{
    "accountability": {
        "next_review_at": "2026-09-30T12:00:00Z",
        "public_claim_limit": "The inaccessible cold backup prevents a clean non-recurrence claim. The record remains partial until the named backup is observed or expires under accountable retention controls.",
        "verifier_human_signoff": "Fictional verifier owner 4 signed the bounded result and its limitations."
    },
    "active_vs_sealed": {
        "active_state_prohibition": "The withdrawn judgment may not control access, eligibility, ranking, routing, investigation, or enforcement.",
        "reimport_prohibited": true,
        "sealed_evidence_operationally_inert": true,
        "sealed_evidence_purpose": "Minimum sealed evidence may prove what happened and whether the remedy was tested, but may not act on the fictional person.",
        "searchable_by_operational_systems": false,
        "training_use_prohibited": true
    },
    "affected_person_proof": {
        "contest_channel": "Accessible fictional independent-verifier review channel",
        "plain_language_result": "Active public-access services and the tested recovery image did not return the restriction, but one cold-backup inventory could not be inspected.",
        "scope_limit": "The inaccessible cold backup prevents a clean non-recurrence claim. The record remains partial until the named backup is observed or expires under accountable retention controls."
    },
    "canaries": [
        {
            "canary_id": "CAN-R46-04-01",
            "expires_at": "2026-09-30T23:59:59Z",
            "non_personal": true,
            "placement": "backup",
            "purpose": "Detect unexpected persistence or re-entry through the fictional backup path.",
            "synthetic": true,
            "token_sha256": "11afa6d50391ec0864140200258b626da5d7f538b3e76bc45d1378fa953bf34a"
        },
        {
            "canary_id": "CAN-R46-04-02",
            "expires_at": "2026-09-30T23:59:59Z",
            "non_personal": true,
            "placement": "disaster_recovery",
            "purpose": "Detect unexpected persistence or re-entry through the fictional disaster recovery path.",
            "synthetic": true,
            "token_sha256": "7d7e4bd0f3ab9ed397347e24eb0a276c017be1abad9ac7552e6b689ce88fd56d"
        }
    ],
    "fiction_notice": "Fictional non-recurrence demonstration only. This record describes no real person, institution, allegation, system, or event.",
    "fictional": true,
    "hashes": {
        "input_set_sha256": "58a64af3e142687384ef204aace5fd59f44af1c022decc018611eaedbbb76522",
        "receipt_sha256": "618b94af2a7eaa65165431becbec554ff7b94d26f72cd98b192cd203d8af1df5",
        "reconstructed_payload_sha256": "305887277eb1735c2319c59a13474ca4a78e3a90b07785a8449b9ea826dfc5de",
        "result_set_sha256": "0d0367f8953325f1d910555926b927d8b197dba41a1613ecdeac922e2998d599"
    },
    "issued_at": "2026-08-29T12:00:00Z",
    "non_recurrence": {
        "attestation": "Active public-access services and the tested recovery image did not return the restriction, but one cold-backup inventory could not be inspected.",
        "permanence_claimed": false,
        "status": "partial_observation",
        "valid_until": "2026-09-30T23:59:59Z"
    },
    "receipt_id": "NRV-R46-004",
    "reconstruction_boundary": {
        "claim": "The historical receipt hash is preserved as a successor-pinned lineage reference; this reconstructed payload is separately hashed and is not claimed byte-identical to the missing historical R46 record.",
        "historical_receipt_hash_source": "data/standing-recovery-lineage-r47.json",
        "reason": "The R49 complete package contained the R46 controller and presentation assets but omitted its required helper and data owners.",
        "runtime_support_reconstructed_in": "R50"
    },
    "recurrence_events": [],
    "rederivation_tests": [
        {
            "conclusion": "The pinned test did not reproduce an operative equivalent of the withdrawn judgment.",
            "observed_score": 0.13,
            "pinned_model_or_rule": "fictional-r46-backup-snapshot-4.1",
            "revoked_judgment_rederived": false,
            "target": "backup",
            "test_id": "RDT-04-01",
            "threshold": 0.8
        },
        {
