{
  "_doc": "One result, read from the codebase’s own files at the commit named here. Every value is that file’s own, copied verbatim; nothing here is written by hand. A value replaced by {withheld: true, sha256_of_value, bytes} is committed by its sha256 instead of published, for the reason it states, and is never edited. Each whole source file is committed by sha256 below, and its bytes are published only where its visibility says so. The codebase is named by the public subject its files are published under.",
  "lane": "inference-limits",
  "repository": "inference-limits",
  "commit": "eb76dce3f6dc0889d822db1c7a5af76dc876d2db",
  "portfolio_id": "inference-limits:fleet-optimality-cpsat",
  "id": "fleet-optimality-cpsat",
  "attestation_row": {
    "attested_at": "2026-09-12",
    "attestor": "04-aiscaleout",
    "repository": {
      "withheld": true,
      "why": "a working-directory name (R8)",
      "sha256_of_value": "dc9a8056162a9f8af22c3358adefec1007380f73db3ac6575018b9f67cec86a6",
      "bytes": 7
    },
    "source_doc": "TOP_N_CROWN_JEWELS.md",
    "source_doc_sha256": "15a64fb189e85a28a6fee2c09ec72d602dd019272769f54e167d6cc5bf3c425a",
    "state": "attested",
    "top_n": 11,
    "note_sha256": "cda096249bc344dc78f7c156eaaaaa4915f346127e628cf67243910f731d04df",
    "ids_in_row": 11,
    "file": "dataroom/TOP_N_ATTESTATION.jsonl",
    "line": 1
  },
  "claim_source": {
    "receipt": "inference-limits/top40.json",
    "sha256": "5d74491a747c903d407b42abbeececaf6268df57216a1fac67aa795bc4092b6e",
    "field": "entries[3].claim",
    "file": "top40.json"
  },
  "top40_entry": {
    "id": "fleet-optimality-cpsat",
    "rank": 4,
    "native_rank": 22,
    "title": "Pooled KV attains a third-party-solver-certified optimum on the committed instance",
    "claim": "On the committed instance, pooled KV placement achieves 32 misses and Google OR-Tools CP-SAT independently returns OPTIMAL with a matching proven bound of 32 — so pooling is not merely better than per-instance caching, it is optimal.",
    "scope": "serving_limits/formal/lean/SubmodularCover.lean fleet_miss_lower quantifies over ALL routings, ALL demand policies, ALL traces. Instance: k_prefixes 32, m_per_prefix 16, 512 requests, 32 distinct, 16 hosts. CP-SAT status OPTIMAL, best_objective_bound 32, bound_is_proven_optimal true, pooled_pct_of_certified_optimum 100.0. The (1-1/e) general rate is CITED to Nemhauser-Wolsey-Fisher 1978, never claimed.",
    "limits": "ONE committed instance, not a fleet benchmark — the CP-SAT certification is of THAT instance and the Lean half is the general statement; they are separate objects and must not be merged into \"provably optimal at any scale\". The certificate ships its own foil, greedy_below_opt_witness (greedy 5 < OPT 6), so greedy is NOT claimed optimal. PROMOTED 2026-08-26: `submodular`, `cpsat` and `cp-sat` returned ZERO occurrences in this file before today — this was never demoted, it was never seen. Certificate regenerated BYTE-IDENTICALLY at HEAD on 2026-08-26 (OR-Tools present, contrary to the 2026-08-22 rebuttal which assumed it was not installed). A3 2026-09-09: the old title carried a universal \"per-instance provably cannot\". The certificate's own scope_note says the CP-SAT optimum and the counting wall are for the UNCAPACITATED committed instance (hosts hold what they fetch), and per_instance_pays_more_witness is listed under finite_witnesses_decide, not under forall_theorems -- it is one witness, not an impossibility over all instances. The universal statement is not proven and has been removed from the title.",
    "artifact_path": "results/data/[removed]/fleet_optimality_cert.json",
    "witness_command": "python3 [removed]/experiments/gen_fleet_optimality_report.py",
    "witness_result": "exit=0 | cpsat=OPTIMAL optimum=32 pooled=32 equals_optimum=True",
    "witness_class": "ASSERTING",
    "third_party_axis": "B",
    "facts": {
      "ran_with_receipt": true,
      "third_party_graded": true,
      "negative_control_stated": false,
      "ip_class_known": false,
      "reproduce_command": true,
      "regenerates_not_verifies": true
    },
    "fact_count": 4,
    "repro_command": "python3 [removed]/experiments/gen_fleet_optimality_report.py",
    "repro_packet": {
      "path": "repro/fleet-optimality-cpsat/",
      "index_sha256": "80ed62f5df6a95c42aa44f13ab11a287c303acf258caf8ff2bd72439f5fc0bf0",
      "grade": "ASSERTING",
      "kit_pin": "c0320c0f0557fcdeeb9140d886b4267da9af9763ca14510c6eed40f0d3ca039c",
      "graded_rev": "87d88093b0daaf3fa78685ddc8753d02dd45172d"
    },
    "ip_class": null,
    "ip_class_basis": "No source in this repository states an ip_class for this entry (`grep -rn ip_class` returns nothing). Never guessed.",
    "negative_control": null
  },
  "witness_quality_entry": {
    "id": "fleet-optimality-cpsat",
