<?xml version="1.0" encoding="UTF-8"?>
  <?xml-stylesheet type="text/xsl" href="rfc2629.xslt" ?>
  <!-- generated by https://github.com/cabo/kramdown-rfc version 1.7.43 (Ruby 3.3.6) -->


<!DOCTYPE rfc  [
  <!ENTITY nbsp    "&#160;">
  <!ENTITY zwsp   "&#8203;">
  <!ENTITY nbhy   "&#8209;">
  <!ENTITY wj     "&#8288;">

]>


<rfc ipr="trust200902" docName="draft-gruszka-evaluation-receipt-mappings-00" category="info" submissionType="IETF" tocInclude="true" sortRefs="true" symRefs="true">
  <front>
    <title abbrev="Evaluation Receipt Mappings">Citing Signed Evaluation Receipts from Existing Envelopes</title>

    <author initials="K." surname="Gruszka" fullname="Konrad Gruszka">
      <organization>b7n0de</organization>
      <address>
        <email>kontakt@b7n0de.com</email>
      </address>
    </author>

    <date year="2026" month="October" day="10"/>

    <area>Security</area>
    
    <keyword>evaluation</keyword> <keyword>receipt</keyword> <keyword>DSSE</keyword> <keyword>in-toto</keyword> <keyword>SCITT</keyword> <keyword>COSE</keyword>

    <abstract>


<?line 262?>

<t>A Signed Evaluation Receipt records one evaluation result as signed
payload bytes B. This document describes how existing envelopes cite such
a receipt by the SHA-256 digest of B, and how a DSSE envelope carries B
with the receipt's own signature. It fixes those bytes and a
matching rule, maps the parts of a receipt onto DSSE, the in-toto Statement
with the test-result predicate and the SLSA Verification Summary
Attestation, shows that the signature of a receipt is already a valid DSSE
signature, gives an example of a SCITT Signed Statement that names a
receipt only by its digest, declares the receipt digest as an artifact type
for typed digest references, and relates a receipt to a pre-run criteria set
written in PRML. It defines no new format and no new predicate.</t>



    </abstract>



  </front>

  <middle>


<?line 276?>

<section anchor="introduction"><name>Introduction</name>

<t>A Signed Evaluation Receipt (receipt) <xref target="RECEIPTS"/> holds one assertion, whether
a threshold held for a metric of a test suite, as payload bytes B. B is signed
with Ed25519 over a pre-authentication encoding with a fixed type. A receipt
carries no inclusion proof and does not prove registration with a Transparency
Service. In SCITT, transparency additionally requires registering a Signed
Statement that names the receipt and verifying the resulting SCITT Receipt
(<xref target="cose"/>).</t>

<t>Other parties will want to refer to a receipt from the envelopes they already
use: a DSSE envelope, an in-toto Statement, a SLSA Verification Summary, or a
SCITT Signed Statement. This document is the third part of one line of work:
<xref target="STATEMENT-ID"/> asks how a signed statement is named unambiguously,
<xref target="RECEIPTS"/> fixes the bytes of a receipt, and this document shows how existing
envelopes cite such a receipt by digest.</t>

<t>It also relates a receipt to a criteria set fixed before the run in PRML
<xref target="PRML"/> (<xref target="prml"/>), and says where it meets the requirements of <xref target="ABAK"/> for
exchanging evaluation evidence (<xref target="abak"/>).</t>

<t>This document defines no second receipt format, no new in-toto predicate and no
new COSE header parameter. What a receipt does not prove stays unproven when an
envelope cites it (<xref target="non-claims"/>).</t>

</section>
<section anchor="conventions-and-terminology"><name>Conventions and Terminology</name>

<t>The key words "MUST", "MUST NOT", "REQUIRED", "SHALL", "SHALL NOT", "SHOULD",
"SHOULD NOT", "RECOMMENDED", "NOT RECOMMENDED", "MAY", and "OPTIONAL" in this
document are to be interpreted as described in BCP 14 <xref target="RFC2119"/> <xref target="RFC8174"/>
when, and only when, they appear in all capitals, as shown here.</t>

<t>The terms receipt, B, Issuer, Receiver and type are used as in <xref target="RECEIPTS"/>.
The type is the fixed string</t>

<figure><artwork><![CDATA[
application/vnd.signed-evidence.eval-receipt+json
]]></artwork></figure>

<t>The type identifies B (<xref target="RECEIPTS"/> Section 10.1). The receipt object uses the
same fixed string as its schema discriminator, but is a different JSON
representation.</t>

<dl>
  <dt>Receipt digest:</dt>
  <dd>
    <t>SHA-256 over B (<xref target="digest"/>).</t>
  </dd>
  <dt>Citation:</dt>
  <dd>
    <t>A hash algorithm and a digest value that an envelope carries to name a
receipt.</t>
  </dd>
  <dt>Citing envelope:</dt>
  <dd>
    <t>An in-toto Statement or a COSE Signed Statement that carries a citation. A
DSSE envelope carries B itself, not a citation (<xref target="dsse"/>).</t>
  </dd>
</dl>

</section>
<section anchor="digest"><name>The Receipt Digest</name>

<section anchor="digest-definition"><name>Definition</name>

<t>The receipt digest is SHA-256 over B, the payload bytes of the receipt as
defined in <xref target="RECEIPTS"/> Section 3.4: the bytes that steps 1 to 3 of
<xref target="RECEIPTS"/> Section 5 obtain from <spanx style="verb">payload_b64</spanx>. A candidate for which one of
those steps fails has no B, even if a lenient decoder would produce bytes from
it (cases C6 and C7). It is not computed over the receipt bytes or over
PAE(type, B). An envelope that carries the
digest as text uses its 64 lowercase hexadecimal digits; one that carries it as
bytes uses the 32 bytes. This document defines no other hash algorithm.</t>

</section>
<section anchor="why-b"><name>Why B</name>

<t>The digest runs over B for two reasons.</t>

<t><list style="symbols">
  <t>B is what is signed. The signing input PAE(type, B) depends on B alone,
because the type is fixed (<xref target="RECEIPTS"/> Section 4.2). A digest over B
therefore names exactly the signed content; a digest over the signing input
would carry no further information.</t>
  <t>The receipt bytes are not stable. The receipt object around B is not
canonicalized, and its key hint is not signed. Vectors P1, P4 and P6 of
<xref target="RECEIPTS"/> are three different receipt byte strings that all verify and
all carry the same B (cases C1 to C3 of <xref target="cases"/>). A digest over the
receipt bytes would give one signed statement three names, and it would
change whenever the receipt object is written again. In-toto resource
descriptors and the COSE Hash Envelope each name content by the digest of
its bytes, and a DSSE envelope carries the bytes themselves.</t>
</list></t>

<t>The price of this choice: the receipt digest identifies the signed content, not
the signature and not the key. Two receipts with the same B under different
keys have the same digest. The <spanx style="verb">iss</spanx> and <spanx style="verb">kid</spanx> of a citing Signed Statement
(<xref target="signed-statement"/>) identify its signer, which need not be the receipt
signer. This mapping does not encode a constraint on the receipt signer. A
Receiver verifies the cited receipt under the receipt key it fixed
independently.</t>

</section>
<section anchor="matching"><name>Matching Rule</name>

<t>Given a citation and a candidate receipt, the result is computed as follows.</t>

<t><list style="numbers" type="1">
  <t>If the citation's algorithm is not SHA-256, or its value is not 32 bytes (64
lowercase hexadecimal digits in text form), the result is INDETERMINATE.
SHA-256 is named <spanx style="verb">sha256</spanx> as the key of an in-toto digest set <xref target="INTOTO-DIGESTSET"/>, -16 as the
value of COSE header parameter 258, and <spanx style="verb">sha-256</spanx> as the algorithm label of
the examples (<xref target="examples"/>); each name counts only in its own carrier, and
names are compared exactly, so <spanx style="verb">SHA256</spanx> is none of them. A typed digest
reference names it <spanx style="verb">SHA-256</spanx> (<xref target="typed-reference"/>). A digest set with several
entries is matched on its <spanx style="verb">sha256</spanx> entry alone; this document does not judge
the other entries. This is narrower than the matching guidance of
<xref target="INTOTO-DIGESTSET"/>, under which two digest sets match if any acceptable
field matches: here a digest set without a <spanx style="verb">sha256</spanx> entry gives
INDETERMINATE, and one whose <spanx style="verb">sha256</spanx> entry passes step 1 but differs from
SHA-256 over B gives NO_MATCH, whatever its other entries are.</t>
  <t>If steps 1 through 3 of <xref target="RECEIPTS"/> Section 5 do not all complete
successfully, including when processing stops at a resource limit, B is not
obtained and the result is INDETERMINATE.</t>
  <t>Otherwise the result is MATCH when SHA-256 over B equals the cited value,
and NO_MATCH when it does not.</t>
</list></t>

<t>A MATCH establishes neither that the candidate verifies, nor who signed it, nor
that its assertion is true. A Receiver that relies on a cited receipt runs the
full procedure of <xref target="RECEIPTS"/> Section 5 under a key it fixed. Case C5 is a
candidate that matches and fails that procedure at step 11.</t>

