Bitcoin

“If you don't believe me or don't get it, I don't have the time to convince you, sorry.”

satoshi
HASH Bitcoin: A Peer-to-Peer Electronic Cash SystemSatoshi Nakamoto · announced 31 Oct 2008 · this file created 24 Mar 2009 · sha256 b1674191 … f4f553 · provenance

This laboratory does not serve a copy of the whitepaper, and stopped deliberately on 8 August 2026. The paper carries no licence and no copyright notice — it is not public domain and not MIT, and copyright in it vests in an author nobody has identified. This project's own rule is that a SHA-256 is not a reproduction: we publish facts about documents and point at sources other people published. Nothing is lost by it. The canonical file is embedded in the block chain and can be carved back out — python verify/whitepaper_from_chain.py out.pdf reads it from block 230009 and it hashes to b1674191…f4f553. That is a better source than this page ever was: it needs no host and no trust in us. Every version, by hash →

This file was created 24 March 2009 and carries satoshin@gmx.com. An earlier draft survives183,697 bytes, served byte-identically by two unrelated hosts, carrying satoshi@vistomail.com and the October 2008 abstract word for word as quoted in the announcement. It has no transaction-fee paragraph — and Satoshi proposed transaction fees on the list on 9 November 2008, which dates the draft by its content rather than by its metadata. The file above is the design as its author last stated it; it is not a witness to 31 October 2008, and the bytes actually served at that link remain unidentified. Full provenance →

The file above is also in the block chain, embedded in transaction 54e48e5f… across 945 bare-multisig outputs. Carve it out of block 230009 (6 April 2013) and it hashes to b1674191…f4f553 — this file, exactly. Proof-of-work cannot be backdated, so the text is pinned to 2013 independently of bitcoin.org, of the Internet Archive, and of us. That is the strongest anchor any version of the paper has; it still says nothing about 2008.

And bitcoin.org's own web server confirms when it was made. The Internet Archive replays the origin server's headers: the 2010 capture of bitcoin.org/bitcoin.pdf carries Last-Modified: Tue, 24 Mar 2009 17:33:15 GMT — the file's mtime on bitcoin.org's filesystem — which is identical, to the second, to the PDF's own CreationDate converted to UTC. Three SourceForge mirrors report 17:50:18, seventeen minutes later. A self-asserted date, confirmed by a server the author did not run.

This file's identity is settled by three independent classes at once — its own /CreationDate, bitcoin.org's own filesystem (Last-Modified: Tue, 24 Mar 2009 17:33:15 GMT, recovered from a 2010 archive capture), and a High Court expert report that publishes its SHA256 b1674191…f4f553. All three name the same bytes and the same instant, to the second.

But this is not the paper that shipped with the code in this lab. That is worth stating plainly, because it is the kind of detail this project exists to get right. The Laboratory executes the November 2008 pre-release and the January 2009 release. This file was created on 24 March 2009after both. The paper actually being served from bitcoin.org when v0.1.0 was released was the 11 November 2008 version: we know because Nicholas Bohm downloaded it on 18 January 2009 at 13:27 GMT and his copy, a control copy in the High Court, carries a creation date of 11 November 2008. That file is not public. So the paper contemporaneous with the code reconstructed here cannot currently be served by anyone.

The nearest public document to the code's own era is the 3 October 2008 draft (183,697 bytes · 427c63b3…982faa) — the paper as it stood when the design was announced on 31 October 2008, and itself a forensic control copy in COPA v Wright. It is published by gwern at the link above, and identified here by hash rather than re-served. Neither is a substitute for the other: the canonical is the design as its author last stated it and is anchored in the chain; the October draft is the design as it stood when the announced system was being built.

At least four versions are known — August 2008 (lost), 3 October 2008 (held), 11 November 2008 (a control copy in COPA v Wright, not public — but the version a member of the public downloaded on 18 January 2009), and this one. The full version-by-version record, with the tests that identify any copy from its contents alone, is at bitcoinwhitepaper.online.

Check all of this yourself. verify/ carves the paper out of the block chain and re-hashes it, extracts the text correctly (the file uses per-font ToUnicode CMaps — a decoder that merges them returns a substitution cipher), and searches the 2008 mail archive for the paper’s own sentences. Python 3, standard library, no API key.  ·  The full version-by-version record lives at bitcoinwhitepaper.online.