    "claim": "On the committed instance, pooled KV placement achieves 32 misses and Google OR-Tools CP-SAT independently returns OPTIMAL with a matching proven bound of 32 — so pooling is not merely better than per-instance caching, it is optimal.",
    "class": "ASSERTING",
    "why": "A solver this repository does not own returns the bound in this run. Planted defect: K_PREFIXES 32 -> 31 in the generator; both numbers move together and the assertion disappears. (Mutating the committed JSON does NOT break it — measured, and recorded above.)",
    "witness_command": "python3 [removed]/experiments/gen_fleet_optimality_report.py",
    "defect_demonstration": {
      "id": "fleet-optimality-cpsat",
      "target": "[removed]/experiments/gen_fleet_optimality_report.py",
      "defect": "the instance loses one distinct prefix (K_PREFIXES 32 -> 31), so the pooled miss count and the CP-SAT optimum can no longer both be 32",
      "witness_command": "python3 [removed]/experiments/gen_fleet_optimality_report.py",
      "recorded_exit": 0,
      "recorded_assertion": "cpsat=OPTIMAL optimum=32 pooled=32 equals_optimum=True",
      "mutation": "replaced 1 of 1 occurrences of 'K_PREFIXES = 32' with 'K_PREFIXES = 31'",
      "mutated_exit": 0,
      "mutated_first_line": "cpsat=OPTIMAL optimum=31 pooled=31 equals_optimum=True",
      "assertion_present_under_defect": false,
      "witness_rejects_the_defect": true,
      "tree_clean_after_restore": true,
      "restored_exit": 0,
      "restored_assertion_present": true
    },
    "asserts": "OR-Tools CP-SAT re-solves the instance in this run and the line `cpsat=OPTIMAL optimum=32 pooled=32 equals_optimum=True` — the claim's two numbers and their equality — appears.",
    "stale_claims_ref": null,
    "attested": true
  },
  "packet": {
    "id": "fleet-optimality-cpsat",
    "portfolio_id": {
      "withheld": true,
      "why": "a working-directory name (R8)",
      "sha256_of_value": "c9a80ef56d6ac5fb598ef4388f3f2894e560c5f53bc5a3565b06407eb3069696",
      "bytes": 30
    },
    "witness_command": "python3 [removed]/experiments/gen_fleet_optimality_report.py",
    "path": "repro/fleet-optimality-cpsat/",
    "inputs": 2,
    "grade": "ASSERTING",
    "kit2": {
      "grade": "ASSERTING",
      "graded_commit": "87d88093b0daaf3fa78685ddc8753d02dd45172d",
      "graded_utc": "2026-09-19T00:55:54Z",
      "kit_pins_sha256": "c0320c0f0557fcdeeb9140d886b4267da9af9763ca14510c6eed40f0d3ca039c"
    }
  },
  "measured": {
    "measured": true,
    "basis": "defect_demonstration.mutated_exit = 0",
    "exit": 0,
    "defect_rejected": true
  },
  "register": {
    "truth_state": "attested",
    "truth_line": 147,
    "measured_per_register": true,
    "witness_class_per_register": "ASSERTING",
    "ip_class_public": "unknown",
    "ip_class_sha256": "b23a6a8439c0dde5515893e7c90c1e3233b8616e634470f20dc4928bcf3609bc",
    "ip_class_source": "reports/TOP_N_CROWN_JEWELS.md:27 @ 7eff877f38ed",
    "receipt": "register/CROWN_JEWELS_TRUTH.md",
    "receipt_sha256": "bde06cf0d3e99644522d18e79b6bd5d84ed4f5c86e315a48fef207e9e49c5022",
    "ip_class_receipt": "register/ip_class.jsonl",
    "ip_class_receipt_sha256": "b1e8f97aa6779e0fefed2f7a7726e1a03563b536b497392401b49bb8ef84d4ca"
  },
  "withheld_fields": [
    {
      "field": "packet.portfolio_id",
      "codes": [
        "LANE_DIRECTORY_NAME"
      ]
    },
    {
      "field": "attestation_row.repository",
      "codes": [
        "LANE_DIRECTORY_NAME"
      ]
    }
  ],
  "sources": {
    "attestation": {
      "receipt": "inference-limits/dataroom/TOP_N_ATTESTATION.jsonl",
      "source": "dataroom/TOP_N_ATTESTATION.jsonl",
      "commit": "eb76dce3f6dc0889d822db1c7a5af76dc876d2db",
      "sha256": "a674007bd1bcc71c72d9033d28bbf3c0fe0f19bff407993b2a71aacfa57fca6f",
      "bytes": 1701,
      "visibility": "sealed"
    },
    "top40": {
      "receipt": "inference-limits/top40.json",
      "source": "top40.json",
      "commit": "eb76dce3f6dc0889d822db1c7a5af76dc876d2db",
      "sha256": "5d74491a747c903d407b42abbeececaf6268df57216a1fac67aa795bc4092b6e",
      "bytes": 246151,
      "visibility": "sealed"
    },
    "witness_quality": {
      "receipt": "inference-limits/dataroom/witness_quality.json",
      "source": "dataroom/witness_quality.json",
      "commit": "eb76dce3f6dc0889d822db1c7a5af76dc876d2db",
      "sha256": "2d25181a8dde236a009eb4264e63f129382d7641862180d6001c0be2856f9049",
      "bytes": 82971,
      "visibility": "sealed"
    },
    "repro_index": {
      "receipt": "inference-limits/repro/INDEX.json",
      "source": "repro/INDEX.json",
      "commit": "eb76dce3f6dc0889d822db1c7a5af76dc876d2db",
      "sha256": "80ed62f5df6a95c42aa44f13ab11a287c303acf258caf8ff2bd72439f5fc0bf0",
      "bytes": 46450,
      "visibility": "sealed"
    }
  }
}
