Receipt checking reference
The full document validator chooses the receipt family before a family-specific verifier runs. Do not substitute a parsed object for original wire bytes when investigating duplicate fields, escaped discriminators, malformed JSON or canonicalization.
| Reference | Owner and role |
|---|---|
| Protect v2 | Seal’s normative whole-receipt contract |
| Decision receipt schema | Decision-family schema; retain its version-specific and historical distinctions |
| Document and family parser | Actual intake and discriminator rules |
| Protect verifier | Commitment, signature and local replay checks |
| Spine verifier | Older signature/binding checks without replay |
For a refusal, retain the exact diagnostic, format, source revision and key provenance. A commitment mismatch suggests altered or inconsistently constructed contents; a signature mismatch can also mean the wrong public key. Neither should be repaired by editing the original receipt until the check passes.
Results explains authority and occurrence limits. Formats records the decimal compatibility gap at these revisions.
Previous: Run the checker locally. Up: Check receipts. Next: Assurance CLI.