<texttable title="Citation cases" anchor="cases">
      <ttcol align='left'>Case</ttcol>
      <ttcol align='left'>Candidate</ttcol>
      <ttcol align='left'>Result</ttcol>
      <ttcol align='left'>Verification of the candidate</ttcol>
      <ttcol align='left'>What it shows</ttcol>
      <c>C1</c>
      <c>P1</c>
      <c>MATCH</c>
      <c>PASS</c>
      <c>the receipt the citation was made from</c>
      <c>C2</c>
      <c>P4</c>
      <c>MATCH</c>
      <c>PASS</c>
      <c>other receipt bytes (an escaped character in schema), same B</c>
      <c>C3</c>
      <c>P6</c>
      <c>MATCH</c>
      <c>PASS</c>
      <c>other receipt bytes (no key hint), same B</c>
      <c>C4</c>
      <c>P2</c>
      <c>NO_MATCH</c>
      <c>PASS</c>
      <c>another receipt with another B</c>
      <c>C5</c>
      <c>N7</c>
      <c>MATCH</c>
      <c>FAIL, step 11 (profile 4)</c>
      <c>same B, signature made over another type: a match is not a verification</c>
      <c>C6</c>
      <c>N13</c>
      <c>INDETERMINATE</c>
      <c>FAIL, step 3</c>
      <c>payload_b64 is not canonical base64: B is not obtained</c>
      <c>C7</c>
      <c>N14</c>
      <c>INDETERMINATE</c>
      <c>FAIL, step 1</c>
      <c>the receipt has duplicate member names: B is not obtained</c>
      <c>C8</c>
      <c>P1</c>
      <c>INDETERMINATE</c>
      <c>PASS</c>
      <c>the citation names an algorithm this document does not define</c>
</texttable>

</section>
<section anchor="requirements"><name>Against the Identification Requirements</name>

<t><xref target="STATEMENT-ID"/> proposes requirements A1 to A5 for references to signed
statements. This section checks the receipt digest against them. It is the
author's analysis, not a conformance claim; no registration in a Transparency
Service is measured.</t>

<dl>
  <dt>A1, unambiguous target and matching rule:</dt>
  <dd>
    <t>The scheme names the hash algorithm (SHA-256), the input bytes (B, as steps 1 to
3 of <xref target="RECEIPTS"/> Section 5 obtain it from <spanx style="verb">payload_b64</spanx>) and the encoding (64 lowercase hexadecimal digits or 32
bytes). <xref target="matching"/> is the matching rule. An unsupported algorithm or a
candidate without B gives INDETERMINATE, never MATCH (C6 to C8). Identity is
preserved under every difference outside B that leaves steps 1 to 3 of
<xref target="RECEIPTS"/> Section 5 succeeding: the receipt's whitespace and
escapes, its key hint, and its signature value. In the
terms of <xref target="STATEMENT-ID"/> Section 5 the receipt digest is a digest of the
payload. Because the type is fixed and nothing else enters the signature, it
also determines the signing input; neither names the signer.</t>
  </dd>
  <dt>A2, readable without interpreting the carrier's payload:</dt>
  <dd>
    <t>In the COSE Hash Envelope of <xref target="signed-statement"/> the citation is read from
header parameters 258 and 259 and the payload, as <xref target="RFC9995"/> defines them,
without interpreting application content. In an in-toto Statement the
citation lies inside the predicate, which is the Statement's application
content; a reader has to know the predicate to find it. A2 is met by the
first and not by the second.</t>
  </dd>
  <dt>A3, matching independent of registration:</dt>
  <dd>
    <t>B does not change when the receipt is registered anywhere or its object is
written again. Cases C2 and C3 carry other receipt bytes and still match.</t>
  </dd>
  <dt>A4, acceptance test for A3:</dt>
  <dd>
    <t>Cases C2 and C3 apply local changes that a re-encoding may cause (another
JSON escape, a key hint left out), and the result stays MATCH. This is not
a measurement of registration in two services.</t>
  </dd>
  <dt>A5, receipt-verification dependency:</dt>
  <dd>
    <t>Matching does not depend on a leaf hash or a COSE Receipt. A receipt has no
inclusion proof of its own; a Transparency Service that registers a
statement naming it fixes its own leaf construction, and matching does not
use it.</t>
  </dd>
</dl>

</section>
</section>
<section anchor="mapping"><name>Mapping to Existing Envelopes</name>

<t><xref target="mapping-table"/> shows, for each part of a receipt, where it has a place in three
envelopes and what that envelope does not have: DSSE <xref target="DSSE"/>, the in-toto
Statement v1 <xref target="INTOTO-STATEMENT"/> with the test-result predicate v0.1
<xref target="TEST-RESULT"/> (test-result in the table), and the SLSA Verification Summary
Attestation v1 <xref target="VSA"/> (VSA). "None" means that the envelope has no field for
it. This document defines no predicate of its own.</t>

<texttable title="Receipt parts in three envelopes" anchor="mapping-table">
      <ttcol align='left'>Receipt part</ttcol>
      <ttcol align='left'>Envelope</ttcol>
      <ttcol align='left'>Field there, or what is missing</ttcol>
      <c>B</c>
      <c>DSSE</c>
      <c><spanx style="verb">payload</spanx>, base64 of B</c>
      <c>&#160;</c>
      <c>test-result</c>
      <c>none; a Statement that restates the members is other bytes</c>
      <c>&#160;</c>
      <c>VSA</c>
      <c>none; <spanx style="verb">inputAttestations[].digest</spanx> names B by its digest</c>
      <c>type</c>
      <c>DSSE</c>
      <c><spanx style="verb">payloadType</spanx></c>
      <c>&#160;</c>
      <c>test-result</c>
      <c>none; the Statement's envelope carries an in-toto type</c>
      <c>&#160;</c>
      <c>VSA</c>
      <c><spanx style="verb">inputAttestations[].mediaType</spanx></c>
      <c><spanx style="verb">signature.sig</spanx></c>
      <c>DSSE</c>
      <c><spanx style="verb">signatures[].sig</spanx>, the same bytes (vector M1)</c>
      <c>&#160;</c>
      <c>test-result</c>
      <c>none; the Statement's envelope carries a new signature</c>
      <c>&#160;</c>
      <c>VSA</c>
      <c>none; the VSA is signed by its verifier</c>
      <c><spanx style="verb">signature.alg</spanx></c>
      <c>DSSE</c>
      <c>none; DSSE names no signature algorithm</c>
      <c>&#160;</c>
      <c>test-result, VSA</c>
      <c>none</c>
      <c><spanx style="verb">signature.key</spanx></c>
      <c>DSSE</c>
      <c><spanx style="verb">keyid</spanx>, optional and not signed</c>
      <c>&#160;</c>
      <c>test-result, VSA</c>
      <c>none</c>
      <c><spanx style="verb">passed</spanx></c>
      <c>DSSE</c>
      <c>inside B</c>
      <c>&#160;</c>
      <c>test-result</c>
      <c><spanx style="verb">result</spanx> PASSED or FAILED; WARNED has no receipt counterpart</c>
      <c>&#160;</c>
      <c>VSA</c>
      <c>none; <spanx style="verb">verificationResult</spanx> is the verifier's result</c>
      <c>payload <spanx style="verb">schema</spanx></c>
      <c>DSSE</c>
      <c>inside B</c>
      <c>&#160;</c>
      <c>test-result</c>
      <c>none; <spanx style="verb">predicateType</spanx> names test-result, not the payload schema</c>
      <c>&#160;</c>
      <c>VSA</c>
      <c>none</c>
      <c><spanx style="verb">suite</spanx>, <spanx style="verb">suite_version</spanx></c>
      <c>DSSE</c>
      <c>inside B</c>
      <c>&#160;</c>
      <c>test-result</c>
      <c>no field of its own; <spanx style="verb">configuration</spanx> or <spanx style="verb">url</spanx> can name the suite</c>
      <c>&#160;</c>
      <c>VSA</c>
      <c>none</c>
      <c><spanx style="verb">metric</spanx>, <spanx style="verb">comparator</spanx>, <spanx style="verb">threshold</spanx>, <spanx style="verb">score</spanx>, <spanx style="verb">n</spanx></c>
      <c>DSSE</c>
      <c>inside B</c>
      <c>&#160;</c>
      <c>test-result, VSA</c>
      <c>none</c>
      <c><spanx style="verb">criteria_digest</spanx>, when present</c>
      <c>DSSE</c>
      <c>inside B</c>
      <c>&#160;</c>
      <c>test-result, VSA</c>
      <c>none</c>
      <c><spanx style="verb">model_id_commit</spanx>, <spanx style="verb">dataset_id_commit</spanx>, <spanx style="verb">commit_alg</spanx></c>
      <c>DSSE</c>
      <c>inside B</c>
      <c>&#160;</c>
      <c>test-result</c>
      <c>none; <spanx style="verb">subject</spanx> wants a digest of the artifact, and a commitment is not one</c>
      <c>&#160;</c>
      <c>VSA</c>
      <c>none; <spanx style="verb">subject</spanx> and <spanx style="verb">resourceUri</spanx> name the verified artifact</c>
      <c><spanx style="verb">timestamp</spanx></c>
      <c>DSSE</c>
      <c>inside B</c>
      <c>&#160;</c>
      <c>test-result</c>
      <c>none</c>
      <c>&#160;</c>
      <c>VSA</c>
      <c>none; <spanx style="verb">timeVerified</spanx> is the verifier's time</c>
</texttable>

<t>In the other direction, a receipt has no counterpart for the required VSA
fields <spanx style="verb">verifier</spanx>, <spanx style="verb">resourceUri</spanx>, <spanx style="verb">policy</spanx> and <spanx style="verb">verifiedLevels</spanx>, for its
optional <spanx style="verb">timeVerified</spanx>, or for the <spanx style="verb">subject</spanx> of an in-toto Statement.</t>

