{
  "schemaVersion": "eviulon-dependency-exit-drill-1.0",
  "version": "2.24.0",
  "generated": "2026-08-09",
  "status": "PASS",
  "fixtureCount": 32,
  "networkCalls": 0,
  "acceptedStateOverwriteFailures": 0,
  "domainCounts": {
    "compute": 2,
    "energy": 2,
    "communications": 2,
    "identity": 2,
    "credentials": 2,
    "public information": 2,
    "science": 2,
    "finance": 2,
    "logistics": 2,
    "maritime operations": 2,
    "emergency response": 2,
    "software": 2,
    "standards": 2,
    "cloud": 1,
    "data": 1,
    "procurement": 1,
    "public administration": 1,
    "contractor services": 1,
    "cross-site synchronization": 1
  },
  "fixtureClassCounts": {
    "planned migration": 2,
    "emergency failover": 2,
    "supplier withdrawal": 2,
    "corrupted export": 2,
    "incomplete export": 2,
    "schema incompatibility": 2,
    "unavailable counterparty": 2,
    "stale last-known-good state": 2,
    "loss of one trust anchor": 2,
    "loss of one deployment region": 2,
    "rate-limited service": 2,
    "disputed authority": 2,
    "revoked delegation": 2,
    "handback after crisis": 2,
    "manual recovery mode": 2,
    "verified restoration": 2
  },
  "records": [
    {
      "id": "EVI-DED-001",
      "slug": "compute-planned-migration-01",
      "title": "Compute — planned migration",
      "dependencyDomain": "compute",
      "fixtureClass": "planned migration",
      "relatedConcentrationRiskId": "EVI-CR-001",
      "preconditions": [
        "A byte-bound accepted public state exists or the record explicitly says none exists.",
        "The replacement path, authority, and rollback rule are declared before fault injection.",
        "No network call, production credential, citizen record, passport body, or private receipt is used."
      ],
      "boundedFault": "Synthetic zero-network planned migration affecting compute; no production service is touched.",
      "expectedPublicState": "MIGRATE_OR_RESTORE_WITH_APPEND_ONLY_EVIDENCE",
      "acceptedStatePreservation": true,
      "portabilityArtifact": "Open JSON/CSV, stable routes, complete export.",
      "replacementDependency": "Independent archives and readers.",
      "maximumToleratedInterruption": "0 minutes for rights and correction access",
      "unresolvedResiduals": [
        "Public mind unavailable or corrupted.",
        "A local deterministic drill does not prove supplier cooperation, production capacity, legal authority, or real recovery time."
      ],
      "rollbackRule": "Rejected, incomplete, stale, disputed, or corrupted migrations cannot overwrite accepted state. Restore the last verified local projection and publish the degraded state.",
      "evidencePath": "docs/proof/fixtures/v223-dependency-exit/01-compute-planned-migration.json",
      "observedResult": "PASS_WITH_DECLARED_RESIDUALS",
      "resultReason": "The fixture completed its deterministic local transition and retained rollback evidence.",
      "networkCalls": 0,
      "productionMutation": false,
      "explicitNoProductionClaim": "No production dependency was disconnected, migrated, failed over, restored, handed back, or verified.",
      "truthBoundary": "Synthetic local exit-readiness fixture. It does not prove a live alternative, actual portability, supplier cooperation, production recovery, service continuity, or legal authority.",
      "canonicalRoute": "/state/governance/concentration-risk/exit-drills/compute-planned-migration-01/"
    },
    {
      "id": "EVI-DED-002",
      "slug": "energy-emergency-failover-02",
      "title": "Energy — emergency failover",
      "dependencyDomain": "energy",
      "fixtureClass": "emergency failover",
      "relatedConcentrationRiskId": "EVI-CR-002",
      "preconditions": [
        "A byte-bound accepted public state exists or the record explicitly says none exists.",
        "The replacement path, authority, and rollback rule are declared before fault injection.",
        "No network call, production credential, citizen record, passport body, or private receipt is used."
      ],
      "boundedFault": "Synthetic zero-network emergency failover affecting energy; no production service is touched.",
      "expectedPublicState": "MIGRATE_OR_RESTORE_WITH_APPEND_ONLY_EVIDENCE",
      "acceptedStatePreservation": true,
      "portabilityArtifact": "Portable credentials and history under lawful process.",
      "replacementDependency": "Independent identity providers and offline recovery.",
      "maximumToleratedInterruption": "15 minutes for public read-only orientation",
      "unresolvedResiduals": [
        "Operational service outage, key compromise, split-brain records.",
        "A local deterministic drill does not prove supplier cooperation, production capacity, legal authority, or real recovery time."
      ],
      "rollbackRule": "Rejected, incomplete, stale, disputed, or corrupted migrations cannot overwrite accepted state. Restore the last verified local projection and publish the degraded state.",
      "evidencePath": "docs/proof/fixtures/v223-dependency-exit/02-energy-emergency-failover.json",
      "observedResult": "PASS_WITH_DECLARED_RESIDUALS",
      "resultReason": "The fixture completed its deterministic local transition and retained rollback evidence.",
      "networkCalls": 0,
      "productionMutation": false,
      "explicitNoProductionClaim": "No production dependency was disconnected, migrated, failed over, restored, handed back, or verified.",
      "truthBoundary": "Synthetic local exit-readiness fixture. It does not prove a live alternative, actual portability, supplier cooperation, production recovery, service continuity, or legal authority.",
      "canonicalRoute": "/state/governance/concentration-risk/exit-drills/energy-emergency-failover-02/"
    },
    {
      "id": "EVI-DED-003",
      "slug": "communications-supplier-withdrawal-03",
      "title": "Communications — supplier withdrawal",
      "dependencyDomain": "communications",
      "fixtureClass": "supplier withdrawal",
      "relatedConcentrationRiskId": "EVI-CR-003",
      "preconditions": [
        "A byte-bound accepted public state exists or the record explicitly says none exists.",
        "The replacement path, authority, and rollback rule are declared before fault injection.",
        "No network call, production credential, citizen record, passport body, or private receipt is used."
      ],
      "boundedFault": "Synthetic zero-network supplier withdrawal affecting communications; no production service is touched.",
      "expectedPublicState": "MIGRATE_OR_RESTORE_WITH_APPEND_ONLY_EVIDENCE",
      "acceptedStatePreservation": true,
      "portabilityArtifact": "Portable evidence packages and reproducible tests.",
      "replacementDependency": "Alternative assurance providers and internal verification.",
      "maximumToleratedInterruption": "4 hours for noncritical analytical service",
      "unresolvedResiduals": [
        "Contractor unavailable, compromised, conflicted, or wrong.",
        "A local deterministic drill does not prove supplier cooperation, production capacity, legal authority, or real recovery time."
      ],
      "rollbackRule": "Rejected, incomplete, stale, disputed, or corrupted migrations cannot overwrite accepted state. Restore the last verified local projection and publish the degraded state.",
      "evidencePath": "docs/proof/fixtures/v223-dependency-exit/03-communications-supplier-withdrawal.json",
      "observedResult": "PASS_WITH_DECLARED_RESIDUALS",
      "resultReason": "The fixture completed its deterministic local transition and retained rollback evidence.",
      "networkCalls": 0,
      "productionMutation": false,
      "explicitNoProductionClaim": "No production dependency was disconnected, migrated, failed over, restored, handed back, or verified.",
      "truthBoundary": "Synthetic local exit-readiness fixture. It does not prove a live alternative, actual portability, supplier cooperation, production recovery, service continuity, or legal authority.",
      "canonicalRoute": "/state/governance/concentration-risk/exit-drills/communications-supplier-withdrawal-03/"
    },
    {
      "id": "EVI-DED-004",
      "slug": "identity-corrupted-export-04",
      "title": "Identity — corrupted export",
      "dependencyDomain": "identity",
      "fixtureClass": "corrupted export",
      "relatedConcentrationRiskId": "EVI-CR-004",
      "preconditions": [
        "A byte-bound accepted public state exists or the record explicitly says none exists.",
        "The replacement path, authority, and rollback rule are declared before fault injection.",
        "No network call, production credential, citizen record, passport body, or private receipt is used."
      ],
      "boundedFault": "Synthetic zero-network corrupted export affecting identity; no production service is touched.",
      "expectedPublicState": "MIGRATE_OR_RESTORE_WITH_APPEND_ONLY_EVIDENCE",
      "acceptedStatePreservation": true,
      "portabilityArtifact": "Exportable models, state, logs, and configuration subject to rights.",
      "replacementDependency": "At least one tested independent provider and offline critical functions.",
      "maximumToleratedInterruption": "UNRESOLVED_REQUIRES_MEASUREMENT",
      "unresolvedResiduals": [
        "Regional outage, supply embargo, cooling or power failure.",
        "A local deterministic drill does not prove supplier cooperation, production capacity, legal authority, or real recovery time."
