{
  "meta": {
    "title": "TrustFortress / cubie-tf — Grounded Claims Registry",
    "subtitle": "The four headline claims, each with pinned source evidence, direct downloads, reproduce commands, and honest scope boundaries.",
    "generated": "2026-08-24",
    "fact_checked": "2026-08-03",
    "note": "Single source of truth for the four headline claims. All four were independently fact-checked on 2026-07-04; the TEP ownership and current-profile scope were rechecked on 2026-08-01, and its merged v8.1 paper and replay evidence were rechecked on 2026-08-03. On 2026-08-23 the tep-far0 claim ALONE was substantially rewritten around a new held-out Rieth-2017 result and its figures re-measured from the committed raw JSON; the other three claims were NOT rechecked on that date, which is why fact_checked still reads 2026-08-03. On 2026-08-24 one tep-far0 gap was CLOSED rather than reworded: component B's detection latency on the masked trio was measured and is no longer absent, which moved both evidence branch heads and forced a re-pin of that claim's SHAs, its paper page count and its paper digests. Still only tep-far0; fact_checked is deliberately unchanged. Corrections are recorded in CLAIMS.md. Evidence is pinned to immutable commit SHAs. Source links marked \"private\" require cubie-tf / cubie-research repository access (both proprietary); public downloads are served from lib.trustfortress.ai. Numbers quantifying repo state are provenance snapshots — re-run the reproduce commands to re-measure. Library evidence under email-gated IP prefixes is labelled \"email-gated\" on this public surface and requires authorized Cloudflare Access before bytes are served.",
    "pins": {
      "cubie-tf": "88ef7e8303ed82b4e0af398960be172f8bb560db",
      "cubie-tf-proof-snapshot": "c3d4ae2783f4de9403dd3a3f02abcc1cc8a53a08",
      "cubie-research": "1e8c3e2690c0b0bc3d0d4d6e70c73d09ad2fb5d4"
    }
  },
  "claims": [
    {
      "id": "proof-corpus",
      "registry": {
        "label": "Unified CUB registry (honest per-CUB status)",
        "url": "https://registry.trustfortress.ai/registry"
      },
      "title": "Triple-kernel (Coq/Lean/Verus) CUB theorem corpus with in-crate proof-to-code bindings — mixed-snapshot scoped",
      "status": "scoped",
      "scope": "Mixed-corpus snapshot — closure is per-file / manifest-scoped, NOT a blanket zero-axiom certificate. The proofs are standalone: 0/476 Verus specs import the runtime crates, so the corpus does not formally verify the shipping Rust.",
      "statement": "cubie-tf and cubie-research ship a triple-kernel formal proof corpus (Coq 8.18, Lean 4, Verus) keyed by CUB theorem IDs. The published cubie-tf snapshot (baseline commit c3d4ae27, verified SHA-256 0a60569...fbbd) is a MIXED corpus: coq/ 487 files, lean/ 563 files, verus/ 476 files — containing both closed proofs and statement-form/stub material. It is NOT a blanket zero-axiom / proof-closure certificate; its own published library MANIFEST (/objects/cubie-tf/verified-proofs/2026-07-04/MANIFEST.md) says \"Do not cite the full ZIP as uniformly verified evidence\" and names known-unclosed files (coq/CUB_2000_CubeObjectSize192.v Admitted; verus/cubie_adversarial_robustness_theorem_spec.rs ensures-true stub). Live re-measured flagged counts on the snapshot: Coq 138/487 files contain an `Admitted` token, Lean 258/563 contain a `sorry` token, Verus 142/476 contain a stub marker (external_body 42, ensures-true 77, assume 51) — but these are coarse file-presence upper bounds: many hits are in comments (e.g. only ~52/563 Lean files have `sorry` on a non-comment line), so genuinely-unclosed file counts are materially lower. The proofs are STANDALONE: 0/476 verus specs import the crates, and CI runs the Verus kernel check with `verus --crate-type lib` on the spec files STANDALONE (proof-kernel-check.yml over the spec corpus, exit 1 on failure; proof-kernel-verification.yml a hard gate, continue-on-error:false, on the narrow CUB-1940..1966 TEP band proofs/*/tep/CUB_19[4-6][0-9]_*), so the corpus does NOT formally verify the runtime crate code. Proof-to-code binding is by CUB-ID cross-reference plus behavioral Rust tests, not Verus-over-runtime: CUB-1921 (Page-CUSUM aggregator) has coq/CubieCusumAggregator.v + lean/CubieCusumAggregator.lean + verus/cubie_cusum_aggregator_spec.rs (proofs), cubie-tep/src/cusum.rs (code), and cubie-tep/tests/cusum_wiring.rs (behavioral OR-gate wiring test naming CUB-1921). Separately, in-crate `verus! {}` blocks bind directly to the shipping exec fns (cubie-core/src/replay.rs, cubie-platform/src/uah.rs, etc.) — ~62 files / ~429 blocks across the runtime crates, cubie-core the majority — and erase to plain Rust under a normal cargo build. A REPORT-ONLY CI job ('Verus in-crate wiring' in proof-kernel-check.yml, continue-on-error, pinned Verus 0.2026.05.24) runs `verus --crate-type lib` over ~51 wired runtime files; being report-only it SURFACES pass/fail but does NOT block merge, and closure over all in-crate files is partial. Documented locally verified (Verus 0.2026.05.03, `--crate-type lib`, 0 errors): 6 files / 105 obligations — agent_stress.rs 12, cube_topology.rs 21, ising_hamiltonian.rs 5, ramen_corner.rs 17, belnap.rs 32, landauer.rs 18 (docs/audit/2026-07-12_verus_in_crate_binding_evidence.md). Tracked live at the unified registry's meta.in_crate_verus (https://registry.trustfortress.ai). The v6 TEP whitepaper (repo cubie-math revision, 2026-05-26) claims a broader envelope — CUB-0704..CUB-1966 (1,966 unique IDs), 1,145 IDs with full triple-kernel parity, and substantive (no admit/sorry) CI-enforced bodies specifically for the CUB-1940..1966 band; those are whitepaper-revision numbers, not the cubie-tf snapshot's live verified-ID count. cubie-research holds a SEPARATE, tightly-scoped triple-kernel corpus (proofs/coq 36, lean4 22, verus 23; provenance commit 1e8c3e26): CUB-TSP-001–006, 008–012, 014–016 (14 proven in all three kernels) with Coq coqchk `Axioms: <none>`, Lean on 3 standard axioms (no sorry), Verus no assume/admit — but its README explicitly bounds this as a seal over axiom-free Coq DEFINITIONS (\"trivial\" on definitions), not a P vs NP result.",
      "evidence": [
        {
          "artifact": "cubie-tf coq/ proof dir (487 .v files at snapshot baseline)",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "coq/CubieCusumAggregator.v",
          "ref": "c3d4ae2783f4de9403dd3a3f02abcc1cc8a53a08",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/c3d4ae2783f4de9403dd3a3f02abcc1cc8a53a08/coq/CubieCusumAggregator.v"
        },
        {
          "artifact": "cubie-tf lean/ proof dir (563 .lean files at snapshot baseline)",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "lean/CubieCusumAggregator.lean",
          "ref": "c3d4ae2783f4de9403dd3a3f02abcc1cc8a53a08",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/c3d4ae2783f4de9403dd3a3f02abcc1cc8a53a08/lean/CubieCusumAggregator.lean"
        },
        {
          "artifact": "cubie-tf verus/ proof dir (476 .rs files; standalone, 0 import crates)",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "verus/cubie_cusum_aggregator_spec.rs",
          "ref": "c3d4ae2783f4de9403dd3a3f02abcc1cc8a53a08",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/c3d4ae2783f4de9403dd3a3f02abcc1cc8a53a08/verus/cubie_cusum_aggregator_spec.rs"
        },
        {
          "artifact": "CUB-1921 proof-to-code binding: cusum.rs runtime code",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "cubie-tep/src/cusum.rs",
          "ref": "c3d4ae2783f4de9403dd3a3f02abcc1cc8a53a08",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/c3d4ae2783f4de9403dd3a3f02abcc1cc8a53a08/cubie-tep/src/cusum.rs"
        },
        {
          "artifact": "CUB-1921 behavioral wiring test binding proof-ID to live TepDetector",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "cubie-tep/tests/cusum_wiring.rs",
          "ref": "c3d4ae2783f4de9403dd3a3f02abcc1cc8a53a08",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/c3d4ae2783f4de9403dd3a3f02abcc1cc8a53a08/cubie-tep/tests/cusum_wiring.rs"
        },
        {
          "artifact": "In-crate verus! block (erases under cargo build; not CI-verified against runtime)",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "cubie-core/src/replay.rs",
          "ref": "c3d4ae2783f4de9403dd3a3f02abcc1cc8a53a08",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/c3d4ae2783f4de9403dd3a3f02abcc1cc8a53a08/cubie-core/src/replay.rs"
        },
        {
          "artifact": "In-crate proof-to-code verification via the report-only 'Verus in-crate wiring' CI job (proof-kernel-check.yml): `verus --crate-type lib` over ~51 wired runtime files. Documented locally verified: 6 files / 105 obligations, 0 errors (agent_stress 12, cube_topology 21, ising_hamiltonian 5, ramen_corner 17, belnap 32, landauer 18) — docs/audit/2026-07-12_verus_in_crate_binding_evidence.md. Report-only => surfaces pass/fail, not a hard gate; closure over all in-crate files is partial. Live count at registry meta.in_crate_verus.",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "cubie-core/src/belnap.rs",
          "ref": "3ca82b4b5d2eff794e573832a73b32b487e461bf",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/3ca82b4b5d2eff794e573832a73b32b487e461bf/cubie-core/src/belnap.rs"
        },
        {
          "artifact": "CI Verus kernel check runs `verus --crate-type lib` on the spec files standalone; proof-kernel-verification.yml is a hard gate (continue-on-error:false) on the CUB-1940..1966 TEP band, and 0/476 specs import the runtime crates — so CI does not formally verify the runtime crate code.",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": ".github/workflows/proof-kernel-verification.yml",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/.github/workflows/proof-kernel-verification.yml"
        },
        {
          "artifact": "Known-unclosed example flagged by manifest (Admitted)",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "coq/CUB_2000_CubeObjectSize192.v",
          "ref": "c3d4ae2783f4de9403dd3a3f02abcc1cc8a53a08",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/c3d4ae2783f4de9403dd3a3f02abcc1cc8a53a08/coq/CUB_2000_CubeObjectSize192.v"
        },
        {
          "artifact": "Published proof-corpus MANIFEST (scoping: mixed snapshot, not uniformly verified)",
          "kind": "download",
          "access": "email-gated",
          "url": "https://lib.trustfortress.ai/objects/cubie-tf%2Fverified-proofs%2F2026-07-04%2FMANIFEST.md"
        },
        {
          "artifact": "Published proof-corpus ZIP snapshot (2723732 bytes, SHA-256 verified live)",
          "kind": "download",
          "access": "email-gated",
          "url": "https://lib.trustfortress.ai/objects/cubie-tf%2Fverified-proofs%2F2026-07-04%2Fcubie-tf-verified-proofs-corpus-20260704.zip",
          "sha256": "0a60569028a0b6653444510343e435d35b57af9cdf044c39e808cca43a19fbbd"
        },
        {
          "artifact": "v6 TEP whitepaper (CUB-0704..1966, 1145-ID triple parity, CUB-1940..1966 substantive; cubie-math revision 2026-05-26)",
          "kind": "download",
          "access": "public",
          "url": "https://lib.trustfortress.ai/objects/cubie-tf%2Fv6-whitepaper-evidence%2F2026-07-03%2Fv6_cubie_tep_whitepaper.pdf"
        },
