Institutional evidence ledger

Evidence and change history

Which public Institutional claims are supported, targeted, stale, unavailable, or not established?

This ledger separates repository-verifiable facts, public statements, declared principles, operational targets, actual-host observations, external validation, and unknowns. Each record names its source, scope, limitations, observation environment, and append-oriented change history.

Direct answer

The ledger shows why a claim is supportable—or why it is not

This is a public claim index and change-history surface, not a compliance register. Every record keeps its claim class, support status, source identity, observation environment, verification method, scope, limitations, defeaters, and change lineage separate.

A repository source does not prove a deployed host. A target does not prove completion. An unavailable check is not favorable evidence. A hash proves byte identity within its stated scope, not factual truth.

Repository-verifiable
SOURCE SCOPECode, templates, configuration, tests, or packaged evidence support the bounded statement.
Operational target
NOT COMPLETIONA declared objective remains a target until implementation and environment-specific acceptance are established.
Actual-host observation
SEPARATE EVIDENCEOnly the public environment and time named in the record are described.
Unknown
NOT ESTABLISHEDNo reviewed source supports turning the matter into a fact; unknown does not mean absent.

Bounded filters

Inspect records without collapsing their evidence states

The server applies these filters, so the result remains usable without JavaScript. Client-side enhancement only reduces reloads.

Clear

25 records shown.

Current public record set

Claim records

Each record has a stable public URL. Open it to inspect source identity, digest scope, limitations, defeaters, and append-oriented change history.

EVI-INST-0001

Canonical Institutional directory exists in the package

SUPPORTED WITHIN SCOPE

The packaged source defines a canonical /institutional/ route and repository-owned directory template.

Class
REPOSITORY VERIFIABLE
Page
Institutional
Source
REPOSITORY SOURCE
Observed
2026-08-13T00:47:38Z
ScopeThe identified source release only
Open full record and change history
EVI-INST-0002

Company page is repository-owned institutional content

SUPPORTED WITHIN SCOPE

The packaged Company page explains Evulgare work, evidence boundaries, and artifact-state distinctions in a versioned Jinja template.

Class
REPOSITORY VERIFIABLE
Page
Company
Source
REPOSITORY SOURCE
Observed
2026-08-13T00:47:38Z
ScopePackaged Company template and its supplied route context
Open full record and change history
EVI-INST-0003

Institutional principles are declared design positions

SUPPORTED WITHIN SCOPE

The Principles page publishes Evulgare design positions; they are not represented as universal law, scientific fact, or external institutional consensus.

Class
DECLARED INSTITUTIONAL PRINCIPLE
Page
Principles
Source
DECLARED POLICY
Observed
2026-08-13T00:47:38Z
ScopeEvulgare design doctrine for the identified release
Open full record and change history
EVI-INST-0004

One public contact form is implemented

SUPPORTED WITHIN SCOPE

The repository defines one public contact route with name, work email, organization, topic, and message fields plus CSRF and honeypot boundaries.

Class
REPOSITORY VERIFIABLE
Page
Contact
Source
REPOSITORY SOURCE
Observed
2026-08-13T00:47:38Z
ScopePackaged application behavior when required Flask, database, and secret configuration are available
Open full record and change history
EVI-INST-0005

Contact response time is not established

NOT ESTABLISHED

The repository does not establish a public support or security response-time service level.

Class
UNKNOWN NOT ESTABLISHED
Page
Contact
Source
NO CURRENT SOURCE
Observed
2026-08-13T00:47:38Z
ScopePublic Evulgare Institutional pages and packaged records reviewed for RC57
Open full record and change history
EVI-INST-0006

Third-party public analytics are absent from the packaged runtime references

SUPPORTED WITHIN SCOPE

The packaged public templates and first-party scripts do not reference Google Analytics, Meta Pixel, session-replay, or advertising trackers in the audited source scope.

Class
REPOSITORY VERIFIABLE
Page
Privacy
Source
REPOSITORY SOURCE
Observed
2026-08-13T00:47:38Z
ScopePackaged repository-owned templates and browser assets
Open full record and change history
EVI-INST-0007

Contact submissions are distinct from passive browsing

SUPPORTED WITHIN SCOPE

The repository stores information a visitor voluntarily submits through the contact form; this is a different processing event from ordinary public-page browsing.

