Trust inspector · bundled capability card
Signature valid is not the same as trusted.
The bundled capability-card fixture carries a valid signature that the real WASM verifier checks locally. Its key is not pinned to a Ship trust root and none of its capabilities were captured from a harness, so the example grade remains self-asserted. The fixture demonstrates why a valid signature is not enough.
verifying…self-assertedno revocation foundauthentic bytes · unverified identity
identity
agentagent://deployer
keyidkey_645b2fe2f4da2e7a
schemaagent_card.v1
version1.0.0
provenance grade
A
Asserted
self-signed · 0 of 4 captured
declared capabilities
file.readasserted
file.writeasserted
db.queryasserted
deploy.productionasserted
models
claude-sonnet-4provenance grades
Captured
Machine-observed from the harness: keypair, config, receipts.
Checked
Cross-verified: the card validated against actual receipts.
Asserted
A bare claim: self-signed, no captured evidence.
Revocation is fail-closed: only the card's own key or a Ship trust root can revoke it, and unauthorized revocations are ignored. To raise this card above self-asserted, pin its key as a trust root and cross-check its capabilities against real receipts.