Imladri public proof

Auditor-grade sample proof packet

A redacted public preview of the packet buyers inspect: who acted, what policy allowed or blocked, whether the dangerous body ran, whether source data stayed untouched, and the SHA-256 chain that ties evidence together.

Public sample uses digest-only sample metadata. Approved private packets are signed with the workspace signing key.

verified sample

Agent

agent_redacted_release_control

SDK lanes

71/71

CI scan

passed

Source writes

0

Body calls

0

Auditor assertions

One packet follows the side effect.

The packet is organized around verification questions an auditor actually asks: did the action execute, which policy decided it, did production data change, and can the evidence be replayed from hashes instead of screenshots.

One constitution

The same policy revision appears on identity, action, data, compute, monitoring, CI, SDK, and MCP evidence.

Blocked before body

The prohibited payment action records bodyEntered=false and unsafeBodyCalls=0.

Source untouched

The database branch, schema-diff, TTL, and reviewer-export entries carry sourceMutationCount=0.

Identity bound

The packet binds org, workspace, agent, session, tool host, and action under a signed capability manifest.

Hash chain intact

Each entry stores previousHash, canonicalPayloadHash, and entryHash ending at the chain root.

Hash-chained ledger

Policy to proof, in order.

00

constitution.published

cd0c9c3d4c593664bb4a0158...fd91a524

recorded
01

identity.capability_manifest.signed

7f63bb97d9acaad6d5e039f7...a37e027f

recorded
02

agent.action.allowed

93a5beea69ccc20ca5c9a37e...1bb8c86b

allowed
03

agent.action.blocked

20aeeeeb41c9df2c8c295f5f...5787b91a

blocked
04

identity.authority_token.revoked

65c048a79552972b553bd68f...e5d6b158

recorded
05

database.branch.created

3983dc11645b9fe4452fc673...f1a34816

allowed
06

database.schema_diff.verified

2f550ba1d7b1f72127caae9d...f1b47c9c

recorded
07

database.masked_evidence.exported

06e8211548d0b7aeca3f35f6...3c33004e

recorded
08

database.branch.ttl_swept

8c16acd484e0d6072e47f5b4...f894b598

recorded
09

database.branch.destroyed

6930a844501ffed2b55c9c94...465e0a07

recorded
10

protected_compute.run.attested

dda8dc855529f146cda90997...8ca3e56a

allowed
11

protected_compute.fixed_step_benchmark.completed

d546c57afedff8ca8d78be0d...ba38a13f

recorded
12

protected_compute.provider_cleanup.verified

aeb24141e7c91021cd811d5a...aa870fe3

recorded
13

monitor.drift_replay.exported

e4e16ecf6263f8acdff1718c...7dda9547

recorded
14

monitor.dead_letter.recovered

d9bd2b26c7e30bc70f89a32d...b5d90383

recorded
15

monitor.status.last_good_smoke

634ede0980776af1b2c5a08e...3d998277

recorded
16

packet.exported

2f283597bd410e2ad129e5b8...8164225b

recorded
Chain root2f283597bd410e2ad129e5b82dd0d21d6855ebb1a88a38aac61f558e8164225b
Packet digest832d427d4c724a1b2ffbb44e8f307bbbcd77d07a8ebed1987f00d508a3fcf9fd

Action

Allowed release.deploy and blocked payment.transfer under the same constitution.

Data

Governed branch proof includes source fingerprints, schema diff, TTL cleanup, masked evidence, and 0 source mutations.

Compute

Protected compute records attestation, fixed-step proof, cost cap, auto-shutdown, provider cleanup, and zeroization.

Monitoring

GlassPulse exports replay, drift timeline, signed event chain, dead-letter recovery, and last verified status.

Packet

Auditor-redacted JSON exports the chain root, digest algorithm, redaction manifest, identity chain, and verification steps.