Class
REPOSITORY VERIFIABLE
Page
Privacy
Source
REPOSITORY SOURCE
Observed
2026-08-13T00:47:38Z
ScopePackaged data model and route behavior
Open full record and change history
EVI-INST-0008

Repository retention default is not a verified production retention period

SUPPORTED WITHIN SCOPE

The packaged configuration defines a 365-day contact-retention default that can be changed by environment configuration; the active production value and enforcement state are not established here.

Class
REPOSITORY VERIFIABLE
Page
Privacy
Source
REPOSITORY SOURCE
Observed
2026-08-13T00:47:38Z
ScopeRepository default only
Open full record and change history
EVI-INST-0009

Public interfaces target WCAG 2.2 Level AA

TARGET NOT COMPLETED

Evulgare declares WCAG 2.2 Level AA as an accessibility target for public interfaces.

Class
OPERATIONAL TARGET
Page
Accessibility
Source
DECLARED POLICY
Observed
2026-08-13T00:47:38Z
ScopeDeclared public-interface target
Open full record and change history
EVI-INST-0010

Accessibility certification is not established

NOT ESTABLISHED

No independent accessibility certification or complete WCAG conformance determination is represented by the repository evidence.

Class
UNKNOWN NOT ESTABLISHED
Page
Accessibility
Source
NO CURRENT SOURCE
Observed
2026-08-13T00:47:38Z
ScopePublic packaged records reviewed for RC57
Open full record and change history
EVI-INST-0011

Browser forms use a CSRF boundary in source

SUPPORTED WITHIN SCOPE

The packaged contact form and application stack include CSRF protection when the Flask application is running with required configuration.

Class
REPOSITORY VERIFIABLE
Page
Security
Source
REPOSITORY SOURCE
Observed
2026-08-13T00:47:38Z
ScopePackaged application source
Open full record and change history
EVI-INST-0012

Restrictive response-header logic exists in source

SUPPORTED WITHIN SCOPE

The packaged application defines security-header behavior, but reverse proxies and host configuration can alter the final public response.

Class
REPOSITORY VERIFIABLE
Page
Security
Source
REPOSITORY SOURCE
Observed
2026-08-13T00:47:38Z
ScopeApplication-generated responses in the packaged source
Open full record and change history
EVI-INST-0013

Security certification and penetration-test results are not established

NOT ESTABLISHED

The public repository does not establish SOC 2, ISO 27001, FedRAMP, penetration-test, bug-bounty, or equivalent security-program status.

Class
UNKNOWN NOT ESTABLISHED
Page
Security
Source
NO CURRENT SOURCE
Observed
2026-08-13T00:47:38Z
ScopePublic packaged material reviewed for RC57
Open full record and change history
EVI-INST-0014

No false evidentiary inference is a declared public-use rule

SUPPORTED WITHIN SCOPE

Evulgare states that hashes, references, tests, demonstrations, and interface presentation prove only what their named evidence and scope establish.

Class
DECLARED INSTITUTIONAL PRINCIPLE
Page
Terms
Source
DECLARED POLICY
Observed
2026-08-13T00:47:38Z
ScopeInterpretation of Evulgare public materials
Open full record and change history
EVI-INST-0015

Evulgare legal entity status is not established by the package

NOT ESTABLISHED

The repository does not establish a legal entity type, registration identifier, incorporation record, or nonprofit status for Evulgare.

Class
UNKNOWN NOT ESTABLISHED
Page
Company
Source
NO CURRENT SOURCE
Observed
2026-08-13T00:47:38Z
ScopeRC57 public package
Open full record and change history
EVI-INST-0016

Ownership, officers, and staffing are not established

NOT ESTABLISHED

The package does not identify verified owners, officers, directors, employee counts, staffed departments, or named support personnel.

Class
UNKNOWN NOT ESTABLISHED
Page
Company
Source
NO CURRENT SOURCE
Observed
2026-08-13T00:47:38Z
ScopeRC57 public package
Open full record and change history
EVI-INST-0017

Governing jurisdiction is not established

NOT ESTABLISHED

The package does not establish a controlling corporate, contractual, or regulatory jurisdiction for Evulgare public Institutional pages.

