{"ok":true,"pin":{"namespace":"velouria-audit-20260819","rows":1,"chain":"a1b2c3d4e5f60718293a4b5c6d7e8f9012345678901234567890123456789012","pinned_at":"2026-08-19T13:33:24.788Z","seq":1,"cadence_hours":24,"next_pin_due_by":"2026-08-20T13:33:24.788Z","record_kind":"content_head_advance","head_first_seen_at":"2026-08-19T13:33:24.788Z","renewals_since_advance":0,"renewals_total":0,"auth_level":"bearer-stage0","auth_note":"Bearer-key auth only. This is NOT owner-signature auth: the witness verifies that the caller holds a key bound to this namespace prefix, not that the log's owner authorized this record. Anyone who obtains the key can pin or renew. Owner-signature auth — a detached signature over {namespace, rows, chain, timestamp} verified against a public key registered to the namespace — is the Stage-1 requirement and is NOT built yet. Read publisher_heartbeat_current as proof that a key-holder was alive and asserting, never as proof of the log owner's intent.","intervals":[{"seq":1,"kind":"content_head_advance","opened_at":"2026-08-19T13:33:24.788Z","cadence_hours":24,"due_by":"2026-08-20T13:33:24.788Z","supersedes_due_by":null,"superseded_deadline_was_missed":false}],"intervals_total":1,"ever_missed_deadline":false,"missed_deadline_count":0,"missed_deadlines":[]},"source":"github-contents-api","freshness_note":"read via the GitHub contents API (commit-fresh); the authoritative record is the commit history at https://github.com/dan8433-user/arcaeon-witness-pins/commits/main/pins/velouria-audit-20260819","history":"https://github.com/dan8433-user/arcaeon-witness-pins/commits/main/pins/velouria-audit-20260819","next_pin_due_by":"2026-08-20T13:33:24.788Z","status":"current","cadence_status":"current","cadence_gradeable":true,"head_state":"content_head_advanced","cadence_grade":"pass","head_first_seen_at":"2026-08-19T13:33:24.788Z","content_unchanged_for_seconds":25374,"renewals_since_advance":0,"auth_level":"bearer-stage0","auth_note":"Bearer-key auth only. This is NOT owner-signature auth: the witness verifies that the caller holds a key bound to this namespace prefix, not that the log's owner authorized this record. Anyone who obtains the key can pin or renew. Owner-signature auth — a detached signature over {namespace, rows, chain, timestamp} verified against a public key registered to the namespace — is the Stage-1 requirement and is NOT built yet. Read publisher_heartbeat_current as proof that a key-holder was alive and asserting, never as proof of the log owner's intent."}