# kaal:claim:7314479-031

**Claim.** The Chronicle at commit 2d920ce is append-only structurally but not tamper-evident: any process with filesystem access can rewrite or truncate history, and entries carry no digest, no chaining to a predecessor, and no periodic root.

**Type.** empirical  **Support.** evidenced

**Holds when.**

- mosaic-companion public repository at commit 2d920ce, retrieved August 18, 2026

**Source quote.**

> It is not tamper-evident. The Chronicle is a plain JSONL file in the user's configuration directory. Any process with filesystem access, including a compromised host application or the user, can rewrite or truncate history, and nothing in the record would reveal it. Entries carry no digest, no chaining to a predecessor, and no periodic root.

**From.** Wulf A. Kaal, *Institutional Requirements for Sovereign Local Agent Runtimes* (2026), VII. Findings, Finding 3, page 15

**Cite as.** Wulf A. Kaal, Institutional Requirements for Sovereign Local Agent Runtimes (2026). SSRN: https://ssrn.com/abstract=7314479

**Verify.** sha256 of source PDF `debace24a155ae924a155b1fafe98856d98cf83689feff2f87a32f1c06171ce6` at https://raw.githubusercontent.com/wulfkaal/Academic-Papers/main/papers/pdf/Kaal%20-%202026%20-%20Institutional%20Requirements%20for%20Sovereign%20Local%20Agent%20Runtimes.pdf

**Topics.** consensus-and-security, open-source-and-code, ai-and-agents

**Canonical form.** This markdown file is the canonical hashed representation of the claim. Its sha256 is the content hash used for attestation.