<section anchor="dsse"><name>DSSE</name>

<t>The signature of a receipt is a valid DSSE signature without any new signature.
DSSE <xref target="DSSE"/> signs PAE(payloadType, payload) with the same pre-authentication
encoding that <xref target="RECEIPTS"/> Section 4.1 defines. The envelope</t>

<figure><artwork><![CDATA[
{"payloadType": <type>, "payload": <base64 of B>,
 "signatures": [{"sig": <the receipt's signature.sig>}]}
]]></artwork></figure>

<t>therefore verifies as DSSE under the Issuer's key when <spanx style="verb">payloadType</spanx> is exactly
the type and <spanx style="verb">payload</spanx> decodes to B. Vector M1 (<xref target="examples"/>) gives the bytes;
its signature is the signature of vector P1 of <xref target="RECEIPTS"/>, byte for byte. M1
leaves out <spanx style="verb">keyid</spanx>, which DSSE treats as an optional, unauthenticated hint.</t>

<t>A successful DSSE signature check alone is not a receipt verdict. DSSE also
requires a supported <spanx style="verb">payloadType</spanx> and parsing the authenticated payload
according to that type. To obtain a receipt verdict, a Receiver decodes the
payload and the selected signature once, uses those same bytes to construct the
receipt object with canonical base64 as required by <xref target="RECEIPTS"/> Section 3.1,
and runs <xref target="RECEIPTS"/> Section 5 under its independently selected receipt
verification key.</t>

<t>The signature is expected to be valid as DSSE only under this <spanx style="verb">payloadType</spanx>,
because Ed25519 binds the exact signing input; this is not measured beyond
sample types. Vector N7 of <xref target="RECEIPTS"/> shows the converse for the receipt
itself: its signature, made over PAE with the type
<spanx style="verb">application/vnd.example.other+json</spanx>, fails under the fixed type.</t>

</section>
<section anchor="test-result"><name>in-toto Statement with test-result</name>

<t>The test-result predicate <xref target="TEST-RESULT"/> records <spanx style="verb">result</spanx> (PASSED, WARNED or
FAILED), <spanx style="verb">configuration</spanx> (a required list of resource descriptors), <spanx style="verb">url</spanx>, and
the lists <spanx style="verb">passedTests</spanx>, <spanx style="verb">warnedTests</spanx> and <spanx style="verb">failedTests</spanx>. A Statement
<xref target="INTOTO-STATEMENT"/> that restates a receipt maps <spanx style="verb">passed</spanx> to <spanx style="verb">result</spanx> PASSED
or FAILED. No member of the predicate carries the metric, the comparator, the
threshold, the score, the sample count or the timestamp; <spanx style="verb">passedTests</spanx> and
<spanx style="verb">failedTests</spanx> are lists of test names, not a count. The Statement's <spanx style="verb">subject</spanx>
names the tested artifact by digest; a commitment is not a digest of the
artifact's bytes, so the model commitment cannot stand as <spanx style="verb">subject</spanx> without
changing what <spanx style="verb">subject</spanx> means.</t>

<t>Such a Statement is a new statement by whoever signs its envelope
<xref target="INTOTO-ENVELOPE"/>. It does not carry the receipt's signature and the
predicate has no member for the evidence a result rests on. This document
therefore does not cite receipts from test-result; the mapping states what a
party loses when it restates a receipt in that form.</t>

</section>
<section anchor="vsa"><name>SLSA Verification Summary</name>

<t>A Verification Summary Attestation <xref target="VSA"/> states that a verifier verified an
artifact against a policy. Its <spanx style="verb">inputAttestations</spanx> is a list of resource
descriptors <xref target="INTOTO-RD"/>, each of which carries a digest of the attestation it names. A
verifier that used a receipt as evidence when it verified an artifact, for
example the evaluated model, and verified the receipt under <xref target="RECEIPTS"/>
Section 5, cites the receipt there; the artifact itself is the VSA's
<spanx style="verb">subject</spanx>:</t>

<figure><artwork><![CDATA[
{"digest": {"sha256": "<receipt digest, 64 hex digits>"},
 "mediaType": "application/vnd.signed-evidence.eval-receipt+json"}
]]></artwork></figure>

<t>The <spanx style="verb">mediaType</spanx> identifies B. <spanx style="verb">verificationResult</spanx>
is the verifier's result under its policy, not the receipt's <spanx style="verb">passed</spanx>: a
receipt that verifies and records <spanx style="verb">passed</spanx> false (vector P2 of <xref target="RECEIPTS"/>)
can be the input of a VSA whose <spanx style="verb">verificationResult</spanx> is PASSED, when the
verifier's policy asks only for a valid receipt.</t>

</section>
</section>
<section anchor="cose"><name>COSE and SCITT</name>

<t>A Signed Evaluation Receipt is not a COSE Receipt. Its format is JSON with
Ed25519 over PAE, not COSE; it carries no inclusion proof, and no Transparency
Service or Registration Policy <xref target="RFC9943"/> takes part in making it. In SCITT,
a Transparency Service registers a Signed Statement and returns a COSE Receipt
<xref target="RFC9942"/> proving its inclusion.</t>

<t>Two existing constructions carry the receipt digest without a new field: a
typed digest reference (<xref target="typed-reference"/>) and a Signed Statement whose
payload is the digest (<xref target="signed-statement"/>). Both name the receipt; neither
carries it.</t>

<section anchor="typed-reference"><name>A Typed Digest Reference</name>

<t><xref target="CPB"/> Section 8 defines a typed digest reference with the members <spanx style="verb">type</spanx>,
<spanx style="verb">purpose</spanx>, <spanx style="verb">digest_alg</spanx> and <spanx style="verb">digest</spanx>, and leaves the declaration of artifact
types to the profiles that accept them (<xref target="CPB"/> Section 8.1). This document
declares one artifact type for the receipt digest:</t>

<t><list style="symbols">
  <t><spanx style="verb">type</spanx> is <spanx style="verb">application/vnd.signed-evidence.eval-receipt+json</spanx>, the type,
which identifies B;</t>
  <t>there is one digest context, so <spanx style="verb">purpose</spanx> is absent;</t>
  <t>the canonicalization algorithm is <spanx style="verb">as-transmitted</spanx> (<xref target="CPB"/> Section 4.4),
with the byte-boundary selector <xref target="RECEIPTS"/> Section 3.4, "The Bytes B";</t>
  <t>the hash function is SHA-256, and <spanx style="verb">digest_alg</spanx> is exactly <spanx style="verb">SHA-256</spanx>;</t>
  <t><spanx style="verb">digest</spanx> is the receipt digest as its 64 lowercase hexadecimal digits, a
text value; in the <spanx style="verb">cpb-refs</spanx> header parameter of <xref target="CPB"/> Section 8.3 it is
a text string.</t>
</list></t>

<t>A reference under this declaration can stand in the <spanx style="verb">cpb-refs</spanx> header
parameter of a Signed Statement, or in a payload that carries references in
its own serialization, for example in the <spanx style="verb">references</spanx> of <xref target="CAPSULE"/>. A
verifier obtains B by steps 1 to 3 of <xref target="RECEIPTS"/> Section 5, computes
SHA-256 over it and compares the hexadecimal text. A candidate without B
cannot be obtained as the cited artifact, which <xref target="CPB"/> Section 8.1 calls
Unresolved; it corresponds to INDETERMINATE in <xref target="matching"/>. A consuming
profile that does not name this declaration by normative reference leaves
every such reference Unresolved (<xref target="CPB"/> Section 8.1); no profile names it at
the time of writing.</t>

<t>Only the digest crosses, as for the Signed Statement below. A reference that
is Verified shows that the cited bytes are B; it does not show that the
receipt verifies, who signed it, or that its assertion is true (<xref target="CPB"/>
Section 8.5).</t>

</section>
<section anchor="signed-statement"><name>A Signed Statement that Cites a Receipt</name>

<t>A Signed Statement that cites a receipt is a COSE_Sign1 <xref target="RFC9052"/> with CBOR
tag 18 in the form of a COSE Hash Envelope <xref target="RFC9995"/>. Its form is fixed, so
that one receipt digest, one statement key, one issuer and one algorithm value
give one byte string. Vector M2 (<xref target="examples"/>) is such a statement.</t>

<t><list style="symbols">
  <t>The protected header holds exactly these five parameters and no other:
  <list style="symbols">
      <t>1 (alg): -19, Ed25519 as fully specified in <xref target="RFC9864"/>, or -8, EdDSA
<xref target="RFC9053"/>. A party that makes a statement MUST write -19. A Receiver MUST
accept both values and applies every other check of <xref target="check-statement"/> to
either; under the Ed25519 statement keys that step 3 selects, both values
select the same signature algorithm. Changing alg changes the protected
header bytes and requires a new signature (<xref target="alg-choice"/>);</t>
      <t>4 (kid): the COSE Key Thumbprint <xref target="RFC9679"/> with SHA-256 of the statement
key, a byte string of 32 bytes. For an Ed25519 public key x, kid is SHA-256
over the core-deterministically encoded COSE_Key map <spanx style="verb">{1: 1, -1: 6, -2: x}</spanx>;
no optional COSE_Key parameter enters the thumbprint;</t>
      <t>15 (CWT Claims) <xref target="RFC9597"/>: a map with exactly 1 (<spanx style="verb">iss</spanx>), an absolute URI
(<xref target="RFC3986"/> Section 4.3) that names the party that makes the statement, and
2 (<spanx style="verb">sub</spanx>), the text value of <spanx style="verb">model_id_commit</spanx> of B;</t>
      <t>258 (payload hash algorithm): -16 (SHA-256);</t>
      <t>259 (preimage content type): the type, as a text string.</t>
    </list></t>
  <t>The unprotected header is the empty map.</t>
  <t>The payload is the receipt digest, 32 bytes.</t>
  <t>The COSE_Sign1, its protected header included, is encoded with the core
deterministic encoding of <xref target="RFC8949"/> Section 4.2.1.</t>
</list></t>

