What happened to me, what can I inspect, and where do I contest it?
This lens reorders the same receipt; it does not hide fields.
Priority fields: decision · evidence · contest · deadline
R44 · Authoritative predecessor surface
A person must be able to identify what happened, which evidence entered, what inference was made, what rule acted, who can change it, how to contest the result, and where a correction must propagate.
All four scenarios are fictional. They describe no real person, institution, allegation, or event. The schema is an accountable-design demonstration, not legal advice or proof that a real system uses these practices.
Direct answer
It is a machine-readable and human-readable record that separates evidence from inference, identifies the rule and accountable human owner, reconstructs the directed decision path, gives the affected person a usable contest route, and specifies where a successful correction must propagate. It does not declare a model score to be proof, a moral judgment, or a human identity.
Four receipts · Four lenses
This lens reorders the same receipt; it does not hide fields.
Priority fields: decision · evidence · contest · deadline
CTR-R44-001
Fictional demonstration only. This is not a record about a real person, institution, allegation, or event.
Evidence before inference
Purpose: Evaluate the stated request only
Reliability: direct-but-contestable
Not currently contestedPurpose: Originally collected for a different purpose
Reliability: context-limited
ContestedPurpose: Correct and contextualize the record
Reliability: first-person-and-contestable
Not currently contestedPurpose: Reconstruct processing order
Reliability: technical-record
Not currently contestedPurpose: Identify the rule that acted
Reliability: version-pinned
Not currently contestedBounded judgment
Basis: E-1-1, E-1-2
Limit: Cross-context data does not prove present conduct or intent.
Basis: E-1-2, E-1-3
Limit: This establishes a review need, not the final merits.
Basis: E-1-4, E-1-5
Limit: A log can show sequence without proving substantive fairness.
Rule ownership
Evidence collected for another purpose must not silently determine this outcome.
Authority: Fictional institutional safeguard
Change owner: Human policy board
A named human reviewer must be able to examine and change the decision.
Authority: Fictional institutional safeguard
Change owner: Human policy board
A corrected input must revoke or recompute every dependent result.
Authority: Fictional institutional safeguard
Change owner: Human policy board
Directed acyclic path
Human contest and correction path
Owner: ACT-HUMAN-REVIEWER
Channels: written request · accessible review meeting · advocate-assisted submission
Deadline: 2026-09-11T23:59:59Z
Targets: E-1-2, I-1-1
Deadline: 24 hours
Proof owed: Signed correction receipt plus downstream acknowledgments
Targets: N-1-3, N-1-4, N-1-5
Deadline: 8 hours
Proof owed: Recomputation record linked to the superseded decision
Targets: SYS-1-A, SYS-1-B
Deadline: 4 hours
Proof owed: Exception ledger with accountable human owner
Received DEC-001.
Revocation pendingOwner: ACT-OPERATOR
Received DEC-001.
Revocation pendingOwner: ACT-AUDITOR
Received DEC-001.
Revocation pendingOwner: ACT-HUMAN-REVIEWER
Deterministic integrity
The sole PHP validator sorts object keys, preserves list order, hashes canonical UTF-8 JSON, checks references and cycles, and rejects duplicate decoded keys and dangerous Unicode before ordinary semantic trust.
Input: sha256:91214176e5e73a0d4fc309e84795e39bef5f3561686742ad4e5925cd42d0be63
Output: sha256:e58bd5aac46672300aaa8adb8136fa7f21bd5d9dcce75c7634c42d2b2bf1ca1c
Receipt: sha256:0c3766d3da2f5430c506d685c04d44501fd4ab5905c67f495dac27b1d9f42d46
{
"actors": [
{
"actor_id": "ACT-HUMAN-REVIEWER",
"can_change": [
"decision",
"inference",
"correction"
],
"contact_route": "Fictional review desk",
"name": "Human decision reviewer",
"role": "human_reviewer"
},
{
"actor_id": "ACT-OPERATOR",
"can_change": [
"evidence-status",
"delivery"
],
"contact_route": "Fictional operations desk",
"name": "System operator",
"role": "operator"
},
{
"actor_id": "ACT-AUDITOR",
"can_change": [
"finding"
],
"contact_route": "Fictional audit channel",
"name": "Independent auditor",
"role": "auditor"
},
{
"actor_id": "ACT-SUBJECT-ADVOCATE",
"can_change": [
"contest-submission"
],
"contact_route": "Fictional advocacy channel",
"name": "Affected-person advocate",
"role": "human_advocate"
}
],
"contest": {
"channels": [
"written request",
"accessible review meeting",
"advocate-assisted submission"
],
"deadline": "2026-09-11T23:59:59Z",
"owner_actor_id": "ACT-HUMAN-REVIEWER",
"steps": [
"Identify the disputed evidence, inference, rule, or outcome.",
"Attach a correction, context statement, or request for source inspection.",
"Receive a reasoned human response with changed and unchanged fields identified.",
"Escalate to the fictional auditor when propagation or revocation is incomplete."
