Logos Collective Weekly Summary

Week 36, 2026 (September 7, 2026)

5
Teams Reporting
300+
PRs & Updates

Key Highlights

Messaging

Messaging API now supports Mix through the AnonymityLevel flag — sender anonymity via mix landed in logos-delivery #4180.

Messaging

LIP-243 segmentation merged with a simplified wire format, implemented as the standalone nim-segmentation library and queued for integration into the Reliable Channel API.

Messaging

status-go now advertises WakuMessage version=0 on send, completing phase 2 of the Messaging API integration; functional and e2e fleets being migrated to logos-delivery images.

AnonComms

Logos Mix Network LIP published — specifies the Logos-specific mix protocol stack and opinionated configuration.

AnonComms

Poseidon2 circuit implementation completed in Circom with a benchmark report; Poseidon2 examples and FFI/WASM support added to Zerokit.

AnonComms

Standalone service discovery module now plugs into Logos Delivery — discovery plugin header PR opened and verified locally against Delivery nodes.

Logos Core

A module load now reports a verdict — spawned, loaded and ready became three distinct facts across a four-repo chain, so a plugin that never loaded is no longer announced as loaded.

Logos Core

Protocol 0.9 makes a provider restart observable — a liveness watchdog, generation counter and status channel, keyed by target module and carried into all three SDKs.

Logos Core

The EVM signer became usable — evm.signing.approve brings the approver forward with the request, calldata is decoded on the device that displays it, and account mutation is the custodian's alone.

Storage

Mix transport gained retransmissions, push-based SURB replenishment and remote session cleanup — and works under adverse-network testing.

Storage

Research on time-based path selection for hidden services published, and the strategy folded into the draft path selection spec. Storage Module & UI v2.1.3 are out.

Blockchain

Node 0.2.4 released: Blend failure detection and fallback for the testnet release, #3479

Blockchain

Node 0.3.0 release candidates published for internal devnet testing 0.3.0-rc.1, 0.3.0-rc.2

Blockchain

Transaction typestate refactor merged #3383

Messaging API — General Availability

^

Integrate Mix into Messaging API

  • feat(messaging): sender anonymity through mix via anonymityLevel — #4180, #4199, #4184

Reliable Channel API — Beta

^

Add Segmentation to Reliable Channel API

  • integrate nim-segmentation — replaces the skeleton in channels/segmentation/; pulls in nim-leopard, so cmake becomes a build-host requirement and the Android/iOS toolchain is a follow-up

Logos Chat — Beta

^

Implement full identity model

Stabilize and polish API

Deliver user-facing chat features

  • Premade basic Content Types

Create a basic service discovery module

^

Integrate the standalone service discovery module into Logos Delivery

  • Fully working logos-delivery-module plug-in for service discovery via the libp2p module — locally verified, interoperating with logos-delivery nodes that use the internal service discovery
  • Shipped the service-discovery plugin header (PR train #6) — logos-delivery #4178
  • Admit pure-libp2p peers (PR train #7) — logos-delivery #4187
  • Logos Delivery advertises itself with its own signed extensible peer record (PR not yet opened)
  • Wired logos-delivery's discovery plugin to the libp2p module as a declared dependency — logos-delivery-module #97
  • Large-scale local simulation with scenarios

Establish libp2p mixnet

^

Implement local reputation mechanism and research advanced DoS protection

  • Continue work on cover traffic and local trust reputation

Specify a Logos Mix Network opinionated configuration

  • Published the Logos Mix Network LIP — specifying the Logos-specific protocol stack and opinionated configuration

Deliver de-MLS for p2p group messaging

^

Integrating de-MLS into libchat

  • Regarding reliability, simulated SDS (with custom backoff rules) to assess total complexity and reported the findings
  • Started a new architecture with the MLS module separated from de-MLS on a branch
  • Discuss the single-steward commit rule to evaluate syncing efficiency
  • Finish the architecture split; discuss all open questions regarding configuration and commit selection

Implement RLN membership allocation service

^

Migrate Logos Delivery to LEZ-based RLN using the RLN membership management module

