{
  "receiptVersion": "SOS-RECEIPT-v1",
  "receiptType": "public-safe-backend-monte-carlo",
  "source": "vercel-backend",
  "backendLinked": true,
  "runId": "LAKANA-SOS-V20-08E450BB69",
  "timestamp": "2026-07-10T14:49:28.461Z",
  "architectureVersion": "LAKANA SOS / CivOS / TSARO / NICOLE",
  "publicDemoVersion": "LAKANA SOS \u2014 current public capstone prototype",
  "scenario": "Total Local RF Degradation",
  "scenarioKey": "totalRf",
  "seed": 3259744437,
  "trialCount": 600,
  "trialCap": 5000,
  "publicAccessWindow": {
    "trialCapPerRun": 5000,
    "runsThisHour": 1,
    "runsRemainingThisHour": 11,
    "hourlyLimit": 12,
    "runsToday": 1,
    "runsRemainingToday": 35,
    "dailyLimit": 36,
    "runsThisMonth": 1,
    "runsRemainingThisMonth": 159,
    "monthlyLimit": 160,
    "totalRunsForAccessKey": 1,
    "totalRunLimit": 300,
    "accessKeyType": "ip-or-session-public-window",
    "publicAccessKeyHash": "57efdd91ba75ee0012c0",
    "ipAddressExposed": false,
    "resetHints": {
      "hour": "2026-07-10T15:00:00.000Z",
      "day": "2026-07-11T00:00:00.000Z",
      "month": "2026-08-01T00:00:00.000Z"
    },
    "note": "Counters are enforced by an in-memory preview limiter for this serverless instance; they reset if the instance recycles."
  },
  "publicInputs": {
    "scenario": "Total Local RF Degradation",
    "scenarioKey": "totalRf",
    "seed": 3259744437,
    "trialCount": 600,
    "hazardSeverity": 50,
    "routeObstruction": 61.5,
    "sensorConfidence": 75.5,
    "alertFreshness": 75,
    "batteryReserve": null,
    "cellularDegradation": null,
    "rfDegradation": null,
    "meshAvailability": null,
    "bfbResponderProximity": 55,
    "bfbAuthorizationPressure": null,
    "tabConsentReadiness": 60,
    "coercionPressure": null,
    "visibleLocationExposure": null,
    "scenarioSliderInputs": {
      "acceptTerms": true,
      "termsVersion": "v1",
      "scenario": "hurricaneFloodOutage",
      "scenarioKey": "hurricaneFloodOutage",
      "trials": 600,
      "seed": 123456,
      "executionAssumption": "android_host",
      "floodDepthIn": 18,
      "rainIntensityPct": 74,
      "towerOutagePct": 68,
      "evacRouteViabilityPct": 45,
      "sovereignHomeAvailablePct": 64,
      "storeForwardDelayMin": 22,
      "bfbEnabledPct": 88,
      "tabEnabledPct": 65,
      "tabOverrideSupplied": false,
      "tabAudioRecordingPermitted": false,
      "nTrials": 600
    },
    "universalInputs": {
      "rfDegradationPct": null,
      "cellularDegradationPct": null,
      "bleMeshAvailabilityPct": null,
      "sensorConfidencePct": null,
      "gpsDutyPressurePct": null,
      "batteryReservePct": null,
      "thermalLoadPct": null,
      "cpuFeatureLoadPct": null,
      "audioFeatureDutyPct": null,
      "routeObstructionPct": null,
      "responderProximityPct": null,
      "bfbVerificationPct": null,
      "tabConsentCapacityPct": null
    },
    "transportInputs": {
      "wifiNanAvailabilityPct": null,
      "loraAvailabilityPct": null,
      "satelliteAvailabilityPct": null,
      "jammerPressurePct": null,
      "transportCorrelationPct": null,
      "rfQuietMapFreshnessPct": null
    },
    "crpaAoaInputs": {
      "crpaArrayAvailablePct": null,
      "crpaNullingEffectivenessPct": null,
      "passiveAoaConfidencePct": null,
      "jammerBearingStabilityPct": null
    },
    "shaInputs": {
      "sovereignHomeAnchorAvailablePct": null,
      "shaReachabilityPct": null,
      "shaWiredUplinkIntegrityPct": null,
      "shaPhysicalLineIntegrityPct": null,
      "shaRouterIntegrityPct": null,
      "shaUpstreamAvailabilityPct": null,
      "shaPowerReserveHours": null,
      "ethernetInvariantVerifiedPct": null,
      "pairedAnchorKeyConfidencePct": null
    },
    "kineticInputs": {
      "kineticPathAvailablePct": null,
      "sharedSubstrateConfidencePct": null,
      "kineticReceiverProximityPct": null,
      "kineticEchoRiskPct": null,
      "activePhaseInversionBrakingPct": null,
      "lraPathAvailablePct": null,
      "piezoPathAvailablePct": null,
      "ambientMechanicalNoisePct": null,
      "kineticFrameAuthConfidencePct": null
    },
    "acousticInputs": {
      "acousticPathAvailablePct": null,
      "ultrasonicPathAvailablePct": null,
      "acousticReceiverProximityPct": null,
      "ambientAcousticNoisePct": null,
      "speakerMicAvailabilityPct": null,
      "acousticConsentAllowedPct": null,
      "acousticFrameAuthConfidencePct": null
    },
    "nonRfRelayInputs": {
      "localPeerDensityPct": null,
      "localRelayTrustPct": null,
      "wormStorageAvailablePct": null,
      "storeForwardCapacityPct": null,
      "physicalCarryOutLikelihoodPct": null
