# Changelog

## Unreleased — 2026-10-10

### 2026-10-10-200610-report-path-source-bound-review-b2698195

Recorded 2026-10-10T20:06:10.026476+00:00 · Contributor: Codex · change

- **Changed.** Refresh the reviewed CI source inventory after the output-path correction and record hosted evidence separately from local checks.
- **Evidence.** Current route guard remains valid; the newly executed configured-report test brings distinct passing Python checks to 982. [Change record](./runs/changes/2026-10-10-200610-report-path-source-bound-review-b2698195.json).
- **Not claimed.** No required main checks yet; full hosted rerun remains pending and independent release gates are unmet.


### 2026-10-10-200539-hosted-report-destination-repair-26382548

Recorded 2026-10-10T20:05:39.371921+00:00 · Contributor: Codex · change

- **Changed.** Repair the hosted regression producer/upload path and exercise that exact workflow command against the real atomic report writer.
- **Evidence.** Configured command produces the 86-case artifact under the approved scratch directory; hosted no-egress check already passed; artifact missing/refusal policies remain enforced. [Change record](./runs/changes/2026-10-10-200539-hosted-report-destination-repair-26382548.json).
- **Not claimed.** Full repaired hosted run and required main checks remain pending; release gates still refuse independent accuracy/accessibility.


### 2026-10-10-200246-verified-portability-and-sbom-checks-2f444528

Recorded 2026-10-10T20:02:46.762083+00:00 · Contributor: Codex · change

- **Changed.** Record 981 Python checks, all five current engineering receipts, route rejection controls, actual Linux recomputation and three-image unsigned inventory.
- **Evidence.** 133 source boundaries pass; public intake remains disabled; changed intervals/counts/identities and unsafe SBOM promotions are refused; existing limited deployment authentication verified. [Change record](./runs/changes/2026-10-10-200246-verified-portability-and-sbom-checks-2f444528.json).
- **Not claimed.** Hosted CI repair rerun and main protection pending; unsigned inventory has unresolved licenses; no independent tag release or physical-phone acceptance.


### 2026-10-10-200032-sbom-public-scope-attribution-922c48ae

Recorded 2026-10-10T20:00:32.237514+00:00 · Contributor: Codex · change

- **Changed.** Regenerated the public scope with actual partial SBOM evidence and corrected the historical CI account note.
- **Evidence.** All 202 IDs remain; SPDX integrity verification and 13 failure controls pass; unknown licenses and signatures are explicitly unresolved. [Change record](./runs/changes/2026-10-10-200032-sbom-public-scope-attribution-922c48ae.json).
- **Not claimed.** No 100 percent completion from an unsigned or uncleared inventory; main protection still absent.


### 2026-10-10-195926-actual-runtime-sbom-inventory-0339ba3c

Recorded 2026-10-10T19:59:26.168321+00:00 · Contributor: Codex · change

- **Changed.** Add actual three-image SPDX inventory, source/artifact identity verifier, rejection tests and explicit uncleared/unsigned limits; link partial scope evidence.
- **Evidence.** 421 package occurrences inventoried from existing isolated Linux images; 13 local mutation controls pass; no production image changed; license and signing flags remain false. [Change record](./runs/changes/2026-10-10-195926-actual-runtime-sbom-inventory-0339ba3c.json).
- **Not claimed.** This is incomplete license and signing acceptance; no scope record was promoted to 100. Runtime/font/model/vendored and architecture review remains open.


### 2026-10-10-195623-executed-portability-logs-attributed-eba7d2e4

Recorded 2026-10-10T19:56:23.169047+00:00 · Contributor: Codex · change

- **Changed.** Attributed four successful capability checks and preserved the two website documentation-guard refusals.
- **Evidence.** Protocol, PS, redaction and extension receipts are successful and source-bound. The self-referential changelog prerequisite was removed from the record-writing invocation; the actual guard remains enabled. [Change record](./runs/changes/2026-10-10-195623-executed-portability-logs-attributed-eba7d2e4.json).
- **Not claimed.** Website rerun and hosted CI remain pending; no failing evidence was overwritten.


### 2026-10-10-195455-portable-public-measurement-artifacts-2ff0da31

Recorded 2026-10-10T19:54:55.656607+00:00 · Contributor: Codex · change

- **Changed.** Regenerated public measurement and scope copies from the verified portability contract and corrected hosted status.
- **Evidence.** Build succeeds; canonical and generated records retain 202 scope IDs and 86 development examples. [Change record](./runs/changes/2026-10-10-195455-portable-public-measurement-artifacts-2ff0da31.json).
- **Not claimed.** Full source-bound checks and hosted recheck still pending; no independent release or phone acceptance.


### 2026-10-10-195443-linux-statistical-reproduction-7391165d

Recorded 2026-10-10T19:54:43.120620+00:00 · Contributor: Codex · change

- **Changed.** Reproduced the measurement repair on dedicated Linux and added the portability checks to source-bound revalidation.
- **Evidence.** Both Linux and macOS reproduce 86 cases with identical counts; 32 targeted checks pass on Linux; full tag scope and all release gates retained. [Change record](./runs/changes/2026-10-10-195443-linux-statistical-reproduction-7391165d.json).
- **Not claimed.** Hosted repair rerun and main protection remain pending; no new tag release or independent accuracy claim.


### 2026-10-10-195409-ci-portability-repair-1b22217f

Recorded 2026-10-10T19:54:09.387509+00:00 · Contributor: Codex · change

- **Changed.** Repair Linux measurement recomputation and host-rendered image source inventory; correct stale hosted-CI status; retain dependency/signing audit plan.
- **Evidence.** Interval-only ulp tolerance retains exact counts, thresholds and identities; generated share pixels cannot hide source or symlink changes. Local negative controls pass; hosted execution and protection remain separate gates. [Change record](./runs/changes/2026-10-10-195409-ci-portability-repair-1b22217f.json).
- **Not claimed.** No independent accuracy, human accessibility, physical-phone or release approval. Required main checks are not yet enforced. License inventory and Sigstore remain unfinished.


### 2026-10-10-194539-replay-publication-proof-68e3224e

Recorded 2026-10-10T19:45:39.415919+00:00 · Contributor: Codex · change

- **Changed.** Recorded the actual current-source publication, public workflow checks and latest deployment state.
- **Evidence.** Reviewed static artifacts match preview/apex/www, current public catalogue and Scope work, and runtime source 9810441 is pushed. [Change record](./runs/changes/2026-10-10-194539-replay-publication-proof-68e3224e.json).
- **Not claimed.** This proof/state commit is bookkeeping, not another runtime deployment. 99 requirements remain open; no tag accuracy or physical-device acceptance is inferred.


### 2026-10-10-194340-replay-complete-acceptance-1155ca4a

Recorded 2026-10-10T19:43:40.773187+00:00 · Contributor: Codex · change

- **Changed.** Finalized current-service replay with source-bound browser/runtime evidence, strict ledger typing, hashed setup instructions and CI coverage.
- **Evidence.** 945 Python tests, current boundary guard, all five capability receipts, actual Linux service and exact browser-download replay pass. [Change record](./runs/changes/2026-10-10-194340-replay-complete-acceptance-1155ca4a.json).
- **Not claimed.** F-003 remains 80% for historical gaps. 99 requirements remain open; no new independently validated tag, intake or physical-device claim.


### 2026-10-10-194056-replay-source-finalization-89ed5fb4

Recorded 2026-10-10T19:40:56.888607+00:00 · Contributor: Codex · change

- **Changed.** Recorded the corrected generated ledger copies and refreshed capability receipts; added the replay guide to the two implemented service setup panels.
- **Evidence.** Current attribution lists validate; four capability receipts pass after the stricter build contract. [Change record](./runs/changes/2026-10-10-194056-replay-source-finalization-89ed5fb4.json).
- **Not claimed.** Current-source website and final complete boundary acceptance still pending; no new tag release.


### 2026-10-10-193954-scope-attribution-type-fix-801cda8f

Recorded 2026-10-10T19:39:54.044592+00:00 · Contributor: Codex · change

- **Changed.** Fixed the scalar execution-credit entry that crashed the Scope workflow; added strict ledger list checks and site build enforcement.
- **Evidence.** Nine ledger tests pass, including deliberate malformed attribution and acceptance values; all 202 records remain valid. [Change record](./runs/changes/2026-10-10-193954-scope-attribution-type-fix-801cda8f.json).
- **Not claimed.** The broken build was not published. Final generated-source/browser checks still required.


### 2026-10-10-193810-replay-built-source-sync-5947c0f6

Recorded 2026-10-10T19:38:10.732589+00:00 · Contributor: Codex · change

- **Changed.** Synced generated public scope and signal copies, added the browser replay check to CI and refreshed runtime boundary evidence.
- **Evidence.** Current source is recorded before the next build; prior rejected/source-changing website attempts remain visible. [Change record](./runs/changes/2026-10-10-193810-replay-built-source-sync-5947c0f6.json).
- **Not claimed.** Final website and route checks pending; hosted CI execution remains subject to the existing account restriction.


### 2026-10-10-193700-replay-capability-checks-9d0a7b4e

Recorded 2026-10-10T19:37:00.270085+00:00 · Contributor: Codex · change

- **Changed.** Recorded current protocol, extension, command and redaction revalidation; retained the website attempt rejected by the fresh change-record gate.
- **Evidence.** All four runtime capability receipts pass against the updated source; the website build correctly refused unrecorded newly generated receipts. [Change record](./runs/changes/2026-10-10-193700-replay-capability-checks-9d0a7b4e.json).
- **Not claimed.** Website retry and final boundary/source checks still required; no independent release approval.


### 2026-10-10-193605-current-assertion-replay-28b65f37

Recorded 2026-10-10T19:36:05.073836+00:00 · Contributor: Codex · change

- **Changed.** Implemented versioned preprocessing identity, protected local replay, and a separately permitted complete browser record download; corrected image build and setup instructions.
- **Evidence.** 32 actual Linux service cases, 13 actual CLI cases, browser permission/schema/digest checks and exact downloaded bytes replayed through the actual service. [Change record](./runs/changes/2026-10-10-193605-current-assertion-replay-28b65f37.json).
- **Not claimed.** Current unsigned service integration only; historical identity gaps, independent accuracy, real phones and outside-user acceptance remain open. No research collection is activated.


### 2026-10-10-175713-registry-deferral-publication-c6495202

Recorded 2026-10-10T17:57:13.119794+00:00 · Contributor: Codex · change

- **Changed.** Record verified Git publication and Cloudflare deployment; retain explicit source commit and public runtime evidence.
- **Evidence.** 561 exact public artifact matches across preview, apex and www; 20 live tag modals, keyboard, narrow layout and text enlargement passed with zero automated axe violations. [Change record](./runs/changes/2026-10-10-175713-registry-deferral-publication-c6495202.json).
- **Not claimed.** 99 requirements remain open toward the 50 target. No independent accuracy, human screen-reader acceptance, physical iPhone acceptance or research intake is inferred.


### 2026-10-10-175416-registry-security-download-e5574006

Recorded 2026-10-10T17:54:16.181731+00:00 · Contributor: Codex · change

- **Changed.** Refresh the public security-policy download from the corrected security source.
- **Evidence.** Source and generated public security-policy Markdown match byte for byte. [Change record](./runs/changes/2026-10-10-175416-registry-security-download-e5574006.json).
- **Not claimed.** No new policy version, registry activation or security certification.


