Artifact trust record
Record source identity, license review, byte count, SHA-256, trusted-root policy, container checks, compatibility review, test evidence, and approval state in browser-local storage.
Browser-local control record
GGUF intake checklist
Hashing establishes file identity only. It does not establish licensing, provenance, compatibility, output quality, or safety.
Identity is not authority
A SHA-256 digest identifies the bytes reviewed. It does not establish licensing, provenance, architecture compatibility, tokenizer correctness, quality, safety, or application approval.