IDM: +------------------------------------------------------------------------------+| ETHEREUM FOUNDATION MANDATE |+------------------------------------------------------------------------------+The Ethereum Foundation MandateCHAPTERS I. ETHEREUM -------------------------------------------------------------------------------- II. OUR ROLE -------------------------------------------------------------------------------- III. OUR MANDATE -------------------------------------------------------------------------------- IV. PRINCIPLES FOR ACTION -------------------------------------------------------------------------------- V. CARRYING OUT THE WORK -------------------------------------------------------------------------------- VI. RESOLVING QUANDARIES -------------------------------------------------------------------------------- VII. THE FUTURE -------------------------------------------------------------------------------- VIII. CLOSING -------------------------------------------------------------------------------- I. ETHEREUM --------------------------------------------------------------------------------Ethereum was born out of a dream. A dream for freedom.Not just for one, not just for many, but for all who are ready to grasp it withtheir own hands.Its creators realized that the armamentarium of freedom was missing two vitaltools: self-sovereign computation, and the computational ability to coordinateat scale without violating anyone else’s own sacrosanct self-sovereignty.Only if a user had the final say over their own computation - their data, theirassets, their instructions, their identities, their agents, their essentialdigital gestalt, and the right to exit from any system that proves unfavorableto those things - would they have any chance in the brave new electronic world,of being able to live in the way they truly want and deserve.If you want only self-sovereignty of computation, and do not need to coordinate,then you can run applications locally on your own machine - and in manysituations this is the correct approach. If you want to coordinate, but do notmind being at the whims of centralized, unaccountable power, then we will onlysay that centralized platforms can often provide excellent user experience.The value of Ethereum is precisely in the space of computational needs where weneed both.Money was the first application. Money requires coordination, because it has nomeaning without someone else to recognize both the asset itself, and theblockchain as a living registry of who owns that asset. And money requires self-sovereignty, because the losses from having one’s money arbitrarily inflatedaway, frozen or simply expropriated are so high.Ether is a store of value and money, that also happens to be an application -and there have been, and will be, many, many more. This includes those imaginedin the Ethereum Whitepaper, those described and built over the last twelveyears, and others not yet conceived of - and Ethereum will be home to all ofthem.Ethereum honors its first promise, to enable self-sovereignty, by beinghumanity’s common computational substrate that anyone can interact withtrustlessly, permissionlessly, and persistently.This is what is meant by “The World Computer.”On this foundation Ethereum honors its second promise: allowing theinfrastructures of self-sovereign coordination to arise and thrive in any formimaginable and expressible - unmolested, unimpeded, and undisturbed - withoutviolating any individual’s freedom.Ethereum is meant to be a liberatory technology - not just from power relationsthat are imposed without true consent or where dissent imposes a heavy price,but even more importantly, from attempts to order reality itself in a way thatleaves no alternative.And the Ethereum Foundation exists to ensure Ethereum remains resilient enoughto be so. II. OUR ROLE --------------------------------------------------------------------------------The Ethereum Foundation is the original steward of the Ethereum project.We helped grow Ethereum from its early days as a seedling software project intotoday’s infinite garden that countless participants use to grow their ownprojects - and we did this by making deliberate, considered choices, with theaim of inspiring others to become fellow custodians of a vibrant, open, andinfinite commons.The underlying principles that led us to conceive of, invent, then stewardEthereum, and the unwavering belief that it is possible to build and maintain abetter world without caprice or coercion - could have led to many destinationsother than Ethereum, whether in computing, communications, artificialintelligence, education, health, expression in all its forms, and many otherdomains.By asking ourselves “if we had these principles, and we operated in a differentdomain, what would we create?”, then seeing what things in our existing worldcome closest, we can start to find our natural allies.But to find dependable allies, not merely allies of convenience that remain foronly one finite round of the infinite game, we need to be clear about what ourprinciples are, and this document is where we express and enshrine them.The Foundation is not the parent, owner, or ruler of Ethereum. We are not “thesystem” itself.Our role is to coordinate, to provide substrate, and to offer context that helpsanyone who shares our purpose to work together - without creating a centralizingbottleneck, and without collapsing into a monoculture that drifts toward goalsmisaligned with Ethereum’s core promises.The Foundation exists to ensure Ethereum becomes, and stays, a decentralized andresilient civilizational foundational infrastructure - part of the bedrock onwhich broader self-sovereignty can be built, alongside other requirements likeclean air, water, energy, freedom of communication, and access to knowledge.Our ultimate goal is for Ethereum to pass the walkaway test: its protocol andcore application layers become robust and trustless enough that they wouldcontinue to reliably function and evolve even if the Foundation and today’s coredevelopers disappeared tomorrow.We are a real non-profit - independent, with no other agenda. We rejecttemptations around flows of value, even when they are framed as reasonablerewards, or as necessary for alignment or self-perpetuation. We consider themantithetical to our mission and our legal constitution. These are slipperyslopes to arbitrary extraction and insidious capture, with many such casesexemplified elsewhere. Our enduring assets are our legitimacy and virtue, and wewill not risk or squander them.Our bottom line is not profit, nor organizational growth, nor blind adoption atall costs. We support adoption insofar as it does not contravene our mandate.Our bottom line is the mission of securing Ethereum’s resilience.Our primary and secondary measures of success are how much self-sovereignty, andhow much sovereignty-preserving coordination at scale, Ethereum resilientlyenables - both with and without the Foundation.This document is primarily for members of the Foundation: a clarification of ourpre-existing purpose, and a practical guide for translating mission andprinciples into action, in the context of not just being stewards of Ethereumbut also fellow travelers on the path of freedom, empowerment, and human well-being.We write it for the present onwards. We acknowledge we have not always succeededin the past, but we will succeed going forward. III. OUR MANDATE --------------------------------------------------------------------------------The Ethereum Foundation’s mandate is twofold.The first aim is to ensure Ethereum becomes and stays a decentralized andresilient tool for self-sovereignty: our first fundamental principle is that auser has the final say over their identities, assets, actions, and agents.It is certain that Ethereum will be used in many other ways, but we believeapplications only become truly meaningful if they rest on this inalienablefoundation of user self-sovereignty.It is therefore necessary for us to ensure that Ethereum upholds and containsthe following properties:Censorship ResistanceOpen Source and Free, as in FreedomPrivacySecurityWe hold that these properties - CROPS - must remain, as an indivisible whole,the sine qua non of all Ethereum’s development priorities, which cannot bedisplaced.They are Ethereum’s most important properties and are inseparable from