A message provider reports a delivery today, and the bank takes the provider's word — backed by the provider's own database. With evidence infrastructure underneath, the same report becomes a proof the bank verifies itself, offline, trusting nobody. The bank does not get a new service. It gets a removed doubt.
The report is hashed at the source; the ledger receives and anchors the fingerprint. The full proof bundle is ~2.5 KB and contains zero phone numbers and zero message ids.
A standalone verifier — one file, no network — re-computes every check (C1–C9), including that the anchor proof names the receipt it actually anchors. Change one byte anywhere and the verdict fails. Tamper detection: 7 of 7.
GDPR erasure by key destruction: the subject's data becomes unrecoverable while the proof still verifies. Deletion is fail-closed — it demands a trigger reference and two different DPO approvers, and refuses anything less.
Independent operators co-sign the log's checkpoints. How many are required is the bank's own policy at verification time — never a claim the bundle makes about itself.
Every dispute today ends at "trust our database". With attested delivery proofs the provider's report carries its own evidence — checkable by the most skeptical client they have.
Find a message, download its proof, verify it offline. No API key to the provider's systems, no call to anyone — the proof stands or falls on mathematics.
LAB environment · synthetic data only · one anchor witness today (independent witnesses joining is the very next step) · the reference format is provisional and will be reshaped by partner and regulator feedback.