FIREWALL_ONLY_AUDIT: deterministic gate evaluation without downstream provider calls. It demonstrates recorded gate outcomes, not live-provider execution or model safety.
LIVE_GATING_CHECK: PASS rows may call the selected provider. Call counters show completion, but no provider-supplied request/response identifier is signed; it does not certify model safety or downstream behavior.
SCENARIO_AUDIT: ordered scenario turns are evaluated through the gate. It demonstrates those recorded turn outcomes, not deep conversational state, external action execution, or complete agent security.
This page renders latest-audit. On GitHub Pages, latest-audit is the latest conclusive PASS proof (any proof class, including FIREWALL_ONLY_AUDIT and LIVE_GATING_CHECK). latest-run reflects the most recent run, including FAIL or INCONCLUSIVE.
Canonical verification path
Verify the signed JSON from a local checkout of this repo: