Records, Integrity, and Checks on Power
A design philosophy for freedom and sovereignty. Preserve the truth, verify records, and distribute the power to access and interpret them.
Records, Integrity, and Checks on Power
A Design Philosophy for Freedom and Sovereignty
1. Where the Problem Begins
As AI grows more powerful, the most important question
will not simply be “How intelligent is AI?”
More important questions follow.
What did AI do?
Was the action recorded?
Is the record authentic?
Has someone changed it?
Who can view it?
And who controls those who can view it?
These are questions of technology and political philosophy at once.
Because records are more than data.
Records provide the foundation for scrutinizing power.
But whoever controls the records also gains a new kind of power.
Governance in the AI era therefore converges on two questions.
How do we preserve truth?
And
how do we distribute the power to access it?
This essay interprets the former as a Platonic problem and the latter as an Aristotelian one.
This is not a historical claim that Plato or Aristotle directly discussed cybersecurity.
It is a philosophical model that rereads two ancient modes of thought in the language of modern system design.
2. Plato’s Problem: Can an Unchanging Standard Exist?
One of the best-known features of Plato’s philosophy is its distinction between the changing world of sensory experience and more stable, immutable Forms. The Stanford Encyclopedia of Philosophy likewise describes the imperfection of the sensory world and the existence of eternal, unchanging Forms as central ideas associated with Plato. (https://plato.stanford.edu/entries/plato/)
Translate this structure into modern security systems, and an interesting correspondence emerges.
Real systems change constantly.
Files are edited.
Databases are updated.
AI models make judgments.
Users issue instructions.
Agents act.
Administrators change permissions.
Logs are generated.
But to judge whether all these changes are legitimate, we need a reference state.
What was the original?
What was an authorized change?
Who made the change?
What existed before it?
This is where modern cybersecurity’s concept of integrity appears.
NIST defines integrity in information security in terms of guarding against improper modification or destruction of information, including authenticity and non-repudiation. Other NIST definitions describe the property that data has not been altered without authorization since creation, transmission, or storage. (https://csrc.nist.gov/glossary/term/information_security)
Translated philosophically, this is a deeply Platonic question.
Does what exists now match what should originally exist?
In other words,
how far has reality diverged from the truth used as its reference?
From this perspective, I interpret it as follows.
Plato can be read as a philosophy of integrity.
Behind a changing world, there must be a standard for judgment.
Without a standard, even the concept of tampering cannot exist.
Without an original, we cannot judge the authenticity of a copy.
Integrity ultimately involves the ability to detect differences.
Differences between what should exist and what actually does.
3. An Original Does Not by Itself Make Society Safe
Here the second problem begins.
Suppose perfectly untampered records exist.
Is the problem solved?
No.
If one person monopolizes those records, a new problem appears.
That person can see everyone else’s actions.
Others cannot see what that person does.
A perfect record system can paradoxically become a perfect surveillance system.
Integrity alone is therefore insufficient.
Preserving truth
and distributing power over truth
are different problems.
This is where Aristotle enters.
4. Aristotle’s Problem: How Should Power Be Organized in Reality?
Where Plato intensely explored ideal order and knowledge, Aristotle’s political philosophy compares real constitutional systems and their elements, examining concretely how institutions are established and sustained under given conditions.
For Aristotle, the statesman must establish a suitable constitutional order, preserve it, reform it when necessary, and prevent changes that could destroy it. He analyzed not only ideal regimes but feasible second-best arrangements and mixed constitutions. (https://plato.stanford.edu/entries/aristotle-politics/)
This is the crucial point.
The problem does not end with putting a good person in power.
People change.
Environments change.
Interests change.
In actual politics, therefore,
what matters is the relationships within which power is arranged.
Aristotle distinguished monarchy, aristocracy, and polity from their respective corrupt forms, and examined mixed systems combining elements under practical conditions. His political philosophy classifies regimes in which a group exercises power solely for its own interest as corrupt. (https://plato.stanford.edu/entries/aristotle-politics/)
In modern language, the question is:
Who verifies whom?
And
how do we prevent any one actor from completely controlling the verification system?
The essay’s second proposition can therefore be summarized as follows.
Aristotle can be read as a philosophy of verification and institutional design.
5. Plato and Aristotle Need Each Other Rather Than Compete
An important point arises here.
Integrity and checks on power are not substitutes.
A system with only one is likely to fail.
Perfect records monopolized by one power
can create a powerful totalitarian surveillance system.
Conversely, if authority is dispersed
but nobody can establish the authenticity of the records they see,
only endless assertions and distrust remain.
A stable system therefore needs two simultaneous layers.
The layer of truth
and
the layer of power.
The truth layer asks:
What actually happened?
Were the records tampered with?
What was the source of the action?
Does the record match its original state?
