{
  "reviewed": "2026-10-07",
  "capturedAt": "2026-10-07T14:02:36Z",
  "author": "OneQuill Research",
  "affiliation": "OneQuill develops OneVir.",
  "method": "Documentary review of named source paths and test assertions; referenced tests were not executed for this publication.",
  "sourcePackageVersion": "0.2.43",
  "baseRevision": "2164d6209a7f66e3c00913e430916d5595dd6c36",
  "sourceState": "Working tree with uncommitted sources",
  "releaseApplicability": "Not established; request evidence for the installed release and effective configuration.",
  "testExecution": "Not run for this publication",
  "sourceFiles": [
    {
      "path": "Cargo.toml",
      "sha256": "e19c0795c674e70000689663e0e18e1746a30a737904e91b0018c2f94c0c091c",
      "state": "tracked"
    },
    {
      "path": "src/api/mod.rs",
      "sha256": "f98c6732ffd3675531fbfd434d0f32139e618fe7f77b6ae602624797fa6f9dcc",
      "state": "modified"
    },
    {
      "path": "src/api/memory.rs",
      "sha256": "5958606f6e6608ecc42a05642a86c2843313511ee998b27a43a6c3fd5688fb62",
      "state": "tracked"
    },
    {
      "path": "src/governance/deployment_runtime_tests.rs",
      "sha256": "1b09dad4b842bc041cc58fd6678262520121e1fd68ba9ce50d8578b55b70de02",
      "state": "untracked"
    },
    {
      "path": "src/proxy/health.rs",
      "sha256": "ee84e7f9a9fa363ff43c433a044256c3a783b5f42279f1f40c36bce71c844282",
      "state": "tracked"
    },
    {
      "path": "src/api/openai.rs",
      "sha256": "fb249bc17353a4dfc02b04c70db3cf0650392b8afc7a3c379665fb0489cdb238",
      "state": "modified"
    },
    {
      "path": "accelerators/make_manifest.py",
      "sha256": "a66b7a754cf8a589fcf8683065f412b42683c5420d55a6fc42815d2cb89b8674",
      "state": "tracked"
    }
  ],
  "controls": [
    {
      "id": "security",
      "name": "Security",
      "heading": "Security: credential interpretation",
      "finding": "The named test asserts rejection of conflicting credentials and handling of supported bearer and WebSocket formats.",
      "evidence": "Test source reviewed",
      "execution": "Not run",
      "check": "Endpoint coverage, key scopes, administrative permissions and transport security.",
      "request": "Installed version, endpoint and permission matrix, and authentication test results."
    },
    {
      "id": "privacy",
      "name": "Privacy",
      "heading": "Privacy: retention and saved history",
      "finding": "Initialisation rejects an invalid saved retention policy; named history paths describe retention and image restrictions.",
      "evidence": "Implementation and API documentation reviewed",
      "check": "Effective retention settings and data flows through providers, caches, files, exports and backups.",
      "request": "Configured retention policies, data-flow record, and retention and deletion demonstrations."
    },
    {
      "id": "budgets",
      "name": "Budgets",
      "heading": "Budgets: concurrent spend reservation",
      "finding": "The named test asserts two admissions from eight competing attempts against a two-attempt allowance.",
      "evidence": "Test source reviewed",
      "execution": "Not run",
      "check": "Configured prices, settlement, incomplete streams and counters across enabled routes and nodes.",
      "request": "Configured-route accounting evidence, concurrent reservation results and final settlement examples."
    },
    {
      "id": "reliability",
      "name": "Reliability",
      "heading": "Reliability: provider health and fallback",
      "finding": "Named source paths describe provider health states, cooldown and trial behaviour, and health-aware fallback selection.",
      "evidence": "Implementation and source documentation reviewed",
      "check": "Recovery times, partial streams, provider failure behaviour and restart durability.",
      "request": "Failure and recovery demonstrations for the providers and streaming workloads in use."
    },
    {
      "id": "supply-chain",
      "name": "Supply chain",
      "heading": "Supply chain: a named dependency pin",
      "finding": "The source manifest pins llama-cpp-sys-2 to =0.1.157; this identifies one declared dependency.",
      "evidence": "Dependency declaration reviewed",
      "check": "Delivered artifact digest, complete dependency inventory, model revisions and vulnerability assessment.",
      "request": "Release artifact digest, dependency inventory, build provenance and exact model revisions."
    },
    {
      "id": "inference",
      "name": "Inference",
      "heading": "Inference: engine and upstream boundaries",
      "finding": "Named sources distinguish GGUF execution on llama.cpp from exported accelerator assets.",
      "evidence": "Implementation and engine boundary reviewed",
      "check": "Separate inference services, patch levels, endpoint exposure, execution location and memory isolation.",
      "request": "Engine and model inventory plus endpoint, patch, execution-location and isolation evidence for each upstream."
    }
  ]
}
