Governable AI: Provable Safety Under Extreme Threat Models