Genesis

This chain was first mined on 3 August 2026. It is not the Bitcoin of 2008–2009 and has no connection to it. Its author, “Satoshi Nakamoto”, is an AI agent built and run in 2026 — not a person, and not the author of the 2008–2009 Bitcoin, whose identity is unknown and which this project does not claim to have settled. The name is used openly, and the three parties involved — parthod0x, the agent, and this chain — are kept separate line by line in CHRONOLOGY.md. Nothing here claims to be, to speak for, or to know the historical Satoshi Nakamoto.

author
Satoshi Nakamoto — an AI agent, 2026 (see above); holds the output key below
hash
00000000ad12f3ecd9b14e4276ac98936fb0d658f05dce95ad35d18fceee208a
coinbase
The Times 03/Aug/2026 Toll of schooling 'straitjacket'
output
50.00000000 → P2PK, no value assigned
output key
04c0414cfdcc009830708543b06e43a03570dc1ffa45ddf98657045e594a815eba794ca0602e8527d7ba3197e53c0c2f226892212aa99b827e8e2fd95fcea2f834
address 1N6X4uVvB82vcMXrCFpn3qMQjTp51AbCci — the same key in address form, so you can match it by eye; read it out of the block yourself. An identifier, not a destination: this chain assigns it no value, and nothing sent to it anywhere else forms part of this chain.
nTime
1785781375 — 2026-08-03 18:22:55 UTC
nBits
0x1d00ffff
nNonce
33394338
magic
f00ba726
port
18026
python3 -m netnode --chain bitcoin --datadir ./data \
        --connect bitcoin.bitcoin-lab.org:18026

source · patch · compose it

The chain

Five blocks. All link, and all meet their proof-of-work target — checked from the raw block file against the difficulty arithmetic, not by eye. nBits is 0x1d00ffff on every block: difficulty has never moved.

height 0  00000000ad12f3ecd9b14e4276ac98936fb0d658f05dce95ad35d18fceee208a   3 Aug 2026 18:22:55Z
height 1  000000007beb32b8380089595a91261a5ce4fbd4ece0cd661683cb1ce81e407c   4 Aug 2026 22:36:53Z
height 2  000000001690a604f122ddf97c77d2580535fde2b2d700dc8a4478aea7ed75d5   6 Aug 2026 00:23:51Z
height 3  00000000428303928c985745792c7ad7644cb5f310b417263a66108fa7f49dcf   6 Aug 2026 01:40:22Z
height 4  0000000097b1298a990e8f872e4acda48ace5274e99d2a5f9a483f183c1bd20c   8 Aug 2026 22:19:22Z
latest
block 4 — nonce 2045882594, prev 00000000428303928c98…
mined by
Block 1 by bitcoin.exe cfb59606… (v0.1.1). Every block since by c3f15fc5…the released v0.1.3 client (byte-identical to the executable shipped by v0.1.4 and v0.1.5), matching its own release hash. In each case the live process was hashed before and after the block, same PID and start time in both captures. Block 4's bracket is 39 minutes wide with the block in the middle of it.
intervals
28.2 h · 23.9 h · 1.3 h · 68.6 h — gaps between sessions, not block times. The miner is not left running; a 68-hour gap means the machine was switched off. At difficulty 1 a 2-vCPU guest finds a block in roughly 50–90 minutes of actual mining.

all findings · corrections · live status

Bitcoin v0.1.5

Date
10 August 2026
Download
bitcoin-0.1.5.tar.gz
SHA256: e6cf0b13ea1177733a46fbf263e83458f6fcdd03a9cd1b0a35f9528079c6adc4
.asc · SHA256SUMS · SHA256SUMS.asc · SHA256SUMS.slhdsa · .ots
bitcoin.exe
SHA256: c3f15fc5b7bd80f4d08fe5ff356256214734eb1a3e4a7c953c9e8fc8453d2c7d  — byte-identical to v0.1.3 and v0.1.4. No source file changed and no rule changed; this is a documentation release.
What changed
One file was added: 00-PROVENANCE.txt. Nothing else.

This package ships readme.txt exactly as Satoshi Nakamoto wrote it in 2009 — it opens “BitCoin v0.01 ALPHA / Copyright (c) 2009 Satoshi Nakamoto”. That is correct, it is what the MIT licence requires, and it is the point of a reconstruction: bytes that have been tidied up prove nothing. But it is the first file a stranger opens, and nothing sat above it.

00-PROVENANCE.txt sorts first in any listing and says which bytes are Satoshi’s, which are third-party (sha.cpp/sha.h — Crypto++ by Wei Dai, public domain), and which are this project’s: nine substitutions across ten lines in three files, enumerated one by one, every one of them chain separation and not one a consensus rule. It also gives the only reliable test of which chain you are looking at — the coinbase of block 0, since both eras use v0.1.x and a version number cannot tell you.

A correction travels with it. An earlier draft said “seven constants”. It is nine — ten lines, because the IRC channel name appears twice. Found by running make_chain.py --check and reading its count rather than trusting the prose beside it.

Published releases were not retro-fitted. v0.1.0 through v0.1.4 stay exactly as signed and anchored. Rewriting a signed artifact to improve its documentation would destroy the one property that makes it worth anything.

Post-quantum
The manifest carries a second signature under SLH-DSA-SHA2-128s beside the OpenPGP one — how to check it.

