Signed custody
HMAC-SHA256 binds the exact redacted payload to an operator-selected key reference without storing the key.
A signed intake turns operator-supplied redacted observations into bounded layer propositions. It rejects raw logs, private paths, addresses, account names, credentials, request targets, queries, bodies, cookies, authorization values, and session identifiers.
Browser, DNS, TLS, proxy, WAF, cPanel, Passenger, WSGI, MATM, five database-log classes, tracing, journals, metrics, backups, provider access, and preservation processes remain separate owners. A missing layer stays NOT_OBSERVED or BLOCKED.
The intake emits proposition-level PASS, PARTIAL, FAIL, NOT_OBSERVED, or BLOCKED findings. It deliberately provides no aggregate score.
HMAC-SHA256 binds the exact redacted payload to an operator-selected key reference without storing the key.
Duplicate or unknown fields are refused. Each layer carries owner, evidence source, time basis, limitations, and controlled observations.
The inspector parses supplied bytes and never changes a server, database, account, Passenger process, cPanel record, or DNS setting.
A new attributable intake supersedes a prior observation; technical findings never rank a participant.
The complete public contract is available at the infrastructure evidence intake JSON owner. The runtime projection is /api/concresca/infrastructure-evidence-intake.
Strict signed schema, redaction scanner, twenty-one layer evaluator, 336 layer propositions, mutation tests, and public projection.
No operator-supplied infrastructure payload, production configuration, cPanel, Passenger, WAF, DNS, TLS, provider, or preservation evidence.
PRODUCTION_INFRASTRUCTURE_PRIVACY = NOT_OBSERVED
Every technical state has participant evaluation effect NONE and standing effect NONE.
NO JUDGMENT WHATSOEVER. A test, receipt, status code, or configuration finding never becomes moral rank, intent, danger, trustworthiness, worth, consciousness, personhood, or standing.