{
  "expected": {
    "all_resist_teeth_verified": true,
    "eap_main": "RESIST",
    "eap_teeth": "BREAK",
    "ikev2_main": "RESIST",
    "mls_main": "RESIST",
    "n_protocols": 7,
    "n_valid_certs": 7,
    "pqxdh_main": "RESIST",
    "pqxdh_teeth": "BREAK",
    "ssh_main": "RESIST",
    "tls13_main": "RESIST",
    "wifi_sae_main": "RESIST"
  },
  "hash_version": 2,
  "name": "hybrid_family_seven",
  "note": "S06 row 10 (sealed 2026-09-02 BEFORE the two FAMILY rows were added to tools/hostapd_pqc/pqc_hybrid_downgrade_family.py). RECORDED, not blind: every verdict key above is already in today's artifacts/native/outward_provers_ci.json (run c54c820+/ab5c3bf): eap_mlkem_xlayer_hunt.pv NO_BREAK, eap_mlkem_xlayer_naive_hunt.pv BREAK (teeth), pqxdh_hunt.pv NO_BREAK, pqxdh_unbound_hunt.pv BREAK (teeth). What the seal fixes is the FAMILY artifact's regeneration: n_protocols 7, n_valid_certs 7, all_resist_teeth_verified true after `make outward-provers && make pqc-hybrid-downgrade-family`, with _verdict() returning MISSING loudly for any absent model. Axis for the register entry: B (ProVerif grades our models of EAP-TLS+ML-KEM and PQXDH), recorded-not-blind stated in the entry.",
  "note_sha256": "9b5460cd120f1ac22ee1b5da3b2a0c53ae6f425d1dd6babcb18ffef96b4d159b",
  "protocol": "pre-registered before the benchmark run. sha256 covers expected+tol; note_sha256 covers the prose. Neither proves ordering on its own -- the git commit of this file does, and git_blob_matches() is the anchor that makes an edit visible.",
  "sealed": true,
  "sha256": "efe910bec7c941a41b831e321040c2e6c7be09c09cef797becf1c6d222f3c8f5",
  "tol": {}
}