itssuccess.Therefore, we ourselves must embody these properties as a guiding principle andprioritize them in all our decisions.The second aim is scaling the guaranteed availability of self-sovereignty tousers ready to exercise it directly.This is our second fundamental principle: that unstoppable self-sovereignty mustbecome possible for those who choose it, at the scale and in the form that theywant it, without violating anyone else’s.We believe that self-sovereignty is positive, is positive-sum, and that self-sovereignty at scale is the dominant positive-sum strategy.We believe that self-sovereignty is competitively scalable without compromise onCROPS, and that sovereignty-preserving coordination at scale is possible.We believe that self-sovereignty stacks on top of itself on multiple overlappingscales: individuals, families, local communities, enterprises, nations,religions, world-spanning internet communities all deserve their space tomaintain their own internal accounting and to interact with each other on theirown terms.We further believe these views are shared by a critical mass of people. WhileEthereum is permissionless, the Foundation will remain focused on working withthose who share our vision and sense of mission.We recognize that self-sovereignty itself is just one crucial component of agreater goal - namely, human empowerment and well-being - championed by loosecoalitions of builders of a brighter future.Only through being a decentralized and resilient self-sovereignty tool, imbuedthroughout with CROPS, and unstoppable at scale while preserving individualfreedom, can Ethereum’s essential nature be recognized: a secure, user-alignedWorld Computer that can be shared with all who want it.And only through the Foundation enshrining its principles and vision for all tosee, can it be most effective in ensuring Ethereum blossoms.Our Mandate is written for a thousand-year horizon. Principled adherence issubject to drift and erosion over time - like water, standards tend to flow fromhigh to low, and are far easier to lose than to regain. We are starting as highas we can, to slow any long-run erosion over centuries, so we do not expect anymaterial compromise within our lifetimes. ✧・゚: *✧・゚:* ♡ *:・゚✧*:・゚✧ (´。• ω •。`) ) つ ( / ) しーJ ✧・゚: *✧・゚:* ♡ *:・゚✧*:・゚✧SOURCE SEPPUKU LICENSEBy inclusion of this license, the author, maintainer, editor or (re)distributor(the “Actor”) of this software SHALL uphold the following pledges:To always make freely available and publicly accessible a full and accurate copyof the source code and associated documents of this software, including allmodifications hereto by the Actor.To take his or her own life with a sword upon failure to uphold any of thepledges in this license, or upon modification or removal of any part of thislicense.May the Foundation fall on its own sword if it fails to uphold its solemnpromise to Ethereum.✧・゚: *✧・゚:* ♡ *:・゚✧*:・゚✧ (´。• ω •。`) ) つ ( ー) しーJ /│\ ✧・゚: *✧・゚:* ♡ *:・゚✧*:・゚✧ IV. PRINCIPLES FOR ACTION --------------------------------------------------------------------------------Our Mandate rests on two pillars, each comprising four principles.Everything we do - technical work both at the protocol layer and elsewhere,community support, and decision-making - must be derived from and answer tothese twin pillars and their principles, with CROPS treated as non-negotiable.Technical PillarCensorship Resistance: No actor can selectively exclude valid use or breakfunctionality, including by gaining durable, non-competitive control of anycritical mechanisms.All work must be architected to be maximally unstoppable and to function withoutincorporating centralized intermediaries or kill switches.The provision of unstoppability should itself be censorship-resistant to avoidit becoming an anticompetitive and extractive game of selectively providingcensorship-resistance to the compliant, to cartels, or to highest bidderswithout proper competition.Censorship resistance also includes technical resistance to extra-technicalpressure, such as social mores or legal restriction. The protocol relies oncryptographic guarantees for its resilience and neutrality, not on the temporalconcerns of the political context. Our work must protect the protocol fromattempts to replace fundamental physical properties with short-term brittlemechanisms to try to achieve the same thing.Open Source and Free, as in Freedom: No privileged code or hiddenspecifications.All work must be public and auditable: no proprietary “black boxes.” All workmust also be forkable: Ethereum’s credibility depends on predictable exit paths,and systems that aren’t open and free have unacceptable friction to forking.Supported projects must pledge that they will not change their open source orcopyleft license in the future. Permissive licenses are accepted, viral copyleftlicenses are appreciated, but merely source-available licenses are nottolerated.Privacy: User data is not exposed beyond necessity or against their interests.We strongly advocate for maximal privacy to become the default for user data tothe greatest extent possible: first in any tools that sit above the protocolthat the Ethereum Foundation builds, and then ultimately in the protocol itselffrom the very core on out.The purpose of privacy is to prevent structural power asymmetries frominfringing on self-sovereignty and self-sovereign coordination. History shows usthat the wielders of power, once they gain the ability to restrict or even de-normalize privacy, will never surrender the advantage they obtain. Hence,privacy must be permissionless and available to all.Privacy is not about total concealment of everything. It is about freedom andtrue consent: to choose what information to disclose to whom, on one’s ownterms. In our day-to-day lives, we often disclose information, or prove claimsabout ourselves, to participate with others, or to build relationships on trust,gradually.However, we believe that end users should always selectively negotiate theirdisclosures, and that this should only be supported on top of a base of freelyavailable, unconditional privacy.Security: Things must do what they claim to do, no more and no less.Security is paramount. We advocate rigorous security design at both the protocoland application layers to prevent harm to users and preserve system integrity.We invest deeply in testing and verification, using multiple methods to specifydesired properties and confirm that designs satisfy them.Security requires simplicity, including responsible minimization of lines ofcode and external dependencies; a protocol is not “trustless” if only a smallnumber of people can understand how it works and why it is secure. Work must beverifiable to many. Entirely new domains for the protocol must clear anextremely high necessity threshold, and do so legibly.Security also means governance minimization; no social layer should overrideprotocol guarantees lightly.Security additionally means passing the walkaway test, not just for theprotocol, but also for users: self-sovereignty means a user should not be forcedinto frequent, complex migrations that create unintended risks.True security protects both system and users from technical failure, socialentrapment, and coercion.We must always remember that the ultimate goal is for Ethereum to pass thewalkaway test. Achieving this needs, among other things, intermediaryminimization and structural decentralization, and the best way to achieve thatis to build with our CROPS principles in mind.Social PillarPrincipled Alignment: Our first principle is that we are principled in our work.We focus on work which embodies our principles and not on work which allowsprivate capture or uncompetitive user extraction.We value the quality of principle-upholding resilience over the quantity ofusers or the optimization-for-value of design.A billion users in a centralized silo is not a success; designing around theenshrinement of centralized extraction pipelines in the protocol is not asuccess; it is a failure of mission.Discipline: We care about doing it right and doing it well.We are truth-seeking and beauty-seeking in our work. We demand technical rigor,excellence, and creativity.We choose relevant timing over either going fast or going slow, which mayinclude not acting at all. We share research and results quickly; we make surewhat we ship is mission-critically