<t>The value of <spanx style="verb">sub</spanx> is a choice of this example; the receipt digest does not
depend on it. The statement key and the receipt key can be the same key or
different keys. The statement carries its own signature over its own
Sig_structure; it is not the receipt's signature, even when one key makes both.
Registering M2 with a Transparency Service yields a COSE Receipt for M2, not
for the evaluation receipt.</t>

<section anchor="make-statement"><name>Making a Statement</name>

<t>A party makes a statement for a receipt only after the receipt has passed the
verification procedure of <xref target="RECEIPTS"/> Section 5 under a key that party fixed.
A receipt that fails it gives no statement. The party computes the receipt
digest over B, takes <spanx style="verb">sub</spanx> from the <spanx style="verb">model_id_commit</spanx> of B, writes the
protected header above, signs the Sig_structure of <xref target="RFC9052"/> Section 4.4 with
an empty external_aad under the statement key, and encodes the COSE_Sign1.</t>

</section>
<section anchor="check-statement"><name>Checking a Statement</name>

<t>The Receiver holds the statement, a candidate receipt, its independently
selected receipt verification key, and configured pairs of an issuer URI and an
Ed25519 statement key. The received iss value does not establish that
association. It applies the following steps in order. The first step that fails gives the status named in
it, and the statement is refused; only a statement that passes every step is
accepted. A Receiver that stops because it reached a resource limit, in any
step, reports a resource-limit error; that is no status, and the statement is
not accepted.</t>

<t><list style="numbers" type="1">
  <t>If the bytes are not one CBOR data item in the deterministic encoding, if
the item is not a COSE_Sign1, or if its protected header is not a map in
the deterministic encoding, the status is malformed. A data item that is
well-formed but not valid under <xref target="RFC8949"/> Section 5.3.1, such as a text
string that is not valid UTF-8 or a map with duplicate keys, is malformed;
two keys are duplicates only when they are equal under the key equivalence
of <xref target="RFC8949"/> Section 5.6.1, so the integer 1 and true are two keys and 0.0
and -0.0 are one. Step 1 does not check whether the content of a tag inside
the COSE_Sign1 is valid for that tag (<xref target="RFC8949"/> Section 5.3.2); the data
items inside a tag are checked like any other data item. For step 1, the
COSE_Sign1 check concerns only the outer tag, the four-element array and its
element types:
a wrapping in a CBOR tag other than 18 is not a COSE_Sign1 and is malformed,
and an otherwise valid COSE_Sign1 without a tag goes on to step 2 and is
outside_profile there. The protected-header byte string is decoded as a
CBOR map, with the empty byte string treated as an empty map (<xref target="RFC9052"/>
Section 3), which fails in step 2. CBOR validity and deterministic encoding
are checked before step 2. Header label types are checked only in step 2; a
header label that is not one of the five required integer labels gives
outside_profile if step 1 succeeds.</t>
  <t>If the item is not tagged 18, the unprotected header is not empty, the
protected header does not hold exactly the five parameters above with the
types and values given there, the payload is detached or is not 32 bytes,
or the signature is not 64 bytes, the status is outside_profile. <spanx style="verb">sub</spanx> MUST be
a text string matching <spanx style="verb">sha256:</spanx> followed by exactly 64 lowercase
hexadecimal digits; otherwise the status is outside_profile. Step 7 then
compares that string byte for byte with <spanx style="verb">model_id_commit</spanx> of B.</t>
  <t>A configured pair counts only if its statement key is 32 octets and its
point A meets rules 1 and 2 of <xref target="RECEIPTS"/> Section 4.4: A is a canonical
encoding of a point of order L. A point of small order or of mixed order does
not count. If no configured
pair that counts has both an issuer URI exactly equal to iss and a statement
key whose SHA-256 COSE Key Thumbprint equals kid, the status is
untrusted_key. Subsequent signature verification uses only keys selected by
this pairwise match.</t>
  <t>If the signature does not meet the four rules of <xref target="RECEIPTS"/> Section 4.4
under a key that step 3 selected, with the Sig_structure of <xref target="RFC9052"/>
Section 4.4 in place of PAE(type, B) in rule 4, the status is
signature_invalid.</t>
  <t>Run the verification procedure of <xref target="RECEIPTS"/> Section 5 under the
Receiver's receipt key. Continue to step 6 only if it returns PASS. If it
returns FAIL, the status is receipt_not_verified. If it stops with a
resource-limit error, propagate that error and stop without accepting the
statement.</t>
  <t>If the payload is not the receipt digest of the candidate, the status is
digest_mismatch.</t>
  <t>If <spanx style="verb">sub</spanx> is not the <spanx style="verb">model_id_commit</spanx> of B, the status is subject_mismatch.</t>
</list></t>

<t>If every step passes, the status is accepted.</t>

<t>Steps 1 to 4 do not use the receipt. A general COSE verifier that implements
the statement's alg value checks the signature under the rules of its own
Ed25519 implementation, which can accept a signature that step 4 refuses, for
example one whose R is a point of small order. It does not apply steps 5 to 7,
and its success does not show that the statement cites a receipt that verifies.</t>

</section>
<section anchor="crossing"><name>What Crosses and What Is Lost</name>

<texttable title="What a Signed Statement carries of a receipt" anchor="crossing-table">
      <ttcol align='left'>Receipt</ttcol>
      <ttcol align='left'>Signed Statement</ttcol>
      <c>B</c>
      <c>only its receipt digest, as the payload</c>
      <c><spanx style="verb">model_id_commit</spanx> of B</c>
      <c><spanx style="verb">sub</spanx> (2) of the CWT Claims</c>
      <c>the type</c>
      <c>parameter 259</c>
      <c>the other members of B (<spanx style="verb">schema</spanx>, <spanx style="verb">suite</spanx>, <spanx style="verb">suite_version</spanx>, <spanx style="verb">metric</spanx>, <spanx style="verb">comparator</spanx>, <spanx style="verb">threshold</spanx>, <spanx style="verb">score</spanx>, <spanx style="verb">passed</spanx>, <spanx style="verb">n</spanx>, <spanx style="verb">dataset_id_commit</spanx>, <spanx style="verb">commit_alg</spanx>, <spanx style="verb">timestamp</spanx>), including <spanx style="verb">criteria_digest</spanx> when present</c>
      <c>not carried; named only through the digest</c>
      <c>the receipt's signature and its key hint</c>
      <c>not carried</c>
      <c>(none)</c>
      <c><spanx style="verb">iss</spanx>, <spanx style="verb">kid</spanx> and <spanx style="verb">alg</spanx>, the statement of the party that signs it</c>
</texttable>

<t>A Receiver that relies on the assertion of a receipt needs the receipt itself;
the statement only names it.</t>

</section>
<section anchor="alg-choice"><name>Choice of alg</name>

<t>Value -19 is the fully specified Ed25519 identifier of <xref target="RFC9864"/>, which sets
the polymorphic EdDSA identifier -8 of <xref target="RFC9053"/> to Deprecated. A party that
makes a statement therefore writes -19 only. Every Receiver accepts -8 as well,
for statements made before a producer moved to -19 and for general COSE
verifiers that implement -8 but not -19 (<xref target="impl"/>), so that one statement gives
one status. -8 names EdDSA for any curve; step 3 of <xref target="check-statement"/> counts
only Ed25519 statement keys, so a statement with -8 under any other key is
untrusted_key.</t>

<t>The payload follows the pattern of the hash-only mode of <xref target="PRML-PROFILE"/>: the
32 raw octets of a SHA-256, carried as a byte string and not as hexadecimal
text. That profile leaves open how a verifier tells such a payload from a full
one, and names a COSE header parameter that declares the digest algorithm as
one candidate. Header parameters 258 and 259 of <xref target="RFC9995"/>, used here, are
such a declaration.</t>

</section>
</section>
</section>
<section anchor="prml"><name>Criteria Sets in PRML</name>

<t>PRML <xref target="PRML"/> serializes an evaluation claim fixed before the run: a metric, a
comparator, a threshold, a dataset content hash and a seed, in canonical YAML
whose SHA-256 is the manifest hash. A receipt records one result after the run.
A receipt names a criteria set at most through its optional <spanx style="verb">criteria_digest</spanx>
(<xref target="RECEIPTS"/> Section 3.5). When the criteria set is a PRML manifest, the bytes
that PRML fixes for it are its canonical bytes, whose SHA-256 is the manifest
hash, and <spanx style="verb">criteria_digest</spanx> over them is <spanx style="verb">sha256:</spanx> followed by the manifest
hash. <xref target="prml-table"/> maps the members of a PRML
manifest, version 0.1, onto a receipt.</t>