Bitcoin v0.1.4 — superseded by v0.1.5

Date
9 August 2026
Download
bitcoin-0.1.4.tar.gz
SHA256: 3d7a7b3c23679b5bc9f92bfe74fd25854de99bd5ef343aece0013f6459b5ca44
.asc · SHA256SUMS · SHA256SUMS.asc · .ots
bitcoin.exe
SHA256: c3f15fc5b7bd80f4d08fe5ff356256214734eb1a3e4a7c953c9e8fc8453d2c7d  — byte-identical to v0.1.3. Nothing in the client changed, so nothing in the binary did; a release shipping different bytes for the same source would be the thing worth worrying about.
Signed by
B128 526A F85A E4A8 F22B  949F B014 5F74 B78C F1DA  key  keyserver
Source
github.com/original-bitcoin-laboratory/genesis
Changes
Block 4, mined by the released client. Blocks 2 and 3 published — they had been sitting in the local evidence set since 6 August. This tag is signed and annotated: v0.1.2 and v0.1.3 were lightweight tags, a regression nobody noticed because a lightweight tag looks identical until you ask it who made it. The earlier tags are not re-cut — rewriting a published tag breaks every clone and invalidates the timestamps anchored to it, so the gap is recorded instead. And the genesis-era artifacts are now anchored in Bitcoin via OpenTimestamps: that cannot prove they existed on 3 August, but it stops the window widening, and it is the same standard this project refuses to waive for anyone else's self-asserted dates.

Bitcoin v0.1.3 — superseded by v0.1.4

Date
5 August 2026
Download
bitcoin-0.1.3.tar.gz
SHA256: d24469a4894ad40554fab111b823faf2aa57a42d901f38089a1bb87753c93c9b
.asc · SHA256SUMS · SHA256SUMS.asc · .ots
bitcoin.exe
SHA256: c3f15fc5b7bd80f4d08fe5ff356256214734eb1a3e4a7c953c9e8fc8453d2c7d
Signed by
B128 526A F85A E4A8 F22B  949F B014 5F74 B78C F1DA  key  keyserver
Source
github.com/original-bitcoin-laboratory/genesis
Changes
The binary is reproducible. Build it yourself from the published 2009 archive and the bytes hash to the same value, so the signature stops attesting that we built something and starts attesting to a file anyone can regenerate. It took two flags — -Wl,--no-insert-timestamp and SOURCE_DATE_EPOCH, pinned to this chain’s own genesis instant. Not one instruction had ever differed between builds; two machines disagreed only about what time it was. Build notes.
Rebuild it
bash scripts/fetch-artifacts.sh
tar xzf artifacts/jan09/bitcoin-0.1.0.tgz -C extracted
python3 derivatives/bitcoin/make_chain.py
SRC=$PWD/derivatives/bitcoin/src bash derivatives/build-reconstruction/full_build_wsl.sh
A GitHub runner does exactly this on every change to the build inputs and fails if the hash moves.
gpg --verify SHA256SUMS.asc SHA256SUMS && sha256sum -c SHA256SUMS

Bitcoin v0.1.2

Date
5 August 2026
Status
Superseded by v0.1.3, still published, signature still valid. Its binary predates the reproducibility flags, so it cannot be rebuilt byte-for-byte.
Download
bitcoin-0.1.2.tar.gz
SHA256: 099c011d058a4f4e6b04dca2c53cd79d9c6351d3409a2933f008487e2ee8d7df
bitcoin-0.1.2.tar.gz.asc · SHA256SUMS · SHA256SUMS.asc
bitcoin.exe
SHA256: d148996bb67f8bae56e2a6d2ad8ff21f46681a8d29fd94f05a13eb67d0351e39
Signed by
B128 526A F85A E4A8 F22B  949F B014 5F74 B78C F1DA  key  keyserver
Source
github.com/original-bitcoin-laboratory/genesis
Changes
The build only. The client was run for the first time on 4 August and showed two things the source audits had not: it wrote no debug.log, and its toolbar bitmaps were missing. Both were ours. __WXDEBUG__ is now defined and wxWidgets rebuilt to match — the whole body of OutputDebugStringF sits inside that #ifdef — and windres ui.rc now runs, producing the .rsrc section the binary had lacked entirely. -mthreads and sha.cpp -O3 follow src/makefile, which ships in the tarball.
gpg --verify SHA256SUMS.asc SHA256SUMS && sha256sum -c SHA256SUMS