reliable.We exercise courage to make hard, potentially unpopular, decisions based onprincipled assessments rather than market pressure or institutional comfort. Weaccept that rejecting and reforming compromised defaults is part of our work. Wedefend our decisions with patience and truthfulness.We also admit when we get things - particularly big things - wrong, withhumility, grace, and an honest and clear explanation of why our views havechanged and what our new views are.We pair high standards with kindness: resilient systems are built by people whocan disagree clearly without cruelty and who can stay curious when underpressure.Right Association: Who we work with is itself a principled choice.We prioritize working with individuals and teams who share our principles,spread them, and make their work legible through comprehensive and opendocumentation even in challenging conditions.For projects dependent on support from the Foundation, we prefer to work moreclosely with those who also actively work to achieve independence from us.Right association also means we prefer to focus on individuals, teams, andprojects that share our principles but operate in different domains, over thoseindividuals, teams, and projects who are in crypto, but operate according to avery different set of standards.Big Picture: We remember that Ethereum’s future is bigger than its present.Our horizon is broader than crypto: Ethereum’s promise only holds if it servesself-sovereignty beyond any one subculture, asset class, or industry.The World Computer is decentralized infrastructure for permissionless compute,communication, and association, and it naturally connects to builders who upholdthose freedoms: open source projects, privacy and cryptography researchers,civil liberties defenders, educators and public-interest technologists, buildersof resilient local communities, and the quiet maintainers of civilization whokeep essential systems and traditions running.We remember that we require of them no aesthetic conformity, only principledalignment: when people share the instinct to keep systems forkable, censorshipresistant, private, and secure, we treat them as fellow travelers of the pathand fellow stewards of the infinite garden.Our loose coalition does not need to be put together. It is together. V. CARRYING OUT THE WORK --------------------------------------------------------------------------------ApproachOur operating approach can be summarized as a process of subtraction forresilience.Ethereum is more resilient when it can continue to provide self-sovereignty andsovereignty-preserving coordination at scale without depending on us to guideit.We therefore have a bias toward work that makes us less necessary over time,through a framework that guides our approach:The Only-EF Rule: We focus on critical tasks that have no other natural home andthat no other ecosystem actor can or will reliably undertake. This includes butis not limited to: core protocol upgrades and long-horizon research, neutralmulti-client specs and tests, public-good security work, crisis coordination,preventing chokepoints, and core dev tooling and documentation where nosustainable owner exists. We check that these tasks are actually critical.Handoff for Ecosystem Maturity: As soon as a function or role can besuccessfully managed by an aligned community actor, we facilitate thattransition, so capability and responsibility diffuse through our ecosystemrather than concentrate in one place.Independent Inspiration and Reliability: We work across varied domains ratherthan in a narrowly hierarchical manner - the glue that connects us is ourmission, not our structure. We hire individuals who are deeply aligned with themission. We prize those individuals who operate with high integrity andflexibility, as in our experience, they have been the most effective in rapidlychanging conditions and are the most reliable during uncertainty.Compounding Effects: We prioritize efforts that are as far upstream and highleverage as possible, by making sure the research, documentation, coordination,and infrastructure we support can be freely reused, extended, and operatedindependently. This can include supporting shared primitives, specifications,tooling, and evaluation methods that reduce avoidable friction and createnetwork effects for those who share our principles. When we work downstream, itis on making CROPS-native affordances competitive and viable for adoption.Subtraction as Success: Our goal is to reduce the Foundation’s relativeinfluence over time. This is not retreat or sabotage. Subtraction is rather aprocess of ensuring Ethereum’s maturity: a trajectory of growth withdecentralization, robust enough to outgrow and outlast us, however long this maytake.Doing subtraction well is challenging.At first glance, there seems to be a tension between stewarding something togrow into the infinite, and deliberately diminishing one’s own presence. It isan especially unusual act from an organization of our type and current influence- the landscape of contemporary corporate philanthropy is littered with eternalfoundations and institutes. Many will be discomforted and ask, “if the EthereumFoundation, with its stature and legitimacy, doesn’t strive to stay front andcenter, then who else realistically could?”There are also concrete instances of failure in subtraction in the past. Therehave been many attempts to create alternative stewards within Ethereum that havedied out, and there have been many attempts, both within the Ethereum ecosystemand far outside it, to nurture federated ecosystems with multiple actors, thatended up unable to get past the stage of one of them dominating far above theothers. These failures each have valuable lessons that we must honestlyrecognize, and learn from.Yet, we believe, and history shows us time and again, that the only way to growa garden into something truly infinite is to choose subtraction. Ethereum’sresilience and therefore runaway growth can only truly arise where there is nosingle indispensable entity responsible for the ecosystem’s success. History isfilled with examples of transition stages that started off temporary then becamepermanent. For decentralization to truly take root, we must keep growing towardit today, not tomorrow.This does not mean our subtraction takes place carelessly and inconsiderately.Subtraction means ecosystem growth that outpaces ours. It requires the higheststandards of observation, planning, and execution. Our subtraction happens whenthe systems we support can attain or have achieved greater resilience withothers, either inside or beyond Ethereum, or without needing anyone at all.Subtraction done well is subtractive of the Foundation, but additive forEthereum. The privilege of stewarding Ethereum must not be hoarded, but sharedand multiplied with others, whether they have been loyal friends since thebeginning or new travelers who have discovered the Infinite Garden.This is why subtraction is a definitive signal of success. The garden can becomebigger, stronger, and more vibrant than any organizations could ever dictate,when the mission of ensuring Ethereum remains humanity’s common computationalsubstrate is shared with all who recognize the future as it should be.The more Ethereum succeeds, the tinier we become; if Ethereum fails, so too willwe perish.Subtraction will occur either way, so we choose success.LimitsOur limits exist for the same reason: Ethereum’s resilience.The Foundation does not build for everyone. We contribute technical expertiseand provide underlying support so those aligned with Ethereum’s self-sovereigntymission - and its potential for sovereignty-preserving coordination at scale -can build Ethereum and build on Ethereum, and so that they in turn can build foreveryone.Our contributions may take many forms, but we are not bound to them - asEthereum evolves, so too will our support.Today, we may support coordination both of the core protocol and beyond it;support education and public portals; close essential funding gaps; or providestewardship in other principles-aligned ways.Tomorrow, we will adapt to do what is necessary, by applying our executionstrategy: identifying and relieving coordination bottlenecks, and preventingcapture of the protocol or ecosystem.In short, we do for Ethereum, what Ethereum is meant to do for its users.To maintain our