OpenSwarm says how a file lives on a swarm and how a seeder is paid to hold it, and nothing in it gives a person with a browser, a search engine or a directory a URL to start from. A manifest is on the DHT under a key, the catalogue is a feed found through the DHT, the seed market is one-sided: offers are listed and seeders poll them. A requester who wants a box in Germany with two terabytes free and a year of clean proofs has no file to read, and a seeder with those things has no file to serve. OpenFile is /.well-known/openfile.json on a publisher's origin: each file by its plaintext content hash (the ipfile plainRoot, so the id a reader gets is the root the decrypted file verifies against), every way to fetch it (an ipfile magnet, a webseed, plain HTTP by range, HLS for a player with nothing installed), the pay2seed attestation and README, the price as an x402 offer URL, and a holders list of who has the bytes now with the age of each seeder's last proof. Encryption is ipfile unless the publisher says none as an explicit act. OpenDisk is /.well-known/opendisk.json on a machine that rents disk: free GiB, price per GiB-month in the unit pay2seed already prices in, the operator's accept policy stated up front so nobody posts an offer the disk would never take, proof cadence, the seeder key and the hubs it takes leases at, and a record block whose source is the hub's own seeder page, because a marketplace reads standing from the hub and never from the file. d1sks.com is the reference marketplace. A disk is also an OpenServer offer of kind storage, and the mapping is a table, so the nichedb hosting collection lists every disk without a second parser. Neither restates a record that already has a name: the swarm is ipfile, the consent is pay2seed, the leases and proofs are paid2seed, the payee and the pass are ippay, the feed is ipdb. Both are registered in the four places a LogicSRC spec needs and added to the OpenSwarm family table. OpenFile has no product domain yet and says so. Claude-Session: https://claude.ai/code/session_01Khk1C6Ese6xjdHAWLVstca Co-authored-by: Claude Fable 5.1 <noreply@anthropic.com>
14 KiB
OpenDisk
OpenDisk is one file a machine serves about the disk it will rent: how much is free, what a GiB-month costs, where the box is, what it will hold, how it proves it is still holding it, and where it is paid. A requester reads the disk's own file instead of a marketplace's listing, a directory lists every disk that serves one, and a peer with a spare terabyte is on the market by putting a file at a URL. It is the web-facing door onto an OpenSwarm paid2seed seeder, and it is what a peer-to-peer storage market is made of. It is maintained by Profullstack, Inc. as part of the LogicSRC open-standards surface, with d1sks.com as the reference marketplace.
Status: 0.1. A description of a file a marketplace will read, published so a peer can serve one and any directory can read it.
Slug: opendisk
The problem
OpenSwarm already says how a seeder is paid to hold a swarm: a requester posts a pay2seed offer at a hub with money escrowed, a seeder takes a paid2seed lease, proves it holds the pieces every period, and is paid per GiB-month. What it does not say is how a requester finds a seeder before posting, or how a seeder is found at all. The market in paid2seed is one-sided: offers are listed and seeders poll them. A requester who wants a box in Germany with 2 TB free and a year of clean proofs has no file to read, and a seeder with those things has no file to serve.
Every other rentable thing has a listing. /.well-known/ is where a host says things about itself. What is missing is the one file that puts a seeder's capacity, price and record where a requester can fetch it, in a shape every reader agrees on, so a disk can be found instead of waited for.
Terms
- A disk is capacity somebody will rent: a peer's spare drive, a seedbox, a storage node, a provider's storage plan. Its descriptor is the file it serves about itself.
- The seeder is the OpenSwarm identity that takes leases for the disk and is paid. One disk, one seeder key.
- A requester is whoever wants bytes kept, as
pay2seeddefines it: a publisher, a person with a backup, an agent. - A marketplace is a directory of disks that also fronts a hub, so a requester can read a disk and post the offer in one place. d1sks.com is the reference.
- A reader is anything that reads a descriptor: a marketplace, a requester's client, a person's terminal, an agent.
The descriptor
A disk serves a JSON document at /.well-known/opendisk.json on its own origin.