### 2026-10-10-175250-registry-boundaries-and-site-final-955121a7

Recorded 2026-10-10T17:52:50.946762+00:00 · Contributor: Codex · change

- **Changed.** Complete fresh website/offline/header revalidation and bind final reviewed source and Linux receipts; clarify README and security notice.
- **Evidence.** Current generated site, accessibility probes, metadata-only feedback, offline downloads and static headers passed; all 57 registry/route controls passed against final manifest. [Change record](./runs/changes/2026-10-10-175250-registry-boundaries-and-site-final-955121a7.json).
- **Not claimed.** Physical phone and independent labels remain human gates; no research collection, registry or future service accepted.


### 2026-10-10-175052-registry-public-scope-snapshot-c16b223a

Recorded 2026-10-10T17:50:52.801792+00:00 · Contributor: Codex · change

- **Changed.** Regenerate public scope exports with the executed X-14 deferral acceptance; retain blocked first website check.
- **Evidence.** Scope identity check preserves all 202 records; actual Linux refusal and 902 Python tests pass. [Change record](./runs/changes/2026-10-10-175052-registry-public-scope-snapshot-c16b223a.json).
- **Not claimed.** Website revalidation stopped because regenerated exports lacked a fresh changelog event; this record supplies accountability, not a test waiver.


### 2026-10-10-175020-registry-deferral-accepted-ba10bd1b

Recorded 2026-10-10T17:50:20.363510+00:00 · Contributor: Codex · change

- **Changed.** Enforce initial-release registry deferral; preserve inactive prototype; source-bind actual Linux sandbox and cleanup evidence; complete X-14 with 103 complete and 99 open records.
- **Evidence.** 902 Python tests passed, including 57 route/registry controls; actual default and future-version container refusal passed with synthetic data unchanged and cleanup verified. [Change record](./runs/changes/2026-10-10-175020-registry-deferral-accepted-ba10bd1b.json).
- **Not claimed.** No future registry or research intake enabled. No independent tag accuracy, legal approval or physical-device acceptance.


### 2026-10-10-174454-registry-release-deferral-4c22da27

Recorded 2026-10-10T17:44:54.891155+00:00 · Contributor: Codex · change

- **Changed.** Preserved inactive registry prototype with corrected linkability/retention copy; initial-release image now refuses before opening a listener or storage, with no port, volume or network.
- **Evidence.** Nineteen controls pass: launcher refuses default/future settings without writes; profile, image and storage activation mutations fail closed. [Change record](./runs/changes/2026-10-10-174454-registry-release-deferral-4c22da27.json).
- **Not claimed.** Actual Linux image execution and updated release review still required. Optional research intake remains separate and unconnected.


### 2026-10-10-173910-published-owner-guide-and-draft-register-d7e5719c

Recorded 2026-10-10T17:39:10.992874+00:00 · Contributor: Codex · change

- **Changed.** Published and verified owner guide, optional metadata file tool, legal draft register and policy 1.5; recorded actual source and delivery proof in state/result.
- **Evidence.** 561 asset matches over three origins; both public feedback engines pass; 20 modals, 35 canonical URLs and nine actual policy downloads pass with zero automated axe violations. [Change record](./runs/changes/2026-10-10-173910-published-owner-guide-and-draft-register-d7e5719c.json).
- **Not claimed.** 100 open requirements remain. No recruited pilot, private intake, real device, qualified legal review or new validated tag release.


### 2026-10-10-173700-owner-pilot-final-boundary-acceptance-2510e562

Recorded 2026-10-10T17:37:00.058686+00:00 · Contributor: Codex · change

- **Changed.** Bound current device evidence to its committed source, refreshed reviewed personal route inventory, corrected privacy failure-injection target and recorded final 874-test acceptance.
- **Evidence.** All current checks pass; 121 reviewed sources, two engine receipts, 32 historical current-source Linux service checks and 11 denied intake fields retain the bounded no-collection route. [Change record](./runs/changes/2026-10-10-173700-owner-pilot-final-boundary-acceptance-2510e562.json).
- **Not claimed.** No human, independent accuracy, operational pilot or counsel gate is substituted. Retention is pending; no real data intake exists.


### 2026-10-10-173518-verified-owner-pilot-source-5021d486

Recorded 2026-10-10T17:35:18.411061+00:00 · Contributor: Codex · change

- **Changed.** Recorded final source-bound website, PS, redaction, protocol and extension checks plus 137-case-per-engine checker regression with the owner guide link.
- **Evidence.** All selected component and website gates pass; metadata preview/download passed two engines, no-script refusal, small-screen reflow and zero axe violations. [Change record](./runs/changes/2026-10-10-173518-verified-owner-pilot-source-5021d486.json).
- **Not claimed.** No new tag or full requirement release. Independent labels, physical phone, recruited pilot, intake/retention and professional review remain open. Earlier full-suite refusal is retained until source review binding refresh.


### 2026-10-10-173312-owner-guide-evidence-registration-1f9b608f

Recorded 2026-10-10T17:33:12.997296+00:00 · Contributor: Codex · change

- **Changed.** Added a PS-modal link to the owner guide, versioned historical evidence notes and registered fresh PS, PII, protocol and extension revalidation reports.
- **Evidence.** All four source-bound component checks pass. The first website revalidation correctly refused unregistered new execution files at prebuild; the changelog guard remains enabled. [Change record](./runs/changes/2026-10-10-173312-owner-guide-evidence-registration-1f9b608f.json).
- **Not claimed.** Website revalidation is rerun against final source and registered evidence before deployment.


### 2026-10-10-173154-refreshed-owner-guide-artifacts-6c303ade

Recorded 2026-10-10T17:31:54.138702+00:00 · Contributor: Codex · change

- **Changed.** Refreshed generated public scope, immutable policy 1.5 text downloads, crawlable owner guide and legal draft index before source-bound revalidation.
- **Evidence.** The built guide uses the tested metadata contract and current PS practice method; prior policy archives remain intact. [Change record](./runs/changes/2026-10-10-173154-refreshed-owner-guide-artifacts-6c303ade.json).
- **Not claimed.** Publication and source-bound checks still run before deployment; no full requirement promotion.


### 2026-10-10-173133-owner-pilot-ledger-update-054eaec5

Recorded 2026-10-10T17:31:33.680985+00:00 · Contributor: Codex · change

- **Changed.** Recorded metadata-only pilot acceptance, tested local file builder, iPhone 14 Plus handoff and legal correction backlog in scope/state. F-141 reaches executable-check milestone only.
- **Evidence.** Both engines pass preview/download, no-script inertness, no feedback network/storage, 320px/200-percent reflow and zero axe violations. All 202 IDs remain; 102 complete and 100 open. [Change record](./runs/changes/2026-10-10-173133-owner-pilot-ledger-update-054eaec5.json).
- **Not claimed.** No new full requirement completed. Real pilot, physical device, independent labels, intake/retention and counsel review remain open.


### 2026-10-10-173044-reference-theme-reflow-7d6d99c3

Recorded 2026-10-10T17:30:44.044088+00:00 · Contributor: Codex · change

- **Changed.** Allowed static reference appearance controls to wrap at enlarged text after an actual 320px test exposed header overflow.
- **Evidence.** Recorded the failing layout and preserved native labelled controls. [Change record](./runs/changes/2026-10-10-173044-reference-theme-reflow-7d6d99c3.json).
- **Not claimed.** Reflow retest and human accessibility remain required.


### 2026-10-10-172948-owner-guide-reflow-fix-4c48e639

Recorded 2026-10-10T17:29:48.506479+00:00 · Contributor: Codex · change

- **Changed.** Wrapped owner practice commands at narrow widths after axe found unfocusable horizontal scrolling; retained first failed check.
- **Evidence.** Published practice examples still match the current PS method. [Change record](./runs/changes/2026-10-10-172948-owner-guide-reflow-fix-4c48e639.json).
- **Not claimed.** Browser reflow must pass; physical iPhone and human VoiceOver remain pending.


### 2026-10-10-172922-inert-feedback-failure-boundary-f3e23b9b

Recorded 2026-10-10T17:29:22.167507+00:00 · Contributor: Codex · change

- **Changed.** Feedback controls remain hidden until local-only handlers are installed; changed answers cancel preview permission; added no-JavaScript, two-engine, actual-download and 200-percent text checks.
- **Evidence.** Syntax checks and strict feedback unit checks pass; no-script failure path is included in the browser gate. [Change record](./runs/changes/2026-10-10-172922-inert-feedback-failure-boundary-f3e23b9b.json).
- **Not claimed.** No remote collection or physical-device acceptance.


### 2026-10-10-172851-owner-feedback-and-legal-review-d2cf0a60

Recorded 2026-10-10T17:28:51.720902+00:00 · Contributor: Codex · change

- **Changed.** Added owner PS practice and iPhone handoff, metadata-only local feedback preview/download, public legal draft register and proposed corrective clauses; privacy policy 1.5 preserves prior permissions.
- **Evidence.** Strict feedback validation rejects unapproved fields; published synthetic practice matches current PS; source inventory identifies external drafts without claiming adoption. [Change record](./runs/changes/2026-10-10-172851-owner-feedback-and-legal-review-d2cf0a60.json).
- **Not claimed.** No private research intake, real phone result, independent accuracy label, legal formation or counsel clearance; full external draft publication remains pending.


### 2026-10-10-165905-published-100-open-queue-76b4335b

Recorded 2026-10-10T16:59:05.753471+00:00 · Contributor: Codex · change

- **Changed.** Published the completed scope increment and verified live offline-tool downloads, catalogue and policies.
- **Evidence.** 175 exact artifacts match on three public origins; 20 modals, nine policy pages and native editor download pass. Queue has 102 complete and 100 open, all 202 preserved. [Change record](./runs/changes/2026-10-10-165905-published-100-open-queue-76b4335b.json).
- **Not claimed.** This evidence commit follows deployed source 7f25f05. No independently validated tag, physical-phone or human accessibility release claim.


### 2026-10-10-165730-accepted-100-open-source-checks-585f4df4

Recorded 2026-10-10T16:57:30.532646+00:00 · Contributor: Codex · change

- **Changed.** Final current source passes the complete Python suite, website checks and reviewed personal route guard.
- **Evidence.** 873 Python tests pass; 57 Node component controls and two-engine editor integration pass; all 202 scope records remain, with 100 open. [Change record](./runs/changes/2026-10-10-165730-accepted-100-open-source-checks-585f4df4.json).
- **Not claimed.** Public deployment is next. No independent accuracy, physical device, authorship or tag release claim is granted.


### 2026-10-10-165555-final-prepared-scope-artifacts-ecdd4e57

Recorded 2026-10-10T16:55:55.600415+00:00 · Contributor: Codex · change

- **Changed.** Prepared public scope artifacts retain all 202 requirements, with 102 completed and 100 open.
- **Evidence.** Prepared site build passed with the final component evidence paths and downloadable offline editor. [Change record](./runs/changes/2026-10-10-165555-final-prepared-scope-artifacts-ecdd4e57.json).
- **Not claimed.** Publication and final source boundary checks are pending; independent tag validation remains open.


