Exochain Foundation

Exochain Foundation

Steward of the open protocol.


The Foundation exists so EXOCHAIN can be used, forked, audited, and implemented without asking anyone’s permission. We publish the Apache-2.0 core, hold the marks, and run coordinated disclosure.

This is the institutional home, in the same sense that apache.org is not Kafka and linuxfoundation.org is not Kubernetes. The project, documentation, and evidence surfaces live on exochain.com. The runtime lives on exochain.io. Source of truth for the software is github.com/exochain/exochain.

What we steward

The reference implementation, the specifications, the EXOCHAIN marks, and the security-disclosure channel.

What we do not do

We do not custody funds, settle payments, issue a token, or sell access to the engine. Hosted services are separate from the license grant.

How the software is licensed

Apache License 2.0 unless a file, NOTICE, or repository says otherwise. The license is the product grant.

How to verify us

Read the code. Verify signatures on releases. Independently check evidence packs. Do not take this site as a substitute for cryptographic provenance.

The project

EXOCHAIN is authorization infrastructure for autonomous execution: consume and emit AP2-shaped mandates, sit at or before an x402 /verify, deny outranks payment, and emit third-party-verifiable evidence. It does not move money.

Project site · Get the engine · Source

Contact

Legal and marks: legal@exochain.org
Security: GitHub Security Advisories, or see /security
Product and early access: exochain.com/contact

This site does not claim tax-exempt status, completed audits, or regulatory approval. Those wait on published artifacts. Evidence packs are independently verifiable records, not a legal opinion.