provenance_verify
Inputs: mode, public_id. Returns credential, registry projection, signed event references, and explicit Test Mode metadata.
provenance_registry_resolve
Resolves a public ID and returns claim scope, lifecycle, signature state, and successor information.
provenance_webhook_replay
Requires attempt_id and operator reason. The replay remains linked to the original event and attempt chain.
AI boundary
AI may classify, summarize, compare, and flag. AI does not create evidence, invent source independence, issue without authority, or convert uncertainty into certainty.