{
  "_doc": "One result, read from the codebase’s own files at the commit named here. Every value is that file’s own, copied verbatim; nothing here is written by hand. A value replaced by {withheld: true, sha256_of_value, bytes} is committed by its sha256 instead of published, for the reason it states, and is never edited. Each whole source file is committed by sha256 below, and its bytes are published only where its visibility says so. The codebase is named by the public subject its files are published under.",
  "lane": "packaging-extraction",
  "repository": "packaging-extraction",
  "commit": "24ddde7ebf3199b167c32c886eb6a9abaf7e212c",
  "portfolio_id": "packaging-extraction:certification-battery",
  "id": "certification-battery",
  "attestation_row": {
    "attested_at": "2026-09-24",
    "attestor": "07-genesis",
    "repository": "genesis",
    "source_doc": "CROWN_JEWELS_RESOLVED.md",
    "source_doc_sha256": "e8c823526abd946954ac2bbd2850849747dfa73cfb85d39d1b316d2330604dbe",
    "state": "attested",
    "top_n": 31,
    "note_sha256": "a18188920cc59653aabf6437890706d1f62a11628e4623e54f67ed9f03e13dc7",
    "ids_in_row": 31,
    "file": "dataroom/TOP_N_ATTESTATION.jsonl",
    "line": 1
  },
  "claim_source": {
    "receipt": "packaging-extraction/top40.json",
    "sha256": "4248b8f8b5985bb670534d8c1450b218444ea4cd1a22794dd5c48555b1dbb929",
    "field": "entries[11].claim",
    "file": "top40.json"
  },
  "top40_entry": {
    "id": "certification-battery",
    "rank": 12,
    "title": "The six-certificate battery on the Gate-71 surrogate",
    "claim": "The Gate-71 substrate-agnostic surrogate carries six certificate studies — output range, solver agreement, monotonicity, Lipschitz tolerance, inverse reachability and frequency consistency — of which FIVE are discriminative and are re-verified live by ONE command (6 gates green, output range on both shipped models). The sixth, solver agreement (Gate 150), is EXCLUDED from the battery rather than counted: it is anti-correlated with truth — a 1.5% output-layer degradation makes agreement 5× worse, 1.53% → 7.72%, while all three of its criteria still pass.",
    "scope": "These certify the Gate-71 SUBSTRATE-AGNOSTIC SURROGATE, a real shipped model but NOT the primary served ensemble, which is entry 5 (`served-ensemble-certified`). Each certificate is a property of the network function, not of agreement with silicon.",
    "limits": "ONE CHECK IN THIS BATTERY IS BROKEN AND STAYS FAILING. Gate 150's ≤~58% sound solver-agreement bound, with 100% escalation and 0 wrong signoffs, is an honest result that was corrected twice: a /100 units bug produced an 'auto-decides 97.6%' figure, which was removed, and a claimed tight 'validated ≤1.56%' bound was removed after the signoff test found 34 or more wrong signoffs. But the check itself is anti-correlated with truth: a 1.5% output-layer degradation makes agreement 5× worse, 1.53% → 7.72%, while all three of its criteria pass. It is still live and is stated here rather than left to be found. Gate 152's bound is loose: elasticity about 2× the ideal-coax value of about 1. Gate 89's detectability is low: only 19 of 193 single-row ×10 corruptions are band-detectable, so the output-range check misses most deliberately corrupted models, and corruptions that preserve the network's function are undetectable by any sound output-range method. The model these checks cover is the Gate-71 substrate-agnostic surrogate, not the network the serving path uses by default. None of this shows that the network's answers are correct.",
    "artifact_path": "benchmarks/nn_verify/certified_monotonicity_envelope_2026_07.json",
    "witness_command": "PYTHONPATH=. python3 scripts/audit/verify_certification_battery.py",
    "witness_result": "exit=0 · EXIT0_NO_TOUCH · PASS|| certification battery: 7/7 gates green, covering ALL SIX named certificates (output range -- on both shipped models -- monotonicity, Lipschitz tolerance, inverse reachability, frequency consistency, and solver agreement, re-included 2026-09-10 once its ε ceiling gained a negative control); re",
    "witness_class": "ASSERTING",
    "witness_class_basis": "measured",
    "third_party_axis": "-",
    "facts": {
      "ran_with_receipt": true,
      "third_party_graded": false,
      "negative_control_stated": true,
      "ip_class_known": false,
      "reproduce_command": true,
      "regenerates_not_verifies": false
    },
    "facts_count": 3,
    "repro_command": "PYTHONPATH=. python3 scripts/audit/verify_certification_battery.py",
