Skip to content

Hardware reference

← All revisions

84c25710 · PointSav Digital Systems ·

topic(reference): hardware-reference — device profiles, CPU requirements, and Tier-1 cloud baseline

View the full record as of this revision →

@@ -0,0 +1,92 @@
---
schema: foundry-doc-v1
title: "Hardware Reference"
slug: hardware-reference
category: reference
type: reference
quality: complete
status: active
audience: vendor-public
bcsc_class: public-disclosure-safe
language_protocol: PROSE-TOPIC
last_edited: 2026-05-15
editor: pointsav-engineering
paired_with: hardware-reference.es.md
---

The PointSav hardware reference defines the device profiles and infrastructure configurations against which the substrate is tested and deployed. Three tiers cover the developer workstation, the fleet device, and the legacy build host; three infrastructure patterns extend from on-premise to leased bare metal to cloud. Hardware fragmentation is the primary enemy of OS stability; the reference list is narrow by design, selecting for driver compatibility under a hardened FreeBSD or seL4 base. By the end of this article, a reader will understand the reference device list, the CPU architectural requirements, the infrastructure deployment patterns, and the Tier-1 cloud baseline constraint.

## Reference hardware profiles

[[os-workplace|os-workplace]] and [[console-os|os-console]] target a deliberate set of devices:

| Tier | Device | Rationale |
|---|---|---|
| Flagship | Dell XPS 13 / 14 (Developer Edition) | Dell ships an official Linux profile; Intel WiFi and graphics drivers mature into FreeBSD quickly |
| Fleet | HP ProBook 400 series (445 / 450) | Enterprise-grade WiFi chipsets with BSD compatibility; suitable for larger SMB and customer deployments |
| Build host (legacy) | iMac 12.1 (Sandy Bridge, 2011) | The original Foundry build machine through early 2026; subsequently superseded for `service-content` development work |

The selection criterion is driver availability, not brand preference. Consumer laptops with proprietary WiFi modules that lack BSD-compatible drivers are excluded on that basis alone.

## CPU architectural requirements

Three constraints govern what hardware can run the PointSav substrate:

| Constraint | Requirement |
|---|---|
| Instruction set | Haswell-generation x86_64 or later |
| Required extension | `fsgsbase` — used by optimised seL4 microkernel paths |
| Memory paging | 1 GB Huge Pages enabled (`+pdpe1gb` CPU flag) |

Pre-Haswell CPUs — Nehalem and earlier — lack `fsgsbase`. Attempting to run the kernel on pre-Haswell hardware triggers a `UserException` on the first kernel print. The constraint is a functional prerequisite, not a performance preference.

## Infrastructure deployment patterns

[[infrastructure-os|os-infrastructure]] deploys in three patterns, each with a distinct trust profile:

| Pattern | Hardware | Trust profile |
|---|---|---|
| On-premise | Server in the customer's office (Dell PowerEdge T160 tower or R760 rack are reference configurations) | Highest trust — the operator owns the metal |
| Leased | Colocated bare metal at an external data centre | Hybrid trust — the boot process cannot be physically verified |
| Cloud | Hyperscaler VMs (Google Cloud at the canonical baseline) | Lowest trust — used for stateless edge relay |

## Bare-metal vendor research — Vancouver region

Archive research from 2026 assessed the Vancouver, British Columbia market for bare-metal options closest to the primary customer deployment region. The table records research findings and does not constitute a commercial recommendation:

| Vendor | Physical location | Latency to Vancouver | Characteristics |
|---|---|---|---|
| Atal Networks | Vancouver, BC | <1–2 ms | True local bare metal with IPMI/KVM; unmanaged; direct peering with regional ISPs |
| GTHost | Vancouver, BC | <1–2 ms | Instant-activation provisioning; automation-first |
| Vultr | Seattle, WA | ~3–10 ms | API-driven bare metal; hourly billing |
| OVHcloud | Montreal, QC | ~60–80 ms | Lower cost; high cross-continent latency |

Sub-2-millisecond latency is favoured for production Toteboxes serving local operators. Cloud bare metal in the Seattle region is acceptable for stateless edge functions.