{
"name": "seeder-a41e, Falkenstein",
"web": "https://seeder-a41e.example",
"operator": "https://seeder-a41e.example/.well-known/openprofile.md",
"key": "ed25519:a41e7f0c2d9b8e5a6f3c1d4e7b0a9f8c5d2e1b4a7c0f3e6d9b2a5c8e1f4d7b0a",
"hubs": ["https://bittorrented.com/api/openswarm", "https://d1sks.com/api/openswarm"],
"updated": "2026-09-13T06:00:00Z",
"capacity": { "total_gib": 3726, "free_gib": 2210, "reserved_gib": 200 },
"price": {
"currency": "USD",
"per_gib_month": 0.12,
"per_gib_transfer": 0.004,
"min_gib": 1,
"max_gib": 2000,
"min_days": 7,
"max_days": 365
},
"location": { "regions": ["fsn1"], "countries": ["DE"] },
"network": { "bandwidth_mbps": 1000, "transfer_gb": 20000, "ipv4": 1, "ipv6": true },
"storage": [{ "type": "hdd", "size_gb": 4000 }],
"accepts": {
"visibility": ["private", "public"],
"bases": ["own", "licensed", "open-license", "public-domain", "personal"],
"encrypted_only": false,
"max_file_gib": 500,
"feeds": true
},
"proof": { "kinds": ["challenge", "probe"], "every_hours_min": 6, "webhook": "https://seeder-a41e.example/openswarm/hooks" },
"record": {
"source": "https://bittorrented.com/api/openswarm/pay2seed/seeders/ed25519:a41e7f0c2d9b8e5a6f3c1d4e7b0a9f8c5d2e1b4a7c0f3e6d9b2a5c8e1f4d7b0a",
"standing": 412,
"proven": 418,
"failed": 3,
"abandoned": 0,
"since": "2025-11-02T00:00:00Z"
},
"payout": { "payee": "ed25519:a41e7f0c2d9b8e5a6f3c1d4e7b0a9f8c5d2e1b4a7c0f3e6d9b2a5c8e1f4d7b0a", "network": "eip155:8453" },
"holding": "https://seeder-a41e.example/openswarm/holding"
}
The smallest valid descriptor is a name, the free space and a price:
{ "name": "spare drive, Lisbon", "capacity": { "free_gib": 900 }, "price": { "currency": "USD", "per_gib_month": 0.08 } }
The rules, and every one degrades:
name,capacity.free_gibandprice.per_gib_monthare the only required keys. A descriptor with those alone is valid: it is a disk, it has room, it has a price. A reader lists what it was given and reports the rest as unstated rather than assumed.operatoris the person or organisation answerable, as an OpenProfile.md URL.webis the disk's site, if it has one beyond the descriptor. A disk with no operator is listed as such, and a marketplace may decline to list it.keyis the seeder's OpenSwarm identity, the key that signspaid2seedproofs and is registered as anippaypayee.hubsare the hubs it takes leases at. A requester posts its offer at one of them; a disk with nohubsis rented some other way, andwebsays how.updatedis when anything in the file last changed.capacity.free_gibchanges with every lease, so a disk that is busy updates often and a reader withupdatedunchanged since its last fetch may skip the rest.capacityis in GiB:total_gibthe disk,free_gibwhat a new lease can have now,reserved_gibwhat the operator keeps back.free_gibis the number that matters and the only one required.priceis one price list.per_gib_monthis what one GiB held for thirty days costs, pro rata, the same unitpay2seedoffers are priced in.per_gib_transferis what serving one GiB costs on top, or absent when serving is included; a disk that prices transfer in more detail does so as OpenBandwidth describes and keeps this one number as the summary.min_gib,max_gib,min_days,max_daysbound a lease.currencyis ISO 4217.location,network,storageare as OpenServer defines them, the same keys and the same units, so a directory that already reads an OpenServer storage block reads this one: the provider's own region names and ISO country codes, megabits and gigabytes, onestorageentry per drive withtypenvme,ssdorhdd. A requester choosing a disk for a backup wants the country; one choosing a seed for a release wants the bandwidth.acceptsis the operator's policy, the same policy apaid2seedseeder client applies when it polls a market, stated up front so a requester does not post an offer this disk would never take.visibilityandbasesarepay2seed's lists.encrypted_only: truemeans the disk holdsipfileciphertext and nothing else.max_file_gibcaps one swarm.feedssays whether it followsipdbfeeds and keeps their segments.proofis how the disk expects to be checked:kindsany ofchallengeandprobeaspaid2seed§4 defines them,every_hours_minthe shortest period it will accept,webhookwhere a hub pushes challenges so the disk need not poll.recordis the disk's history, and itssourceis the hub's ownGET /seeders/<key>for this seeder. The numbers are copied from there for a reader's convenience; the hub's answer wins, and a marketplace reads the hub rather than the file for anything it ranks on.payoutnames theippaypayee and the network it is paid on. The address itself lives at the hub, registered by the seeder key, and this file never carries it.holdingis a URL that answers with what the disk holds right now, or the same list inline. The shape is below.- Unknown keys are kept. A disk says more than this document names, and a reader passes it through under the disk's own key.
Serve it as application/json. The descriptor is a claim; that it came from the disk's own origin is one verification, and the hub's record under key is the other.
Holding
The other half of a holders list in OpenFile: what one disk is holding, from the disk's side.
{
"updated": "2026-09-13T06:14:02Z",
"holding": [
{ "id": "sha256:d6c3f828…c493ff", "swarm": "sha256:4b74eb43…c7a342", "lease": "sha256:5c02…", "gib": 0.68, "since": "2026-09-05T18:30:00Z", "until": "2026-10-05T18:00:00Z", "provenAt": "2026-09-13T06:00:05Z" },
{ "id": "sha256:1f9e…", "swarm": "sha256:88c0…", "lease": "sha256:0e4d…", "gib": 122.4, "since": "2026-08-01T00:00:00Z", "until": "2027-08-01T00:00:00Z", "provenAt": "2026-09-13T00:00:02Z" }
]
}
id is the OpenFile content hash when the disk knows it, swarm the infohashV2, lease the paid2seed lease. A private swarm's id is its plainRoot from the manifest, which reveals nothing about the bytes; a disk holding personal swarms omits them from the public list, because a backup's existence is the requester's to announce.