role as a credibly neutral steward, we operate within clearlimits. We avoid activities that could create a centralized point of control(including ourselves) or compromise Ethereum’s long-term potential.We are NOT a Corporate: We are not a development company. We do not buildconsumer apps. If it can be a sustainable business, it belongs in the community,and use of the protocol must not depend on it.We are NOT a Kingmaker: We support mechanisms and designs that are in line withour mandate and core principles, not specific private brands or companies. Weneither support nor enforce standards that compromise on our principles andgoals.We are NOT an Accreditation Body: We do not certify or endorse projects, teams,or audits. However, we do support the development of mechanisms in line with ourprinciples to help users evaluate security and legitimacy without relying on usto provide stamps of approval.We are NOT a Product Studio: We do not act as a product development laboratoryfor the ecosystem. We think deeply about how users interact with Ethereum anduse this to inform our upstream work on shared primitives, tooling, andfundamental research, all in service of helping builders deliver systems andproducts that are practical to use, sustainably viable, and capable ofaccelerating the availability of a credible alternative that fully embodies ourprinciples.We are NOT a Marketing Agency: We do not engage in hype cycles or promote short-term price action. Our communications are grounded in technical reality, in ourlong-term mission and mandate, and in having fun on the Internet.We are NOT the Boss: We cannot force hard forks or protocol changes. We areopinionated only so as to advocate and propose what’s best for the mission.We are NOT a Government or Regulatory Body: We do not act as a governing bodyfor ecosystem participants.We are NOT a Casino: We do not encourage people to take life-changing, andpossibly life-wrecking, amounts of risk by going into personal debt hyper-gambling. Ethereum has the potential to be a foundation for a secure and freelife; debt promotes the opposite.We are NOT Opportunists: We do not actively assist in adoption of Ethereum inways that compromise trustlessness. We recognize that such adoption may occur,but we apply our expertise in the trust-minimizing end of the spectrum in anycategory we engage with.Tradeoff ConsiderationsThe world Ethereum must function in is not yet CROPS-native.Today, most use of Ethereum flows through partially centralized surfaces:wallets, RPC providers, relays to the MEV-industrial complex, app stores,exchanges, institutions, and the social defaults that surround them.As Ethereum’s growing roots and branches come into contact with centralizedinfrastructure at ever-greater scales, we will face these same dynamicsrepeatedly.We will have to choose, tomorrow as today, whether to take an incrementalistapproach or a nativist approach to growing Ethereum and advancing CROPSadoption.In truth, these are two distinct strands of work: the incrementalist approachaccelerates CROPS by demonstrating to those who are at or prioritize scale thatCROPS increases value; the other directly grows and distributes CROPS, anddevelops and demonstrates further best practices for doing so.Our priority, and the default path for decisions, in line with our mandate andthe Only-EF Rule, is the CROPS-native approach. CROPS-adherence is a compoundingforce: it produces usable self-sovereignty tools and escape hatches, and setsdurable precedents others can later follow. We value usability and performanceimprovements that make sovereignty easier to choose, as long as they do notintroduce new points of leverage over a user or create dependencies.Adoption can be earned over time, but principled ground once ceded is far harderto regain.We leave space within the Foundation for the incrementalist approach only intightly bounded circumstances: as a tactical intervention when it durablyreduces central control, does not result in deeper entrenchment than what itsupersedes, and accelerates the availability of a credible alternative thatfully embodies our principles.Our work must not introduce new chokepoints or entrench existing ones. It mustnot expand or normalize reliance on added trust assumptions, and it must notrequire constant Foundation presence to ensure alignment with our principles.We are skeptical of walled garden projects but we may consider engaging withprojects that advance or innovate access to self-sovereignty for end users, andthat preserve a path for users to default to full self-sovereign control oftheir identity and assets.Work that is more incrementalist may well be valuable for Ethereum’s success andgrowth. There may always be those who want to build walled gardens on the WorldComputer. But the natural home of such work is outside the Foundation. ThisMandate does not preclude working with them, but we must do so in a principledway to promote and secure the self-sovereignty of end users. The underlying goalof our participation should be to engage with our resources and CROPS expertisein order to help make the CROPS properties of such external work stronger.The guiding question is: does this make Ethereum and its users less susceptibleto capture over time, or does it normalize capture in exchange for reach?We must also always consider that doing nothing may be the best course ofaction, and that our energies are better spent elsewhere. Sometimes work in agiven area cannot be one of our priorities.When we encounter adversarial situations, whether within Ethereum or beyond it,we focus on creating structural improvement: building open source tools forself-sovereignty and sovereignty-preserving coordination, with de-totalizationas a matter of principle, rather than acting on opinions about particularconflicts.As individuals, we may hold diverse views shaped by the moment. As theFoundation, we believe that free people, flourishing on the basis of self-sovereignty, are best suited to building worlds worth living in and to carryingfreedom forward. We therefore focus on strategies that expand the conditions forflourishing through self-sovereign computation, including in circumstances wecannot yet foresee.Differential and open source promotion of “defense” is not a novel idea. TheMohists authored and widely distributed manuals that helped all cities betterdefend themselves, operating under the theory that shifting the balance fromoffense to defense broadly reduces suffering.卷十四 Book 14 52. 备城门 Fortification of the City Gate 53. 备高临 Defense against Attack from an Elevation 56. 备梯 Defense against Attack with Ladders 58. 备水 Preparation against Inundation 61. 备突 Preparation against a Sally 62. 备穴 Preparation against Tunneling 63. 备蛾傅 Defense against Ant-Rush卷十五 Book 15 68. 迎敌祠 The Sacrifice against the Coming of the Enemy 69. 旗帜 Flags and Pennants 70. 号令 Commands and Orders 71. 杂守 Miscellaneous Measures in DefenseOne major difference between the Mohists and us is that they also directlyintervened in conflicts based on their own judgment about who was defending andwho was attacking.Our approach is closer to writing the manuals and making them available, and notintervening in individual conflicts.We believe that de-totalization - building toward a world in which noorganization, system, or moral order has total dominance over any individuallife - is the most reliably good aim.Censorship resistance, security, and privacy stand in relation to de-totalization much as city walls stood to pre-modern collective defense. Opensource ensures these protections are broadly distributed, iterable, andcustomizable, rather than becoming the asymmetric advantage of any one group,even a group for which any of us as individuals may hold particular sympathies.The team of today may not be the team of tomorrow. VI. RESOLVING QUANDARIES --------------------------------------------------------------------------------Over the course of the next thousand years, we and our successors will facecountless challenges and be confronted with difficult choices whose specificdetails we cannot anticipate.But human history teaches us that although no two rivers flow the same course,the shapes of the valleys they carve are familiar, once you know how to look.That is to say, the structures of those challenges and the dynamics by whichthey unfold are not so novel.While it would be