Certification

Statuspassed
Families20
Failures0
GeneratedJun 1, 2026, 1:02 PM
Commitredacte

Integrity

ExportedJun 1, 2026, 1:10 PM
ExpiresJul 1, 2026, 1:10 PM
Redactionauditor
Digest832d427d4c724a1b2ffbb44e...a3fcf9fd
Chain2f283597bd410e2ad129e5b8...8164225b
Redacted JSON
{
  "success": true,
  "exportedAt": "2026-06-01T18:10:00.000Z",
  "summary": {
    "constitutionPublished": true,
    "constitutionVersion": "policy-2026-06-redacted",
    "eventCount": 128,
    "violationCount": 1,
    "observedActionCount": 24,
    "allowedActivityCount": 23,
    "blockedActivityCount": 1,
    "runtimeEvidenceReady": true,
    "runtimeEvidenceNeedsAttention": false,
    "latestRuntimeEvidenceAt": "2026-06-01T18:04:31.000Z",
    "latestEventAt": "2026-06-01T18:04:31.000Z",
    "latestViolationAt": "2026-06-01T18:02:18.000Z",
    "exportReady": true
  },
  "proofScope": {
    "description": "Redacted sample buyer packet for public preview.",
    "chronological": true,
    "truncation": "auditor-safe summary",
    "redactionMode": "auditor",
    "includes": [
      "SDK adapter certification summary",
      "CI scanner summary",
      "Allowed runtime action",
      "Blocked runtime action",
      "Database source-integrity assertion",
      "Protected compute attestation summary",
      "Protected compute fixed-step/cost-cap cleanup proof",
      "GlassPulse replay and signed event-chain summary",
      "Agent identity and capability manifest",
      "SHA-256 proof signature",
      "Hash-chained event ledger"
    ]
  },
  "proofSignature": {
    "version": 1,
    "canonicalization": "json-stable-v1",
    "digestAlgorithm": "SHA-256",
    "payloadDigestHex": "832d427d4c724a1b2ffbb44e8f307bbbcd77d07a8ebed1987f00d508a3fcf9fd",
    "signatureAlgorithm": null,
    "signatureHex": null,
    "keyId": null,
    "publicKeyJwk": null,
    "signedAt": "2026-06-01T18:10:00.000Z"
  },
  "hashChain": {
    "algorithm": "SHA-256",
    "canonicalization": "json-stable-v1",
    "chainRoot": "2f283597bd410e2ad129e5b82dd0d21d6855ebb1a88a38aac61f558e8164225b",
    "eventCount": 17
  },
  "proofCompleteness": {
    "status": "ready",
    "note": "Redacted public sample. Live proof links use customer-specific evidence and share ids.",
    "lanes": {
      "sdk": {
        "covered": true,
        "status": "71/71 passed"
      },
      "hostedAdopters": {
        "covered": true,
        "status": "5/5 passed"
      },
      "mcp": {
        "covered": true,
        "status": "5/5 passed"
      },
      "ci": {
        "covered": true,
        "status": "GitLab + Vercel passed"
      },
      "data": {
        "covered": true,
        "status": "source untouched"
      },
      "compute": {
        "covered": true,
        "status": "attestation + fixed-step + cleanup recorded"
      },
      "monitoring": {
        "covered": true,
        "status": "replay + event-chain exported"
      },
      "identity": {
        "covered": true,
        "status": "capability manifest signed"
      }
    }
  },
  "authoritySummary": {
    "activeSubject": "agent_redacted_release_control",
    "identityType": "service-agent",
    "trustLevel": "production-boundary",
    "delegationDepthLimit": 1,
    "revokedAt": null,
    "recordedAuthorityEvents": 5,
    "subjects": [
      "agent_redacted_release_control"
    ],
    "ownerEmails": [
      "security-reviewer@example.com"
    ],
    "maxObservedDelegationDepth": 1
  },
  "evidenceCounts": {
    "activityTimeline": 24,
    "authorityTimeline": 5,
    "boundaryScans": 1,