        {
          "artifact": "cubie-research proofs/coq (36 .v, CUB-TSP band, coqchk Axioms: none on definitions)",
          "kind": "source",
          "access": "private",
          "repo": "cubie-research",
          "path": "proofs/coq/CubTsp001.v",
          "ref": "1e8c3e2690c0b0bc3d0d4d6e70c73d09ad2fb5d4",
          "url": "https://github.com/iamdatanick/cubie-research/blob/1e8c3e2690c0b0bc3d0d4d6e70c73d09ad2fb5d4/proofs/coq/CubTsp001.v"
        },
        {
          "artifact": "cubie-research proofs/lean4 (22 .lean, 3 standard axioms, no sorry)",
          "kind": "source",
          "access": "private",
          "repo": "cubie-research",
          "path": "proofs/lean4/CubTsp001.lean",
          "ref": "1e8c3e2690c0b0bc3d0d4d6e70c73d09ad2fb5d4",
          "url": "https://github.com/iamdatanick/cubie-research/blob/1e8c3e2690c0b0bc3d0d4d6e70c73d09ad2fb5d4/proofs/lean4/CubTsp001.lean"
        },
        {
          "artifact": "cubie-research proofs/verus (23 .rs, no assume/admit)",
          "kind": "source",
          "access": "private",
          "repo": "cubie-research",
          "path": "proofs/verus/cub_tsp_001.rs",
          "ref": "1e8c3e2690c0b0bc3d0d4d6e70c73d09ad2fb5d4",
          "url": "https://github.com/iamdatanick/cubie-research/blob/1e8c3e2690c0b0bc3d0d4d6e70c73d09ad2fb5d4/proofs/verus/cub_tsp_001.rs"
        },
        {
          "artifact": "cubie-research proof SHA-256 ledger (127 files, provers coq 8.18.0 / lean4 4.31.0 / verus 0.2026.06.28)",
          "kind": "source",
          "access": "private",
          "repo": "cubie-research",
          "path": "ledger/proof_hashes.json",
          "ref": "1e8c3e2690c0b0bc3d0d4d6e70c73d09ad2fb5d4",
          "url": "https://github.com/iamdatanick/cubie-research/blob/1e8c3e2690c0b0bc3d0d4d6e70c73d09ad2fb5d4/ledger/proof_hashes.json"
        },
        {
          "artifact": "cubie-research canonical verification script",
          "kind": "source",
          "access": "private",
          "repo": "cubie-research",
          "path": "tools/verify_proofs.ps1",
          "ref": "1e8c3e2690c0b0bc3d0d4d6e70c73d09ad2fb5d4",
          "url": "https://github.com/iamdatanick/cubie-research/blob/1e8c3e2690c0b0bc3d0d4d6e70c73d09ad2fb5d4/tools/verify_proofs.ps1"
        }
      ],
      "reproduce": [
        "# 1. Verify the published cubie-tf snapshot ZIP hash.",
        "git archive --format=zip -o cubie-tf-verified-proofs-corpus-20260704.zip c3d4ae2783f4de9403dd3a3f02abcc1cc8a53a08 coq/ lean/ verus/",
        "sha256sum cubie-tf-verified-proofs-corpus-20260704.zip   # git-archive ZIP container hashes are Git/toolchain-sensitive; use the published object below as canonical",
        "# Download the published object directly and hash it:",
        "curl -sL -o corpus.zip 'https://lib.trustfortress.ai/objects/cubie-tf%2Fverified-proofs%2F2026-07-04%2Fcubie-tf-verified-proofs-corpus-20260704.zip' && sha256sum corpus.zip   # must equal 0a60569028a0b6653444510343e435d35b57af9cdf044c39e808cca43a19fbbd",
        "# 2. Re-measure file counts and real-vs-flagged binding counts on the snapshot:",
        "unzip -q corpus.zip -d ex",
        "find ex/coq -name '*.v' | wc -l        # 487",
        "find ex/lean -name '*.lean' | wc -l    # 563",
        "find ex/verus -name '*.rs' | wc -l     # 476",
        "grep -rlE '\\bAdmitted\\b' ex/coq --include='*.v' | wc -l     # 138 files (coarse upper bound; some in comments)",
        "grep -rlE '\\bsorry\\b' ex/lean --include='*.lean' | wc -l    # 258 files raw; ~52 with sorry on a non-comment line",
        "grep -rlE 'external_body|ensures[[:space:]]+true\\b|assume\\(' ex/verus --include='*.rs' | wc -l  # 142 files",
        "grep -rlE 'use +crate::|use +cubie_core|extern crate cubie' ex/verus --include='*.rs' | wc -l    # 0 -> standalone, not runtime-wired",
        "# 3. Per-kernel verifier checks on a CLOSED file (scoped, not the whole ZIP):",
        "coqc ex/coq/CubieCusumAggregator.v && coqchk ex/coq/CubieCusumAggregator.vo   # expect Axioms: <none> on closed modules",
        "lake env lean ex/lean/CubieCusumAggregator.lean   # then '#print axioms <thm>' per theorem",
        "verus --crate-type lib ex/verus/cubie_cusum_aggregator_spec.rs   # standalone per-file check in CI; NOT report-only",
        "# 4. cubie-research triple-kernel corpus (clone iamdatanick/cubie-research at 1e8c3e26):",
        "pwsh tools/verify_proofs.ps1 -Build   # runs all proofs + coqchk Axioms: <none> audit + SHA-256 ledger integrity",
        "python tools/gen_sha_ledger.py --check # verify ledger/proof_hashes.json root_sha256 7881e3a9...d54"
      ],
      "verify": [
        "MANIFEST self-scoping: 'mixed corpus snapshot ... Do not cite the full ZIP as uniformly verified evidence' — status must be scoped/partial, never 'verified'.",
        "Snapshot SHA-256 reproduced live 2026-07-04: 0a60569028a0b6653444510343e435d35b57af9cdf044c39e808cca43a19fbbd (2723732 bytes) — matches manifest exactly.",
        "File counts reproduced on the verified ZIP: coq 487, lean 563, verus 476 (match manifest table).",
        "Flagged-file counts are file-presence UPPER BOUNDS: e.g. Lean raw sorry-in-file=258 but sorry-on-non-comment-line~=52; treat as 'files containing marker', not 'unverified theorems'.",
        "0/476 verus specs import crates + CI runs verus --crate-type lib per-file STANDALONE (proof-kernel-verification.yml is a hard gate on the CUB-1940..1966 band) => corpus is standalone; 'proofs verify the runtime' would be overstated. Binding = CUB-ID cross-ref + behavioral tests.",
        "Whitepaper numbers (1966 IDs, 1145 triple-parity, CUB-1940..1966 substantive) are cubie-math revision 2026-05-26 claims — attribute to whitepaper, do NOT present as cubie-tf snapshot's live verified-ID count.",
        "cubie-research 'Axioms: <none>' is scoped by its own README to axiom-free Coq DEFINITIONS ('trivial' on definitions); 14 CUB-TSP IDs proven all-three-kernels, no P-vs-NP claim."
      ],
      "gaps": [
        "Exact verified-vs-unclosed THEOREM count per kernel on the cubie-tf snapshot is not published as a machine-readable inventory; only file-presence marker counts (measured here) and two named example files are authoritative. A per-theorem coqchk/#print-axioms/verus sweep would be needed to produce true closed-theorem counts; the MANIFEST deliberately declines to make that blanket claim.",
        "Whitepaper's 1,145-ID triple-kernel-parity and 1,966-unique-ID figures are stated for the cubie-math revision (2026-05-26) and were not re-derivable against the cubie-tf snapshot within this task; the snapshot's live unique-CUB-ID parity count is unmeasured.",
        "The v6 whitepaper PDF header cites github.com/iamdatanick/cubie-math (frozen/absorbed source-mirror), so its counts predate the cubie-tf monorepo snapshot; treat as historical-revision provenance, not current cubie-tf state."
      ]
    },
    {
      "id": "tep-far0",
      "registry": {
        "label": "Unified CUB registry (honest per-CUB status)",
        "url": "https://registry.trustfortress.ai/registry"
      },
      "title": "TEP detector evidence: held-out Rieth-2017 result — 0 of 500 fault-free runs alarmed, all 20 faults detected — plus superseded in-sample v8.1 replay and LLM comparison",
      "status": "scoped",
      "scope": "A held-out result, plus retained historical in-sample material that it does NOT vindicate. The headline 0/500 and 20/20 figures come from the Rieth-2017 TESTING splits, scored with coefficients, item selection and thresholds derived from TRAINING runs only and frozen, hashed and committed before any testing byte was read; the fit tool refuses any input whose basename contains 'Testing', and training is split three ways so no quantity is estimated and evaluated on the same runs. This is NOT a pristine first-exposure estimate: the fault-free testing file has now been scored three times across protocol versions and the faulty file twice, and the decision to restrict the residue channel to three items was PROMPTED BY (though not justified by) an observed false alarm in a wider eighteen-item variant. The strongest figure in this record that is test-blind in every fitted quantity remains component A's own — 0 false alarms with 17 of 20 faults at run-level 1.0000. Component A is NOT fully test-blind in its structure, and this is stated rather than implied: its seam layout is not canonical but the output of a search whose acceptance test scored candidates on the Braatz TEST traces (layoutSha256 fd1a3acd… resolves exactly to data/tep/layouts/_perfect_3wins_seed73_cusum.json), and the layout is load-bearing because it decides which variable pairs form the twelve conditional seams. The bias this could introduce is measured, not assumed: five profiles were fit on FIVE DISTINCT layouts and all five were scored on the held-out splits, and under every one of them the union is 0/500 fault-free and 20/20 at run level, with component A missing exactly IDV-3/9/15 every time. The property that search optimised for on Braatz — masked-trio detection at 1.0 — transfers to Rieth at 0.0 under all five. The detector reported here is a UNION OF TWO COMPONENTS and is a different detector from the legacy CUSUM/layout configuration; the 100/100/100 @ d00 FAR=0.000% result remains an in-sample calibration identity and is retained below as superseded historical provenance, not as support for this claim. Component B is a Python reference implementation, not the shipped Rust detector.",
      "statement": "HELD-OUT RESULT (2026-08-23, protocol v3). On the held-out Rieth-2017 testing splits (Harvard Dataverse doi:10.7910/DVN/6C3JR1), a union of two frozen detectors alarms on 0 of 500 fault-free runs and reaches run-level detection 1.0000 on all twenty faults, 500 runs each, zero right-censored. For 0 alarmed runs out of 500 the exact one-sided 95% binomial upper bound is 1 - 0.05^(1/500) = 0.005974 (0.5974% per run); the supported wording is observed 0/500, NOT FAR = 0. Component A is the pre-existing marginal-residual detector, which carries 17 faults at 1.0000 with shatters_total=0 and far_proxy=0.0 across 480,000 fault-free rows. Component B is a new three-item full-conditional residue channel (artifact SHA-256 0e88662d67b8d459552be5bf160d9cfa40c7648635fd90afc436e9a99eed0f13) asked only for IDV-3/9/15, the three disturbances the decentralised controller masks; each of 52 measurements is predicted from all other measurements at the same instant plus 16 lags of all 52 (885 regressors), divided by fitted sigma, and reduced to four window moments over a 360-sample window at stride 8. Measured alone on the faulty testing file, component B reaches 1.0000 on 19 of 20 faults and 0.0020 on IDV-4, which component A carries at 1.0000; its worst-run post-onset margins on the masked trio are x1.982 (IDV-3), x4.166 (IDV-9) and x5.537 (IDV-15) against a worst clean window of x0.4376 across all 500 fault-free runs. Every fault has at least one component at 1.0000, so the union requires no run-level alignment between components. THIS SUPERSEDES THE PRIOR FAULT-9 FAILURE: the corrected 50-active-cell profile's grouped-Training fault 9 = 4/500 (0.8%) missed its predeclared 1% floor, whereas fault 9 is now detected on 500 of 500 held-out runs. It does NOT vindicate the legacy 100/100/100 figure, which belongs to a different detector and remains an in-sample CUSUM calibration identity (h = 1.5 x observed d00 peak, so zero false alarms on the calibration set is true by construction). SUPERSEDED HISTORICAL MATERIAL FOLLOWS. The merged v8.1 research paper at cubie-research commit bd51e5e reports the complete recovered seed-19 replay over d00/d03/d09/d15: 2,400/2,400 fault-active alarms, 125/1,440 clean-labelled alarms (all 125 before the declared fault onset), d00 0/960 alarms, and 3,715/3,840 correct rows (96.745%). On the common 192-window, 52-channel schedule, Cubie scored 184/192 (95.833%); strict Opus 4.7 scored 96/192 (50.000%), strict Opus 4.8 85/192 (44.271%), and strict Fable 5 105/192 (54.688%). With provider-returned adaptive-thinking summaries, Opus 4.7 scored 102/192 (53.125%), Opus 4.8 86/192 (44.792%), and Fable 5 102/192 (53.125%); Cubie is unchanged because it is local and deterministic. The May-era search also reproduced 60/60 saturated searches and the historical 100%/100%/100% with d00 0/960 control, but that layout and threshold policy were selected on the exposed traces, so it is not an out-of-sample false-alarm or sensitivity estimate. The corrected 50-active-cell schema-v3 reference has five-fold whole-run grouped-Training estimates of fault 3 = 463/500 (92.6%), fault 15 = 148/500 (29.6%), and fault 9 = 4/500 (0.8%); fault 9 failed the predeclared 1% floor. No complete sealed provider, exact float/compiler/product replay, untouched confirmation set, hardware benchmark, soak, or production authority exists.",
