Machine-derived GitHub facts frozen into an issuer-signed normalized snapshot.
GitHub authorship identifies the pull request author; it does not prove they wrote every line in a collaborative pull request.
The browser asks GitHub for the public PR, dedicated merged state, and recorded commit association, then compares stable numeric IDs and timestamps locally.
This uses three credential-free public API reads. GitHub can observe this browser's request and applies its public rate limit; no OAuth token, bundle, or verification result is sent to ProofPort.
Who confirmed the contribution, what was checked, and which key authorized it.
This assurance label reports checks ProofPort performed. It is not a skill score and does not guarantee the issuer is truthful.
SAS registry identity and lifecycle state on the exact network shown.
SAS attestations are tamper-evident and closable by a current credential-authorized signer. Closed means account deletion proven by a retained close transaction—not a revocation flag.