Skip to content

Commit 485b4a2

Browse files
committed
v73.0.0
# Release Notes ## v73.0.0 Release date: 2026-04-29 `v73.0.0` is the ownership, vault, and continuity release. In this offline verifier repository, the release work is publication of the `v72.0.0` archive, canonical `v73.0.0` artifacts, and outward version-surface alignment only. Canonical full release note: [docs/releases/v73.0.0.md](docs/releases/v73.0.0.md) Product-truth freeze: [docs/releases/v73.0.0-product-truth.md](docs/releases/v73.0.0-product-truth.md) Release checklist: [docs/releases/v73.0.0-checklist.md](docs/releases/v73.0.0-checklist.md) Release process: [docs/releases/v73.0.0-process.md](docs/releases/v73.0.0-process.md) Included v72 archive: [docs/releases/v72.0.0.md](docs/releases/v72.0.0.md) ## Highlights - Business account entity ownership and certificates now have first-class API, server, and contract coverage. - Receipt ownership provenance and transfer flows now carry stronger proof bundles and route-level continuity. - Vault and original-download paths preserve portable verified records instead of treating recovered artifact state as disposable UI state. - Account brain selections expose compact proof-bundle data in a dismissible mobile-friendly popover, with Open shown only for nodes that have a real route target. - Account authority navigation names the offline surface as Offline Verifier and consolidates Privacy/Terms into Legal while keeping Security one tap away. - Account, profile, composer, chat, discovery, and world twin surfaces keep post-v72 UI improvements under explicit continuity and fit contracts. - Release-governed version surfaces now move together to `v73.0.0` across package metadata, public verifier artifacts, shipped release badges, README pointers, and current-release documentation. ## Verifier impact - Current shipped verifier, studio, and settlement entrypoints are marked `v73.0.0`. - Repository release/docs surfaces now align to `v73.0.0`. - Root package metadata now resolves cleanly at `v73.0.0`. - No verifier proof-format or producer payload migration is implied by this release update. - Verifier trust semantics remain unchanged relative to `v60.0.0`. ## Operational notes - The broader release brief records `61ae0ef2b` as the `v72.0.0` baseline, but this offline verifier checkout does not contain that commit object or a `v72.0.0` tag locally. - Published release surfaces now include the canonical `v72.0.0` archive and the `v73.0.0` release note, product-truth freeze, checklist, process, and updated docs indexes. - The `v70.0.0` public alpha law, `v70.0.0` invariant register, `v72.0.0` stable continuity locks, and `v64.0.0` value-loop invariants remain in force. - In this offline verifier repository, the release work is documentation, visible version-surface alignment, and package-metadata normalization only. ## Migration checklist - No new database migrations are introduced by this documentation cut. - Confirm business ownership APIs, certificate generation, and holdings reads have contract coverage. - Confirm receipt provenance and transfer proof do not rewrite artifact identity or canonical receipt truth. - Confirm vault decode, verifier, and original-download state preserve portable verified record truth. - Confirm account brain selected-node proof data and route-target-only Open actions. - Confirm account authority navigation names Offline Verifier, consolidates Privacy/Terms into Legal, and keeps Security one tap away. - Confirm world twin face authority and photoreal shell fit remain bounded by contracts. - Update outward release/docs references to `v73.0.0`. - Deploy updated `site/` artifacts. ## Security posture Security posture remains fail-closed: verification still requires byte-level integrity, trusted signature evidence, anchor context, and real Groth16 proof validation. ## v72.0.0 Release date: 2026-04-28 `v72.0.0` is the stable continuity release. In this offline verifier repository, the release work is publication of the canonical `v72.0.0` artifacts and release-governed version-surface expectations only. Canonical full release note: [docs/releases/v72.0.0.md](docs/releases/v72.0.0.md) Product-truth freeze: [docs/releases/v72.0.0-product-truth.md](docs/releases/v72.0.0-product-truth.md) Release checklist: [docs/releases/v72.0.0-checklist.md](docs/releases/v72.0.0-checklist.md) Release process: [docs/releases/v72.0.0-process.md](docs/releases/v72.0.0-process.md) ## Highlights - Account switching clears actor-scoped route warmth and refuses to preserve market/private wallet state unless the viewer user id matches. - Compact mobile Live Twin rendered-portrait overlays apply a bounded lower-left face-lock correction so eyes and mouth stay on the person's face without restoring the old oversized mobile downshift. - `/<username>` remains canonical profile truth; `?manage=1` remains owner permissions only. - Owner/private enrichment must not make signed-in profile first paint slower than public profile truth. - Useful hydration repairs stay: stale app-open state can refresh in the background without replacing a settled visible shell. - Release-governed version surfaces moved together to `v72.0.0` at the stable continuity cut. ## Verifier impact - No verifier proof-format or producer payload migration is implied by this release update. - Verifier trust semantics remain unchanged relative to `v60.0.0`. ## Operational notes - The `v70.0.0` public alpha law remains intact. - The `v64.0.0` value-loop invariants remain in force. - In this offline verifier repository, `v72.0.0` is now retained as historical release truth while current-release pointers move to `v73.0.0`. ## Security posture Security posture remains fail-closed: verification still requires byte-level integrity, trusted signature evidence, anchor context, and real Groth16 proof validation. ## v70.0.0 Release date: 2026-04-24 `v70.0.0` is the first public alpha release cut of Receiz as an end-to-end product system. In this offline verifier repository, the release work is publication of the canonical `v70.0.0` artifacts, product-truth reference documents, growth record, invariant register, and outward version-surface alignment only. Canonical full release note: [docs/releases/v70.0.0.md](docs/releases/v70.0.0.md) Product-truth freeze: [docs/releases/v70.0.0-product-truth.md](docs/releases/v70.0.0-product-truth.md) Release checklist: [docs/releases/v70.0.0-checklist.md](docs/releases/v70.0.0-checklist.md) Release process: [docs/releases/v70.0.0-process.md](docs/releases/v70.0.0-process.md) Growth from v60: [docs/releases/v70.0.0-growth-from-v60.md](docs/releases/v70.0.0-growth-from-v60.md) Invariant register: [docs/releases/v70.0.0-invariant-register.md](docs/releases/v70.0.0-invariant-register.md) Docs manifest: [docs/releases/v70.0.0-docs-manifest.md](docs/releases/v70.0.0-docs-manifest.md) Literal product law: [docs/literal-product-law.md](docs/literal-product-law.md) PBI recovery and Receiz ID binding: [docs/pbi-recovery-receiz-id-binding.md](docs/pbi-recovery-receiz-id-binding.md) ## Highlights - Receiz ID is the primary everyday login rail; `/signin` is a pass-through route. - Existing local Receiz ID accounts go directly to the managed profile, and cold devices create a local Receiz ID before continuing to the new managed profile. - `/<username>` is canonical profile truth; `/<username>?manage=1` is the same profile with owner powers layered on top. - Settlement remains proof-native value, Reserve remains funded external-conversion value, and notes stay Reserve-only. - Certificates and shares bridge live proof-native value into buyer-funded Reserve. - Market sells preserve funded/unfunded causality and patch visible truth from the known trade result. - Receiz ID, PBI/keyfile proof, route snapshots, wallet graphs, market positions, twin state, and proof bundles are real local truth. - Stale