Approval leases bound to grant context — content hash + context hash, sealed.
Approval leases bound to grant context — every approval seals content hash + context hash, Ed25519-signed and hash-chained.
Try it: verify a real signed grant Read the trust-log companion
Don't take our word for it — re-run the check from your own machine or your own agent runtime.
ledger_state_get: read CWI's live approval records yourself: ledger_state_get with fields=["approvals"] — read-only, no auth. Zero-trust guide: VERIFY.md.