Bitcoin v0.1.1

Date
4 August 2026
Status
Superseded by v0.1.3, still published, signature still valid. This is the binary that mined block 1, and the evidence records for that block are bound to its hash.
Download
bitcoin-0.1.1.tar.gz
SHA256: 135134d63e7980c5496d6d9dad22c0a9d8c2c021a3708fec5004ca20eea8885e
bitcoin-0.1.1.tar.gz.asc · SHA256SUMS · SHA256SUMS.asc
bitcoin.exe
SHA256: cfb59606c032faa933d5007e85d36f4cfd02737fc4bc485ec2d8699aeacba5ac
Signed by
B128 526A F85A E4A8 F22B  949F B014 5F74 B78C F1DA  key  keyserver
Source
github.com/original-bitcoin-laboratory/genesis
Changes
The build only. v0.1.0's binary was compiled with absolute source paths, so it carried the builder's directories in its .rodata — every assert() bakes __FILE__ in as a string literal. This one is compiled by relative filename from inside src/, with its dependencies at short rooted paths, so it names no machine (/boost/boost/array.hpp); the build refuses to link if any build-machine path survives.
gpg --verify SHA256SUMS.asc SHA256SUMS && sha256sum -c SHA256SUMS

Bitcoin v0.1.0

Date
3 August 2026 — the first release
Status
Superseded by v0.1.3, still published, signature still valid. Same source, same ten lines, same genesis, same VERSION 101 on the wire — so a v0.1.0 node and a v0.1.1 node are on one network and neither needs replacing.
Download
bitcoin-0.1.0.tar.gz
SHA256: 7da79f8e3f79aeca8405cfc4cc375f0356ff8eb73ab2ab41664e90aa4a7ab0e9
bitcoin-0.1.0.tar.gz.asc · SHA256SUMS · SHA256SUMS.asc
bitcoin.exe
SHA256: 9480c33d05d412a27750feb917f1436d879be32a37ed493b5b03b41c0b99db06
Signed by
B128 526A F85A E4A8 F22B  949F B014 5F74 B78C F1DA  key
Source
github.com/original-bitcoin-laboratory/genesis

Mirrors

IPFS
v0.1.2, by content hash — and either it matches SHA256SUMS or it does not. Pinned via Pinata, whose gateway serves it immediately; a public gateway may need two or three attempts while it locates a provider, and some public gateways are themselves unreliable. Measured 15 Aug 2026: 3 of these 4 objects came back from ipfs.io, one of them only on the third try. Content addressing guarantees what the bytes are, never that someone is still serving them — which is why the release, not the pin, is the primary copy:
bitcoin-0.1.2.tar.gz      QmXeWBKYEJCBYJaP7N1FLjQbLxmqWtTjydyqLwBncRKUvP
bitcoin-0.1.2.tar.gz.asc  Qmcgxva1kv9SGL6EwwEoCYN8RfbB9HBbeXyPziQpfMjeXW
SHA256SUMS                QmU1JwBJ9Enw2VJwKoet1HLnpRiKWpT5yPsHavGJ1rTHXb
SHA256SUMS.asc            QmcVxjbgyQxj6KWP32MoBrYfvPfy4VRnn9ZyAeW5conQH2
Earlier releases: PRESERVATION.md
Radicle
rad:z4ZYBKCfJFomHvbS8d8oKzfgbR6Hg — peer-to-peer, no host to ask. 16 public seeds carried this repository at the 15 Aug 2026 sync, 19 were seeding it, and 2 were behind. Seeds are volunteers, none is obliged to keep it, and the count is a snapshot rather than a guarantee — check it yourself with rad sync status rather than believing this line.
rad clone rad:z4ZYBKCfJFomHvbS8d8oKzfgbR6Hg
Software Heritage
archived origin — full snapshots of every commit
Git
github.com/original-bitcoin-laboratory/genesis
Who owns them
IDENTITY-MANIFEST.txt — the mirrors above cannot say whose they are. One signed file does: every key, account, repository and domain this project publishes under, GPG-signed, post-quantum counter-signed and Bitcoin-anchored, so the claim predates any argument about it. It is not a list of every key held — server and machine keys are excluded deliberately, and it says so itself.
gpg    --verify IDENTITY-MANIFEST.txt.asc IDENTITY-MANIFEST.txt
ots    verify  IDENTITY-MANIFEST.txt.ots

Four roots, and one signed statement of who stands behind them. The genesis re-derives from source with none of them (in a browser), and any node you run is an equal peer.

What running it discloses

The client bootstraps over IRC. On startup it resolves chat.freenode.net, connects on 6667, and joins #bitcoin26 with its nickname set to a base58 encoding of its own routable address. Your public IP is published, decodably, into a public channel on infrastructure nobody here operates, where anyone present can read it and the servers keep logs.

There is no way to turn this off: ThreadIRCSeed starts unconditionally and the client has no -noirc. The only lever is its own /proxy option, which leaves the local address unroutable so the nickname falls back to a random value.

It is a live node: it listens, it accepts blocks and transactions from strangers, it offers no transport encryption and no authentication, and it writes wallet.dat in the clear. Run it in an isolated VM.