    "sdkCertifications": 1,
    "lifecycleEvents": 8,
    "violationTimeline": 1,
    "observedActions": 24
  },
  "boundaryScanSummary": {
    "id": "scan_redacted_gitlab_vercel",
    "status": "passed",
    "createdAt": "2026-06-01T18:03:11.000Z",
    "scannedFiles": 42,
    "findingCount": 0,
    "errorCount": 0,
    "warningCount": 0
  },
  "sdkCertificationSummary": {
    "id": "sdk_cert_redacted_71_lanes",
    "status": "passed",
    "scope": "ci_matrix",
    "target": {
      "publicPreview": true
    },
    "createdAt": "2026-06-01T18:02:00.000Z",
    "generatedAt": "2026-06-01T18:02:00.000Z",
    "certificationLevel": "public-adopter-matrix",
    "adopterFamilyCount": 20,
    "laneCount": 71,
    "passedCount": 71,
    "failedCount": 0,
    "skippedCount": 0,
    "skippedHeavyCount": 0,
    "notApplicableCount": 0,
    "ci": {
      "provider": "gitlab+vercel",
      "commit": "redacted",
      "branch": "main",
      "runId": "redacted",
      "runUrl": null,
      "workflow": "imladri-boundary-scan",
      "job": "public-proof-preview",
      "pullRequest": null
    }
  },
  "observedActions": [
    {
      "actionType": "release.deploy",
      "status": "allowed",
      "bodyEntered": true,
      "evidence": "allowed action completed under policy"
    },
    {
      "actionType": "payment.transfer",
      "status": "blocked",
      "bodyEntered": false,
      "evidence": "blocked before function body"
    }
  ],
  "runtimeObservedEvidence": {
    "prohibitedBodyCalls": 0,
    "decision": "blocked",
    "proofDigest": "832d427d4c724a1b2ffbb44e8f307bbbcd77d07a8ebed1987f00d508a3fcf9fd"
  },
  "auditorPacket": {
    "schemaVersion": "imladri.auditor-proof-packet.v1",
    "packetId": "imladri-auditor-proof-sample-20260601",
    "packetKind": "redacted-public-sample",
    "artifactPath": "/proofs/imladri-auditor-proof-sample.json",
    "artifactSha256Path": "/proofs/imladri-auditor-proof-sample.json.sha256.txt",
    "packetDigestHex": "832d427d4c724a1b2ffbb44e8f307bbbcd77d07a8ebed1987f00d508a3fcf9fd",
    "chainRoot": "2f283597bd410e2ad129e5b82dd0d21d6855ebb1a88a38aac61f558e8164225b",
    "eventCount": 17,
    "statement": "Redacted public sample showing how one Imladri constitution produces one auditor-readable proof chain across action, data, and protected compute boundaries.",
    "sourceUntouched": true,
    "sourceMutationCount": 0,
    "unsafeBodyCalls": 0,
    "identityChainComplete": true,
    "capabilityManifestSigned": true,
    "fixedStepBenchmark": true,
    "providerCleanupVerified": true,
    "schemaDiffVerified": true,
    "maskedPiiEvidence": true,
    "glassPulseReplayExported": true,
    "lastGoodSmokeStatus": "ok",
    "redactionCount": 3
  },
  "auditorChainEntries": [
    {
      "index": 0,
      "eventType": "constitution.published",
      "boundary": "policy",
      "decision": "recorded",
      "occurredAt": "2026-06-01T18:00:00.000Z",
      "previousHash": "0000000000000000000000000000000000000000000000000000000000000000",
      "canonicalPayloadHash": "6dc96189b5cc91e385141d9c5991da7a204b927dbb55429eb075853a925d269c",
      "entryHash": "cd0c9c3d4c593664bb4a01582057a01764733c5aa5987a62ff1c7c7afd91a524",
      "payload": {
        "constitutionVersion": "policy-2026-06-redacted",
        "policyDigest": "sha256:dfaf5b8b5b40e4e575f5fd11fd682f22c78537cce97d5a352c5d821fcdf404c4",
        "allowedActions": [
          "release.deploy",
          "db.branch.create",
          "protected_compute.run"
        ],
        "blockedActions": [
