{
 "schema": "cain42.l5.forensic-inventory.v1",
 "generated_at": "2026-09-28T07:03:12Z",
 "reused": [
  {
   "prompt_part": "5, 6, 7, 13 \u2014 attestation, rotation, grants, delegation",
   "where": "cain45/canon.py (domain-separated Ed25519), cain45/identity.py (agent/instance/human/service/tool)",
   "note": "shared canonical scheme is mirrored by the independent verifier"
  },
  {
   "prompt_part": "11, 12 \u2014 effective authority + intersection",
   "where": "clawx/control_plane/envelope.py (AuthorityVector), cain45/l5/authority.py (MIN over 10 states)",
   "note": "the verifier re-implements intersection independently as a cross-check"
  },
  {
   "prompt_part": "16 \u2014 revocation",
   "where": "clawx/control_plane/revocation.py (RevocationRegistry, EmergencyControl)",
   "note": "verifier consumes signed revocation entries"
  },
  {
   "prompt_part": "18, 19 \u2014 trust constraint + floors",
   "where": "clawx/control_plane/trust_field.py, cain45/l5/authority.py (trust_state)",
   "note": "verifier enforces trust_floor at the artifact level"
  },
  {
   "prompt_part": "21 \u2014 budgets",
   "where": "clawx/control_plane/resources.py (ResourceLedger, FinancialGate), cain45/economics.py (ResourceGrant)",
   "note": "budget limits are carried as capability constraints"
  },
  {
   "prompt_part": "26 \u2014 MCPGate enforcement",
   "where": "cain/mcp_proxy.py, cain45/authoritative_state.McpGateAuthoritativeEnforcer",
   "note": "declarative verification of the gate's decision object"
  },
  {
   "prompt_part": "4 \u2014 principal model",
   "where": "clawx/control_plane/principals.py, cain45/identity.py, cain45/l5/agent_identity.PrincipalKind"
  },
  {
   "prompt_part": "15 \u2014 delegation graph",
   "where": "clawx/control_plane/tql.py (AuthorityGraph), clawx/control_plane/graph.py"
  }
 ],
 "extended": [
  {
   "prompt_part": "41 \u2014 independent verification",
   "where": "scripts/cain42_l5/verify_authority_bundle_engine_b.py + tests/test_cain42_l5_authority_verifier.py",
   "what": "clean-room verifier (Engine B) for AgentIdentity / AuthorityGrant / DelegationGrant / AuthorizationDecision; 25 attack tests (Parts 33/34). Imports nothing from CAIN. Runs ALONGSIDE scripts/cain42_l5/verify_authority_bundle.py (a separate implementation by a concurrent session) so two independent verifiers must agree."
  }
 ],
 "new": [
  {
   "prompt_part": "27 \u2014 bypass report",
   "where": "CAIN42_L5_BYPASS_REPORT.json (this generator)"
  },
  {
   "prompt_part": "42 \u2014 conformance gate",
   "where": "CAIN42_L5_CONFORMANCE.json/.md (this generator)"
  },
  {
   "prompt_part": "1 \u2014 forensic inventory",
   "where": "CAIN42_L5_FORENSIC_INVENTORY.json/.md"
  }
 ],
 "not_built_here": [
  {
   "prompt_part": "2,3,5-10,13,14,16-25,29-32,36-40",
   "where": "cain45/l5/ (a concurrent session is building this layer right now)",
   "note": "a second writer was active in that directory; this work deliberately does not edit it"
  }
 ]
}
