sigil_atap_witness
Ingests one agent-reported event (bid:submitted, bid:won,
bid:lost, budget:decremented) into an AIT's hash-chained
attestation log. Sigil validates the payload (rejecting any PII per
ATAP §7.6), classifies the evidence tier — anchored if a
bid:submitted cites a valid Sigil token issued for this AIT and
matching the bid's supply path, otherwise asserted — derives any
constraint:violated events, then chains and signs each event.
supply:verified / supply:rejected are witness-emitted by
sigil_verify_supply_path, never accepted here — that is what makes
the witnessed tier non-bypassable.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| ait | Yes | ||
| payload | Yes | ||
| event_type | Yes |