{
  "schema": 1,
  "scope": "Third-party certifications on the historical Tengri (137) OpenPGP UID; not an authorship or identity determination.",
  "target": {
    "fingerprint": "2A2C0AD4ED1CAD8353A30056D152D6C5666AB731",
    "certified_uid": "Tengri (137)",
    "target_key_source": {
      "path": "archive/gaps/tr1-01-files/tengri-key-refetch.asc",
      "sha256": "9501a19f980380b0f06788ae46e0809b47d2a51d8679f315561b8b4d459640de",
      "role": "Refetched Tengri public key carrying the certification packets"
    }
  },
  "recovered_and_verified_certifiers": [
    {
      "issuer_key_id": "040484988228DD98",
      "issuer_fingerprint": "0BC0BAEFAFE278BD9DC9D832040484988228DD98",
      "public_uid": "Noah Mercitalis",
      "certification_utc": "2017-05-03T02:20:40Z",
      "source_key": {
        "path": "archive/gaps/tr1-01-files/ubuntu-key-040484988228DD98.asc",
        "sha256": "f80114f0987c9208a059b07e9b7dbac525703698f02229310cbcb3f2774800e1",
        "role": "Public certifier key recovered from the preserved keyserver capture"
      }
    },
    {
      "issuer_key_id": "A49BDCD5BC224010",
      "issuer_fingerprint": "AEB3CABDFF80E3EDB3205C9AA49BDCD5BC224010",
      "public_uid": "Varol Tepecik",
      "certification_utc": "2017-05-07T18:53:27Z",
      "source_key": {
        "path": "archive/gaps/tr1-01-files/ubuntu-key-A49BDCD5BC224010.asc",
        "sha256": "b98777bbfa5723edbffca1f034d10afb9fb746bc8628afc6dfca9d55d8fe9817",
        "role": "Public certifier key recovered from the preserved keyserver capture"
      }
    }
  ],
  "unrecovered_certifiers": [
    {
      "issuer_key_id": "D2FBEC71DB65A36D",
      "certification_utc": "2017-05-27T01:16:08Z",
      "packet_profile": "RSA 2048-bit signature MPI; SHA-256; no issuer-fingerprint subpacket.",
      "status": "No public key material recovered in the recorded multi-keyserver sweep."
    },
    {
      "issuer_key_id": "6966D8E21ACC064F",
      "issuer_fingerprint": "75711F66DFAB3662FBD290166966D8E21ACC064F",
      "certification_utc": "2017-11-23T08:30:20Z",
      "packet_profile": "RSA 2048-bit signature MPI; SHA-256; issuer fingerprint present.",
      "status": "No public key material recovered in the recorded multi-keyserver sweep."
    }
  ],
  "established": "The two recovered public keys mathematically verify as third-party 0x10 certifications on the old Tengri (137) UID. Packet records place all four third-party certifications on that UID, rather than on the later Tengri 137 UID.",
  "boundary": "A key certification demonstrates that a private-key holder certified a pseudonymous UID. It does not prove Tengri's legal identity, a meeting, collaboration, authorship by a named person, or that either certifier knew the operator offline.",
  "evidence": [
    {
      "path": "archive/gaps/tr1-01-files/gpg-check-sigs-tengri-with-two-certifiers.txt",
      "sha256": "9e9c685587cf96eef0b1b9c54be7f05117b2ce528eb998ac649bc432e567b929",
      "role": "Saved GnuPG check-sigs output for the two recovered certifier keys"
    },
    {
      "path": "archive/gaps/tr1-01-files/gpg-list-packets-tengri.txt",
      "sha256": "25a5cb703f6ebbf5bbdfd2fc964ba852204e2ec94a4a66fde0f6741a0b5ef9f1",
      "role": "Packet-level placement, dates, and missing-key issuer details"
    },
    {
      "path": "archive/gaps/tr1-01-files/negative-probe-log-two-missing-keys.txt",
      "sha256": "ada40ed14fc9e065737600ecf86c61e725c2492da11acaf1042083f8d6224ad1",
      "role": "Recorded public-keyserver sweep for the two unrecovered issuer keys"
    },
    {
      "path": "archive/gaps/tr1-01-pgp-certifier-identities.md",
      "sha256": "1607f7ffd363b562119c9dc88588f54e4b487c97a35e9f7f9c8c406a70d45ebc",
      "role": "Full research record and provenance"
    }
  ],
  "reproduction": {
    "inputs": [
      "archive/gaps/tr1-01-files/tengri-key-refetch.asc",
      "archive/gaps/tr1-01-files/ubuntu-key-040484988228DD98.asc",
      "archive/gaps/tr1-01-files/ubuntu-key-A49BDCD5BC224010.asc"
    ],
    "command_note": "Import the three ASCII-armoured files into an isolated GnuPG home, then run gpg --check-sigs 0xD152D6C5666AB731. The expected saved result is six good signatures and two signatures not checked because their public keys are unavailable."
  }
}