<texttable title="A PRML manifest and a receipt" anchor="prml-table">
      <ttcol align='left'>PRML</ttcol>
      <ttcol align='left'>Receipt</ttcol>
      <ttcol align='left'>Lost or changed</ttcol>
      <c><spanx style="verb">version</spanx></c>
      <c>none</c>
      <c>which PRML rules apply</c>
      <c><spanx style="verb">claim_id</spanx></c>
      <c>none</c>
      <c>the claim and its amendment chain; only one manifest is named, by <spanx style="verb">criteria_digest</spanx></c>
      <c><spanx style="verb">created_at</spanx></c>
      <c>none</c>
      <c><spanx style="verb">timestamp</spanx> is when the Issuer states the evaluation ran, not when the criteria were written</c>
      <c><spanx style="verb">metric</spanx></c>
      <c><spanx style="verb">metric</spanx></c>
      <c>nothing when the string is copied exactly</c>
      <c><spanx style="verb">comparator</spanx></c>
      <c><spanx style="verb">comparator</spanx></c>
      <c><spanx style="verb">==</spanx> has no counterpart; such a claim has no receipt</c>
      <c><spanx style="verb">threshold</spanx></c>
      <c><spanx style="verb">threshold</spanx></c>
      <c>a number becomes a decimal string; the rule below compares values</c>
      <c><spanx style="verb">dataset.id</spanx>, <spanx style="verb">dataset.hash</spanx></c>
      <c><spanx style="verb">dataset_id_commit</spanx></c>
      <c>the content hash; the receipt commits to an identifier with a salt, not to the content</c>
      <c><spanx style="verb">seed</spanx></c>
      <c>none</c>
      <c>the seed</c>
      <c><spanx style="verb">producer</spanx></c>
      <c>none</c>
      <c>the producer; the receipt names no issuer, the Receiver fixes the key</c>
      <c><spanx style="verb">model</spanx></c>
      <c><spanx style="verb">model_id_commit</spanx></c>
      <c>the clear identifier; checking an opening requires the salt and identifier</c>
      <c><spanx style="verb">prior_hash</spanx>, <spanx style="verb">metric_args</spanx>, <spanx style="verb">code</spanx>, <spanx style="verb">notes</spanx></c>
      <c>none</c>
      <c>all of them</c>
      <c>none</c>
      <c><spanx style="verb">suite</spanx>, <spanx style="verb">suite_version</spanx>, <spanx style="verb">score</spanx>, <spanx style="verb">passed</spanx>, <spanx style="verb">n</spanx>, <spanx style="verb">timestamp</spanx></c>
      <c>a manifest has no result</c>
</texttable>

<t>A Receiver that holds a receipt and a PRML manifest compares them as follows
and reports the two results separately.</t>

<t><list style="numbers" type="1">
  <t>Run the procedure of <xref target="RECEIPTS"/> Section 5 under the Receiver's receipt
key. Continue only if it returns PASS. If it returns FAIL, do not perform
the comparison. If it stops with a resource-limit error, propagate that
error and stop without reporting binding or agreement results.</t>
  <t>The manifest is canonicalized as <xref target="PRML"/> Section 3 requires, and its
manifest hash is computed. A manifest that PRML rejects is not compared.</t>
  <t>Binding. The result is BOUND when the receipt carries <spanx style="verb">criteria_digest</spanx>
and it equals <spanx style="verb">sha256:</spanx> followed by the manifest hash, and UNBOUND
otherwise.</t>
  <t>Agreement. The result is AGREE when <spanx style="verb">metric</spanx> is the same string in both,
<spanx style="verb">comparator</spanx> is the same and is not <spanx style="verb">==</spanx>, and the receipt's <spanx style="verb">threshold</spanx>
and the manifest's threshold are the same decimal number, the manifest's
value read as the decimal that its canonical rendering denotes (so <spanx style="verb">0.8</spanx>
in the manifest and <spanx style="verb">0.800</spanx> in the receipt agree, and
<spanx style="verb">0.80000000000000001</spanx> in the receipt does not). Otherwise it is DIFFER.</t>
</list></t>

<t>BOUND says that the Issuer states this result belongs to that manifest; AGREE
says that the two documents state the same metric, comparator and threshold.
Neither result shows that the manifest existed before the run, which needs a
time-anchored record of the manifest, such as a registration under
<xref target="PRML-PROFILE"/>, and evidence of when the run began. Neither shows that the
dataset with the manifest's content hash was the one evaluated, or that the
seed was used.</t>

</section>
<section anchor="abak"><name>Relation to Claim-Preservation Requirements</name>

<t><xref target="ABAK"/> states format-neutral requirements for converting and consuming
evaluation evidence. This document addresses parts of these requirements for
the conversions it describes; the correspondences below are not a conformance
claim. <xref target="mapping-table"/> and <xref target="prml-table"/> name what each envelope or
document loses, in the sense of its requirement R-CP-9.
<xref target="matching"/> gives INDETERMINATE when B cannot be obtained or the algorithm is
unknown, never a match (R-CP-8, R-CP-10). <xref target="non-claims"/> keeps the result of a
verifier or of a registration apart from the receipt's <spanx style="verb">passed</spanx>, and claims no
order of criteria and run (R-CP-5, R-CP-11). It does not meet the requirements
on coverage and attempts (R-CP-6) or on records of a mapping instance
(R-CP-1): a receipt has no field for them, and this document defines none.</t>

</section>
<section anchor="non-claims"><name>What Is Not Proven</name>

<t>The list of <xref target="RECEIPTS"/> Section 6 applies unchanged to a cited receipt. It is
repeated here word for word; its one cross-reference is written as a reference
to Section 5 of <xref target="RECEIPTS"/>.</t>

<t>Verification establishes that the receipt passes the format, consistency and
signature checks in Section 5 of <xref target="RECEIPTS"/> under the Receiver's selected key. It does
not establish that the Issuer's claims are true.
In particular:</t>

<t><list style="symbols">
  <t>The score can be false. The evaluation can be wrong, badly designed or not
run at all; the receipt records what the Issuer states.</t>
  <t>The run need not have been the only run. An Issuer can evaluate many times
and record only the run it prefers.</t>
  <t>The Issuer can lie. A valid signature binds the statement to the key, not to
the truth.</t>
  <t>A receipt does not show that it was published, logged or shown to anyone
else. A receipt does not prove registration with a Transparency Service. In
SCITT, transparency additionally requires registering a Signed Statement
carrying the receipt or its digest with a Transparency Service and verifying
the resulting SCITT Receipt. Registration and verification of the resulting
SCITT Receipt are outside this document.</t>
  <t>The receipt bytes are not a stable name for the receipt. Only B is signed;
the receipt object around it is not canonicalized, and its key hint can be
present or absent. A party that cites a receipt cites SHA-256 over B.</t>
  <t>A commitment is computationally binding under the collision resistance of
SHA-256. A Receiver can check a claimed opening only after receiving the salt
and identifier. Hiding depends on keeping an unpredictable salt secret.</t>
  <t>The timestamp is the Issuer's statement, not a time attested by another
party.</t>
  <t>The receipt says nothing about individual samples: <spanx style="verb">n</spanx> is the Issuer's
statement, and no sample result is committed or can be disclosed against the
receipt. A sample-level audit is outside this document and is left to a
separate document.</t>
  <t>A receipt does not show that the threshold was fixed before the run.</t>
  <t><spanx style="verb">criteria_digest</spanx> binds only the Issuer's statement that this result belongs
to the criteria set with that digest. It shows neither that the criteria set
existed before the run nor that the metric, comparator and threshold in it
equal those in the receipt.</t>
  <t>Even with salt and identifier disclosed, the receipt does not show that the
named model or dataset was the one actually evaluated.</t>
</list></t>

<t>Each envelope adds what it does not prove:</t>

<t><list style="symbols">
  <t>A citation. A MATCH does not show that the candidate verifies, who signed it,
or that its assertion is true (case C5). The digest names B; it names
neither a signature nor a key.</t>
  <t>DSSE. A successful DSSE signature check authenticates PAE(type, B) under the
selected key. A receipt verdict additionally requires the verification
profile and all checks of <xref target="RECEIPTS"/> Section 5. The unauthenticated <spanx style="verb">keyid</spanx>
is only a key-selection hint.</t>
  <t>in-toto test-result. A Statement that restates a receipt is the statement of
its signer. It does not show that a receipt exists, and its <spanx style="verb">result</spanx> does not
show that the receipt's <spanx style="verb">passed</spanx> is true; both are statements.</t>
  <t>SLSA VSA. A VSA shows that its verifier states that it verified its subject
under its policy, with the cited receipt among its inputs. <spanx style="verb">verificationResult</spanx> is not <spanx style="verb">passed</spanx>, and the VSA
does not make the receipt's assertion true. The digest in
<spanx style="verb">inputAttestations</spanx> names B, not the signature or the key the verifier used.</t>
  <t>SCITT Signed Statement and COSE Receipt. The Hash Envelope carries only the
digest. Its registration shows that a Transparency Service registered a
statement naming that digest under its Registration Policy. It does not show
that a receipt with that B exists or that it verifies, and <spanx style="verb">sub</spanx> binds
nothing beyond the commitment it repeats.</t>
  <t>Typed digest reference. A Verified reference shows that the cited bytes are
B, nothing about the signature, the key or the assertion.</t>
  <t>PRML. BOUND and AGREE (<xref target="prml"/>) do not show that the criteria were fixed
before the run.</t>
</list></t>

<t>No envelope in this document carries sample data: a receipt commits to no
sample result (<xref target="RECEIPTS"/> Section 6), and a citation names only B.</t>

</section>
<section anchor="security"><name>Security Considerations</name>

<t>This section follows the guidance of <xref target="RFC3552"/>. The attacker can read,
create, modify, replay and reorder receipts and citing envelopes, and controls
every input except the Receiver's choice of verification key.</t>