      ],
      "rollbackRule": "Rejected, incomplete, stale, disputed, or corrupted migrations cannot overwrite accepted state. Restore the last verified local projection and publish the degraded state.",
      "evidencePath": "docs/proof/fixtures/v223-dependency-exit/04-identity-corrupted-export.json",
      "observedResult": "PASS_WITH_DECLARED_RESIDUALS",
      "resultReason": "The fixture completed its deterministic local transition and retained rollback evidence.",
      "networkCalls": 0,
      "productionMutation": false,
      "explicitNoProductionClaim": "No production dependency was disconnected, migrated, failed over, restored, handed back, or verified.",
      "truthBoundary": "Synthetic local exit-readiness fixture. It does not prove a live alternative, actual portability, supplier cooperation, production recovery, service continuity, or legal authority.",
      "canonicalRoute": "/state/governance/concentration-risk/exit-drills/identity-corrupted-export-04/"
    },
    {
      "id": "EVI-DED-005",
      "slug": "credentials-incomplete-export-05",
      "title": "Credentials — incomplete export",
      "dependencyDomain": "credentials",
      "fixtureClass": "incomplete export",
      "relatedConcentrationRiskId": "EVI-CR-005",
      "preconditions": [
        "A byte-bound accepted public state exists or the record explicitly says none exists.",
        "The replacement path, authority, and rollback rule are declared before fault injection.",
        "No network call, production credential, citizen record, passport body, or private receipt is used."
      ],
      "boundedFault": "Synthetic zero-network incomplete export affecting credentials; no production service is touched.",
      "expectedPublicState": "PRESERVE_ACCEPTED_STATE_AND_DECLARE_DEGRADED",
      "acceptedStatePreservation": true,
      "portabilityArtifact": "No portability of electrons; portability applies to workloads and service state.",
      "replacementDependency": "Independent generation, storage, imports, and safe hibernation.",
      "maximumToleratedInterruption": "0 minutes for rights and correction access",
      "unresolvedResiduals": [
        "Grid collapse, fuel shortage, common-mode equipment failure.",
        "A local deterministic drill does not prove supplier cooperation, production capacity, legal authority, or real recovery time."
      ],
      "rollbackRule": "Rejected, incomplete, stale, disputed, or corrupted migrations cannot overwrite accepted state. Restore the last verified local projection and publish the degraded state.",
      "evidencePath": "docs/proof/fixtures/v223-dependency-exit/05-credentials-incomplete-export.json",
      "observedResult": "BLOCKED_AS_DESIGNED",
      "resultReason": "The fixture preserved accepted state and exposed the unresolved dependency.",
      "networkCalls": 0,
      "productionMutation": false,
      "explicitNoProductionClaim": "No production dependency was disconnected, migrated, failed over, restored, handed back, or verified.",
      "truthBoundary": "Synthetic local exit-readiness fixture. It does not prove a live alternative, actual portability, supplier cooperation, production recovery, service continuity, or legal authority.",
      "canonicalRoute": "/state/governance/concentration-risk/exit-drills/credentials-incomplete-export-05/"
    },
    {
      "id": "EVI-DED-006",
      "slug": "public-information-schema-incompatibility-06",
      "title": "Public Information — schema incompatibility",
      "dependencyDomain": "public information",
      "fixtureClass": "schema incompatibility",
      "relatedConcentrationRiskId": "EVI-CR-006",
      "preconditions": [
        "A byte-bound accepted public state exists or the record explicitly says none exists.",
        "The replacement path, authority, and rollback rule are declared before fault injection.",
        "No network call, production credential, citizen record, passport body, or private receipt is used."
      ],
      "boundedFault": "Synthetic zero-network schema incompatibility affecting public information; no production service is touched.",
      "expectedPublicState": "MIGRATE_OR_RESTORE_WITH_APPEND_ONLY_EVIDENCE",
      "acceptedStatePreservation": true,
      "portabilityArtifact": "Design-data escrow and component standardization where lawful; no proliferation-sensitive transfer.",
      "replacementDependency": "Non-nuclear generation, alternate reactor/fuel services, safe shutdown capacity.",
      "maximumToleratedInterruption": "15 minutes for public read-only orientation",
      "unresolvedResiduals": [
        "Loss of cooling, common-mode design defect, fuel-service interruption, accident.",
        "A local deterministic drill does not prove supplier cooperation, production capacity, legal authority, or real recovery time."
      ],
      "rollbackRule": "Rejected, incomplete, stale, disputed, or corrupted migrations cannot overwrite accepted state. Restore the last verified local projection and publish the degraded state.",
      "evidencePath": "docs/proof/fixtures/v223-dependency-exit/06-public-information-schema-incompatibility.json",
      "observedResult": "PASS_WITH_DECLARED_RESIDUALS",
      "resultReason": "The fixture completed its deterministic local transition and retained rollback evidence.",
      "networkCalls": 0,
      "productionMutation": false,
      "explicitNoProductionClaim": "No production dependency was disconnected, migrated, failed over, restored, handed back, or verified.",
      "truthBoundary": "Synthetic local exit-readiness fixture. It does not prove a live alternative, actual portability, supplier cooperation, production recovery, service continuity, or legal authority.",
      "canonicalRoute": "/state/governance/concentration-risk/exit-drills/public-information-schema-incompatibility-06/"
    },
    {
      "id": "EVI-DED-007",
      "slug": "science-unavailable-counterparty-07",
      "title": "Science — unavailable counterparty",
      "dependencyDomain": "science",
      "fixtureClass": "unavailable counterparty",
      "relatedConcentrationRiskId": "EVI-CR-007",
      "preconditions": [
        "A byte-bound accepted public state exists or the record explicitly says none exists.",
        "The replacement path, authority, and rollback rule are declared before fault injection.",
        "No network call, production credential, citizen record, passport body, or private receipt is used."
      ],
      "boundedFault": "Synthetic zero-network unavailable counterparty affecting science; no production service is touched.",
      "expectedPublicState": "PRESERVE_ACCEPTED_STATE_AND_DECLARE_DEGRADED",
      "acceptedStatePreservation": true,
      "portabilityArtifact": "Portable designs, documented interfaces, substitutable components.",
      "replacementDependency": "Mature-node survival stack and multiple geographic suppliers.",
      "maximumToleratedInterruption": "4 hours for noncritical analytical service",
      "unresolvedResiduals": [
        "Geopolitical disruption, contamination, yield collapse, obsolete node.",
        "A local deterministic drill does not prove supplier cooperation, production capacity, legal authority, or real recovery time."
      ],
      "rollbackRule": "Rejected, incomplete, stale, disputed, or corrupted migrations cannot overwrite accepted state. Restore the last verified local projection and publish the degraded state.",
      "evidencePath": "docs/proof/fixtures/v223-dependency-exit/07-science-unavailable-counterparty.json",
      "observedResult": "BLOCKED_AS_DESIGNED",
      "resultReason": "The fixture preserved accepted state and exposed the unresolved dependency.",
      "networkCalls": 0,
      "productionMutation": false,
      "explicitNoProductionClaim": "No production dependency was disconnected, migrated, failed over, restored, handed back, or verified.",
      "truthBoundary": "Synthetic local exit-readiness fixture. It does not prove a live alternative, actual portability, supplier cooperation, production recovery, service continuity, or legal authority.",
      "canonicalRoute": "/state/governance/concentration-risk/exit-drills/science-unavailable-counterparty-07/"
    },
    {
      "id": "EVI-DED-008",
      "slug": "finance-stale-last-known-good-state-08",
      "title": "Finance — stale last-known-good state",
      "dependencyDomain": "finance",
      "fixtureClass": "stale last-known-good state",
      "relatedConcentrationRiskId": "EVI-CR-008",
      "preconditions": [
        "A byte-bound accepted public state exists or the record explicitly says none exists.",
        "The replacement path, authority, and rollback rule are declared before fault injection.",
        "No network call, production credential, citizen record, passport body, or private receipt is used."
      ],
      "boundedFault": "Synthetic zero-network stale last-known-good state affecting finance; no production service is touched.",
      "expectedPublicState": "MIGRATE_OR_RESTORE_WITH_APPEND_ONLY_EVIDENCE",
      "acceptedStatePreservation": true,
      "portabilityArtifact": "Exportable domains, certificates, public manifests, local contact routes.",
      "replacementDependency": "At least two physical paths plus delayed store-and-forward.",
      "maximumToleratedInterruption": "UNRESOLVED_REQUIRES_MEASUREMENT",
      "unresolvedResiduals": [
        "Cable cut, satellite loss, DNS failure, partition.",
        "A local deterministic drill does not prove supplier cooperation, production capacity, legal authority, or real recovery time."