    },
    "powerInputs": {
      "primaryBatteryHealthPct": null,
      "ambientRfHarvestPct": null,
      "mechanicalHarvestPct": null,
      "ironLungReservePct": null,
      "supercapReservePct": null,
      "osCompromisePressurePct": null,
      "ringMinusOneFallbackAvailablePct": null
    },
    "evidenceAuthInputs": {
      "pairedAnchorAuthConfidencePct": null,
      "replayWindowFreshnessPct": null,
      "injectionRiskPct": null,
      "nicoleCustodyIntegrityPct": null,
      "tsaroPhysicalConsistencyPct": null,
      "evidenceShardIntegrityPct": null,
      "coercionPressurePct": null
    },
    "tabPathInputs": {
      "tabOverrideSupplied": false,
      "tabRequested": true,
      "tabSessionStateOverride": null,
      "tabUserDecision": "none",
      "bfbRequestState": "requested",
      "tabAudioPermitted": true,
      "tabAudioRecordingPermitted": false,
      "tabLiveChannelOpened": true,
      "tabEvidenceMode": "ephemeral_not_recorded",
      "tabDecisionSource": "public_control",
      "tabAcceptedPct": 0,
      "tabDeniedPct": 0,
      "tabPendingPct": 0
    }
  },
  "deliveryPercent": 41.5,
  "protectedHandlingPercent": 40.5,
  "offlinePreservationPercent": 9.5,
  "blackoutPercent": 1,
  "bfbHandoffPercent": 20.5,
  "batteryBurdenPercent": 14,
  "hazardSeverity": 50,
  "routeObstruction": 61.5,
  "hazardStressLadder": "degraded",
  "hazardEventState": "degraded protective event",
  "tabSessionState": "accepted",
  "tabConsentPath": "delayed_user_response",
  "bfbHandoffClass": "bounded_responder_packet",
  "responderProximity": 55,
  "allowedPayload": "welfare, route hint, validity, audit",
  "deniedPayload": "not released by default; not released; not released by default",
  "releaseBoundary": {
    "allowedPayload": "welfare, route hint, validity, audit",
    "deniedPayload": "not released by default; not released; not released by default",
    "withheldByDesign": [
      "protected constants",
      "private thresholds",
      "raw traces",
      "raw audio by default",
      "raw video by default",
      "continuous location by default",
      "production credentials",
      "proprietary model internals"
    ],
    "nicolePosture": "bounded rescue-scoped release",
    "tabPosture": "opened limited",
    "bfbPosture": "bounded responder packet"
  },
  "plainEnglishSummary": "In this backend-linked public run, the selected scenario was Total Local RF Degradation. Hazard severity was moderate (50%), so the simulation treated the event as a bounded monitoring event with rising pressure. Route obstruction was elevated (61.5%), so the responder path was treated as constrained rather than clean. The backend returned a public-safe receipt showing delivery-path success (41.5%) reflects the public-safe backend estimate for whether a minimized safety packet can move through the available transport path. NICOLE remained in a protected-handling posture (40.5%). Raw audio, raw video, and continuous location were not released by default. Blue Force Bridge returned a responder handoff class of \"bounded responder packet\": the allowed payload remains welfare, route hint, validity, and audit. Tactical Audio Bridge state was opened limited based on the public TAB consent state. Recording remains OFF by default and the NICOLE evidence vault remains separated. TAB path: ephemeral-tab-path-open. TAB opened through the backend model path. Audio path is modeled as ephemeral and non-recording by default.",
  "runNarrative": {
    "selectedScenario": "Total Local RF Degradation",
    "hazardRead": "Hazard severity was moderate (50%), so the simulation treated the event as a bounded monitoring event with rising pressure.",
    "routeRead": "Route obstruction was elevated (61.5%), so the responder path was treated as constrained rather than clean.",
    "transportRead": "Delivery-path success (41.5%) reflects the public-safe backend estimate for whether a minimized safety packet can move through the available transport path.",
    "custodyRead": "NICOLE remained in a protected-handling posture (40.5%). Raw audio, raw video, and continuous location were not released by default.",
    "responderRead": "Blue Force Bridge returned a responder handoff class of \"bounded responder packet\": the allowed payload remains welfare, route hint, validity, and audit.",
    "tabRead": "Tactical Audio Bridge state was opened limited based on the public TAB consent state. Recording remains OFF by default and the NICOLE evidence vault remains separated.",
    "finalRead": "The receipt supports public review of bounded SOS behavior, not real emergency dispatch or field validation."
