eu.riskrouter/evidence-log

evidence-log

Tamper-evident evidence log: signed heads, proofs, and recording salted digests of your records.

1.0.0
Version
remote
Transport
8
Tools

Security review

Review passed

Reviewed Jan 1, 2000.

  • tools: 8 tools scanned
  • metadata: scanned

No findings.

Tools (8)

  • get_evidence_head

    The current signed head of the evidence log: tree size, Merkle root and signature. Save it: any later head must be consistent with it.

  • get_inclusion_proof

    Proof that the entry at leaf_index is in the tree, optionally at a given tree_size. Checkable offline with the public verifier.

  • get_consistency_proof

    Proof that the tree at size first is a prefix of the tree at size second (or now): the log never rewrote history.

  • get_checkpoint

    The log's signed checkpoint in the C2SP format witnesses cosign (origin, size, root).

  • get_ledger_attestation

    The signed head hash of the hash-chained audit ledger of recorded quotes.

  • get_usage

    How much is recorded, and by how many keys that are not ours. Counts only, nothing about anyone.

  • record_evidence

    Record the SHA-256 of a decision record you keep yourself, so it can later be shown to be unchanged. Send the digest and a short kind, never the record. Needs your RiskRouter key in the Authorization header of the MCP connection. Entries are permanent.

  • get_chain

    The log's signed statement of one completeness chain as of the current head: its length and, for each position, the leaf, the time and the digest. A position nobody showed you is a record left out.