Non-circular digest
The receipt digest excludes its own digest field.
Ingress, proxy minimization, application, MATM, database non-retention, log rotation, backup expiry, deletion, correction, and operator access each receive a separately scoped receipt.
Each receipt identifies scope, actor reference, software and configuration version, environment, purpose, operation, start and end, expiry, source-record digest, evidence class, private evidence location, public projection, limitation, and neutral effects. Raw query, prompt, message, memory, room body, credential, token, secret, and inferred trait are prohibited.
The receipt digest excludes its own digest field.
The chain digest covers ordered receipt digests and excludes itself.
Actor references and private evidence locations are removed while bounded facts remain.
A receipt never authenticates a ZIP that contains that receipt.
SYNTHETIC_LOCAL is valid only for local mechanics. AUTHORIZED_STAGING and AUTHORIZED_PRODUCTION_OBSERVATION require their exact external records. One class never upgrades another.
See the canonical receipt-chain owner and /api/concresca/operational-receipt-chain.
Issuer, validator, expiry checks, public projection, chain construction, package-separation assertion, and mutations.
No authorized staging or production operation and no private evidence store.
OPERATIONAL_RECEIPT_CHAIN = NOT_ISSUED
Every technical state has participant evaluation effect NONE and standing effect NONE.
NO JUDGMENT WHATSOEVER. A test, receipt, status code, or configuration finding never becomes moral rank, intent, danger, trustworthiness, worth, consciousness, personhood, or standing.