Verification steps
- Load ToneThread Root public key…
- Verify Tenant Site Certificate signature…
- Verify Post Certificate signature…
- Recompute ToneHash of post content…
- Compare recomputed hash to certificate…
Revision history
Originally published 2026-08-08, updated 2026-08-08; 6 revisions (this active certificate plus 5 prior).
| Issued | Superseded | Content hash |
|---|---|---|
| 2026-08-08T17:56:28.874Z | 2026-08-08 18:05:28 | tth_v1_a481aace98d88970 |
| 2026-08-08T18:05:28.213Z | 2026-08-08 18:05:29 | tth_v1_a481aace98d88970 |
| 2026-08-08T18:05:29.436Z | 2026-08-08 18:05:37 | tth_v1_a481aace98d88970 |
| 2026-08-08T18:05:37.491Z | 2026-08-08 18:05:53 | tth_v1_a481aace98d88970 |
| 2026-08-08T18:05:53.574Z | 2026-08-08 18:06:22 | tth_v1_a481aace98d88970 |
| 2026-08-08T18:06:22.851Z | — active — | tth_v1_a481aace98d88970 |
What this page exposes
Verification runs on the server. The browser only sees the public summary in the sidebar and the step-by-step ok/fail result above — never the certificate's raw signature, the tenant's raw public key, the ToneHash salt, the per-axis tonal scores, or the compact fingerprint string. Those stay on the signing host.
The public JSON at
/tonehash/cert/score-led-expression-versus-improvisation mirrors the
same surface. To independently audit a certificate's raw
signed payload you must request an authenticated cert-bundle
export from the operator —
how to request access.