### 2026-10-10-165314-final-offline-integrity-and-source-evidence-9aa2b17f

Recorded 2026-10-10T16:53:14.989324+00:00 · Contributor: Codex · change

- **Changed.** Bound the 14 closed jobs to final source checks; preserved exact UTF-8 BOM artifacts and bounded private-file reads. Updated execution evidence and retained the 100-open target.
- **Evidence.** 57 Node and 48 selected Python controls passed; final two-engine editor-to-receipt integration passed. Full Python suite passed 873 tests before this final isolated Node fidelity refinement. [Change record](./runs/changes/2026-10-10-165314-final-offline-integrity-and-source-evidence-9aa2b17f.json).
- **Not claimed.** New tag release, independent timestamp, revocation, real-phone and human accessibility remain unverified. Final guard/publication checks follow.


### 2026-10-10-164759-current-profile-rechecks-after-header-fix-a3e47b52

Recorded 2026-10-10T16:47:59.277870+00:00 · Contributor: Codex · change

- **Changed.** Recorded fresh PS, PII, protocol, extension and two-engine device checks after adding the supported static-header verification entrypoint.
- **Evidence.** Four current source-bound capability receipts and actual current device check passed. Static-header unit command now matches the strict revalidation consumer contract. [Change record](./runs/changes/2026-10-10-164759-current-profile-rechecks-after-header-fix-a3e47b52.json).
- **Not claimed.** Device emulation is not a physical phone or human review; failed predecessor receipts remain false. Website current receipt follows.


### 2026-10-10-164521-match-static-headers-by-route-619a1456

Recorded 2026-10-10T16:45:21.565237+00:00 · Contributor: Codex · change

- **Changed.** Corrected owned verification servers to apply static headers by matched route; retained failed website receipts instead of approval.
- **Evidence.** Four route-header controls prove the homepage/policies/assets remain inline and only the exact standalone editor becomes an attachment. [Change record](./runs/changes/2026-10-10-164521-match-static-headers-by-route-619a1456.json).
- **Not claimed.** Test transport fix; current site/device execution and publication checks follow. Cloudflare policy was not weakened.


### 2026-10-10-164309-retain-refused-site-receipt-63b8e0d8

Recorded 2026-10-10T16:43:09.884024+00:00 · Contributor: Codex · change

- **Changed.** Retained a refused final website receipt and prepared private command diagnostics before retry.
- **Evidence.** The failed receipt remains explicitly false and cannot satisfy the reviewed deployment boundary. [Change record](./runs/changes/2026-10-10-164309-retain-refused-site-receipt-63b8e0d8.json).
- **Not claimed.** No success inferred from the receipt; actual failing command is being diagnosed.


### 2026-10-10-164208-prepared-offline-artifacts-and-download-check-9b88a6d7

Recorded 2026-10-10T16:42:08.546165+00:00 · Contributor: Codex · change

- **Changed.** Recorded regenerated 102/100 public scope, policy 1.4 downloads and the corrected native-download verifier.
- **Evidence.** Prepared site builds; actual 320px native editor download matches the built artifact and the reference page has zero automated accessibility violations. [Change record](./runs/changes/2026-10-10-164208-prepared-offline-artifacts-and-download-check-9b88a6d7.json).
- **Not claimed.** This is local download evidence; public-origin deployment and final reviewed source guard are pending.


### 2026-10-10-163959-offline-data-flow-and-crawl-discovery-420f245c

Recorded 2026-10-10T16:39:59.094797+00:00 · Contributor: Codex · change

- **Changed.** Published-policy source version 1.4 describes optional editor/receipt data flow; added the offline-tools canonical page to the sitemap and updated discovery checks.
- **Evidence.** New public wording matches implemented opt-in observation, separate downloads and explicit trust limits. Prior policy versions remain immutable. [Change record](./runs/changes/2026-10-10-163959-offline-data-flow-and-crawl-discovery-420f245c.json).
- **Not claimed.** Build/public policy and download verification pending; no new data collection, training permission or authorship claim.


### 2026-10-10-163828-target-100-revalidation-evidence-b3161f19

Recorded 2026-10-10T16:38:28.602701+00:00 · Contributor: Codex · change

- **Changed.** Recorded current PS, PII, protocol and extension receipts and actual Linux boundary controls; retained refused website receipt.
- **Evidence.** Four source-bound capability receipts passed; Linux boundary 29 controls passed with reconciled locks. The failed website record is not approved evidence. [Change record](./runs/changes/2026-10-10-163828-target-100-revalidation-evidence-b3161f19.json).
- **Not claimed.** Website build initially refused newly unlogged reports; logging precedes its fresh rebuild. No hosted CI, new tag release or independent accuracy asserted.


### 2026-10-10-163649-scope-target-100-and-offline-download-71dcd11a

Recorded 2026-10-10T16:36:49.225888+00:00 · Contributor: Codex · change

- **Changed.** Audited fourteen functioning component closures: 102 complete, exactly 100 open, all 202 retained. Added public offline-tool download/reference and refreshed source-review coverage.
- **Evidence.** Each completed component has executed positive/refusal and selected integration evidence; scope/accountability checks verify count and ownership. [Change record](./runs/changes/2026-10-10-163649-scope-target-100-and-offline-download-71dcd11a.json).
- **Not claimed.** Publication and fresh route receipts pending at this event; no tag accuracy, physical-phone, independent timestamp/revocation or institutional release inferred.


### 2026-10-10-163254-offline-observations-and-receipts-f660b222

Recorded 2026-10-10T16:32:54.879454+00:00 · Contributor: Codex · change

- **Changed.** Implemented optional offline editing observations, literal repetition, versioned development fixtures and artifact-bound receipts; reconciled gateway/evaluation lock pins.
- **Evidence.** Executed 56 Node and 48 selected Python controls; actual Chromium/WebKit editor export-to-receipt integration; exact previous-checkpoint publication verified. [Change record](./runs/changes/2026-10-10-163254-offline-observations-and-receipts-f660b222.json).
- **Not claimed.** No authorship, independent accuracy, physical-phone, human accessibility, timestamp, revocation or certification release claim. This event records implementation; queue closure awaits final evidence audit.


### 2026-10-10-160546-current-boundary-final-evidence-ebb683e0

Recorded 2026-10-10T16:05:46.944801+00:00 · Contributor: Codex · change

- **Changed.** Record final prepared-source deployment guard, fresh website revalidation and current complete boundary/CI test results.
- **Evidence.** Twenty-nine checks pass; the actual guard accepts the reviewed 110-file inventory, matching website/extension receipts, two unchanged-source browser engines and the current 32-case service report. Scope retains 202 records at 88 completed and 114 open. [Change record](./runs/changes/2026-10-10-160546-current-boundary-final-evidence-ebb683e0.json).
- **Not claimed.** This is engineering evidence for current personal boundaries. No independent accuracy, physical/human acceptance, license clearance, registry adoption or new organization service. Publication of this boundary increment remains pending.


### 2026-10-10-155954-boundary-build-and-ci-contract-6287daf5

Recorded 2026-10-10T15:59:54.576288+00:00 · Contributor: Codex · change

- **Changed.** Regenerate the preserved public scope at 88 completed and 114 open; require prepared assets for the complete boundary test file in the declared site CI job.
- **Evidence.** The CI contract test verifies every boundary check remains scheduled after site preparation. All other Python tests retain their separate network-isolated job. Current source review refreshed for generated public metadata and CI configuration. [Change record](./runs/changes/2026-10-10-155954-boundary-build-and-ci-contract-6287daf5.json).
- **Not claimed.** Hosted GitHub Actions remain unexecuted under the account restriction. Final website receipt and deployment still pending; no accuracy or human-review gate relaxed.


### 2026-10-10-155517-enforce-personal-boundaries-c3ce3316

Recorded 2026-10-10T15:55:17.816498+00:00 · Contributor: Codex · change

- **Changed.** Complete nine current personal-route boundary jobs with a source/access/endpoint and receipt guard wired into site deployment; preserve the optional registry and research proposals.
- **Evidence.** Twenty-eight positive and deliberately violating controls pass; current source-bound website/extension receipts and unchanged-source two-engine/32-case Linux evidence are required. Scope ledger is 88 complete and 114 open with all 202 IDs retained. [Change record](./runs/changes/2026-10-10-155517-enforce-personal-boundaries-c3ce3316.json).
- **Not claimed.** Current-route enforcement, not future safety, license clearance, independent accuracy, physical devices, human screen-reader review or operating institutional certification. This increment is not yet published.


### 2026-10-10-154544-current-route-boundary-guard-61cf1ee0

Recorded 2026-10-10T15:45:44.260687+00:00 · Contributor: Codex · change

- **Changed.** Add a reviewed current-route source/access/endpoint guard to site deployment; publish the current capture build and repair exact-byte verification transport.
- **Evidence.** The deployed db64a9c build matches 164 artifacts at each of three origins; catalogue checks pass. Guard execution and closure evidence are still pending fresh source-bound browser receipts. [Change record](./runs/changes/2026-10-10-154544-current-route-boundary-guard-61cf1ee0.json).
- **Not claimed.** No independent accuracy, human accessibility, registry adoption, license clearance or future-route approval. Boundary closures remain uncounted until actual controls pass.


### 2026-10-10-153533-capture-current-release-checks-6d0dd76a

Recorded 2026-10-10T15:35:33.471359+00:00 · Contributor: Codex · change

- **Changed.** Record current-source PS, redactor, protocol, extension and freshly rebuilt website receipts plus actual refusal to release without human accessibility reviews.
- **Evidence.** All five engineering revalidation capabilities pass on source-bound evidence. The equal website/extension release gate rejects exactly four missing human reviews and grants no tag accuracy or WCAG certification. [Change record](./runs/changes/2026-10-10-153533-capture-current-release-checks-6d0dd76a.json).
- **Not claimed.** The requirement queue is 123, with 23 further closures needed for the owner target. Public byte verification follows; independent human labels, physical phones and live-vendor expansion remain open.


### 2026-10-10-153112-capture-generated-public-evidence-4a3832a7

Recorded 2026-10-10T15:31:12.732950+00:00 · Contributor: Codex · change

- **Changed.** Generate current 79/123 scope, PS method evidence, 274 browser timing observations and explicit resistance/stress/service reference downloads; retain the stale-build refusal record.
- **Evidence.** Published measurement inputs recompute exactly from current source and source-bound engine observations. All generated references describe development evidence and disclose missing independent release acceptance. [Change record](./runs/changes/2026-10-10-153112-capture-generated-public-evidence-4a3832a7.json).
- **Not claimed.** Public deployment verification still follows. Warm emulated engine timings are not physical phone measurements; proposed latency target exceedances and simple lexical evasions remain visible.


### 2026-10-10-152823-capture-and-resistance-acceptance-840dccca

Recorded 2026-10-10T15:28:23.499465+00:00 · Contributor: Codex · change

- **Changed.** Repair settle starvation and duplicate manual/automatic checks; test actual options wrong-auth/reset; update method, performance evidence and the attributed ledger to 79 complete and 123 open.
- **Evidence.** 813 Python tests, 32 actual Linux HTTP checks, 137 full-evidence cases in each browser engine, actual unpacked-extension full stack and token setup/reset, and scoped positive/negative capture checks execute. [Change record](./runs/changes/2026-10-10-152823-capture-and-resistance-acceptance-840dccca.json).
- **Not claimed.** Live-vendor expansion, human accessibility, physical phones, independent accuracy and all tag release gates remain open. Eight lexical spellings evade the bounded matcher; large-input profiles exceed the proposed 100 ms target. Hosted CI remains account-billing blocked.


