{
  "report": "Reference implementation suite (LOG-03)",
  "id": "reference-core",
  "component": "Continuous MMR transparency log + R2 receipt core",
  "suite_file": "test/run-all.mjs",
  "suite_file_sha256": "338afb23e3e4ffdd93b9b0b7caa0e0b49c42666a9e182ff48a3b61319fe1d116",
  "result": {
    "passed": 195,
    "failed": 0,
    "skipped": 0,
    "unit": "assertions",
    "suites": 13,
    "status": "PASS"
  },
  "detail": "test.mjs 18 \u00b7 keyreg 6 \u00b7 interop 13 \u00b7 groupA 24 \u00b7 groupB 18 \u00b7 groupC 18 \u00b7 groupD 18 \u00b7 groupE 20 \u00b7 groupF 20 \u00b7 groupG 16 \u00b7 H2a ok(8 props) \u00b7 H2b 15 \u00b7 H3a 9",
  "note": "203 counting test_H2a_property.mjs's 8 property-assertions (reported as 'ok'). H-1 adversarial fuzz: 404,000 cases (malleability / downgrade / Merkle-forgery). Corrected oracle 2026-08-28: 309 slips against this frozen tag; 0 slips against the repaired implementation (85e3d09, c66e25d). This record's tag predates the repair.",
  "h1_erratum": {
    "dated": "2026-08-28",
    "population": "404,000 adversarial cases (signature malleability / downgrade / Merkle forgery)",
    "withdrawn_claim": "0 succeeded",
    "corrected_result_against_this_tag": "309 slips out of 404,000",
    "corrected_result_against_repaired_implementation": "0 slips",
    "repair_commits": ["85e3d09", "c66e25d"],
    "detail": "The original oracle could not detect the relabel-to-legacy downgrade attack it enumerated: it counted a slip only when the receipt was not flagged as downgraded, while that attack sets the flag. The underlying signature-suite binding defect is repaired in the current implementation; the repair is NOT present in the published audit-tob-v1.1.0 tag."
  },
  "what_it_proves": "The full R2 v1.1 reference suite passes across all 13 sub-suites from a clean checkout; the append-and-prove path is correct with no counterexample found.",
  "what_it_does_not_prove": "That the AI action a receipt describes was correct or wise \u2014 only that the receipt is well-formed and unmodified.",
  "raw_excerpt": "$ node test/run-all.mjs\n\u2713 test.mjs 18 \u00b7 keyreg 6 \u00b7 interop 13 \u00b7 groupA 24 \u00b7 groupB 18 \u00b7 groupC 18\n\u2713 groupD 18 \u00b7 groupE 20 \u00b7 groupF 20 \u00b7 groupG 16 \u00b7 H2a ok \u00b7 H2b 15 \u00b7 H3a 9\nALL REFERENCE SUITES GREEN",
  "frozen_tag": "audit-tob-v1.1.0",
  "commit": "697f339",
  "reproduced_utc": "2026-07-27",
  "node": "v22.22.3",
  "repo": "github.com/DCS-LabsAI/dcs-rseries-core",
  "prod_dependencies": 0,
  "reproduced_by": "DCS Labs \u2014 live reproduction from clean checkout",
  "posture": "ground-demonstrated; not externally audited",
  "non_claim": "Post-quantum signature: the current R-Series hybrid profile signs the post-quantum leg with real ML-DSA-65. Key custody: a software signer \u2014 hardware-backed HSM/KMS custody is a separate deployment control, is not deployed here, and no FIPS-validated module is claimed. Not independently audited by external third parties.",
  "status": "SUPERSEDED \u2014 27 Jul 2026 baseline (audit-tob-v1.1.0 \u00b7 697f339). Retained as dated historical evidence. This record predates the C1\u2013C2.9 internal remediation programme and does not describe the current implementation. Current record: internal-assurance-c2.9 (DCS_RSeries_ReferenceCore_Record_C2.9.json)."
}
