What we steward
The reference implementation, the specifications, the EXOCHAIN marks, and the security-disclosure channel.
Exochain Foundation
The Foundation exists so EXOCHAIN can be used, forked, audited, and implemented without asking anyone’s permission. We publish the Apache-2.0 core, hold the marks, and run coordinated disclosure.
This is the institutional home, in the same sense that apache.org is not Kafka and linuxfoundation.org is not Kubernetes. The project, documentation, and evidence surfaces live on exochain.com. The runtime lives on exochain.io. Source of truth for the software is github.com/exochain/exochain.
The reference implementation, the specifications, the EXOCHAIN marks, and the security-disclosure channel.
We do not custody funds, settle payments, issue a token, or sell access to the engine. Hosted services are separate from the license grant.
Apache License 2.0 unless a file, NOTICE, or repository says otherwise. The license is the product grant.
Read the code. Verify signatures on releases. Independently check evidence packs. Do not take this site as a substitute for cryptographic provenance.
EXOCHAIN is authorization infrastructure for autonomous execution: consume and emit AP2-shaped mandates, sit at or before an x402 /verify, deny outranks payment, and emit third-party-verifiable evidence. It does not move money.
Project site · Get the engine · Source
Legal and marks: legal@exochain.org
Security: GitHub Security Advisories, or see
/security
Product and early access: exochain.com/contact
This site does not claim tax-exempt status, completed audits, or regulatory approval. Those wait on published artifacts. Evidence packs are independently verifiable records, not a legal opinion.