Decision infrastructure built around a deterministic kernel

Security boundary

The current public proof covers narrowly defined database controls and evidence content hashing.

Verified public scope

#03

Database append-only controls

Six decisional tables reject UPDATE and DELETE at the database layer.

#04

Tenant-scoped access

PostgreSQL Row-Level Security scopes SELECT and INSERT by tenant.

#13

Evidence content hashing

Evidence content hashes use domain-separated SHA-256.

Claim source revision: e5256479c823

Evidence boundary

This page does not claim a tamper-evident chain, signed receipts, or complete deployment security.