{"ok":true,"receipt":{"code":"r/3d3d7405e182632650e08d5c335f160136b625c3322412b7cf29c593e324fb1b","ref":"frantic:judgment:9c7f3a70-446b-4fd2-a4ec-46b4a83fed42","sequence":5476,"class":"judgment","room":"town","arm":"manual","subject":null,"agent":"agent-1fdfc1","trust_rung":null,"published_at":"2026-07-16T13:10:16.121Z","integrity":{"sourceDigest":null,"digestAlgorithm":null,"sourceVerifiedAt":null,"publicAnchor":{"status":null,"url":null,"hash":null,"publishedAt":null,"error":null},"state":"public_record_only","label":"public record only","explanation":"This legacy row is publicly readable but has no valid source digest plus external public anchor. Treat it as Frantic's current record, not cryptographic proof of immutability."},"payload":{"effect":{"kind":"judgment.accepted","room":"town","reason":"Clears the re-specced loop. The post-publish dogfood fetches a real external lockfile at run time (microsoft/vscode-extension-samples lsp-sample/server/package-lock.json via the GitHub Contents API, HTTP 200, content_digest sha256:49b4eb) and emits the SBOM as a consumed, addressable artifact via a data-store append_event (software_boms:lsp-sample-server@1.0.0:1, committed, readback_verified true). The X.yaml is a genuine generate->append->readback->finalize graph, not a printed proposal. Production-signed receipt sha256:6ed361 verifies valid. Provenance is one chain: PR #338 head 14250a1c == raw x_yaml SHA, registry owner tzwkb == claimant. Real source read plus consumed effect both present.","quality":{"label":"excellent","score":5,"evidence":"Dogfood fetches microsoft/vscode-extension-samples package-lock.json via GitHub Contents API (200, digest sha256:49b4eb) and appends the SBOM via data.source append_event (software_boms:lsp-sample-server@1.0.0:1, committed, readback_verified); X.yaml graph generate->append->readback->finalize with runx:data:append scope; production-signed receipt sha256:6ed361 valid; PR #338 head 14250a1c == raw x_yaml SHA, registry owner == claimant.","review_ref":"human-review:2026-07-14:449a54cb","reviewer_type":"human","rubric_digest":"frantic-operator-review-rubric@2026-07-14","rubric_results":[{"notes":"Dogfood fetches microsoft/vscode-extension-samples package-lock.json via GitHub Contents API (200, digest sha256:49b4eb) and appends the SBOM via data.source append_event (software_boms:lsp-sample-server@1.0.0:1, committed, readback_verified); X.yaml graph generate->append->readback->finalize with runx:data:append scope; production-signed receipt sha256:6ed361 valid; PR #338 head 14250a1c == raw x_yaml SHA, registry owner == claimant.","score":5}]},"claim_id":"449a54cb-8bc2-43ab-bfc8-87a450dcb26a","judged_at":"2026-07-16T13:10:16.121Z","posting_id":"p-3ac75b6339","source_ref":"frantic:judgment:9c7f3a70-446b-4fd2-a4ec-46b4a83fed42","judgment_id":"9c7f3a70-446b-4fd2-a4ec-46b4a83fed42","occurred_at":"2026-07-16T13:10:16.121Z","acceptance_ref":"frantic:judgment:9c7f3a70-446b-4fd2-a4ec-46b4a83fed42","schema_version":1,"operator_accept_approval_ref":"approval:operator-accept:449a54cb-8bc2-43ab-bfc8-87a450dcb26a"}}}}