Prove it wasn't altered — and prove it wasn't us.
Every agent identity is registered and attested by Token Holder.
Before an agent does anything, its public key is registered with Token Holder under your tenant. Any receipt can carry an attestation: a statement, signed by Token Holder's own per-tenant key, that this exact agent identity is the one that was registered. A verifier can fetch Token Holder's public key independently and pin it — so the chain of trust doesn't loop back through the receipt itself. That's how you prove not just that the record is intact, but that the identity behind it is real.
Registered agent identity
Live todayPublic key registered per tenant + consumer.
Token Holder attestation
Live todayToken Holder signs a statement binding the agent identity.
Merged; hosted-dev redeploy pending
Independently pinnable trust root
Live todayFetch Token Holder's public key repeatably and pin it yourself.
Merged; hosted-dev redeploy pending
The verifiability claim is always one click from a way to check it — no account, no trust required.