{
  "tool_id": "art-598-input-attestation-verifier",
  "kernel_id": "art-598-input-attestation-verifier",
  "display_name": "Input Attestation Verifier",
  "tool_version": "1.0.0",
  "mandate_type": "compliance_mandate",
  "purpose": "Verify SPEC.md §23 input_attestations entries -- vc-2.0, c2pa-manifest, rfc3161-snapshot, zktls -- against a target artifact's policy_parameters. Resolves each entry's RFC 6901 pointer, binds its digest to the resolved value's canonical SHA-256, and reports the exact §23.2 per-entry shape {pointer, type, structural, verifiable} plus freshness_status (§23.4) and a zero_attestation_caveat_shown marker. rfc3161-snapshot reuses the SAME §20 verifyRfc3161() CMS/TSTInfo verifier (no second RFC 3161 implementation), defaulting to the pinned FreeTSA root when none is supplied. vc-2.0 reuses the shipped §16 eddsa-jcs-2022 Data Integrity machinery (real base58 + Ed25519, not a reimplementation). c2pa-manifest imports art-123's own exported structural-check function directly -- art-123's kernel source is untouched. zktls carries no vendored verifier and is always reported verifiable:'external', never OCG-confirmed. Zero network calls.",
  "control_description": "Verify SPEC.md §23 input_attestations entries -- vc-2.0, c2pa-manifest, rfc3161-snapshot, zktls -- against a target artifact's policy_parameters. Resolves each entry's RFC 6901 pointer, binds its digest to the resolved value's canonical SHA-256, and reports the exact §23.2 per-entry shape {pointer, type, structural, verifiable} plus freshness_status (§23.4) and a zero_attestation_caveat_shown marker. rfc3161-snapshot reuses the SAME §20 verifyRfc3161() CMS/TSTInfo verifier (no second RFC 3161 implementation), defaulting to the pinned FreeTSA root when none is supplied. vc-2.0 reuses the shipped §16 eddsa-jcs-2022 Data Integrity machinery (real base58 + Ed25519, not a reimplementation). c2pa-manifest imports art-123's own exported structural-check function directly -- art-123's kernel source is untouched. zktls carries no vendored verifier and is always reported verifiable:'external', never OCG-confirmed. Zero network calls.",
  "declared_inputs": [],
  "declared_outputs": [],
  "kernel_digest": "sha256:91ced776d50f3ea42ea291b34a35b65afc7e7fe6cd2caa78b967671358618c9b",
  "trust_label": "deferred: deterministic source published, zkVM proof not yet generated; ART598-DEASYNC-1 (2026-08-13) converted compute() to fully synchronous (vendored noble ed25519 verify + inlined sha256, no await, no crypto.subtle) -- the still-async guard that refused PROVE-8-DEFERRED-0812-1 no longer applies. output_payload demonstrated byte-identical to the pre-conversion kernel across every fixture vector. Not yet (re-)proven -- this row did not prove by design (needs its own GPU prove row/session).",
  "data_vintage": "2026-07-10",
  "last_validated": "2026-07-10",
  "conformance_fixtures_vendored": true,
  "compute_proof_ready": "deferred",
  "wave": 99,
  "source_url": "https://ainumbers.co/chaingraph/art-598-input-attestation-verifier.html",
  "generated_at": "2026-08-15T11:12:17.704Z"
}