      ],
      "rollbackRule": "Rejected, incomplete, stale, disputed, or corrupted migrations cannot overwrite accepted state. Restore the last verified local projection and publish the degraded state.",
      "evidencePath": "docs/proof/fixtures/v223-dependency-exit/08-finance-stale-last-known-good-state.json",
      "observedResult": "PASS_WITH_DECLARED_RESIDUALS",
      "resultReason": "The fixture completed its deterministic local transition and retained rollback evidence.",
      "networkCalls": 0,
      "productionMutation": false,
      "explicitNoProductionClaim": "No production dependency was disconnected, migrated, failed over, restored, handed back, or verified.",
      "truthBoundary": "Synthetic local exit-readiness fixture. It does not prove a live alternative, actual portability, supplier cooperation, production recovery, service continuity, or legal authority.",
      "canonicalRoute": "/state/governance/concentration-risk/exit-drills/finance-stale-last-known-good-state-08/"
    },
    {
      "id": "EVI-DED-009",
      "slug": "logistics-loss-of-one-trust-anchor-09",
      "title": "Logistics — loss of one trust anchor",
      "dependencyDomain": "logistics",
      "fixtureClass": "loss of one trust anchor",
      "relatedConcentrationRiskId": "EVI-CR-009",
      "preconditions": [
        "A byte-bound accepted public state exists or the record explicitly says none exists.",
        "The replacement path, authority, and rollback rule are declared before fault injection.",
        "No network call, production credential, citizen record, passport body, or private receipt is used."
      ],
      "boundedFault": "Synthetic zero-network loss of one trust anchor affecting logistics; no production service is touched.",
      "expectedPublicState": "MIGRATE_OR_RESTORE_WITH_APPEND_ONLY_EVIDENCE",
      "acceptedStatePreservation": true,
      "portabilityArtifact": "Portable accounting records, contracts, and claims.",
      "replacementDependency": "Independent settlement channels and non-financial critical-service fallback.",
      "maximumToleratedInterruption": "0 minutes for rights and correction access",
      "unresolvedResiduals": [
        "Liquidity run, payment outage, insurer withdrawal, fraud.",
        "A local deterministic drill does not prove supplier cooperation, production capacity, legal authority, or real recovery time."
      ],
      "rollbackRule": "Rejected, incomplete, stale, disputed, or corrupted migrations cannot overwrite accepted state. Restore the last verified local projection and publish the degraded state.",
      "evidencePath": "docs/proof/fixtures/v223-dependency-exit/09-logistics-loss-of-one-trust-anchor.json",
      "observedResult": "PASS_WITH_DECLARED_RESIDUALS",
      "resultReason": "The fixture completed its deterministic local transition and retained rollback evidence.",
      "networkCalls": 0,
      "productionMutation": false,
      "explicitNoProductionClaim": "No production dependency was disconnected, migrated, failed over, restored, handed back, or verified.",
      "truthBoundary": "Synthetic local exit-readiness fixture. It does not prove a live alternative, actual portability, supplier cooperation, production recovery, service continuity, or legal authority.",
      "canonicalRoute": "/state/governance/concentration-risk/exit-drills/logistics-loss-of-one-trust-anchor-09/"
    },
    {
      "id": "EVI-DED-010",
      "slug": "maritime-operations-loss-of-one-deployment-region-10",
      "title": "Maritime Operations — loss of one deployment region",
      "dependencyDomain": "maritime operations",
      "fixtureClass": "loss of one deployment region",
      "relatedConcentrationRiskId": "EVI-CR-010",
      "preconditions": [
        "A byte-bound accepted public state exists or the record explicitly says none exists.",
        "The replacement path, authority, and rollback rule are declared before fault injection.",
        "No network call, production credential, citizen record, passport body, or private receipt is used."
      ],
      "boundedFault": "Synthetic zero-network loss of one deployment region affecting maritime operations; no production service is touched.",
      "expectedPublicState": "MIGRATE_OR_RESTORE_WITH_APPEND_ONLY_EVIDENCE",
      "acceptedStatePreservation": true,
      "portabilityArtifact": "Exportable case records and reasons with privacy protection.",
      "replacementDependency": "Independent implementation and trained public staff.",
      "maximumToleratedInterruption": "15 minutes for public read-only orientation",
      "unresolvedResiduals": [
        "Model error, policy drift, outage, compromised update.",
        "A local deterministic drill does not prove supplier cooperation, production capacity, legal authority, or real recovery time."
      ],
      "rollbackRule": "Rejected, incomplete, stale, disputed, or corrupted migrations cannot overwrite accepted state. Restore the last verified local projection and publish the degraded state.",
      "evidencePath": "docs/proof/fixtures/v223-dependency-exit/10-maritime-operations-loss-of-one-deployment-region.json",
      "observedResult": "PASS_WITH_DECLARED_RESIDUALS",
      "resultReason": "The fixture completed its deterministic local transition and retained rollback evidence.",
      "networkCalls": 0,
      "productionMutation": false,
      "explicitNoProductionClaim": "No production dependency was disconnected, migrated, failed over, restored, handed back, or verified.",
      "truthBoundary": "Synthetic local exit-readiness fixture. It does not prove a live alternative, actual portability, supplier cooperation, production recovery, service continuity, or legal authority.",
      "canonicalRoute": "/state/governance/concentration-risk/exit-drills/maritime-operations-loss-of-one-deployment-region-10/"
    },
    {
      "id": "EVI-DED-011",
      "slug": "emergency-response-rate-limited-service-11",
      "title": "Emergency Response — rate-limited service",
      "dependencyDomain": "emergency response",
      "fixtureClass": "rate-limited service",
      "relatedConcentrationRiskId": "EVI-CR-011",
      "preconditions": [
        "A byte-bound accepted public state exists or the record explicitly says none exists.",
        "The replacement path, authority, and rollback rule are declared before fault injection.",
        "No network call, production credential, citizen record, passport body, or private receipt is used."
      ],
      "boundedFault": "Synthetic zero-network rate-limited service affecting emergency response; no production service is touched.",
      "expectedPublicState": "MIGRATE_OR_RESTORE_WITH_APPEND_ONLY_EVIDENCE",
      "acceptedStatePreservation": true,
      "portabilityArtifact": "Portable datasets, protocols, models and provenance.",
      "replacementDependency": "Human and machine research institutions outside one provider.",
      "maximumToleratedInterruption": "4 hours for noncritical analytical service",
      "unresolvedResiduals": [
        "Systematic model error, lab contamination, fabricated evidence.",
        "A local deterministic drill does not prove supplier cooperation, production capacity, legal authority, or real recovery time."
      ],
      "rollbackRule": "Rejected, incomplete, stale, disputed, or corrupted migrations cannot overwrite accepted state. Restore the last verified local projection and publish the degraded state.",
      "evidencePath": "docs/proof/fixtures/v223-dependency-exit/11-emergency-response-rate-limited-service.json",
      "observedResult": "PASS_WITH_DECLARED_RESIDUALS",
      "resultReason": "The fixture completed its deterministic local transition and retained rollback evidence.",
      "networkCalls": 0,
      "productionMutation": false,
      "explicitNoProductionClaim": "No production dependency was disconnected, migrated, failed over, restored, handed back, or verified.",
      "truthBoundary": "Synthetic local exit-readiness fixture. It does not prove a live alternative, actual portability, supplier cooperation, production recovery, service continuity, or legal authority.",
      "canonicalRoute": "/state/governance/concentration-risk/exit-drills/emergency-response-rate-limited-service-11/"
    },
    {
      "id": "EVI-DED-012",
      "slug": "software-disputed-authority-12",
      "title": "Software — disputed authority",
      "dependencyDomain": "software",
      "fixtureClass": "disputed authority",
      "relatedConcentrationRiskId": "EVI-CR-012",
      "preconditions": [
        "A byte-bound accepted public state exists or the record explicitly says none exists.",
        "The replacement path, authority, and rollback rule are declared before fault injection.",
        "No network call, production credential, citizen record, passport body, or private receipt is used."
      ],
      "boundedFault": "Synthetic zero-network disputed authority affecting software; no production service is touched.",
      "expectedPublicState": "PRESERVE_ACCEPTED_STATE_AND_DECLARE_DEGRADED",
      "acceptedStatePreservation": true,
      "portabilityArtifact": "Portable cargo, manifests, data and control interfaces.",
      "replacementDependency": "Independent carriers, ports and emergency tow/rescue.",
      "maximumToleratedInterruption": "UNRESOLVED_REQUIRES_MEASUREMENT",
      "unresolvedResiduals": [
        "Fleet software failure, communications loss, collision, storm, insurance exit.",
        "A local deterministic drill does not prove supplier cooperation, production capacity, legal authority, or real recovery time."
