, browser-runnable via transformers.js plus WebGPU. Where there is no third-party log, there is nothing to subpoena. The OpenAI v. New York Times 20-million-log production order issued January 5 by Judge Sidney Stein remains in force. The Anthropic Claude Cowork May 12 GA into SCIM, OpenTelemetry, Intune — and the Claude for Small Business May 14 launch into QuickBooks, PayPal, HubSpot, Canva, DocuSign — are the corporate-side agentic plane deployment that motivates the local-inference counter. **Federated identity with selective disclosure.** W3C Verifiable Credentials 2.0 — Recommendation since May 2025, seven specifications in the family. eIDAS 2.0 BBS+ selective disclosure in IETF finalization. Privacy Pass. The W3C VC Working Group's April 2026 new charter targets Render Method and Confidence Method Recommendations by September 2026. The Mexican CURP Biométrica deadline of June 30 — 43 days from today, tying approximately 127 million mobile lines to face, fingerprint, and iris biometrics — is the threat model. The Apple Wallet mobile driver's license rollout (thirteen states plus Puerto Rico live as of May 1, 2026; TSA acceptance at 250+ airports) is the closer-to-home threat model. Don't upload identity to the vendor. **Self-hosted services.** Matrix homeserver. Forgejo. Mailcow. Jitsi. Nextcloud. Mautic. SuiteCRM. Moodle community. Open edX. Federation bounds the blast radius of any single vendor compromise. The Canvas / Instructure 8,809-institution single-perimeter ransom that Instructure paid on May 11 — receiving "shred logs" for 3.65 to 6.65 terabytes covering 275 million records — is the threat model. **Mesh and satellite at the carrier layer.** Briar. Bridgefy. Meshtastic. Reticulum. GoTenna PRO. Starlink. The Iran Internet Pro tier, the Sudan Khartoum tower power-out, the Russia 21-oblast pre-Victory-Day cuts, the Moscow mobile and SMS shutdown on May 9, the Tanzania five-day complete internet blackout that enabled 518-plus deaths during the post-October-29-2025 election violence — the carrier-independent layer is the structural counter. **Cryptographic agility ahead of the September 21 FIPS sunset.** ML-KEM (FIPS 203). ML-DSA (FIPS 204). SLH-DSA (FIPS 205). Standards live since August 2024. The average FIPS 140-3 validation cycle is approximately 542 days at the early-2024 baseline. Pre-emptive post-quantum-secure primitive deployment is the only path through the FIPS sunset. Twenty-five days to the Section 702 sunset. Thirty-nine days to the Microsoft Secure Boot certificate cliff. Forty-three days to Mexico CURP Biométrica. Forty-four days to MiCA full enforcement. Forty-four days to Apple Declared Age Range API enforcement in Louisiana and Utah. Seventy-six days to EU AI Act GPAI enforcement. One hundred twenty-six days to the FIPS 140-2 sunset. The user-side primitive stack does not depend on which way those clocks run. Open clients. Open firmware. Hardware keys. Censorship-resistant transports. Privacy-preserving currency. Local-inference AI. Federated identity with selective disclosure. Self-hosted services. Mesh and satellite. Cryptographic agility. In Ouagadougou's villa, Atiana Serge Oulon was beaten with tree branches. In Tanzania, 518 people died during a 5-day complete internet blackout. In Iran, 80 days have passed since the carrier-layer Internet Pro tier divided the population into a white-SIM caste and the rest. In Mexico, June 30, the biometric is the new SIM. The procedural calendars run. The user-side primitive stack runs deployment-independent.

Comics

#1What Thursday Closed
#2The Twenty-Five-Day Stack