### 2026-10-10-151343-freeze-command-word-boundaries-08f208be

Recorded 2026-10-10T15:13:43.667686+00:00 · Contributor: Codex · change

- **Changed.** Fix actual server/browser Unicode word-boundary divergence with an explicit generated Unicode-15 class; preserve the failed browser execution and rerun method-bound measurements.
- **Evidence.** Four Python builders agree; every Unicode scalar matches the reference word class; 86 active development examples agree; all 25 long-input profiles finish with target exceedances reported. [Change record](./runs/changes/2026-10-10-151343-freeze-command-word-boundaries-08f208be.json).
- **Not claimed.** Frozen word boundaries are a bounded matcher interpretation. Independent accuracy, physical phones, general shell parsing and release acceptance remain incomplete; rebuilt device and service checks still follow.


### 2026-10-10-151045-bounded-command-scanning-4f3750af

Recorded 2026-10-10T15:10:45.283485+00:00 · Contributor: Codex · change

- **Changed.** Bound command scanning cost, retain exact prior method source, version all affected evidence IDs, rebuild the device projection and add dense-input and Unicode-boundary checks.
- **Evidence.** Twenty-five synthetic profiles finish, 600 prior-method comparisons agree, active development fixtures retain 31 true positives and zero false positives, and four actual Python builders produce one identical bundle. [Change record](./runs/changes/2026-10-10-151045-bounded-command-scanning-4f3750af.json).
- **Not claimed.** Large dense profiles exceed the candidate 100 ms target. Independent accuracy, physical phones and human acceptance remain incomplete. New browser and service verification is still in progress.


### 2026-10-10-144247-retain-independent-statistical-ci-assessment-613598e7

Recorded 2026-10-10T14:42:47.445257+00:00 · Contributor: Codex · change

- **Changed.** Kept statistical evaluation running independently after accessibility release refusal in the configured CI gate job.
- **Evidence.** CI declares the statistical step with always(), so a missing manual review cannot hide statistical failures. [Change record](./runs/changes/2026-10-10-144247-retain-independent-statistical-ci-assessment-613598e7.json).
- **Not claimed.** Hosted execution remains account-blocked; configured CI is not claimed as executed evidence.


### 2026-10-10-144153-bind-reproducibility-public-copies-and-final-checks-40f0b306

Recorded 2026-10-10T14:41:53.045062+00:00 · Contributor: Codex · change

- **Changed.** Updated generated public signal/decision/accessibility reference copies and final 202-record plan/progress evidence.
- **Evidence.** 58 relevant post-documentation tests and scope, decision, signal and accountability verifiers pass; all 202 IDs, 39 packages and 117 subtasks remain. [Change record](./runs/changes/2026-10-10-144153-bind-reproducibility-public-copies-and-final-checks-40f0b306.json).
- **Not claimed.** These are complete named control jobs, not certification or performed human review. 131 requirements remain open toward the requested 100-open target.


### 2026-10-10-144029-complete-four-reproducibility-and-release-gate-jobs-6db84340

Recorded 2026-10-10T14:40:29.460242+00:00 · Contributor: Codex · change

- **Changed.** Closed the complete dated-decision, revalidation and shared accessibility-gate jobs; preserved 202 IDs with 71 complete and 131 open. Signal replay remains open.
- **Evidence.** All five source-bound capability runs pass and current receipts assess successfully. The real accessibility release command exits 1 solely for four absent human reviews; 46 control tests reject stale, ambiguous and fabricated inputs. [Change record](./runs/changes/2026-10-10-144029-complete-four-reproducibility-and-release-gate-jobs-6db84340.json).
- **Not claimed.** A working refusal gate is not human accessibility or tag release validation. Board operation, independent sampling, phones and outside-user acceptance remain in their own open records. No proposed tag adopted.


### 2026-10-10-143307-bind-website-checks-to-a-fresh-build-e7ea62e3

Recorded 2026-10-10T14:33:07.181396+00:00 · Contributor: Codex · change

- **Changed.** Website revalidation now builds current source and owns its temporary loopback server rather than trusting an externally running preview.
- **Evidence.** The execution chain requires a successful guarded build and both full catalogue and accessibility browser checks; functional source identity excludes routine changelog bookkeeping. [Change record](./runs/changes/2026-10-10-143307-bind-website-checks-to-a-fresh-build-e7ea62e3.json).
- **Not claimed.** The actual website revalidation run follows this record. Manual reviews and independent accuracy remain missing.


### 2026-10-10-143130-executable-revalidation-and-dated-decisions-f59e8e0e

Recorded 2026-10-10T14:31:30.386611+00:00 · Contributor: Codex · change

- **Changed.** Added source-bound engineering revalidation, a shared real-review accessibility release refusal gate, 15 dated open decisions, and a 33-version signal lookup catalogue; published privacy deployment evidence.
- **Evidence.** 794 Python tests passed, including 46 new mutation/import/gate tests; PS, PII, protocol and actual extension commands executed successfully; decision renderer preserves all open decisions and history. [Change record](./runs/changes/2026-10-10-143130-executable-revalidation-and-dated-decisions-f59e8e0e.json).
- **Not claimed.** No actual human review or independent tag accuracy claimed. Signal IDs alone do not replay a complete assertion; the missing redactor identity remains open. Current accessibility release gate must refuse.


### 2026-10-10-141538-bind-generated-consent-catalogue-to-source-f189c740

Recorded 2026-10-10T14:15:38.032370+00:00 · Contributor: Codex · change

- **Changed.** Regenerate the no-script catalogue with the explicit extension opt-in setup text and the 67-complete scope snapshot.
- **Evidence.** Generated fallback remains a source-derived presentation of the current catalogue, with all 202 scope IDs preserved; the same privacy checker and tag methods are retained. [Change record](./runs/changes/2026-10-10-141538-bind-generated-consent-catalogue-to-source-f189c740.json).
- **Not claimed.** Generation does not validate a tag or prove outside-user comprehension; exact public bytes are verified separately after deployment.


### 2026-10-10-141459-explain-opt-in-setup-and-preserve-policy-downloads-0d251517

Recorded 2026-10-10T14:14:59.388515+00:00 · Contributor: Codex · change

- **Changed.** Explain the separate ChatGPT opt-in in the install modal and README; include generated scope mirrors and immutable policy 1.3 downloads; retain every earlier policy version.
- **Evidence.** The current privacy site passes all 20 modals, eight footer workflows, 202 preserved scope records and automated accessibility; policy downloads and both device-engine privacy runs pass. [Change record](./runs/changes/2026-10-10-141459-explain-opt-in-setup-and-preserve-policy-downloads-0d251517.json).
- **Not claimed.** Setup copy improvement is not an outside-user install review; this increment still awaits public deployment; current tags retain their independent release gates.


### 2026-10-10-141249-complete-six-selected-route-privacy-jobs-3466ad26

Recorded 2026-10-10T14:12:49.066459+00:00 · Contributor: Codex · change

- **Changed.** Close six full selected-route privacy jobs after device, service and actual unpacked-extension execution; retain all 202 scope records and required independent release evidence; publish versioned consent and reset terms.
- **Evidence.** 67 records have full named-job acceptance and 135 remain open; both device engines pass 127 parity cases, offline recovery, storage and console canaries; all nine version 1.3 policy downloads work; no tag release is inferred. [Change record](./runs/changes/2026-10-10-141249-complete-six-selected-route-privacy-jobs-3466ad26.json).
- **Not claimed.** Public deployment of this increment remains pending; physical phones, broad live vendor behavior, installed-profile refresh, human accessibility, compromised OS and independent tag accuracy remain outside these closures.


### 2026-10-10-141002-enforce-private-errors-and-explicit-capture-consent-eaae0eef

Recorded 2026-10-10T14:10:02.740989+00:00 · Contributor: Codex · change

- **Changed.** Prevent input reflection and caching in the three-service route; add explicit extension opt-in, pause, cancellation and reset; document current privacy boundaries and policy version 1.3; record the prior verified public deployment.
- **Evidence.** 748 Python tests pass; actual Linux services pass 32 HTTP checks; actual unpacked Chromium consent controls and 42 source-worker fault cases pass; compact bridge regression checks pass. [Change record](./runs/changes/2026-10-10-141002-enforce-private-errors-and-explicit-capture-consent-eaae0eef.json).
- **Not claimed.** Website cache and new public policy verification still pending; synthetic vendor checks do not prove broader live compatibility, physical devices, memory erasure or independent tag accuracy; no privacy scope percentage closed yet.


### 2026-10-10-135454-refuse-future-wire-layouts-and-verify-consumer-publication-2cbe4ded

Recorded 2026-10-10T13:54:54.457104+00:00 · Contributor: Codex · change

- **Changed.** Refuse future record layouts before applying the current schema; publish updated 61-complete/141-open scope projections and current acceptance records. Public audit transcripts redact private environment paths.
- **Evidence.** 731 Python tests; future-layout incompatibility regression; all 20 site panels and 202 scope records; per-tag performance and six on-device PS result cases; targeted current-source/build privacy scan. [Change record](./runs/changes/2026-10-10-135454-refuse-future-wire-layouts-and-verify-consumer-publication-2cbe4ded.json).
- **Not claimed.** Current version only; no successor migration or independent validation adopted. Chrome is being controlled concurrently by another tool, so installed-extension refresh remains unverified. The publication scan is targeted and is not blanket history or privacy clearance.


### 2026-10-10-134919-bound-assertion-consumers-and-hash-selected-dependencies-e19f527b

Recorded 2026-10-10T13:49:19.712382+00:00 · Contributor: Codex · change

- **Changed.** Bound extension response parsing and record validation, separate PII and withheld-result explanations, enforce required schema formats, provide an offline assertion conformance CLI, and verify selected dependency locks and immutable Linux base. Record the prior compact/media public deployment and preserve corrections and all 202 scope IDs.
- **Evidence.** 730 Python tests; 38 synthetic service-worker fault cases; six-state browser fixture checks; 31 real Linux HTTP and dependency outage/recovery checks; clean Python/npm installs, actual corrupted-artifact refusal, and running-image lock/version verification. Current ledger 61 complete and 141 open. [Change record](./runs/changes/2026-10-10-134919-bound-assertion-consumers-and-hash-selected-dependencies-e19f527b.json).
- **Not claimed.** No independent tag validation, new tag adoption, cryptographic verifier, successor migration, actual outside implementer or human/physical-device acceptance. Latest extension consumer is fixture-tested and not yet refreshed in installed Chrome. Inactive registry and future routes are excluded from verified dependencies. Public transcripts redact private environment paths.


### 2026-10-10-131128-record-targeted-publication-audit-ba209bb2

Recorded 2026-10-10T13:11:28.800080+00:00 · Contributor: Codex · change

- **Changed.** Record the targeted pre-publication scan of this owned increment and built public files.
- **Evidence.** 986 files checked, zero matches for selected private gateway credential, provider-address, private-key and unrelated-portfolio markers. The changelog guard rejected the uncited audit before it was recorded. [Change record](./runs/changes/2026-10-10-131128-record-targeted-publication-audit-ba209bb2.json).
- **Not claimed.** Targeted current source/build scan, not historical erasure, blanket privacy clearance, independent accuracy or an outside security audit.