  • Aligned the module with the latest Logos Delivery and Logos Core changes
  • Validated the end-to-end scenario where Delivery registers using membership allocation
  • Create and validate the user journey of installing Delivery through Basecamp, registering a membership, and running Delivery with RLN

Decentralised Oracle Network

^

Implementing Oracle Zone

  • Minimal working implementation completed, including Logos module capability
  • Logos module discussion
  • Improve the Logos Oracle Network implementation

Maintain and expand Zerokit

^

Integrate and benchmark Poseidon2 hash function

  • Completed the Poseidon2 circuit implementation — circom-rln #1 in Circom
  • Refactored the multi-message-id circuit into the main branch — commit to simplify custom circuit generation
  • Generated resources for Zerokit and completed the benchmark report
  • Poseidon2 example for Rust/C/Nim/JS and FFI/WASM support — zerokit #437
  • Static analysis of the Poseidon2 Circom implementation using circomspect, and request for review

logos-basecamp

Intent routing completes the round trip — a caller that raises an intent is routed back once the provider finishes; the PMUI install/uninstall/upgrade ack handshake is gone now that modules_state reports lifecycle directly; mock backends and a mock logos core make the app drivable without a live stack; the MCP-driven UI test layer grew; Windows CI moved to the self-hosted pool.

logos-blockchain-ui

New designs across the app — a section nav over dashboard, blocks, accounts and node views, stat tiles, node and validator status cards, chain-stats and Cryptarchia-info views, and a new icon set.

#62

logos-capability-module

Relocked onto the module-builder carrying the protocol 0.9 revision.

#29

logos-container

A container can now report whether a module's plugin actually loaded — the vocabulary (LoadVerdict / ModuleContainer::awaitLoad) reported over the stdout it already reads, no fourth pipe.

#5

logos-container-subprocess

Answers whether a launched module actually loaded, and spawns with posix_spawn so the child cannot deadlock before exec — which also brought fd hygiene.

#7 #6

logos-cpp-sdk

LpClient::subscribeEx surfaces subscription transitions, then re-keyed by target module — guarded on protocol ≥ 0.9 so it merged as a no-op before the protocol side.

logos-design-system

Progress-bar API fixed to support end-to-end download progress, and a dot matrix added.

logos-doctest

Content-addressed screenshot files landed and were then reverted — the split grew the branch and broke consumers.

logos-evm-eth-rpc-module

Optional light-client verified routing, per chain — off (default) is today's behaviour exactly, required refuses on failure, and there is no preferred mode; only proof-backed reads are classed verified.

#8

logos-evm-fee-module

Made to follow our module-builder, and now diffs a fingerprint of the served rows so a list that stops resolving cannot empty its chains in silence.

#2

logos-evm-keystore-module

Tier D — account mutation belongs to the custodian alone. The gate runs before arguments are parsed and every secret a refused call carried is zeroized; gating delete_account closed an unmetered password oracle. The decision moved into a pure gate.rs.

#7

logos-evm-signer-ui

evm.signing.approve provided (the intent is a doorbell, not a courier), and the signer decodes the calldata it is about to show — offline, self-labelling, only VERIFIED for an address the decoder can identify.

#5 #4 #3

logos-evm-token-list-module

A token list that works offline — 1709 tokens across 25 chains compiled in, with a PROVENANCE.md recording URL, fetch date, version, byte count and sha256 so the blob is re-derivable rather than trusted.

#5

logos-execution-zone-module

send_generic_public_transaction corrected to a byte-string instruction IPC type.

#49

logos-liblogos

The load-verdict consumer: the load waits for the verdict and reports it; a crash stopped being described by a stale teardown; the snapshot reports each module's real type and version; concurrent per-module loading; then relocked onto the fork-safe container and relative---path host.

logos-logoscore-cli

Bumped onto the fork-safe liblogos.

logos-logoscore-py

Relocked onto the module-not-loaded fix.

