{
  "honest_scope": "Inverted-polarity prover hunt on real constructions. THREE break tiers, kept distinct so the headline is honest: (1) a model tagged HUNT-TEETH:EXPECTED-BREAK is a known-break control whose BREAK proves the harness has teeth (teeth_ok), not a finding; (2) a model tagged HUNT-CHARACTERIZATION:ROBUSTNESS-GAP demonstrates a DOCUMENTED robustness/hygiene gap (the LEAK-BIND-K-PK binding-gap class \u2014 the strongest binding notion is not reached, but NO exploitable break follows; deployers are safe via LEAK-BIND-K-PK + their own transcript/context binding; class result ePrint 2025/1416), ASSESSED (literature-grounded) as NOT exploitable and NOT a novel surprise \u2014 as third-party-standard findings they still warrant human+counsel confirmation before any external claim and are never auto-promoted; (3) a DEPLOYED surface breaking with NEITHER tag is a genuine NOVEL break candidate (RED for human+counsel, never auto-promoted). The 4 key-transport binding-gap models (CMS/OpenPGP/JOSE/Composite) are tier (2), NOT tier (3): a prior version over-counted them as novel. Prover absent -> honest-SKIP; scale runs are the Modal fan-out. Measured report, not a crit.",
  "models": [
    {
      "characterization": false,
      "log": "artifacts/formal/apple_pq3_kpk_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/apple_pq3_kpk_hunt.pv",
      "prover": "proverif",
      "result": "NO_BREAK",
      "role": "RESIST",
      "status": "RAN",
      "teeth": false
    },
    {
      "characterization": false,
      "log": "artifacts/formal/cms_allpqc_multirecipient_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/cms_allpqc_multirecipient_hunt.pv",
      "prover": "proverif",
      "result": "NO_BREAK",
      "role": "RESIST",
      "status": "RAN",
      "teeth": false
    },
    {
      "characterization": false,
      "log": "artifacts/formal/cms_kyber_rfc9629_kpk_fixed_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/cms_kyber_rfc9629_kpk_fixed_hunt.pv",
      "prover": "proverif",
      "result": "NO_BREAK",
      "role": "RESIST",
      "status": "RAN",
      "teeth": false
    },
    {
      "characterization": true,
      "log": "artifacts/formal/cms_kyber_rfc9629_kpk_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/cms_kyber_rfc9629_kpk_hunt.pv",
      "prover": "proverif",
      "result": "BREAK",
      "role": "CHARACTERIZATION_GAP",
      "status": "RAN",
      "teeth": false
    },
    {
      "characterization": false,
      "log": "artifacts/formal/cms_multirecipient_mixedmode_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/cms_multirecipient_mixedmode_hunt.pv",
      "prover": "proverif",
      "result": "BREAK",
      "role": "TEETH_OK",
      "status": "RAN",
      "teeth": true
    },
    {
      "characterization": false,
      "log": "artifacts/formal/composite_kem_kct_control_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/composite_kem_kct_control_hunt.pv",
      "prover": "proverif",
      "result": "NO_BREAK",
      "role": "RESIST",
      "status": "RAN",
      "teeth": false
    },
    {
      "characterization": false,
      "log": "artifacts/formal/composite_kem_kpk_fixed_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/composite_kem_kpk_fixed_hunt.pv",
      "prover": "proverif",
      "result": "NO_BREAK",
      "role": "RESIST",
      "status": "RAN",
      "teeth": false
    },
    {
      "characterization": true,
      "log": "artifacts/formal/composite_kem_kpk_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/composite_kem_kpk_hunt.pv",
      "prover": "proverif",
      "result": "BREAK",
      "role": "CHARACTERIZATION_GAP",
      "status": "RAN",
      "teeth": false
    },
    {
      "characterization": false,
      "log": "artifacts/formal/composite_kem_leak_kpk_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/composite_kem_leak_kpk_hunt.pv",
      "prover": "proverif",
      "result": "NO_BREAK",
      "role": "RESIST",
      "status": "RAN",
      "teeth": false
    },
    {
      "characterization": false,