### 2026-10-10-131051-verify-compact-media-publication-build-73c258e3

Recorded 2026-10-10T13:10:51.457545+00:00 · Contributor: Codex · change

- **Changed.** Record built catalogue and performance checks, generated 202-record public scope, and sanitize the unpublished test executable path while preserving its version and completed execution.
- **Evidence.** Twenty catalogue records and 202 scope IDs remain; per-tag measured breakdowns and no-script references pass. Full Python suite is 652 passing checks. [Change record](./runs/changes/2026-10-10-131051-verify-compact-media-publication-build-73c258e3.json).
- **Not claimed.** Local built-site acceptance; public deployment and current installed extension refresh are separate. No human or independent tag-validation result. Earlier uncommitted event hashes were corrected for the same sanitized report.


### 2026-10-10-130733-compact-evidence-and-reserved-subject-contracts-d3da75ac

Recorded 2026-10-10T13:07:33.803669+00:00 · Contributor: Codex · change

- **Changed.** Keep tags compact with optional exact matched positions, disclose export linkability, and implement bounded reserved-media subject contracts with independent Python/Node vectors.
- **Evidence.** Actual compact renderer and keyboard/theme/axe/negative probes pass; 652 Python tests pass; four prepared-artifact CLI routes and 16 subject vectors, 37 rejection controls and 15 coordinate controls agree across runtimes. Queue is 144 open, all 202 retained. [Change record](./runs/changes/2026-10-10-130733-compact-evidence-and-reserved-subject-contracts-d3da75ac.json).
- **Not claimed.** No file decoder, media detector, new tag, RFC adoption, independent accuracy, physical-device acceptance or human screen-reader pass. Installed Chrome extension update is not claimed.


### 2026-10-10-125101-enforce-verdict-refusals-f403d4d6

Recorded 2026-10-10T12:51:01.420549+00:00 · Contributor: Codex · change

- **Changed.** Execute the current absence/context/credential/unknown-code refusal contract and deliberately violating controls; retain proposals and provenance detectors as open; record five enforced boundary closures and prior publication evidence.
- **Evidence.** 49 complete/153 open; all 202 records retained. 109 targeted tests pass, ordinary context cannot accuse an author, machine IV cannot assert, and rogue-AI codes fail the upstream contract. [Change record](./runs/changes/2026-10-10-125101-enforce-verdict-refusals-f403d4d6.json).
- **Not claimed.** Current production policy and experimental typed-observation interpretation only; no provenance detector, real credential adapter, accepted claim mapping or independently released tag.


### 2026-10-10-124637-measurement-publication-review-d63ab7db

Recorded 2026-10-10T12:46:37.477341+00:00 · Contributor: Codex · change

- **Changed.** Review the owned increment and built public artifact set for known private runtime credentials, server-address and portfolio markers.
- **Evidence.** Targeted scan passed before publication; no private provider or account data was added to the report. [Change record](./runs/changes/2026-10-10-124637-measurement-publication-review-d63ab7db.json).
- **Not claimed.** Exact known markers/current source scan only; not an independent security audit or blanket historical privacy clearance.


### 2026-10-10-124612-all-surface-measurement-validation-e4b4e750

Recorded 2026-10-10T12:46:12.705734+00:00 · Contributor: Codex · change

- **Changed.** Update structural assertions to distinguish outer tag disclosures from the nested test breakdown; verify the final build and preserve all current completion records in public generated scope.
- **Evidence.** 20 tag dialogs, eight footer workflows and 202 IDs pass; 62 accessibility surfaces pass; no unexpected outbound requests, no axe violations. [Change record](./runs/changes/2026-10-10-124612-all-surface-measurement-validation-e4b4e750.json).
- **Not claimed.** Automated component/site checks, no human WCAG certification or independently validated tag release. The target remains 100 open.


### 2026-10-10-124612-retain-provenance-scope-without-false-proofs-dee42f17

Recorded 2026-10-10T12:46:12.360968+00:00 · Contributor: Codex · change

- **Changed.** Correct draft behavioral/receipt/media claims: events, key signatures and trusted timestamps do not prove human authorship; no blanket biometric exemption or automatic IV routing; retain all proposed jobs.
- **Evidence.** RFC 3161 checked against its primary specification; existing independent provenance/release tests pass. Drafts state their unimplemented and unadopted status. [Change record](./runs/changes/2026-10-10-124612-retain-provenance-scope-without-false-proofs-dee42f17.json).
- **Not claimed.** No proposal adopted, capture enabled, legal compliance granted, receipt issued or scope item marked complete by these document corrections.


### 2026-10-10-124106-compact-tag-component-acceptance-7cbb4a3c

Recorded 2026-10-10T12:41:06.755291+00:00 · Contributor: Codex · change

- **Changed.** Execute real keyboard access, closed-shadow, theme, grayscale, forced-color, zoom and reduced-motion probes against compact tags; catch intentionally colored, overflowing and animated controls; record eight full mechanism closures.
- **Evidence.** 44 complete/158 open records; all 202 retained. 24px-high/28px-wide resting tag, six wrapping tags, individual records and unchanged output geometry. Performance breakdown passes 40 theme/tag modals and 20 static references. [Change record](./runs/changes/2026-10-10-124106-compact-tag-component-acceptance-7cbb4a3c.json).
- **Not claimed.** Synthetic component route. Human screen-reader, broader live vendor, physical phones and independent accuracy remain separate open gates. Target still 100 open.


### 2026-10-10-123721-reproducible-measurement-ledger-00735577

Recorded 2026-10-10T12:37:21.955561+00:00 · Contributor: Codex · change

- **Changed.** Reproduce all published PS counts, per-category error metrics, Wilson ranges, sample-size arithmetic and observed engine-timing quantiles; publish example provenance and clear test breakdowns.
- **Evidence.** 86 active/15 historical rows verified; 254 timing observations retained; fabricated counts, provenance, intervals and timing summaries fail. [Change record](./runs/changes/2026-10-10-123721-reproducible-measurement-ledger-00735577.json).
- **Not claimed.** Development labels only. Calibration unmeasured; independent accuracy, accepted release policy and physical-phone acceptance remain open.


### 2026-10-10-123506-observable-device-timings-7cd31d21

Recorded 2026-10-10T12:35:06.865579+00:00 · Contributor: Codex · change

- **Changed.** Require raw per-case timing observations and per-input category quantiles before reusing an engine report.
- **Evidence.** Old reports without observations display unmeasured device timing; a fresh engine run is required. [Change record](./runs/changes/2026-10-10-123506-observable-device-timings-7cd31d21.json).
- **Not claimed.** Environment-specific performance observations, no hardware SLA or independent accuracy.


### 2026-10-10-123443-development-measurement-provenance-028ee0cd

Recorded 2026-10-10T12:34:43.782144+00:00 · Contributor: Codex · change

- **Changed.** Bind every development example to its source revision; recompute category results and expose an expandable test breakdown; preserve timing observations for reproducible summaries.
- **Evidence.** Executed provenance tampering and fabricated-count tests; all 86 active and 15 historical examples accounted for. Independent release remains false. [Change record](./runs/changes/2026-10-10-123443-development-measurement-provenance-028ee0cd.json).
- **Not claimed.** Measurement tooling only. Maintainer labels and desktop-hosted phone engines do not establish independent accuracy or physical phone acceptance.


### 2026-10-10-122330-accountable-controls-and-immutable-reports-c28bc0e2

Recorded 2026-10-10T12:23:30.081757+00:00 · Contributor: Codex · change

- **Changed.** Complete the six accurate contribution invariants, traceable ten-entry threat model, named ongoing security/adapter ownership and executable axe severity gate; prevent default browser/runtime checks from replacing historical evidence and add shared atomic report writers.
- **Evidence.** 526 Python tests pass. The intact badge passes and a genuinely unnamed badge fails the same actual axe gate. Control mutation tests reject missing owners, missing residual/evidence, unsupported promises and stale documentation. Report tests reject overwritten history, outside paths, symlinks and invalid/non-finite JSON. [Change record](./runs/changes/2026-10-10-122330-accountable-controls-and-immutable-reports-c28bc0e2.json).
- **Not claimed.** These are full named documented-control and automated-gate jobs. No staffed response SLA, operating foundation, full recovery, human accessibility, live-vendor acceptance, independent security certification or tag accuracy release is asserted. Website currently carries the earlier verified 32-complete/170-open snapshot; 36-complete/166-open source publication remains pending.


### 2026-10-10-121224-frozen-normalization-pipeline-57474654

Recorded 2026-10-10T12:12:24.357807+00:00 · Contributor: Codex · change

- **Changed.** Add executable normalization generation/conformance and subject-vector verification to Make, npm and the configured CI scope job; declare Node for network-isolated cross-language tests.
- **Evidence.** The local public catalogue checks pass with all 20 panels, 202 retained records and no automated axe violations; generation drift, Unicode official checks and measured version regressions have explicit commands. [Change record](./runs/changes/2026-10-10-121224-frozen-normalization-pipeline-57474654.json).
- **Not claimed.** Hosted CI remains blocked before job execution by the account restriction; configured CI is not claimed executed. Independent tag validation and physical-device acceptance remain open.


### 2026-10-10-121120-normalization-public-reference-f30f2407

Recorded 2026-10-10T12:11:20.057070+00:00 · Contributor: Codex · change

- **Changed.** Expose the frozen normalization plan, text v2/code v1 vectors, model integrity design and current runtime checks through the public reference download set and README.
- **Evidence.** Public reference preparation uses explicit source-file allowlists; runtime, vector, official Unicode and browser records remain attributed and distinct from accuracy validation. [Change record](./runs/changes/2026-10-10-121120-normalization-public-reference-f30f2407.json).
- **Not claimed.** Deployment and published asset equality are checked after building; no claim of independent accuracy, physical handset performance or certification.


### 2026-10-10-121051-frozen-normalization-route-acceptance-4958bb04

Recorded 2026-10-10T12:10:51.036267+00:00 · Contributor: Codex · change

- **Changed.** Complete the frozen Unicode 15.0 normalization correction through the actual gateway and phone-browser worker; retain original failure evidence and correct the completion ledger to 32 complete and 170 open.
- **Evidence.** Both browser engines match full evidence on all 86 development fixtures and 41 Unicode-version regression inputs, including offline checks; the rebuilt Linux service passes 31 real HTTP checks, dependency recovery and exact runtime-file hash matching. Text/code vector and official NFC checks pass. [Change record](./runs/changes/2026-10-10-121051-frozen-normalization-route-acceptance-4958bb04.json).
- **Not claimed.** Browser engines run on desktop hardware, not physical phones. Development cases do not satisfy independent accuracy gates. Public website publication remains pending for this source increment; no new tag or certification is released.


### 2026-10-10-120901-frozen-normalization-and-model-integrity-a3897588

Recorded 2026-10-10T12:09:01.357648+00:00 · Contributor: Codex · change

- **Changed.** Verify all redactor model assets before loading; freeze Unicode 15.0 NFC across subject primitives, the gateway, private corpus and on-device checker; retain known mismatch evidence and version text primitives explicitly.
- **Evidence.** The real Linux model image passes intact and refuses a corrupted model config; 506 Python tests, complete Unicode NFC tests in Python and Node, subject vectors and four actual builder versions pass. F-117 is complete. Normalization integration remains under verification. [Change record](./runs/changes/2026-10-10-120901-frozen-normalization-and-model-integrity-a3897588.json).
- **Not claimed.** No independent tag release, physical-phone acceptance, outside implementer acceptance, certification, broad privacy guarantee or new tag is asserted. Two hash requirements remain reopened until user-route runtime checks pass; public deployment snapshot predates this correction.


