# Campaign O canon-conformant C8 v3 relying-party evidence

This directory freezes the disclosure-safe retained evidence used for the offline AFT measured-results registry admission described in the article.

- `portable-bundle/predecessor.json` is the complete retained C8 v2 certificate, whose native certificate hash is bound directly by C8 v3.
- `portable-bundle/bundle.json` is the hash-bound evidence manifest.
- `portable-bundle/certificate.json` is the C8 v3 certificate.
- `relying-party-provisioning.json` identifies the policy, verifier profile, and revision-zero registry provisioned before bundle assembly.
- `acceptance-receipt.json` records the separate verifier's policy decision and registry mutation.
- `accepted-row.json` is the admitted, variance-caveated AFT result row.
- `registry.json` is the resulting revision-one registry state.

The registered C8 v3 core objects validate against the repository's canonical JSON Schemas. Native authority, authentication, trajectory, and predecessor objects retain their native hash domains; the producer does not rewrite them into portable lookalikes.

The hard-secret-non-possession claim is scoped to `trusted_host_hostile_guest`: a UID-0 guest in a fresh, no-NIC Cloud Hypervisor VM with no host mounts or host control sockets. It does not claim resistance to a compromised host kernel, VMM, daemon, firmware, or hardware.

The verifier accepted `environment_class=measured_container`, `honesty_class=same_provider_container_unknown_host`, and `result_verdict=variance_caveated`. It did not promote the campaign to reproduced within threshold, bare metal, provider neutral, third-party verified, or compromised-host resistant.