      "log": "artifacts/formal/composite_kem_xwing_control_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/composite_kem_xwing_control_hunt.pv",
      "prover": "proverif",
      "result": "NO_BREAK",
      "role": "RESIST",
      "status": "RAN",
      "teeth": false
    },
    {
      "characterization": false,
      "log": "artifacts/formal/eap_mlkem_xlayer_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/eap_mlkem_xlayer_hunt.pv",
      "prover": "proverif",
      "result": "NO_BREAK",
      "role": "RESIST",
      "status": "RAN",
      "teeth": false
    },
    {
      "characterization": false,
      "log": "artifacts/formal/eap_mlkem_xlayer_naive_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/eap_mlkem_xlayer_naive_hunt.pv",
      "prover": "proverif",
      "result": "BREAK",
      "role": "TEETH_OK",
      "status": "RAN",
      "teeth": true
    },
    {
      "characterization": false,
      "log": "artifacts/formal/hpke_mlkem_kpk_documented_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/hpke_mlkem_kpk_documented_hunt.pv",
      "prover": "proverif",
      "result": "BREAK",
      "role": "TEETH_OK",
      "status": "RAN",
      "teeth": true
    },
    {
      "characterization": false,
      "log": "artifacts/formal/ikev2_no_transform_binding_teeth_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/ikev2_no_transform_binding_teeth_hunt.pv",
      "prover": "proverif",
      "result": "BREAK",
      "role": "TEETH_OK",
      "status": "RAN",
      "teeth": true
    },
    {
      "characterization": false,
      "log": "artifacts/formal/ikev2_rfc9370_multi_ke_downgrade_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/ikev2_rfc9370_multi_ke_downgrade_hunt.pv",
      "prover": "proverif",
      "result": "NO_BREAK",
      "role": "RESIST",
      "status": "RAN",
      "teeth": false
    },
    {
      "characterization": false,
      "log": "artifacts/formal/jose_cose_pqc_kem_kpk_fixed_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/jose_cose_pqc_kem_kpk_fixed_hunt.pv",
      "prover": "proverif",
      "result": "NO_BREAK",
      "role": "RESIST",
      "status": "RAN",
      "teeth": false
    },
    {
      "characterization": true,
      "log": "artifacts/formal/jose_cose_pqc_kem_kpk_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/jose_cose_pqc_kem_kpk_hunt.pv",
      "prover": "proverif",
      "result": "BREAK",
      "role": "CHARACTERIZATION_GAP",
      "status": "RAN",
      "teeth": false
    },
    {
      "characterization": false,
      "log": "artifacts/formal/kem_combiner_cfrg_generic_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/kem_combiner_cfrg_generic_hunt.pv",
      "prover": "proverif",
      "result": "NO_BREAK",
      "role": "RESIST",
      "status": "RAN",
      "teeth": false
    },
    {
      "characterization": false,
      "log": "artifacts/formal/kem_combiner_naive_pkbind_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/kem_combiner_naive_pkbind_hunt.pv",
      "prover": "proverif",
      "result": "BREAK",
      "role": "TEETH_OK",
      "status": "RAN",
      "teeth": true
    },
    {
      "characterization": false,
      "log": "artifacts/formal/mls_no_groupinfo_binding_teeth_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/mls_no_groupinfo_binding_teeth_hunt.pv",
      "prover": "proverif",
      "result": "BREAK",
      "role": "TEETH_OK",
      "status": "RAN",
      "teeth": true
    },
    {
      "characterization": false,
      "log": "artifacts/formal/mls_pq_ciphersuite_downgrade_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/mls_pq_ciphersuite_downgrade_hunt.pv",
      "prover": "proverif",
      "result": "NO_BREAK",
      "role": "RESIST",
      "status": "RAN",
      "teeth": false
    },
    {
      "characterization": false,
      "log": "artifacts/formal/openpgp_pqc_kpk_fixed_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/openpgp_pqc_kpk_fixed_hunt.pv",
      "prover": "proverif",
      "result": "NO_BREAK",
      "role": "RESIST",
      "status": "RAN",
      "teeth": false
    },
    {
      "characterization": true,
      "log": "artifacts/formal/openpgp_pqc_kpk_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/openpgp_pqc_kpk_hunt.pv",