### 2026-10-10-044919-reference-increment-publication-audit-42c58de9

Recorded 2026-10-10T04:49:19.436741+00:00 · Contributor: Codex · change

- **Changed.** Record bounded source/public-asset privacy checks before publishing the reference and resource-control increment.
- **Evidence.** Targeted credential, private provider address, private-key and portfolio markers absent from current tracked source and built assets; dependency paths excluded from source tracking. [Change record](./runs/changes/2026-10-10-044919-reference-increment-publication-audit-42c58de9.json).
- **Not claimed.** Not historical erasure, unknown-secret discovery or independent security certification; release validation remains pending.


### 2026-10-10-044821-reference-workflow-browser-and-service-evidence-3e9fac5c

Recorded 2026-10-10T04:48:21.292231+00:00 · Contributor: Codex · change

- **Changed.** Record current-source Linux service recheck and independent browser engineering runs without overwriting historical evidence.
- **Evidence.** 30 real service HTTP checks pass; all 20 catalogue panels and static exports pass; six real on-device PS result cases pass with zero axe findings and matching changelog download. [Change record](./runs/changes/2026-10-10-044821-reference-workflow-browser-and-service-evidence-3e9fac5c.json).
- **Not claimed.** No human review, physical device test or independent accuracy; staging is isolated from production data; broader adapter gates remain open.


### 2026-10-10-044408-reference-catalogue-build-projection-7eb0dc3d

Recorded 2026-10-10T04:44:08.422770+00:00 · Contributor: Codex · change

- **Changed.** Regenerate public scope and reference downloads for the verified local corpus and current service evidence.
- **Evidence.** Site build succeeds; canonical source copies include all 202 records and the matching new engineering evidence. [Change record](./runs/changes/2026-10-10-044408-reference-catalogue-build-projection-7eb0dc3d.json).
- **Not claimed.** Public deployment and browser verification follow; independent tag release remains pending.


### 2026-10-10-044338-private-reference-corpus-and-negative-conformance-0fdd26fc

Recorded 2026-10-10T04:43:38.029510+00:00 · Contributor: Codex · change

- **Changed.** Add offline owner-held reference attachment and literal passage queries; execute invalid subject vectors in Python and Node; expose current service evidence in PS details.
- **Evidence.** 29 corpus checks and 19 positive plus eight invalid hash vectors pass; 461 Python tests pass; 202 scope IDs retained with 171 requirements open. [Change record](./runs/changes/2026-10-10-044338-private-reference-corpus-and-negative-conformance-0fdd26fc.json).
- **Not claimed.** Literal reference matches do not release NF/FI; no independent labels or outside implementer acceptance; PS remains a development preview; public deployment pending.


### 2026-10-10-043655-prevent-dependency-links-in-source-distribution-7dfed6ed

Recorded 2026-10-10T04:36:55.312120+00:00 · Contributor: Codex · change

- **Changed.** Ignore dependency links as well as directories and reject tracked dependency/build artifacts, including explicit staging; remove local dependency symlinks from the unpublished increment and refresh generated public scope references.
- **Evidence.** 25 change-pipeline checks include a real staged Git symlink that the guard rejects; corrected increment will be audited before publication. [Change record](./runs/changes/2026-10-10-043655-prevent-dependency-links-in-source-distribution-7dfed6ed.json).
- **Not claimed.** This corrects a local packaging mistake caught before push, not a blanket privacy clearance. The earlier bad unpublished commit will not be pushed.


### 2026-10-10-043530-bounded-admission-cancellation-and-real-readiness-d73337f6

Recorded 2026-10-10T04:35:30.078796+00:00 · Contributor: Codex · change

- **Changed.** Bound container memory/PIDs, cancel disconnected gateway work and recover admission; replace fragile inline health command with executable readiness probes; expose verifier commands and correct reserved-code RFC status.
- **Evidence.** 431 Python checks; 11 real HTTP fault scenarios; current three-service source/capability/loopback/readiness/resource checks; N-003 fully functioning on selected Linux staging. [Change record](./runs/changes/2026-10-10-043530-bounded-admission-cancellation-and-real-readiness-d73337f6.json).
- **Not claimed.** 173 requirements remain open toward target 100. Downstream work already admitted may finish in its bounded process. No independent accuracy, physical phone or human acceptance, hosted CI pass or universal isolation claim.


### 2026-10-10-042105-scope-100-foundations-and-live-service-conformance-dbbc585f

Recorded 2026-10-10T04:21:05.320560+00:00 · Contributor: Codex · change

- **Changed.** Make restrictive-permission service builds work; execute current Linux staging conformance; add cross-language subject and vocabulary guards, maintainer accountability, correct ledger dates and UTF-8 submission sizing.
- **Evidence.** 419 Python checks, 19 cross-implementation vectors, vocabulary negative tests and 30 real HTTP checks with dependency failure/recovery; 13 named baseline jobs closed, all 202 records preserved. [Change record](./runs/changes/2026-10-10-042105-scope-100-foundations-and-live-service-conformance-dbbc585f.json).
- **Not claimed.** 174 requirements remain open toward target 100. No independent tag accuracy, real-phone/human acceptance, universal isolation, full-host recovery or hosted CI pass. Temporary staging networking is narrowly scoped.


### 2026-10-10-033504-bind-public-changelog-check-to-deployed-source-3e896ab4

Recorded 2026-10-10T03:35:04.199652+00:00 · Contributor: Codex · change

- **Changed.** Bind the public changelog-download check to its declared deployed source commit, and document the explicit source override for newly published candidates.
- **Evidence.** The published PS checker passes six result cases and seven invalid-evidence cases against the d2d946c snapshot; malformed source identifiers and unknown commits are rejected. [Change record](./runs/changes/2026-10-10-033504-bind-public-changelog-check-to-deployed-source-3e896ab4.json).
- **Not claimed.** No website behavior or tag release status changed; later Git operations records remain separate from the deployed changelog snapshot.


### 2026-10-10-033314-calm-tag-panels-publication-and-scope-closure-7b07f819

Recorded 2026-10-10T03:33:14.163300+00:00 · Contributor: Codex · change

- **Changed.** Record live calmer tag panels, synchronized policy/reference downloads and the completed WP-SITE-A02 reference-sync subtask; retain 202 requirements with 15 complete and 187 open.
- **Evidence.** Public checks pass for 20 tag panels, eight footer routes, nine policy downloads and six real PS cases; 402 artifact hashes match across three origins; scope completion checks pass. [Change record](./runs/changes/2026-10-10-033314-calm-tag-panels-publication-and-scope-closure-7b07f819.json).
- **Not claimed.** The public website changelog is the implementation-source snapshot; Git includes this later publication record. No tag accuracy, physical-device, human accessibility or hosted-CI acceptance.


### 2026-10-10-033008-calm-panels-final-build-verification-5dd0f1fc

Recorded 2026-10-10T03:30:08.283835+00:00 · Contributor: Codex · change

- **Changed.** Record final built-site and real PS-result checks plus the updated publication snapshot audit.
- **Evidence.** All 20 tag panels and eight footer routes, six real PS result cases, seven invalid-evidence cases and the source audit pass; nine scope/performance tests pass. [Change record](./runs/changes/2026-10-10-033008-calm-panels-final-build-verification-5dd0f1fc.json).
- **Not claimed.** Engineering checks only; no human, physical-device, independent-accuracy or hosted-CI acceptance.


### 2026-10-10-032858-calmer-tag-panels-and-escape-repair-9fb33dc9

Recorded 2026-10-10T03:28:58.805420+00:00 · Contributor: Codex · change

- **Changed.** Left-align all tag introductions, soften the MT display title while preserving its formal claim, streamline planned panels, add tag-specific help steps, fix nested Escape dismissal, and complete the current public-roadmap audit.
- **Evidence.** 390 Python tests pass; 20 modal/reference/export/help checks, 40 light/dark performance panels and 62 accessibility surfaces pass; 620 source files passed the bounded publication audit. [Change record](./runs/changes/2026-10-10-032858-calmer-tag-panels-and-escape-repair-9fb33dc9.json).
- **Not claimed.** No independent accuracy, physical-phone, human accessibility or new tag release acceptance. Failed early transport checks remain recorded; unknown secrets and unreachable objects are outside the roadmap audit.


## Unreleased — 2026-10-09

### 2026-10-09-211342-provenance-download-and-publication-evidence-51d277ee

Recorded 2026-10-09T21:13:42.106605+00:00 · Contributor: Codex · change

- **Changed.** Record the published provenance-boundary research code, clean-checkout correction and refreshed public changelog/scope; verify an anonymous commit-pinned source download.
- **Evidence.** All 612 downloaded files match committed source; the clean verifier, synthetic demo and 89 focused tests run without a prior site build or Docker. Public PS/site checks pass; 134 site assets match across three origins (402 hashes), with declared headers intact. [Change record](./runs/changes/2026-10-09-211342-provenance-download-and-publication-evidence-51d277ee.json).
- **Not claimed.** PA/FA remain research-only; no real media/capture, accepted claim policy, independent accuracy or human/device acceptance. Existing verification dependencies were used. Hosted CI starts no steps due to the account billing lock. Later publication records live in Git, beyond the deployed changelog snapshot.


### 2026-10-09-210959-provenance-final-evidence-mirrors-c322c84e

Recorded 2026-10-09T21:09:59.185875+00:00 · Contributor: Codex · change

- **Changed.** Synchronize generated scope mirrors with the final research-only API test evidence; all adopted requirements and acceptance percentages remain intact.
- **Evidence.** The source ledger renders all 202 requirements without orphan records; final 390-test evidence is referenced by the affected scope items. [Change record](./runs/changes/2026-10-09-210959-provenance-final-evidence-mirrors-c322c84e.json).
- **Not claimed.** No research candidate or pure mapping test is a released tag or independent validation.


### 2026-10-09-210938-provenance-research-api-final-verification-f5c53f73

Recorded 2026-10-09T21:09:38.875888+00:00 · Contributor: Codex · change

- **Changed.** Separate the experimental research-candidate API from the draft live-action flag, record final full-suite results and unchanged PS site checks, and preserve scope acceptance.
- **Evidence.** 390 final reviewed Python tests pass; credential-only, malformed, conflicting, duplicate and mixed-subject evidence checks execute; six PS site-result cases still pass with zero axe findings and no answer uploads. [Change record](./runs/changes/2026-10-09-210938-provenance-research-api-final-verification-f5c53f73.json).
- **Not claimed.** Research eligibility does not issue a production tag. Real media, capture, claim authenticity, independent accuracy and accepted mapping policy remain unimplemented or unverified.


### 2026-10-09-210816-provenance-boundary-public-scope-mirrors-364d0752

Recorded 2026-10-09T21:08:16.893405+00:00 · Contributor: Codex · change

- **Changed.** Regenerate public scope mirrors for the provenance-boundary research evidence and clean-checkout correction; retain tag-specific preview/future states and all acceptance percentages.
- **Evidence.** All 202 scope records, 39 packages and 117 subtasks retain IDs, owners and required acceptance; the reviewed source ledger renders successfully. [Change record](./runs/changes/2026-10-09-210816-provenance-boundary-public-scope-mirrors-364d0752.json).
- **Not claimed.** PA/FA are not enabled by these mirrors; experimental candidates remain outside production.