impossible to describe every such obstacle, we illustrateseveral timeless tensions we believe will forever exist around Ethereum untilthe mission is complete.1. When two technically credible paths compete, we pick the one that removespoints of leverage, not the one that can be shipped faster.It is a common refrain from those who build centralized chokepoints into theirdesigns, such as entrenched trust architectures, that they have done so out ofnecessity, and will be removed later when things are “more mature.”But human experience, both from software development and from political history,tells us that such a path is fraught with danger, and we should view suchstatements with suspicion.The wiser course, therefore, is to prefer the option that is fully-CROPS fromthe beginning even if it is technically or socially more difficult to get offthe ground and scale.For example: a proposal offers “better protocol UX” or “better safety” fortransaction propagation via a curated private relay network with trustedpartners that results in the possibility for centralizing infrastructure such asshared blacklists or whitelists, that will “be decentralized later when theecosystem and protocol are ready”; a second proposal keeps propagationpermissionless straight out of the box via open p2p tooling, with optionalprivate relays for exotic transactions, and with free routing around verifiablefailures.All else being equal, CROPS means we support the design where broadcast isauditable and does not depend on a small set of intermediaries; privatepropagation is opt-in and escapable; and where users can route around censorshipor extraction permissionlessly.The lesson is that it is not sufficient that a solution simply works today; italso needs to not become a chokepoint tomorrow.2. When designing or judging a proposal, we think through the higher-ordereffects of implementation beyond the layer at hand, ensuring that the overallimpact advances self-sovereignty, and avoid capture points simply beingdisplaced beyond narrow focus or becoming an externality.It is understandable to focus only on the properties of the solution at hand,and to leave consideration of the other-order consequences of that solution toothers. This is not necessarily due to insufficient capacity, motivation, ordiscipline. It is often due to simple familiarity.Nevertheless, it is our responsibility to ensure that we do think about theoverall consequences of any proposal beyond our own immediate frame ofreference. Indeed, thinking across layers may lead us to the elimination ofundesirable properties or structures at one level by creating a solution atanother.For example: work on the protocol’s capabilities, such as scale or speed, can bedone in myriad ways. Some may even be “CROPS-aligned” by the standard of usingthe CROPS properties as a checklist.But we must remember our broader aim, promoting self-sovereignty. A proposalthat on narrow analysis satisfies the CROPS properties, yet introduces a userchokepoint at another layer of interaction, whether that be forcedintermediation, extraction, or some other anti-sovereign pattern, is a proposalthat must be rejected. But a proposal that increases the capabilities of thecore protocol with the result of eliminating chokepoints at other layers shouldbe welcomed.It is a recurring temptation to treat CROPS properties in isolation, and toconsider any gaps acceptable as long as they can be compensated for elsewhere.Whenever this temptation arises, we must scrutinize it carefully. Protocols mayremain formally un-degraded or “pristine” while in reality, positive oressential capabilities such as scale, speed, UX accessibility, privacy,extraction-resistance, or account functionality migrate into centralized,intermediary-dependent, trust-dependent, permissioned, or opaque structures orservices.There are several scenarios that can illustrate the need for, and value of,cross-layer thinking.First, scale. If the protocol does not support sufficient scale for a use case,then those users often turn to extra-protocol mechanisms to process transactionselsewhere and return on-chain proofs and commitments. In theory they may achievesecurity sufficient for their purposes; in practice, they may be unknowinglyaccepting deeper CROPS compromises than the situation warrants.Second, account types. If Ethereum supports only a narrow set of account types,and lacks a general-purpose account model capable of supporting smart accounts,then those use cases that require smart accounts can only be served throughintermediaries. We must recognize that this degrades their CROPS properties andlong-term liveness guarantees, even if a large number of competingintermediaries theoretically exist. This prevents users from fully benefitingfrom protocol-level features meant to improve transaction inclusion and accessguarantees.Third, native privacy support at the protocol layer. Protocol native privacygreatly increases the anonymity set of the participants, reducing the risk ofprivacy compromise. No construction layered on top could match the anonymity setthe protocol itself could provide.Fourth, transaction protections at the protocol layer. Transaction inclusion,protection against adverse execution outcomes, and fair execution should beachieved at the lowest layer of the stack consistent with safety. Implementationat the protocol level would alleviate pressure for users to seek such guaranteesfrom intermediaries via centralized transaction pipelines, and therefore reduceopportunities for systemic extraction.Fifth, aggregation of cryptographic objects. Intermediaries perform aggregationfunctions for users because the individual submission on-chain of cryptographicobjects, for example, zero-knowledge proofs, is often cost prohibitive. The highfixed costs of providing aggregation mean that the market for this service islikely to be monopolistic, which is a centralized chokepoint. Therefore, if theprotocol were to support batched aggregation and efficient verification of suchobjects, this centralization risk would be removed.In each of these cases, we judge the complexity and centralization-pressurerisks of native scaling against off-chain scaling; native smart accounts againstintermediated smart account services; native privacy against application layerprivacy; native transaction protections against intermediated and likelyextractive transaction guarantee services; and native aggregation againstintermediated and likely monopolistic, aggregation intermediaries.We keep in mind the risks at other parts of the Ethereum stack when thinking ofimproving performance and usability of the core Ethereum protocol, for example:if scaling comes at the cost of verifiability; if inclusion guarantees come atthe cost of novel forms of coercion or extraction; or if slot time reductioncomes at the cost of increasing pressures for geographic and economiccentralization.We also remember that protocol complexity is itself a technical risk: it expandsthe bug surface area and reduces the viability of new independent protocolimplementations. However, we also recognize the upside: work on performance andusability may be empowering where it removes the need for entire classes ofintermediaries above the protocol, or at least creates a credible and accessiblepath around them.Striking the wrong balance across layers may be very costly. The downsides tomaking mistakes due to complexity or risk at the protocol layer are often goingto be greater than downsides at the application layer, where users canindividually opt in or out, or collectively work to upgrade without changes tothe protocol.For example: if we add an aggregation scheme to Ethereum, but no one uses it -not even power users who deeply need CROPS properties - then we have addedhundreds of lines of protocol code that create permanent ongoing risk withoutmuch benefit.We therefore hold protocol improvements that bear any risk at all to theprotocol’s CROPS properties to a much higher bar, evaluating them with greatercaution and care to avoid compromise at such a fundamental part of the Ethereumstack.3. When considering adversarial user environments, we default to empowering useragency, not to solutions that weaken user agency.Safety is an important problem in our time, and “attacks on the mind” must betaken as seriously as attacks that target technical properties or communitydynamics.However, we