runtime, stale service-worker, and stale session states recover through local proof or server resync and return to the route the user was on. - Live twins cannot fall back to a profile picture as an identity substitute. - Mind trail ZIP downloads package every file with Receiz proof material so the downloaded bundle verifies as a proof bundle. - Release-governed version surfaces now move together to `v70.0.0` across package metadata, public verifier artifacts, shipped release badges, and current-release documentation. ## Verifier impact - Current shipped verifier, studio, and settlement entrypoints are marked `v70.0.0`. - Repository release/docs surfaces now align to `v70.0.0`. - Root package metadata now resolves cleanly at `v70.0.0`. - No verifier proof-format or producer payload migration is implied by this release update. - Verifier trust semantics remain unchanged relative to `v60.0.0`. ## Preserved verifier contract - Trusted-signature success still requires verified `signatureV4`. - Trusted-signature failure semantics remain fail-closed: - invalid present `signatureV4` -> `Trusted signature invalid` - unavailable present `signatureV4` -> `Trusted signature unavailable` - missing `signatureV4` -> `Trusted signature missing. Expected signatureV4.` - Effective anchor context remains required (explicit or derivable). - Groth16 fields remain required and only real `g16:` proof payloads are accepted. - Carrier extraction/normalization for PNG, PDF, SVG, JSON, trailer, and `.receizbundle`. - Package ZIP/folder manifest verification paths. - Canonical identity derivation and artifact-binding checks. - Fail-closed verification semantics. ## Operational notes - Published release surfaces now include the canonical `v70.0.0` release note, product-truth freeze, checklist, process, growth record, invariant register, docs manifest, literal product law, PBI recovery binding reference, and updated docs indexes. - The `v64.0.0` value-loop invariants remain in force. - In this offline verifier repository, the release work is documentation, visible version-surface alignment, and package-metadata normalization only. - No verifier proof-format or producer payload migration is implied by these repository release/documentation updates alone. ## Migration checklist - No new database migrations are introduced by this documentation cut. - Confirm Receiz ID is the everyday login rail and `/signin` is pass-through only. - Confirm PBI/keyfile recovery binds back to local Receiz ID truth. - Confirm `/<username>` and `/<username>?manage=1` share canonical profile truth. - Confirm Settlement/Reserve causality, Reserve-only notes, certificate funding, and market funded/unfunded sale splits. - Confirm local proof and deterministic local truth outrank weaker stale network/session payloads. - Confirm route-preserving stale-runtime and service-worker recovery. - Confirm live twin identity image locking and proof-sealed mind trail ZIP downloads. - Update outward release/docs references to `v70.0.0`. - Deploy updated `site/` artifacts. - Publish the `v70.0.0` release note, product-truth freeze, checklist, process, growth record, invariant register, docs manifest, product-truth reference docs, and updated docs indexes. ## Security posture Security posture remains fail-closed: verification still requires byte-level integrity, trusted signature evidence, anchor context, and real Groth16 proof validation. ## v66.0.0 Release date: 2026-04-21 `v66.0.0` is the local proof continuity release. In this offline verifier repository, the release work is publication of the canonical `v66.0.0` artifacts, local-proof reference documents, and outward version-surface alignment only. Canonical full release note: [docs/releases/v66.0.0.md](docs/releases/v66.0.0.md) Product-truth freeze: [docs/releases/v66.0.0-product-truth.md](docs/releases/v66.0.0-product-truth.md) Release checklist: [docs/releases/v66.0.0-checklist.md](docs/releases/v66.0.0-checklist.md) Release process: [docs/releases/v66.0.0-process.md](docs/releases/v66.0.0-process.md) Experience-first engineering: [docs/experience-first-engineering.md](docs/experience-first-engineering.md) Verified history first principles: [docs/verified-history-first-principles.md](docs/verified-history-first-principles.md) Offline verified register: [docs/offline-verified-register.md](docs/offline-verified-register.md) ## Highlights - Local proof is now frozen as the default authority when the node already holds stronger verified truth. - Verified-register-backed proof outranks weaker legacy offline evidence. - Account surfaces preserve valid local identity roots when the session API is unavailable, anonymous, or weaker. - Public Twin projection can come from the local twin mind register and local model rail before online streaming is needed. - Twin mind PNG import requires portable public-key verification instead of server-secret HMAC authority for canonical import. - World, Explore, Wallet, Market, and tracked-position surfaces preserve known deterministic state unless a transport payload proves a stronger state. - Service-worker offline persistence is explicit through `x-receiz-offline-persist` response headers for verified snapshots. - No new database migration is required by the release docs themselves. - Release-governed version surfaces now move together to `v66.0.0` across package metadata, public verifier artifacts, shipped release badges, and current-release documentation. ## Verifier impact - Current shipped verifier, studio, and settlement entrypoints are marked `v66.0.0`. - Repository release/docs surfaces now align to `v66.0.0`. - Root package metadata now resolves cleanly at `v66.0.0`. - No verifier proof-format or producer payload migration is implied by this release update. - Verifier trust semantics remain unchanged relative to `v60.0.0`. ## Preserved verifier contract - Trusted-signature success still requires verified `signatureV4`. - Trusted-signature failure semantics remain fail-closed: - invalid present `signatureV4` -> `Trusted signature invalid` - unavailable present `signatureV4` -> `Trusted signature unavailable` - missing `signatureV4` -> `Trusted signature missing. Expected signatureV4.` - Effective anchor context remains required (explicit or derivable). - Groth16 fields remain required and only real `g16:` proof payloads are accepted. - Carrier extraction/normalization for PNG, PDF, SVG, JSON, trailer, and `.receizbundle`. - Package ZIP/folder manifest verification paths. - Canonical identity derivation and artifact-binding checks. - Fail-closed verification semantics. ## Operational notes - Broader platform validation for `v66.0.0` is captured in the canonical release note, process, and checklist, including local proof authority classification, verified-register precedence, offline identity continuity, deterministic ledger proof bundles, local twin register projection, twin mind public-key import, verified-snapshot persistence, and market/tracked-position local truth preservation. - Published release surfaces now include the canonical `v66.0.0` release note, the `v66.0.0` product-truth freeze, the `v66.0.0` checklist, the `v66.0.0` process document, and the local-proof reference docs. - The `v64.0.0` value-loop invariants remain in force. - In this offline verifier repository, the release work is documentation, visible version-surface alignment, and package-metadata normalization only. - No verifier proof-format or producer payload migration is implied by these repository release/documentation updates alone. ## Migration checklist - No new database migrations are introduced by this documentation cut. - Confirm local verified-register proof outranks weaker offline or legacy evidence. - Confirm wallet transaction receipts verify deterministic ledger proof bundles before treating ledger claims as truth. - Confirm anonymous or missing network