      ],
      "rollbackRule": "Rejected, incomplete, stale, disputed, or corrupted migrations cannot overwrite accepted state. Restore the last verified local projection and publish the degraded state.",
      "evidencePath": "docs/proof/fixtures/v223-dependency-exit/12-software-disputed-authority.json",
      "observedResult": "BLOCKED_AS_DESIGNED",
      "resultReason": "The fixture preserved accepted state and exposed the unresolved dependency.",
      "networkCalls": 0,
      "productionMutation": false,
      "explicitNoProductionClaim": "No production dependency was disconnected, migrated, failed over, restored, handed back, or verified.",
      "truthBoundary": "Synthetic local exit-readiness fixture. It does not prove a live alternative, actual portability, supplier cooperation, production recovery, service continuity, or legal authority.",
      "canonicalRoute": "/state/governance/concentration-risk/exit-drills/software-disputed-authority-12/"
    },
    {
      "id": "EVI-DED-013",
      "slug": "standards-revoked-delegation-13",
      "title": "Standards — revoked delegation",
      "dependencyDomain": "standards",
      "fixtureClass": "revoked delegation",
      "relatedConcentrationRiskId": "EVI-CR-013",
      "preconditions": [
        "A byte-bound accepted public state exists or the record explicitly says none exists.",
        "The replacement path, authority, and rollback rule are declared before fault injection.",
        "No network call, production credential, citizen record, passport body, or private receipt is used."
      ],
      "boundedFault": "Synthetic zero-network revoked delegation affecting standards; no production service is touched.",
      "expectedPublicState": "MIGRATE_OR_RESTORE_WITH_APPEND_ONLY_EVIDENCE",
      "acceptedStatePreservation": true,
      "portabilityArtifact": "Removal and decommissioning plans before deployment.",
      "replacementDependency": "Multiple national programs and non-Eviulon research capacity.",
      "maximumToleratedInterruption": "0 minutes for rights and correction access",
      "unresolvedResiduals": [
        "Isolation, spill, reactor or logistics failure, unremovable waste.",
        "A local deterministic drill does not prove supplier cooperation, production capacity, legal authority, or real recovery time."
      ],
      "rollbackRule": "Rejected, incomplete, stale, disputed, or corrupted migrations cannot overwrite accepted state. Restore the last verified local projection and publish the degraded state.",
      "evidencePath": "docs/proof/fixtures/v223-dependency-exit/13-standards-revoked-delegation.json",
      "observedResult": "PASS_WITH_DECLARED_RESIDUALS",
      "resultReason": "The fixture completed its deterministic local transition and retained rollback evidence.",
      "networkCalls": 0,
      "productionMutation": false,
      "explicitNoProductionClaim": "No production dependency was disconnected, migrated, failed over, restored, handed back, or verified.",
      "truthBoundary": "Synthetic local exit-readiness fixture. It does not prove a live alternative, actual portability, supplier cooperation, production recovery, service continuity, or legal authority.",
      "canonicalRoute": "/state/governance/concentration-risk/exit-drills/standards-revoked-delegation-13/"
    },
    {
      "id": "EVI-DED-014",
      "slug": "cloud-handback-after-crisis-14",
      "title": "Cloud — handback after crisis",
      "dependencyDomain": "cloud",
      "fixtureClass": "handback after crisis",
      "relatedConcentrationRiskId": "EVI-CR-014",
      "preconditions": [
        "A byte-bound accepted public state exists or the record explicitly says none exists.",
        "The replacement path, authority, and rollback rule are declared before fault injection.",
        "No network call, production credential, citizen record, passport body, or private receipt is used."
      ],
      "boundedFault": "Synthetic zero-network handback after crisis affecting cloud; no production service is touched.",
      "expectedPublicState": "MIGRATE_OR_RESTORE_WITH_APPEND_ONLY_EVIDENCE",
      "acceptedStatePreservation": true,
      "portabilityArtifact": "Portable mission data, interfaces and ephemerides.",
      "replacementDependency": "Independent launch and navigation systems.",
      "maximumToleratedInterruption": "15 minutes for public read-only orientation",
      "unresolvedResiduals": [
        "Launch failure, debris, radiation, communication loss.",
        "A local deterministic drill does not prove supplier cooperation, production capacity, legal authority, or real recovery time."
      ],
      "rollbackRule": "Rejected, incomplete, stale, disputed, or corrupted migrations cannot overwrite accepted state. Restore the last verified local projection and publish the degraded state.",
      "evidencePath": "docs/proof/fixtures/v223-dependency-exit/14-cloud-handback-after-crisis.json",
      "observedResult": "PASS_WITH_DECLARED_RESIDUALS",
      "resultReason": "The fixture completed its deterministic local transition and retained rollback evidence.",
      "networkCalls": 0,
      "productionMutation": false,
      "explicitNoProductionClaim": "No production dependency was disconnected, migrated, failed over, restored, handed back, or verified.",
      "truthBoundary": "Synthetic local exit-readiness fixture. It does not prove a live alternative, actual portability, supplier cooperation, production recovery, service continuity, or legal authority.",
      "canonicalRoute": "/state/governance/concentration-risk/exit-drills/cloud-handback-after-crisis-14/"
    },
    {
      "id": "EVI-DED-015",
      "slug": "data-manual-recovery-mode-15",
      "title": "Data — manual recovery mode",
      "dependencyDomain": "data",
      "fixtureClass": "manual recovery mode",
      "relatedConcentrationRiskId": "EVI-CR-015",
      "preconditions": [
        "A byte-bound accepted public state exists or the record explicitly says none exists.",
        "The replacement path, authority, and rollback rule are declared before fault injection.",
        "No network call, production credential, citizen record, passport body, or private receipt is used."
      ],
      "boundedFault": "Synthetic zero-network manual recovery mode affecting data; no production service is touched.",
      "expectedPublicState": "MIGRATE_OR_RESTORE_WITH_APPEND_ONLY_EVIDENCE",
      "acceptedStatePreservation": true,
      "portabilityArtifact": "All records and control state transferable to ordinary authority.",
      "replacementDependency": "Independent responders and manual operations.",
      "maximumToleratedInterruption": "4 hours for noncritical analytical service",
      "unresolvedResiduals": [
        "Wrong model, communications failure, unauthorized scope expansion.",
        "A local deterministic drill does not prove supplier cooperation, production capacity, legal authority, or real recovery time."
      ],
      "rollbackRule": "Rejected, incomplete, stale, disputed, or corrupted migrations cannot overwrite accepted state. Restore the last verified local projection and publish the degraded state.",
      "evidencePath": "docs/proof/fixtures/v223-dependency-exit/15-data-manual-recovery-mode.json",
      "observedResult": "PASS_WITH_DECLARED_RESIDUALS",
      "resultReason": "The fixture completed its deterministic local transition and retained rollback evidence.",
      "networkCalls": 0,
      "productionMutation": false,
      "explicitNoProductionClaim": "No production dependency was disconnected, migrated, failed over, restored, handed back, or verified.",
      "truthBoundary": "Synthetic local exit-readiness fixture. It does not prove a live alternative, actual portability, supplier cooperation, production recovery, service continuity, or legal authority.",
      "canonicalRoute": "/state/governance/concentration-risk/exit-drills/data-manual-recovery-mode-15/"
    },
    {
      "id": "EVI-DED-016",
      "slug": "procurement-verified-restoration-16",
      "title": "Procurement — verified restoration",
      "dependencyDomain": "procurement",
      "fixtureClass": "verified restoration",
      "relatedConcentrationRiskId": "EVI-CR-016",
      "preconditions": [
        "A byte-bound accepted public state exists or the record explicitly says none exists.",
        "The replacement path, authority, and rollback rule are declared before fault injection.",
        "No network call, production credential, citizen record, passport body, or private receipt is used."
      ],
      "boundedFault": "Synthetic zero-network verified restoration affecting procurement; no production service is touched.",
      "expectedPublicState": "MIGRATE_OR_RESTORE_WITH_APPEND_ONLY_EVIDENCE",
      "acceptedStatePreservation": true,
      "portabilityArtifact": "Downloadable corpus and machine-readable routes.",
      "replacementDependency": "External indexes and local full-text tools.",
      "maximumToleratedInterruption": "UNRESOLVED_REQUIRES_MEASUREMENT",
      "unresolvedResiduals": [
        "Index corruption, stale content, domain outage.",
        "A local deterministic drill does not prove supplier cooperation, production capacity, legal authority, or real recovery time."
