Verification steps
- Load ToneThread Root public key…
- Verify Tenant Site Certificate signature…
- Verify Post Certificate signature…
- Recompute ToneHash of post content…
- Compare recomputed hash to certificate…
Revision history
Originally published 2026-08-04, updated 2026-08-08; 7 revisions (this active certificate plus 6 prior).
| Issued | Superseded | Content hash |
|---|---|---|
| 2026-08-04T17:51:49.142Z | 2026-08-04 17:54:28 | tth_v1_c4951aff1118cf10 |
| 2026-08-04T17:54:28.455Z | 2026-08-05 00:15:26 | tth_v1_46c3dae8fc21803d |
| 2026-08-05T00:15:26.245Z | 2026-08-08 18:11:47 | tth_v1_959a6455a563ab32 |
| 2026-08-08T18:11:47.771Z | 2026-08-08 18:11:57 | tth_v1_99a46e1414001c6c |
| 2026-08-08T18:11:57.846Z | 2026-08-08 18:19:21 | tth_v1_99a46e1414001c6c |
| 2026-08-08T18:19:21.924Z | 2026-08-08 18:23:04 | tth_v1_0336281c9fc049f2 |
| 2026-08-08T18:23:04.406Z | — active — | tth_v1_60a77d533c4ddc5c |
What this page exposes
Verification runs on the server. The browser only sees the public summary in the sidebar and the step-by-step ok/fail result above — never the certificate's raw signature, the tenant's raw public key, the ToneHash salt, the per-axis tonal scores, or the compact fingerprint string. Those stay on the signing host.
The public JSON at
/tonehash/cert/verbatick-from-a-spoken-thought-to-a-working-product mirrors the
same surface. To independently audit a certificate's raw
signed payload you must request an authenticated cert-bundle
export from the operator —
how to request access.