Renting a disk
A requester that has read a descriptor and wants the disk:
- Checks
acceptsagainst what it wants kept, andrecord.sourceat the hub for the disk's standing. - Makes its attestation, as
pay2seed§3 requires, and posts apay2seed.offerat one of the disk'shubswithpriceUsdPerGibMonthat or aboveprice.per_gib_monthandseeders.minof one. - Waits for the disk's seeder client to take the lease, which it does on its next poll or at once if the hub pushes to
proof.webhook. - Watches the lease as
pay2seed§7 says: proven periods, spend against the budget, the next challenge due.
A marketplace collapses those into one act: read the disk, post the offer, and show the lease when it lands. A requester that wants several disks posts one offer with seeders.min above one and lets the hub fill it, or reads several descriptors and posts to each. Nothing in the swarm side changes: leases, challenges, probes, receipts and payout are paid2seed exactly as written.
Marketplaces
A marketplace reading descriptors:
- Fetches on a schedule, hourly at least, because
free_gibmoves. A disk that has told the marketplace itsupdatedhas not changed is skipped. - Dedupes on
key. One seeder identity is one disk, whatever URL its descriptor was found at. A descriptor with nokeydedupes on its origin. - Reads standing from the hub, never from the file, for anything it sorts or filters by. The file says where; the hub says how much.
- Lists a disk's policy beside its price, so a requester sees that a cheap disk takes public swarms only, or ciphertext only, before it posts.
- Marks a disk gone, not deleted, when its descriptor stops answering, and shows the leases it still holds until they end.
- Reports absence as absence. An unstated operator is unstated. An unstated
acceptsmeans the disk will say when the offer arrives.
d1sks.com is the reference marketplace: a directory of every OpenDisk descriptor it has read, standing pulled from the hubs each disk names, and an offer form that posts to the disk's hub. nichedb.dev lists every disk in its hosting collection as an OpenServer offer, by the mapping below.
As an OpenServer offer
A disk is a hosting offer, and a directory that reads OpenServer descriptors lists it as one without a second parser:
| OpenServer | from OpenDisk |
|---|---|
provider.name, provider.web, provider.operator, provider.country |
name, web, operator, location.countries[0] |
offers[].id |
key, or the descriptor's origin when there is no key |
offers[].name |
name |
offers[].url |
the descriptor's URL |
offers[].kind |
storage |
offers[].premises, management, tenancy |
off-prem, unmanaged, shared |
offers[].model |
p2p when the operator is a person or a peer, centralized when it is a provider; the disk may state model itself and that wins |
offers[].location, network, storage |
the same keys, unchanged |
offers[].price |
{ "amount": price.per_gib_month, "currency": price.currency, "interval": "month", "unit": "gib" }, unit kept as the provider's own key |
offers[].stock |
in_stock when free_gib is at least price.min_gib, else out_of_stock |
offers[].updated |
updated |
A provider that sells storage plans and rents disk to swarms serves both files: an OpenServer descriptor for its plans and an OpenDisk descriptor for what a seeder can lease. A peer with one drive serves only this one, and is listed in both places.
What is deliberately absent
No lease in this file. Leases, proofs, receipts and payout are paid2seed, and this document does not restate them. The descriptor is the ask; the offer is the bid; the lease is the match, and it is made at the hub.
No escrow at the disk. Money sits at a hub, as pay2seed says. A disk never holds a requester's funds and never has to be trusted with them.
No reputation of its own. record is a copy of what a hub signed, and a marketplace reads the hub. A disk that claims a standing its hub does not confirm is listed with the hub's number.
No plaintext. A disk holds what accepts says, and by default that is ipfile ciphertext it cannot read. A personal swarm's existence is not in the public holding list.
No central registry. Anyone may serve a descriptor and anyone may read it. d1sks.com is one marketplace among any number, and two marketplaces reading the same file list the same disk.
Serving one
By hand, or by the seeder client. torlnk serve and a c0mpute node with --openswarm have every number this file needs: free space is the filesystem, the price and policy are the operator's configuration, the record is the hub's. Write it to the web root next to robots.txt and rewrite it when a lease starts or ends.
Related standards
- OpenSwarm:
pay2seedfor the offer and the attestation,paid2seedfor leases, proofs, receipts and standing,ippayfor the payee,ipfilefor what is held. - OpenFile: the publisher's side, and the
holderslist a disk appears in. - OpenServer: the hosting offer a disk maps onto, and the units this document borrows.
- OpenProfile.md: the
operatorbehind a disk.
Version history
| Version | Date | Change |
|---|---|---|
| 0.1 | 2026-09-13 | First publication: the descriptor, holding, renting a disk, marketplaces, the OpenServer mapping. |
License
The specification text is CC BY 4.0. Serve it, copy it, extend it.