Verification hub
How a third party verifies a sealed X'am without trusting either party.
Every published reading is pre-registered and sealed before measurement begins. Verification does not require our cooperation, our systems, or our word.
A pre-registration fixes the protocol, the subject set, and the scoring rule before anyone looks. A reading whose protocol moved after measurement is void, and is listed as void rather than removed.
Seals are signed by a hardware-held key and witnessed. The signing identity and the witness arrangement are published so a stranger can check a signature without asking us for anything.
A reading is taken against a specific model and a specific provisioning at a specific time. Same-model and same-provisioning conditions are recorded with the reading. A result obtained under different conditions is a different reading, and we do not represent that the two are interchangeable.