### 2026-10-09-210746-provenance-boundary-and-fresh-checkout-fix-07068734

Recorded 2026-10-09T21:07:46.877811+00:00 · Contributor: Codex · change

- **Changed.** Repair the experimental provenance-to-tag bridge: credential validity alone cannot imply AI participation; explicit subject-bound claims, typed inputs, conservative conflict preservation and deduplication are required. Correct the device verifier to use a committed reference in a clean checkout. Timestamp scope evidence without inflating acceptance.
- **Evidence.** 390 reviewed Python tests pass, including 89 bridge/clean-checkout cases; a corrupted reference is rejected; four actual installed Python builders produce identical bytes; five synthetic bridge cases run without network or command execution. [Change record](./runs/changes/2026-10-09-210746-provenance-boundary-and-fresh-checkout-fix-07068734.json).
- **Not claimed.** No real media/cryptographic validation, accepted claim-mapping policy, independent accuracy or released PA/FA tags. Hosted CI remains account-billing blocked. Original unreviewed drafts are preserved separately.


### 2026-10-09-200855-device-accessibility-publication-evidence-731162b1

Recorded 2026-10-09T20:08:55.111625+00:00 · Contributor: Codex · change

- **Changed.** Record the successful source publication and public site/device accessibility checks, deployment identity, and current state; leave unrelated research drafts outside the release.
- **Evidence.** 62 public accessibility surfaces pass; both browser engines match 86 PS development cases each; 134 artifacts match across three origins (402 hashes), with declared response headers intact. [Change record](./runs/changes/2026-10-09-200855-device-accessibility-publication-evidence-731162b1.json).
- **Not claimed.** Published downloads reflect source 81fc621; subsequent operational metadata lives in Git. No independent tag accuracy, physical device, human screen-reader or hosted-CI execution claim; hosted jobs remain billing-blocked.


### 2026-10-09-200619-ps-results-final-build-evidence-26debd91

Recorded 2026-10-09T20:06:19.855909+00:00 · Contributor: Codex · change

- **Changed.** Record the final built-site PS regression run, including the current downloadable changelog snapshot.
- **Evidence.** Six real result cases and seven malformed-evidence rejections pass; 14 personal panels retain separate live/local/future status; zero axe violations and no answer upload observed. [Change record](./runs/changes/2026-10-09-200619-ps-results-final-build-evidence-26debd91.json).
- **Not claimed.** This development regression run does not establish held-out accuracy or human usability.


### 2026-10-09-200535-generated-device-accessibility-scope-98f4e882

Recorded 2026-10-09T20:05:35.485673+00:00 · Contributor: Codex · change

- **Changed.** Regenerate public scope mirrors from the timestamped device/accessibility ledger; preserve every record and acceptance percentage.
- **Evidence.** The scope verifier passes all 202 requirements, 39 packages and 117 subtasks; generated mirrors are checked against the canonical source. [Change record](./runs/changes/2026-10-09-200535-generated-device-accessibility-scope-98f4e882.json).
- **Not claimed.** Generator output adds evidence only; no new tag, completed requirement or independent release acceptance.


### 2026-10-09-200521-device-accessibility-verified-scope-45da6aa6

Recorded 2026-10-09T20:05:21.326335+00:00 · Contributor: Codex · change

- **Changed.** Publish reproducible fail-closed PS device builds, actual-site accessibility and input-validation checks, bounded accessibility download, and timestamped scope evidence. Preserve all 202 records and existing acceptance percentages.
- **Evidence.** 301 reviewed Python tests passed; four installed Python builders match the tracked manifest; 62 real-site surfaces pass across light/dark; six injected accessibility defects fail; 86 PS cases match on each of Chromium and WebKit with local offline and export checks. [Change record](./runs/changes/2026-10-09-200521-device-accessibility-verified-scope-45da6aa6.json).
- **Not claimed.** PS remains a development preview. Human screen-reader, physical-phone, frozen independent ground truth and release gates remain open. Hosted CI is configured but account billing remains blocked.


### 2026-10-09-200349-ps-input-accessible-validation-5724a7a1

Recorded 2026-10-09T20:03:49.963486+00:00 · Contributor: Codex · change

- **Changed.** Associate empty and oversized PS input errors with the answer field, focus that field, reset errors on edits, and expose checker busy state. Extend real-site accessibility checks to verify these states.
- **Evidence.** Initial real-site run passed 62 surfaces across both themes; fresh validation checks are queued for the rebuilt UI. [Change record](./runs/changes/2026-10-09-200349-ps-input-accessible-validation-5724a7a1.json).
- **Not claimed.** No formal accessibility conformance, physical phone, human screen-reader or independent accuracy acceptance.


### 2026-10-09-195918-device-build-and-real-accessibility-checks-d938e131

Recorded 2026-10-09T19:59:18.778759+00:00 · Contributor: Codex · change

- **Changed.** Make the PS device build deterministic and atomic with AST-only normalization, hermetic tests and blocked stale-bundle publication; add targeted accessibility probes for actual site workflows and a bounded public evaluation record.
- **Evidence.** Four actual Python builders reproduce identical bundle and manifest bytes; nineteen focused projection/build tests pass, and the accessibility probe control plus injected-defect checks exercise the same functions used on the site. [Change record](./runs/changes/2026-10-09-195918-device-build-and-real-accessibility-checks-d938e131.json).
- **Not claimed.** The unchanged PS method remains a development preview; new real-site probe results are pending, human review and physical phones remain open, and the evaluation record is not a complete VPAT or certification.


### 2026-10-09-171716-publication-observations-and-billing-block-feca04de

Recorded 2026-10-09T17:17:16.392244+00:00 · Contributor: Codex · change

- **Changed.** Record verified public publication, the enabled owner-checkout Git hook, matching downloadable changelog and source-bound assets; publish the hosted CI billing block in current state.
- **Evidence.** Public browser checks pass all 20 tag panels, eight footer routes and six real PS result cases; 399 checks match 133 build artifacts across three origins; local staged and committed-range checks passed, and the final Python suite passed 285 tests. [Change record](./runs/changes/2026-10-09-171716-publication-observations-and-billing-block-feca04de.json).
- **Not claimed.** No hosted Actions job started because the account is locked over billing; independent accuracy, physical phones and human accessibility remain open. The public changelog download is the deployed snapshot; this later observation is in Git.


### 2026-10-09-171354-hook-index-path-and-ci-history-correction-d3865040

Recorded 2026-10-09T17:13:54.468927+00:00 · Contributor: Codex · change

- **Changed.** Resolve the hook-provided Git index path against its original repository and give every CI build checkout full history for range verification; retain the blocked-commit diagnosis in the implementation record.
- **Evidence.** Twenty-four change-record regression tests and the complete Python suite pass, including the actual relative-index hook environment; YAML checks verify full history for every CI checkout. [Change record](./runs/changes/2026-10-09-171354-hook-index-path-and-ci-history-correction-d3865040.json).
- **Not claimed.** The first commit attempt was blocked before publication; hosted Actions execution remains separate from these local checks, and no tag accuracy acceptance is advanced.


### 2026-10-09-171104-staged-commit-and-final-local-evidence-0a781159

Recorded 2026-10-09T17:11:04.862898+00:00 · Contributor: Codex · change

- **Changed.** Enforce change coverage against the actual staged index and supported host/backup build targets, retain the contributor drafts separately, and record the final local evidence with a documented correction to the PS next-step assertion.
- **Evidence.** Twenty-three change-record tests and the full Python suite pass; local site and PS-result checks verify the real download, centered introduction, matched evidence and all existing catalogue routes. [Change record](./runs/changes/2026-10-09-171104-staged-commit-and-final-local-evidence-0a781159.json).
- **Not claimed.** Hosted CI execution and public deployment are separate observations; no independent tag release, additional working tag or acceptance-percentage increase is claimed.


### 2026-10-09-170732-generated-scope-and-reference-checks-d20d51b0

Recorded 2026-10-09T17:07:32.134355+00:00 · Contributor: Codex · change

- **Changed.** Project the reconciled scope into static and interactive reference data, preserve the generated changelog copy outside source tracking, and verify the actual download plus centered introduction without centering result evidence.
- **Evidence.** The site build succeeds with unchanged pinned PS method and bundle hashes; scope verification retains all 202 IDs and all acceptance percentages. [Change record](./runs/changes/2026-10-09-170732-generated-scope-and-reference-checks-d20d51b0.json).
- **Not claimed.** The downloadable changelog is a deployment snapshot; Git holds newer operational records. Build warnings about bundle size remain, and no independent tag accuracy claim is made.


### 2026-10-09-170647-change-accountability-and-approved-copy-9be2fbac

Recorded 2026-10-09T17:06:47.904189+00:00 · Contributor: Codex · change

- **Changed.** Require fresh attributed scoped change events for actual Git differences, preserve earlier history, reconcile shipped presentation evidence with scope progress, provide a public changelog download and apply the approved centered PS introduction with shorter next-step wording.
- **Evidence.** Twenty actual-Git and writer failure-path tests cover fresh coverage, stale files, clean CI, explicit attribution, missing or changed proof, release overclaims, deletions and concurrent writers; scope checks retain 202 requirements, 39 packages and 117 subtasks. [Change record](./runs/changes/2026-10-09-170647-change-accountability-and-approved-copy-9be2fbac.json).
- **Not claimed.** Engineering log enforcement does not confer tag validation, change acceptance percentages, publish unrelated contributor drafts or replace human usability review; low-level provider commands can bypass wrappers.


### 2026-10-09-170616-earlier-performance-panels-ca4673d8

Recorded 2026-10-09T17:06:16.629344+00:00 · Contributor: Codex · retrospective

- **Changed.** Recorded earlier published per-tag performance panels with counts, confidence bounds and explicit missing measurements.
- **Evidence.** Public panel checks and execution evidence cover the PS development examples and displayed evidence states. [Change record](./runs/changes/2026-10-09-170616-earlier-performance-panels-ca4673d8.json).
- **Not claimed.** Development fixture success does not clear the independent precision, sampling or calibration gates; other tags remain unmeasured.


### 2026-10-09-170616-earlier-approachable-panels-226f04ca

Recorded 2026-10-09T17:06:16.564318+00:00 · Contributor: Codex · retrospective

- **Changed.** Recorded earlier published examples, compact disclosures, complete catalogue downloads and six distinct enterprise descriptions against their existing scope IDs; the entry acknowledges Claude enterprise-copy contributions reviewed and corrected by Codex.
- **Evidence.** Public panel and deployment records identify the shipped implementation and automated checks. [Change record](./runs/changes/2026-10-09-170616-earlier-approachable-panels-226f04ca.json).
- **Not claimed.** No enterprise service or additional detector is released; automated UI checks do not establish human usability or independent accuracy.


### 2026-10-09-170616-earlier-ps-result-clarity-2abf697d

Recorded 2026-10-09T17:06:16.447165+00:00 · Contributor: Codex · retrospective

- **Changed.** Recorded earlier published PS explanations, excerpts, availability and next steps against their existing scope IDs.
- **Evidence.** Public PS browser checks and deployment records describe the observed source commit; the recording timestamp is today, not an invented completion time. [Change record](./runs/changes/2026-10-09-170616-earlier-ps-result-clarity-2abf697d.json).
- **Not claimed.** Independent detector accuracy and human usability remain unverified; the current approved introduction is a separate change.


