Private
A personal or organizational workspace can remain local, encrypted, and available only to explicitly authorized members.
The sovereign substrate
Legra is infrastructure for all data: open or closed, public or private, shared or restricted. Independently governed workspaces can link and transact across a global graph without dissolving their cryptographic, organizational, contractual, or economic boundaries.
Data sovereignty is not useful if it leaves every participant in an isolated pod. A sovereign workspace must also be able to discover, authorize, deliver, use, prove, and settle bounded work with other parties.
One network, several boundaries
A personal or organizational workspace can remain local, encrypted, and available only to explicitly authorized members.
A bounded group can collaborate on graph knowledge, files, conversations, tasks, and changes without publishing them globally.
A Data Product or Use Case can cross boundaries under explicit identity, purpose, rights, duties, delivery, and economic terms.
Knowledge intended for open use can participate in the same graph and logistics network without making every linked workspace public.
Sovereignty is a system
Workspace keys determine who can interpret protected content. A node that retains encrypted blocks does not gain authority merely by storing them.
Owners choose self-operated or service-provided nodes and can separate the machines that preserve data from the parties allowed to read or change it.
Workspace membership establishes the primary collaboration boundary for people, organizations, services, and agents.
Fine-grained, standards-based policy can express permitted uses, duties, constraints, and prohibitions within a workspace.
ODRL-based control planned
Branches, validation, review, provenance, and signed history make authority over change as important as authority over reading.
An owner can keep knowledge private, share it freely, or price access, use, services, and permitted change without transferring the source workspace.
Authority is not custody
Custodians can preserve and replicate content-addressed encrypted blocks. Interpretation requires separate workspace authority. This lets owners choose placement and redundancy without treating every storage provider as a trusted data administrator.
Stores, transports, replicates, and serves encrypted blocks.
Identifies who may interpret, use, propose, approve, or price bounded activity.
One model for every participant
Private personal workspaces can serve as Linked Web Storage-style pods and selectively participate in third-party transactions.
Members improve a shared corpus while its identity, authority, history, and publication boundary remain explicit.
Enterprises can connect internal, partner, regulated, and public knowledge without assigning one platform authority over everything.
A product workspace can publish governed supply while preserving its models, files, provenance, policies, dependencies, and commercial terms.
From private pod to bounded transaction
The transaction boundary can be narrower than the ownership boundary. That makes selective exchange practical for individuals as well as global organizations.