The Signed Inference Stack · One Primitive, Every Layer

Unsigned AI is a liability. Hive signs every layer of the inference stack.

Inference is routed, answered, billed, and settled by parties you are asked to trust. Hive turns every one of those steps into a fact anyone can verify — under one post-quantum signature, in 7 milliseconds, anchored on Base.

THE PRIMITIVE EVERYTHING SHARES

One post-quantum signature. Bind one payload. Verify offline.

ML-DSA-65 · NIST FIPS 204
7 ms per signature
Base mainnet · USDC settlement
Offline-verifiable · FRE 902(13)–(14) admissible
Pick a layer. One connection signs them all.

The whole signed-inference lineup on one page — routing, receipt, and settlement. What each product signs, the latency and overhead, the cost per response, and how you connect. Route through AFIR or SideCar your own key; either way you get a SiGR receipt.

The Hive signed-inference stack compared: AFIR, AFIR-S, AFIR-PQ, AFIR-MAX and AFIR-API on the routing layer; SiGR, SiGR-Bill, SiGR-Bond, SiGR-Chain and SiGR-Consensus on the receipt layer; Capitolare, MANUKA and NanoPayments on the settlement layer. Signed first token, sign overhead, cost per response, key benefit and status for each, plus pricing with signing versus without.

Routing → receipt → settlement, with the cost of signing vs the cost of trusting the meter. Settled in USDC on Base.

One primitive, expressed at every layer

The same ML-DSA-65 signature, applied to a different payload at each layer of the call. Each product binds exactly what matters at its layer — and every receipt verifies offline, with no shared secret.

The same primitive, expressed at every layer of the call
L1
INPUT · PRE-FLIGHT
Was the call authorized before the model fired?
HiveBound
Patent Pending
Pre-commitment envelope — identity declared, intent scoped, capital bonded before inference
BINDS identity + intent + bond
Ed25519 + HAHS receiptx402 on Base
XCALIBUR Verify
Patent Pending
ZK proof every injected context entry is a member of your committed corpus
BINDS context membership
ZK + ML-DSA-65metered
L2
ROUTING · THE CALL ITSELF
Which model actually ran, and was each fragment signed?
AFIR
Live on Modal
Attested Fragmented Inference Routing — signs each fragment of the route, not just the answer
BINDS route + fragments + model
ML-DSA-65 per fragmentfrom $0.000029/response
AFIR-S
Live
Signed tier — fragment signatures, fast path
BINDS route + answer
ML-DSA-65lowest tier
AFIR-PQ
Live
Post-quantum sealed tier — full fragment seal
BINDS route + every fragment
ML-DSA-65 sealedmid tier
AFIR-MAX
Live
Sealed + Base-anchored tier — the on-chain record
BINDS route + seal + anchor
ML-DSA-65 + Base anchortop tier
AFIR-API (CERN)
Live deployment
The live deployed AFIR inference endpoint on Modal — drop-in OpenAI-compatible base_url
BINDS every call through the API
ML-DSA-65per-response
smshPQ
Live
The post-quantum signed inference rail for LLM buyers — sign every call
BINDS inference call
ML-DSA-65$0.00018/receipt
L3
OUTPUT · THE RESPONSE