      ],
      "rollbackRule": "Rejected, incomplete, stale, disputed, or corrupted migrations cannot overwrite accepted state. Restore the last verified local projection and publish the degraded state.",
      "evidencePath": "docs/proof/fixtures/v223-dependency-exit/16-procurement-verified-restoration.json",
      "observedResult": "PASS_WITH_DECLARED_RESIDUALS",
      "resultReason": "The fixture completed its deterministic local transition and retained rollback evidence.",
      "networkCalls": 0,
      "productionMutation": false,
      "explicitNoProductionClaim": "No production dependency was disconnected, migrated, failed over, restored, handed back, or verified.",
      "truthBoundary": "Synthetic local exit-readiness fixture. It does not prove a live alternative, actual portability, supplier cooperation, production recovery, service continuity, or legal authority.",
      "canonicalRoute": "/state/governance/concentration-risk/exit-drills/procurement-verified-restoration-16/"
    },
    {
      "id": "EVI-DED-017",
      "slug": "public-administration-planned-migration-17",
      "title": "Public Administration — planned migration",
      "dependencyDomain": "public administration",
      "fixtureClass": "planned migration",
      "relatedConcentrationRiskId": "EVI-CR-017",
      "preconditions": [
        "A byte-bound accepted public state exists or the record explicitly says none exists.",
        "The replacement path, authority, and rollback rule are declared before fault injection.",
        "No network call, production credential, citizen record, passport body, or private receipt is used."
      ],
      "boundedFault": "Synthetic zero-network planned migration affecting public administration; no production service is touched.",
      "expectedPublicState": "MIGRATE_OR_RESTORE_WITH_APPEND_ONLY_EVIDENCE",
      "acceptedStatePreservation": true,
      "portabilityArtifact": "Exportable signed credentials, status history and lawful recovery evidence.",
      "replacementDependency": "Independent qualified issuers and manual documentary fallback.",
      "maximumToleratedInterruption": "0 minutes for rights and correction access",
      "unresolvedResiduals": [
        "Issuer outage, status-list failure, compromised key or contradictory credential state.",
        "A local deterministic drill does not prove supplier cooperation, production capacity, legal authority, or real recovery time."
      ],
      "rollbackRule": "Rejected, incomplete, stale, disputed, or corrupted migrations cannot overwrite accepted state. Restore the last verified local projection and publish the degraded state.",
      "evidencePath": "docs/proof/fixtures/v223-dependency-exit/17-public-administration-planned-migration.json",
      "observedResult": "PASS_WITH_DECLARED_RESIDUALS",
      "resultReason": "The fixture completed its deterministic local transition and retained rollback evidence.",
      "networkCalls": 0,
      "productionMutation": false,
      "explicitNoProductionClaim": "No production dependency was disconnected, migrated, failed over, restored, handed back, or verified.",
      "truthBoundary": "Synthetic local exit-readiness fixture. It does not prove a live alternative, actual portability, supplier cooperation, production recovery, service continuity, or legal authority.",
      "canonicalRoute": "/state/governance/concentration-risk/exit-drills/public-administration-planned-migration-17/"
    },
    {
      "id": "EVI-DED-018",
      "slug": "contractor-services-emergency-failover-18",
      "title": "Contractor Services — emergency failover",
      "dependencyDomain": "contractor services",
      "fixtureClass": "emergency failover",
      "relatedConcentrationRiskId": "EVI-CR-018",
      "preconditions": [
        "A byte-bound accepted public state exists or the record explicitly says none exists.",
        "The replacement path, authority, and rollback rule are declared before fault injection.",
        "No network call, production credential, citizen record, passport body, or private receipt is used."
      ],
      "boundedFault": "Synthetic zero-network emergency failover affecting contractor services; no production service is touched.",
      "expectedPublicState": "MIGRATE_OR_RESTORE_WITH_APPEND_ONLY_EVIDENCE",
      "acceptedStatePreservation": true,
      "portabilityArtifact": "Machine-readable export with provenance, schema and lawful redaction.",
      "replacementDependency": "Independent repositories, local copies and non-data-dependent fallback procedures.",
      "maximumToleratedInterruption": "15 minutes for public read-only orientation",
      "unresolvedResiduals": [
        "Corruption, breach, provenance loss, incompatible formats or unavailable custodian.",
        "A local deterministic drill does not prove supplier cooperation, production capacity, legal authority, or real recovery time."
      ],
      "rollbackRule": "Rejected, incomplete, stale, disputed, or corrupted migrations cannot overwrite accepted state. Restore the last verified local projection and publish the degraded state.",
      "evidencePath": "docs/proof/fixtures/v223-dependency-exit/18-contractor-services-emergency-failover.json",
      "observedResult": "PASS_WITH_DECLARED_RESIDUALS",
      "resultReason": "The fixture completed its deterministic local transition and retained rollback evidence.",
      "networkCalls": 0,
      "productionMutation": false,
      "explicitNoProductionClaim": "No production dependency was disconnected, migrated, failed over, restored, handed back, or verified.",
      "truthBoundary": "Synthetic local exit-readiness fixture. It does not prove a live alternative, actual portability, supplier cooperation, production recovery, service continuity, or legal authority.",
      "canonicalRoute": "/state/governance/concentration-risk/exit-drills/contractor-services-emergency-failover-18/"
    },
    {
      "id": "EVI-DED-019",
      "slug": "cross-site-synchronization-supplier-withdrawal-19",
      "title": "Cross-Site Synchronization — supplier withdrawal",
      "dependencyDomain": "cross-site synchronization",
      "fixtureClass": "supplier withdrawal",
      "relatedConcentrationRiskId": "EVI-CR-019",
      "preconditions": [
        "A byte-bound accepted public state exists or the record explicitly says none exists.",
        "The replacement path, authority, and rollback rule are declared before fault injection.",
        "No network call, production credential, citizen record, passport body, or private receipt is used."
      ],
      "boundedFault": "Synthetic zero-network supplier withdrawal affecting cross-site synchronization; no production service is touched.",
      "expectedPublicState": "PRESERVE_ACCEPTED_STATE_AND_DECLARE_DEGRADED",
      "acceptedStatePreservation": true,
      "portabilityArtifact": "Exportable solicitations, bids, evaluation reasons, contracts and performance history subject to law.",
      "replacementDependency": "Qualified alternate suppliers and retained in-house competence.",
      "maximumToleratedInterruption": "4 hours for noncritical analytical service",
      "unresolvedResiduals": [
        "Faulty model, supplier collapse, bid-data compromise or systemic concentration.",
        "A local deterministic drill does not prove supplier cooperation, production capacity, legal authority, or real recovery time."
      ],
      "rollbackRule": "Rejected, incomplete, stale, disputed, or corrupted migrations cannot overwrite accepted state. Restore the last verified local projection and publish the degraded state.",
      "evidencePath": "docs/proof/fixtures/v223-dependency-exit/19-cross-site-synchronization-supplier-withdrawal.json",
      "observedResult": "BLOCKED_AS_DESIGNED",
      "resultReason": "The fixture preserved accepted state and exposed the unresolved dependency.",
      "networkCalls": 0,
      "productionMutation": false,
      "explicitNoProductionClaim": "No production dependency was disconnected, migrated, failed over, restored, handed back, or verified.",
      "truthBoundary": "Synthetic local exit-readiness fixture. It does not prove a live alternative, actual portability, supplier cooperation, production recovery, service continuity, or legal authority.",
      "canonicalRoute": "/state/governance/concentration-risk/exit-drills/cross-site-synchronization-supplier-withdrawal-19/"
    },
    {
      "id": "EVI-DED-020",
      "slug": "compute-corrupted-export-20",
      "title": "Compute — corrupted export",
      "dependencyDomain": "compute",
      "fixtureClass": "corrupted export",
      "relatedConcentrationRiskId": "EVI-CR-020",
      "preconditions": [
        "A byte-bound accepted public state exists or the record explicitly says none exists.",
        "The replacement path, authority, and rollback rule are declared before fault injection.",
        "No network call, production credential, citizen record, passport body, or private receipt is used."
      ],
      "boundedFault": "Synthetic zero-network corrupted export affecting compute; no production service is touched.",
      "expectedPublicState": "MIGRATE_OR_RESTORE_WITH_APPEND_ONLY_EVIDENCE",
      "acceptedStatePreservation": true,
      "portabilityArtifact": "Portable source, models, configuration, data and deterministic build instructions within lawful limits.",
      "replacementDependency": "Independent implementation, stable previous version and manual fallback.",
      "maximumToleratedInterruption": "UNRESOLVED_REQUIRES_MEASUREMENT",
      "unresolvedResiduals": [
        "Supply-chain compromise, abandoned dependency, incompatible release or systemic defect.",
        "A local deterministic drill does not prove supplier cooperation, production capacity, legal authority, or real recovery time."