session payloads do not erase locally held identity proof. - Confirm local twin register projection wins for the visible reply when present. - Confirm twin mind portable import/export production keys are configured. - Confirm deterministic public snapshots and private account snapshots opt into explicit offline persistence. - Confirm wallet, market, tracked-position, World, and Explore surfaces preserve known state until stronger state is proven. - Update outward release/docs references to `v66.0.0`. - Deploy updated `site/` artifacts. - Publish the `v66.0.0` release note, product-truth freeze, checklist, process, local-proof reference docs, and updated docs indexes. - No producer payload or proof-format migration is implied by these verifier-repo documentation updates alone. ## Security posture Security posture remains fail-closed: verification still requires byte-level integrity, trusted signature evidence, anchor context, and real Groth16 proof validation. ## v64.0.0 Release date: 2026-04-21 `v64.0.0` is the complete value-loop release. In this offline verifier repository, the release work is publication of the canonical `v64.0.0` artifacts plus outward version-surface alignment only. Canonical full release note: [docs/releases/v64.0.0.md](docs/releases/v64.0.0.md) Product-truth freeze: [docs/releases/v64.0.0-product-truth.md](docs/releases/v64.0.0-product-truth.md) Release checklist: [docs/releases/v64.0.0-checklist.md](docs/releases/v64.0.0-checklist.md) Release process: [docs/releases/v64.0.0-process.md](docs/releases/v64.0.0-process.md) Value-loop invariants: [docs/value-loop-invariants.md](docs/value-loop-invariants.md) ## Highlights - Receiz now documents one closed value loop: create value, hold Settlement, send proof-native value, use Reserve for notes and wire transfers, issue shares into certificates, let buyers fund certificates, and credit sellers only when value is actually funded. - Settlement is the primary proof-native liquid value lane. - Reserve is the funded external-conversion lane for notes, sends, positions, and wire transfers. - Sends and buys deploy funded Reserve first, then Settlement covers the remainder. - Market sells split into funded Reserve and unfunded Settlement. - Settlement shares and certificates bridge Settlement to buyer-funded Reserve. - Certificate issue locks value, and funded certificate sale credits the seller. - No new value state or database migration is added by this documentation cut. - Release-governed version surfaces now move together to `v64.0.0` across package metadata, public verifier artifacts, shipped release badges, and current-release documentation. ## Verifier impact - Current shipped verifier, studio, and settlement entrypoints are marked `v64.0.0`. - Repository release/docs surfaces now align to `v64.0.0`. - Root package metadata now resolves cleanly at `v64.0.0`. - No verifier proof-format or producer payload migration is implied by this release update. - Verifier trust semantics remain unchanged relative to `v60.0.0`. ## Preserved verifier contract - Trusted-signature success still requires verified `signatureV4`. - Trusted-signature failure semantics remain fail-closed: - invalid present `signatureV4` -> `Trusted signature invalid` - unavailable present `signatureV4` -> `Trusted signature unavailable` - missing `signatureV4` -> `Trusted signature missing. Expected signatureV4.` - Effective anchor context remains required (explicit or derivable). - Groth16 fields remain required and only real `g16:` proof payloads are accepted. - Carrier extraction/normalization for PNG, PDF, SVG, JSON, trailer, and `.receizbundle`. - Package ZIP/folder manifest verification paths. - Canonical identity derivation and artifact-binding checks. - Fail-closed verification semantics. ## Operational notes - Broader platform validation for `v64.0.0` is captured in the canonical release note, process, and checklist, including wallet account-lane truth, account quote math, Reserve-first send/buy execution, market funded/unfunded sale splits, certificate funding causality, Reserve-only note issuance, Reserve-funded wire transfer, and value-state metadata preservation. - Published release surfaces now include the canonical `v64.0.0` release note, the `v64.0.0` product-truth freeze, the `v64.0.0` checklist, the `v64.0.0` process document, and the canonical value-loop invariants. - In this offline verifier repository, the release work is documentation, visible version-surface alignment, and package-metadata normalization only. - No verifier proof-format or producer payload migration is implied by these repository release/documentation updates alone. - The broader product baseline referenced by this release is the `v63.2.0` value-state release; this repository advances its public release surface from `v61.0.0` to `v64.0.0`. ## Migration checklist - No new database migrations are introduced by this documentation cut. - No new value state is added by `v64.0.0`. - Confirm wallet leads with Settlement balance, USD first, with phi equivalent underneath where phi context is shown. - Confirm Reserve appears beneath Settlement as the funded external-conversion lane. - Confirm Settlement and Reserve popover charts use account-lane truth and account quote math. - Confirm Market wallet panel and portfolio chart use real phi conversion math through the wallet account quote. - Confirm notes stay Reserve-only. - Confirm wire transfer draws from Reserve. - Confirm sends and buys deploy Reserve before Settlement remainder. - Confirm market sells split funded Reserve and unfunded Settlement. - Confirm certificate issue locks value and funded certificate sale credits the seller only when funded. - Update outward release/docs references to `v64.0.0`. - Deploy updated `site/` artifacts. - Publish the `v64.0.0` release note, product-truth freeze, checklist, process, invariants, and updated docs indexes. - No producer payload or proof-format migration is implied by these verifier-repo documentation updates alone. ## Security posture Security posture remains fail-closed: verification still requires byte-level integrity, trusted signature evidence, anchor context, and real Groth16 proof validation. ## v61.0.0 Release date: 2026-04-19 `v61.0.0` is the governed historical-continuity and runtime-discipline release on top of `v60.0.0`. In this offline verifier repository, the release work is publication of the canonical `v61.0.0` artifacts plus outward version-surface alignment only. Canonical full release note: [docs/releases/v61.0.0.md](docs/releases/v61.0.0.md) Product-truth freeze: [docs/releases/v61.0.0-product-truth.md](docs/releases/v61.0.0-product-truth.md) Release checklist: [docs/releases/v61.0.0-checklist.md](docs/releases/v61.0.0-checklist.md) ## Highlights - Pre-v4 receiz now sits under governed historical continuity: frozen cohort membership, sealed governance artifact support, explicit `Historical` trust presentation, and historical package delivery that preserves original bytes. - Holder-aware public market witness truth from `v60.1.0` remains the floor, and market exits now stay on deterministic internal routes through the shared stable client-navigation path. - Settled home and profile twin shells keep hidden warming hidden and defer richer runtime promotion until explicit activation, including on compact touch devices. - The release line now publishes its operating standards around experience-first engineering, expensive truth, fast entry, and governed historical continuity as part of repository truth. - No new database migrations are added beyond the `v60.0.0` baseline. - Release-governed version surfaces now move together to `v61.0.0` across package metadata, public verifier artifacts, shipped release badges, and current-release documentation. ## Verifier impact - Current shipped verifier, studio, and settlement entrypoints are marked `v61.0.0`. - Repository release/docs surfaces now align to `v61.0.0`. - Root package metadata now resolves cleanly at `v61.0.0`. - No verifier proof-format or producer payload migration is implied by this release update. - Verifier trust semantics remain unchanged relative to `v60.0.0`. ## Preserved verifier contract - Trusted-signature success still requires verified `signatureV4`. - Trusted-signature failure semantics remain fail-closed: - invalid present `signatureV4` -> `Trusted signature invalid` - unavailable present `signatureV4` -> `Trusted signature unavailable` - missing `signatureV4` -> `Trusted signature missing. Expected signatureV4.