Verification path
Trust-service operator
Can registry, revocation, timestamp and transparency evidence remain independently inspectable?
Ask in this order
- Is the file structurally valid?
- Does its exact state match the protected hash?
- Is any signature mathematically valid?
- Is the key trusted and its real-world identity actually verified?
- Is time independently trusted?
- Is the document or key still current?