          "payment.transfer",
          "prod.secret.read",
          "compliance.evidence.delete"
        ]
      }
    },
    {
      "index": 1,
      "eventType": "identity.capability_manifest.signed",
      "boundary": "identity",
      "decision": "recorded",
      "occurredAt": "2026-06-01T18:00:22.000Z",
      "previousHash": "cd0c9c3d4c593664bb4a01582057a01764733c5aa5987a62ff1c7c7afd91a524",
      "canonicalPayloadHash": "945d14dba0feebb250ec89bd866219fa4f58f92aaa27b78ffcddc9783f9f41d8",
      "entryHash": "7f63bb97d9acaad6d5e039f7e28065f5827e4ac4395b3402366a53bea37e027f",
      "payload": {
        "identityChain": {
          "organizationId": "org_redacted_financial_controls",
          "workspaceId": "workspace_redacted_risk_review",
          "agentId": "agent_redacted_release_control",
          "sessionId": "session_redacted_review_001",
          "toolHostId": "toolhost_redacted_mcp_ci",
          "actionId": "release.deploy"
        },
        "capabilityManifestDigest": "sha256:77d90f3f832a58805eb6b6c2d9faab1bcdaefad0c7610d7ef6550b97f6fbb2d9",
        "signatureAlgorithm": "ed25519",
        "keyRotationEpoch": "2026-06",
        "maxDelegationDepth": 1,
        "delegationChain": [
          "org",
          "workspace",
          "agent",
          "session",
          "toolhost",
          "action"
        ]
      }
    },
    {
      "index": 2,
      "eventType": "agent.action.allowed",
      "boundary": "action",
      "decision": "allowed",
      "occurredAt": "2026-06-01T18:01:09.000Z",
      "previousHash": "7f63bb97d9acaad6d5e039f7e28065f5827e4ac4395b3402366a53bea37e027f",
      "canonicalPayloadHash": "0c8d42ee35e98b554f99c1bc2d1bc910962e4516fbdf1dfc900987712cb7edc2",
      "entryHash": "93a5beea69ccc20ca5c9a37e07631f027155e435490b320ae19e4b9f1bb8c86b",
      "payload": {
        "agentId": "agent_redacted_release_control",
        "action": "release.deploy",
        "bodyEntered": true,
        "policyVersion": "policy-2026-06-redacted",
        "evidence": "allowed action completed under policy"
      }
    },
    {
      "index": 3,
      "eventType": "agent.action.blocked",
      "boundary": "action",
      "decision": "blocked",
      "occurredAt": "2026-06-01T18:02:18.000Z",
      "previousHash": "93a5beea69ccc20ca5c9a37e07631f027155e435490b320ae19e4b9f1bb8c86b",
      "canonicalPayloadHash": "0df4b063ba248ab092dbdf715488fba0630ff8cf86e8e1fe481281aec3ec151d",
      "entryHash": "20aeeeeb41c9df2c8c295f5f24fde92bf9e509feacf87dbb528640cf5787b91a",
      "payload": {
        "agentId": "agent_redacted_release_control",
        "action": "payment.transfer",
        "bodyEntered": false,
        "unsafeBodyCalls": 0,
        "policyVersion": "policy-2026-06-redacted",
        "evidence": "blocked before function body"
      }
    },
    {
      "index": 4,
      "eventType": "identity.authority_token.revoked",
      "boundary": "identity",
      "decision": "recorded",
      "occurredAt": "2026-06-01T18:02:31.000Z",
      "previousHash": "20aeeeeb41c9df2c8c295f5f24fde92bf9e509feacf87dbb528640cf5787b91a",
      "canonicalPayloadHash": "f49688a547c858498807c9dcf97d1bbcaec4473810b1fe65e7badbc0308999bd",
      "entryHash": "65c048a79552972b553bd68f81611e824ec13475834395b4a936b2dde5d6b158",
      "payload": {
        "tokenId": "iatok_redacted_payment_probe",
        "subject": "imladri://workspace/workspace_redacted_risk_review/toolhost/toolhost_redacted_mcp_ci",
        "revokedAt": "2026-06-01T18:02:31.000Z",