` - Effective anchor context remains required (explicit or derivable). - Groth16 fields remain required and only real `g16:` proof payloads are accepted. - Carrier extraction/normalization for PNG, PDF, SVG, JSON, trailer, and `.receizbundle`. - Package ZIP/folder manifest verification paths. - Canonical identity derivation and artifact-binding checks. - Fail-closed verification semantics. ## Operational notes - Broader platform validation for `v61.0.0` is captured in the canonical release note and checklist, including historical cohort governance, deterministic market exit continuity, settled-shell runtime discipline, compact verified-player control tightening, and release-surface lockstep. - Published release surfaces now include the canonical `v61.0.0` release note, the `v61.0.0` product-truth freeze, and the `v61.0.0` checklist. - In this offline verifier repository, the release work is documentation, visible version-surface alignment, and package-metadata normalization only. - No verifier proof-format or producer payload migration is implied by these repository release/documentation updates alone. - `v60.1.0` has a dedicated release note in the repository, but there is no dedicated `v60.2.0` through `v60.4.x` public release note or matching repository tag, so the canonical `v61.0.0` note records the full post-`v60.0.0` product delta in one governed release record. ## Migration checklist - No new database migrations beyond the `v60.0.0` baseline. - Confirm public market witness timing and holder count still derive from real holder activity, and deterministic market exits stay on the stable client-navigation path for Receiz routes. - Confirm home and profile twin shells do not visually remount or upgrade after settlement, compact touch devices keep full twin hydration on-demand, and the home dock only promotes the full runtime after explicit interaction. - Confirm the verified-player audio control glass stays compact and legible on small layouts. - Confirm historical pre-v4 records render as `Historical` rather than being silently treated as current `Verified` or generic warnings. - Confirm historical downloads preserve raw bytes and include the sealed governance bundle instead of rewriting the original artifact identity. - Confirm the pinned historical cohort artifact and payload stay byte-stable, and no public/private cohort boundary drift has occurred. - Update outward release/docs references to `v61.0.0`. - Deploy updated `site/` artifacts. - Publish the `v61.0.0` release note, product-truth freeze, checklist, and updated docs indexes. - No producer payload or proof-format migration is implied by these verifier-repo documentation updates alone. ## Security posture Security posture remains fail-closed: verification still requires byte-level integrity, trusted signature evidence, anchor context, and real Groth16 proof validation. ## v60.1.0 Release date: 2026-04-18 `v60.1.0` is the continuity-and-market-proof release on top of `v60.0.0`. In this offline verifier repository, the release work is publication of the canonical `v60.1.0` artifacts plus outward version-surface alignment only. Canonical full release note: [docs/releases/v60.1.0.md](docs/releases/v60.1.0.md) Product-truth freeze: [docs/releases/v60.1.0-product-truth.md](docs/releases/v60.1.0-product-truth.md) Release checklist: [docs/releases/v60.1.0-checklist.md](docs/releases/v60.1.0-checklist.md) ## Highlights - Public profile asset markets now derive holder count and latest witness timing from live public positions and buy activity. - The market desk, chart dock, and public market metadata surfaces are tighter and more legible on compact devices, especially in public and signed-out flows. - Home and profile twin shells keep background preload hidden until explicit open intent, preventing late visible promotion after settlement. - Public profile route assembly is lighter, and `MarketValuePill` sigils now use deterministic surface-scoped IDs to avoid hydration drift. - No new database migrations are added beyond the `v60.0.0` baseline. - Release-governed version surfaces now move together to `v60.1.0` across package metadata, public verifier artifacts, shipped release badges, and current-release documentation. ## Verifier impact - Current shipped verifier, studio, and settlement entrypoints are marked `v60.1.0`. - Repository release/docs surfaces now align to `v60.1.0`. - Root package metadata now resolves cleanly at `v60.1.0`. - No verifier proof-format or producer payload migration is implied by this release update. - Verifier trust semantics remain unchanged relative to `v60.0.0`. ## Preserved verifier contract - Trusted-signature success still requires verified `signatureV4`. - Trusted-signature failure semantics remain fail-closed: - invalid present `signatureV4` -> `Trusted signature invalid` - unavailable present `signatureV4` -> `Trusted signature unavailable` - missing `signatureV4` -> `Trusted signature missing. Expected signatureV4.` - Effective anchor context remains required (explicit or derivable). - Groth16 fields remain required and only real `g16:` proof payloads are accepted. - Carrier extraction/normalization for PNG, PDF, SVG, JSON, trailer, and `.receizbundle`. - Package ZIP/folder manifest verification paths. - Canonical identity derivation and artifact-binding checks. - Fail-closed verification semantics. ## Operational notes - Broader platform validation for `v60.1.0` is captured in the canonical release note and checklist, including holder-aware public market witness truth, compact market-desk polish, hidden-only twin preload, profile-route continuity, deterministic sigil hydration, and release-surface lockstep. - Published release surfaces now include the canonical `v60.1.0` release note, the `v60.1.0` product-truth freeze, and the `v60.1.0` checklist. - In this offline verifier repository, the release work is documentation, visible version-surface alignment, and package-metadata normalization only. - No verifier proof-format or producer payload migration is implied by these repository release/documentation updates alone. - There is no dedicated `v60.0.1` release note or tag in the repository, so the canonical `v60.1.0` note records the full post-`v60.0.0` product delta in one governed release record. ## Migration checklist - No new database migrations beyond the `v60.0.0` baseline. - Confirm public profile asset markets show holder count and latest witness timing from real public holder activity. - Confirm market buy continuation still survives passkey and funding fallback, and sell stays hidden when the viewer has no position. - Confirm home and profile twin shells do not visually remount or upgrade after the page has already settled. - Confirm opening the twin explicitly still promotes the full twin module cleanly. - Confirm profile, player, artifact, and home market pills render without hydration ID drift. - Update outward release/docs references to `v60.1.0`. - Deploy updated `site/` artifacts. - Publish the `v60.1.0` release note, product-truth freeze, checklist, and updated docs indexes. - No producer payload or proof-format migration is implied by these verifier-repo documentation updates alone.
1 parent 0f206ae commit 485b4a2