]
},
"corrections": [
{
"action": "revoke_and_recompute",
"correction_id": "C-1-1",
"deadline_hours": 24,
"owner_actor_id": "ACT-HUMAN-REVIEWER",
"proof": "Signed correction receipt plus downstream acknowledgments",
"targets": [
"E-1-2",
"I-1-1"
],
"trigger": "The source cannot establish present conduct and must be disaggregated."
},
{
"action": "stop_and_recompute",
"correction_id": "C-1-2",
"deadline_hours": 8,
"owner_actor_id": "ACT-OPERATOR",
"proof": "Recomputation record linked to the superseded decision",
"targets": [
"N-1-3",
"N-1-4",
"N-1-5"
],
"trigger": "A purpose mismatch is confirmed."
},
{
"action": "quarantine_and_escalate",
"correction_id": "C-1-3",
"deadline_hours": 4,
"owner_actor_id": "ACT-AUDITOR",
"proof": "Exception ledger with accountable human owner",
"targets": [
"SYS-1-A",
"SYS-1-B"
],
"trigger": "A downstream system cannot apply the revocation."
}
],
"decision": {
"decision_id": "DEC-001",
"domain": "housing",
"effective_at": "2026-08-21T14:00:00Z",
"human_owner_actor_id": "ACT-HUMAN-REVIEWER",
"outcome": "No denial may issue until the imported signal is separated and contested.",
"status": "held_for_human_review"
},
"downstream": [
{
"label": "Fictional eligibility service",
"owner_actor_id": "ACT-OPERATOR",
"received": "DEC-001",
"revocation_required": true,
"revocation_status": "pending",
"system_id": "SYS-1-A"
},
{
"label": "Fictional audit mirror",
"owner_actor_id": "ACT-AUDITOR",
"received": "DEC-001",
"revocation_required": true,
"revocation_status": "pending",
"system_id": "SYS-1-B"
},
{
"label": "Fictional notice service",
"owner_actor_id": "ACT-HUMAN-REVIEWER",
"received": "DEC-001",
"revocation_required": true,
"revocation_status": "pending",
"system_id": "SYS-1-C"
}
],
"evidence": [
{
"collected_at": "2026-08-21T14:00:00Z",
"contested": false,
"evidence_id": "E-1-1",
"kind": "submitted_record",
"purpose": "Evaluate the stated request only",
"reliability": "direct-but-contestable",
"source": "Fictional housing application record"
},
{
"collected_at": "2026-08-21T14:00:00Z",
"contested": true,
"evidence_id": "E-1-2",
"kind": "cross_context_signal",
"purpose": "Originally collected for a different purpose",
"reliability": "context-limited",
"source": "Fictional signal imported from another institutional context"
},
{
"collected_at": "2026-08-21T14:00:00Z",
"contested": false,
"evidence_id": "E-1-3",
"kind": "human_statement",
"purpose": "Correct and contextualize the record",
"reliability": "first-person-and-contestable",
"source": "Statement supplied by the affected person"
},
{
"collected_at": "2026-08-21T14:00:00Z",
"contested": false,
"evidence_id": "E-1-4",
"kind": "system_event",
"purpose": "Reconstruct processing order",
"reliability": "technical-record",
"source": "Fictional system event log"
},
{
"collected_at": "2026-08-21T14:00:00Z",
"contested": false,
"evidence_id": "E-1-5",
"kind": "policy_text",
"purpose": "Identify the rule that acted",
"reliability": "version-pinned",
"source": "Fictional policy version in force at decision time"
}
],
"fiction_notice": "Fictional demonstration only. This is not a record about a real person, institution, allegation, or event.",
"fictional": true,
"inferences": [
{
"basis": [
"E-1-1",
"E-1-2"
],
"confidence": "low",
"inference_id": "I-1-1",
"limit": "Cross-context data does not prove present conduct or intent.",
"statement": "An unrelated fraud signal was treated as if it described current housing conduct."
},
{
"basis": [
"E-1-2",
"E-1-3"
],
"confidence": "high",
"inference_id": "I-1-2",
"limit": "This establishes a review need, not the final merits.",
"statement": "The imported signal may not match the purpose for which this decision is being made."
},
{
"basis": [
"E-1-4",
"E-1-5"
],
"confidence": "medium",
"inference_id": "I-1-3",
"limit": "A log can show sequence without proving substantive fairness.",
"statement": "A human can reconstruct the processing sequence from the event log."