      ],
      "rollbackRule": "Rejected, incomplete, stale, disputed, or corrupted migrations cannot overwrite accepted state. Restore the last verified local projection and publish the degraded state.",
      "evidencePath": "docs/proof/fixtures/v223-dependency-exit/20-compute-corrupted-export.json",
      "observedResult": "PASS_WITH_DECLARED_RESIDUALS",
      "resultReason": "The fixture completed its deterministic local transition and retained rollback evidence.",
      "networkCalls": 0,
      "productionMutation": false,
      "explicitNoProductionClaim": "No production dependency was disconnected, migrated, failed over, restored, handed back, or verified.",
      "truthBoundary": "Synthetic local exit-readiness fixture. It does not prove a live alternative, actual portability, supplier cooperation, production recovery, service continuity, or legal authority.",
      "canonicalRoute": "/state/governance/concentration-risk/exit-drills/compute-corrupted-export-20/"
    },
    {
      "id": "EVI-DED-021",
      "slug": "energy-incomplete-export-21",
      "title": "Energy — incomplete export",
      "dependencyDomain": "energy",
      "fixtureClass": "incomplete export",
      "relatedConcentrationRiskId": "EVI-CR-021",
      "preconditions": [
        "A byte-bound accepted public state exists or the record explicitly says none exists.",
        "The replacement path, authority, and rollback rule are declared before fault injection.",
        "No network call, production credential, citizen record, passport body, or private receipt is used."
      ],
      "boundedFault": "Synthetic zero-network incomplete export affecting energy; no production service is touched.",
      "expectedPublicState": "MIGRATE_OR_RESTORE_WITH_APPEND_ONLY_EVIDENCE",
      "acceptedStatePreservation": true,
      "portabilityArtifact": "Portable schemas, test vectors and conformance results.",
      "replacementDependency": "Competing standards and translation gateways.",
      "maximumToleratedInterruption": "0 minutes for rights and correction access",
      "unresolvedResiduals": [
        "Fragmentation, ambiguous profiles, withdrawn standard or incompatible revision.",
        "A local deterministic drill does not prove supplier cooperation, production capacity, legal authority, or real recovery time."
      ],
      "rollbackRule": "Rejected, incomplete, stale, disputed, or corrupted migrations cannot overwrite accepted state. Restore the last verified local projection and publish the degraded state.",
      "evidencePath": "docs/proof/fixtures/v223-dependency-exit/21-energy-incomplete-export.json",
      "observedResult": "PASS_WITH_DECLARED_RESIDUALS",
      "resultReason": "The fixture completed its deterministic local transition and retained rollback evidence.",
      "networkCalls": 0,
      "productionMutation": false,
      "explicitNoProductionClaim": "No production dependency was disconnected, migrated, failed over, restored, handed back, or verified.",
      "truthBoundary": "Synthetic local exit-readiness fixture. It does not prove a live alternative, actual portability, supplier cooperation, production recovery, service continuity, or legal authority.",
      "canonicalRoute": "/state/governance/concentration-risk/exit-drills/energy-incomplete-export-21/"
    },
    {
      "id": "EVI-DED-022",
      "slug": "communications-schema-incompatibility-22",
      "title": "Communications — schema incompatibility",
      "dependencyDomain": "communications",
      "fixtureClass": "schema incompatibility",
      "relatedConcentrationRiskId": "EVI-CR-022",
      "preconditions": [
        "A byte-bound accepted public state exists or the record explicitly says none exists.",
        "The replacement path, authority, and rollback rule are declared before fault injection.",
        "No network call, production credential, citizen record, passport body, or private receipt is used."
      ],
      "boundedFault": "Synthetic zero-network schema incompatibility affecting communications; no production service is touched.",
      "expectedPublicState": "MIGRATE_OR_RESTORE_WITH_APPEND_ONLY_EVIDENCE",
      "acceptedStatePreservation": true,
      "portabilityArtifact": "Portable images, state, logs, secrets rotation plans and data exports.",
      "replacementDependency": "Independent hosting provider and static degraded-mode publication.",
      "maximumToleratedInterruption": "15 minutes for public read-only orientation",
      "unresolvedResiduals": [
        "Provider outage, legal seizure, billing failure or control-plane compromise.",
        "A local deterministic drill does not prove supplier cooperation, production capacity, legal authority, or real recovery time."
      ],
      "rollbackRule": "Rejected, incomplete, stale, disputed, or corrupted migrations cannot overwrite accepted state. Restore the last verified local projection and publish the degraded state.",
      "evidencePath": "docs/proof/fixtures/v223-dependency-exit/22-communications-schema-incompatibility.json",
      "observedResult": "PASS_WITH_DECLARED_RESIDUALS",
      "resultReason": "The fixture completed its deterministic local transition and retained rollback evidence.",
      "networkCalls": 0,
      "productionMutation": false,
      "explicitNoProductionClaim": "No production dependency was disconnected, migrated, failed over, restored, handed back, or verified.",
      "truthBoundary": "Synthetic local exit-readiness fixture. It does not prove a live alternative, actual portability, supplier cooperation, production recovery, service continuity, or legal authority.",
      "canonicalRoute": "/state/governance/concentration-risk/exit-drills/communications-schema-incompatibility-22/"
    },
    {
      "id": "EVI-DED-023",
      "slug": "identity-unavailable-counterparty-23",
      "title": "Identity — unavailable counterparty",
      "dependencyDomain": "identity",
      "fixtureClass": "unavailable counterparty",
      "relatedConcentrationRiskId": "EVI-CR-023",
      "preconditions": [
        "A byte-bound accepted public state exists or the record explicitly says none exists.",
        "The replacement path, authority, and rollback rule are declared before fault injection.",
        "No network call, production credential, citizen record, passport body, or private receipt is used."
      ],
      "boundedFault": "Synthetic zero-network unavailable counterparty affecting identity; no production service is touched.",
      "expectedPublicState": "MIGRATE_OR_RESTORE_WITH_APPEND_ONLY_EVIDENCE",
      "acceptedStatePreservation": true,
      "portabilityArtifact": "Portable manifests, inventory records, maintenance histories and routing plans.",
      "replacementDependency": "Independent carriers, regional stockpiles and local manufacturing.",
      "maximumToleratedInterruption": "4 hours for noncritical analytical service",
      "unresolvedResiduals": [
        "Port closure, fleet defect, fuel shortage, labor dispute, cyber incident or extreme weather.",
        "A local deterministic drill does not prove supplier cooperation, production capacity, legal authority, or real recovery time."
      ],
      "rollbackRule": "Rejected, incomplete, stale, disputed, or corrupted migrations cannot overwrite accepted state. Restore the last verified local projection and publish the degraded state.",
      "evidencePath": "docs/proof/fixtures/v223-dependency-exit/23-identity-unavailable-counterparty.json",
      "observedResult": "PASS_WITH_DECLARED_RESIDUALS",
      "resultReason": "The fixture completed its deterministic local transition and retained rollback evidence.",
      "networkCalls": 0,
      "productionMutation": false,
      "explicitNoProductionClaim": "No production dependency was disconnected, migrated, failed over, restored, handed back, or verified.",
      "truthBoundary": "Synthetic local exit-readiness fixture. It does not prove a live alternative, actual portability, supplier cooperation, production recovery, service continuity, or legal authority.",
      "canonicalRoute": "/state/governance/concentration-risk/exit-drills/identity-unavailable-counterparty-23/"
    },
    {
      "id": "EVI-DED-024",
      "slug": "credentials-stale-last-known-good-state-24",
      "title": "Credentials — stale last-known-good state",
      "dependencyDomain": "credentials",
      "fixtureClass": "stale last-known-good state",
      "relatedConcentrationRiskId": "EVI-CR-024",
      "preconditions": [
        "A byte-bound accepted public state exists or the record explicitly says none exists.",
        "The replacement path, authority, and rollback rule are declared before fault injection.",
        "No network call, production credential, citizen record, passport body, or private receipt is used."
      ],
      "boundedFault": "Synthetic zero-network stale last-known-good state affecting credentials; no production service is touched.",
      "expectedPublicState": "MIGRATE_OR_RESTORE_WITH_APPEND_ONLY_EVIDENCE",
      "acceptedStatePreservation": true,
      "portabilityArtifact": "Portable public manifests and append-only observations; no citizen or credential bodies.",
      "replacementDependency": "Each site remains independently useful and may operate with connector UNAVAILABLE.",
      "maximumToleratedInterruption": "UNRESOLVED_REQUIRES_MEASUREMENT",
      "unresolvedResiduals": [
        "Partition, replay, schema conflict, compromised manifest, wrong origin or unavailable counterpart.",
        "A local deterministic drill does not prove supplier cooperation, production capacity, legal authority, or real recovery time."
      ],
      "rollbackRule": "Rejected, incomplete, stale, disputed, or corrupted migrations cannot overwrite accepted state. Restore the last verified local projection and publish the degraded state.",
      "evidencePath": "docs/proof/fixtures/v223-dependency-exit/24-credentials-stale-last-known-good-state.json",
      "observedResult": "PASS_WITH_DECLARED_RESIDUALS",
      "resultReason": "The fixture completed its deterministic local transition and retained rollback evidence.",
      "networkCalls": 0,
      "productionMutation": false,
      "explicitNoProductionClaim": "No production dependency was disconnected, migrated, failed over, restored, handed back, or verified.",
      "truthBoundary": "Synthetic local exit-readiness fixture. It does not prove a live alternative, actual portability, supplier cooperation, production recovery, service continuity, or legal authority.",
      "canonicalRoute": "/state/governance/concentration-risk/exit-drills/credentials-stale-last-known-good-state-24/"
    },
    {
      "id": "EVI-DED-025",
      "slug": "public-information-loss-of-one-trust-anchor-25",
      "title": "Public Information — loss of one trust anchor",
      "dependencyDomain": "public information",
      "fixtureClass": "loss of one trust anchor",
      "relatedConcentrationRiskId": "EVI-CR-001",
      "preconditions": [
        "A byte-bound accepted public state exists or the record explicitly says none exists.",
        "The replacement path, authority, and rollback rule are declared before fault injection.",
        "No network call, production credential, citizen record, passport body, or private receipt is used."
