Live evidence record · fail closed

One public root. Three evidence layers.

“Three-root ceremony” is the public working name. Technically, the system has one Merkle root: an Ed25519 publisher signature, a Sigstore Rekor transparency-log witness and a Bitcoin timestamp through OpenTimestamps. Each state below applies only when the witness names the exact bytes fetched from /root.json.

Exact root loaded in this browser

EXACT WITNESS MATCH
Public-root SHA-256
f6c7d82651b30007c6c7c33d8ada7d0943610a11824e0893f4906b854fdb3e90
Merkle root
03d0ea31b374df4c3a7826ad4e6347a0c0baf75cad65d85a6f515427d504ea32
Public-root leaves
264
Root as-of
2026-09-13T06:03:55Z

Current evidence layers

1. Publisher signature

PRESENT

Presence is reported here; cryptographic verification requires recomputing the documented preimage against the pinneddid:web key.

2. Rekor witness

WITNESSED

Rekor records existence and integrated time for the signed preimage. It is a transparency witness, not an endorsement.

Inspect Rekor entry (opens in a new tab)

3. Bitcoin timestamp

CONFIRMED_BITCOIN

The upgraded proof names Bitcoin blocks 966783, 966784, confirming that these exact root bytes existed no later than the attested block time.

blocks 966783, 966784

Download exact .ots proof

Other anchor rails stay separate

EAS on Base and an XRPL memo are not silently folded into “three.” Their exact status is reported by the witness record for the exact root.

EAS on Base
NOT_YET
XRPL memo
NOT_YET

Recheck the record without trusting this page

Completion means the signature verifies, the witness matches the exact root bytes and OpenTimestamps reports Bitcoin block attestations. Anything less is shown as PRESENT, PENDING, NOT_YET or UNCHECKABLE.