The power layer asks:
Who can view the records?
Who can verify them?
Who can authorize modifications?
Who can grant access?
And who verifies the exercise of those powers?
I summarize this relationship as follows.
The Platonic layer preserves truth.
The Aristotelian layer controls the power that handles truth.
6. Here, Philosophy Becomes Cybersecurity
From this point, the issue can hardly be called a merely philosophical debate.
The moment we implement it, it becomes a cybersecurity problem.
NIST defines information security as protecting information and information systems from unauthorized access, use, disclosure, modification, destruction, and related acts to provide confidentiality, integrity, and availability. (https://csrc.nist.gov/glossary/term/information_security)
Verifiability is particularly closely connected to integrity.
Existing records cannot be verified if we cannot tell whether they changed.
Nor if we do not know who created them.
If an actor can later deny their actions, establishing responsibility becomes difficult.
Actual systems therefore need not only integrity but authenticity, provenance, and non-repudiation. NIST also connects non-repudiation with assurances enabling a third party to verify data integrity and origin. (https://csrc.nist.gov/glossary/term/non_repudiation)
In other words,
verifiability is a security property, not a philosophical virtue.
The following proposition therefore holds.
A system that cannot be verified cannot be demonstrated to be safe.
7. More Records Do Not Necessarily Mean More Safety
A dangerous misunderstanding can arise here.
“Verification matters.”
Then should we record everything?
No.
Record everything, and the records themselves become an enormous attack surface.
Users’ private conversations.
Companies’ internal information.
Sensitive state information.
Files accessed by AI.
Authentication credentials.
Locations.
Behavioral patterns.
Relationship networks.
Gathering all of this in one place may improve verifiability, but also enormously increases the power of an attacker who captures that repository.
Maximizing record volume is therefore not a good security principle.
Here, confidentiality and integrity enter into tension.
NIST’s definition of information security treats confidentiality—authorized restrictions on access and protection of personal information—as an independent core element alongside integrity. (https://csrc.nist.gov/glossary/term/information_security)
The objective should therefore be:
Not to record as much as possible,
but to record enough to verify accountability while minimizing unnecessary exposure.
8. The Power of Records
Now consider records as power, rather than mere data.
Several distinct kinds of power emerge.
First, the power to create records.
It determines what remains as an event.
Second, the power to view records.
It determines who can see originals.
Third, the power to verify.
It judges the authenticity of records and the lawfulness of actions.
Fourth, the power to modify.
It can edit or delete records, or change retention periods.
Fifth, the power to interpret.
It decides which patterns to extract from many records and what meaning to assign them.
Above these lies one more.
The most important power.
The power to determine access rights.
Who can view records,
who cannot,
who may audit,
and who appoints the auditors.
This exists one level above the power of records themselves.
It is meta-power.
This may be the most dangerous point in AI-era governance.
9. Who Watches the Watchers?
The classical question returns.
Who watches the watchers?
AI companies monitor AI.
Who monitors the companies?
Governments monitor the companies.
Who monitors governments?
Independent auditors audit governments and companies.
Who monitors the auditors?
Creating ever-higher watchers leads to infinite regress.
The answer need not be a higher watcher.
We can change the structure instead.
Rather than a vertical structure in which one actor holds all information and makes every judgment,
different actors hold different information and powers and verify one another.
This is more than distributed surveillance.
It is distributed verification power.
10. The AI Era Makes the Problem More Serious
In the past, most records documented human actions.
That is changing.
One AI agent can perform hundreds or thousands of actions in succession.
Write code.
Execute code.
Modify databases.
Create documents.
Analyze contracts.
Send emails.
Call APIs.
Move money.
Delegate work to other AI.
AI can perform in minutes work that took a human a day.
As action accelerates, audit speed and resolution must increase with it.
Otherwise, humans may formally retain control while merely pressing approval buttons without even understanding what happened.
That is a loss of human sovereignty.
Human sovereignty in the AI era therefore cannot be guaranteed simply by saying,
“The final decision belongs to a human.”
That sentence is not enough.
To decide in practice, humans must first understand the situation.
Know what occurred.
Trace its causes.
Trust the records.
Stop or reverse actions when necessary.
In other words,
sovereignty requires verifiability.
11. The Paradox of Verifiability and Freedom
But another paradox appears.
What happens if we record every human action to verify AI thoroughly?
To protect human sovereignty from AI,
we first eliminate human sovereignty ourselves.
A governance system for humans
must therefore not make all human life transparent.
What should be transparent is not a person’s existence,
but the moment power is exercised.
This distinction is crucial.
I would express it this way.
Record the exercise of power, not the person.
We do not need to know everything someone did all day.
But if they exercise authority to move KRW 10 billion,
that act must be verifiable.
We need not record every private activity of a developer.