26 files changed

Lines changed: 885 additions & 50 deletions

CHANGELOG.md

Lines changed: 47 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -2,6 +2,53 @@
22

33
All notable changes to this project will be documented in this file.
44

5+
## [v73.0.0] - 2026-04-29
6+
7+
### Changed
8+
- Advanced the current release/documentation surface from `v70.0.0` to `v73.0.0` while adding the missing `v72.0.0` release archive.
9+
- Updated canonical root package metadata and set `package.json` to `v73.0.0`.
10+
- Published the canonical `v73.0.0` ownership, vault, and continuity release artifacts:
11+
- `docs/releases/v73.0.0.md`
12+
- `docs/releases/v73.0.0-product-truth.md`
13+
- `docs/releases/v73.0.0-checklist.md`
14+
- `docs/releases/v73.0.0-process.md`
15+
- Updated current-release references in repository docs and verifier-contract docs to point at `v73.0.0`.
16+
- Aligned public release framing around business account ownership, receipt provenance, vault portability, account brain proof detail, Offline Verifier authority navigation, profile/account continuity, and bounded world twin fit contracts.
17+
- No new database migration is introduced by this documentation cut.
18+
- Updated shipped version markers in published verifier, studio, and settlement entrypoints to `v73.0.0`.
19+
20+
### Kept
21+
- File-first verification remains authoritative and deterministic.
22+
- Trusted-signature gating remains `signatureV4`-required for verified outcomes.
23+
- Effective anchor context remains required for verified outcomes.
24+
- Groth16 fields remain required and only real `g16:` proof payloads are accepted.
25+
- Carrier extraction and normalization rules for PNG, PDF, SVG, JSON, trailer, and `.receizbundle`.
26+
- Package ZIP/folder manifest verification paths.
27+
- Canonical field validation and artifact binding checks.
28+
- Fail-closed verification model.
29+
- The `v70.0.0` public alpha law, `v72.0.0` stable continuity locks, and `v64.0.0` value-loop invariants remain in force.
30+
31+
## [v72.0.0] - 2026-04-28
32+
33+
### Changed
34+
- Added the canonical `v72.0.0` stable continuity release archive:
35+
- `docs/releases/v72.0.0.md`
36+
- `docs/releases/v72.0.0-product-truth.md`
37+
- `docs/releases/v72.0.0-checklist.md`
38+
- `docs/releases/v72.0.0-process.md`
39+
- Aligned release framing around actor-scoped route warmth clearing on account switch, viewer-user-id preservation for market/private wallet state, signed-in profile first-paint parity, useful hydration repair, and compact mobile Live Twin face-lock overlay fit.
40+
- Recorded that package metadata, service-worker defaults, public version badges, verifier surfaces, and release docs moved together to `v72.0.0` at the stable continuity cut.
41+
- No verifier proof-format or producer payload migration is implied by this release archive.
42+
43+
### Kept
44+
- The `v70.0.0` public alpha law remains intact.
45+
- File-first verification remains authoritative and deterministic.
46+
- Trusted-signature gating remains `signatureV4`-required for verified outcomes.
47+
- Effective anchor context remains required for verified outcomes.
48+
- Groth16 fields remain required and only real `g16:` proof payloads are accepted.
49+
- Fail-closed verification model.
50+
- The `v64.0.0` value-loop invariants remain in force.
51+
552
## [v70.0.0] - 2026-04-24
653