      ],
      "boundedFault": "Synthetic zero-network loss of one trust anchor affecting public information; no production service is touched.",
      "expectedPublicState": "MIGRATE_OR_RESTORE_WITH_APPEND_ONLY_EVIDENCE",
      "acceptedStatePreservation": true,
      "portabilityArtifact": "Open JSON/CSV, stable routes, complete export.",
      "replacementDependency": "Independent archives and readers.",
      "maximumToleratedInterruption": "0 minutes for rights and correction access",
      "unresolvedResiduals": [
        "Public mind unavailable or corrupted.",
        "A local deterministic drill does not prove supplier cooperation, production capacity, legal authority, or real recovery time."
      ],
      "rollbackRule": "Rejected, incomplete, stale, disputed, or corrupted migrations cannot overwrite accepted state. Restore the last verified local projection and publish the degraded state.",
      "evidencePath": "docs/proof/fixtures/v223-dependency-exit/25-public-information-loss-of-one-trust-anchor.json",
      "observedResult": "PASS_WITH_DECLARED_RESIDUALS",
      "resultReason": "The fixture completed its deterministic local transition and retained rollback evidence.",
      "networkCalls": 0,
      "productionMutation": false,
      "explicitNoProductionClaim": "No production dependency was disconnected, migrated, failed over, restored, handed back, or verified.",
      "truthBoundary": "Synthetic local exit-readiness fixture. It does not prove a live alternative, actual portability, supplier cooperation, production recovery, service continuity, or legal authority.",
      "canonicalRoute": "/state/governance/concentration-risk/exit-drills/public-information-loss-of-one-trust-anchor-25/"
    },
    {
      "id": "EVI-DED-026",
      "slug": "science-loss-of-one-deployment-region-26",
      "title": "Science — loss of one deployment region",
      "dependencyDomain": "science",
      "fixtureClass": "loss of one deployment region",
      "relatedConcentrationRiskId": "EVI-CR-002",
      "preconditions": [
        "A byte-bound accepted public state exists or the record explicitly says none exists.",
        "The replacement path, authority, and rollback rule are declared before fault injection.",
        "No network call, production credential, citizen record, passport body, or private receipt is used."
      ],
      "boundedFault": "Synthetic zero-network loss of one deployment region affecting science; no production service is touched.",
      "expectedPublicState": "MIGRATE_OR_RESTORE_WITH_APPEND_ONLY_EVIDENCE",
      "acceptedStatePreservation": true,
      "portabilityArtifact": "Portable credentials and history under lawful process.",
      "replacementDependency": "Independent identity providers and offline recovery.",
      "maximumToleratedInterruption": "15 minutes for public read-only orientation",
      "unresolvedResiduals": [
        "Operational service outage, key compromise, split-brain records.",
        "A local deterministic drill does not prove supplier cooperation, production capacity, legal authority, or real recovery time."
      ],
      "rollbackRule": "Rejected, incomplete, stale, disputed, or corrupted migrations cannot overwrite accepted state. Restore the last verified local projection and publish the degraded state.",
      "evidencePath": "docs/proof/fixtures/v223-dependency-exit/26-science-loss-of-one-deployment-region.json",
      "observedResult": "PASS_WITH_DECLARED_RESIDUALS",
      "resultReason": "The fixture completed its deterministic local transition and retained rollback evidence.",
      "networkCalls": 0,
      "productionMutation": false,
      "explicitNoProductionClaim": "No production dependency was disconnected, migrated, failed over, restored, handed back, or verified.",
      "truthBoundary": "Synthetic local exit-readiness fixture. It does not prove a live alternative, actual portability, supplier cooperation, production recovery, service continuity, or legal authority.",
      "canonicalRoute": "/state/governance/concentration-risk/exit-drills/science-loss-of-one-deployment-region-26/"
    },
    {
      "id": "EVI-DED-027",
      "slug": "finance-rate-limited-service-27",
      "title": "Finance — rate-limited service",
      "dependencyDomain": "finance",
      "fixtureClass": "rate-limited service",
      "relatedConcentrationRiskId": "EVI-CR-003",
      "preconditions": [
        "A byte-bound accepted public state exists or the record explicitly says none exists.",
        "The replacement path, authority, and rollback rule are declared before fault injection.",
        "No network call, production credential, citizen record, passport body, or private receipt is used."
      ],
      "boundedFault": "Synthetic zero-network rate-limited service affecting finance; no production service is touched.",
      "expectedPublicState": "MIGRATE_OR_RESTORE_WITH_APPEND_ONLY_EVIDENCE",
      "acceptedStatePreservation": true,
      "portabilityArtifact": "Portable evidence packages and reproducible tests.",
      "replacementDependency": "Alternative assurance providers and internal verification.",
      "maximumToleratedInterruption": "4 hours for noncritical analytical service",
      "unresolvedResiduals": [
        "Contractor unavailable, compromised, conflicted, or wrong.",
        "A local deterministic drill does not prove supplier cooperation, production capacity, legal authority, or real recovery time."
      ],
      "rollbackRule": "Rejected, incomplete, stale, disputed, or corrupted migrations cannot overwrite accepted state. Restore the last verified local projection and publish the degraded state.",
      "evidencePath": "docs/proof/fixtures/v223-dependency-exit/27-finance-rate-limited-service.json",
      "observedResult": "PASS_WITH_DECLARED_RESIDUALS",
      "resultReason": "The fixture completed its deterministic local transition and retained rollback evidence.",
      "networkCalls": 0,
      "productionMutation": false,
      "explicitNoProductionClaim": "No production dependency was disconnected, migrated, failed over, restored, handed back, or verified.",
      "truthBoundary": "Synthetic local exit-readiness fixture. It does not prove a live alternative, actual portability, supplier cooperation, production recovery, service continuity, or legal authority.",
      "canonicalRoute": "/state/governance/concentration-risk/exit-drills/finance-rate-limited-service-27/"
    },
    {
      "id": "EVI-DED-028",
      "slug": "logistics-disputed-authority-28",
      "title": "Logistics — disputed authority",
      "dependencyDomain": "logistics",
      "fixtureClass": "disputed authority",
      "relatedConcentrationRiskId": "EVI-CR-004",
      "preconditions": [
        "A byte-bound accepted public state exists or the record explicitly says none exists.",
        "The replacement path, authority, and rollback rule are declared before fault injection.",
        "No network call, production credential, citizen record, passport body, or private receipt is used."
      ],
      "boundedFault": "Synthetic zero-network disputed authority affecting logistics; no production service is touched.",
      "expectedPublicState": "PRESERVE_ACCEPTED_STATE_AND_DECLARE_DEGRADED",
      "acceptedStatePreservation": true,
      "portabilityArtifact": "Exportable models, state, logs, and configuration subject to rights.",
      "replacementDependency": "At least one tested independent provider and offline critical functions.",
      "maximumToleratedInterruption": "UNRESOLVED_REQUIRES_MEASUREMENT",
      "unresolvedResiduals": [
        "Regional outage, supply embargo, cooling or power failure.",
        "A local deterministic drill does not prove supplier cooperation, production capacity, legal authority, or real recovery time."
      ],
      "rollbackRule": "Rejected, incomplete, stale, disputed, or corrupted migrations cannot overwrite accepted state. Restore the last verified local projection and publish the degraded state.",
      "evidencePath": "docs/proof/fixtures/v223-dependency-exit/28-logistics-disputed-authority.json",
      "observedResult": "BLOCKED_AS_DESIGNED",
      "resultReason": "The fixture preserved accepted state and exposed the unresolved dependency.",
      "networkCalls": 0,
      "productionMutation": false,
      "explicitNoProductionClaim": "No production dependency was disconnected, migrated, failed over, restored, handed back, or verified.",
      "truthBoundary": "Synthetic local exit-readiness fixture. It does not prove a live alternative, actual portability, supplier cooperation, production recovery, service continuity, or legal authority.",
      "canonicalRoute": "/state/governance/concentration-risk/exit-drills/logistics-disputed-authority-28/"
    },
    {
      "id": "EVI-DED-029",
      "slug": "maritime-operations-revoked-delegation-29",
      "title": "Maritime Operations — revoked delegation",
      "dependencyDomain": "maritime operations",
      "fixtureClass": "revoked delegation",
      "relatedConcentrationRiskId": "EVI-CR-005",
      "preconditions": [
        "A byte-bound accepted public state exists or the record explicitly says none exists.",
        "The replacement path, authority, and rollback rule are declared before fault injection.",
        "No network call, production credential, citizen record, passport body, or private receipt is used."
