Security attest

Read-only cards: CSP present/missing, cookie SameSite/Secure, auth-bound vs unbound. From mock fixture headers/cookie metadata only. Unbound/missing fail-closed. Not live masterengine.ai. Not kernel source of truth. The live product is still being built / launching soon.

How to read · mock headers / cookie metadata only

CSP present —

Cookie partial / missing flags —

Auth bound —

Auth unbound (fail-closed) —

Fail-closed count —

Finding rows (mock header / cookie metadata specimen)

  • Awaiting local fixture…

Awaiting local fixture…

Security attest cards