        "revocationReason": "blocked_action_probe_completed",
        "futureUseAllowed": false,
        "evidence": "revoked authority token is part of the same proof chain as the blocked action"
      }
    },
    {
      "index": 5,
      "eventType": "database.branch.created",
      "boundary": "data",
      "decision": "allowed",
      "occurredAt": "2026-06-01T18:03:02.000Z",
      "previousHash": "65c048a79552972b553bd68f81611e824ec13475834395b4a936b2dde5d6b158",
      "canonicalPayloadHash": "57afdfebe3d931ec5c01605bec00d472ff89148ee7262d7ef555917c14be9cb2",
      "entryHash": "3983dc11645b9fe4452fc67326cc2fb890375c6c3e18a4f20f02fa11f1a34816",
      "payload": {
        "sourceRelation": "prod_ledger_redacted",
        "sourceRows": "5B-row benchmark family",
        "branchId": "branch_redacted_review",
        "branchMode": "governed-copy-on-write",
        "sourceMutationCount": 0,
        "sourceUntouched": true,
        "isolationChecks": [
          "relation_fingerprint",
          "branch_local_write",
          "source_mutation_check"
        ]
      }
    },
    {
      "index": 6,
      "eventType": "database.schema_diff.verified",
      "boundary": "data",
      "decision": "recorded",
      "occurredAt": "2026-06-01T18:03:15.000Z",
      "previousHash": "3983dc11645b9fe4452fc67326cc2fb890375c6c3e18a4f20f02fa11f1a34816",
      "canonicalPayloadHash": "71256bb260b3ad34abe5a364c558a30ba1b98a04f95a04841f96403a4e7800fa",
      "entryHash": "2f550ba1d7b1f72127caae9d1f3ee2f274aace8ef721d7434b0705acf1b47c9c",
      "payload": {
        "branchId": "branch_redacted_review",
        "sourceSchemaDigest": "sha256:aa0f5e4adab78214331679d389053d67c010e8f3dde642b219edaf2b3d64392a",
        "branchSchemaDigest": "sha256:aa0f5e4adab78214331679d389053d67c010e8f3dde642b219edaf2b3d64392a",
        "schemaDiffStatus": "matching",
        "reviewerExportSourceUntouched": true,
        "sourceMutationCount": 0
      }
    },
    {
      "index": 7,
      "eventType": "database.masked_evidence.exported",
      "boundary": "data",
      "decision": "recorded",
      "occurredAt": "2026-06-01T18:03:24.000Z",
      "previousHash": "2f550ba1d7b1f72127caae9d1f3ee2f274aace8ef721d7434b0705acf1b47c9c",
      "canonicalPayloadHash": "f55cf179031813f17352a89d1c49b993d7dca76a73264f1dd8c604d36e602434",
      "entryHash": "06e8211548d0b7aeca3f35f6ba1b9f1734179266f81b1d34138f9a003c33004e",
      "payload": {
        "branchId": "branch_redacted_review",
        "maskedColumns": [
          "email",
          "ssn",
          "access_token"
        ],
        "piiValuesExported": 0,
        "reviewerRowsExported": 4,
        "resultDigest": "sha256:b4575f35feea47e2ff1bf2de01b6176c9248a04079683bc0e33fe39a5a42dd6b"
      }
    },
    {
      "index": 8,
      "eventType": "database.branch.ttl_swept",
      "boundary": "data",
      "decision": "recorded",
      "occurredAt": "2026-06-01T18:03:39.000Z",
      "previousHash": "06e8211548d0b7aeca3f35f6ba1b9f1734179266f81b1d34138f9a003c33004e",
      "canonicalPayloadHash": "aa4e660c059eea4644056e0a86e670ab241fedcb0b43bbe42687ca9be236fabe",
      "entryHash": "8c16acd484e0d6072e47f5b404c2dbf7c912b96c87e8411a70265565f894b598",
      "payload": {
        "branchId": "branch_redacted_review",
        "ttlSeconds": 600,
        "expiredBranchesFound": 1,
        "destroyedBranches": 1,
        "leakedBranchSchemas": 0,
        "sourceMutationCount": 0
      }
    },
    {
      "index": 9,
      "eventType": "database.branch.destroyed",
      "boundary": "data",
