kosa8 docs

Commands / kosa8 evidence

kosa8 evidence

Export and verify signed evidence packages

An evidence package is what kosa8 recorded about a sandbox, a snapshot, an approval or a stretch of time, cut from the audit log so that it still verifies: the audit entries with the chain segment around them, the seals and signed approvals they name, the public keys, a readable summary, and a manifest of every file by SHA-256, signed with Ed25519.

kosa8 evidence verify checks one with nothing but the package — no daemon, no kosa8 state, no network. See docs/design/evidence.md.

Subcommands