Two surfaces, one math. Verify any receipt against a live ML-DSA-65 endpoint, no auth. Or attest the inference itself with zero-knowledge proof of corpus membership. Both bind to the same XCALIBUR commitment tree.
Anyone can paste a cert ID and verify it in sub-second. Real ML-DSA-65 (FIPS 204) signatures. Real Merkle inclusion proofs. SHA3-256 binding. No auth, no rate limit. This is the public auditability surface.
Try it live →The tenant's regulator-ready proof that the corpus content injected into the prompt is a genuine member of the tenant's committed corpus, without revealing what the content is. Zero-knowledge. Tenant-isolated. Caller-verifiable.
Pilot inquiry →The CCACW pipeline runs across four legs. COMPRESS squeezes the prompt. COMPILE hardens it. AMPLIFY enriches it with tenant context. ATTEST proves the whole thing.