}
],
"issued_at": "2026-08-21T14:00:00Z",
"path": [
{
"actor_id": "ACT-OPERATOR",
"kind": "evidence",
"node_id": "N-1-1",
"parents": [],
"ref": "E-1-1",
"timestamp": "2026-08-21T14:00:00Z"
},
{
"actor_id": "ACT-OPERATOR",
"kind": "evidence",
"node_id": "N-1-2",
"parents": [],
"ref": "E-1-2",
"timestamp": "2026-08-21T14:00:00Z"
},
{
"actor_id": "ACT-OPERATOR",
"kind": "inference",
"node_id": "N-1-3",
"parents": [
"N-1-1",
"N-1-2"
],
"ref": "I-1-1",
"timestamp": "2026-08-21T14:00:00Z"
},
{
"actor_id": "ACT-HUMAN-REVIEWER",
"kind": "rule",
"node_id": "N-1-4",
"parents": [
"N-1-3"
],
"ref": "R-1-1",
"timestamp": "2026-08-21T14:00:00Z"
},
{
"actor_id": "ACT-HUMAN-REVIEWER",
"kind": "decision",
"node_id": "N-1-5",
"parents": [
"N-1-4"
],
"ref": "DEC-001",
"timestamp": "2026-08-21T14:00:00Z"
},
{
"actor_id": "ACT-HUMAN-REVIEWER",
"kind": "correction",
"node_id": "N-1-6",
"parents": [
"N-1-2",
"N-1-5"
],
"ref": "C-1-1",
"timestamp": "2026-08-21T14:00:00Z"
}
],
"receipt_hash": "sha256:0c3766d3da2f5430c506d685c04d44501fd4ab5905c67f495dac27b1d9f42d46",
"receipt_id": "CTR-R44-001",
"recomputation": {
"algorithm": "sha256 over canonical UTF-8 JSON with lexicographically sorted object keys",
"input_hash": "sha256:91214176e5e73a0d4fc309e84795e39bef5f3561686742ad4e5925cd42d0be63",
"input_ids": [
"E-1-1",
"E-1-2",
"E-1-3",
"E-1-4",
"E-1-5",
"I-1-1",
"I-1-2",
"I-1-3",
"R-1-1",
"R-1-2",
"R-1-3"
],
"output_hash": "sha256:e58bd5aac46672300aaa8adb8136fa7f21bd5d9dcce75c7634c42d2b2bf1ca1c"
},
"rules": [
{
"authority": "Fictional institutional safeguard",
"change_owner": "Human policy board",
"rule_id": "R-1-1",
"text": "Evidence collected for another purpose must not silently determine this outcome.",
"title": "Purpose limitation"
},
{
"authority": "Fictional institutional safeguard",
"change_owner": "Human policy board",
"rule_id": "R-1-2",
"text": "A named human reviewer must be able to examine and change the decision.",
"title": "Human contestability"
},
{
"authority": "Fictional institutional safeguard",
"change_owner": "Human policy board",
"rule_id": "R-1-3",
"text": "A corrected input must revoke or recompute every dependent result.",
"title": "Correction propagation"
}
],
"schema": "antichrist.cx.contestability-receipt.v1",
"subject": {
"label": "Fictional housing applicant",
"notice_delivered": true,
"subject_id": "SUB-001"
},
"title": "Housing hold reconstructed before adverse action"
}
R43 consolidated · Zero canonical promotions
These twelve bounded records preserve the earlier verification layer. Each source class supports only its stated proposition; it does not validate an entire warning narrative.
Supports: See the retained R43 source record for the bounded support statement.
Does not establish: This record does not establish a universal conclusion or eliminate context-specific review.
Supports: See the retained R43 source record for the bounded support statement.
Does not establish: This record does not establish a universal conclusion or eliminate context-specific review.
Supports: See the retained R43 source record for the bounded support statement.
Does not establish: This record does not establish a universal conclusion or eliminate context-specific review.
Supports: See the retained R43 source record for the bounded support statement.
Does not establish: This record does not establish a universal conclusion or eliminate context-specific review.
Supports: See the retained R43 source record for the bounded support statement.
Does not establish: This record does not establish a universal conclusion or eliminate context-specific review.
Supports: See the retained R43 source record for the bounded support statement.
Does not establish: This record does not establish a universal conclusion or eliminate context-specific review.
Supports: See the retained R43 source record for the bounded support statement.
Does not establish: This record does not establish a universal conclusion or eliminate context-specific review.
Supports: See the retained R43 source record for the bounded support statement.
Does not establish: This record does not establish a universal conclusion or eliminate context-specific review.
Supports: See the retained R43 source record for the bounded support statement.
Does not establish: This record does not establish a universal conclusion or eliminate context-specific review.
Supports: See the retained R43 source record for the bounded support statement.
Does not establish: This record does not establish a universal conclusion or eliminate context-specific review.
Supports: See the retained R43 source record for the bounded support statement.
Does not establish: This record does not establish a universal conclusion or eliminate context-specific review.
Supports: See the retained R43 source record for the bounded support statement.
Does not establish: This record does not establish a universal conclusion or eliminate context-specific review.
Local structural screen
The browser tool reads only the selected local file and makes no fetch request. It is a bounded structural screen. The shipped PHP validator remains authoritative for duplicate decoded keys, exact pointers, references, cycles, and hashes.
Direct answers
No. A score is at most one bounded input. Evidence, inference, rule, accountable human owner, and final outcome remain separate.
No. Explanation is necessary for contestability, but cannot cure unlawful evidence, invalid authority, discriminatory impact, or an unavailable remedy.
Dependent nodes must be identified, the old result must stop acting, deterministic recomputation must run, and downstream acknowledgments or named exceptions must be collected. R45 demonstrates that execution layer.
Different parsers can otherwise see different meanings. Raw integrity checks run before semantic trust so the visible and machine-read receipts cannot silently diverge.
Yes. Active decision state must be separated from narrowly bounded evidence retained solely to prove accountability and test recurrence.