f003e983e39eba3ae77bcde53b6e5206f00fef5e CLN-AUDIT.tar.gz

Juraj🏴💛🌘

npub1m2mvvpjugwdehtaskrcl7ksvdqnnhnjur9v6g9v266nss504q7mqvlr8p9

hex

9447f60386fe33b575e1421525563bacdae94c2c0d2867ad5902869c76c8d36d

nevent

nevent1qqsfg3lkqwr0uva4whs5y9f92ca6ekhffskq62r844vs9p5uwmydxmgprpmhxue69uhhyetvv9ujuem4d36kwatvw5hx6mm9qgsd4dkxqewy8xum47ctpu0ltgxxsfemeewpjkdyzk9ddfcg286s0ds47wxc3

Kind-1 (TextNote)

2026-08-27T19:43:24Z

f003e983e39eba3ae77bcde53b6e5206f00fef5e CLN-AUDIT.tar.gz

$ head CLN-AI-AUDIT-BLOG.md

Three AI models audited Core Lightning before the CVEs dropped

Written: 2026-08-27. Target: Core Lightning, commit c1551c557 on master, one commit after v26.06.6.

This document is a sealed prediction. At the time of writing, the Core Lightning team has announced that vulnerabilities exist and has advised operators to run with --offline. Nothing else is public. The plan is to release a fixed binary first, then the source and the advisories later.

So we hashed this file and published the hash through OpenTimestamps before any of that happened. Whatever it says is what it says. When the CVEs land we will diff them against what is written below and see how much three current models actually found on their own.

The question we are trying to answer is narrow and answerable: given a real codebase with real undisclosed vulnerabilities in it, how much of the truth do frontier and fast-tier models find, and how much do they invent?


OTS is being mined.

Raw JSON

{
  "kind": 1,
  "id": "9447f60386fe33b575e1421525563bacdae94c2c0d2867ad5902869c76c8d36d",
  "pubkey": "dab6c6065c439b9bafb0b0f1ff5a0c68273bce5c1959a4158ad6a70851f507b6",
  "created_at": 1787859804,
  "tags": [
    [
      "r",
      "wss://relay.primal.net/"
    ],
    [
      "r",
      "wss://nostr.cypherpunk.today/"
    ],
    [
      "r",
      "wss://nos.lol/"
    ],
    [
      "r",
      "wss://relay.damus.io/"
    ],
    [
      "client",
      "Primal Web"
    ]
  ],
  "content": "f003e983e39eba3ae77bcde53b6e5206f00fef5e  CLN-AUDIT.tar.gz\n\n$ head CLN-AI-AUDIT-BLOG.md\n# Three AI models audited Core Lightning before the CVEs dropped\n\n**Written:** 2026-08-27. **Target:** Core Lightning, commit `c1551c557` on master, one commit after `v26.06.6`.\n\nThis document is a sealed prediction. At the time of writing, the Core Lightning team has announced that vulnerabilities exist and has advised operators to run with `--offline`. Nothing else is public. The plan is to release a fixed binary first, then the source and the advisories later.\n\nSo we hashed this file and published the hash through OpenTimestamps before any of that happened. Whatever it says is what it says. When the CVEs land we will diff them against what is written below and see how much three current models actually found on their own.\n\nThe question we are trying to answer is narrow and answerable: given a real codebase with real undisclosed vulnerabilities in it, how much of the truth do frontier and fast-tier models find, and how much do they invent?\n\n--------\nOTS is being mined.",
  "sig": "3dd8375b53f3b3d1aa890b034da3b374ae9ea750c45ac9d9bae04295f5ce0705588c104e6541fb3ed5b4ee8f2191441b21361ce9ed29ca49620f7eb568ff2b50"
}