  },
  "eventTimeline": [
    {
      "step": 1,
      "label": "Access agreement accepted",
      "meaning": "The run was allowed only after public endpoint limits and IP boundaries were acknowledged."
    },
    {
      "step": 2,
      "label": "Public-safe inputs received",
      "meaning": "The frontend sent scenario and slider controls only, not protected constants or raw traces."
    },
    {
      "step": 3,
      "label": "Backend model boundary active",
      "meaning": "The Vercel backend executed/protected the simulation and returned rounded public outputs."
    },
    {
      "step": 4,
      "label": "Hazard and route posture evaluated",
      "meaning": "The run classified the selected scenario using public-safe hazard and obstruction fields."
    },
    {
      "step": 5,
      "label": "Custody and release boundary applied",
      "meaning": "Allowed and denied payload fields were separated."
    },
    {
      "step": 6,
      "label": "Responder handoff posture returned",
      "meaning": "Blue Force Bridge state was returned as a bounded public handoff class."
    },
    {
      "step": 7,
      "label": "Public receipt generated",
      "meaning": "The frontend received a public-safe receipt with protected constants and raw traces withheld."
    },
    {
      "step": 8,
      "label": "TAB session state returned",
      "meaning": "Tactical Audio Bridge session state was reported as opened limited for this run."
    },
    {
      "step": 9,
      "label": "TAB backend path opened",
      "meaning": "The backend TAB model returned an opened ephemeral path. Recording remains off by default."
    }
  ],
  "accessAgreementAccepted": true,
  "ipBoundaryAcknowledged": true,
  "protectedConstantsWithheld": true,
  "rawTracesWithheld": true,
  "publicSafeSimulation": true,
  "claimBoundary": "Public-safe browser simulation only. Not field validation, emergency-service certification, medical diagnosis, legal advice, 911 replacement, live emergency dispatch, or guaranteed rescue.",
  "executionAssumption": "android_host",
  "executionBoundaryNote": "Execution assumption only. This public backend receipt does not prove a custom kernel, Android replacement, certified Ring -1 hardware, field deployment, or emergency-service readiness.",
  "powerBoundarySummary": {
    "batteryReservePct": 64,
    "thermalLoadPct": 0,
    "estimatedDrainPerHourPct": 3,
    "estimatedFiveMinuteDrainPct": 0.3,
    "projectedReserveAfterFiveMinutesPct": 63.7,
    "lowPowerModeRecommended": false,
    "thermalThrottleRecommended": false,
    "protectiveModeActive": false,
    "yieldsFirst": [
      "audio feature duty",
      "BLE scan duty",
      "GPS duty",
      "nonessential compute"
    ],
    "executionAssumption": "android_host",
    "note": "Public-safe battery estimate only; actual drain depends on hardware, OS policy, signal environment, battery health, and temperature."
  },
  "universalSubstrateSummary": {
    "rfPosture": "public-safe RF posture nominal",
    "cellularPosture": "public-safe cellular posture nominal",
    "meshPosture": "public-safe mesh posture nominal",
    "routePosture": "public-safe route posture nominal",
    "sensorPosture": "public-safe sensor posture nominal",
    "responderPosture": "public-safe responder posture nominal",
    "tabPosture": "public-safe TAB posture nominal",
    "executionPosture": "Standard OS isolation assumption",
    "note": "Public-safe interpretation of visible universal substrate controls; not a measurement of real hardware, network, or responder state."
  },
  "transportPressureSummary": {
    "pressure": "low",
    "note": "Public-safe transport pressure read from RF degradation, cellular degradation, and BLE mesh availability; not a measurement of real network conditions."
  },
  "radioTransportSummary": {
    "radioAvailabilityScorePct": 50,
    "rfState": "radio-degraded",
    "decorrelationPosture": "diverse",
    "jammerPressurePct": 0,
    "transportCorrelationPct": 0,
    "crpaApplied": false,
    "note": "Public-safe multi-transport estimate only. RF paths may fail under local or wideband jamming; this is not RF field validation."