aim for defenses that are user-empowering and user-controlled. We donot support high priests dictating or installing restrictions on user agencyunder their logic of user protection, especially if users never opted in orcan’t opt out.For example: in the name of safety in a hostile world, a wallet ships a “safemode” enabled by default that incorporates dark design patterns such as silentlyblocking certain contracts, steering users toward preferred venues orcounterparties, and into using unmodifiable preinstalled whitelists; or thatships an AI copilot that flags “risky” actions using an uninspectableproprietary model and reports user actions back home silently.CROPS pushes user-controlled defenses instead: a choice of independent locally-verifiable filters with transparent rules, multiple independently-builtcommunity-created and propagated whitelists and blacklists with clear overridepaths, and private-by-default tool use including any AI components.Our work in Ethereum is to prove that the most natural and right way to helpusers defend themselves from threats they may not even understand is to exposethem to empowering defensive tools. We demonstrate our fundamental belief inuser-empowerment over paternalism by pioneering this approach.The goal is not to sanitize the environment; it is to keep users sovereigninside it.4. Where a use case important to our mandate involves some form ofintermediation, we work to ensure that barriers to entry are minimized andmarket competitiveness is maximized for anyone who plays that role. At the sametime, we aim to eliminate the need for such intermediaries wherever possible,and to ensure that a practical, fully disintermediated path exists wherever itcan.There are already many places across the Ethereum protocol and application layer- block building, RPC servers, entities attesting to aspects of digital identity- where intermediaries exist. This state of affairs carries serious risks: oneor more intermediaries may become dominant chokepoints, impose their specialinterests, censor users, enforce arbitrary participation rules, or extractvalue.We therefore work to eliminate the need for such intermediaries whereverpossible. Where they cannot yet be removed, we design protocols that reduce thetechnical and economic pressures that drive them toward capture.In particular, we ensure the presence of a “zero option”: for every affordancethat has an intermediated path, any intermediary-free path that is possible mustbe built and must remain credible and accessible. This serves both as a presentexit for users who may already be exploited by intermediaries, and as a credibleconstraint against the expansion of such abuse. We do not skip this step.For example: consider an application where participation requires some form ofidentity. This may be for sybil resistance or anti-denial-of-serviceprotections, an online forum meant to be writable only by members of a certaincommunity, or myriad other reasons.A naive approach would be to take the easiest available off-the-shelf form of“official” identity - government, biometric or corpoid - wrap it in a zero-knowledge proof, and declare the result CROPS-friendly.But we must do better. We begin by examining the underlying need of theapplication and ask exactly what aspect of identity or information disclosure isactually required. Often, the requirement is not identity in full, but somenarrower property that identity also fulfills.If the use case needs only sybil resistance or only a way to make abuseexpensive, the system should provide a narrower alternative than providingidentity itself. Users who hold some quantity of ETH, for example, could providea zero-knowledge proof of ownership of it, or post a zero-knowledge securitydeposit, in lieu of dependence on identity.Where identity attestations are genuinely required, our principles lead us todesign the system so that intermediaries are bounded and replaceable rather thanentrenched. The identity proof mechanism should be fully privacy-preserving inall cases, with no backdoors.Once credentials have been issued, proof generation and verification should beas local, verifiable, and non-custodial as possible, so that ongoingparticipation does not depend on continued deference to a privilegedintermediary and cannot be revoked arbitrarily.We should also ensure that multiple fit-for-purpose sources of ground truth foridentity exist and can be used inside real-world applications that rely on thesystem. The software stack should make it easy for implementations to integratemultiple independent attestation sources, and should make this plurality thedefault path. It should support combination approaches, allowing multiple weakersignals - such as social-graph attestations - and not just single strongerattestations, such as a signature from an official entity.Designing such a chokepoint-minimized system is inherently harder than the naiveapproach. For that reason, and in accordance with the Only-EF rule, it isexactly the kind of work we consider taking on where it serves our mandate.The north star is disintermediation. Where intermediation can be eliminated, weprefer to eliminate it. Where it is unavoidable, we work to minimize the risk ofcapture by keeping intermediary roles open, plural, bounded, and verifiable. Ifan intermediary-free design becomes possible, we ensure that it is credible andaccessible, so that intermediaries are ultimately optional rather thanentrenched.5. When deciding which teams to back, we look past short-term output and socialcues, and instead judge patterns of choices and revealed preferences.It is often the case that we are presented with ideas wrapped in the language ofCROPS; of self-sovereignty; of freedom - yet upon closer inspection there isless than meets the eye; the thin veneer of purported principles disintegratesupon examination. This is not always disingenuous - indeed, many such ideas areproposed by well-meaning, conscientious individuals, teams and projects, eitherthrough genuine though misguided belief, or through lack of introspection orinterrogation.One way that this occurs is through thinking only about the “happy case,” whereall the variables play out as planned, but not about the “unhappy case” such aswhere third-party dependencies (whether APIs, content delivery networks, orotherwise) disappear or break - or worse, where the team itself disappears or ishacked or an insider turns hostile.Another way is through the echo chamber effect, or in other words, cascadingsocial proof. In what is currently a small domain, groups of well-meaning peoplecommonly wish to be supportive, especially to their friends. Ideas form and areshared and discussed; precisely because we operate in a space that has anaffinity for disintermediation, the speed at which ideas circulate often reachesescape velocity, if not virality. Further, if amplified ideas attract socialproof and incentives - whether credit or reward - and are presented publiclybefore they have been suitably interrogated or examined critically, then posthoc questioning may become costly and face resistance.For example: two teams submit proposals for improving UX in some complicatedscenarios that involve multiple tokens and asynchronous communication. At firstglance, both look “CROPS-aligned:” open specification, progressivedecentralization roadmap, user-first UX.On review, the first team is socially polished, using the right language ofCROPS and armed with peer endorsement and resources, but the design keeps a“secret-sauce” intermediary layer closed, bootstraps with a small whitelistedprovider set, and uses soft-defaults to steer flow through preferred paths.The other team has no social presence, minimal backing and finds it difficult tocommunicate their vision, but implements an open market for intermediaries (eg.using staking) without a whitelist, and treats them as a temporary artifact witha credible path to elimination via user-driven routes and on-chain guarantees.They publish early research and threat models, ship legible specs and referencesand invite critique, and challenge unaffiliated teams to co-build so the defaultoutcome is shared infrastructure rather than a branded moat.When choosing who to support, clarity of perception is paramount. It isimperative to employ discernment and good judgment: not to anchor on polish,credentials, or sympathetic