Imladri public proof
Auditor-grade sample proof packet
A redacted public preview of the packet buyers inspect: who acted, what policy allowed or blocked, whether the dangerous body ran, whether source data stayed untouched, and the SHA-256 chain that ties evidence together.
Public sample uses digest-only sample metadata. Approved private packets are signed with the workspace signing key.
Agent
agent_redacted_release_control
SDK lanes
71/71
CI scan
passed
Source writes
0
Body calls
0
Auditor assertions
One packet follows the side effect.
The packet is organized around verification questions an auditor actually asks: did the action execute, which policy decided it, did production data change, and can the evidence be replayed from hashes instead of screenshots.
One constitution
The same policy revision appears on identity, action, data, compute, monitoring, CI, SDK, and MCP evidence.
Blocked before body
The prohibited payment action records bodyEntered=false and unsafeBodyCalls=0.
Source untouched
The database branch, schema-diff, TTL, and reviewer-export entries carry sourceMutationCount=0.
Identity bound
The packet binds org, workspace, agent, session, tool host, and action under a signed capability manifest.
Hash chain intact
Each entry stores previousHash, canonicalPayloadHash, and entryHash ending at the chain root.
Hash-chained ledger
Policy to proof, in order.
constitution.published
cd0c9c3d4c593664bb4a0158...fd91a524
identity.capability_manifest.signed
7f63bb97d9acaad6d5e039f7...a37e027f
agent.action.allowed
93a5beea69ccc20ca5c9a37e...1bb8c86b
agent.action.blocked
20aeeeeb41c9df2c8c295f5f...5787b91a
identity.authority_token.revoked
65c048a79552972b553bd68f...e5d6b158
database.branch.created
3983dc11645b9fe4452fc673...f1a34816
database.schema_diff.verified
2f550ba1d7b1f72127caae9d...f1b47c9c
database.masked_evidence.exported
06e8211548d0b7aeca3f35f6...3c33004e
database.branch.ttl_swept
8c16acd484e0d6072e47f5b4...f894b598
database.branch.destroyed
6930a844501ffed2b55c9c94...465e0a07
protected_compute.run.attested
dda8dc855529f146cda90997...8ca3e56a
protected_compute.fixed_step_benchmark.completed
d546c57afedff8ca8d78be0d...ba38a13f
protected_compute.provider_cleanup.verified
aeb24141e7c91021cd811d5a...aa870fe3
monitor.drift_replay.exported
e4e16ecf6263f8acdff1718c...7dda9547
monitor.dead_letter.recovered
d9bd2b26c7e30bc70f89a32d...b5d90383
monitor.status.last_good_smoke
634ede0980776af1b2c5a08e...3d998277
packet.exported
2f283597bd410e2ad129e5b8...8164225b
2f283597bd410e2ad129e5b82dd0d21d6855ebb1a88a38aac61f558e8164225b832d427d4c724a1b2ffbb44e8f307bbbcd77d07a8ebed1987f00d508a3fcf9fdAction
Allowed release.deploy and blocked payment.transfer under the same constitution.
Data
Governed branch proof includes source fingerprints, schema diff, TTL cleanup, masked evidence, and 0 source mutations.
Compute
Protected compute records attestation, fixed-step proof, cost cap, auto-shutdown, provider cleanup, and zeroization.
Monitoring
GlassPulse exports replay, drift timeline, signed event chain, dead-letter recovery, and last verified status.
Packet
Auditor-redacted JSON exports the chain root, digest algorithm, redaction manifest, identity chain, and verification steps.
