{
  "kind": "crawlcheck-evidence-bundle",
  "version": 1,
  "generated_at": "2026-10-07T18:56:42.821Z",
  "report": {
    "id": "dvwqdtpk9b",
    "domain": "supremeconcreteco.com",
    "path": "/",
    "scanned_at": "2026-08-12T04:12:32.145Z",
    "score_version": null,
    "archived": false
  },
  "verifier": {
    "url": "https://crawlcheck.io/crawlcheck-verify.mjs?v=c96356e45adb8e56",
    "sha256": "c96356e45adb8e56980d94dc9c5491df4ade7ab069e8d70b2d9c9edcbc637a6b",
    "run": "node crawlcheck-verify.mjs <this file>",
    "page": "https://crawlcheck.io/verify"
  },
  "proves": [
    "these manifest bytes were signed by the key published at https://crawlcheck.io/.well-known/http-message-signatures-directory",
    "the record digest is a leaf of the Merkle root sealed for its day, and that root is timestamped (OpenTimestamps, anchored in Bitcoin once confirmed)",
    "with the subject included: the sealed record names this report and commits to this manifest, so every fetched byte listed in the manifest (by SHA-256) is bound to the timestamp"
  ],
  "does_not_prove": [
    "that a finding is substantively right - it proves what was recorded and when, not that the rule was the right rule",
    "anything about the site after the scan time"
  ],
  "manifest": null,
  "record": {
    "digest": "c6c9835a99965b6aee3a6ac4673c9dd8af9015f0517521100ad965bdfc5e8838",
    "subject": null,
    "subject_withheld": "the sealed subject lists every finding code on this report, which is licence-gated; with a licence covering supremeconcreteco.com, or as its owner, the bundle carries it and closes the subject checks",
    "recipe": "digest = SHA-256 of the subject's UTF-8 bytes; the subject is canonical JSON (keys sorted, no whitespace); on records from 2026-09-20 its meg field is the manifest sha256"
  },
  "seal": {
    "state": "unverifiable",
    "day": "2026-08-12",
    "why": "no seal record exists for that day"
  },
  "publish_guard": {
    "checked": [
      "private_key",
      "private_jwk",
      "licence_key",
      "api_key",
      "bearer_token",
      "cloud_token",
      "private_address"
    ],
    "withheld": []
  },
  "disclosure": "https://crawlcheck.io/docs/api#disclosure"
}