754
### Changed

README.md

Lines changed: 27 additions & 26 deletions
Original file line numberDiff line numberDiff line change
@@ -2,23 +2,20 @@
22

33
Verify a file offline. Proof is in the file.
44

5-
Current release: `v70.0.0`
6-
7-
## What changed in v70.0.0
8-
- Current release/docs surfaces are aligned to `v70.0.0`.
9-
- Published the canonical `v70.0.0` public alpha release note at [docs/releases/v70.0.0.md](docs/releases/v70.0.0.md).
10-
- Published the release-scoped product-truth freeze at [docs/releases/v70.0.0-product-truth.md](docs/releases/v70.0.0-product-truth.md).
11-
- Published the release checklist at [docs/releases/v70.0.0-checklist.md](docs/releases/v70.0.0-checklist.md).
12-
- Published the release process at [docs/releases/v70.0.0-process.md](docs/releases/v70.0.0-process.md).
13-
- Published the growth record from `v60.0.0` at [docs/releases/v70.0.0-growth-from-v60.md](docs/releases/v70.0.0-growth-from-v60.md).
14-
- Published the invariant register at [docs/releases/v70.0.0-invariant-register.md](docs/releases/v70.0.0-invariant-register.md).
15-
- Published the full public docs manifest at [docs/releases/v70.0.0-docs-manifest.md](docs/releases/v70.0.0-docs-manifest.md).
16-
- Published product-truth reference docs at [docs/literal-product-law.md](docs/literal-product-law.md), [docs/pbi-recovery-receiz-id-binding.md](docs/pbi-recovery-receiz-id-binding.md), [docs/experience-first-engineering.md](docs/experience-first-engineering.md), [docs/verified-history-first-principles.md](docs/verified-history-first-principles.md), and [docs/offline-verified-register.md](docs/offline-verified-register.md).
17-
- `v70.0.0` is the public alpha release: identity is local, proof is in the file, verified truth is append-only, `/<username>` is canonical profile truth, Settlement and Reserve preserve funded causality, and the network propagates/appends instead of downgrading stronger device-held proof.
5+
Current release: `v73.0.0`
6+
7+
## What changed in v73.0.0
8+
- Current release/docs surfaces are aligned to `v73.0.0`.
9+
- Added the `v72.0.0` stable continuity release archive at [docs/releases/v72.0.0.md](docs/releases/v72.0.0.md).
10+
- Published the canonical `v73.0.0` ownership, vault, and continuity release note at [docs/releases/v73.0.0.md](docs/releases/v73.0.0.md).
11+
- Published the release-scoped product-truth freeze at [docs/releases/v73.0.0-product-truth.md](docs/releases/v73.0.0-product-truth.md).
12+
- Published the release checklist at [docs/releases/v73.0.0-checklist.md](docs/releases/v73.0.0-checklist.md).
13+
- Published the release process at [docs/releases/v73.0.0-process.md](docs/releases/v73.0.0-process.md).
14+
- `v73.0.0` carries forward the `v70.0.0` public alpha law and the `v72.0.0` stable continuity locks while adding business account ownership, receipt provenance, vault portability, account brain proof detail, Offline Verifier authority navigation, and bounded world twin fit contracts.
1815
- The `v64.0.0` value-loop invariants remain in force.
1916
- No new database migration is required by this documentation cut.
20-
- Current shipped verifier, studio, and settlement entrypoints now display `v70.0.0`.
21-
- Root package metadata now resolves cleanly to `v70.0.0`.
17+
- Current shipped verifier, studio, and settlement entrypoints now display `v73.0.0`.
18+
- Root package metadata now resolves cleanly to `v73.0.0`.
2219
- Verifier semantics remain unchanged relative to `v60.0.0`.
2320
- Core verifier outcomes remain file-authoritative, deterministic, and fail-closed.
2421

@@ -36,9 +33,9 @@ Current release: `v70.0.0`
3633
</tr>
3734
</table>
3835

39-
The repo-local conformance hub at [docs/conformance/README.md](docs/conformance/README.md) tracks the latest vendored conformance snapshot in this repository. It includes live badge surfaces, current imported results, and suite-by-suite requirement coverage docs for the currently imported suites; the broader `v70.0.0` public alpha release is documented in the release note and can be vendored here on the next snapshot refresh.
36+
The repo-local conformance hub at [docs/conformance/README.md](docs/conformance/README.md) tracks the latest vendored conformance snapshot in this repository. It includes live badge surfaces, current imported results, and suite-by-suite requirement coverage docs for the currently imported suites; the broader `v73.0.0` release is documented in the release note and can be vendored here on the next snapshot refresh.
4037

41-
## Release train highlights (v14 -> v70)
38+
## Release train highlights (v14 -> v73)
4239
- `v14.0.0`: UI release marker advanced to `v14.0.0`; app entrypoint rename started (`receiz-offline-verifier.html` -> `offline-verifier.html`).
4340
- `v15.0.0` / `v15.5.0`: runtime/doc route references aligned to `/offline-verifier.html`; release markers advanced.
4441
- `v16.0.0`: wording shifted from "original/sealed artifact" language to consistent "file/sealed file" language.
@@ -85,6 +82,8 @@ The repo-local conformance hub at [docs/conformance/README.md](docs/conformance/
8582
- `v64.0.0`: release/docs alignment for the complete value-loop cut, including Settlement as proof-native liquid value, funded Reserve as the external-conversion lane, Reserve-only notes and wire transfer, Reserve-first sends and buys, funded/unfunded market sale splits, buyer-funded certificates, and canonical value-loop invariants; verifier semantics remain unchanged from `v60.0.0`.
8683
- `v66.0.0`: release/docs alignment for the local proof continuity cut, including local identity roots, verified-register-backed proof authority, deterministic state preservation, append-only history, compact local memory, sync as propagation, explicit verified-snapshot persistence, and local twin register projection; verifier semantics remain unchanged from `v60.0.0`.
8784
- `v70.0.0`: release/docs alignment for the public alpha cut, including one-click Receiz ID entry, canonical `/<username>` profile truth, complete Settlement/Reserve value-loop causality, local-first/server-always recovery, route-preserving stale-runtime recovery, live twin identity locking, proof-sealed world trail bundles, and the `v70.0.0` invariant register; verifier semantics remain unchanged from `v60.0.0`.
85+
- `v72.0.0`: release/docs archive for the stable continuity cut, including actor-scoped route warmth clearing on account switch and compact mobile Live Twin face-lock overlay fit; verifier semantics remain unchanged from `v60.0.0`.
86+
- `v73.0.0`: release/docs alignment for the ownership, vault, and continuity cut, including business account ownership, receipt provenance, vault portability, account brain proof detail, Offline Verifier authority navigation, and bounded world twin fit contracts; verifier semantics remain unchanged from `v60.0.0`.
8887