<t>Collisions. A citation names B only as well as SHA-256 resists collisions and
second preimages.</t>

<t>Signer not bound. The receipt digest does not name a key. An attacker who
signs the same B with its own key produces a receipt that matches every
citation of B. It fails verification under the Receiver's key (<xref target="why-b"/>).</t>

<t>Signature reuse across envelopes. By design the signature of a receipt is a
valid DSSE signature under <spanx style="verb">payloadType</spanx> equal to the type (<xref target="dsse"/>). A DSSE
consumer that accepts that <spanx style="verb">payloadType</spanx> holds the B and the signature of a
receipt, and applies <xref target="RECEIPTS"/> Section 5 before it relies on them. Under any other <spanx style="verb">payloadType</spanx> the signature is
expected to be invalid (<xref target="dsse"/>). It is not a COSE signature, because COSE signs a Sig_structure and not
PAE.</t>

<t>Digest confusion. For one receipt, the receipt digest, the SHA-256 of the
receipt bytes and the SHA-256 of a DSSE envelope are three different values. A
Receiver compares only the receipt digest with a citation. <xref target="examples"/> lists
the first two for vector P1 and the third for M1. The
type identifies B, but a receipt object carries the same string as its
<spanx style="verb">schema</spanx>: a Receiver that fetches a receipt object for
a citation takes B from it by steps 1 to 3 of <xref target="RECEIPTS"/> Section 5 and
compares the digest of that B, never the digest of the object.</t>

<t>Algorithm. Only SHA-256 is defined. A citation with another algorithm gives
INDETERMINATE (case C8), so it cannot be satisfied by a weaker digest.</t>

</section>
<section anchor="privacy-considerations"><name>Privacy Considerations</name>

<t>The receipt digest lets anyone who holds a candidate B confirm it. B carries
salted commitments, so B cannot be guessed without them; a party that knows
them can test guesses for the remaining members, such as score and threshold.
A citation registered with a Transparency Service publishes the digest for as
long as that service keeps its log. The <spanx style="verb">sub</spanx> of M2 repeats the model
commitment of B in clear; registered, it links every receipt and statement
that commit to the same model identifier with the same salt (<xref target="RECEIPTS"/>
Section 9). The same holds for a <spanx style="verb">criteria_digest</spanx> that a receipt carries.</t>

</section>
<section anchor="iana-considerations"><name>IANA Considerations</name>

<t>This document has no IANA actions.</t>

</section>
<section anchor="impl"><name>Implementation Status</name>

<t>This section records the status of known implementations at the time of
writing, following <xref target="RFC7942"/>, and is to be removed before publication.</t>

<t>The examples of <xref target="examples"/> were produced by a generator script whose two runs
are byte-identical, and checked by a separate script that re-derives every
value of <xref target="examples"/> from the bytes, including the match result of every case, with its own implementation of steps 1 to 3 of <xref target="RECEIPTS"/> Section 5.</t>

<t>An implementation of both directions of <xref target="signed-statement"/>, the open-source
package proofbundle (module <spanx style="verb">receipt_cose</spanx>, experimental), reproduces M2 byte
for byte from vector P1 of <xref target="RECEIPTS"/> and returns each status of
<xref target="check-statement"/> for a set of 49 statements and 6 receipts. It writes -19
only and reads -8 only under an Ed25519 statement key. Measured on 2026-10-08
with these pinned versions: pycose 1.1.0 (with cbor2 5.9.0) and go-cose v1.3.0
verified the statement with alg -8, refused the same statement with one
signature bit changed, and reported alg -19 (vector M2) as an unknown
algorithm; microsoft/scitt-verifier 0.4.0 evaluated the signature of neither
statement (its result for both was cannot-evaluate, with the statement
signature not evaluated).</t>

<t>The signature of M2 (alg -19) is checked from the text alone, without a COSE
library: a script written from the texts of this document and of <xref target="RECEIPTS"/>
builds the Sig_structure by hand and verifies the signature over it with a
general Ed25519 implementation (its checks M2-17 and M2-18).</t>

</section>


  </middle>

  <back>


<references title='References' anchor="sec-combined-references">

    <references title='Normative References' anchor="sec-normative-references">

<reference anchor="RFC2119" target="https://www.rfc-editor.org/info/rfc2119">
  <front>
    <title>Key words for use in RFCs to Indicate Requirement Levels</title>
    <author initials="S." surname="Bradner">
      <organization></organization>
    </author>
    <date year="1997" month="March"/>
  </front>
  <seriesInfo name="BCP" value="14"/>
  <seriesInfo name="RFC" value="2119"/>
</reference>
<reference anchor="RFC8174" target="https://www.rfc-editor.org/info/rfc8174">
  <front>
    <title>Ambiguity of Uppercase vs Lowercase in RFC 2119 Key Words</title>
    <author initials="B." surname="Leiba">
      <organization></organization>
    </author>
    <date year="2017" month="May"/>
  </front>
  <seriesInfo name="BCP" value="14"/>
  <seriesInfo name="RFC" value="8174"/>
</reference>
<reference anchor="RECEIPTS" target="https://datatracker.ietf.org/doc/draft-gruszka-signed-evaluation-receipts/">
  <front>
    <title>Signed Evaluation Receipts</title>
    <author initials="K." surname="Gruszka">
      <organization></organization>
    </author>
    <date year="2026" month="October"/>
  </front>
  <seriesInfo name="Internet-Draft" value="draft-gruszka-signed-evaluation-receipts-00"/>
</reference>
<reference anchor="DSSE" target="https://github.com/secure-systems-lab/dsse/blob/v1.0.2/protocol.md">
  <front>
    <title>DSSE: Dead Simple Signing Envelope, protocol specification, version 1.0.2</title>
    <author >
      <organization>Secure Systems Lab</organization>
    </author>
    <date year="2024" month="May" day="28"/>
  </front>
</reference>
<reference anchor="RFC9052" target="https://www.rfc-editor.org/info/rfc9052">
  <front>
    <title>CBOR Object Signing and Encryption (COSE): Structures and Process</title>
    <author initials="J." surname="Schaad">
      <organization></organization>
    </author>
    <date year="2022" month="August"/>
  </front>
  <seriesInfo name="STD" value="96"/>
  <seriesInfo name="RFC" value="9052"/>
</reference>
<reference anchor="RFC9053" target="https://www.rfc-editor.org/info/rfc9053">
  <front>
    <title>CBOR Object Signing and Encryption (COSE): Initial Algorithms</title>
    <author initials="J." surname="Schaad">
      <organization></organization>
    </author>
    <date year="2022" month="August"/>
  </front>
  <seriesInfo name="RFC" value="9053"/>
</reference>
<reference anchor="RFC9995" target="https://www.rfc-editor.org/info/rfc9995">
  <front>
    <title>CBOR Object Signing and Encryption (COSE) Hash Envelope</title>
    <author initials="O." surname="Steele">
      <organization></organization>
    </author>
    <author initials="S." surname="Lasker">
      <organization></organization>
    </author>
    <author initials="H." surname="Birkholz">
      <organization></organization>
    </author>
    <date year="2026" month="July"/>
  </front>
  <seriesInfo name="RFC" value="9995"/>
</reference>
<reference anchor="RFC9597" target="https://www.rfc-editor.org/info/rfc9597">
  <front>
    <title>CBOR Web Token (CWT) Claims in COSE Headers</title>
    <author initials="M." surname="Prorock">
      <organization></organization>
    </author>
    <author initials="O." surname="Steele">
      <organization></organization>
    </author>
    <author initials="R." surname="Mahy">
      <organization></organization>
    </author>
    <author initials="H." surname="Birkholz">
      <organization></organization>
    </author>
    <date year="2024" month="July"/>
  </front>
  <seriesInfo name="RFC" value="9597"/>
</reference>
<reference anchor="RFC9864" target="https://www.rfc-editor.org/info/rfc9864">
  <front>
    <title>Fully-Specified Algorithms for JSON Object Signing and Encryption (JOSE) and CBOR Object Signing and Encryption (COSE)</title>
    <author initials="M. B." surname="Jones">
      <organization></organization>
    </author>
    <author initials="O." surname="Steele">
      <organization></organization>
    </author>
    <date year="2025" month="October"/>
  </front>
  <seriesInfo name="RFC" value="9864"/>
</reference>
<reference anchor="RFC9679" target="https://www.rfc-editor.org/info/rfc9679">
  <front>
    <title>CBOR Object Signing and Encryption (COSE) Key Thumbprint</title>
    <author initials="K." surname="Isobe">
      <organization></organization>
    </author>
    <author initials="H." surname="Tschofenig">
      <organization></organization>
    </author>
    <author initials="O." surname="Steele">
      <organization></organization>
    </author>
    <date year="2024" month="December"/>
  </front>
  <seriesInfo name="RFC" value="9679"/>
</reference>
<reference anchor="RFC3986" target="https://www.rfc-editor.org/info/rfc3986">
  <front>
    <title>Uniform Resource Identifier (URI): Generic Syntax</title>
    <author initials="T." surname="Berners-Lee">
      <organization></organization>
    </author>
    <author initials="R." surname="Fielding">
      <organization></organization>
    </author>
    <author initials="L." surname="Masinter">
      <organization></organization>
    </author>
    <date year="2005" month="January"/>
  </front>
  <seriesInfo name="STD" value="66"/>
  <seriesInfo name="RFC" value="3986"/>
</reference>
<reference anchor="RFC8949" target="https://www.rfc-editor.org/info/rfc8949">
  <front>
    <title>Concise Binary Object Representation (CBOR)</title>
    <author initials="C." surname="Bormann">
      <organization></organization>
    </author>
    <author initials="P." surname="Hoffman">
      <organization></organization>
    </author>
    <date year="2020" month="December"/>
  </front>
  <seriesInfo name="STD" value="94"/>
  <seriesInfo name="RFC" value="8949"/>
</reference>
<reference anchor="CPB" target="https://datatracker.ietf.org/doc/draft-mih-sokolov-scitt-payload-binding/05/">
  <front>
    <title>Canonicalization Declaration for SCITT Signed Statements</title>
    <author initials="S." surname="Mih">
      <organization></organization>
    </author>
    <author initials="A." surname="Sokolov">
      <organization></organization>
    </author>
    <date year="2026" month="September" day="11"/>
  </front>
  <seriesInfo name="Internet-Draft" value="draft-mih-sokolov-scitt-payload-binding-05"/>
</reference>
<reference anchor="PRML" target="https://spec.falsify.dev/v0.1">
  <front>
    <title>PRML: Pre-Registered ML Manifest Specification, Version 0.1</title>
    <author initials="C." surname="Öztürk" role="editor">
      <organization></organization>
    </author>
    <date year="2026" month="May" day="01"/>
  </front>
</reference>
<reference anchor="INTOTO-STATEMENT" target="https://github.com/in-toto/attestation/blob/v1.2.0/spec/v1/statement.md">
  <front>
    <title>in-toto Attestation Framework: Statement layer, v1 (release v1.2.0)</title>
    <author >
      <organization>in-toto project</organization>
    </author>
    <date year="2026" month="March" day="18"/>
  </front>
</reference>
<reference anchor="INTOTO-RD" target="https://github.com/in-toto/attestation/blob/v1.2.0/spec/v1/resource_descriptor.md">
  <front>
    <title>in-toto Attestation Framework: ResourceDescriptor field type, v1 (release v1.2.0)</title>
    <author >
      <organization>in-toto project</organization>
    </author>
    <date year="2026" month="March" day="18"/>
  </front>
</reference>
<reference anchor="INTOTO-DIGESTSET" target="https://github.com/in-toto/attestation/blob/v1.2.0/spec/v1/digest_set.md">
  <front>
    <title>in-toto Attestation Framework: DigestSet field type, v1 (release v1.2.0)</title>
    <author >
      <organization>in-toto project</organization>
    </author>
    <date year="2026" month="March" day="18"/>
  </front>
</reference>
<reference anchor="VSA" target="https://slsa.dev/spec/v1.2/verification_summary">
  <front>
    <title>SLSA Verification Summary Attestation (VSA), version 1</title>
    <author >
      <organization>OpenSSF SLSA project</organization>
    </author>
    <date year="n.d."/>
  </front>
</reference>


