The SVA thrust sounds like another scheme for imposing capability discipline thru compiler technology. It might support subdividing authority of a kernel by compile time logic (or post compile—pre load processing). It might work. I have not seen support for limiting space and time in that scheme. Much of the Keykos thrust is to replace Unix semantics. (I should not have to grant compiler installation logic the authority to replace the kernel, just to install the compiler.)
John Criswell
Closely connected: VISC