Elephant Tracks — architecture

a single-pass aggregation over a paginated feed
CoinMarketCap · keyless API
/v4/dex/spot-pairs/latest
Pairs on one DEX on one network, by liquidity. The universe to choose from.
per DEX · scroll_id on the envelope
/v1/dex/tokens/transactions
Every swap with its side tp, USD value v and maker address. The three fields the product rests on.
100/page · data.lastId · 0 credits
No key on either. Both sit on the keyless surface, so a clone runs with every CMC variable unset and spends nothing.
rejected
/v4/dex/pairs/quotes/latest
24h volume and count per side — the aggregates. At flat net flow the ticket ratio they give is the count ratio, so nothing calls it.
scripts/ · python 3.11, stdlib only
sweep_universe.py
Optional, upstream: enumerate tokens, then pick one. Answers “what is worth splitting?”, not “what is the split?”.
↓one token address
get()
One GET. Backoff on 429/5xx; errors returned, never swallowed; an exhausted quota exits 75, not 1.
↓raw JSON
pull_swaps()
Paginate on the envelope’s data.lastId, de-duplicate on (tx, lgid), stop on a stall.
↓list[swap]
split() — the product
Partition on tp. Per side: Σv per ma → the top wallet’s share of that side. Also mean ticket, distinct makers, net flow — net flow computed only so it can be shown losing.
↓row
_confidence()
Is this row’s ratio meaningful at all? Dust floor and a minimum of 5 swaps per side. A failing row still prints, with its reason.
↓row + confidence
main()
Rank by the published hero rule: highest top-maker share of either side among rows reading balanced (|net flow| < 5%).
out
stdout — the table
One row per token, the hero block beneath it, and the wallet address behind the number.
docs/proof/*.json
The receipt: endpoint, auth, capture time, credits, the rule, and the raw swaps behind the top maker — so the number can be re-derived by hand.
build-time only
render_site.py
Reads those receipts and writes the landing page, the deck and JUDGE.md. --check fails CI if a published number ever drifts from its receipt.
Why the page is a snapshot. CoinMarketCap sends no Access-Control-Allow-Origin, so no browser can call it. The web surface carries dated numbers; the live capability is the CLI.
No server · no database · no cache · no model · no runtime dependencies python 3.11 stdlib only keyless 115 tests

Two keyless CoinMarketCap endpoints, one stdlib-only Python pipeline, one function that is the product and one file that is the receipt. The full derivation, every failure mode and the deliberate non-architecture: ARCHITECTURE.md. The same picture as a file: docs/assets/architecture.png.