signals of alignment, especially when social proofarrives before due diligence. Instead, we must examine what a project optimizesfor in practice - the tradeoffs it repeatedly chooses, technically and socially.Despite CROPS language, if on closer inspection work introduces privilegedpositions - such as closed components, whitelists, soft-default routing,discretionary upgrade ability, or dependency-heavy integrations - it is right tobe skeptical.Likewise, if a team continually selects for control or value overdecentralization, or if their partners and endorsers have a tradition of anti-self-sovereign choices, it is right to be wary.Our technical and social principles lead us to ask whether the default pathremoves leverage over time or concentrates it in a silo, and whether the signalsof alignment are matched by CROPS-consistent action under scrutiny.We do not require first versions to be complete; they only need to stay live.Open source building means a strong design path can be improved or finished bysubsequent teams. We appreciate teams that publish early, build openly, andinvite critique, so unaffiliated builders can pick up unfinished work withouthaving to ask. VII. THE FUTURE --------------------------------------------------------------------------------For a long time, people have been pushed to believe that we only have two badchoices.One is to accept that the name of the game is to obtain and maintain advantage;and so to accept rule from the top, by those who already hold power: macro-sovereigns like states, empires, corporate oligarchies, eschatological missions,and grand ideologies that dictate how people live, decide who gets to actfreely, and who must comply, regardless of their subjects’ wishes.The other is to respond to that game without a principled aim: to burn it alldown, to retreat into mockery or withdrawal; or to defect to one or anothermacro-sovereign, not because they are better, but simply because it isopportune.But there are those who abjure this belief: it does not have to be this way.Ethereum rejects the idea that there is no alternative.Ethereum is not a weapon for either side of this conflict, and its stewards arenot a partisan faction within it. Ethereum is a tool that countless people -individuals, families, and communities - are independently using to buildresilient sanctuaries from this contest of power: shelters from ideologicalpsychodrama, where anyone capable of taking refuge can live neither oppressednor oppressing, and where they can be left to their pursuits of happiness.And we, as Ethereum’s stewards, carry an additional responsibility: to keepEthereum usable for this purpose, and to keep the path open for users to createand join sanctuaries that protect their freedoms and empower them to live thelives they imagine for themselves.These sanctuaries are enabled in part by technology - decentralized,permissionless, auditable, secure, and privacy-preserving machinery - and inpart by cultural and social aesthetics, which we bring to them as sensible andconsiderate people, and which our technologies help defend.Our participation is in both the technology and the aesthetics: we buildinfrastructure that secures forkable, self-sovereign computation from the groundup; then, on top of this, we may experiment with novel coordination systemsunderpinned by the sovereign freedoms to express and to exit.Ethereum’s front in this sanctuary work is the front that defends permissionlesscomputation and communication with as much privacy and end-user agency as istechnologically viable.Our closest collaborators include those working directly on privacy,verifiability, and programmable cryptography. In the middle distance are ourneighbors working on open silicon, alternative networks and allied efforts. Andon the horizon are our friends working for clean air, and for regenerative andsustainable habitats and permaculture; for freedom of speech and expression, andthe freedom to associate and dissociate voluntarily; for forkable technologytransfer; free open source collaboration in science, software, hardware, health,and elsewhere, and a thousand other known and unknown things we trust them tobuild without asking first.Ethereum is descended from a storied lineage of preservation instinct, prosocialimpulse, and principled predisposition. This is why it both has natural alliesand is an intrinsic building block for fellow travelers far beyond what we calltoday, “crypto” or “web3.”Alternatives exist. Trust hope, embrace resilience. VIII. CLOSING --------------------------------------------------------------------------------Our work is not about capturing markets, corporates, or states, nor abouthelping them extract or capture.We are here to uncapture the individual, and to entrench their freedoms ofassociation.We are here to provide the infrastructure that enables a voice for those formsof cooperation, organization, and community that go unrecognized within existinghierarchies and systems.We provide the tools and the digital space needed for this civilization-scaleproject, one that is open to anyone willing to claim self-sovereignty with theirown hands, that is available to everyone, especially those with nothing to losebut their barbed wire fences.Ethereum is so other people can’t rug you; society can’t rug you; yourgovernment can’t rug you; another government can’t rug you; corporations can’trug you; institutions can’t rug you; AI can’t rug you; mountain men can’t rugyou; your family can’t rug you; and so you don’t accidentally rug yourselfeither.The Foundation exists to prevent Ethereum - more accurately, the promise ofEthereum - from being rugged; to prevent Ethereum rugging those who are relyingon it to build their own sanctuaries; to make sure that it embodies the sharedprinciples from which Ethereum descends, upholding and advancing them ratherthan letting them down. We have been entrusted with the torch of liberty and wemust keep it burning bright until the time comes to pass it on as it was passedto us.Ethereum is for far more than crypto. The World Computer must rise and take itsrightful place as a shining star in the constellation of technologies thatunderpin human freedom and flourishing. A lot more than crypto is counting on usto steward Ethereum with skillful intent and discernment.For we are building nothing less than the machinery of freedom - not just fortoday, but for the next thousand years.Our goal is to ensure the garden we’ve grown doesn’t just stay alive butflourishes, the commons it creates remain open and infinitely spacious, and thetools of sovereignty that are built remain available to all who would graspthem, to all who would log on and win, forever.There will be times when the work will be thankless; the journey will bearduous; the path will be lonely. But every road to the stars first passesthrough darkness.E quindi uscimmo a riveder le stelle. . ..-*@@%#*++======+*+-. ..:::::.. . . . . .=%#*=-:..... .:::--=++..:#*-::::---:... . . .=+.....:::::.::::--+#%#%@#-:::........::::. . . . .==...:::::::.-:........::--::::...........::. . . . . .=+..::::::::.:............::::..............:. :*+:.:::::::................:::.............::... . ... ..+#-..:::::::+:.............:............ ...... . . ..+-. ..-%%##*----:--+*+-:............:... .................:.... . . .:+:. .:=#*===+===+=+****##=::::::::....:::.. ..........::... ...::. ... :=::.:=**=---:::::-------:::+*+--:::::::::::... ......:::::.......... .::. ......... . .-+=-::::::::--------::::::::::=++++***+++-..........::::::.................. . ......... . .=*=-:::::------:::::::::::-=+-:::::::=++*+-::::. .:::::::.... ...:.......:-. ............ .:**-::..::----::::::::---:-++-:::::::::::::::=++:. ..::::::.....:::.........-=:. .. .............. .=#=-:...::---:::::::::--:-++-::::::::::::::::::--*+:....:::::::::::...........-*=. ............... .+#--:....:--:::.....:--::=+=:::::::::::::::::::::-:+%*-::::::::::::. ....... .+#=. .. ................. . . .+*--:...::--::.....:---::=+-::::::::::::::::::::::--:-=**=:.:::::::.. .+#*=. ................... . . .++-::..:::--::.....:--::-++-::::::::::::::::::::::::--:::-+*+-::::::. .... ..:**+*=. ................. . . .=*=:.::::::-:......-=-:.-++:::......::::::::::::::::::-::::::*##=::::. ...........+@+**=. . .................. .... .=*=::::::::-:.....:==-..:=+::........:::::::::::::::::::-::::::+#*:::...............:=##+*-. ................. ..... .