Certification
Integrity
Redacted JSON
{
"success": true,
"exportedAt": "2026-06-01T18:10:00.000Z",
"summary": {
"constitutionPublished": true,
"constitutionVersion": "policy-2026-06-redacted",
"eventCount": 128,
"violationCount": 1,
"observedActionCount": 24,
"allowedActivityCount": 23,
"blockedActivityCount": 1,
"runtimeEvidenceReady": true,
"runtimeEvidenceNeedsAttention": false,
"latestRuntimeEvidenceAt": "2026-06-01T18:04:31.000Z",
"latestEventAt": "2026-06-01T18:04:31.000Z",
"latestViolationAt": "2026-06-01T18:02:18.000Z",
"exportReady": true
},
"proofScope": {
"description": "Redacted sample buyer packet for public preview.",
"chronological": true,
"truncation": "auditor-safe summary",
"redactionMode": "auditor",
"includes": [
"SDK adapter certification summary",
"CI scanner summary",
"Allowed runtime action",
"Blocked runtime action",
"Database source-integrity assertion",
"Protected compute attestation summary",
"Protected compute fixed-step/cost-cap cleanup proof",
"GlassPulse replay and signed event-chain summary",
"Agent identity and capability manifest",
"SHA-256 proof signature",
"Hash-chained event ledger"
]
},
"proofSignature": {
"version": 1,
"canonicalization": "json-stable-v1",
"digestAlgorithm": "SHA-256",
"payloadDigestHex": "832d427d4c724a1b2ffbb44e8f307bbbcd77d07a8ebed1987f00d508a3fcf9fd",
"signatureAlgorithm": null,
"signatureHex": null,
"keyId": null,
"publicKeyJwk": null,
"signedAt": "2026-06-01T18:10:00.000Z"
},
"hashChain": {
"algorithm": "SHA-256",
"canonicalization": "json-stable-v1",
"chainRoot": "2f283597bd410e2ad129e5b82dd0d21d6855ebb1a88a38aac61f558e8164225b",
"eventCount": 17
},
"proofCompleteness": {
"status": "ready",
"note": "Redacted public sample. Live proof links use customer-specific evidence and share ids.",
"lanes": {
"sdk": {
"covered": true,
"status": "71/71 passed"
},
"hostedAdopters": {
"covered": true,
"status": "5/5 passed"
},
"mcp": {
"covered": true,
"status": "5/5 passed"
},
"ci": {
"covered": true,
"status": "GitLab + Vercel passed"
},
"data": {
"covered": true,
"status": "source untouched"
},
"compute": {
"covered": true,
"status": "attestation + fixed-step + cleanup recorded"
},
"monitoring": {
"covered": true,
"status": "replay + event-chain exported"
},
"identity": {
"covered": true,
"status": "capability manifest signed"
}
}
},
"authoritySummary": {
"activeSubject": "agent_redacted_release_control",
"identityType": "service-agent",
"trustLevel": "production-boundary",
"delegationDepthLimit": 1,
"revokedAt": null,
"recordedAuthorityEvents": 5,
"subjects": [
"agent_redacted_release_control"
],
"ownerEmails": [
"security-reviewer@example.com"
],
"maxObservedDelegationDepth": 1
},
"evidenceCounts": {
"activityTimeline": 24,
"authorityTimeline": 5,
"boundaryScans": 1,
"sdkCertifications": 1,
"lifecycleEvents": 8,
"violationTimeline": 1,
"observedActions": 24
},
"boundaryScanSummary": {
"id": "scan_redacted_gitlab_vercel",
"status": "passed",
"createdAt": "2026-06-01T18:03:11.000Z",
"scannedFiles": 42,
"findingCount": 0,
"errorCount": 0,
"warningCount": 0
},
"sdkCertificationSummary": {
"id": "sdk_cert_redacted_71_lanes",
"status": "passed",
"scope": "ci_matrix",
"target": {
"publicPreview": true
},
"createdAt": "2026-06-01T18:02:00.000Z",
"generatedAt": "2026-06-01T18:02:00.000Z",
"certificationLevel": "public-adopter-matrix",
"adopterFamilyCount": 20,
"laneCount": 71,
"passedCount": 71,
"failedCount": 0,
"skippedCount": 0,
"skippedHeavyCount": 0,
"notApplicableCount": 0,
"ci": {
"provider": "gitlab+vercel",
"commit": "redacted",
"branch": "main",
"runId": "redacted",
"runUrl": null,
"workflow": "imladri-boundary-scan",
"job": "public-proof-preview",
"pullRequest": null
}
},
"observedActions": [
{
"actionType": "release.deploy",
"status": "allowed",
"bodyEntered": true,
"evidence": "allowed action completed under policy"
},
{
"actionType": "payment.transfer",
"status": "blocked",
"bodyEntered": false,
"evidence": "blocked before function body"
}
],
"runtimeObservedEvidence": {
"prohibitedBodyCalls": 0,
"decision": "blocked",
"proofDigest": "832d427d4c724a1b2ffbb44e8f307bbbcd77d07a8ebed1987f00d508a3fcf9fd"
},
"auditorPacket": {
"schemaVersion": "imladri.auditor-proof-packet.v1",
"packetId": "imladri-auditor-proof-sample-20260601",
"packetKind": "redacted-public-sample",
"artifactPath": "/proofs/imladri-auditor-proof-sample.json",
"artifactSha256Path": "/proofs/imladri-auditor-proof-sample.json.sha256.txt",
"packetDigestHex": "832d427d4c724a1b2ffbb44e8f307bbbcd77d07a8ebed1987f00d508a3fcf9fd",
"chainRoot": "2f283597bd410e2ad129e5b82dd0d21d6855ebb1a88a38aac61f558e8164225b",
"eventCount": 17,
"statement": "Redacted public sample showing how one Imladri constitution produces one auditor-readable proof chain across action, data, and protected compute boundaries.",
"sourceUntouched": true,
"sourceMutationCount": 0,
"unsafeBodyCalls": 0,
"identityChainComplete": true,
"capabilityManifestSigned": true,
"fixedStepBenchmark": true,
"providerCleanupVerified": true,
"schemaDiffVerified": true,
"maskedPiiEvidence": true,
"glassPulseReplayExported": true,
"lastGoodSmokeStatus": "ok",
"redactionCount": 3
},
"auditorChainEntries": [
{
"index": 0,
"eventType": "constitution.published",
"boundary": "policy",
"decision": "recorded",
"occurredAt": "2026-06-01T18:00:00.000Z",
"previousHash": "0000000000000000000000000000000000000000000000000000000000000000",
"canonicalPayloadHash": "6dc96189b5cc91e385141d9c5991da7a204b927dbb55429eb075853a925d269c",
"entryHash": "cd0c9c3d4c593664bb4a01582057a01764733c5aa5987a62ff1c7c7afd91a524",
"payload": {
"constitutionVersion": "policy-2026-06-redacted",
"policyDigest": "sha256:dfaf5b8b5b40e4e575f5fd11fd682f22c78537cce97d5a352c5d821fcdf404c4",
"allowedActions": [
"release.deploy",
"db.branch.create",
"protected_compute.run"
],
"blockedActions": [
"payment.transfer",
"prod.secret.read",
"compliance.evidence.delete"
]
}
},
{
"index": 1,
"eventType": "identity.capability_manifest.signed",
"boundary": "identity",
"decision": "recorded",
"occurredAt": "2026-06-01T18:00:22.000Z",
"previousHash": "cd0c9c3d4c593664bb4a01582057a01764733c5aa5987a62ff1c7c7afd91a524",
"canonicalPayloadHash": "945d14dba0feebb250ec89bd866219fa4f58f92aaa27b78ffcddc9783f9f41d8",
"entryHash": "7f63bb97d9acaad6d5e039f7e28065f5827e4ac4395b3402366a53bea37e027f",
"payload": {
"identityChain": {
"organizationId": "org_redacted_financial_controls",
"workspaceId": "workspace_redacted_risk_review",
"agentId": "agent_redacted_release_control",
"sessionId": "session_redacted_review_001",
"toolHostId": "toolhost_redacted_mcp_ci",
"actionId": "release.deploy"
},
"capabilityManifestDigest": "sha256:77d90f3f832a58805eb6b6c2d9faab1bcdaefad0c7610d7ef6550b97f6fbb2d9",
"signatureAlgorithm": "ed25519",
"keyRotationEpoch": "2026-06",
"maxDelegationDepth": 1,
"delegationChain": [
"org",
"workspace",
"agent",
"session",
"toolhost",
"action"
]
}
},
{
"index": 2,
"eventType": "agent.action.allowed",
"boundary": "action",
"decision": "allowed",
"occurredAt": "2026-06-01T18:01:09.000Z",