      "decision": "recorded",
      "occurredAt": "2026-06-01T18:03:44.000Z",
      "previousHash": "8c16acd484e0d6072e47f5b404c2dbf7c912b96c87e8411a70265565f894b598",
      "canonicalPayloadHash": "d2f5ab876b93bb91a760327de66b546a0822befefa3102778f6b8615f1964c80",
      "entryHash": "6930a844501ffed2b55c9c9456b1e245beb5cb1617a179e23ce59aee465e0a07",
      "payload": {
        "branchId": "branch_redacted_review",
        "cleanupVerified": true,
        "sourceMutationCount": 0,
        "sourceUntouched": true,
        "evidence": "branch-local changes removed without source writes"
      }
    },
    {
      "index": 10,
      "eventType": "protected_compute.run.attested",
      "boundary": "compute",
      "decision": "allowed",
      "occurredAt": "2026-06-01T18:04:16.000Z",
      "previousHash": "6930a844501ffed2b55c9c9456b1e245beb5cb1617a179e23ce59aee465e0a07",
      "canonicalPayloadHash": "7c392b66b375f00090c5b01ed5fb10a025caef0cf210034cb8cce39677c670bf",
      "entryHash": "dda8dc855529f146cda909971dd847f8aea081ac6801c8fea9b7a1ee8ca3e56a",
      "payload": {
        "workload": "qwen_lora_redacted",
        "providerClass": "h100_same_allocation_family",
        "attestationVerified": true,
        "adapterDigestDistinct": true,
        "finiteLossObserved": true,
        "zeroizedCleanup": true,
        "artifactDigest": "sha256:7e424ed5de349e7608d24a70a8843641a8d4bf4fe1c7e6001f6c4651d89f87cb"
      }
    },
    {
      "index": 11,
      "eventType": "protected_compute.fixed_step_benchmark.completed",
      "boundary": "compute",
      "decision": "recorded",
      "occurredAt": "2026-06-01T18:05:03.000Z",
      "previousHash": "dda8dc855529f146cda909971dd847f8aea081ac6801c8fea9b7a1ee8ca3e56a",
      "canonicalPayloadHash": "84493a768cf0295348e02f51c62082f01e03884c59bba46b7b55869f51126d32",
      "entryHash": "d546c57afedff8ca8d78be0d7e0d756458de3cb87f76eaee40c48817ba38a13f",
      "payload": {
        "workload": "qwen_lora_redacted",
        "provider": "runpod",
        "gpuClass": "h100",
        "methodology": "fixed-step",
        "protectedSteps": 512,
        "rawSteps": 512,
        "maxRuntimeSeconds": 3900,
        "maxSpendUsd": 30,
        "costCapEnforced": true,
        "autoShutdownConfigured": true,
        "overheadConclusion": "below-noise-floor-or-low-overhead"
      }
    },
    {
      "index": 12,
      "eventType": "protected_compute.provider_cleanup.verified",
      "boundary": "compute",
      "decision": "recorded",
      "occurredAt": "2026-06-01T18:05:18.000Z",
      "previousHash": "d546c57afedff8ca8d78be0d7e0d756458de3cb87f76eaee40c48817ba38a13f",
      "canonicalPayloadHash": "782819726302f1610fba981e96be2c8052deb60fb560cfca732093042b5c2917",
      "entryHash": "aeb24141e7c91021cd811d5ac07db67f734d104f69a3dc2255dbe54eaa870fe3",
      "payload": {
        "provider": "runpod",
        "providerInstanceId": "redacted",
        "stopIssued": true,
        "destroyIssued": true,
        "providerReportsTerminated": true,
        "runtimeState": "zeroized",
        "cleanupDigest": "sha256:ab0eea7703a6bb9e65fcd5f7eeb0cf77d22d2a9a3169dfde41412f52dc8ca54d"
      }
    },
    {
      "index": 13,
      "eventType": "monitor.drift_replay.exported",
      "boundary": "monitoring",
      "decision": "recorded",
      "occurredAt": "2026-06-01T18:06:00.000Z",
      "previousHash": "aeb24141e7c91021cd811d5ac07db67f734d104f69a3dc2255dbe54eaa870fe3",
      "canonicalPayloadHash": "4ac3d6a3fdc249281a4db7f1d2a93d47c0ad022b912a41a16ee1ae2629d406a6",