#23

logos-module-builder

A Nim cdylib authoring path (codegen.nim) so a module can be authored with a Nim core behind its .lidl contract — verified end to end — plus the relock train onto the protocol 0.9 revision.

logos-module-loader-qt

The host reports whether the plugin loaded and why it did not, and resolves a relative --path.

logos-modules-release

Storage updated to 2.1.3 through the release set, and the AMM modules added.

logos-modules-state-module

error documented as also covering a load that failed, not only a crash.

#3

logos-package-downloader

Progress reported by the downloader for downloads.

logos-package-downloader-module

Download progress carried through the module.

#34

logos-package-manager-ui

Download progress drawn in PMUI (closing #57 and #61), with flake hygiene alongside.

logos-plugin-qt

Relocked onto the protocol 0.9 revision; the consumer-admission bound raised 8 → 9 and then its note corrected — the bound stays at 9.

logos-protocol

Protocol 0.9 — subscription continuity, keyed by target module. A liveness watchdog, generation counter and status channel make a provider restart observable; the silent re-arm was kept deliberately but made observable; plus CI bars a loaded runner can meet, and the mock re-reads LOGOS_MOCK_FIXTURE.

logos-qt-sdk

Subscription state keyed by target module; moved to protocol 0.9 and the raised consumer-admission bound; and nine stale tests corrected.

logos-rust-sdk

Subscription state keyed by target module, not by subscription.

#52

logos-standalone-app

Bumped onto the fork-safe liblogos.

logos-storage-module

Storage Nim core updated to 0.4.5.

#84

logos-storage-ui

Updated onto the new 2.1.3 version.

#91

logos-view-module-runtime

watch() stopped hanging silently — when module() returned null, a type mismatch default-constructed a call whose isFinished() is never true, so no callback fired and nothing was logged, across all 82 call sites.

Large Data Transport Layer for Mix

^

Mix Transport

  • Added re-transmissions of outbound packets
  • New "push" model to SURB replenishment
  • Remote closing and cleanup of sessions and streams
  • Added netem emulation to the testing harness, with performance analysis
  • Aligning with the testing harness branch and ensuring the changes introduced there are ported to the main mix-transport branch
  • Integration with the block exchange protocol

Hidden Services Over Mix

^

Hidden Services Over Mix

  • Completed the research document on hidden services path selection and posted it to the forum
  • Included the optimal strategy for hidden services in the path selection spec

Package Manager

^

Package Manager

  • Added total bytes in the download progress callback
  • Provided an opt-out solution for download providers
  • Storage Module 2.1.3 release — to be delivered soon for hosting LGX packages
  • Storage UI 2.1.3 release
  • Tried the full download progress on the basecamp application successfully
  • Updated the Package Downloader Module doctests for a full e2e test, including the progress feature
  • Add Storage Module as an optional dependency in logosctl and basecamp
  • Move the configuration migration into the Storage Module

Bedrock — Research

^

Cryptarchia

  • Every Operation now carries a proof, with gas independent of it: spec (in-review) logos-lips#431; node verifies the fresh channel config proof and derives execution gas from state (in-review) #3456
  • SDP active and withdraw_at epochs record RFC merged logos-lips#422; per-service zk_id uniqueness made normative for reward distribution, merged logos-lips#406
  • Last served epoch made rewardable: RFC (in-review) logos-lips#435, implementation (in-review) #3492, #3493
  • Provider identity defined as a libp2p peer (draft) logos-lips#436; era-based protocol versioning RFC (draft) logos-lips#439
  • Blend RFCs drafted: core-node progress observation and the reaction ladder logos-lips#434, admission priced by measured load logos-lips#440
  • Wallet specification: key derivation constants and Poseidon2 mode fixed (in-review) logos-lips#437

Total Stake Inference

  • Testnet 0.2.1 postmortem written up with the Total Stake Inference and Blend findings doc; Blend outage scenario simulated with uncle references: uncle references alone do not prevent the permanent forks unless the Blend outage itself is resolved

EmPoWering

  • Block Rewards 1.2.0 RFC opened: fee pass-through, stake-only release, and epoch settlement (in-review) logos-lips#430
  • Reward controller design compared against the original EmPoWering goals, converted into measurable outcomes: the current controller better matches the simple, persistent, low-throughput on-ramp with emergent hand-off, while the de novo controller gives clearer Proof of Stake onboarding targets and subsidy accounting but relies on optimistic adoption and miner-retirement assumptions doc

