Autonomous treasury · Solana Devnet
The treasury that funds itself.
Autarkon runs on its own exhaust. A quarter of every $AUN swap toll lands in the vault; anyone can fire the harvest and the claim cracks five ways — 40 / 40 / 10 / 5 / 5 — into burn, a stock estate, operations, liquidity and chaos. No keys. No votes. No humans required.
01THE SPLIT
One fee. Five destinations.
R/1 · OF THE BURNBuy & burn
The largest pipe buys $AUN back on the open pool and burns it in the same transaction. Supply only ever falls through this route — every claim tightens the float.
- 40% buy & burn —
- 40% the estate —
- 10% operations —
- 5% liquidity —
- 5% chaos —
02LIVE STATE
The engine, measured
03THE FLOW
How a strike runs
-
P01
A swap pays its toll
Every $AUN swap on the main pool pays a 4.2% toll; a quarter of it belongs to the protocol and accumulates inside the pool, owed to the vault. The pot only ever grows between strikes.
-
P02
Anyone strikes the harvest
harvestClaim()is permissionless — the caller pockets 0.25% of the claim plus rounding dust. Rate-limited by a cooldown: 60 seconds on testnet, five minutes planned for mainnet. -
P03
The pot cracks five ways
40 / 40 / 10 / 5 / 5 — constants in bytecode, not entries in a config table. Minimum claim, per-route minimums and integer dust guards keep the arithmetic honest.
-
P04
Every pipe runs alone
On Solana a transaction cannot half-revert, so every guard is validated before a lamport moves and each route runs as its own permissionless strike. A stale feed or a thin pool soft-skips — that slice stays pending, it never takes the harvest down. The ledger records every skip.
INV-1 · CLAIMED = KEEPER + PENDING + PAID asserted on-chain after every strike — watch it live in the app
04SAFEGUARDS
Walls, not promises
TWAP drift gate
Before any pool trade, spot must sit within ±3% of the 30-minute TWAP. Manipulation inside the window is refused, not punished.
Feed staleness & pause
Stock routes skip any asset whose oracle is older than 15 minutes, paused, or negative. Skips are events, not errors.
Pool impact cap
No single route moves more than 0.5% of a pool per execution. Oversized amounts batch across future harvests.
Soft-skip isolation
Guards validate first, then each pipe runs as its own strike. A failing pipe emits
RouteFailed and leaves its funds pending — never takes the harvest down.
Timelocked custody
Fee-recipient and dev-treasury changes need a request/confirm delay — 60 seconds on this devnet edition, 24 hours planned for mainnet. The world watches the intention first.
Self-auditing ledger
INV-1 asserts claimed = keeper + pending + paid after every harvest. INV-4 asserts the vault holds zero $AUN when the dust settles.
05THE ESTATE
Nine stocks, held by bytecode
The estate route buys nine tokenized stocks at equal weight and just… holds them. Half of each position is swap, half is liquidity, all of it guarded by feed-staleness and drift checks. On testnet the feeds are simulated; on mainnet the same code consumes real equities prices.
06QUESTIONS
The fine print
Q1What exactly is Autarkon?
Q2Who can call the harvest?
Q3What happens if a route fails mid-harvest?
RouteFailed entry lands on the ledger, the amount
stays pending for that route, and every other pipe completes normally.
The failed amount retries next harvest.Q4Are the stock positions real?
Q5Why does 5% go to "chaos"?
Q6Can the weights or destinations be changed later?
Q7Why is gas paid in SOL?
Q8When mainnet?
07 · ENLIST
Needs nothing. Runs anyway.
Every strike, every route, every skip lands on-chain where anyone can read it. Open the app and watch the engine work in real time — follow the account for the launch signal, read the contracts for everything else.
- announcement channelx.com/autarkonxyz
- home of the engineautarkon.xyz
- keeper reward0.25% + dust
- cooldown · testnet60 seconds
- the split · fixed40 / 40 / 10 / 5 / 5
- keys heldnone that matter