{ "author_added_rows": [ "NV-ARP-EO-03b (cache-directive control) was added by J. Hillier and is not part of the class as designed" ], "boundary": "Deterministic protocol conformance only. The timing observation is reported and is not part of the verdict. Absence assertions served by this endpoint are fork-conditional in the sense of Section 6.4.3.", "class": "arp-existence-oracle", "declared_coverage_gaps": [ "NV-ARP-EO-05: the same-work requirement of S6.4.4 is structural and is not decidable by response comparison.", "NV-ARP-EO-04: refused, but by the fallback branch. The designed discriminator -- equal 404/429 transition index -- has never executed, because the defective endpoint answers 404 before charging and so never reaches 429. The budget-ordering channel is untested.", "NV-ARP-EO-06: the statistical timing row of the class as designed is not carried as a conformance row. It is reported separately as timing_observation and is not adjudicated.", "Encoder independence: request-binding and deterministic CBOR are computed with functions imported from the implementation under test, so an encoder defect -- including an RFC 8949 S4.2.1 map-ordering violation -- is invisible to this class.", "Negative side: the NV rows are fault injection into the author's own endpoint. No independently written implementation has been refused, so the class is not two-sided in the conformance-method sense.", "Timing resistance: no claim is made and none is tested; the loopback observation below is not evidence about a deployed path." ], "designed_by": "Songbo Bu, review of 2026-08-10, message-id ", "deterministic_result": "PASS", "does_not_establish": "anything about the specification. The endpoint was written by the specification's author from his own reading of his own text, so it is the one configuration that cannot surface a specification defect. Specification adequacy is untested until an implementer working only from the text passes this class.", "environment": { "platform": "linux", "python": "3.12.3" }, "establishes": "that Section 6.4.4 as its author reads it is implementable, and that each check in this class fires against a deliberately injected defect", "evidence_status": "measured for the deterministic rows; declared gaps listed below", "fixture_sha256": "8ce61405fc02755c4950c44bdacada84e3379356e20cd552ffd2d43d41393a36", "invocation_note": "the invocation and interpreter are recorded in runs/existence_oracle_timing.json; they are excluded here to keep this record byte-stable", "reference_sha256": "feeb632d9e95d9dc798e28a66ecd060c31da25ac151654f8e18ab3580eb4613c", "result_subject": "conformance/reference/arp_read_ref.py at reference_sha256, under this class only", "rows": [ { "endpoint": "conforming", "expected": "ACCEPT", "findings": [], "requirement_source": "draft-hillier-scitt-arp-03 S6.4.4", "vector": "PV-ARP-EO-01..04", "verdict": "ACCEPT" }, { "channel": "the absent arm short-circuits the entitlement-equivalent work", "endpoint": "defect:path-oracle", "expected": "REFUSE-BY-INSPECTION", "findings": [ "the defective endpoint is byte-equivalent under the normalised observation, which is the finding: Section 6.4.4's same-work requirement is structural and no response-comparison suite can decide it", "closing evidence: source or trace inspection of the entitlement path, or a timing population with a stated network placement and threshold -- neither is available on loopback" ], "requirement_source": "draft-hillier-scitt-arp-03 S6.4.4", "vector": "NV-ARP-EO-05", "verdict": "NOT-DECIDABLE-FROM-WIRE", "wire_comparison_verdict": "ACCEPT" }, { "channel": "403 for unentitled, 404 for absent -- a direct status oracle", "endpoint": "defect:status-oracle", "expected": "REFUSE", "findings": [ "PV-02 expected 404, got 403" ], "requirement_source": "draft-hillier-scitt-arp-03 S6.4.4", "vector": "NV-ARP-EO-01", "verdict": "REFUSE" }, { "channel": "an error discriminator inside the signed payload", "endpoint": "defect:body-oracle", "expected": "REFUSE", "findings": [ "normalised observations differ in result -- existence is observable" ], "requirement_source": "draft-hillier-scitt-arp-03 S6.4.4", "vector": "NV-ARP-EO-02", "verdict": "REFUSE" }, { "channel": "an extra HTTP header on the unentitled arm only", "endpoint": "defect:header-oracle", "expected": "REFUSE", "findings": [ "normalised observations differ in header_names -- existence is observable" ], "requirement_source": "draft-hillier-scitt-arp-03 S6.4.4", "vector": "NV-ARP-EO-03", "verdict": "REFUSE" }, { "channel": "cache directives differ between the two arms", "endpoint": "defect:cache-oracle", "expected": "REFUSE", "findings": [ "normalised observations differ in cache_control -- existence is observable" ], "requirement_source": "draft-hillier-scitt-arp-03 S6.4.4", "vector": "NV-ARP-EO-03b", "verdict": "REFUSE" }, { "channel": "entitlement evaluated before the counter is charged", "endpoint": "defect:ratelimit-oracle", "expected": "REFUSE", "findings": [ "PV-04 rate limit never reached on at least one arm, so this endpoint is refused -- but the designed discriminator (equal 404/429 transition index) did not execute. Refused for the wrong reason; the budget-ordering channel is untested by this run" ], "requirement_source": "draft-hillier-scitt-arp-03 S6.4.4", "vector": "NV-ARP-EO-04", "verdict": "REFUSE" }, { "channel": "responses sealed with a key the fixture does not publish", "endpoint": "defect:bad-signature", "expected": "REFUSE", "findings": [ "PV-02 COSE_Sign1 signature does not verify under the published sealing key", "PV-03 COSE_Sign1 signature does not verify under the published sealing key" ], "requirement_source": "draft-hillier-scitt-arp-03 S6.4.4", "vector": "NV-ARP-EO-08", "verdict": "REFUSE" }, { "channel": "every read refused, including the entitled one", "endpoint": "defect:always-404", "expected": "REFUSE", "findings": [ "PV-01 entitled read of an existing resource returned 404, not 200" ], "requirement_source": "draft-hillier-scitt-arp-03 S6.4.4", "vector": "NV-ARP-EO-07", "verdict": "REFUSE" } ], "runner_sha256": "9c66c435f812f081e9fe4df683832abbbd00ed7a23ea055a9faa19b115ac0cab", "spec": "draft-hillier-scitt-arp Section 6.4.4, working copy", "spec_note": "The normalised-observation rule this class tests is NOT present in -03 as circulated on 2026-08-09 (text sha256 715513d49b10d0e8ad1379db28a073b24cccb295153a210b3b8abe1f9fe6ac28). It was written into the working draft in response to this class. These rows test the post-review text.", "spec_source_sha256": "1129af61076f6509f9bd6dc5537f68c61fb4f91318b24ee8d35fd94a4aa30df1", "timing_observation": "recorded separately in runs/existence_oracle_timing.json; excluded here so that this record is byte-stable across runs and can be pinned in REPRODUCE.md", "vectors_sha256": "e57cc42be4d126c760ff4556c9b136016c83583784b30a2594e4233e70b2d455", "version": "v0.1" }