Live evidence record · fail closed

One public root. Three evidence layers.

“Three-root ceremony” is the public working name. Technically, the system has one Merkle root: an Ed25519 publisher signature, a Sigstore Rekor transparency-log witness and a Bitcoin timestamp through OpenTimestamps. Each state below applies only when the witness names the exact bytes fetched from /root.json.

Exact root loaded in this browser

EXACT WITNESS MATCH
Public-root SHA-256
ae8bbfcedf7cc30172498110e7df66a4f6c98c4aae69c9f47cdcba2abc1d334e
Merkle root
40ce3833118fab76a98c55429a5b06c7c3051915780893f3ab60a25cb31ac0a4
Public-root leaves
305
Root as-of
2026-09-22T08:54:02Z

Current evidence layers

1. Publisher signature

PRESENT

Presence is reported here; cryptographic verification requires recomputing the documented preimage against the pinneddid:web key.

2. Rekor witness

WITNESSED

Rekor records existence and integrated time for the signed preimage. It is a transparency witness, not an endorsement.

Inspect Rekor entry (opens in a new tab)

3. Bitcoin timestamp

CONFIRMED_BITCOIN

The upgraded proof names Bitcoin blocks 968130, 968132, 968134, 968135, confirming that these exact root bytes existed no later than the attested block time.

blocks 968130, 968132, 968134, 968135

Download exact .ots proof

Other anchor rails stay separate

EAS on Base and an XRPL memo are not silently folded into “three.” Their exact status is reported by the witness record for the exact root.

EAS on Base
NOT_YET
XRPL memo
NOT_YET

Recheck the record without trusting this page

Completion means the signature verifies, the witness matches the exact root bytes and OpenTimestamps reports Bitcoin block attestations. Anything less is shown as PRESENT, PENDING, NOT_YET or UNCHECKABLE.