CAIN-42 PBFT quorum-certificate evidence: restore-drill-2026-09-26
======================================================================

What: Every quorum certificate held by each replica of cain-mr-01 after cain-mr-node-2 was restored from an online backup that was 12 decisions behind, then caught up while writes continued.
Classification: MEASURED on the live multi-region cluster cain-mr-01 during a restore-from-backup drill
Generated: 2026-09-26T21:26:37Z
Source commitment: git 81bdf8418178750be8def719d38c6739d291d0c5 (engine 33.4-production-hardened); source is not published.

Verify in about 30 seconds (Python 3.8+, `pip install cryptography`, no CAIN code):

  BASE=https://cainstudio.online/proof/bundle/restore-drill-2026-09-26/      # or https://mcpgate.online/proof/bundle/restore-drill-2026-09-26/
                                                             # or https://clawx.click/evidence/restore-drill-2026-09-26/
  curl -so verify_pbft_qc_bundle.py "$BASE/verify_pbft_qc_bundle.py.txt"
  curl -so PBFT_QC_BUNDLE.json "$BASE/PBFT_QC_BUNDLE.json"
  sha256sum PBFT_QC_BUNDLE.json verify_pbft_qc_bundle.py
    # expect 94162b7304d9484402c253dcdb881bc30665150a9cd0845d213eb4f3e3a30969  PBFT_QC_BUNDLE.json
    # expect ba452ce42528f11f7f5235727a65cae25a34072bc52b4711fd72581615d06009  verify_pbft_qc_bundle.py
  python3 verify_pbft_qc_bundle.py PBFT_QC_BUNDLE.json

Or open $BASE/index.html: your browser runs the same checks (WebCrypto Ed25519).

Read the verifier before trusting it: it is about 300 lines. It tampers with a certificate
in seven ways and requires every tampered copy to fail, so a verifier that accepts
everything would not pass.

Not claimed: loss of more than one replica at once (not drilled); backups stored off-host (they are on each replica's host); independent operators or providers; third-party review; absence of bugs.