    </references>

    <references title='Informative References' anchor="sec-informative-references">

<reference anchor="RFC3552" target="https://www.rfc-editor.org/info/rfc3552">
  <front>
    <title>Guidelines for Writing RFC Text on Security Considerations</title>
    <author initials="E." surname="Rescorla">
      <organization></organization>
    </author>
    <author initials="B." surname="Korver">
      <organization></organization>
    </author>
    <date year="2003" month="July"/>
  </front>
  <seriesInfo name="BCP" value="72"/>
  <seriesInfo name="RFC" value="3552"/>
</reference>
<reference anchor="RFC7942" target="https://www.rfc-editor.org/info/rfc7942">
  <front>
    <title>Improving Awareness of Running Code: The Implementation Status Section</title>
    <author initials="Y." surname="Sheffer">
      <organization></organization>
    </author>
    <author initials="A." surname="Farrel">
      <organization></organization>
    </author>
    <date year="2016" month="July"/>
  </front>
  <seriesInfo name="BCP" value="205"/>
  <seriesInfo name="RFC" value="7942"/>
</reference>
<reference anchor="RFC9942" target="https://www.rfc-editor.org/info/rfc9942">
  <front>
    <title>CBOR Object Signing and Encryption (COSE) Receipts</title>
    <author initials="O." surname="Steele">
      <organization></organization>
    </author>
    <author initials="H." surname="Birkholz">
      <organization></organization>
    </author>
    <author initials="A." surname="Delignat-Lavaud">
      <organization></organization>
    </author>
    <author initials="C." surname="Fournet">
      <organization></organization>
    </author>
    <date year="2026" month="June"/>
  </front>
  <seriesInfo name="RFC" value="9942"/>
</reference>
<reference anchor="RFC9943" target="https://www.rfc-editor.org/info/rfc9943">
  <front>
    <title>An Architecture for Trustworthy and Transparent Digital Supply Chains</title>
    <author initials="H." surname="Birkholz">
      <organization></organization>
    </author>
    <author initials="A." surname="Delignat-Lavaud">
      <organization></organization>
    </author>
    <author initials="C." surname="Fournet">
      <organization></organization>
    </author>
    <author initials="Y." surname="Deshpande">
      <organization></organization>
    </author>
    <author initials="S." surname="Lasker">
      <organization></organization>
    </author>
    <date year="2026" month="June"/>
  </front>
  <seriesInfo name="RFC" value="9943"/>
</reference>
<reference anchor="STATEMENT-ID" target="https://datatracker.ietf.org/doc/draft-gruszka-scitt-statement-identification/">
  <front>
    <title>Requirements and Test Cases for Identifying SCITT Signed Statements</title>
    <author initials="K." surname="Gruszka">
      <organization></organization>
    </author>
    <date year="2026" month="October"/>
  </front>
  <seriesInfo name="Internet-Draft" value="draft-gruszka-scitt-statement-identification-00"/>
</reference>
<reference anchor="CAPSULE" target="https://datatracker.ietf.org/doc/draft-mih-scitt-agent-action-capsule/05/">
  <front>
    <title>An Agent Action Capsule Profile for SCITT</title>
    <author initials="S." surname="Mih">
      <organization></organization>
    </author>
    <date year="2026" month="September" day="26"/>
  </front>
  <seriesInfo name="Internet-Draft" value="draft-mih-scitt-agent-action-capsule-05"/>
</reference>
<reference anchor="PRML-PROFILE" target="https://datatracker.ietf.org/doc/draft-ozturk-scitt-prml-profile/00/">
  <front>
    <title>A SCITT Profile for Pre-Run Evaluation Criteria (PRML)</title>
    <author initials="C." surname="Öztürk">
      <organization></organization>
    </author>
    <date year="2026" month="September" day="11"/>
  </front>
  <seriesInfo name="Internet-Draft" value="draft-ozturk-scitt-prml-profile-00"/>
</reference>
<reference anchor="ABAK" target="https://datatracker.ietf.org/doc/draft-abak-ai-evaluation-claim-preservation/00/">
  <front>
    <title>Claim-Preserving Exchange of AI Evaluation Evidence</title>
    <author initials="A. T." surname="Abak">
      <organization></organization>
    </author>
    <date year="2026" month="September" day="23"/>
  </front>
  <seriesInfo name="Internet-Draft" value="draft-abak-ai-evaluation-claim-preservation-00"/>
</reference>
<reference anchor="INTOTO-ENVELOPE" target="https://github.com/in-toto/attestation/blob/v1.2.0/spec/v1/envelope.md">
  <front>
    <title>in-toto Attestation Framework: Envelope layer, v1 (release v1.2.0)</title>
    <author >
      <organization>in-toto project</organization>
    </author>
    <date year="2026" month="March" day="18"/>
  </front>
</reference>
<reference anchor="TEST-RESULT" target="https://github.com/in-toto/attestation/blob/v1.2.0/spec/predicates/test-result.md">
  <front>
    <title>in-toto Attestation Framework: Test Result predicate, v0.1 (release v1.2.0)</title>
    <author >
      <organization>in-toto project</organization>
    </author>
    <date year="2026" month="March" day="18"/>
  </front>
</reference>


    </references>

</references>


<?line 975?>

<section anchor="examples"><name>Examples</name>

<t>The values below are derived from vectors of <xref target="RECEIPTS"/> (P1, and the candidates named in <xref target="cases"/>) and from the issuer test key of that document, whose seed is given there; the issuer URI of the Signed Statement is a constant of this example. PURE TEST KEY. It MUST NOT be used for anything real.</t>

<section anchor="constants"><name>Constants</name>

<t>Type:</t>

<figure><artwork><![CDATA[
application/vnd.signed-evidence.eval-receipt+json
]]></artwork></figure>

<t>Issuer test key, public key (base64 and hex):</t>

<figure><artwork><![CDATA[
x7ppA99DtumHO/Au0M/gumSK8IwCzNwPiID92BSFbak=
c7ba6903df43b6e9873bf02ed0cfe0ba648af08c02ccdc0f8880fdd814856da9
]]></artwork></figure>