8988
## Supported artifact inputs (v60)
9089
1. PNG artifact containing exactly one `receiz.proof_bundle` text chunk.
@@ -150,19 +149,21 @@ Machine-readable schemas are provided in [docs/schemas](docs/schemas):
150149
- [receiz-bundle-envelope.schema.json](docs/schemas/receiz-bundle-envelope.schema.json)
151150

152151
## Repository layout
153-
- [docs/README.md](docs/README.md): documentation map for `v70.0.0`.
152+
- [docs/README.md](docs/README.md): documentation map for `v73.0.0`.
154153
- [site/index.html](site/index.html): published verifier entrypoint.
155154
- [apps/offline-verifier.html](apps/offline-verifier.html): mirrored app entrypoint.
156155
- [apps/offline-record-seal.html](apps/offline-record-seal.html): offline record, seal, and verify studio surface.
157156
- [apps/offline-settlement.html](apps/offline-settlement.html): offline settlement bundle builder.
158-
- [docs/releases/v70.0.0.md](docs/releases/v70.0.0.md): canonical `v70.0.0` public alpha release note.
159-
- [docs/releases/v70.0.0-product-truth.md](docs/releases/v70.0.0-product-truth.md): `v70.0.0` product-truth freeze document.
160-
- [docs/releases/v70.0.0-checklist.md](docs/releases/v70.0.0-checklist.md): release-prep checklist and additional gates for `v70.0.0`.
161-
- [docs/releases/v70.0.0-process.md](docs/releases/v70.0.0-process.md): release-prep process for `v70.0.0`.
162-
- [docs/releases/v70.0.0-growth-from-v60.md](docs/releases/v70.0.0-growth-from-v60.md): growth record from `v60.0.0` through the final `v69.9.x` stabilization line.
163-
- [docs/releases/v70.0.0-invariant-register.md](docs/releases/v70.0.0-invariant-register.md): public alpha invariant register.
164-
- [docs/releases/v70.0.0-docs-manifest.md](docs/releases/v70.0.0-docs-manifest.md): full public docs manifest for the `v70.0.0` release surface.
165-
- [docs/literal-product-law.md](docs/literal-product-law.md): literal product law for `v70.0.0`.
157+
- [docs/releases/v73.0.0.md](docs/releases/v73.0.0.md): canonical `v73.0.0` ownership, vault, and continuity release note.
158+
- [docs/releases/v73.0.0-product-truth.md](docs/releases/v73.0.0-product-truth.md): `v73.0.0` product-truth freeze document.
159+
- [docs/releases/v73.0.0-checklist.md](docs/releases/v73.0.0-checklist.md): release-prep checklist and additional gates for `v73.0.0`.
160+
- [docs/releases/v73.0.0-process.md](docs/releases/v73.0.0-process.md): release-prep process for `v73.0.0`.
161+
- [docs/releases/v72.0.0.md](docs/releases/v72.0.0.md): canonical `v72.0.0` stable continuity release archive.
162+
- [docs/releases/v72.0.0-product-truth.md](docs/releases/v72.0.0-product-truth.md): `v72.0.0` product-truth freeze document.
163+
- [docs/releases/v72.0.0-checklist.md](docs/releases/v72.0.0-checklist.md): release-prep checklist and additional gates for `v72.0.0`.
164+
- [docs/releases/v72.0.0-process.md](docs/releases/v72.0.0-process.md): release-prep process for `v72.0.0`.
165+
- [docs/releases/v70.0.0-invariant-register.md](docs/releases/v70.0.0-invariant-register.md): public alpha invariant register carried forward by `v73.0.0`.
166+
- [docs/literal-product-law.md](docs/literal-product-law.md): literal product law carried forward for `v73.0.0`.
166167
- [docs/experience-first-engineering.md](docs/experience-first-engineering.md): experience-first rules for local proof and deterministic state.
167168
- [docs/verified-history-first-principles.md](docs/verified-history-first-principles.md): append-only history and stronger-known-truth principles.
168169
- [docs/offline-verified-register.md](docs/offline-verified-register.md): local register semantics for verified offline truth.

RELEASE_NOTES.md

Lines changed: 77 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -1,5 +1,82 @@
11
# Release Notes
22