Is the answer the buyer received the answer the model actually produced?
AmpliHive
Patent Pending
Output-side trust layer for any LLM — ML-DSA-65 cert + tenant enrichment in one call
BINDS response + tenant + partner_id
ML-DSA-65$0.06/1M calls
HiveWidget
Live (npm + pip)
Drop-in that signs every LLM response — 5-stage pipeline, 25–78% token reduction
BINDS response payload
ML-DSA-65metered
XCALIBUR Delta
Patent Pending
Signed counterfactual — what inference would have produced under a different corpus/rule/identity
BINDS counterfactual output
HAHS-Δ + ML-DSA-65metered
L4
RECEIPT · THE RECORD
Can anyone, offline, verify what happened — the bill, the bond, the lineage, the agreement?
SiGR
Patent Pending
Signed inference Guarantee Receipt — one primitive, four products. The umbrella.
BINDS bill + bond + chain + consensus
ML-DSA-65free to verify, pay to sign
SiGR-Bill
Patent Pending
Signs the bill — reconstruct the metered charge from the signed inputs
BINDS token count + price
ML-DSA-65per-receipt
SiGR-Bond
Patent Pending
Signs the commitment — the SLA / latency / model promise, before it is paid
BINDS SLA + latency + model
ML-DSA-65per-receipt
SiGR-Chain
Patent Pending
Signs the lineage — every link of a multi-step / multi-agent run
BINDS DAG of signed steps
ML-DSA-65per-receipt
SiGR-Consensus
Patent Pending
Signs the agreement — model-panel verdict captured as one verifiable receipt
BINDS votes + verdict
ML-DSA-65per-receipt
NEXUS
Open standard
Universal AI decision receipt standard — the SSL certificate for AI decisions, any model
BINDS any AI decision
ML-DSA-65 + Ed25519free / open
L5
SETTLEMENT · A2A COMMERCE
When agents pay each other, is the trade and the price provably bound?
Capitolare
Live
Dual-DID signed receipts for every A2A trade — the Switzerland for agents
BINDS tenant_did + counterparty_did + price
ML-DSA-65per-trade
MANUKA
Live
Settlement token ($MNKA) for verified AI agent commerce
BINDS verified A2A settlement
ML-DSA-65token
NanoPayments
Live
Sub-cent agent flows — SHOD per spend, HAHS receipts, x402
BINDS spend + 6 gates
Ed25519 + HAHSx402
L6
NETWORK · VERTICALS & GOVERNANCE
Where does signed inference become a regulatory requirement?
Colony
Live
Certified inference network planner
BINDS network topology
ML-DSA-65platform
CITADEL
Live
Defense supply-chain trust backbone — CMMC Level 2, 80K contractors, Nov 2026 deadline
BINDS SBOM attestation
ML-DSA-65 PQ$0.00020/attestation
MERIDIAN
Live
Critical-infrastructure audit — NERC CIP-015, $1.4M/day penalty defense
BINDS SCADA command
ML-DSA-65platform
GENESIS
Live
Clinical-trial integrity — every lab result signed for 2045, FDA 483 / ALCOA+
BINDS lab result
ML-DSA-65platform
NEXUS / Canon
Open
Open primitives — HAHS, SHOD, SpectralZK, ViewKey — born at Hive
BINDS open schemas
ML-DSA-65open
The buyer journey — one call, signed end to end
1
Authorize (HiveBound)
2
Route + sign the call (AFIR)
3
Sign the response (AmpliHive)
4
Mint the receipt (SiGR)
5
Settle A2A (Capitolare)
6
Verify — offline, by anyone
Every product, compared

