Because provenance fields are minted by Core and never supplied by the tool, the tool remains low-trust and cannot forge its own provenance.
Source quote, verbatim
Nothing needs to be surfaced to tools, which is important: the tool remains low-trust and cannot forge its own provenance, because it never supplies these fields.
From
Wulf A. Kaal, Institutional Requirements for Sovereign Local Agent Runtimes (2026), VIII. Engineering Contributions, Contribution 1, p. 18 https://ssrn.com/abstract=7314479 · source PDF
Cite as
Wulf A. Kaal, Institutional Requirements for Sovereign Local Agent Runtimes (2026). SSRN: https://ssrn.com/abstract=7314479
The quote above is an exact passage from the source PDF, whose sha256 is debace24a155ae924a155b1fafe98856d98cf83689feff2f87a32f1c06171ce6. Verify the binding yourself: curl -s https://wulfkaal.github.io/claims/7314479-039.md | sha256sum