    "reproduce_command": "PYTHONPATH=. python3 scripts/audit/verify_certification_battery.py",
    "repro_packet": null,
    "ip_class": "UNKNOWN",
    "evidence_tier": "PROVEN",
    "run_status": "RAN",
    "output_excerpt": "PASS|| certification battery: 6/6 gates green, covering 5 of the 6 named certificates (output range — on both shipped models — monotonicity, Lipschitz tolerance, inverse reachability, frequency consistency); the 6th, solver_agreement, is EXCLUDED as disclosed non-discriminative; receipt benchmarks/nn_verify/certification_battery_2026_09.json. Monotonicity leg: PASS|| certified-monotonicity envelope — the shipped neural Z₀ extractor PROVABLY respects the coax-law monotonicity over the whole manufacturable d/p band: ∂Z₀/∂pitch>0 certified 100% (200 cells, 0 violations) and ∂Z₀/∂diameter<0 certified 100% (200 cells, 0 violations); FD backstop 0 sign-violations; the monotonicity-breaking fault (negated pitch weights) is CAUGHT (200 violations). Rigorous CROWN-Jacobian, no BEM solves. Extends Gate 89 (output-range) to certified PHYSICAL CONSISTENCY. sim-vs-sim (the extractor function, not measured silicon).",
    "attestation_rank": 18,
    "negative_control": "negated pitch weights → 200 violations (CAUGHT)"
  },
  "witness_quality_entry": {
    "id": "certification-battery",
    "portfolio_id": "genesis:certification-battery",
    "class": "ASSERTING",
    "measured_class": "ASSERTING",
    "basis": "measured",
    "why": {
      "withheld": true,
      "why": "uses a word the published record keeps for its own process (S3.1-DIALECT)",
      "sha256_of_value": "0db7467c05fb57a32a15663a45eee7ea620d62b02897c30fb470ab731bb89967",
      "bytes": 782
    },
    "witness_command": "PYTHONPATH=. python3 scripts/audit/verify_certification_battery.py",
    "exit_clean": 0,
    "exit_mutated": 1,
    "asserts": "FAIL|| certification battery: 6/7 gates green, covering ALL SIX named certificates (output range -- on both shipped models -- monotonicity, Lipschitz tolerance, inverse reachability, frequency consistency, and solver agreement, re-included 2026-09-10 once its ε ceiling gained a negative control); receipt benchmarks/nn_verify/certification_battery_2026_09.json"
  },
  "packet": null,
  "measured": {
    "measured": true,
    "basis": "exit_mutated = 1 (basis == measured)",
    "exit": 1,
    "defect_rejected": true
  },
  "register": {
    "truth_state": "attested",
    "truth_line": 180,
    "measured_per_register": true,
    "witness_class_per_register": "ASSERTING",
    "ip_class_public": "not_public",
    "ip_class_sha256": "c2ab54a718ff5484fea4f59ecc2a446deef5412ea225434433529a34a9764660",
    "ip_class_source": "docs/audit/CHIPLETOS_CANON_FACTS_2026_09_17.json:34 @ e47033d4758e",
    "receipt": "register/CROWN_JEWELS_TRUTH.md",
    "receipt_sha256": "bde06cf0d3e99644522d18e79b6bd5d84ed4f5c86e315a48fef207e9e49c5022",
    "ip_class_receipt": "register/ip_class.jsonl",
    "ip_class_receipt_sha256": "b1e8f97aa6779e0fefed2f7a7726e1a03563b536b497392401b49bb8ef84d4ca"
  },
  "withheld_fields": [
    {
      "field": "witness_quality.why",
      "codes": [
        "PROCESS_NARRATION"
      ]
    }
  ],
  "sources": {
    "attestation": {
      "receipt": "packaging-extraction/dataroom/TOP_N_ATTESTATION.jsonl",
      "source": "dataroom/TOP_N_ATTESTATION.jsonl",
      "commit": "24ddde7ebf3199b167c32c886eb6a9abaf7e212c",
      "sha256": "83505535684cf898c5d19ba58d40f69e25bd10356e6a3bfe1b57972925772685",
      "bytes": 4519,
      "visibility": "sealed"
    },
    "top40": {
      "receipt": "packaging-extraction/top40.json",
      "source": "top40.json",
      "commit": "24ddde7ebf3199b167c32c886eb6a9abaf7e212c",
      "sha256": "4248b8f8b5985bb670534d8c1450b218444ea4cd1a22794dd5c48555b1dbb929",
      "bytes": 260608,
      "visibility": "sealed"
    },
    "witness_quality": {
      "receipt": "packaging-extraction/dataroom/witness_quality.json",
      "source": "dataroom/witness_quality.json",
      "commit": "24ddde7ebf3199b167c32c886eb6a9abaf7e212c",
      "sha256": "a5b45f767596df7e20404884fd30f0975b1931cf08bb7f3b4e4bfc4b83073c51",
      "bytes": 161552,
      "visibility": "sealed"
    },
    "repro_index": {
      "receipt": "packaging-extraction/repro/INDEX.json",
      "source": "repro/INDEX.json",
      "commit": "24ddde7ebf3199b167c32c886eb6a9abaf7e212c",
      "sha256": "2a0ff93973dcafbf404f0f71c52777408d17e0ba38d141b92e0f4611a2cf72d1",
      "bytes": 34521,
      "visibility": "sealed"
    }
  }
}