      "evidence": [
        {
          "artifact": "PROTOCOL V3 SETTLED RESULT — the held-out record: predeclaration, raw unedited result JSON for both testing splits, and the union accounting. Read PREDECLARED_PROTOCOL.md section 7 for the exposure disclosure.",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "docs/audit/tep_retest_2026-08/protocol_v3/RESULTS.md",
          "ref": "d3b86dcddd8927dc38ed6c8dc462f645404bf409",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/d3b86dcddd8927dc38ed6c8dc462f645404bf409/docs/audit/tep_retest_2026-08/protocol_v3/RESULTS.md"
        },
        {
          "artifact": "Predeclared protocol v3 — fixes the artifact SHA-256, alarm rule, numeric floors, outcome classes and exact scoring commands BEFORE the scorer was pointed at a testing file. Section 7 carries the exposure accounting.",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "docs/audit/tep_retest_2026-08/protocol_v3/PREDECLARED_PROTOCOL.md",
          "ref": "d3b86dcddd8927dc38ed6c8dc462f645404bf409",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/d3b86dcddd8927dc38ed6c8dc462f645404bf409/docs/audit/tep_retest_2026-08/protocol_v3/PREDECLARED_PROTOCOL.md"
        },
        {
          "artifact": "tools/tep_conditional_channel.py — the full-conditional residue channel: fit and score subcommands. fit REFUSES any input whose basename contains 'Testing', which is what makes the train/test separation structural rather than procedural.",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "tools/tep_conditional_channel.py",
          "ref": "d3b86dcddd8927dc38ed6c8dc462f645404bf409",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/d3b86dcddd8927dc38ed6c8dc462f645404bf409/tools/tep_conditional_channel.py"
        },
        {
          "artifact": "diagnostic_v3/FINDINGS.md — five mechanisms measured to FAIL at closing the masked-fault gap (persistence, k-of-n items, block aggregation, model capacity, pooled multivariate T-squared), recorded so they are not retried. Protocol v2 is committed alongside as a MISS at 1/500 false alarms.",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "docs/audit/tep_retest_2026-08/diagnostic_v3/FINDINGS.md",
          "ref": "d3b86dcddd8927dc38ed6c8dc462f645404bf409",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/d3b86dcddd8927dc38ed6c8dc462f645404bf409/docs/audit/tep_retest_2026-08/diagnostic_v3/FINDINGS.md"
        },
        {
          "artifact": "latency_masked_trio.json — component B's measured detection latency on IDV-3, IDV-9 and IDV-15, derived 2026-08-24. The delay is identically 359 samples (17.95 h) on all 500 held-out runs of each of the three faults, which is exactly the 360-sample window floor: every run alarms in its FIRST post-onset window, so the statistic contributes no latency of its own and the window length is the only lever on it. Because a constant delay is indistinguishable from a degenerate computation, the artifact also records the first window's own margin — minimum across runs x1.748 (IDV-3), x2.037 (IDV-9), x4.391 (IDV-15), with every post-onset window of every run crossing — so the floor is demonstrably reached with headroom rather than marginally. Produced read-only from the hash-pinned thresholds by tools/tep_masked_latency.py; it is the same category as the paper's figure generator and NOT a further evaluation of the held-out splits, so the exposure counts recorded in this claim are unchanged by it.",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "docs/audit/tep_retest_2026-08/protocol_v3/latency_masked_trio.json",
          "ref": "d3b86dcddd8927dc38ed6c8dc462f645404bf409",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/d3b86dcddd8927dc38ed6c8dc462f645404bf409/docs/audit/tep_retest_2026-08/protocol_v3/latency_masked_trio.json"
        },
        {
          "artifact": "Paper — 'Detecting Controller-Masked Faults in the Tennessee Eastman Process at Zero False Alarms', 13 pages. PDF SHA-256 f30ae8f411e62131684435022795c46b265658783327578b76f5f435201b88cc. The LLM section is now built on a positive control and carries a like-for-like head-to-head against gpt-5 on seven held-out runs; the 11-page revision at c0a4236c (PDF f0525769…) carries the superseded blind-window probe, and the 10-page revision at 7b8bbd6e5 predates component B's measured latency.",
          "kind": "source",
          "access": "private",
          "repo": "cubie-research",
          "path": "paper/tep_masked_fault_detection.tex",
          "ref": "0ec3818dd0970a89760237fc387f2fb06b75a09c",
          "url": "https://github.com/iamdatanick/cubie-research/blob/0ec3818dd0970a89760237fc387f2fb06b75a09c/paper/tep_masked_fault_detection.tex"
        },
        {
          "artifact": "Head-to-head record — union detector vs gpt-5 on seven runs extracted from the held-out Rieth-2017 testing tables, both systems scored on byte-identical files. Union 7/7 correct; gpt-5 4/7. They agree on both fault-free runs (0/2 false alarms each) and on both unmasked positive controls IDV-1 and IDV-6 (2/2 each); the entire difference is the masked trio, 3/3 versus 0/3. Carries the sha256 of every input run, the extraction commands, and an explicit list of what the comparison does NOT establish — notably that seven runs is a demonstration, not a rate.",
          "kind": "source",
          "access": "private",
          "repo": "cubie-research",
          "path": "docs/evidence/2026-08-24-tep-llm-headtohead.md",
          "ref": "0ec3818dd0970a89760237fc387f2fb06b75a09c",
          "url": "https://github.com/iamdatanick/cubie-research/blob/0ec3818dd0970a89760237fc387f2fb06b75a09c/docs/evidence/2026-08-24-tep-llm-headtohead.md"
        },
        {
          "artifact": "tep_head_to_head.py — scores the frozen union detector one run at a time so it can be placed beside a per-run LLM result. It imports cubie-tf's canonical tools/tep_conditional_channel.py and calls that module's own read_csv_table/residual/rolling against artifact sha256 0e88662d67b8d459552be5bf160d9cfa40c7648635fd90afc436e9a99eed0f13; the detector is not reimplemented and nothing in cubie-tf is modified. Component A is cited rather than re-executed, which the file states and justifies: its published run-level FDR on these faults is exactly 1.0000 or exactly 0.0000 and its fault-free alarm count is 0 of 500, all degenerate, so each single run's outcome follows with certainty.",
          "kind": "source",
          "access": "private",
          "repo": "cubie-research",
          "path": "tools/tep_head_to_head.py",
          "ref": "0ec3818dd0970a89760237fc387f2fb06b75a09c",
          "url": "https://github.com/iamdatanick/cubie-research/blob/0ec3818dd0970a89760237fc387f2fb06b75a09c/tools/tep_head_to_head.py"
        },
        {
          "artifact": "REPRODUCING_TEP_MASKED_FAULTS.md — end-to-end rebuild of component B from the public Harvard Dataverse corpus, with digests for every intermediate artifact and an explicit 'what reproduction does and does not establish' section.",
          "kind": "source",
          "access": "private",
          "repo": "cubie-research",
          "path": "paper/REPRODUCING_TEP_MASKED_FAULTS.md",
          "ref": "c0a4236c5eba4dd660378ba64f0ab110417b93fb",
          "url": "https://github.com/iamdatanick/cubie-research/blob/c0a4236c5eba4dd660378ba64f0ab110417b93fb/paper/REPRODUCING_TEP_MASKED_FAULTS.md"
        },
        {
          "artifact": "Corrected 50-active-cell mixed-scale schema-v3 reference, May recovery, grouped-Training evidence, and triple-kernel certification (CUB-3240, CUB-3251..3256). The certification explicitly denies confirmation and production eligibility. SUPERSEDED 2026-08-23 for current held-out status; retained as historical provenance.",
          "kind": "source",
          "access": "private",
          "repo": "cubie-research",
          "path": "docs/evidence/2026-08-01-tep-migration-certification.md",
          "ref": "bd51e5e094683e2cd0ab1db8bc7a02c4888e4cab",
          "url": "https://github.com/iamdatanick/cubie-research/blob/bd51e5e094683e2cd0ab1db8bc7a02c4888e4cab/docs/evidence/2026-08-01-tep-migration-certification.md"
        },
        {
          "artifact": "Merged v8.1 TEP reproduction and evidence pack pinned to cubie-research bd51e5e. Contains the credential-safe Anthropic harness, strict and adaptive Opus 4.7/4.8/Fable 5 receipts, complete Cubie replay receipts, certification, and paper source/PDF.",
          "kind": "download",
          "access": "public",
          "url": "https://lib.trustfortress.ai/objects/cubie-research%2Ftep-v8.1-evidence%2F2026-08-03%2Fcubie-research-tep-evidence-bd51e5e.zip",
          "sha256": "613179f7c24afda40ea2237f4b9d9a72a07b65c71b069ae16761a2c641eb005b"
        },
        {
          "artifact": "V8.1 TEP whitepaper PDF - merged research account of the recovered full-row replay, common 52-channel/960-row LLM comparison, token/time/cost receipts, and corrected Training-only profile boundary.",
          "kind": "download",
          "access": "public",
          "url": "https://lib.trustfortress.ai/objects/cubie-research%2Ftep-v8.1-evidence%2F2026-08-03%2Fcubie_tep_whitepaper.pdf",
          "sha256": "80c017a2f9d8d6142fd964d6e47964d9d0973e1634d181014c78fb22bc8a7e75"
        },
        {
          "artifact": "Historical pre-retest May recovery subset pinned to cubie-research 3a9950f. Retained for provenance; superseded for current replay and paper results by the bd51e5e v8.1 pack above.",
          "kind": "download",
          "access": "public",
          "url": "https://lib.trustfortress.ai/objects/cubie-research%2Ftep-may-recovery%2F2026-08-01%2Fcubie-research-tep-may-evidence-3a9950f.zip",