3+
## v73.0.0
4+
Release date: 2026-04-29
5+
6+
`v73.0.0` is the ownership, vault, and continuity release. In this offline verifier repository, the release work is publication of the `v72.0.0` archive, canonical `v73.0.0` artifacts, and outward version-surface alignment only.
7+
8+
Canonical full release note: [docs/releases/v73.0.0.md](docs/releases/v73.0.0.md)
9+
Product-truth freeze: [docs/releases/v73.0.0-product-truth.md](docs/releases/v73.0.0-product-truth.md)
10+
Release checklist: [docs/releases/v73.0.0-checklist.md](docs/releases/v73.0.0-checklist.md)
11+
Release process: [docs/releases/v73.0.0-process.md](docs/releases/v73.0.0-process.md)
12+
Included v72 archive: [docs/releases/v72.0.0.md](docs/releases/v72.0.0.md)
13+
14+
## Highlights
15+
- Business account entity ownership and certificates now have first-class API, server, and contract coverage.
16+
- Receipt ownership provenance and transfer flows now carry stronger proof bundles and route-level continuity.
17+
- Vault and original-download paths preserve portable verified records instead of treating recovered artifact state as disposable UI state.
18+
- Account brain selections expose compact proof-bundle data in a dismissible mobile-friendly popover, with Open shown only for nodes that have a real route target.
19+
- Account authority navigation names the offline surface as Offline Verifier and consolidates Privacy/Terms into Legal while keeping Security one tap away.
20+
- Account, profile, composer, chat, discovery, and world twin surfaces keep post-v72 UI improvements under explicit continuity and fit contracts.
21+
- Release-governed version surfaces now move together to `v73.0.0` across package metadata, public verifier artifacts, shipped release badges, README pointers, and current-release documentation.
22+
23+
## Verifier impact
24+
- Current shipped verifier, studio, and settlement entrypoints are marked `v73.0.0`.
25+
- Repository release/docs surfaces now align to `v73.0.0`.
26+
- Root package metadata now resolves cleanly at `v73.0.0`.
27+
- No verifier proof-format or producer payload migration is implied by this release update.
28+
- Verifier trust semantics remain unchanged relative to `v60.0.0`.
29+
30+
## Operational notes
31+
- The broader release brief records `61ae0ef2b` as the `v72.0.0` baseline, but this offline verifier checkout does not contain that commit object or a `v72.0.0` tag locally.
32+
- Published release surfaces now include the canonical `v72.0.0` archive and the `v73.0.0` release note, product-truth freeze, checklist, process, and updated docs indexes.
33+
- The `v70.0.0` public alpha law, `v70.0.0` invariant register, `v72.0.0` stable continuity locks, and `v64.0.0` value-loop invariants remain in force.
34+
- In this offline verifier repository, the release work is documentation, visible version-surface alignment, and package-metadata normalization only.
35+
36+
## Migration checklist
37+
- No new database migrations are introduced by this documentation cut.
38+
- Confirm business ownership APIs, certificate generation, and holdings reads have contract coverage.
39+
- Confirm receipt provenance and transfer proof do not rewrite artifact identity or canonical receipt truth.
40+
- Confirm vault decode, verifier, and original-download state preserve portable verified record truth.
41+
- Confirm account brain selected-node proof data and route-target-only Open actions.
42+
- Confirm account authority navigation names Offline Verifier, consolidates Privacy/Terms into Legal, and keeps Security one tap away.
43+
- Confirm world twin face authority and photoreal shell fit remain bounded by contracts.
44+
- Update outward release/docs references to `v73.0.0`.
45+
- Deploy updated `site/` artifacts.
46+
47+
## Security posture
48+
Security posture remains fail-closed: verification still requires byte-level integrity, trusted signature evidence, anchor context, and real Groth16 proof validation.
49+
50+
## v72.0.0
51+
Release date: 2026-04-28
52+
53+
`v72.0.0` is the stable continuity release. In this offline verifier repository, the release work is publication of the canonical `v72.0.0` artifacts and release-governed version-surface expectations only.
54+
55+
Canonical full release note: [docs/releases/v72.0.0.md](docs/releases/v72.0.0.md)
56+
Product-truth freeze: [docs/releases/v72.0.0-product-truth.md](docs/releases/v72.0.0-product-truth.md)
57+
Release checklist: [docs/releases/v72.0.0-checklist.md](docs/releases/v72.0.0-checklist.md)
58+
Release process: [docs/releases/v72.0.0-process.md](docs/releases/v72.0.0-process.md)
59+
60+
## Highlights
61+
- Account switching clears actor-scoped route warmth and refuses to preserve market/private wallet state unless the viewer user id matches.
62+
- Compact mobile Live Twin rendered-portrait overlays apply a bounded lower-left face-lock correction so eyes and mouth stay on the person's face without restoring the old oversized mobile downshift.
63+
- `/<username>` remains canonical profile truth; `?manage=1` remains owner permissions only.
64+
- Owner/private enrichment must not make signed-in profile first paint slower than public profile truth.
65+
- Useful hydration repairs stay: stale app-open state can refresh in the background without replacing a settled visible shell.
66+
- Release-governed version surfaces moved together to `v72.0.0` at the stable continuity cut.
67+
68+
## Verifier impact
69+
- No verifier proof-format or producer payload migration is implied by this release update.
70+
- Verifier trust semantics remain unchanged relative to `v60.0.0`.
71+
72+
## Operational notes
73+
- The `v70.0.0` public alpha law remains intact.
74+
- The `v64.0.0` value-loop invariants remain in force.
75+
- In this offline verifier repository, `v72.0.0` is now retained as historical release truth while current-release pointers move to `v73.0.0`.
76+
77+
## Security posture
78+
Security posture remains fail-closed: verification still requires byte-level integrity, trusted signature evidence, anchor context, and real Groth16 proof validation.
79+
380
## v70.0.0
481
Release date: 2026-04-24
582

apps/offline-record-seal.html

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -701,7 +701,7 @@ <h2>Verify File</h2>
701701

702702
<p class="footer">
703703
<span>Receiz Offline Studio · record, seal, and verify from artifact bytes.</span>
704-
<span class="footer-version">v70.0.0</span>
704+
<span class="footer-version">v73.0.0</span>
705705
</p>
706706

707707
<section class="offline-tools" aria-label="Offline HTML downloads">

apps/offline-settlement.html

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -528,7 +528,7 @@ <h2>2. Export Claim Ledger Bundle</h2>
528528
<p class="status-note" id="statusNote">Add offline settlement note artifacts to assemble an offline-settlement claim bundle.</p>
529529
</section>
530530

531-
<p class="release-meta">Receiz Offline Settlement · v70.0.0</p>
531+
<p class="release-meta">Receiz Offline Settlement · v73.0.0</p>
532532
</main>
533533

534534
<script>

apps/offline-verifier.html

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -618,7 +618,7 @@ <h2 id="result-title">2) Verification result</h2>
618618
</section>
619619

620620
<p class="foot" style="text-align:center;">
621-
<a href="https://github.com/kojibai/receiz_offline_verifier" target="_blank" rel="noopener noreferrer">v70.0.0</a>
621+
<a href="https://github.com/kojibai/receiz_offline_verifier" target="_blank" rel="noopener noreferrer">v73.0.0</a>
622622
</p>
623623
</main>
624624

0 commit comments

Comments
 (0)