Lưu gì?
- document_hash
- file_name / file_size
- author_metadata
- identity/key fingerprints
- Evidence events / status
Trong flow sign-and-stamp hiện tại, client gửi document_hash cùng metadata. Database lưu fingerprint và metadata để tạo Evidence; original file bytes không được insert vào bảng documents. Đây là “zero-storage cho content”, không phải “zero data”.
Certificate PDF được tạo để phục vụ verification, và hash của PDF được ghi vào Evidence metadata.
Proof nhỏ của timestamp có lifecycle riêng. Khi đủ điều kiện, proof có thể được stage lên R2 với signed URL và retention.
Audit/admin logs vẫn tồn tại để vận hành và truy vết. Privacy policy cần mô tả retention của từng nhóm.
Muốn chứng minh một file khớp Evidence, verifier tính SHA-256 của file đang có và so với hash public. Registry không cần nhận lại content bytes chỉ để thực hiện phép so sánh.
# Local verification sha256sum your-file.pdf # Compare with public evidence SHA256 == evidence.document.sha256 # Then verify public-key → signature → timestamps → OTS → package inventory