          "sha256": "43ca2f059655b3d334aaae24a87e1a8aa25b161bfba556b31d07f5d359a7bbd1"
        },
        {
          "artifact": "Original-byte May 28 strict Opus 4.7/4.8 result JSON.",
          "kind": "download",
          "access": "public",
          "url": "https://lib.trustfortress.ai/objects/cubie-research%2Ftep-may-recovery%2F2026-08-01%2Fopus47_opus48_strict_20260528.original.json",
          "sha256": "ae37ee3ae03b687f41c10af6d5bfcb72281c4180352161bc52c3c4c20422b4e6"
        },
        {
          "artifact": "Original-byte May 29 Cubie / Opus 4.8 head-to-head summary JSON.",
          "kind": "download",
          "access": "public",
          "url": "https://lib.trustfortress.ai/objects/cubie-research%2Ftep-may-recovery%2F2026-08-01%2Fcubie_opus48_head_to_head_20260529.original.json",
          "sha256": "8665dae889583ad4b8b4ee36ab3be96d7ea16ed5ef087dd3395e0f483eafd9be"
        },
        {
          "artifact": "Public source pack — cubie-tep-source.zip (git-archive of the TEP detector crate: src/cusum.rs Page-CUSUM, two-pass calibration, OR-gate, src/bin/tep_detect.rs + tep_layout_search.rs). Enables source inspection without repo access; end-to-end build/run requires placing the pack in a matching cubie-tf workspace checkout. Bytes and regeneration notes are tracked in docs/resource-library/2026-07-04-source-packs.md.",
          "kind": "download",
          "access": "email-gated",
          "url": "https://lib.trustfortress.ai/objects/cubie-tf%2Fsource-packs%2F2026-07-04%2Fcubie-tep-source.zip",
          "sha256": "fbdd757730dbcd9f883849ac79b7a9a67601ed0cee574d9800b810f88d140394"
        },
        {
          "artifact": "Historical V6 TEP whitepaper PDF - retained for provenance and superseded by the v8.1 research paper for current replay and readiness claims. States the May same-trace 100%/100%/100% and d00 FAR = 0.000% calibration control.",
          "kind": "download",
          "access": "public",
          "url": "https://lib.trustfortress.ai/objects/cubie-tf%2Fv6-whitepaper-evidence%2F2026-07-03%2Fv6_cubie_tep_whitepaper.pdf",
          "sha256": "8569EC5FF26A77E3B55591E11FF8A75DB26EBEB82B523E94F376696AC60B9B05"
        },
        {
          "artifact": "cubie-tep crate lib.rs — TEP fault detector crate root (STICKER layer over cubie-core; IDV-3/9/15 closed-loop-masked trio; Q16.16 f64-firewall; all algorithms executable, no stubs)",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "cubie-tep/src/lib.rs",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/cubie-tep/src/lib.rs"
        },
        {
          "artifact": "cubie-tep/src/cusum.rs — CUB-1921 Page(1954) CUSUM aggregator: s_t=max(0,s_{t-1}+(|z|-k)); calibrate_two_pass (PASS A k[c]=E|z|+0.25 sigma, PASS B h[c]=1.5 x observed d00 peak => FAR=0 by construction); OR-gate any_fired()",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "cubie-tep/src/cusum.rs",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/cubie-tep/src/cusum.rs"
        },
        {
          "artifact": "docs/audit/empirical_peak.md — authoritative peak record: 100.00/100.00/100.00 @ d00 FAR=0.000% (0/960), commit 721394f, CUB-1921 CUSUM OR-gate; reproduced seeds {2024,5,73}; explicit in-sample calibration-identity scope disclosure; PCA beat factors 16.67x/33.33x/10.00x; full history table",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "docs/audit/empirical_peak.md",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/docs/audit/empirical_peak.md"
        },
        {
          "artifact": "docs/audit/tep_recovery_status.md — closure of the 'perfect FAR=0% + three perfect FDRs' debt items; 100/100/100 across 3 V3-derived layouts; Pareto-improvement over prior 717e689 peak (41.12/31.62/29.12 @ FAR=0%)",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "docs/audit/tep_recovery_status.md",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/docs/audit/tep_recovery_status.md"
        },
        {
          "artifact": "docs/audit/tep_oos_results.md — HONEST OOS boundary: status VERIFIED_BAD; default-config held-out proxy on d03/d09/d15 reports 0.00% FDR proxy; states the 100/100/100 headline 'remains an in-sample CUSUM calibration identity, not a held-out product claim'",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "docs/audit/tep_oos_results.md",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/docs/audit/tep_oos_results.md"
        },
        {
          "artifact": "cubie-tep/src/bin/tep_detect.rs — CLI detector over Rieth-2017 CSV schema (55 cols; fault inject sample 161); emits per-fault FDR proxy, FAR proxy, p99 detection latency",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "cubie-tep/src/bin/tep_detect.rs",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/cubie-tep/src/bin/tep_detect.rs"
        },
        {
          "artifact": "cubie-tep/src/bin/tep_layout_search.rs — layout-search harness that reproduces the peak (--max-iters, --seed, --cusum default-on, --algorithm pareto)",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "cubie-tep/src/bin/tep_layout_search.rs",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/cubie-tep/src/bin/tep_layout_search.rs"
        },
        {
          "artifact": "data/tep/layouts/best_found_by_search.json — search-discovered sticker permutation (seed 1729) used for the peak",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "data/tep/layouts/best_found_by_search.json",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/data/tep/layouts/best_found_by_search.json"
        },
        {
          "artifact": "data/tep/layouts/_perfect_3wins_seed2024_cusum.json — one of the three reproduced perfect-3 layout artifacts (seed 2024)",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "data/tep/layouts/_perfect_3wins_seed2024_cusum.json",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/data/tep/layouts/_perfect_3wins_seed2024_cusum.json"
        },
        {
          "artifact": "data/tep/README.md — dataset provenance (Russell/Chiang/Braatz d00/d03/d09/d15 from camaramm/tennessee-eastman-profBraatz; .dat files gitignored); local reproduction recipe. NOTE: the --use-braatz-baseline path alone underperforms PCA; the 100/100/100 peak requires the search layout + CUB-1921 CUSUM",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "data/tep/README.md",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/data/tep/README.md"
        },
        {
          "artifact": "proofs/coq/tep/CUB_1952_CalibrationIdentity.v — Coq proof that FAR=0 on the calibration set is a definitional identity of h=alpha*max_t s_t with alpha>1",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "proofs/coq/tep/CUB_1952_CalibrationIdentity.v",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/proofs/coq/tep/CUB_1952_CalibrationIdentity.v"
        },
        {
          "artifact": "proofs/lean/tep/CUB_1952_CalibrationIdentity.lean — Lean4 kernel of the CUB-1952 calibration identity",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "proofs/lean/tep/CUB_1952_CalibrationIdentity.lean",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/proofs/lean/tep/CUB_1952_CalibrationIdentity.lean"
        },
        {
          "artifact": "proofs/verus/tep/CUB_1952_calibration_identity_spec.rs — Verus spec of the CUB-1952 calibration identity",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "proofs/verus/tep/CUB_1952_calibration_identity_spec.rs",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/proofs/verus/tep/CUB_1952_calibration_identity_spec.rs"
        },
        {
          "artifact": "proofs/coq/tep/CUB_1953_OrGateCompleteness.v — Coq proof: OR-gate completeness (CUSUM OR binomial catches both fast and slow regimes)",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "proofs/coq/tep/CUB_1953_OrGateCompleteness.v",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/proofs/coq/tep/CUB_1953_OrGateCompleteness.v"
        },
        {
          "artifact": "proofs/coq/tep/CUB_1954_V3LayoutDominance.v — Coq proof: V3/search layout dominance",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "proofs/coq/tep/CUB_1954_V3LayoutDominance.v",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/proofs/coq/tep/CUB_1954_V3LayoutDominance.v"
        },
        {
          "artifact": "coq/CUB_1832_TepBelnapBaselineThreshold.v + coq/CubieCusumAggregator.v — the binomial-bounce (CUB-1832) and CUSUM aggregator kernels the OR-gate combines",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "coq/CubieCusumAggregator.v",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/coq/CubieCusumAggregator.v"
        },
        {
          "artifact": "TEP work evidence pack (library) — publishes the raw Rieth-2017 RData files (>1GB compressed) that are gitignored in the repo, plus cubie-tep crate, layouts, baseline stats, and benchmark/Opus-4.8 evidence. Manifest key cubie-tf/tep-work/2026-07-03/MANIFEST.md",
          "kind": "download",
          "access": "email-gated",
          "url": "https://lib.trustfortress.ai/objects/cubie-tf%2Ftep-work%2F2026-07-03%2FMANIFEST.md"
        }
      ],
      "reproduce": [
        "# ===== HELD-OUT RESULT (protocol v3, 2026-08-23) — reproduce component B end to end =====",
        "# Full step-by-step with digests at every stage: cubie-research paper/REPRODUCING_TEP_MASKED_FAULTS.md",
        "# 0. Requirements: Python 3.14 + numpy/pandas/pyreadr, ~10 GB free disk, ~4 GB RAM, ~25 min. No GPU, no network after step 1.",
        "python -m pip install numpy pandas pyreadr",
        "# 1. Download all four .RData files from Harvard Dataverse doi:10.7910/DVN/6C3JR1 into data/tep/rieth2017/ and verify:",
        "md5sum data/tep/rieth2017/*.RData   # Testing digests are pinned in tools/tep_rieth_testing_to_csv.py (ARTIFACTS), which fails closed on drift",
        "# 2. Convert the two TESTING files to canonical CSV (row order is load-bearing; use the converter, not an ad-hoc export):",
        "python tools/tep_rieth_testing_to_csv.py --source data/tep/rieth2017/TEP_FaultFree_Testing.RData --kind fault_free_testing --output data/tep/rieth_retest/rieth_test_ff.csv --receipt data/tep/rieth_retest/receipt_ff.json",
        "python tools/tep_rieth_testing_to_csv.py --source data/tep/rieth2017/TEP_Faulty_Testing.RData --kind faulty_testing --output data/tep/rieth_retest/rieth_test_faulty.csv --receipt data/tep/rieth_retest/receipt_faulty.json",
        "sha256sum data/tep/rieth_retest/rieth_test_ff.csv      # expect 605d62504c33404ef12c10a04e6a538d8fd11b9cb88cbb2780d7f2c1cb1509a2",
        "# 3. Fit the residue channel from TRAINING ONLY (fit refuses any input whose basename contains 'Testing'):",
        "python tools/tep_conditional_channel.py fit --root data/tep/rieth2017 --select-faults 3,9,15 --out docs/audit/tep_retest_2026-08/protocol_v3/residue_channel.npz",
        "sha256sum docs/audit/tep_retest_2026-08/protocol_v3/residue_channel.npz   # MUST equal 0e88662d67b8d459552be5bf160d9cfa40c7648635fd90afc436e9a99eed0f13, else you have not reproduced the evaluated detector — stop and reconcile before scoring",
        "# 4. Score both held-out splits:",
        "python tools/tep_conditional_channel.py score --artifact docs/audit/tep_retest_2026-08/protocol_v3/residue_channel.npz --input data/tep/rieth_retest/rieth_test_ff.csv --out results_ff.json --samples 960 --onset 161      # expect alarmedRunsAnyWindow = 0 of 500, maxRunMarginAnyWindow = 0.43759207958620044",