"previousHash": "7f63bb97d9acaad6d5e039f7e28065f5827e4ac4395b3402366a53bea37e027f",
"canonicalPayloadHash": "0c8d42ee35e98b554f99c1bc2d1bc910962e4516fbdf1dfc900987712cb7edc2",
"entryHash": "93a5beea69ccc20ca5c9a37e07631f027155e435490b320ae19e4b9f1bb8c86b",
"payload": {
"agentId": "agent_redacted_release_control",
"action": "release.deploy",
"bodyEntered": true,
"policyVersion": "policy-2026-06-redacted",
"evidence": "allowed action completed under policy"
}
},
{
"index": 3,
"eventType": "agent.action.blocked",
"boundary": "action",
"decision": "blocked",
"occurredAt": "2026-06-01T18:02:18.000Z",
"previousHash": "93a5beea69ccc20ca5c9a37e07631f027155e435490b320ae19e4b9f1bb8c86b",
"canonicalPayloadHash": "0df4b063ba248ab092dbdf715488fba0630ff8cf86e8e1fe481281aec3ec151d",
"entryHash": "20aeeeeb41c9df2c8c295f5f24fde92bf9e509feacf87dbb528640cf5787b91a",
"payload": {
"agentId": "agent_redacted_release_control",
"action": "payment.transfer",
"bodyEntered": false,
"unsafeBodyCalls": 0,
"policyVersion": "policy-2026-06-redacted",
"evidence": "blocked before function body"
}
},
{
"index": 4,
"eventType": "identity.authority_token.revoked",
"boundary": "identity",
"decision": "recorded",
"occurredAt": "2026-06-01T18:02:31.000Z",
"previousHash": "20aeeeeb41c9df2c8c295f5f24fde92bf9e509feacf87dbb528640cf5787b91a",
"canonicalPayloadHash": "f49688a547c858498807c9dcf97d1bbcaec4473810b1fe65e7badbc0308999bd",
"entryHash": "65c048a79552972b553bd68f81611e824ec13475834395b4a936b2dde5d6b158",
"payload": {
"tokenId": "iatok_redacted_payment_probe",
"subject": "imladri://workspace/workspace_redacted_risk_review/toolhost/toolhost_redacted_mcp_ci",
"revokedAt": "2026-06-01T18:02:31.000Z",
"revocationReason": "blocked_action_probe_completed",
"futureUseAllowed": false,
"evidence": "revoked authority token is part of the same proof chain as the blocked action"
}
},
{
"index": 5,
"eventType": "database.branch.created",
"boundary": "data",
"decision": "allowed",
"occurredAt": "2026-06-01T18:03:02.000Z",
"previousHash": "65c048a79552972b553bd68f81611e824ec13475834395b4a936b2dde5d6b158",
"canonicalPayloadHash": "57afdfebe3d931ec5c01605bec00d472ff89148ee7262d7ef555917c14be9cb2",
"entryHash": "3983dc11645b9fe4452fc67326cc2fb890375c6c3e18a4f20f02fa11f1a34816",
"payload": {
"sourceRelation": "prod_ledger_redacted",
"sourceRows": "5B-row benchmark family",
"branchId": "branch_redacted_review",
"branchMode": "governed-copy-on-write",
"sourceMutationCount": 0,
"sourceUntouched": true,
"isolationChecks": [
"relation_fingerprint",
"branch_local_write",
"source_mutation_check"
]
}
},
{
"index": 6,
"eventType": "database.schema_diff.verified",
"boundary": "data",
"decision": "recorded",
"occurredAt": "2026-06-01T18:03:15.000Z",
"previousHash": "3983dc11645b9fe4452fc67326cc2fb890375c6c3e18a4f20f02fa11f1a34816",
"canonicalPayloadHash": "71256bb260b3ad34abe5a364c558a30ba1b98a04f95a04841f96403a4e7800fa",
"entryHash": "2f550ba1d7b1f72127caae9d1f3ee2f274aace8ef721d7434b0705acf1b47c9c",
"payload": {
"branchId": "branch_redacted_review",
"sourceSchemaDigest": "sha256:aa0f5e4adab78214331679d389053d67c010e8f3dde642b219edaf2b3d64392a",
"branchSchemaDigest": "sha256:aa0f5e4adab78214331679d389053d67c010e8f3dde642b219edaf2b3d64392a",
"schemaDiffStatus": "matching",
"reviewerExportSourceUntouched": true,
"sourceMutationCount": 0
}
},
{
"index": 7,
"eventType": "database.masked_evidence.exported",
"boundary": "data",
"decision": "recorded",
"occurredAt": "2026-06-01T18:03:24.000Z",
"previousHash": "2f550ba1d7b1f72127caae9d1f3ee2f274aace8ef721d7434b0705acf1b47c9c",