  },
  "crpaAoaSummary": {
    "crpaAoaScorePct": 0,
    "crpaState": "no-crpa-array",
    "arrayReady": false,
    "note": "CRPA/AoA is modeled as receive-side spatial awareness/nulling for array-capable anchor, vehicle, W-X, or SHA-class nodes; not ordinary phone-only capability."
  },
  "sovereignHomeAnchorSummary": {
    "shaEgressScorePct": 0,
    "shaState": "sha-unavailable",
    "rfIndependent": true,
    "boundary": "RF-independent wired egress when the anchor, power, local line, router, and upstream service remain intact; not a guarantee of internet availability.",
    "note": "Public-safe Sovereign Home Anchor estimate only; exact pairing, key material, and protected authentication internals are withheld."
  },
  "kineticHandoffSummary": {
    "kineticScorePct": 6,
    "effectiveKineticEchoRiskPct": 0,
    "kineticState": "kinetic-unavailable",
    "note": "Kinetic PHY models local mechanical packet handoff through a shared physical substrate; it is not internet delivery by itself."
  },
  "acousticHandoffSummary": {
    "acousticScorePct": 0,
    "acousticState": "acoustic-unavailable",
    "note": "Acoustic/ultrasonic signaling models local non-RF handoff through pressure waves; it depends on noise, distance, audio policy, and receiver availability."
  },
  "nonRfHandoffSummary": {
    "nonRfHandoffScorePct": 4,
    "kineticScorePct": 6,
    "acousticScorePct": 0,
    "preservationSupportPct": 0,
    "bridgeState": "none",
    "note": "Non-RF handoff models local packet movement to a peer, relay, SHA, or preservation state; it does not guarantee live responder delivery."
  },
  "powerSurvivalSummary": {
    "powerSurvivalScorePct": 44,
    "estimatedDrainPerHourPct": 2.5,
    "estimatedFiveMinuteDrainPct": 0.2,
    "projectedReserveAfterFiveMinutesPct": 63.8,
    "harvestingOffsetPct": 0,
    "ironLungReservePct": 0,
    "supercapReservePct": 0,
    "lowPowerModeRecommended": false,
    "thermalThrottleRecommended": false,
    "protectiveModeActive": false,
    "yieldsFirst": [
      "audio feature duty",
      "BLE scan duty",
      "GPS duty",
      "nonessential compute"
    ],
    "note": "Public-safe power survival estimate only; actual drain depends on hardware, OS policy, signal environment, battery health, and temperature."
  },
  "evidenceAuthSummary": {
    "evidenceAuthScorePct": 0,
    "authState": "preserve-only",
    "note": "Public-safe authentication posture only; exact NICOLE, lattice, PPK, kinetic frame, and FHSE internals are withheld."
  },
  "degradedEgressSummary": {
    "primaryEgressPath": null,
    "backupEgressPath": null,
    "immediateEgressScorePct": 0,
    "preservationScorePct": 22,
    "blackoutRiskPct": 50,
    "egressClass": "store-forward-preserve-only",
    "explanation": "Evidence/authentication confidence is too low to support immediate egress. The safer modeled state is local preservation/store-and-forward until authentication improves.",
    "postureSummary": "Execution posture: Android Host Mode. Primary path: none. Backup path: none. Power posture: not active. Evidence/auth posture: preserve only. Egress class: store forward preserve only.",
    "note": "Public-safe degraded-egress interpretation only. It models path pressure, preservation state, and RF-independent anchor assumptions; it is not field validation or a guarantee of message delivery."
  },
  "derivedImmediateEgressScorePct": 0,
  "derivedBlackoutRiskPct": 50,
  "derivedPreservationScorePct": 22,
  "derivedPrimaryEgressPath": null,
  "derivedBackupEgressPath": null,
  "derivedEgressClass": "store-forward-preserve-only",
  "receiptHash": "4fb5d67cc16cff0b66359c10fb23269da3a5081ab54ded45ab4a283d8eaac136",
  "tabPathSummary": {
    "tabOverrideSupplied": false,
    "tabSessionState": "accepted",
    "tabUserDecision": "accepted",
    "bfbRequestState": "requested",
    "tabAudioPermitted": true,
    "tabAudioRecordingPermitted": false,
    "tabLiveChannelOpened": true,
    "tabEvidenceMode": "ephemeral_not_recorded",
    "tabDecisionSource": "public_control",
    "tabAcceptedPct": 0,
    "tabDeniedPct": 0,
    "tabPendingPct": 0,
    "tabPathClass": "ephemeral-tab-path-open",
    "note": "TAB opened through the backend model path. Audio path is modeled as ephemeral and non-recording by default."
  },
  "tabAudioRecordingPermitted": false
}