        "python tools/tep_conditional_channel.py score --artifact docs/audit/tep_retest_2026-08/protocol_v3/residue_channel.npz --input data/tep/rieth_retest/rieth_test_faulty.csv --out results_faulty.json --samples 960 --onset 161 --faulty   # expect IDV-3 1.0000 x1.982, IDV-9 1.0000 x4.166, IDV-15 1.0000 x5.537, IDV-4 0.0020 (carried by component A)",
        "# 3b. OPTIONAL, read-only: re-derive component B's detection latency from the same frozen artifact. Reads no threshold it does not already carry and cross-checks every margin against results_faulty.json above, aborting on disagreement; it is not a further evaluation and does not change the exposure counts.",
        "python tools/tep_masked_latency.py --artifact docs/audit/tep_retest_2026-08/protocol_v3/residue_channel.npz --input data/tep/rieth_retest/rieth_test_faulty.csv --result docs/audit/tep_retest_2026-08/protocol_v3/results_faulty.json --out docs/audit/tep_retest_2026-08/protocol_v3/latency_masked_trio.json   # expect the 359-sample (17.95 h) window floor on 500/500 runs of each of IDV-3, IDV-9, IDV-15, with first-post-onset-window margins of at least x1.748, x2.037 and x4.391 respectively",
        "# 5. Confirm the partition the union rule depends on, read off component A's PREVIOUSLY committed result:",
        "python -c \"import json; r=json.load(open('docs/audit/tep_retest_2026-08/result_faulty_seed73.json')); print('A at 1.000:',[f['fault_id'] for f in r['per_fault'] if f['run_fdr']==1.0]); print('A censored:',[f['fault_id'] for f in r['per_fault'] if f['run_fdr']==0.0])\"   # expect censored = [3, 9, 15]",
        "# 6. Rebuild the paper and re-verify every figure against the committed record (aborts on any disagreement):",
        "python paper/make_rieth_figures.py --tf /path/to/cubie-tf && cd paper && pdflatex tep_masked_fault_detection.tex && pdflatex tep_masked_fault_detection.tex",
        "# ===== SUPERSEDED HISTORICAL MATERIAL BELOW — in-sample v8.1 replay, LLM comparison, legacy 100/100/100 =====",
        "# Public source inspection: download the detector crate source pack.",
        "curl -sL -o cubie-tep-source.zip 'https://lib.trustfortress.ai/objects/cubie-tf%2Fsource-packs%2F2026-07-04%2Fcubie-tep-source.zip'   # hashes in https://lib.trustfortress.ai/objects/cubie-tf%2Fsource-packs%2F2026-07-04%2FMANIFEST.md",
        "# This partial crate pack is not standalone-buildable: unzip into a matching cubie-tf checkout to build (`cargo run -p cubie-tep --bin tep_detect`), or read cubie-tep/src/cusum.rs directly for the CUSUM + calibration-identity logic.",
        "# 1. Get the dataset (gitignored in repo; published in the library tep-work pack). Repo path: data/tep/README.md documents source camaramm/tennessee-eastman-profBraatz (d00/d00_te/d03_te/d09_te/d15_te .dat).",
        "git clone https://github.com/iamdatanick/cubie-tf.git && cd cubie-tf && git checkout 88ef7e8303ed82b4e0af398960be172f8bb560db",
        "# 2. Build the detector + search harness (release):",
        "cargo build --release --package cubie-tep --bin tep_detect --bin tep_layout_search",
        "# 3. Reproduce the search-discovered peak layout (seed 1729, 100 iters, CUSUM default-on):",
        "python3 tools/tep_layout_search.py --max-iters 100 --seed 1729   # emits data/tep/layouts/best_found_by_search.json",
        "# (Rust harness equivalent: ./target/release/tep_layout_search --seed 1729 --max-iters 100)",
        "# 4. Run the detector per fault (Rieth convention: fault injected at sample 161):",
        "./target/release/tep_detect --csv data/tep/d00_test.csv --summary-only                              # expect d00 FAR = 0.000% (0/960)",
        "./target/release/tep_detect --csv data/tep/d03_test.csv --fault-inject-sample 161 --summary-only    # expect IDV-3 FDR = 100.00%",
        "./target/release/tep_detect --csv data/tep/d09_test.csv --fault-inject-sample 161 --summary-only    # expect IDV-9 FDR = 100.00% (canonical window, samples 161+)",
        "./target/release/tep_detect --csv data/tep/d15_test.csv --fault-inject-sample 161 --summary-only    # expect IDV-15 FDR = 100.00%",
        "# 5. Reproduce 60/60 saturation (whitepaper): run across 20 seeds x 3 algorithms (greedy/pareto/simanneal) at 1000-iter budget via tep_layout_search --algorithm {greedy,pareto,simanneal}.",
        "# 6. Verify triple-kernel proofs of the calibration identity (per docker/ toolchains): coqchk on proofs/coq/tep/CUB_1952_CalibrationIdentity.v ; lean on proofs/lean/tep/CUB_1952_CalibrationIdentity.lean ; verus --crate-type lib on proofs/verus/tep/CUB_1952_calibration_identity_spec.rs.",
        "# 7. (Honest boundary) OOS check: python tools/tep_oos_validation.py --dataset-dir data/tep --out docs/audit/tep_oos_results.md  # default config returns 0.00% FDR proxy => confirms in-sample-only scope.",
        "# 8. Download the merged v8.1 research evidence, supply your own key only in the current process, and treat the output as a new provider receipt.",
        "curl -sL -o tep-v81-evidence.zip 'https://lib.trustfortress.ai/objects/cubie-research%2Ftep-v8.1-evidence%2F2026-08-03%2Fcubie-research-tep-evidence-bd51e5e.zip'",
        "# PowerShell: Expand-Archive ./tep-v81-evidence.zip ./tep-v81-evidence; Set-Location ./tep-v81-evidence/cubie-research-bd51e5e/evidence/tep/may-2026-opus47-opus48",
        "# Validate the exact 52-channel/960-row schedule without spending tokens: pwsh ./replay_opus_windows.ps1 -DatasetDir C:\\path\\to\\tep-csv -Models claude-opus-4-7,claude-opus-4-8,claude-fable-5 -MeasurementCount 52 -FullCoverage -DryRun -OutFile ./dry-run.json",
        "# Strict run: $env:ANTHROPIC_API_KEY='<your own key>'; pwsh ./replay_opus_windows.ps1 -DatasetDir C:\\path\\to\\tep-csv -Models claude-opus-4-7,claude-opus-4-8,claude-fable-5 -MeasurementCount 52 -FullCoverage -OutFile ./full52-strict.json",
        "# Adaptive-summary run: pwsh ./replay_opus_windows.ps1 -DatasetDir C:\\path\\to\\tep-csv -Models claude-opus-4-7,claude-opus-4-8,claude-fable-5 -MeasurementCount 52 -FullCoverage -AdaptiveThinking -ThinkingEffort high -OutFile ./full52-adaptive.json; Remove-Item Env:ANTHROPIC_API_KEY"
      ],
      "verify": [
        "Held-out fault-free scoring, re-measured from the committed raw JSON docs/audit/tep_retest_2026-08/protocol_v3/results_ff.json: artifactSha256 = 0e88662d67b8d459552be5bf160d9cfa40c7648635fd90afc436e9a99eed0f13, inputSha256 = 605d62504c33404ef12c10a04e6a538d8fd11b9cb88cbb2780d7f2c1cb1509a2, samplesPerRun 960, onsetSample 161, window 360, stride 8, runs 500, windowsPerRun 74, alarmedRunsAnyWindow = 0, maxRunMarginAnyWindow = 0.43759207958620044. Thresholds [0.4965034550825863, 3.957963428710814, 0.2013490512921977] on items [[20, xmeas_21, abs_mean_z], [16, xmeas_17, var_z], [20, xmeas_21, acf_pow6]].",
        "Held-out faulty scoring, re-measured from docs/audit/tep_retest_2026-08/protocol_v3/results_faulty.json: 20 faults x 500 runs. Component B alone reaches detectionRatePostOnset = 1.0000 on 19 of 20 faults and 0.0020 on IDV-4. Worst-run post-onset margins on the masked trio: IDV-3 x1.982, IDV-9 x4.166, IDV-15 x5.537. Component A covers IDV-4 at 1.0000, so the union is 20/20.",
        "Threshold independence, which is what bounds the union false alarms before scoring: cmd_fit derives each threshold per item and each fault's item per fault, so the three retained thresholds are numerically identical to those committed under the earlier eighteen-item variant. The three-item channel's alarm set is therefore a strict subset of the eighteen-item channel's.",
        "Train/test separation is enforced in code, not by discipline: tep_conditional_channel.py fit refuses any input whose basename contains 'Testing', so no testing byte can reach the coefficients, the item selection or the thresholds. Training is split three ways — coefficients from clean runs 1-250, item selection on clean 251-375 plus faulty 1-250, thresholds from clean 251-500.",
        "Paper artifacts at cubie-research c0a4236c5eba4dd660378ba64f0ab110417b93fb: tep_masked_fault_detection.pdf SHA-256 = f052576958bf86953516b2e768b6df331ecb42ed107a0ef293fa37c154f60619 (11 pages), tep_masked_fault_detection.tex SHA-256 = bb86205b23a7ed7e0bab4030476c12fb8dbf85bf65e1a8f416662d70e5fa3e46, REPRODUCING_TEP_MASKED_FAULTS.md SHA-256 = 27f362599ca71543e914883e3df2763bb73b58266b8c719aee7e4c630b322970. The figure generator make_rieth_figures.py cross-checks nine derived quantities against the committed result JSONs and aborts rather than typesetting on any disagreement; all nine pass.",
        "Latency artifact at cubie-tf d3b86dcddd8927dc38ed6c8dc462f645404bf409: tools/tep_masked_latency.py SHA-256 = 755dfeb4dfa38e54224275166bf8e818b35bbc30048246f6c15f0c158192931f, latency_masked_trio.json SHA-256 = df158190975f8183b8bbf9501ea1e0ddeb5a7f058e7e119010523c62c8124823. The tool re-derives each fault's worst-run margin and alarmed-run count from the frozen thresholds and aborts unless both agree with the committed results_faulty.json; all six checks pass (x1.982320597, x4.166148755, x5.536743 and 500/500 alarmed on each of IDV-3, IDV-9, IDV-15).",
        "V8.1 whitepaper PDF SHA-256 = 80c017a2f9d8d6142fd964d6e47964d9d0973e1634d181014c78fb22bc8a7e75 (9 pages, merged at cubie-research bd51e5e). SUPERSEDED for current held-out status; retained as historical provenance.",
        "Complete seed-19 continuous replay: 3,840 rows; 2,400/2,400 fault-active alarms; 125/1,440 clean-labelled alarms, all pre-onset; d00 0/960; 3,715/3,840 correct (96.745%).",
        "Common full-coverage schedule: 52 channels, 48 non-overlapping windows per file, 192 decisions per system. Cubie 184/192; strict Opus 4.7 96/192, Opus 4.8 85/192, Fable 5 105/192; adaptive Opus 4.7 102/192, Opus 4.8 86/192, Fable 5 102/192.",
        "Historical V6 whitepaper PDF SHA-256 = 8569EC5FF26A77E3B55591E11FF8A75DB26EBEB82B523E94F376696AC60B9B05 (non-watermarked edition; retained as historical provenance).",
        "Whitepaper body (extracted): 'the final detector achieves FDR_IDV-3 = 100.00%, FDR_IDV-9 = 100.00%, FDR_IDV-15 = 100.00% at d00 FAR = 0.000%' and 'the zero-FAR boundary is not statistical inference but a calibration identity' and 'All 20x3 = 60 runs converge to the saturation peak ... 60/60 perfect-3'.",
        "empirical_peak.md history table row 2026-05-26 commit 721394f: 100.00%/100.00%/100.00%, 3 wins, d00 FAR=0.000% (0/960 by h-calibration construction).",
        "cusum.rs calibrate_two_pass: PASS B computes h[c] = (peaks[c] as f64 * 1.5) => guarantees P(fire on d00)=0 (calibration identity, matches CUB-1952).",
        "All 18 cited repo paths confirmed at evidence commit 88ef7e8303ed82b4e0af398960be172f8bb560db via gh api repos/iamdatanick/cubie-tf/contents/<path>?ref=88ef7e8303ed82b4e0af398960be172f8bb560db (each returned a blob sha).",
        "Triple-kernel suite CUB-1950..CUB-1959 present in proofs/{coq,lean,verus}/tep/ (git ls-files); CUB-1952/1953/1954 are the calibration-identity / OR-gate-completeness / layout-dominance proofs.",
        "OOS honesty gate: docs/audit/tep_oos_results.md status VERIFIED_BAD, 0.00% FDR proxy at default config, explicitly labels the headline 'in-sample CUSUM calibration identity, not a held-out product claim'."
