01 · The problem
The internet eliminated the protective friction of distance.
Children have always been protected in part by geography — libraries, schools, cinemas and shops have physical edges, and those edges did real protective work. Point-to-point addressing has no edges: schoolwork and a self-harm forum sit the same distance apart, one reach. Exposure no longer requires seeking; it requires only adjacency.
The prevailing model treats the internet as a river to be treated downstream — but the upstream is universal, there is no chokepoint, and treatment always acts after exposure. A block list is a record of harms already discovered.
02 · Admission, not filtering
The classification decision happens before the content gets an address.
A governed namespace is additive, not subtractive: it is built by admitting vetted material into a bounded space, not by filtering harmful material out of an open one. Nothing is inspected in transit and no traffic is intercepted — the architecture operates on a different layer entirely from the one encryption protects. That produces a defined, verifiable boundary other systems can bind to.
What follows describes a model, not a service in operation.
Admission
Governs who enters. A publisher applies, identity and purpose are verified, published criteria are applied, and a registry agreement is signed as a condition of the address.
Conformity
Governs who remains. Content changes after admission, so review is continuous — failure returns the registrant to the admission question. Either gate alone is a label.
Enforcement runs in two directions: vertically, registry to registrant — admission required accepting the terms, so breach permits rapid suspension without litigation; and horizontally, registrant to registrant — every participant enters on the same published terms and so has standing against the others.
Honest limits: coverage is not integrity
The standard governs what is inside the district — it does not claim to prevent a determined adolescent from leaving it. A child using a VPN is outside the namespace, not leaking through it. That is a coverage boundary, not a system failure.
03 · Why this is not censorship
Six design conditions, and all six are load-bearing.
An architecture that can admit can also exclude. What distinguishes this from a coercive scheme is structure, not intent — replicating the technology without these conditions produces a different system entirely.
1. CompulsionElected by the household, never mandated.
2. AuthorshipThe state does not author the code; an independent body does.
3. ExternalityNo third party is compelled to suppress speech outside the namespace.
4. SubstitutionThe open internet continues unchanged, in parallel, in full.
5. GovernancePolicy authority is independent, with published criteria and appeal.
6. ExitA household may discontinue at any time, without penalty.
04 · The open questions
Three questions any such design has to answer.
Earlier efforts to set aside a safer part of the namespace — kids.us, .xxx, .kids — were serious attempts by serious people, and the public record of each is worth reading. Between them they leave three questions open.
Authority — on what basis the rules of the space are set. Distribution — how the space is actually reached. Verification — how conformity is checked after entry, and by whom. The argument here is that the three have to be answered together.