Class
UNKNOWN NOT ESTABLISHED
Page
Terms
Source
NO CURRENT SOURCE
Observed
2026-08-13T00:47:38Z
ScopeRC57 public package
Open full record and change history
EVI-INST-0018

Actual host exposed older release markers during bounded public retrieval

STALE REVIEW REQUIRED

Public retrieval on 2026-08-13 showed RC55 footer markers on multiple Institutional routes while the source package was RC56; deployment convergence to RC56 or RC57 was not established.

Class
ACTUAL HOST OBSERVATION
Page
Institutional
Source
ACTUAL HOST OBSERVATION RECORD
Observed
2026-08-13T00:47:38Z
ScopeRetrieved Company, Contact, Privacy, Accessibility, Security, and Terms content only
Open full record and change history
EVI-INST-0019

Actual-host response headers remain unavailable

UNAVAILABLE

The build environment could not collect final public response headers or content-security-policy values from the actual host.

Class
ACTUAL HOST OBSERVATION
Page
Security
Source
ACTUAL HOST OBSERVATION RECORD
Observed
2026-08-13T00:47:38Z
ScopeActual-host header evidence for Institutional routes
Open full record and change history
EVI-INST-0020

Actual-host cookies and browser storage remain unavailable

UNAVAILABLE

No verified record of cookies, cookie attributes, or browser-storage keys created by ordinary interactions on the actual host was produced in this environment.

Class
ACTUAL HOST OBSERVATION
Page
Privacy
Source
ACTUAL HOST OBSERVATION RECORD
Observed
2026-08-13T00:47:38Z
ScopeActual-host ordinary public interactions
Open full record and change history
EVI-INST-0021

Actual-host contact submission behavior remains unavailable

UNAVAILABLE

The public contact form was visible, but no message was submitted and no database, CSRF, validation, redirect, or retention behavior was tested on the actual host.

Class
ACTUAL HOST OBSERVATION
Page
Contact
Source
ACTUAL HOST OBSERVATION RECORD
Observed
2026-08-13T00:47:38Z
ScopeContact route presentation only
Open full record and change history
EVI-INST-0022

External validation is not established for Institutional pages

NOT ESTABLISHED

No independent external validation record for the complete Institutional page set is included in the package.

Class
EXTERNAL VALIDATION
Page
Institutional
Source
NO CURRENT SOURCE
Observed
2026-08-13T00:47:38Z
ScopeInstitutional page content, accessibility, privacy, security, and legal interpretation
Open full record and change history
EVI-INST-0023

Core Institutional content remains usable without JavaScript in the package

SUPPORTED WITHIN SCOPE

The Institutional templates render their explanations, claim records, links, and boundaries server-side; JavaScript only enhances filtering and navigation.

Class
REPOSITORY VERIFIABLE
Page
Institutional
Source
REPOSITORY SOURCE
Observed
2026-08-13T00:47:38Z
ScopePackaged Institutional templates
Open full record and change history
EVI-INST-0024

The public evidence ledger is an evidence index, not a compliance register

SUPPORTED WITHIN SCOPE

Ledger records classify the current support state and limitations of public claims; they do not certify compliance, legality, safety, or operational readiness.

Class
DECLARED INSTITUTIONAL PRINCIPLE
Page
Institutional
Source
DECLARED POLICY
Observed
2026-08-13T00:47:38Z
ScopeInterpretation of the public Institutional Evidence Ledger
Open full record and change history
EVI-INST-0025

The public Accessibility statement was retrievable during the bounded host observation

SUPPORTED WITHIN SCOPE

A public retrieval of https://evulgare.com/accessibility returned an Accessibility page stating that Evulgare targets WCAG 2.2 AA and displayed an RC55 release marker at the time of observation.

Class
PUBLICLY DOCUMENTED AND VERIFIED
Page
Accessibility
Source
PUBLIC FIRST PARTY PAGE
Observed
2026-08-13T00:47:38Z
ScopeThe retrieved public representation at the named URL and observation time only
Open full record and change history

Machine-readable record

The same bounded fields are available as first-party JSON

The endpoint exposes the public claim records, independent class and status vocabularies, change events, filter state, and a deterministic ledger digest. It does not expose private operator notes, protected report paths, credentials, or protected Eviulon strategy.

MISSION-FIRST · EVIDENCE-LOCKED · MACHINE-SPEED

DETECT → VERIFY → DENY → CONTAIN → RECOVER → PROVE

Command integrity. Decision superiority. Compartment security. Attested reconstitution.