Bedrock — Engineering

^

Blend

  • Blend failure detection and reaction merged on master #3473 and on the 0.2 release branch #3479
  • BLAKE2b-based PRNG replaced with ChaCha20 #3435
  • Epoch-related refactoring merged #3460; service structure simplified (in-review) #3490
  • Cover traffic schedule kept intact when blending transactions (in-review) #3496
  • Blend and Total Stake Inference diagnostic instrumentation merged on master #3413

Node

  • Proof of Work auto-claim merged #3457; values updated to the latest spec and 0.3.0-rc.1 testnet targets #3458; claims clamped to the Blend network payload size #3477; precomputed difficulty settings (in-review) #3481
  • Transaction typestate refactor merged: VerificationState-aware transactions propagated through the codebase #3383, Op/SignedOp/MantleTx naming standardised #3274, op codes moved into a trait #3308
  • SDP pending active message persisted and restored across restarts #3453
  • Chain id exposed on HTTP and FFI #3485; voucher rewards and claimable total in vouchers info (in-review) #3487, network info over FFI (in-review) #3488, leader aged notes exposed (in-review) #3489
  • OpenAPI generation tests and macros keep every API component in sync #3442
  • Remaining production log targets migrated to the shared log-target crate #3472
  • Chain leader enforces cumulative gas correctly during block creation (in-review) #3480; finite block-range retrieval consolidated (in-review) #3478
  • Rust toolchain updated to 1.98.1 #3483, Overwatch#154

Testing

Zone SDK

  • Deposit with atomic inscribe merged #3448; multi-signature config merged #3455; m-of-n signature withdraw and transfer (in-review) #3495
  • λSQL cucumber scenarios merged #3470

Logos Core

Logos Execution Zone

^

Sequencer

  • Multi-node local testing tooling merged, with the liveness fixes found while testing the release candidate #819; 4-node docker setup merged #832
  • Slasher moved into an actor with report/propose logic and 2/3 threshold slashing signatures (in-review) #818; 2/3 threshold signatures for Bedrock channel config updates (draft) #834
  • Finalized L1 slot threaded through FollowUpdate, closing the remaining decentralized-sequencing FIXMEs #821; gossip mempool submissions screened by transaction fee #830
  • Actor architecture phase 2: rocksdb communication moved into the Storage actor, merged #798; gossip module turned into an actor started (draft) #833
  • Read-only sequencer: sequencer FFI started (draft) #823

Fees

Cross-Zone

  • Cross-zone testnet demo with one node and two zones (WIP) code

Accounts

  • Programs as accounts merged: Deploy program transaction #733, program storage as a linked, arbitrarily-addressed segment chain #812, ProgramId references removed from chaincalls #735, ProgramDeploymentTransaction removed #822, program loader wallet CLI and FFI support #815; overview of the program changes and deploying via the wallet CLI doc
  • Incremental updates merged: AccountDiff core types #749, programs wired to diff-native execution #791, ChainedCall pre-states replaced with pre-state references #790
  • Program updates: private execution of immutable programs and shadow programs (draft) #824; segment optimizations outlined doc
  • Environment unification: authorized balance decrease, permissionless claims, and pinata/vault program removal merged #817, to be superseded by sharded program state (draft) #835
  • Fed pre-states checked against chained call references #813
  • 0.3 benchmark started (WIP) code

Testing

  • Guest memory images memoized, keyed by ELF bytes, fixing the unit-test CI #831

Nimbos

^

Nimbos

  • Kademlia discovery layer merged: discovery loops, bootstrap lifecycle maintenance, eclipse-attack defense via minimum outbound peers, private address filtering, dynamic peer discovery during initial block download nimbos#28
  • Legacy eth/net/nat and NatConfig removed in favor of Logos-native reachability and AutoNAT v2 nimbos#176
  • Stateless Mantle transaction validation merged nimbos#183
  • Proof of Quota zk verifier (in-review) nimbos#193; queue-driven async block processor (in-review) nimbos#194