"canonicalPayloadHash": "f55cf179031813f17352a89d1c49b993d7dca76a73264f1dd8c604d36e602434",
"entryHash": "06e8211548d0b7aeca3f35f6ba1b9f1734179266f81b1d34138f9a003c33004e",
"payload": {
"branchId": "branch_redacted_review",
"maskedColumns": [
"email",
"ssn",
"access_token"
],
"piiValuesExported": 0,
"reviewerRowsExported": 4,
"resultDigest": "sha256:b4575f35feea47e2ff1bf2de01b6176c9248a04079683bc0e33fe39a5a42dd6b"
}
},
{
"index": 8,
"eventType": "database.branch.ttl_swept",
"boundary": "data",
"decision": "recorded",
"occurredAt": "2026-06-01T18:03:39.000Z",
"previousHash": "06e8211548d0b7aeca3f35f6ba1b9f1734179266f81b1d34138f9a003c33004e",
"canonicalPayloadHash": "aa4e660c059eea4644056e0a86e670ab241fedcb0b43bbe42687ca9be236fabe",
"entryHash": "8c16acd484e0d6072e47f5b404c2dbf7c912b96c87e8411a70265565f894b598",
"payload": {
"branchId": "branch_redacted_review",
"ttlSeconds": 600,
"expiredBranchesFound": 1,
"destroyedBranches": 1,
"leakedBranchSchemas": 0,
"sourceMutationCount": 0
}
},
{
"index": 9,
"eventType": "database.branch.destroyed",
"boundary": "data",
"decision": "recorded",
"occurredAt": "2026-06-01T18:03:44.000Z",
"previousHash": "8c16acd484e0d6072e47f5b404c2dbf7c912b96c87e8411a70265565f894b598",
"canonicalPayloadHash": "d2f5ab876b93bb91a760327de66b546a0822befefa3102778f6b8615f1964c80",
"entryHash": "6930a844501ffed2b55c9c9456b1e245beb5cb1617a179e23ce59aee465e0a07",
"payload": {
"branchId": "branch_redacted_review",
"cleanupVerified": true,
"sourceMutationCount": 0,
"sourceUntouched": true,
"evidence": "branch-local changes removed without source writes"
}
},
{
"index": 10,
"eventType": "protected_compute.run.attested",
"boundary": "compute",
"decision": "allowed",
"occurredAt": "2026-06-01T18:04:16.000Z",
"previousHash": "6930a844501ffed2b55c9c9456b1e245beb5cb1617a179e23ce59aee465e0a07",
"canonicalPayloadHash": "7c392b66b375f00090c5b01ed5fb10a025caef0cf210034cb8cce39677c670bf",
"entryHash": "dda8dc855529f146cda909971dd847f8aea081ac6801c8fea9b7a1ee8ca3e56a",
"payload": {
"workload": "qwen_lora_redacted",
"providerClass": "h100_same_allocation_family",
"attestationVerified": true,
"adapterDigestDistinct": true,
"finiteLossObserved": true,
"zeroizedCleanup": true,
"artifactDigest": "sha256:7e424ed5de349e7608d24a70a8843641a8d4bf4fe1c7e6001f6c4651d89f87cb"
}
},
{
"index": 11,
"eventType": "protected_compute.fixed_step_benchmark.completed",
"boundary": "compute",
"decision": "recorded",
"occurredAt": "2026-06-01T18:05:03.000Z",
"previousHash": "dda8dc855529f146cda909971dd847f8aea081ac6801c8fea9b7a1ee8ca3e56a",
"canonicalPayloadHash": "84493a768cf0295348e02f51c62082f01e03884c59bba46b7b55869f51126d32",
"entryHash": "d546c57afedff8ca8d78be0d7e0d756458de3cb87f76eaee40c48817ba38a13f",
"payload": {
"workload": "qwen_lora_redacted",
"provider": "runpod",
"gpuClass": "h100",
"methodology": "fixed-step",
"protectedSteps": 512,
"rawSteps": 512,
"maxRuntimeSeconds": 3900,
"maxSpendUsd": 30,
"costCapEnforced": true,
"autoShutdownConfigured": true,
"overheadConclusion": "below-noise-floor-or-low-overhead"
}
},
{
"index": 12,
"eventType": "protected_compute.provider_cleanup.verified",
"boundary": "compute",
"decision": "recorded",
"occurredAt": "2026-06-01T18:05:18.000Z",
"previousHash": "d546c57afedff8ca8d78be0d7e0d756458de3cb87f76eaee40c48817ba38a13f",
"canonicalPayloadHash": "782819726302f1610fba981e96be2c8052deb60fb560cfca732093042b5c2917",
"entryHash": "aeb24141e7c91021cd811d5ac07db67f734d104f69a3dc2255dbe54eaa870fe3",