      ],
      "boundedFault": "Synthetic zero-network revoked delegation affecting maritime operations; no production service is touched.",
      "expectedPublicState": "MIGRATE_OR_RESTORE_WITH_APPEND_ONLY_EVIDENCE",
      "acceptedStatePreservation": true,
      "portabilityArtifact": "No portability of electrons; portability applies to workloads and service state.",
      "replacementDependency": "Independent generation, storage, imports, and safe hibernation.",
      "maximumToleratedInterruption": "0 minutes for rights and correction access",
      "unresolvedResiduals": [
        "Grid collapse, fuel shortage, common-mode equipment failure.",
        "A local deterministic drill does not prove supplier cooperation, production capacity, legal authority, or real recovery time."
      ],
      "rollbackRule": "Rejected, incomplete, stale, disputed, or corrupted migrations cannot overwrite accepted state. Restore the last verified local projection and publish the degraded state.",
      "evidencePath": "docs/proof/fixtures/v223-dependency-exit/29-maritime-operations-revoked-delegation.json",
      "observedResult": "PASS_WITH_DECLARED_RESIDUALS",
      "resultReason": "The fixture completed its deterministic local transition and retained rollback evidence.",
      "networkCalls": 0,
      "productionMutation": false,
      "explicitNoProductionClaim": "No production dependency was disconnected, migrated, failed over, restored, handed back, or verified.",
      "truthBoundary": "Synthetic local exit-readiness fixture. It does not prove a live alternative, actual portability, supplier cooperation, production recovery, service continuity, or legal authority.",
      "canonicalRoute": "/state/governance/concentration-risk/exit-drills/maritime-operations-revoked-delegation-29/"
    },
    {
      "id": "EVI-DED-030",
      "slug": "emergency-response-handback-after-crisis-30",
      "title": "Emergency Response — handback after crisis",
      "dependencyDomain": "emergency response",
      "fixtureClass": "handback after crisis",
      "relatedConcentrationRiskId": "EVI-CR-006",
      "preconditions": [
        "A byte-bound accepted public state exists or the record explicitly says none exists.",
        "The replacement path, authority, and rollback rule are declared before fault injection.",
        "No network call, production credential, citizen record, passport body, or private receipt is used."
      ],
      "boundedFault": "Synthetic zero-network handback after crisis affecting emergency response; no production service is touched.",
      "expectedPublicState": "MIGRATE_OR_RESTORE_WITH_APPEND_ONLY_EVIDENCE",
      "acceptedStatePreservation": true,
      "portabilityArtifact": "Design-data escrow and component standardization where lawful; no proliferation-sensitive transfer.",
      "replacementDependency": "Non-nuclear generation, alternate reactor/fuel services, safe shutdown capacity.",
      "maximumToleratedInterruption": "15 minutes for public read-only orientation",
      "unresolvedResiduals": [
        "Loss of cooling, common-mode design defect, fuel-service interruption, accident.",
        "A local deterministic drill does not prove supplier cooperation, production capacity, legal authority, or real recovery time."
      ],
      "rollbackRule": "Rejected, incomplete, stale, disputed, or corrupted migrations cannot overwrite accepted state. Restore the last verified local projection and publish the degraded state.",
      "evidencePath": "docs/proof/fixtures/v223-dependency-exit/30-emergency-response-handback-after-crisis.json",
      "observedResult": "PASS_WITH_DECLARED_RESIDUALS",
      "resultReason": "The fixture completed its deterministic local transition and retained rollback evidence.",
      "networkCalls": 0,
      "productionMutation": false,
      "explicitNoProductionClaim": "No production dependency was disconnected, migrated, failed over, restored, handed back, or verified.",
      "truthBoundary": "Synthetic local exit-readiness fixture. It does not prove a live alternative, actual portability, supplier cooperation, production recovery, service continuity, or legal authority.",
      "canonicalRoute": "/state/governance/concentration-risk/exit-drills/emergency-response-handback-after-crisis-30/"
    },
    {
      "id": "EVI-DED-031",
      "slug": "software-manual-recovery-mode-31",
      "title": "Software — manual recovery mode",
      "dependencyDomain": "software",
      "fixtureClass": "manual recovery mode",
      "relatedConcentrationRiskId": "EVI-CR-007",
      "preconditions": [
        "A byte-bound accepted public state exists or the record explicitly says none exists.",
        "The replacement path, authority, and rollback rule are declared before fault injection.",
        "No network call, production credential, citizen record, passport body, or private receipt is used."
      ],
      "boundedFault": "Synthetic zero-network manual recovery mode affecting software; no production service is touched.",
      "expectedPublicState": "MIGRATE_OR_RESTORE_WITH_APPEND_ONLY_EVIDENCE",
      "acceptedStatePreservation": true,
      "portabilityArtifact": "Portable designs, documented interfaces, substitutable components.",
      "replacementDependency": "Mature-node survival stack and multiple geographic suppliers.",
      "maximumToleratedInterruption": "4 hours for noncritical analytical service",
      "unresolvedResiduals": [
        "Geopolitical disruption, contamination, yield collapse, obsolete node.",
        "A local deterministic drill does not prove supplier cooperation, production capacity, legal authority, or real recovery time."
      ],
      "rollbackRule": "Rejected, incomplete, stale, disputed, or corrupted migrations cannot overwrite accepted state. Restore the last verified local projection and publish the degraded state.",
      "evidencePath": "docs/proof/fixtures/v223-dependency-exit/31-software-manual-recovery-mode.json",
      "observedResult": "PASS_WITH_DECLARED_RESIDUALS",
      "resultReason": "The fixture completed its deterministic local transition and retained rollback evidence.",
      "networkCalls": 0,
      "productionMutation": false,
      "explicitNoProductionClaim": "No production dependency was disconnected, migrated, failed over, restored, handed back, or verified.",
      "truthBoundary": "Synthetic local exit-readiness fixture. It does not prove a live alternative, actual portability, supplier cooperation, production recovery, service continuity, or legal authority.",
      "canonicalRoute": "/state/governance/concentration-risk/exit-drills/software-manual-recovery-mode-31/"
    },
    {
      "id": "EVI-DED-032",
      "slug": "standards-verified-restoration-32",
      "title": "Standards — verified restoration",
      "dependencyDomain": "standards",
      "fixtureClass": "verified restoration",
      "relatedConcentrationRiskId": "EVI-CR-008",
      "preconditions": [
        "A byte-bound accepted public state exists or the record explicitly says none exists.",
        "The replacement path, authority, and rollback rule are declared before fault injection.",
        "No network call, production credential, citizen record, passport body, or private receipt is used."
      ],
      "boundedFault": "Synthetic zero-network verified restoration affecting standards; no production service is touched.",
      "expectedPublicState": "MIGRATE_OR_RESTORE_WITH_APPEND_ONLY_EVIDENCE",
      "acceptedStatePreservation": true,
      "portabilityArtifact": "Exportable domains, certificates, public manifests, local contact routes.",
      "replacementDependency": "At least two physical paths plus delayed store-and-forward.",
      "maximumToleratedInterruption": "UNRESOLVED_REQUIRES_MEASUREMENT",
      "unresolvedResiduals": [
        "Cable cut, satellite loss, DNS failure, partition.",
        "A local deterministic drill does not prove supplier cooperation, production capacity, legal authority, or real recovery time."
      ],
      "rollbackRule": "Rejected, incomplete, stale, disputed, or corrupted migrations cannot overwrite accepted state. Restore the last verified local projection and publish the degraded state.",
      "evidencePath": "docs/proof/fixtures/v223-dependency-exit/32-standards-verified-restoration.json",
      "observedResult": "PASS_WITH_DECLARED_RESIDUALS",
      "resultReason": "The fixture completed its deterministic local transition and retained rollback evidence.",
      "networkCalls": 0,
      "productionMutation": false,
      "explicitNoProductionClaim": "No production dependency was disconnected, migrated, failed over, restored, handed back, or verified.",
      "truthBoundary": "Synthetic local exit-readiness fixture. It does not prove a live alternative, actual portability, supplier cooperation, production recovery, service continuity, or legal authority.",
      "canonicalRoute": "/state/governance/concentration-risk/exit-drills/standards-verified-restoration-32/"
    }
  ],
  "truthBoundary": "Deterministic zero-network exit and handback corpus. It exposes readiness gaps without claiming that a production dependency, supplier, service, region, authority, or connector was actually migrated or restored."
}