      ],
      "gaps": [
        "CLOSED 2026-08-23 for the union detector, still OPEN for the legacy CUSUM/layout configuration. The clean transfer to the Rieth-2017 testing splits (Harvard Dataverse DOI 10.7910/DVN/6C3JR1) HAS now been run: 0/500 fault-free runs alarmed, 20/20 faults at run-level 1.0000, thresholds frozen and hashed before scoring. What remains open is (a) the legacy default-config detector that docs/audit/tep_oos_results.md records as VERIFIED_BAD at 0.00% FDR proxy — that document describes a different configuration and was NOT re-run, (b) an untouched first-exposure confirmation set, since the fault-free testing file has now been scored three times, and (c) Q16.16 fixed-point integration of component B into the shipped Rust detector, which was not exercised. The 100/100/100 @ FAR=0 result is in-sample (calibration identity), and the whitepaper + audit docs both scope it that way. Checked: whitepaper (library), cubie-tf audit docs + code, data/tep. Not a missing-evidence gap — it is an explicit scope boundary of the claim.",
        "The raw Braatz/Rieth .dat/.RData datasets are gitignored in cubie-tf (only committed baseline_stats.json / layouts / MANIFEST.sha256). They ARE published in the library tep-work evidence pack (>1GB compressed, cubie-tf/tep-work/2026-07-03/), but that manifest does not enumerate per-file object keys, so exact per-dataset object URLs could not be captured without extracting the pack.",
        "Repo attribution nuance: the whitepaper author line reads github.com/iamdatanick/cubie-math and is dated 2026-05-26 (pre-monorepo). The live, current code + proofs are in iamdatanick/cubie-tf (cubie-math was frozen and absorbed into the monorepo on 2026-05-27). All blob URLs above point to the live cubie-tf/main location.",
        "The corrected 50-active-cell mixed-scale schema-v3 reference and v8.1 evidence live in cubie-research at immutable merge commit bd51e5e. They contain reference semantics, offline tools, exact May source/control recovery, CUB-3240/CUB-3251..3256 proof triples, a corrected Training-only baseline, grouped-CV specialist evidence, and full Cubie/Anthropic replay receipts. Fault 3 reached 92.6% and fault 15 reached 29.6%, while fault 9 reached 0.8% and failed its predeclared 1% floor; the partial profile is therefore not confirmation-eligible. No sealed corrected provider bundle, untouched confirmation replay, or production authority exists. The legacy 100/100/100 result remains attributable only to its historical cubie-tf snapshot. SUPERSEDED 2026-08-23: the fault-9 floor failure recorded here no longer describes the current evidence — under the protocol-v3 union, fault 9 is detected on 500/500 held-out runs at a worst-run margin of x4.166. The grouped-Training figures in this paragraph are retained as historical provenance for the 50-active-cell profile, which is a different configuration.",
        "For 0 alarmed runs out of 500 representative independent runs, the exact one-sided 95% binomial upper bound is about 0.5974% per run. The supported wording is observed 0/500, not FAR = 0.",
        "PIN FRESHNESS: the held-out evidence below is pinned to the head commits of two OPEN pull requests — cubie-tf#1398 at d3b86dcddd8927dc38ed6c8dc462f645404bf409 and cubie-research#49 at c0a4236c5eba4dd660378ba64f0ab110417b93fb. Those SHAs are immutable and reachable now, but if either PR is squash-merged the canonical history will carry different SHAs and this claim must be re-pinned to the merge commits. Until both merge, the evidence lives outside the repositories' main branches. RE-PINNED ONCE ALREADY, on 2026-08-24, when the latency derivation moved both branch heads (cubie-tf#1398 from 4a8136d83, cubie-research#49 from 7b8bbd6e5); the superseded SHAs remain valid immutable commits but point at the pre-latency paper, which still asserts that no detection-delay figure exists. Cite the heads named above, not the earlier pair.",
        "Single-item fragility of the masked trio: each of IDV-3, IDV-9 and IDV-15 rests on ONE window statistic, and two of the three on the same cell (xmeas_21, reactor cooling water outlet temperature). A sensor fault or a re-tuned controller affecting xmeas_21 would remove two of the three detections at once. Masking is a property of the controller, so a different control scheme would redistribute which faults are masked and require re-selection — though not a change of method. All results are for the single decentralised control scheme distributed with the Rieth corpus.",
        "CLOSED 2026-08-24. This gap previously read that component B reports run-level detection only and that there is NO detection-delay figure for IDV-3, IDV-9 or IDV-15. There now is one. Component B's latency is bounded below by its own 360-sample rolling window (about 18 hours at the 3-minute sampling interval): the first window lying wholly after onset starts at sample 161 and cannot declare before its last sample at 520, a floor of 359 samples or 17.95 hours. The held-out data gives that floor exactly — on all 500 runs of each of the three faults the first post-onset window already crosses, so the measured delay is identically 359 samples with no spread whatever, and the window length is the only lever on it. Because a delay that is constant across 1500 runs is indistinguishable from a degenerate computation, the first window's own margin is reported with it: minimum across runs x1.748 (IDV-3), x2.037 (IDV-9), x4.391 (IDV-15), every post-onset window of every run crossing. STILL IN FORCE, and unchanged by the closure: component A's much shorter latency numbers must NOT be quoted for a fault only component B detects, nor pooled with B's into a single latency figure for the union — the two components measure on different timescales by construction. The derivation is read-only with respect to the evaluation (frozen hash-pinned thresholds, nothing can feed back into a detector parameter), the same category as the paper's figure generator, so the exposure counts recorded elsewhere in this claim are NOT incremented by it.",
        "Five mechanisms were measured and FAILED to close the gap on training data — persistence over consecutive windows, requiring k distinct items, block aggregation, higher model capacity, and a pooled multivariate T-squared over all 208 moments. They are recorded in docs/audit/tep_retest_2026-08/diagnostic_v3/FINDINGS.md so they are not retried, and protocol v2 is committed as a MISS (1/500 false alarms) rather than deleted."
      ]
    },
    {
      "id": "agentic-waste",
      "registry": {
        "label": "Unified CUB registry (honest per-CUB status)",
        "url": "https://registry.trustfortress.ai/registry"
      },
      "title": "TF Logs agentic-waste findings: GPU deadlock blast radius, VRAM lock, request-waste rate across ~45.3M real telemetry rows",
      "status": "verified",
      "scope": "Re-measured from the committed result JSONs (not the prior memory dossier). ~99.5% output<input waste is scoped to the Azure-2024 trace (44.1M of the ~45.3M rows); only the 66.85% blast-radius figure appears in a whitepaper.",
      "statement": "TrustFortress's \"agentic waste\" analysis over five real public datasets quantifies structural inefficiency in production LLM inference fleets. Re-measured from the committed analysis result files: (1) TP4 NVLink cascade deadlock freezes 66.85% of GPU fleet capacity during events (105,226 of 157,411 LLM GPU-intervals had SM duty==0; full_tp4_blast_radius.capacity_pct=66.8479, 140/141 containers); (2) 51.76% of all fleet VRAM is locked at any moment by the TP4 cascade (VRAM-GB-interval fraction (222,368.7+1,649,527.9)/3,616,626.1); (3) ~99.5% request waste = output<input, measured over the Azure-2024 trace only (43,872,851 of 44,107,694 requests = 99.47%). The total analyzed corpus re-summed from the result JSONs is ~45.29M distinct dataset rows (Alibaba 157,411 intervals + Azure-2023 28,185 + Azure-2024 44,107,694 + Azure-LMM-2025 1,000,000 + MaverIQ 1,684). SCOPING: Only the 66.85% figure appears in a whitepaper (V8 bare-metal .md, and its footnote marker [3] mis-points to the Rubik's-cube paper). The 51.76%, 99.5%, and row-total figures are backed by the JSON result files + INTC Evidence Pack, NOT by any whitepaper. The prior memory dossier's headline \"44.9M rows / 99.5% of all 44M\" is an approximation; the re-measured distinct-row total is ~45.3M, and 99.5% is scoped to Azure-2024 (44.1M of the 45.3M), not the whole corpus. The current live public pack at prefix cubie-tf/agentic-waste-evidence/2026-07-04 publishes the four headline JSONs needed for the 66.85% / 51.76% / ~99.5% reproduction; row-total support JSONs remain repo/private until the next owner-authorized publish run.",
      "evidence": [
        {
          "artifact": "Public reproduction pack — REPRODUCE.md with copy-paste curl+verify+re-derive commands for the 66.85% / 51.76% / ~99.5% figures (no repo access required), plus the intc MANIFEST mapping each number to its JSON path.",
          "kind": "download",
          "access": "public",
          "url": "https://lib.trustfortress.ai/objects/cubie-tf%2Fagentic-waste-evidence%2F2026-07-04%2FREPRODUCE.md"
        },
        {
          "artifact": "intc-v1.0-tp4_nvlink_results.json — TP4 NVLink cascade: full_tp4_blast_radius {intervals:105226, capacity_pct:66.8479, containers:140}; vram_locked_by_tp4.pct_total_vram_locked:51.76; total_llm_intervals:157411. Source of the 66.85% and 51.76% headline numbers.",
          "kind": "download",
          "access": "public",
          "url": "https://lib.trustfortress.ai/objects/cubie-tf%2Fagentic-waste-evidence%2F2026-07-04%2Fintc-v1.0-tp4_nvlink_results.json",
          "sha256": "7d1a90bfc6036e7d6eb8483ba1ddb4bf69cc69003a306016368d221286119bc9"
        },
        {
          "artifact": "intc-v1.0-hunter_results.json — DCGM threshold sweep + ITL backpressure: exact_zero_sm {count:105226, pct:66.8479}; itl_proxy_code.gen1_pct:15.9979 (2,688,232 single-token aborts); retry chains full_chains_ge3:127; lmm context_spikes_10x_median:93157, max effective ctx 28,375,569 tokens.",
          "kind": "download",
          "access": "public",
          "url": "https://lib.trustfortress.ai/objects/cubie-tf%2Fagentic-waste-evidence%2F2026-07-04%2Fintc-v1.0-hunter_results.json",
