Source narrative coverage
Home · Documentation · Evidence
The private publication/README.md narrative has 37 substantive second-level sections. This map records the main public destination for each section. It is a section-assignment check, not proof that every byte of the original analysis, raw evidence, or every subordinate path has been published. The original source SHA-256 is in publication provenance. The 100 finding IDs have a separate source crosswalk.
| Retained source section | Public destination |
|---|---|
publication/README.md:52 — Executive assessment |
audit-overview |
publication/README.md:78 — Scope and evidence standards |
methodology |
publication/README.md:105 — OpenCore references and what they mean |
opencore |
publication/README.md:135 — Artifact identity and reference acquisition |
artifact-provenance |
publication/README.md:183 — Exact Apple comparison |
artifact-provenance |
publication/README.md:217 — Inventory and folder guide |
inventory-images |
publication/README.md:260 — Disk images and reconstruction |
inventory-images |
publication/README.md:279 — RAMDisk architecture and services |
ramdisk-ramrod |
publication/README.md:304 — Configuration coverage and service resolution |
usb-and-services |
publication/README.md:318 — USB multiplexing and network configuration |
usb-and-services |
publication/README.md:808 — Network dependencies and endpoint-reference coverage |
restore-network |
publication/README.md:848 — Restore server selection and request security |
restore-network |
publication/README.md:912 — FDR trust objects, AP tickets and response authentication |
restore-network |
publication/README.md:1003 — FDR ticket verification backend and input provenance |
restore-network |
publication/README.md:1078 — Restore transport authentication and exact crypto dependencies |
restore-network |
publication/README.md:1152 — PFX firmware personalization and device-interface boundaries |
firmware-personalization |
publication/README.md:1221 — PFX staging, device handoff and nested firmware |
firmware-personalization |
publication/README.md:1267 — PSF EFI flasher and all packaged PSF payloads |
firmware-flashers |
publication/README.md:1312 — PSF input authority, bounds and device-query errors |
firmware-flashers |
publication/README.md:1372 — FirmwareUpdateLauncher and the upstream staging workflow |
firmware-flashers |
publication/README.md:1406 — bless and MultiUpdater boot handoff |
firmware-flashers |
publication/README.md:1461 — Kernel NVRAM conversion and firmware helper selection |
nvram-efi-paths |
publication/README.md:1699 — Ramrod and APFS sealing |
ramdisk-ramrod |
publication/README.md:1764 — Update brain and Update.plist |
installer-workflow |
publication/README.md:1818 — Command authorization and endpoints |
installer-workflow |
publication/README.md:1852 — Brain receiver and prepare/apply guards |
installer-workflow |
publication/README.md:1885 — Verification-state flag and error propagation |
installer-workflow |
publication/README.md:2017 — Code signatures and kernel collections |
code-signing-kernel |
publication/README.md:2071 — Firmware and Option ROM catalog |
firmware-catalog |
publication/README.md:2101 — Image4 signatures and certificate constraints |
secure-boot |
publication/README.md:2130 — Trust caches and representation differences |
secure-boot |
publication/README.md:2164 — Firmware measurement details |
firmware-catalog |
publication/README.md:2215 — EFI signatures and Product.efi |
firmware-catalog |
publication/README.md:2243 — SSV and secure-boot boundaries |
sealed-system-volume |
publication/README.md:2263 — Resolved anomalies and corrections |
corrections |
publication/README.md:2282 — Reproduction and evidence map |
reproduction |
publication/README.md:2361 — Remaining work |
audit-status |
The original table of contents and publication-directory description are navigation metadata, so they are not counted among the 37 substantive sections. This repository reorganizes the narrative by subsystem. Stage 6F.7 remains partial and the complete 147,253-object dataset has not received whole-object semantic closure.