Trust

Seal · Identity · Policy

These are implemented as separate layers in code. Marketing that collapses them into one green badge is wrong.

Seal

Tampered?

SHA-256 of archive members + Ed25519 over the canonical manifest. Envelope header integrity. Works offline.

epi verify · private browser check
Identity

Who sealed?

Embedded public key proves the seal. Trust (LOCAL / UNKNOWN / pinned / DID:web) is whether you accept that key. First-run LOCAL is normal.

epi keys trust · STRICT policy
Policy

Rules broken?

Optional epi_policy.json + 9-pass deterministic fault analyzer. Policy FAULT can sit next to a valid seal — the record is intact; a rule matched. Unpinned identity is still not claim-ready.

epi analyze · not moral judgment

Optional transparency layers

Honesty notes

Try verify → · How it works