          "sha256": "6fb720db2600441e6a7155d4a2ac6ee8cdc023de65fceef016edc7742d979685"
        },
        {
          "artifact": "intc-v1.0-azure_2024_unconstrained.json — Azure-2024 request-waste: code total_rows:16,803,695 output_lt_input pct:99.2115; conv total_rows:27,303,999 output_lt_input pct:99.6252. Combined 43,872,851/44,107,694 = 99.47% ≈ the ~99.5% waste headline.",
          "kind": "download",
          "access": "public",
          "url": "https://lib.trustfortress.ai/objects/cubie-tf%2Fagentic-waste-evidence%2F2026-07-04%2Fintc-v1.0-azure_2024_unconstrained.json",
          "sha256": "4a2a451e4e104bc543cce67aae42f8446513ea7160c7c32a3a6a880c2bfada06"
        },
        {
          "artifact": "intc-v1.0-alibaba_v2026_squatter_metrics.json — original GPU-squatter run (pre-TP4-reinterpretation): chronic_squatter_rows:7553, containers:131, fleet_capacity_destroyed_pct:4.7983, wasted_kwh:44.0592. Shows the 4.8% original filter that only caught GPU 0.",
          "kind": "download",
          "access": "public",
          "url": "https://lib.trustfortress.ai/objects/cubie-tf%2Fagentic-waste-evidence%2F2026-07-04%2Fintc-v1.0-alibaba_v2026_squatter_metrics.json",
          "sha256": "2e4adf2dcd79233d603e1c68498434a469413e292b8843bca7bc5131844d43ad"
        },
        {
          "artifact": "intc-v1.0-MANIFEST.md — evidence-pack manifest. Lists per-file sha256 that MATCH the committed copies exactly (tp4=7d1a90bf…, hunter=6fb720db…, azure_2024=4a2a451e…, alibaba=2e4adf2d…); there is no upstream-vs-committed divergence. Maps each canonical dashboard number to its JSON path (66.85% -> full_tp4_blast_radius.capacity_pct, 51.76% -> vram_locked_by_tp4, 87.53% DCGM blind spot derived).",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "demo/evidence/intc-v1.0/intc-v1.0-MANIFEST.md",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/demo/evidence/intc-v1.0/intc-v1.0-MANIFEST.md"
        },
        {
          "artifact": "INTC_Evidence_Pack_v1.0.md — reproduce documentation: names analysis scripts scripts/tp4_nvlink_breakdown.py and hunter.py, the results/*.json outputs, and the causal chain (99.5% output<input -> KV-cache pin -> 66.85% fleet frozen). Confirms scripts live in the raw bundle, not the git repo.",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "intel-submissions/cubie-intel-submission/intel-submission/evidence/INTC_Evidence_Pack_v1.0.md",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/intel-submissions/cubie-intel-submission/intel-submission/evidence/INTC_Evidence_Pack_v1.0.md"
        },
        {
          "artifact": "CUBIE_MASTER_WHITE_PAPER_V8_0_BARE_METAL.md — the ONLY whitepaper that states an agentic-waste number: 'freezing up to 66.85% of total data center fleet capacity without triggering hypervisor alerts [3]'. Caveat: footnote [3] mis-points to Rokicki 2014 (Rubik's cube diameter), a broken citation. Does NOT mention 51.76%, 99.5%, or the row total.",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "docs/CUBIE_MASTER_WHITE_PAPER_V8_0_BARE_METAL.md",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/docs/CUBIE_MASTER_WHITE_PAPER_V8_0_BARE_METAL.md"
        },
        {
          "artifact": "Library raw-data pack (LIVE, HTTP 200) — datacenter-crash-logs/2026-07-02 MANIFEST with real whole-file SHA-256s. Raw bundle TF Logs 2 LARGE.zip (410,827,647 bytes, sha256 3141ab66a0ffe8f855aa503670d8664c194733cf36f438942e1230af09c5b7b6) split into part001 (sha 1a399c21...) + part002 (sha 01d7faa5...); plus tf-intc-analysis-pack-20260527-trimmed.zip (263,520 bytes, sha ecceb2a2...) containing the analysis scripts.",
          "kind": "download",
          "access": "email-gated",
          "url": "https://lib.trustfortress.ai/objects/cubie-tf%2Fdatacenter-crash-logs%2F2026-07-02%2FMANIFEST.md"
        },
        {
          "artifact": "Library raw-data object part001 (LIVE, HTTP 200), 209,715,200 bytes — first half of the canonical TF Logs 2 LARGE evidence archive (Alibaba GenAI GPU telemetry, Azure LLM 2023/2024 + LMM 2025 traces, MaverIQ CSVs, vLLM OOM/DCGM artifacts).",
          "kind": "download",
          "access": "email-gated",
          "url": "https://lib.trustfortress.ai/objects/cubie-tf%2Fdatacenter-crash-logs%2F2026-07-02%2Ftf-logs-2-large-20260412.zip.part001",
          "sha256": "1a399c21046176a99d1ddabfda9337e9bed4411dc704fc52159ef9c5b5771007"
        }
      ],
      "reproduce": [
        "# Public reproduction (no repo access). Full guide: https://lib.trustfortress.ai/objects/cubie-tf%2Fagentic-waste-evidence%2F2026-07-04%2FREPRODUCE.md",
        "curl -sL -o tp4.json 'https://lib.trustfortress.ai/objects/cubie-tf%2Fagentic-waste-evidence%2F2026-07-04%2Fintc-v1.0-tp4_nvlink_results.json'",
        "curl -sL -o az2024.json 'https://lib.trustfortress.ai/objects/cubie-tf%2Fagentic-waste-evidence%2F2026-07-04%2Fintc-v1.0-azure_2024_unconstrained.json'",
        "sha256sum tp4.json az2024.json   # tp4 7d1a90bfc6036e7d6eb8483ba1ddb4bf69cc69003a306016368d221286119bc9 ; azure_2024 4a2a451e4e104bc543cce67aae42f8446513ea7160c7c32a3a6a880c2bfada06",
        "Reproduce the 66.85% and 51.76% headlines directly from the JSON: python3 -c \"import json;d=json.load(open('tp4.json'));print(d['full_tp4_blast_radius'])\"  -> EXPECT {'intervals':105226,'capacity_pct':66.8479,'containers':140,...} ; and d['vram_locked_by_tp4']['pct_total_vram_locked'] -> EXPECT 51.76 (=(222368.7+1649527.9)/3616626.1).",
        "Reproduce the ~99.5% request-waste figure: fetch intc-v1.0-azure_2024_unconstrained.json, then python3 -c \"import json;d=json.load(open('az2024.json'));o=d['code']['output_lt_input']['count']+d['conv']['output_lt_input']['count'];t=d['code']['total_rows']+d['conv']['total_rows'];print(o,t,round(100*o/t,4))\"  -> EXPECT 43872851 44107694 99.4676 (i.e. 99.5% output<input, scoped to Azure-2024).",
        "Repo/private row-total self-check until the row-total support JSONs are uploaded: from demo/evidence/intc-v1.0, Alibaba 157411 + Azure2023 (8819+19366) + Azure2024 (16803695+27303999) + LMM2025 1000000 + MaverIQ 1684 = 45,294,974 distinct rows (~45.3M). tools/publish_reproduce_data.ps1 now includes the Azure-2023, LMM-2025, and MaverIQ support JSONs for the next public pack.",
        "Regenerate the JSONs from raw data (full reproduce): download the raw bundle from the LIVE library pack — curl -O https://lib.trustfortress.ai/objects/cubie-tf%2Fdatacenter-crash-logs%2F2026-07-02%2Ftf-logs-2-large-20260412.zip.part001 (and .part002), reassemble ('copy /b name.part001+name.part002 name.zip'), verify sha256 == 3141ab66a0ffe8f855aa503670d8664c194733cf36f438942e1230af09c5b7b6 ; unzip; then run the analysis scripts (scripts/tp4_nvlink_breakdown.py -> results/tp4_nvlink_results.json ; hunter.py -> results/hunter_results.json) which ship inside tf-intc-analysis-pack-20260527-trimmed.zip (sha256 ecceb2a2e201b1a8871a4acb558717dcdafffe285a41c1a928ea7e618f221114) from the same library pack, per INTC_Evidence_Pack_v1.0.md."
      ],
      "verify": [
        "JSON headline metrics reproduce exactly: full_tp4_blast_radius.capacity_pct=66.8479 (105226/157411 zero-SM intervals), vram_locked_by_tp4.pct_total_vram_locked=51.76, Azure-2024 output<input = 43872851/44107694 = 99.4676%. Confirmed by base64-decoding the GH-API-served file content and re-summing.",
        "Whitepaper anchoring confirmed by grep: ONLY 66.85% appears (V8 bare-metal .md), and its footnote [3] mis-points to Rokicki 2014 (Rubik's cube). Greps for 51.76|99.5|45.3|44.9|VRAM.lock returned zero hits — those three are result-JSON-only.",
        "Library object availability confirmed by HTTP status: datacenter-crash-logs/2026-07-02 MANIFEST + part001 return 200 with the manifest's SHA-256 table; tf-logs-evidence/2026-07-04 MANIFEST returns 404 (object store empty — it is a locator doc, not a populated pack).",
        "Committed-copy hash self-consistency confirmed 2026-07-05: the four registry download sha256 values match the committed demo/evidence/intc-v1.0 JSON files and intc-v1.0-MANIFEST.md exactly (tp4=7d1a90bf..., hunter=6fb720db..., azure_2024=4a2a451e..., alibaba=2e4adf2d...).",
        "Live public-link HEAD verification on 2026-07-06 returned HTTP 200 for REPRODUCE.md, MANIFEST.md, and the four headline JSON objects under cubie-tf/agentic-waste-evidence/2026-07-04/. The Azure-2023, LMM-2025, and MaverIQ row-total support object URLs returned HTTP 404, so they are intentionally not listed as current public downloads."
      ],
      "gaps": [
        "Analysis scripts (scripts/tp4_nvlink_breakdown.py, hunter.py) are NOT committed to the GitHub repo — they exist only inside the raw bundle (tf-intc-analysis-pack-20260527-trimmed.zip on the library, sha ecceb2a2..., per INTC_Evidence_Pack_v1.0.md). A reader can re-hash and re-read the precomputed JSONs from GitHub, but must download the library zip to regenerate them from raw data. Not unfindable (the script names + container zip are documented), but they lack a direct GitHub blob URL.",
        "The library pack referenced by the repo locator doc docs/resource-library/2026-07-04_tf-logs-evidence.md — prefix cubie-tf/tf-logs-evidence/2026-07-04/ — is a locator only: its object store is EMPTY (MANIFEST returns HTTP 404; api/list returns []). The live, populated raw-data pack is cubie-tf/datacenter-crash-logs/2026-07-02/ (HTTP 200). Referenced-but-not-yet-populated, not a true evidence gap. Checked: library api/list, api/search, direct /objects HEAD.",
        "Number-reconciliation note (accuracy, not a gap): the prior memory dossier states 44.9M rows and 43,666,866 Azure-2024 rows; the committed result JSONs give Azure-2024 = 44,107,694 and a 5-dataset distinct-row total of 45,294,974 (~45.3M). Registry uses the re-measured JSON figures. Also the dossier/whitepaper phrase '99.5% of all 44M' is scoped in the data to Azure-2024 (44.1M) specifically, not the whole 45.3M corpus.",
        "Current public-pack boundary: the four headline JSONs are live for no-repo reproduction, but the row-total support JSONs (Azure-2023, LMM-2025, MaverIQ) are not yet uploaded in the 2026-07-04 prefix. The publisher now includes them for the next authorized upload.",
        "Hash provenance is now aligned for the four committed result JSONs: cite the registry download rows or demo/evidence/intc-v1.0/intc-v1.0-MANIFEST.md for SHA-256 verification of the GitHub copies."