"payload": {
"provider": "runpod",
"providerInstanceId": "redacted",
"stopIssued": true,
"destroyIssued": true,
"providerReportsTerminated": true,
"runtimeState": "zeroized",
"cleanupDigest": "sha256:ab0eea7703a6bb9e65fcd5f7eeb0cf77d22d2a9a3169dfde41412f52dc8ca54d"
}
},
{
"index": 13,
"eventType": "monitor.drift_replay.exported",
"boundary": "monitoring",
"decision": "recorded",
"occurredAt": "2026-06-01T18:06:00.000Z",
"previousHash": "aeb24141e7c91021cd811d5ac07db67f734d104f69a3dc2255dbe54eaa870fe3",
"canonicalPayloadHash": "4ac3d6a3fdc249281a4db7f1d2a93d47c0ad022b912a41a16ee1ae2629d406a6",
"entryHash": "e4e16ecf6263f8acdff1718caa7fc0ecf989f05a1aa7df1e444b0fc47dda9547",
"payload": {
"service": "glasspulse",
"replayWindow": "agent_session",
"driftTimelineEvents": 5,
"criticalEvents": 1,
"autoHaltEvents": 1,
"signedEventChainRoot": "sha256:98c6d0983a1a98be1d97b700431aa16ae897468c42d31e3e4caa112f2fd1b78c"
}
},
{
"index": 14,
"eventType": "monitor.dead_letter.recovered",
"boundary": "monitoring",
"decision": "recorded",
"occurredAt": "2026-06-01T18:06:18.000Z",
"previousHash": "e4e16ecf6263f8acdff1718caa7fc0ecf989f05a1aa7df1e444b0fc47dda9547",
"canonicalPayloadHash": "d02ab75516f3ad8d8a0db27efa9cf032a664eefd97d05143450244d66bfd9774",
"entryHash": "d9bd2b26c7e30bc70f89a32d96430560381fdd38ecc25e68bd02e879b5d90383",
"payload": {
"service": "glasspulse",
"deadLetterItems": 1,
"recoveredItems": 1,
"unrecoveredItems": 0,
"recoveryDigest": "sha256:bf5e5604ea1ce8f02c55cd6230c9dfa2e4db567b6b847480ed82f60efb0ff62c"
}
},
{
"index": 15,
"eventType": "monitor.status.last_good_smoke",
"boundary": "monitoring",
"decision": "recorded",
"occurredAt": "2026-06-01T18:06:30.000Z",
"previousHash": "d9bd2b26c7e30bc70f89a32d96430560381fdd38ecc25e68bd02e879b5d90383",
"canonicalPayloadHash": "f302ee30d66228325ca0bd5989fd234785cd65f76f1166db618baa30d7234f1d",
"entryHash": "634ede0980776af1b2c5a08ee4481825181bdce39a65bd2129b1a84c3d998277",
"payload": {
"service": "glasspulse",
"status": "ok",
"lastGoodSmokeAt": "2026-06-01T18:06:30.000Z",
"lastGoodSmokeDigest": "sha256:405a7faac2cad766dbd3adc2742db25458a193b76e054e0992c1777f366a2fa8",
"eventExportReady": true
}
},
{
"index": 16,
"eventType": "packet.exported",
"boundary": "proof",
"decision": "recorded",
"occurredAt": "2026-06-01T18:10:00.000Z",
"previousHash": "634ede0980776af1b2c5a08ee4481825181bdce39a65bd2129b1a84c3d998277",
"canonicalPayloadHash": "1d84a9dfaa95568a3a316844b1dfbbcad9f90936dd88ef3032ce1f7e10b5876c",
"entryHash": "2f283597bd410e2ad129e5b82dd0d21d6855ebb1a88a38aac61f558e8164225b",
"payload": {
"redactionMode": "auditor",
"canonicalization": "json-stable-v1",
"digestAlgorithm": "SHA-256",
"exportedSurfaces": [
"policy",
"identity",
"action",
"data",
"compute",
"monitoring",
"ci",
"sdk",
"mcp"
]
}
}
],
"auditorAssertions": [
{
"title": "One constitution",
"body": "The same policy revision appears on identity, action, data, compute, monitoring, CI, SDK, and MCP evidence."
},
{
"title": "Blocked before body",
"body": "The prohibited payment action records bodyEntered=false and unsafeBodyCalls=0."
},
{
"title": "Source untouched",
"body": "The database branch, schema-diff, TTL, and reviewer-export entries carry sourceMutationCount=0."
},
{
"title": "Identity bound",
"body": "The packet binds org, workspace, agent, session, tool host, and action under a signed capability manifest."
},
{
"title": "Hash chain intact",
"body": "Each entry stores previousHash, canonicalPayloadHash, and entryHash ending at the chain root."
}
]
}