Skip to content
Technology How it works Breeder — Hyperion Burner — Aegis Burner — MetroVolt AI-Native Architecture Magnets Fuel cycle Safety Roadmap
Solutions AI & Data Centers Defense & Government Grid & Baseload Neutron Detection Quantum
Learn Technical Library
Proof Publications Whitepapers Technical Library Open Science & Reproducibility The Honest Gates
Company About / Mission Leadership Environment Health & Safety Investors Careers Press Contact
3D Model
AI Architecture › Security & Zero-Trust
Security & Zero-Trust

Threat Model: Actuator Manipulation

Even with valid-looking commands, actuator behavior is bounded by rate limits, interlocks, and an independent shutdown path so manipulation cannot exceed a safe envelope.

STRATEGY / SLOW ▲ ▼ MICROSECOND REAL-TIMEL7Ecosystem & Strategytelemetry ▲ control ▼open ▸L6Experience & Visualizationtelemetry ▲ control ▼open ▸L5Applications & Copilotstelemetry ▲ control ▼open ▸L4Orchestrationtelemetry ▲ control ▼open ▸L3Twin Modeling & AItelemetry ▲ control ▼open ▸L2Data Fabrictelemetry ▲ control ▼open ▸L1Control Planetelemetry ▲ control ▼open ▸L0Foundationtelemetry ▲ control ▼open ▸PHYSICAL S.M.A.R.T. GENERATOR PLANTBREEDER · HYPERION1R0 1.2 m · A 2.5 · 16.84 T · δ −0.30BURNER · TANDEM MIRROR2317 T throat · 26.49 T plug · fₙ 5.44% · DEC1 center stack + plasma · 2 high-field plug · 3 expander → direct converterCOLOR GRAMMAR strategy AI-workflow infra/data models reactor/DECLINE SEMANTICStelemetry (µs)controlKRONOS FUSION ENERGYAI-NATIVE S.M.A.R.T. GENERATORMASTER BLUEPRINTSHEET 01REV. 2026-08L0-L7 · 2 MACHINES
The AI-Native S.M.A.R.T. Generator Master Blueprint — eight layers (L0→L7), one control stack, wired to both machines. Telemetry rises in microseconds; control descends the same path.

The last-mile of an attack

Actuators - magnet power supplies, gyrotron and neutral-beam heating, gas and pellet injection, and the burner's high-field plug/throat coils and direct-conversion grids - are where any attack must ultimately land to cause physical harm. Kronos assumes an attacker might issue commands that pass upstream checks and asks: can the actuator layer itself refuse to do something unsafe? The answer is designed to be yes, within a bounded envelope.

Envelope enforcement at the actuator

cmd valid identitywithin envelopeinterlocks clearEXECUTE
1111
1100
1010
0110

Defense in depth against a valid-but-malicious command

The truth table above shows execution requires all three: authenticated identity (identity), being within the physical envelope, and interlocks clear. A command with a stolen but valid identity that asks for an out-of-envelope action still fails on the middle column. This layering is what makes a single compromised credential insufficient to cause harm.

Design status

Envelope logic and interlock trip conditions are implemented in actuator-controller models and hardware-in-the-loop rigs. The hardware interlocks and the SIS de-energization paths are FOAK build scope; no live reactor actuator is yet under this regime. For the burner specifically, recall the plug coil is overstressed ~3-3.9x at the design bore - a physics feasibility gate that constrains the machine independently of any cyber control.

Content reviewed August 2026 · design-and-simulation stage