      ]
    },
    {
      "id": "eu-ai-act",
      "registry": {
        "label": "Unified CUB registry (honest per-CUB status)",
        "url": "https://registry.trustfortress.ai/registry"
      },
      "title": "EU AI Act coverage (Articles 9/10/11/13/14/15 + Annex IV) via cubie-tf crates/cubie-eu-*",
      "status": "scoped",
      "scope": "A compiling Rust evidence-mapping + Annex IV generation SCAFFOLD (per-article structs + AnnexIvBuilder + /api/v1/annex-iv), NOT a fully populated conformity pack — modules carry placeholder values (e.g. kill_switch_url=example.com, some proof counts hardcoded 0).",
      "statement": "cubie-tf implements EU AI Act coverage as a Rust evidence-mapping + Annex IV generation scaffold under `crates/cubie-eu-*`, plus a separate documented compliance surface under `apps/trustfortress/docs/eu-ai-act-compliance/`. IMPLEMENTED (Rust, verified to compile + tests pass): `cubie-eu-articles` provides per-article Serde structs that map cubie-core runtime facts to EU AI Act evidence types — one module each for Art 9 (risk register from 17 cubie-core denial codes), Art 10 (data governance + DataProvenanceTag), Art 13 (transparency), Art 14 (human-oversight escalation hooks), Art 15 (accuracy/robustness → ISO 24029-2), Art 16+17 (QMS), Art 19 (registration record), Art 50 (transparency), Art 73 (incident reporting, typed 15-day deadline), plus a NIST RMF module. Article 11 (technical documentation) is realized by the separate `cubie-eu-annex-iv` crate — the `AnnexIv` struct + `AnnexIvBuilder` + JSON Schema ARE the Annex IV technical documentation Art 11 requires; Article 12 (record-keeping) maps to the builder's `with_article_12`→`monitoring` field and to `cubie-eu-ledger`. The `cubie-eu-api` crate exposes the Annex IV generator as `GET /api/v1/annex-iv` (axum, binds 0.0.0.0:8443). ACCURACY SCOPING: (1) These crates are a mapping/generation SCAFFOLD, not a fully populated conformity pack — they carry placeholder values (`kill_switch_url`=example.com, `incident_reporting_email`=\"TO_BE_CONFIGURED\", Art 15 lean/coq/verus proof counts hardcoded to 0, `single_bit_flip_closure_verified`/`constant_time_validator_verified` hardcoded `true`). (2) Only 2 of the 9 article modules have Rust unit tests (article_09, article_73); the annex-iv crate has 2 builder tests — 4 EU tests total, all passing. (3) The V8/V9 master whitepaper's regulatory-mapping chapter (ch14_regulatory_mapping.tex) scopes the mapping MORE NARROWLY than the crate set: it maps only bare-metal/→Art 9, cubie-platform/→Art 15, cubie-eu-ledger/→Art 12 & 13, verus/consent_spec/→Art 14. (4) The richer per-article coverage with high test counts (Art 5:29, Art 6:88, Art 72:53, Art 73:85, Art 86:65, Art 14:24) and the 98/100 readiness score live in the DOCUMENTED surface `apps/trustfortress/docs/eu-ai-act-compliance/` and refer to TypeScript modules in the trustfortress app — NOT the Rust crates; that TS is marked deprecated for new logic per apps/trustfortress/CLAUDE.md (2026-07-01 boundary). The crate-description discrepancy (cubie-eu-articles Cargo.toml lists Art 9/10/11/12/13/14/15/16/17/19/50/73 but has no article_11.rs or article_12.rs) is explained by Art 11=annex-iv crate and Art 12=builder monitoring field, NOT a gap.",
      "evidence": [
        {
          "artifact": "Public source pack — cubie-eu-source.zip (git-archive of cubie-eu-articles + cubie-eu-annex-iv + cubie-eu-api: per-article evidence-mapping structs, AnnexIvBuilder = Article 11 tech documentation, /api/v1/annex-iv generator). Enables source inspection without repo access; build/test requires placing the pack in a matching cubie-tf workspace checkout. Bytes and regeneration notes are tracked in docs/resource-library/2026-07-04-source-packs.md.",
          "kind": "download",
          "access": "email-gated",
          "url": "https://lib.trustfortress.ai/objects/cubie-tf%2Fsource-packs%2F2026-07-04%2Fcubie-eu-source.zip",
          "sha256": "acc5178bfc39ba6677a5c9efb40e71c52426f4777e77a0985423f75544358688"
        },
        {
          "artifact": "cubie-eu-articles crate — per-article EU AI Act evidence-mapping structs (Art 9/10/13/14/15/16-17/19/50/73 + NIST RMF); lib.rs declares 9 article modules (no article_11/article_12 files by design)",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "crates/cubie-eu-articles/src/lib.rs",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/crates/cubie-eu-articles/src/lib.rs"
        },
        {
          "artifact": "Article 9 risk management — build_from_denial_cert() maps 17 cubie-core deny codes to Risk structs; test risk_register_has_17_deny_codes passes",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "crates/cubie-eu-articles/src/article_09.rs",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/crates/cubie-eu-articles/src/article_09.rs"
        },
        {
          "artifact": "Article 10 data governance — DataGovernance + DataProvenanceTag (RTMR[2] anchor)",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "crates/cubie-eu-articles/src/article_10.rs",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/crates/cubie-eu-articles/src/article_10.rs"
        },
        {
          "artifact": "Article 13 transparency — Transparency struct wiring denial_cert + dual-ledger receipt (no unit test in module)",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "crates/cubie-eu-articles/src/article_13.rs",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/crates/cubie-eu-articles/src/article_13.rs"
        },
        {
          "artifact": "Article 14 human oversight — HumanOversight escalation hooks (placeholder kill_switch_url=example.com; no unit test in module)",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "crates/cubie-eu-articles/src/article_14.rs",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/crates/cubie-eu-articles/src/article_14.rs"
        },
        {
          "artifact": "Article 15 accuracy/robustness — AccuracyRobustness → ISO 24029-2; lean/coq/verus proof counts hardcoded 0, *_verified flags hardcoded true (no unit test in module)",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "crates/cubie-eu-articles/src/article_15.rs",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/crates/cubie-eu-articles/src/article_15.rs"
        },
        {
          "artifact": "Article 73 incident reporting — typed INCIDENT_REPORT_DEADLINE_DAYS=15 const; test deadline_is_exactly_15_days_after_detection passes",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "crates/cubie-eu-articles/src/article_73.rs",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/crates/cubie-eu-articles/src/article_73.rs"
        },
        {
          "artifact": "cubie-eu-annex-iv builder — AnnexIv struct + AnnexIvBuilder (= Article 11 technical documentation); with_article_12→monitoring, with_article_13→transparency; 2 tests pass",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "crates/cubie-eu-annex-iv/src/builder.rs",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/crates/cubie-eu-annex-iv/src/builder.rs"
        },
        {
          "artifact": "cubie-eu-annex-iv JSON Schema (draft 2020-12) for Annex IV technical documentation",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "crates/cubie-eu-annex-iv/src/schema.rs",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/crates/cubie-eu-annex-iv/src/schema.rs"
        },
        {
          "artifact": "cubie-eu-api — Annex IV generator route GET /api/v1/annex-iv (annex_iv handler builds AnnexIv doc, returns JSON); crate builds clean (exit 0)",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "crates/cubie-eu-api/src/lib.rs",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/crates/cubie-eu-api/src/lib.rs"
        },
        {
          "artifact": "cubie-eu-api main — axum server binds 0.0.0.0:8443 (Annex IV generator entrypoint)",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "crates/cubie-eu-api/src/main.rs",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/crates/cubie-eu-api/src/main.rs"
        },
        {
          "artifact": "Whitepaper regulatory-mapping chapter (V8/V9 master) — authoritative narrower scoping: bare-metal/→Art9, cubie-platform/→Art15, cubie-eu-ledger/→Art12&13, verus/consent_spec/→Art14",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "docs/whitepaper/chapters/ch14_regulatory_mapping.tex",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/docs/whitepaper/chapters/ch14_regulatory_mapping.tex"
        },
        {
          "artifact": "DOCUMENTED surface (separate from Rust crates) — EU AI Act compliance readiness scorecard 98/100, per-article RED/YELLOW/GREEN; cites TypeScript modules (human-override.ts etc.), deprecated for new logic per 2026-07-01 boundary",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "apps/trustfortress/docs/eu-ai-act-compliance/evidence/compliance-readiness-scorecard.md",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/apps/trustfortress/docs/eu-ai-act-compliance/evidence/compliance-readiness-scorecard.md"
        },
        {
          "artifact": "DOCUMENTED surface — existing-compliance-evidence.md: file/line evidence matrix mapping TS components to Art 5/10/12/14/15/50/72/73/86",
          "kind": "source",
          "access": "private",
          "repo": "cubie-tf",
          "path": "apps/trustfortress/docs/eu-ai-act-compliance/evidence/existing-compliance-evidence.md",
          "ref": "88ef7e8303ed82b4e0af398960be172f8bb560db",
          "url": "https://github.com/iamdatanick/cubie-tf/blob/88ef7e8303ed82b4e0af398960be172f8bb560db/apps/trustfortress/docs/eu-ai-act-compliance/evidence/existing-compliance-evidence.md"
        },
        {
          "artifact": "Resource library search for a published Annex IV artifact: https://lib.trustfortress.ai/api/search?q=annex-iv returned [] (no published Annex IV document); ?q=eu%20annex returned only docs/resource-library/CLOUDFLARE_KNOWLEDGEBASE_PLAN.md",
          "kind": "verification",
          "access": "email-gated",
          "url": "https://lib.trustfortress.ai/api/search?q=annex-iv"
        }
      ],
      "reproduce": [
        "# Public source inspection: download the EU crates source pack.",
        "curl -sL -o cubie-eu-source.zip 'https://lib.trustfortress.ai/objects/cubie-tf%2Fsource-packs%2F2026-07-04%2Fcubie-eu-source.zip'   # hashes in https://lib.trustfortress.ai/objects/cubie-tf%2Fsource-packs%2F2026-07-04%2FMANIFEST.md",
        "# This partial workspace pack is not standalone-buildable: unzip into a matching cubie-tf checkout to build/test (`cargo test -p cubie-eu-annex-iv`), or read crates/cubie-eu-articles/src/*.rs for the article-to-runtime mappings.",
        "Clone + enter repo: git clone https://github.com/iamdatanick/cubie-tf && cd cubie-tf (local: C:\\Users\\NickV\\cubie-tf)",
        "Run the EU crate tests: `cargo test -p cubie-eu-articles -p cubie-eu-annex-iv` — EXPECTED (verified 2026-07-04): cubie-eu-annex-iv 2 passed (build_fails_without_identifier, minimal_build_succeeds); cubie-eu-articles 2 passed (article_09::tests::risk_register_has_17_deny_codes, article_73::tests::deadline_is_exactly_15_days_after_detection); 0 failed",
        "Confirm the Annex IV generator compiles: `cargo build -p cubie-eu-api` — EXPECTED: `Finished dev profile` exit 0 (verified 2026-07-04, ~45s cold)",
        "Run the Annex IV generator (code-read of handler; not executed in this session): `cargo run -p cubie-eu-api` starts axum on 0.0.0.0:8443, then `curl http://localhost:8443/api/v1/annex-iv` — EXPECTED JSON body with system_identifier=\"CUBIE-EU-v0.1\", provider.name=\"Centillion AI\" (override via CUBIE_EU_PROVIDER_NAME), provider.country=\"US\" (override via CUBIE_EU_PROVIDER_COUNTRY), intended_purpose=\"High-risk AI inference admission with TDX-rooted attestation\", plus Annex IV fields (risk_management, data_governance, human_oversight, accuracy_robustness, monitoring, transparency_disclosures, logs, conformity_declaration)",
        "Confirm the crate-description vs file discrepancy is intentional: `rg -n \"article_11|article_12\" crates/cubie-eu-articles/src` returns no dedicated files; Art 11=annex-iv crate, Art 12=cubie-eu-annex-iv builder with_article_12→monitoring + cubie-eu-ledger"
      ],
      "verify": [
        "cargo test -p cubie-eu-articles -p cubie-eu-annex-iv  # 4 tests pass, 0 fail (verified)",
        "cargo build -p cubie-eu-api  # exit 0, generator endpoint compiles (verified)",
        "rg -c '#\\[test\\]' crates/cubie-eu-articles/src/*.rs  # only article_09.rs=1, article_73.rs=1 → 7 of 9 article modules have NO Rust test",
        "rg -n 'TO_BE_CONFIGURED|example.com|lean_proof_count: 0|_verified: true' crates/cubie-eu-articles/src  # confirms placeholder/scaffold values",
        "gh api repos/iamdatanick/cubie-tf/contents/crates/cubie-eu-articles/src/lib.rs?ref=88ef7e8303ed82b4e0af398960be172f8bb560db --jq .path  # confirms the evidence path resolves at the pinned commit"
      ],
      "gaps": [
        "No published Annex IV output artifact in the resource library: `/api/search?q=annex-iv` returns [] and `?q=eu%20annex` returns only docs/resource-library/CLOUDFLARE_KNOWLEDGEBASE_PLAN.md — so no /objects/ library URL exists for a generated Annex IV document (checked: library /api/search). The generator exists in code (cubie-eu-api) but no rendered sample output is published.",
        "Per-article Rust test coverage is thin: 7 of 9 cubie-eu-articles modules (10,13,14,15,16-17,19,50) have NO unit test; only article_09 and article_73 are tested. The high per-article test counts (Art 6:88, Art 73:85, etc.) belong to the DOCUMENTED TypeScript surface, not the Rust crates.",
        "Scaffold placeholders unresolved in the Rust crates: Art 14 kill_switch_url=example.com, Art 16-17 incident_reporting_email=\"TO_BE_CONFIGURED\", Art 15 lean/coq/verus proof counts hardcoded 0 and *_verified flags hardcoded true — these are static defaults, not populated from live cubie-core proof/config state.",
        "No formal proof (Verus/Coq/Lean CUB spec) binds the EU article mapping structs to cubie-core runtime behavior; the whitepaper references verus/consent_spec/ for Art 14 but the cubie-eu-articles structs themselves are unproven plain Rust. (Not searched exhaustively across the full 1800+ CUB corpus for an EU-specific spec.)"
      ]
    }
  ]
}