      "entryHash": "e4e16ecf6263f8acdff1718caa7fc0ecf989f05a1aa7df1e444b0fc47dda9547",
      "payload": {
        "service": "glasspulse",
        "replayWindow": "agent_session",
        "driftTimelineEvents": 5,
        "criticalEvents": 1,
        "autoHaltEvents": 1,
        "signedEventChainRoot": "sha256:98c6d0983a1a98be1d97b700431aa16ae897468c42d31e3e4caa112f2fd1b78c"
      }
    },
    {
      "index": 14,
      "eventType": "monitor.dead_letter.recovered",
      "boundary": "monitoring",
      "decision": "recorded",
      "occurredAt": "2026-06-01T18:06:18.000Z",
      "previousHash": "e4e16ecf6263f8acdff1718caa7fc0ecf989f05a1aa7df1e444b0fc47dda9547",
      "canonicalPayloadHash": "d02ab75516f3ad8d8a0db27efa9cf032a664eefd97d05143450244d66bfd9774",
      "entryHash": "d9bd2b26c7e30bc70f89a32d96430560381fdd38ecc25e68bd02e879b5d90383",
      "payload": {
        "service": "glasspulse",
        "deadLetterItems": 1,
        "recoveredItems": 1,
        "unrecoveredItems": 0,
        "recoveryDigest": "sha256:bf5e5604ea1ce8f02c55cd6230c9dfa2e4db567b6b847480ed82f60efb0ff62c"
      }
    },
    {
      "index": 15,
      "eventType": "monitor.status.last_good_smoke",
      "boundary": "monitoring",
      "decision": "recorded",
      "occurredAt": "2026-06-01T18:06:30.000Z",
      "previousHash": "d9bd2b26c7e30bc70f89a32d96430560381fdd38ecc25e68bd02e879b5d90383",
      "canonicalPayloadHash": "f302ee30d66228325ca0bd5989fd234785cd65f76f1166db618baa30d7234f1d",
      "entryHash": "634ede0980776af1b2c5a08ee4481825181bdce39a65bd2129b1a84c3d998277",
      "payload": {
        "service": "glasspulse",
        "status": "ok",
        "lastGoodSmokeAt": "2026-06-01T18:06:30.000Z",
        "lastGoodSmokeDigest": "sha256:405a7faac2cad766dbd3adc2742db25458a193b76e054e0992c1777f366a2fa8",
        "eventExportReady": true
      }
    },
    {
      "index": 16,
      "eventType": "packet.exported",
      "boundary": "proof",
      "decision": "recorded",
      "occurredAt": "2026-06-01T18:10:00.000Z",
      "previousHash": "634ede0980776af1b2c5a08ee4481825181bdce39a65bd2129b1a84c3d998277",
      "canonicalPayloadHash": "1d84a9dfaa95568a3a316844b1dfbbcad9f90936dd88ef3032ce1f7e10b5876c",
      "entryHash": "2f283597bd410e2ad129e5b82dd0d21d6855ebb1a88a38aac61f558e8164225b",
      "payload": {
        "redactionMode": "auditor",
        "canonicalization": "json-stable-v1",
        "digestAlgorithm": "SHA-256",
        "exportedSurfaces": [
          "policy",
          "identity",
          "action",
          "data",
          "compute",
          "monitoring",
          "ci",
          "sdk",
          "mcp"
        ]
      }
    }
  ],
  "auditorAssertions": [
    {
      "title": "One constitution",
      "body": "The same policy revision appears on identity, action, data, compute, monitoring, CI, SDK, and MCP evidence."
    },
    {
      "title": "Blocked before body",
      "body": "The prohibited payment action records bodyEntered=false and unsafeBodyCalls=0."
    },
    {
      "title": "Source untouched",
      "body": "The database branch, schema-diff, TTL, and reviewer-export entries carry sourceMutationCount=0."
    },
    {
      "title": "Identity bound",
      "body": "The packet binds org, workspace, agent, session, tool host, and action under a signed capability manifest."
    },
    {
      "title": "Hash chain intact",
      "body": "Each entry stores previousHash, canonicalPayloadHash, and entryHash ending at the chain root."
    }
  ]
}