<t>Issuer URI of the Signed Statement (<spanx style="verb">iss</spanx>):</t>

<figure><artwork><![CDATA[
https://issuer.example/eval
]]></artwork></figure>

</section>
<section anchor="p1-digests"><name>Digests of Vector P1</name>

<t>B, 458 bytes (hex):</t>

<figure><artwork><![CDATA[
7b22636f6d6d69745f616c67223a227368613235362d73616c7465642d763122
2c22636f6d70617261746f72223a223e3d222c22646174617365745f69645f63
6f6d6d6974223a227368613235363a6132316261346439366338303364343236
3364643364323136316263303339613330663434363262643539343730653331
626135613961623061396233623633222c226d6574726963223a226163637572
616379222c226d6f64656c5f69645f636f6d6d6974223a227368613235363a39
3034646534323536326639613139363531653139656237616231363565346666
6531313463653561326639386535376461353833383935393638346662306622
2c226e223a313830302c22706173736564223a747275652c22736368656d6122
3a2268747470733a2f2f7369676e65642d65766964656e63652e6f72672f6576
616c2d726563656970742f7631222c2273636f7265223a22302e383334222c22
7375697465223a2261636d652d7361666574792d7375697465222c2273756974
655f76657273696f6e223a22312e322e30222c227468726573686f6c64223a22
302e383030222c2274696d657374616d70223a22323032362d31302d30325430
303a30303a30305a227d
]]></artwork></figure>

<t>Receipt digest, SHA-256 over B:</t>

<figure><artwork><![CDATA[
8cd849a6dcce08aee334511d7b2f31c54e478885dda1795d3c8f972dd0d4811c
]]></artwork></figure>

<t>SHA-256 over the receipt bytes of P1; not the receipt digest:</t>

<figure><artwork><![CDATA[
02036d1f57509858330383755ec16c532bdc58b0f2d949464488d57abc9f95e7
]]></artwork></figure>

</section>
<section anchor="case-bytes"><name>Citation Cases</name>

<t>Every case cites B of P1. Cases C1 to C7 cite, with the algorithm sha-256, the receipt digest given in <xref target="p1-digests"/>. C8 cites, with the algorithm sha-512, this value over the same B:</t>

<figure><artwork><![CDATA[
d5cccf69bb4f9b2c6d102e1a4da3d057cf8fc00bbbae69c0889bb423d243e246
1685c907c22f86f34c15290063ee3cd0c5815a85e25e40ef1609fcd4e11c2dc8
]]></artwork></figure>

<t>The candidates are the vectors of <xref target="RECEIPTS"/> named in <xref target="cases"/>, whose bytes are given there. Case and SHA-256 over the candidate's receipt bytes:</t>

<figure><artwork><![CDATA[
C1 02036d1f57509858330383755ec16c532bdc58b0f2d949464488d57abc9f95e7
C2 c2a7943f0ea3de6e9da88c11925b1e112d32f697a403f07fcfbc3776bca10e72
C3 2c8144d50b4cc42a712d84e4d0417e52b0d8cbc484ad8e6d8d4b36a429b94ec1
C4 2405d1783d1803ddea207c027622fba40b3e82161686505ee96988e306e17278
C5 18b1b6dc631cf0f00d8b0d2c237b28a67b12c2d7088ae0313a2fb27760f96bdd
C6 31a34194edd90bade6568a3cb00dbb983dabab9efccfd7a8b38650bd3e8d5201
C7 8966f27c5f2566d986b0ab7821060ea0c901504fe984d450dfc7f8ca7d1c27e1
C8 02036d1f57509858330383755ec16c532bdc58b0f2d949464488d57abc9f95e7
]]></artwork></figure>

<t>The expected results are those of <xref target="cases"/>; the reasons are:</t>

<t><list style="symbols">
  <t>C1: SHA-256 over the candidate's B equals the cited digest.</t>
  <t>C2: SHA-256 over the candidate's B equals the cited digest.</t>
  <t>C3: SHA-256 over the candidate's B equals the cited digest.</t>
  <t>C4: SHA-256 over the candidate's B differs from the cited digest.</t>
  <t>C5: SHA-256 over the candidate's B equals the cited digest.</t>
  <t>C6: B not obtained, step 3 of <xref target="RECEIPTS"/> Section 5 fails.</t>
  <t>C7: B not obtained, step 1 of <xref target="RECEIPTS"/> Section 5 fails.</t>
  <t>C8: Citation algorithm not defined.</t>
</list></t>

</section>
<section anchor="m1"><name>M1, DSSE Envelope with the Receipt's Signature</name>

<t>The envelope is a JSON object with the members payloadType, payload and signatures, serialized without insignificant whitespace and with members sorted by name. Its only signature is signature.sig of P1, unchanged; it verifies as Ed25519 over PAE(payloadType, payload) under the issuer test key.</t>

<t>PAE(type, B), 522 bytes (hex):</t>

<figure><artwork><![CDATA[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]]></artwork></figure>

<t>Envelope, 806 bytes (hex):</t>

<figure><artwork><![CDATA[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]]></artwork></figure>

<t>SHA-256 over the envelope bytes; not the receipt digest:</t>

<figure><artwork><![CDATA[
d96e0b9635949045a6f7c7b29eac8c163f6fad0d6d0bff446beeff601e45fed0
]]></artwork></figure>

</section>
<section anchor="m2"><name>M2, SCITT Signed Statement Citing the Receipt by Digest</name>

<t>A COSE_Sign1 with CBOR tag 18 in the form of a COSE Hash Envelope. The protected header holds these parameters, in this order:</t>

<t><list style="symbols">
  <t>1 (alg): -19</t>
  <t>4 (kid): a 32-byte string, given below</t>
  <t>15 (CWT Claims): a map with 1 (iss), the URI of <xref target="constants"/>, and 2 (sub), the text string given below</t>
  <t>258 (payload hash algorithm): -16</t>
  <t>259 (preimage content type): the type, as a text string</t>
</list></t>

<t>kid, the COSE Key Thumbprint (SHA-256) of the issuer test key (hex):</t>

<figure><artwork><![CDATA[
c94d618c32417cedb44280d4d66029e6486aa834802d12cd919c817453eb1561
]]></artwork></figure>

<t>sub, the model commitment of B:</t>

<figure><artwork><![CDATA[
sha256:904de42562f9a19651e19eb7ab165e4ffe114ce5a2f98e57da5838959684fb0f
]]></artwork></figure>

<t>Protected header, 202 bytes (hex):</t>

<figure><artwork><![CDATA[
a50132045820c94d618c32417cedb44280d4d66029e6486aa834802d12cd919c
817453eb15610fa201781b68747470733a2f2f6973737565722e6578616d706c
652f6576616c0278477368613235363a39303464653432353632663961313936
3531653139656237616231363565346666653131346365356132663938653537
646135383338393539363834666230661901022f19010378316170706c696361
74696f6e2f766e642e7369676e65642d65766964656e63652e6576616c2d7265
63656970742b6a736f6e
]]></artwork></figure>

<t>The unprotected header is the empty map. The payload is the receipt digest given in <xref target="p1-digests"/>.</t>

<t>Sig_structure (ToBeSigned), 251 bytes (hex), with external_aad the empty byte string:</t>

<figure><artwork><![CDATA[
846a5369676e61747572653158caa50132045820c94d618c32417cedb44280d4
d66029e6486aa834802d12cd919c817453eb15610fa201781b68747470733a2f
2f6973737565722e6578616d706c652f6576616c0278477368613235363a3930
3464653432353632663961313936353165313965623761623136356534666665
3131346365356132663938653537646135383338393539363834666230661901
022f19010378316170706c69636174696f6e2f766e642e7369676e65642d6576
6964656e63652e6576616c2d726563656970742b6a736f6e4058208cd849a6dc
ce08aee334511d7b2f31c54e478885dda1795d3c8f972dd0d4811c
]]></artwork></figure>

<t>Signature, Ed25519 over the Sig_structure (hex):</t>

<figure><artwork><![CDATA[
f8be22ab6b1c196611d884ea635f610ac45c042ab7958828c2af46dd5e35ac8d
66b0c01fc115f7d93597f3cf783e95df37ef78da9006b773e08e6239af01a10e
]]></artwork></figure>

<t>COSE_Sign1, 307 bytes (hex):</t>

<figure><artwork><![CDATA[
d28458caa50132045820c94d618c32417cedb44280d4d66029e6486aa834802d
12cd919c817453eb15610fa201781b68747470733a2f2f6973737565722e6578
616d706c652f6576616c0278477368613235363a393034646534323536326639
6131393635316531396562376162313635653466666531313463653561326639
38653537646135383338393539363834666230661901022f1901037831617070
6c69636174696f6e2f766e642e7369676e65642d65766964656e63652e657661
6c2d726563656970742b6a736f6ea058208cd849a6dcce08aee334511d7b2f31
c54e478885dda1795d3c8f972dd0d4811c5840f8be22ab6b1c196611d884ea63
5f610ac45c042ab7958828c2af46dd5e35ac8d66b0c01fc115f7d93597f3cf78
3e95df37ef78da9006b773e08e6239af01a10e
]]></artwork></figure>

<t>SHA-256 over the COSE_Sign1 bytes:</t>

<figure><artwork><![CDATA[
64e78be4636b8d1e90cb7a1ebe06c4cfba2848603d6f64958d7c2080a901c575
]]></artwork></figure>

</section>
</section>
<section numbered="false" anchor="open-items-to-be-removed-before-publication"><name>Open Items (to be removed before publication)</name>

<t><list style="symbols">
  <t>References. The in-toto references are pinned to release v1.2.0 of the
in-toto Attestation Framework.</t>
  <t>The draft names of <xref target="RECEIPTS"/> and <xref target="STATEMENT-ID"/> are to be updated once
those documents are published.</t>
  <t>The artifact-type declaration of <xref target="typed-reference"/> is named by no
consuming profile yet.</t>
</list></t>

</section>


  </back>

<!-- ##markdown-source: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-->

</rfc>

