Project Kenji: Sovereign Tech Procurement Proposal for #KenyaBudget2030-2031

Research Question: How do we anchor election integrity in hardware, not just software?

Kenya's electoral integrity requires shifting trust from fragile software layers to dedicated hardware ecosystems. Project Kenji proposes a phased procurement of sovereign hardware + Kotlin OS concept under IEBC oversight, leveraging the national biometric voter registry.

1. Original Procurement Point: "Hardware-First Sovereignty Clause"

For #KenyaBudget2030-2031, I propose IEBC adopts a "Hardware-First" procurement tier under Public Procurement and Asset Disposal Act, 2015 Section 96: Alternative procurement methods. Instead of buying generic smartphones + apps, budget for 2 tracks:

  1. Track A: COTS Hardware - Certified Nokia/HMD devices with open bootloader for TEE auditing.
  2. Track B: Kenji Concept R&D - Local assembly pilot at Konza City for bimetallic chassis + secure enclave testing. This creates jobs under Big 4 Manufacturing + reduces import dependency.

2. Constitutional Anchors: The Sovereign Alignment Matrix

To eliminate theoretical "vacuum assumptions," election tech must survive adversarial, low-trust real-world environments. This framework aligns physical hardware auditability directly with the mandates of the Constitution of Kenya (2010):

Constitutional Mandate The Real-World Threat Vector (No Vacuum) The Sovereign Hardware Resolution Legal Mechanism
Article 86(a):
Systems must be simple, accurate, verifiable, secure, accountable, and transparent.
The Black Box Vulnerability: Software-only audits are easily spoofed if foreign proprietary firmware or malicious silicon pathways mask unauthorized data manipulation below the OS layer. Auditable Open Architecture: Utilizing open-hardware processor specifications (such as RISC-V), allowing state authorities to verify the physical logic gates to ensure no hardware backdoors exist.
Establishes that legal "verifiability" demands complete, unhindered insight from the silicon layer up to the application environment, invalidating vendor intellectual property lock-in.
Article 81(e)(v):
Elections must be administered in an accurate and accountable manner.
Abstract Value Tampering: Digital tallies captured on traditional corporate tablets lack a verifiable physical-to-digital chain of custody, hiding operational or malicious point-of-capture runtime compromises. Hardware Root of Trust: Cryptographically binding and isolating voter tallies directly inside local, tamper-resistant physical enclaves at the precise moment of input execution.
Generates immutable, forensically verifiable hardware logs that allow the physical device itself to be cross-examined during a Supreme Court election petition audit.
Article 35(1)(a):
Every citizen has the right of access to information held by the State.
Commercial Non-Disclosure Barriers: Public agencies lease black-box election infrastructure under corporate NDAs, withholding execution mechanics from local engineers, political parties, and voters. Sovereign Digital Trust Blueprints: Publishing verifiable architectural layouts and mechanical schematics to public state registries for independent local institutional review.
Prioritizes public constitutional access rights above private third-party intellectual property constraints on public sovereign infrastructure.
Statutory Integration: This constitutional matrix natively enforces **Elections (Election Technology) Regulations 2017 Reg 3**, translating abstract "requirements analyses" into auditable, sovereign hardware requirements.

3. Weaknesses of Project Kenji - Full Disclosure

Any sovereign tech must pass severe real-world stress tests. Kenji's current gaps and ongoing iterations:

  1. Thermal/Physics Risk (Real-World Material Dynamics): The structural concept requires meticulous lab validation. Operating outside of a theoretical vacuum, a bimetallic chassis is subjected to uneven environmental temperatures. Copper and iron possess differing coefficients of thermal expansion; a failure to maintain extreme structural tolerances under continuous field deployment will result in structural warping, stress fractures, or internal sealing degradation. This requires dedicated materials testing and metallurgical calibration budgets.
  2. Scale & Infrastructure Risk (Architectural Withdrawal): The initial concept of a single regional telecommunications mast at Konza City to serve Eastern Africa is formally withdrawn as it is fundamentally limited by the laws of physics. Due to the inverse-square law of electromagnetic radiation propagation, severe atmospheric attenuation at high frequencies (5G/6G/7G millimeter and sub-millimeter waves), and line-of-sight blockages caused by the curvature of the Earth, a monolithic tower cannot achieve regional coverage. To align with practical physics and ITU spectrum regulations, Project Kenji instead mandates a decentralized cellular topology utilizing localized, distributed base stations and mesh failover routing to ensure robust, low-latency transmission for election data.
  3. Legal, Constitutional, & Privacy Architecture (Revised): Third-party social media authentication (such as Facebook logins) inherently violates Article 31 of the Constitution (Right to Privacy) and the Data Protection Act, 2019 due to external data profiling and lack of sovereign data custody. To resolve this, Project Kenji mandates the Maisha Enclave protocol: a strict standard enforcing decentralized, localized, on-device identity verification operating entirely within an isolated hardware root of trust. By processing and validating credentials locally at the hardware level, corporate dependencies are eliminated, fully protecting constitutional privacy rights.