## The Tier-1 baseline node

The most-tested cloud target is a single canonical profile: Google Cloud `e2-micro` at approximately seven US dollars per month. This profile anchors the Compute Matrix Tier-1 baseline:

| Property | Value |
|---|---|
| Approximate cost | ~$7 USD / month (2026 baseline) |
| RAM | ≤1 GB |
| Hardware virtualisation | Disabled by provider — nested VMs unavailable |
| Storage | Persistent disk |
| Role | [[worm-ledger-design|WORM ledger]] + cryptographic router; defers SLM inference to the relay |

The architectural constraint is that a complete Totebox must be able to operate on this footprint. The system must be functional for an operator who cannot provision premium hyperscaler resources.

## Hardware virtualisation constraints

The `e2-micro` baseline disables hardware virtualisation, which prevents running Micro-VMs on that tier. The architectural response is two-pronged:

1. The substrate uses true unikernels (Nanos, Unikraft) rather than Micro-VMs where the cloud provider forbids nested virtualisation.
2. Higher-tier deployments that require Micro-VMs run on bare metal or KVM-capable cloud instances.

## See also

- [[os-workplace]] — the workstation OS that runs on the reference device profiles
- [[infrastructure-os]] — the infrastructure OS covering the three deployment patterns
- [[worm-ledger-design]] — the WORM ledger deployed on the Tier-1 baseline node
- [[sel4-microkernel-substrate]] — the seL4 microkernel that enforces the CPU architectural constraints
Important Information

Important Information

Corporate structure. PointSav Digital Systems ("PointSav") is a trade name of Woodfine Capital Projects Inc. ("Woodfine"). PointSav does not itself offer, sell, or solicit any security. Any securities offering associated with Woodfine's real-property direct-hold solutions is made exclusively by Woodfine, and only by means of the applicable Private Placement Memorandum.

No investment advice. This wiki's content is provided for engineering, operational, research, and development purposes. Nothing on this wiki constitutes investment advice or a solicitation to invest in any Woodfine partnership or direct-hold solution.

Intellectual property. The PointSav name, trade name, wordmark, and marks, together with all current and future PointSav- and Totebox-branded products, services, and offerings — and the software, source code, documentation, design system, and all related materials — are proprietary to Woodfine and its affiliates, except for components identified as open source. No rights are granted except as expressly set out in a written license or agreement. See TRADEMARK.md in this repository for the full trademark notice.

Open source components. Portions of the platform are made available under permissive open-source licenses identified in the accompanying repository. Use of those components is governed by their respective license terms.

No warranty; informational use. Content on this wiki is provided for general informational purposes only and does not constitute a representation, warranty, or commitment with respect to product functionality, availability, pricing, or roadmap. Some articles describe planned or intended features, capabilities, and milestones — language such as "planned," "intended," "targeted," "may," and "expected" marks this forward-looking content, which is subject to change and does not constitute a commitment regarding future performance.

Confidentiality. Where an article describes an operational or deployment detail that is not intended for public disclosure, that article is not published on this wiki. Content here is general-purpose engineering documentation, not customer-specific configuration.

Jurisdiction. Woodfine Capital Projects Inc. is organized in British Columbia, Canada. References to the Sovereign Data Foundation on this wiki describe a planned or intended initiative only, not a current equity holder or active governance body.

Changes to this notice. PointSav may update this notice from time to time; the version posted on this page governs.

Not a filing system. This wiki is not a securities filing system, an electronic disclosure repository, or a substitute for SEDAR+ or any other regulatory filing system. Formal securities filings are made through the applicable regulatory filing system, not through this wiki.

Full disclaimer. This notice supplements, and does not replace, the full Disclaimers article. In the event of any conflict, the full Disclaimers article governs.

Read the full disclaimer →