{ "ruling": "GH-DEC-2026-015", "condition": "normative and tested exclusion of presentation from native binding.digest", "status": "condition-implemented-source", "test": "tests/test_claim_contract.py::test_presentation_changes_cannot_change_the_approved_act", "focused_tests": 7, "full_suite_output": "........................................................................ [ 57%]\n...................................................... [100%]\n=============================== warnings summary ===============================\ntests/test_auth.py::test_jwt_authenticator_rejects_wrong_signature_and_hs256\n /tmp/hfact-attempt-20260910/approval-engine/.venv/lib/python3.12/site-packages/jwt/api_jwt.py:147: InsecureKeyLengthWarning: The HMAC key is 14 bytes long, which is below the minimum recommended length of 32 bytes for SHA256. See RFC 7518 Section 3.2.\n return self._jws.encode(\n\n-- Docs: https://docs.pytest.org/en/stable/how-to/capture-warnings.html\n126 passed, 1 warning in 3.06s", "mutation": { "change": "canonical_binding returns the whole supplied input instead of only the act", "result": "expected test failure", "exit_code": 1, "production_mutation_retained": false }, "native_algorithm_changed": false, "live_approval_issued": false, "residuals": { "consumer_adoption": "INFD-IN-0004 / INFD-WP-0001", "human_control_enforcement": "APPROVAL-WP-0002-T01 / GH-DEC-2026-016", "deployment_and_native_consumption": "APPROVAL-WP-0002-T03/T05" } }