Skip to content

fix: verify ledger integrity and require explicit bound resolutions - #51

Merged
bhyi4 merged 1 commit into
mainfrom
fix/verified-resolution-gates
Sep 9, 2026
Merged

bhyi4 merged 1 commit into
mainfrom
fix/verified-resolution-gates

Conversation

@bhyi4

@bhyi4 bhyi4 commented Sep 9, 2026

Copy link
Copy Markdown
Contributor

Summary

  • Add one MIRROR-SPEC snapshot verifier shared by the gate and outsider CLI: recompute links and SHA-256 content seals, reject empty/missing/malformed/duplicate-key/tampered input, and report legacy seal strength.
  • Require an explicit sealed result (action=result; payload.status, summary, prereg_seal) or reasoned retraction before publication. A started action cannot resolve a claim; first registration wins. Negative and inconclusive results remain publishable.
  • Expose HASH_RECOMPUTED / LOCAL_SNAPSHOT / HEAD_WITNESS and unverified content truth, identity, external time and independent reproduction. A separately checked Bitcoin proof is not misrepresented as binding this ledger's precedence.
  • Preserve linkage-only check_chain as a compatibility API; the CLI no longer mistakes it for content integrity. Existing production records are not rewritten.

Related

Migration

Callers must append a real result with the first preregistration seal; legacy started actions do not pass. GO permits publication of a resolved result, not a claim of scientific success. No service restart or local shared-install branch change is included.

Validation

  • Local full suite and dedicated online release-pin checks.
  • Regressions cover content-only tampering, raw unsealed claims/actions, invalid JSON, empty/missing input, false resolutions, first-write invariance, snapshot reads, negative results and truthful verification scope.

@bhyi4
bhyi4 merged commit 9eafb8e into main Sep 9, 2026
4 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant