mint

suspend fun mint(holder: ReplicaId, amount: Long, timeout: Duration? = null): ControlOutcome

Mint amount root supply to holder, serialized through the log (design §9 #1). Suspends until the act commits; a partitioned minority never returns (it can never reach quorum), so a split can never both mint. Bound with timeout to surface a leader crash instead of hanging — but a timeout only cancels the await, not the proposal: the act may still commit, and a fresh mint call is a new act (a retried mint can double-mint), so resubmit only if a read confirms the first did not land. Returns ControlOutcome.Applied.

The supply is credited at this node's configured root, which rides the committed act. If the log already carries supply at a different root — i.e. this peer was configured with a root its cluster does not share — the act is refused rather than applied, so a misconfiguration surfaces as a ControlOutcome.Conflict instead of a second tree in one ledger (#1751).