      "prover": "proverif",
      "result": "BREAK",
      "role": "CHARACTERIZATION_GAP",
      "status": "RAN",
      "teeth": false
    },
    {
      "characterization": false,
      "log": "artifacts/formal/pqc_handshake_forward_secrecy_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/pqc_handshake_forward_secrecy_hunt.pv",
      "prover": "proverif",
      "result": "NO_BREAK",
      "role": "RESIST",
      "status": "RAN",
      "teeth": false
    },
    {
      "characterization": false,
      "log": "artifacts/formal/pqc_keytransport_no_fs_teeth_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/pqc_keytransport_no_fs_teeth_hunt.pv",
      "prover": "proverif",
      "result": "BREAK",
      "role": "TEETH_OK",
      "status": "RAN",
      "teeth": true
    },
    {
      "characterization": false,
      "log": "artifacts/formal/pqxdh_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/pqxdh_hunt.pv",
      "prover": "proverif",
      "result": "NO_BREAK",
      "role": "RESIST",
      "status": "RAN",
      "teeth": false
    },
    {
      "characterization": false,
      "log": "artifacts/formal/pqxdh_signal_kpk_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/pqxdh_signal_kpk_hunt.pv",
      "prover": "proverif",
      "result": "NO_BREAK",
      "role": "RESIST",
      "status": "RAN",
      "teeth": false
    },
    {
      "characterization": false,
      "log": "artifacts/formal/pqxdh_unbound_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/pqxdh_unbound_hunt.pv",
      "prover": "proverif",
      "result": "BREAK",
      "role": "TEETH_OK",
      "status": "RAN",
      "teeth": true
    },
    {
      "characterization": false,
      "log": "artifacts/formal/ssh_no_kexinit_binding_teeth_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/ssh_no_kexinit_binding_teeth_hunt.pv",
      "prover": "proverif",
      "result": "BREAK",
      "role": "TEETH_OK",
      "status": "RAN",
      "teeth": true
    },
    {
      "characterization": false,
      "log": "artifacts/formal/ssh_pq_kex_downgrade_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/ssh_pq_kex_downgrade_hunt.pv",
      "prover": "proverif",
      "result": "NO_BREAK",
      "role": "RESIST",
      "status": "RAN",
      "teeth": false
    },
    {
      "characterization": false,
      "log": "artifacts/formal/tls13_hybrid_downgrade_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/tls13_hybrid_downgrade_hunt.pv",
      "prover": "proverif",
      "result": "NO_BREAK",
      "role": "RESIST",
      "status": "RAN",
      "teeth": false
    },
    {
      "characterization": false,
      "log": "artifacts/formal/tls13_no_transcript_binding_teeth_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/tls13_no_transcript_binding_teeth_hunt.pv",
      "prover": "proverif",
      "result": "BREAK",
      "role": "TEETH_OK",
      "status": "RAN",
      "teeth": true
    },
    {
      "characterization": false,
      "log": "artifacts/formal/tls_hybrid_kemlevel_kpk_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/tls_hybrid_kemlevel_kpk_hunt.pv",
      "prover": "proverif",
      "result": "BREAK",
      "role": "TEETH_OK",
      "status": "RAN",
      "teeth": true
    },
    {
      "characterization": false,
      "log": "artifacts/formal/wifi_pqc_no_rsne_binding_teeth_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/wifi_pqc_no_rsne_binding_teeth_hunt.pv",
      "prover": "proverif",
      "result": "BREAK",
      "role": "TEETH_OK",
      "status": "RAN",
      "teeth": true
    },
    {
      "characterization": false,
      "log": "artifacts/formal/wifi_pqc_owe_downgrade_teeth_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/wifi_pqc_owe_downgrade_teeth_hunt.pv",
      "prover": "proverif",
      "result": "BREAK",
      "role": "TEETH_OK",
      "status": "RAN",
      "teeth": true
    },
    {
      "characterization": false,
      "log": "artifacts/formal/wifi_pqc_sae_downgrade_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/wifi_pqc_sae_downgrade_hunt.pv",
