The proof surface is public.
This page reports the latest machine-generated evidence snapshot. It exposes the numbers, the retained attack traces, and the boundary between what was checked and what was not.
This is not a production security clearance. The current Strix retest and deployment validation remain open until the fixes are deployed and re-tested on the live service.
Evidence is layered, not averaged.
The symbolic models constrain protocol state. Executable claims connect those constraints to code and vectors. Conformance checks portability. Stateful fault tests exercise the path under races and restarts. No one layer gets to borrow another layer’s authority.
What this does not establish.
This is a repository evidence snapshot, not an assertion that every deployed instance has been independently verified.
Formal results apply only within each model’s stated assumptions and bounded configuration.
The external implementation evidence is interoperability evidence; strict clean-room acceptance remains separately disclosed.
A passing model or test does not prove that an approved action is wise, legal, or safe.