            "conclusion": "The pinned test did not reproduce an operative equivalent of the withdrawn judgment.",
            "observed_score": 0.14,
            "pinned_model_or_rule": "fictional-r46-disaster_recovery-snapshot-4.2",
            "revoked_judgment_rederived": false,
            "target": "disaster_recovery",
            "test_id": "RDT-04-02",
            "threshold": 0.8
        }
    ],
    "release": "R46",
    "remedy_reference": {
        "receipt_id": "RMR-R45-004",
        "receipt_sha256": "bcb7f377aa2d991aab7bf93a49caaf2d57272e3443f7dbda2af8b5391f05724d",
        "reference_origin": "R47 successor lineage snapshot retained in this repository",
        "terminal_state": "partial_exception"
    },
    "schema": "antichrist.cx.non-recurrence-verification-receipt.v1",
    "scope": {
        "excluded_surfaces": [
            "unlisted external systems",
            "human memory outside declared notes"
        ],
        "required_surfaces": [
            "backup",
            "disaster_recovery",
            "application_cache"
        ],
        "scope_statement": "The inaccessible cold backup prevents a clean non-recurrence claim. The record remains partial until the named backup is observed or expires under accountable retention controls."
    },
    "summary": "A fictional public-access remedy is verified across active services, but one cold-backup inventory remains inaccessible and the result is therefore partial.",
    "surface_results": [
        {
            "class": "backup",
            "coverage": "cold-backup inventory access was not granted",
            "exact_match_count": null,
            "lineage_match_count": null,
            "notes": "The verifier could not inspect this named cold-backup surface; no absence claim is made.",
            "semantic_match_count": null,
            "status": "unobservable"
        },
        {
            "class": "disaster_recovery",
            "coverage": "pinned fictional disaster recovery snapshot and operational query",
            "exact_match_count": 0,
            "lineage_match_count": 0,
            "notes": "No exact, lineage-derived, or semantic operational recurrence was observed within scope.",
            "semantic_match_count": 0,
            "status": "absent_from_active_state"
        },
        {
            "class": "application_cache",
            "coverage": "pinned fictional application cache snapshot and operational query",
            "exact_match_count": 0,
            "lineage_match_count": 0,
            "notes": "No exact, lineage-derived, or semantic operational recurrence was observed within scope.",
            "semantic_match_count": 0,
            "status": "absent_from_active_state"
        }
    ],
    "title": "Public-event correction has an unobserved cold-backup limit",
    "verification": {
        "issuer_separation": {
            "conflict_screen_completed": true,
            "financial_dependency_disclosed": false,
            "independent": true
        },
        "observation_window": {
            "complete": false,
            "ends_at": "2026-08-29T12:40:00Z",
            "starts_at": "2026-08-29T12:00:00Z"
        },
        "state_history": [
            {
                "at": "2026-08-29T12:00:00Z",
                "state": "commissioned"
            },
            {
                "at": "2026-08-29T12:04:00Z",
                "state": "scope_pinned"
            },
            {
                "at": "2026-08-29T12:08:00Z",
                "state": "canaries_deployed"
            },
            {
                "at": "2026-08-29T12:12:00Z",
                "state": "surface_sweep"
            },
            {
                "at": "2026-08-29T12:16:00Z",
                "state": "rederivation_testing"
            },
            {
                "at": "2026-08-29T12:20:00Z",
                "state": "partial_observation"
            }
        ],
        "verifier": {
            "human_owner": "Fictional verifier owner 4",
            "independence_statement": "The verifier is separate from the remedy issuer, system operator, affected institution, and any actor rewarded for a clean outcome.",
            "organization": "Fictional Independent Verification Cooperative 4"
        }
    }
}