But if they change an important security policy in production,
strong traces of that act must be preserved.
We need not indiscriminately store every internal AI state.
But when AI acts in a way that meaningfully affects the external world,
its consequences and use of authority must be traceable.
This is record design that preserves both freedom and responsibility.
12. Verifiability Matters More Than Transparency
From this perspective, even the word “transparency” deserves reconsideration.
It suggests that everyone can see everything.
But safe systems do not necessarily require complete transparency.
The more precise objective is
verifiability.
We can prove a particular fact without revealing all the content.
We can examine whether a system followed the rules without disclosing every user’s data.
We can preserve evidence that a result came through an authorized process without exposing every internal algorithm.
A good system’s objective is therefore
not maximum transparency.
It is maximum verifiability with minimum exposure.
13. Cybersecurity Is the Implementation Layer of Political Philosophy
An important conclusion follows.
Cybersecurity is more than a technical field protecting servers from hackers.
In digital society,
who can change data,
who can see it,
who receives authority,
who verifies others’ actions,
who cannot deny their own actions,
and who can delete records
all constitute the distribution of power.
Security architecture in modern society is therefore power architecture.
If political philosophy asks,
“Who should have which authority?”
that is its question;
cybersecurity implements the answer through
ACL,
permissions,
keys,
logs,
signatures,
isolation,
audits,
recovery,
approvals,
and policies,
as concrete systems.
In other words,
cybersecurity is the executable code of political philosophy in the digital age.
14. Freedom, Creativity, Sovereignty, Peace
This matters because it extends beyond AI security.
I would summarize the AI era’s purposes that matter to me in four words.
Freedom.
Humans should have more options.
Creativity.
Humans should be able to turn their ideas into reality more easily.
Sovereignty.
Humans must not lose key decision-making authority over their own lives.
Peace.
Powerful technologies should increase possibilities for mutual verification and cooperation, rather than the destructive capabilities of states and groups.
All four connect to records and verification.
Protecting freedom requires the ability to detect abuses of power.
Protecting creativity requires preventing central platforms from arbitrarily restricting every action.
Protecting sovereignty requires humans to know who exercised which authority.
Protecting peace requires mechanisms through which states and organizations can verify and trust one another’s promises and actions.
Records, ultimately, are more than logs.
They are infrastructure for trust.
15. Lee’s Design Philosophy
Condensed into design principles, the discussion becomes:
First, do not create unrecorded power.
The exercise of important authority must leave a verifiable trace.
Second, protect the integrity of records.
Their mere existence is insufficient.
Their provenance and any tampering must be verifiable.
Third, do not record everything.
Unnecessary records increase risks of surveillance and intrusion.
Record what verification requires.
Fourth, give nobody every record.
Concentrating records concentrates informational power.
Fifth, record access too.
Who viewed what is also an exercise of power.
Sixth, audit the auditors.
Audit authority does not confer immunity.
Seventh, distribute verification power.
Build a structure of mutual verification, not a single absolute watcher.
Eighth, make power more transparent than people.
Verify significant exercises of authority, not the whole of someone’s daily life.
16. A Modern Synthesis of Plato and Aristotle
In this design philosophy, Plato and Aristotle are therefore not rivals.
They are different layers required by one system.
The Platonic Question
What is real?
This connects to integrity, authenticity, originality, and provenance.
The Aristotelian Question
How should that truth be handled among actual humans?
This connects to separation of powers, audits, checks, procedures, and institutions.
The second question without the first
becomes politics conducted with false records.
The first without the second
becomes rule by whoever monopolizes truth.
A stable system in the AI era therefore requires
both the integrity of truth and the distribution of power.
17. Final Propositions
Human society’s longstanding problem
has always been power.
Whom should we entrust with power?
What if they act wrongly?
How will we discover it?
How will we know the facts themselves were not manipulated?
AI does not eliminate this ancient problem.
It makes it far larger.
Because humans have begun delegating power to systems that can act far faster than they can.
The central question ahead is therefore not simply,
“How do we build powerful AI?”
That is not enough.
The more important question is:
“How do we preserve human freedom and sovereignty while entrusting power to strong intelligence?”
That is the question.
The answer begins with records.
But records alone are not enough.
They must be authentic.
Their authenticity must be verifiable.
And the power that handles them must itself be checked.
I therefore leave this design philosophy in three sentences.
Checks on power begin with records.
The value of records comes from integrity.
The preservation of freedom depends on how power over those records is distributed.
Plato’s problem remains.
What is real?
Aristotle’s problem remains too.
Who will judge it?
The AI era adds a third question.
How do we prove that the judgment process itself has not been attacked?
At that point,
philosophy becomes governance,
governance becomes cybersecurity,
and cybersecurity becomes the foundation for protecting human freedom and sovereignty.