## 0.1.0 development preview — 2026-10-09

- State personal availability explicitly: PS website preview, PII local service, twelve planned/proposed entries. Catalogue completeness does not imply detector completeness.
- Explain all five PS signal types with matched NFC code-point excerpts and next steps; focus the result after checking. Reject invalid states, unknown signals and invalid spans rather than rendering a finding or safety clearance.
- Keep input excerpts on-page only and preserve minimal default export plus separate consent for detailed fingerprints. Record the exact origin in future mobile verification reports.

- Add everyday examples and shorter introductions to all 20 tag panels and static references; put the PS action before technical evidence and fold optional local setup into a disclosure.
- Give six enterprise proposals distinct scope-grounded descriptions. Correct extension page access, catalogue versus result exports, proposed SSO roles, private security routing and host capture references.
- Identify downloaded catalogue definitions explicitly and verify complete exports, static parity and enterprise claim boundaries. No detector, taxonomy, release gate or collection change.

- Add per-tag performance panels with measured counts, Wilson ranges, pending/unmeasured states and downloadable source evidence; reject stale detector/dataset reports during build.
- Execute Android Chromium and iPhone WebKit development parity again; record warm p50/p95 separately from cold runtime loading. No physical-device or independent-accuracy claim.
- Publish a small-team frozen-review plan and exact denominator sizing; retain separate consented research intake and proprietary-assistance gates.

- Add timestamped completion ledger for all 202 requirements, 39 packages and 117 subtasks; retain completed records and explicit fixes for open work.
- Review supplied adjudication/statistics research code; require complete supplied verification, fail closed on unknown codes and publish missing-answer coverage. No real media validator or new tag is released.
- Use AI Trust ID as the general publisher credit and Michael as product owner. Keep actual legal operator in Terms; preserve prior policy text and publish version 1.2.

## 0.1.0 — development preview, unreleased

- Expanded all 202 scope records into 39 execution packages and 117 subtasks, with
  14 distinct tag contracts, explicit prerequisites and separate release gates.
  Removed 81 generic PS dependencies, preserved all IDs/dispositions, qualified
  historical latency/abstention/response/mark claims, and linked
  the execution plan plus package/prerequisite details from the Scope panel.
  Corrected the PS contract to distinguish phone/paste and local-service routes.

- Expanded the walkthrough/About to explain the full multi-tag design and retained
  all 202 scope records. Added the owner-approved individual publisher to public
  surfaces. Preserved policy 1.0 and published version 1.1 with actual named downloads.
- Added a minimal default checker summary and explicit opt-in for detailed subject
  fingerprints/evidence positions. Browser checks now exercise both exports and
  actual no-script policy downloads. No detector or release-gate change.

- Published the positive per-tag validation-before-release rule across metadata,
  references and panels while retaining each tag’s current evidence/stage. Added
  nine versioned public terms/policy pages, no-script index and matching text downloads.
  Corrected governance’s absent roster reference and security’s missing device route.
- Added policy/source-text/link/metadata and accessible reflow checks to the site
  CI job. Documented actual product differences separately from priority claims.

- Replaced the shared footer composer/doc layout with eight independent workflows,
  descriptive links and deep links. Reports validate observed/expected results and
  route vulnerabilities privately; contributions define deliverables; public discussions
  use verified GitHub categories; task handoff selects a contribution role. Added a
  searchable 202-record scope explorer and distinct walkthrough, About and Legal panels.
  Drafts remain explicit downloads; no automatic posting or collection added.
- Added workflow behavior, 320px/200% reflow and automated accessibility checks to
  the site CI job. Recorded primary-source limits on the pasted naming advice.

- Added a phone/device PS checker using the unchanged Python method in a pinned,
  self-hosted worker runtime, with bounded input, hash verification, cancellation,
  short result and metadata-only export. No account, Docker or extension required.
- Added opt-in public-asset offline saving/removal and home-screen manifest; no
  answer or review caching. Added blind JSON phone review and strict CLI comparison.
- Added full-evidence Chromium/WebKit parity for all 86 development cases and a
  fast parallel source/regression command. Native sharing and actual-phone checks
  remain tracked; independent accuracy is not claimed.


- Corrected PS stdout routing and literal-display handling under context-v5,
  with versioned signals. Added 26 boundary cases and file-only shell checks;
  all 86 active development cases pass. Independent release remains blocked.
- Added a blind PS review packet tool with frozen source/policy hashes, private
  files, spreadsheet escaping and explicit disagreement/ambiguity reporting.
- Added per-tag use and availability instructions, shared local setup for PS/PII,
  copyable commands, and self-hosted SIL OFL Nunito Sans typography.

- Replaced the appearance menu with a keyboard-operable light/dark switch and Auto.
  Tag dialogs fit their content, lead with plain-language purpose, limitation and
  visible validation status, and retain full details in three disclosures and JSON.
- Added a sourced market inventory that separates partial substitutes, standards,
  dependencies and similar names from full product equivalence. No competitor
  accuracy ranking or claim of market uniqueness is made.

- Published compact tag tiles, a native vector tag logo and persistent
  Light/Dark/System appearance. All 20 modals, eight footer dialogs, keyboard,
  mobile and automated accessibility checks pass on the live domain.
- Added 20 static tag references, unique accurate metadata, canonical URLs,
  JSON-LD, robots.txt, a 22-URL sitemap and a generated social preview. Google
  indexing and Search Console verification/submission remain unverified.
  Existing CSP and no-transform protections pass; no analytics added.

- Published the reviewed development source and anonymous download; verified a fresh
  installation, 101 Python checks, 60 regressions and real local tag records.
- Connected catalogue download/setup links and public/private GitHub reporting;
  all owned-domain checks pass. Hosted CI is blocked by account billing, and
  independent accuracy release gates remain failing.

- Runnable manual text checker added with private token initialization, proxy and
  redirect refusal, schema/offset/source-hash validation, bounded input and distinct
  finding/unavailable exits. Next PII procedural tag rejects unknown or inconsistent
  redactor metadata before evaluation. 101 Python checks pass. Public source,
  synthetic issue/discussion and private vulnerability paths are being published;
  independent accuracy and human review still block a validated tag release.

- Public development catalogue deployed on aitrustid.com and www.aitrustid.com.
  Both domains active; reviewed asset hashes, HTTPS/security headers, all 20 tag
  modals, eight footer modals, keyboard/mobile/export checks pass. Provider beacon
  injection detected and prevented using no-transform; zero unexpected outbound
  requests verified. Primary email inbox receipt confirmed and its independent
  timer enabled. No detector release, real-data collection or source push claimed.
  This supersedes the earlier publication/email-pending entries below.

- Private ntfy notifications deployed behind verified HTTPS at the owner-approved
  hostname. Distinct write-only publishers and read-only owner access pass 12
  external authorization/heartbeat checks; 17 runtime boundary checks and eight
  sender tests pass. Both HTTPS timers enabled; primary iCloud test accepted, with
  inbox receipt and desktop permission pending. MFA configuration and two masked
  Apple Passwords recovery entries verified. Offline recovery and full-host drill
  remain open. No real data collection or public site deployment enabled.

- Independent backup pilot deployed: matching pgBackRest 2.59.3, encrypted WAL
  and full/differential backups, root-owned verified protected generations and
  local failure monitors. Twenty backup-host checks pass after reboot; both named
  synthetic restores pass with networking disabled and runtime permissions
  preserved. Credential/deletion, corruption, wrong-key, outage and health-failure
  checks pass. Owner key custody, MFA, external alerts and application/data policy
  gates remain open; no real collection enabled. Supersedes the access gap below.

- Owner purchased the independent DigitalOcean backup VPS; provider reports Active
  and Debian 13 is confirmed in its console. The dedicated administrator key was
  not installed despite the selected key name seen in the draft. Host identity
  matches; owner console handoff is needed before SSH deployment. No repository,
  backup or restore success claimed. This supersedes purchase-pending status.

- Dedicated Debian host foundation deployed: PostgreSQL 18.6 socket-only access,
  separate peer-authenticated roles, key-only SSH, dual-stack firewall, signed
  package updates and patched-kernel reboot. All 46 executed checks pass after
  reboot. Independent recovery, application authorization and public intake remain
  incomplete; no real data collection enabled.
- Public live community communication recorded in existing scope, with separate
  protected research and private security-report boundaries. Backup options
  prepared for owner review; no additional purchase or backup repository created.

- Owner completed the separate OVHcloud VPS purchase. Payment validated and Debian
  13 host Active; SSH port reachable. Authenticated access, database installation,
  security checks and recovery remain incomplete. Backup schedule is visible;
  there are no restore points yet. No remote collection enabled.

- Independent Linux/PostgreSQL hosting research records a verified monthly quote,
  component/license choices, package security condition, portable recovery targets
  and implementation gates; no infrastructure is provisioned by the recommendation.

- Research hosting decision now requires a dedicated AI Trust ID environment,
  open-source software and portable recovery; existing THT server reuse superseded.

- All four active command fixture sets run in a dedicated CI regression job;
  a hash manifest records active and historical sets. Forgotten files, changed
  hashes and misclassification fail verification; no independent accuracy is claimed.
- Local Python verification now passes 65 tests; statistical gates still fail.

- In-use tag dialogs show brief descriptions; technical metadata moves to an
  explicit structured JSON download. Exports exclude response text and arbitrary
  signal detail and mark predictions as unreviewed, without a training label.
- Training/database architecture recorded; destination, collection and retention
  remain unresolved and no automatic forwarding is enabled.
- Extension tag rows render every distinct supplied code, wrap at narrow widths,
  and stay beneath output ending in inline text; isolated six-tag tests verify
  unchanged output geometry and separate detail selection.
- Compact code-only extension tags replace the persistent warning card; each tag
  opens its own native evidence dialog, with recheck, Close and Escape dismissal.
- Compact geometry, no dialog layout shift, native focus return, mobile and axe
  checks pass; updated installed Chrome UI checked on the existing Homebrew answer.
- PS-only runtime policy enforced; semantic detectors excluded.
- Narrow warning/comment context handling with versioned v2 signals.
- Validated local gateway dependencies, bounded requests, token validation and readiness.
- Build-provisioned English redaction assets and offline suffix validation.
- Response revision binding, accessible evidence, local token options, manual checks.
- Reproducible Python, browser and real-container checks; release gates remain unmet.
- Hash-locked runtime dependencies, patched framework packages, restricted container privileges,
  readiness-based startup, and request-body limits.
- Statistical harness result renamed to evaluation_gate_pass; it does not approve a release.

- Static tag catalogue with Person/Enterprise filtering, complete tag modals, public scope references,
  downloadable report/contribution/discussion drafts, and accessible keyboard navigation.
- Mobile, enlarged-text and no-script reference checks; production publishing and remote intake remain open.
- Catalogue tiles display only the tag code; names, progress and evidence remain inside details.

- Bounded stdout substitution detection reconciled under new development method IDs;
  broad fetch-prefix prototype withdrawn from runtime with its history preserved.
- Disabled known evaluator candidates produce schema-valid null-floor abstentions;
  unknown candidates fail the upstream contract; redactor-only PII assertion authority.
- Semantic assistant-body capture excludes toolbar, prompt and hidden content;
  message identity and navigation invalidate stale results, including reused DOM hosts.
- Observed-DOM fixtures, exact download counterexamples and local shell-layer checks;
  60 Python checks and real-container/unpacked-extension synthetic integration pass.