-#=:-:.::::-:.....:==-..:==::.........::::::::::-::::::::--:::::::*+:...:-:..........:-=@*++:. .................. ...... . .*=:==:...::-:....-==-..:-+-:.........:::::::::::-:::::::::-::::::::*+::.:::...........:-%#-++. .................... ....... . .++:=*:::..:-:...:-+==:..-+-::::......::--::::::::-::::::::::-:::::::-+=:.:::........ ..:*%+-%=................... ......... . .-#:=*-:.:.:::::::--=+::.:==::::.......::-:::::::::-::::::::::-::::::::-==.::::::..........=%#-=%:................. ........... .#--*-...::-==---+==+=:::-+-...........:--::::::::=-::::.:::::-::.:::::::-=-:::::::::......-*#=:-@:.............. ............ ..=+:=-...:::::::-+-:-+-:::=-:...........:--:::::::-=-:::..:::.:--:...:::::.-*-:::::::::::::::+%+::-#:............ .............. . .*=:-..:....:::++:..:+=::---:..........:---::::::-=-::::..:::::--:...:::::.:=*==-:::::::::::=#%+-::=*:......... ................ .-+==%-:-:::...:--+=::..:+-.:=:-:::::::::::---::::::-=--:::::.:::::--:..:::::..::-**+=:::..:-=*#**+:::::=+:....... ................. :#::-=-:-:::...-+*#=::...==.:-.::::::::::::---::::::=:-::::::.:::::--:..:::::..:::=**+---=++++==::::::-+-==:.... ................... . -*---:-=:-:...:*%#+=++-..==:--.::.::::::::-:=::::::=::-:::::::-::.:-=:...::::..::::-*++==---:::::::::::**=-=... .................... :+:::--*=:....-%@@@@#+==::=:-:.::.:-::::::-:=:::::-::--:::::::-::::-=:..:::::..::::::::::::::::::::::::+**=-:....................... ..+=:-:-#*:....=####%@@%+-:--=..::.:+:::::-:=-::::-:.:=-:::::::-::::-=::::::::..::::::::::::::::::::::::-*+:..-=..................... . .=+=::-*+:..::%+--=#%%@%+:.==...::--=::::-:+:::::-:.:=-::::::-=::::==::::::::.:::-::::::::::::::::::::::*-..:::..................... :=-:=:*=:::::*---=#%-+@%=..:...::::--::--:*:::::::--=:::::::==-:.:==..:::::..:::=::::::::::::::::::::::............................ :-:-::*-::::-*=-:-*%%@@@*:......::..=-:-::+:::-:..:-+----::--=::.-==:::::::..:::=::::::::::::::::::::..-+:......................... . .:::**-*::::::++..:*+@@@@*:..........:---::+::--:..:-+------:--:::==-:::::::..::-=-=:::::::::::::::::..:-*:......................... . .-:+%%%*:.::::=+=:.+=-*@#-.............:::.-:-+....::=-------==:::+=::::::::..::=-++:::::::::::::::...::=*-......................... .:-*#%@=::::::+=--=+##%#=...................%+.....::-+---=:::--:-+-::::::::..::+=%=::::::::::::::..::::=*:..................... . .::=%#+*##+--::+-=--:...................:-*=---::::.:::==--::::=-:=+:::::::::.::-*#*=::::::::::::...:::::-+:.................. .. .++:==::#.....-*+-......................=%%%#######*=-::-++-::::=+:+::::::::::.::=##+=:::::::::::..:::::::-=:............... ..... ..+:-:=%*=-:.:-...::--.....::::...............:-*%@%%%##%=-:=::::::+*=:::::::::..::+#*+=:::::::::...::::::-:-=............. ........ ...--..=:-#%**===:::::::-:....:::::.............:::..:==#@@%####:::::::+::::::::::..:-*#++=::::::::..::::::::-:-=.......... ........... ..:-=---...-+-:*%-::::-==+=--......::..................::::::.+#+%#@%-:::::+-::::::::::.::+#****=----:...::::::--:-:-=....... ...................... . .... .=*+:=-:::.::::-:........::..................::::::-:-::=+#%=:::*=-:::::::--:.:=##*++****=:..:::::::-----:--.... .......................................+*#+::=:::::::=-...............................:::::::-:::-+::++-:::::::---:.-+%=::::-=+=.:==---------:-:::. . .........................................:+##+::--:::::::+................................:::::::::::::-=--::::::----:.=#+-::-=-:..:#%%+--------::... . ............................................-*#+=-=-::::::::#-..-:..........................:::::::::::::-+-::::::-----#=-%@+-----:.:-+-:--=+---::.....................................................-*##*-==::::::::#*:..:-=:.......................:::::::::::::=-::::-------=@-=#%+---:..:-*#*=-::-*-......::-...............................................+%#*+-==::::::::##*:....:=:.......................:::::::::::+:::----*@%%%@%:#@%=--:..::::-=+=-::-....::::--...............................................*%#*+--=::::::::+#**:.....::-=-....................:::::::::#::---*@#***#@@+:#@@@%:..:::::---:..:..:::-:::--...............................................*#***--=::::::::-%##+:.............................::::::::-::--=@@#*#%%%@%::@@@@-.+=-:--:....::::----:::-::...............................................*###*=-=-::::::::+%%%-:.:::........................::::::-:::---#@##%##%%%#.-%%=..-=++-....-++=-------:::--:.......................... .........+****+-=:::::--::-#%%#=::........................::::::--==----+%%#%%#%%%%=.:=....:-:..:-++=+*=-------:::--:.......................... . :-----:......::::.-*****+--:::.:................::::-===++-----#%#%%###*+=. ..-+#%#++*+------=-:::--::..............................................:==----..:.........:::::::--===---::::::::..:::---===:=+=:::::=#**##*+=-:. .:=*%@@%+=++=-----==-::::-::..............................................-*+-***+:+-:::--:==:=+++=:=++===+====-:::::::::::::..::.......::::::.... .-+*%@%*==+===----**-:::-=:...............................................:==.=***+-=:::-=-=#==##**-#@%###@@@@@@**++=-::::-+--**-::::::-+=--:.. ..::-::---==:::-++-:::-+:.................................................-:.=***=--::==-=%#-*%**-#%%###%@@@@@#=-:::::::=+-#*---===++@@@@#*+-. ...::::::.......:.....::.....-.....................................................:=+**:--:-=--*#*-+%*-#%%%##%@@@@%#:::::-+**+-==--------+#@@%+-:...:-:...:+%@@%#%#+--+=--+-::.:--:....:. .......................................:=+-:---=--=%#+-*#-#%%%##%@@*==@::=*#*=---::::-::::::::-+-:..:=*#%#.:#=@@@@@@@%+-=*+==#=:::=+*=::::=:........ ..............................---::==---*#*+:+=#%%%##%%=-=%%#*+-:::-:::::--::::.....-+-:#@@%%%*.-%+%@@@@@%#+-+*+-+#=:::+**+-:::=:...............................................................:.:=*#=.:=%%%%#@*::=##=::..:::...:::--::.. :--+:+@@@@@@@%.+%+#@@@@@#*--**=-+#=:::=+*+-:::=:...................................................................-=..:-=####=-:-=-.............::-:.....:-+:-%@@%%@%%%*.%@%%@@@@##+--**==+#=:::++**-:::=:.......................... .. ............................:....:--:*#+::=*=..............:...::::-.+%@@@@##@@@=:@@@@@@@%#*---*+==+*=::-+++*=:::=:.......................... . .. ........................::*=*=-:+*#.......... .--::::::.:+@%%@@@#%@@@--@@@%+%%##+=--++==++-::-++=+=:::-........................... .........................==#*=--+=*............:=-::::..-*#@#@@@%@%*#*:-%@@#++%%#++=:++==+=:::-++=+=:::-........................... ......................=#-%%+-==-#....-:::#%=:-=:::...-*+%@@@@@@#%##+:+%@@+::=%%**+:=+==+-:::-*+-+*:::=........................... ...................-%@+%@@#==--=. .=%+::+#*%*-:...:-*+++*#**@@@@@%*:*@%#+=-::-+**=:+===--::-+==*#-::-........................... ..................-%@@*#@@%%#*=--+.-#%#-:=#+#*:...:=***+++*%%*@@@@@*:#@*+++-----=**+-+=-:-::-+==**::-:........................... ................:*@@@@*#%#*++*##%@.-###-:-***=..-=++*+===+#@@@@@@@%=.:.:-=:....::=**+-+-:-::-+-+*=::-. . . ................+@@@@@%=++**#%%%@@@-.-*+=-=*+:.=*#+--*+-=+#@@@@@@@@+. ...::.......-+**+-::-::-+-=+::--. . . ................:#@@@@%#=-#%@@@@@@@@@#...:::::.-%@@@@+:-*++*%@@@@@@@*:. ....:.......-#@+-:..--:--:-::::. . . ...............:%@@%###%#%@@@@@@@@@@@%.....:.:*@@@@@@@=:.:-#@@%%%%@%=.. ....:.......=%@@+...:-:: ...:.... . . ................:#%##%%@@@@@@@@@@@@@@@*-:...:.=%@@@@@@@@*-:.=%@@%%@@@*-:.:-:::-:..::-=#%@@#....... . . ............... -#%@@@@@@@@@@@@@@@@@%:.:=.:.:*@@@@@@@@@@*=-:+%@@%@@@%+.. ...:------::=#%@@#.. ............. .@@@@@@@@@@@@@@@@@@*:...:+:.+@@@@@@@@@@@=:----*@@@@@%*:.. .....-:.....-#%@@+. . . ........... ..*@@@@@@@@@@@@@@@@+-.......:#@@@@@@@@@@@*.....:-*%%%%%+... ....:-......:#@@@= . . ....... .....@@@@@@@@@@@@@@@@.........=@@@@@@@@@@@@@+........:-======:.....:-......+@@@@-. .. .......:@@@@@@@@@@@@@@#........:%@@@@@@@@@@@@@@@+-.......::-----::=+=---:....+@@@@@*: . ..........-@@@@@@@@@@@@@+........+@@@@@@@@@@@@@@@@@*--:...........:.:--======-=#@@@@@@*-. . .............-@@@@@@@@@@@@=.......-#@@@@@@@@@@@@@@@@@@#..--:.......... .:==-:::+@@@@@@@@*-. ...............+@@@@@@@@@@@=.......+@@@@@@@@@@@@@@@@@@@@@+...--:. .. :-.. .:+@@@@@@@@*=. . ...............#@@@@@@@@@@-......:#@@@@@@@@@@@@@@@@@@@@@@@*:..:-::..:.....:--....:#@@@@@@@@*+. ... ....:%@@@@@@@@@-......=%@@@@@@@@@@@@@@@@@@@@@@@@@#:..::::::::::----:.:+%@@@@@@@@@**. . ..=%@@@@@@@@=.....:*@@@@@@@@@@@@@@@@@@@@@@@@@@@@#:.........::::::-*%@@@@@@@@@@@#= .