      "prover": "proverif",
      "result": "NO_BREAK",
      "role": "RESIST",
      "status": "RAN",
      "teeth": false
    },
    {
      "characterization": false,
      "log": "artifacts/formal/wifi_pqc_sae_injective_downgrade_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/wifi_pqc_sae_injective_downgrade_hunt.pv",
      "prover": "proverif",
      "result": "NO_BREAK",
      "role": "RESIST",
      "status": "RAN",
      "teeth": false
    },
    {
      "characterization": false,
      "log": "artifacts/formal/wifi_pqc_sae_injective_teeth_hunt.pv.hunt.txt",
      "model": "06_formal_models/proverif/wifi_pqc_sae_injective_teeth_hunt.pv",
      "prover": "proverif",
      "result": "BREAK",
      "role": "TEETH_OK",
      "status": "RAN",
      "teeth": true
    },
    {
      "characterization": true,
      "log": "artifacts/formal/cms_kyber_rfc9629_kpk_hunt.spthy.hunt.txt",
      "model": "06_formal_models/tamarin/cms_kyber_rfc9629_kpk_hunt.spthy",
      "prover": "tamarin-prover",
      "result": "BREAK",
      "role": "CHARACTERIZATION_GAP",
      "status": "RAN",
      "teeth": false
    },
    {
      "characterization": false,
      "log": "artifacts/formal/composite_kem_kpk_fixed_hunt.spthy.hunt.txt",
      "model": "06_formal_models/tamarin/composite_kem_kpk_fixed_hunt.spthy",
      "prover": "tamarin-prover",
      "result": "NO_BREAK",
      "role": "RESIST",
      "status": "RAN",
      "teeth": false
    },
    {
      "characterization": true,
      "log": "artifacts/formal/composite_kem_kpk_hunt.spthy.hunt.txt",
      "model": "06_formal_models/tamarin/composite_kem_kpk_hunt.spthy",
      "prover": "tamarin-prover",
      "result": "BREAK",
      "role": "CHARACTERIZATION_GAP",
      "status": "RAN",
      "teeth": false
    },
    {
      "characterization": true,
      "log": "artifacts/formal/jose_cose_pqc_kem_kpk_hunt.spthy.hunt.txt",
      "model": "06_formal_models/tamarin/jose_cose_pqc_kem_kpk_hunt.spthy",
      "prover": "tamarin-prover",
      "result": "BREAK",
      "role": "CHARACTERIZATION_GAP",
      "status": "RAN",
      "teeth": false
    },
    {
      "characterization": true,
      "log": "artifacts/formal/openpgp_pqc_kpk_hunt.spthy.hunt.txt",
      "model": "06_formal_models/tamarin/openpgp_pqc_kpk_hunt.spthy",
      "prover": "tamarin-prover",
      "result": "BREAK",
      "role": "CHARACTERIZATION_GAP",
      "status": "RAN",
      "teeth": false
    }
  ],
  "module": "outward_provers",
  "n_models": 43,
  "n_novel_break_candidates": 0,
  "n_ran": 43,
  "n_robustness_gap_characterizations": 8,
  "n_skipped": 0,
  "n_teeth_controls": 14,
  "robustness_gap_models": [
    "06_formal_models/proverif/cms_kyber_rfc9629_kpk_hunt.pv",
    "06_formal_models/proverif/composite_kem_kpk_hunt.pv",
    "06_formal_models/proverif/jose_cose_pqc_kem_kpk_hunt.pv",
    "06_formal_models/proverif/openpgp_pqc_kpk_hunt.pv",
    "06_formal_models/tamarin/cms_kyber_rfc9629_kpk_hunt.spthy",
    "06_formal_models/tamarin/composite_kem_kpk_hunt.spthy",
    "06_formal_models/tamarin/jose_cose_pqc_kem_kpk_hunt.spthy",
    "06_formal_models/tamarin/openpgp_pqc_kpk_hunt.spthy"
  ],
  "sprint": 138,
  "teeth_ok": true,
  "tier_mechanism_disclosure": "HOW THE TIER IS DECIDED (read before trusting the counts): the teeth/characterization/novel tier is determined by GREPping each .pv for the literal comment tags HUNT-TEETH:EXPECTED-BREAK / HUNT-CHARACTERIZATION:ROBUSTNESS-GAP \u2014 i.e. it is AUTHOR-CONTROLLED and a DISCLOSED SELF-ASSESSMENT, not an independently-derived property. n_novel_break_candidates=0 holds BECAUSE the 4 deployed BREAKs carry the characterization tag; removing a tag reclassifies a break to NOVEL. The 'not exploitable' judgment on the 4 is the author's literature-grounded assessment (ePrint 2025/1416; per-protocol audit), NOT an external review. This is by design (the tag routes a documented-class gap away from the RED tripwire) and never suppresses the break itself (the model still BREAKs, the fix still prints, human+counsel confirmation is still warranted) \u2014 but the tier rests on disclosed self-assessment, not a gate."
}