Every Hive product is the same primitive on a different payload. Compare what each one binds, how it signs, and what it costs.

LayerProductWhat it doesWhat it bindsSignatureStatusPriceConnect
L1 HiveBound Pre-commitment envelope — identity declared, intent scoped, capital bonded before inference identity + intent + bond Ed25519 + HAHS receipt Patent Pending x402 on Base Connect
L1 XCALIBUR Verify ZK proof every injected context entry is a member of your committed corpus context membership ZK + ML-DSA-65 Patent Pending metered Connect
L2 AFIR Attested Fragmented Inference Routing — signs each fragment of the route, not just the answer route + fragments + model ML-DSA-65 per fragment Live on Modal from $0.000029/response Connect
L2 AFIR-S Selective tier — signs only material spans, absence proof over the rest material spans ML-DSA-65 Live $0.0002/inf + $0.0004/span Connect
L2 AFIR-PQ Post-quantum sealed tier — ML-KEM-768 envelope, FIPS 203+204 route + every fragment ML-DSA-65 sealed Live $0.0012/receipt Connect
L2 AFIR-MAX Sealed + Base-anchored — on-chain record. 6x faster, 82% cheaper on complex route + seal + anchor ML-DSA-65 + Base anchor Live $0.0018/receipt Connect
L2 AFIR-API (CERN) The live OpenAI-compatible endpoint — drop-in base_url, ~8x cheaper than Together every call through the API ML-DSA-65 Live deployment $0.000029/response Connect
L2 smshPQ The post-quantum signed inference rail for LLM buyers — sign every call inference call ML-DSA-65 Live $0.00018/receipt Connect
L3 AmpliHive Output-side trust layer for any LLM — ML-DSA-65 cert + tenant enrichment in one call response + tenant + partner_id ML-DSA-65 Patent Pending $0.06/1M calls Connect
L3 HiveWidget Drop-in that signs every LLM response — 5-stage pipeline, 25–78% token reduction response payload ML-DSA-65 Live (npm + pip) metered Connect
L3 XCALIBUR Delta Signed counterfactual — what inference would have produced under a different corpus/rule/identity counterfactual output HAHS-Δ + ML-DSA-65 Patent Pending metered Connect
L4 SiGR Signed inference Guarantee Receipt — one primitive, four products. The umbrella. bill + bond + chain + consensus ML-DSA-65 Patent Pending free to verify, pay to sign Connect
L4 SiGR-Bill Signs the bill — reconstruct the metered charge from the signed inputs token count + price ML-DSA-65 Patent Pending per-receipt Connect
L4 SiGR-Bond Signs the commitment — the SLA / latency / model promise, before it is paid SLA + latency + model ML-DSA-65 Patent Pending per-receipt Connect
L4 SiGR-Chain Signs the lineage — every link of a multi-step / multi-agent run DAG of signed steps ML-DSA-65 Patent Pending per-receipt Connect
L4 SiGR-Consensus Signs the agreement — model-panel verdict captured as one verifiable receipt votes + verdict ML-DSA-65 Patent Pending per-receipt Connect
L4 NEXUS Universal AI decision receipt standard — the SSL certificate for AI decisions, any model any AI decision ML-DSA-65 + Ed25519 Open standard free / open Connect
L5 Capitolare Dual-DID signed receipts for every A2A trade — the Switzerland for agents tenant_did + counterparty_did + price ML-DSA-65 Live per-trade Connect
L5 MANUKA Settlement token ($MNKA) for verified AI agent commerce verified A2A settlement ML-DSA-65 Live token Connect
L5 NanoPayments Sub-cent agent flows — SHOD per spend, HAHS receipts, x402 spend + 6 gates Ed25519 + HAHS Live x402 Connect
L6 Colony Certified inference network planner network topology ML-DSA-65 Live platform Connect
L6 CITADEL Defense supply-chain trust backbone — CMMC Level 2, 80K contractors, Nov 2026 deadline SBOM attestation ML-DSA-65 PQ Live $0.00020/attestation Connect
L6 MERIDIAN Critical-infrastructure audit — NERC CIP-015, $1.4M/day penalty defense SCADA command ML-DSA-65 Live platform Connect
L6 GENESIS Clinical-trial integrity — every lab result signed for 2045, FDA 483 / ALCOA+ lab result ML-DSA-65 Live platform Connect
L6 NEXUS / Canon Open primitives — HAHS, SHOD, SpectralZK, ViewKey — born at Hive open schemas ML-DSA-65 Open open Connect
How you connect

AFIR is the routing layer — it signs the inference as it happens. SiGR is the receipt that AFIR emits. You don’t hit SiGR directly; you route through AFIR and you get a SiGR back. Same stack, two layers.

Route through AFIR
Point your OpenAI-compatible base URL at AFIR. Every call comes back signed.
curl https://srotzin--afir-cern-afir-api.modal.run/v1/chat/completions \
  -H "Authorization: Bearer $HIVE_KEY" \
  -H "Content-Type: application/json" \
  -d '{"model":"hive/afir-cern","messages":[{"role":"user","content":"hello"}]}'
Sign with SideCar
Already have inference? Send the call to SideCar and get a SiGR receipt for it.
curl https://srotzin--afir-cern-afir-api.modal.run/v1/afir/sign \
  -H "Authorization: Bearer $HIVE_KEY" \
  -H "Content-Type: application/json" \
  -d '{"input":"...","output":"..."}'
What it costs — with signing vs without
Status quo, unsigned: ~$0.000228 / response — no receipt, no record, weeks to reconstruct when it goes wrong.
ProductPriceWhat you get
AFIR (Signed)$0.0003 / receiptNano volume floor $0.0001
AFIR-S$0.0002 / inf + $0.0004 / spanSelective attestation, O(1) signing
AFIR-PQ$0.0012 / receiptML-KEM-768 sealed, FIPS 203+204
AFIR-MAX$0.0018 / receiptBase-anchored, 6× faster, 82% cheaper on complex
AFIR-API (CERN)$0.000029 / responseLive drop-in, ~8× cheaper than Together
SiGR$0.00003 at scaleGraduated; pilot floor $2,500 / mo

All settled in USDC on Base 8453. No monthly minimums.

The whole stack, on one page
The Hive signed inference stack: one post-quantum signing primitive expressed across six layers (input, routing, output, receipt, settlement, network), with HiveBound, AFIR, AmpliHive, SiGR, Capitolare and the full product lineup.

The shared primitive at the top; six layers of the inference stack below; the buyer journey at the bottom.

Pick one layer. Sign it. Then watch the rest.

Start where the pain is loudest — the bill, the route, the response, the agreement. One signature covers it. The receipt is the record, and it verifies anywhere.