{"ok":true,"pin":{"namespace":"zz-rc-release-check-20261004t185720","rows":1,"chain":"8a687e1be733008ab43970c4626caa5b","pinned_at":"2026-10-04T18:57:22.560Z","seq":1,"cadence_hours":24,"next_pin_due_by":"2026-10-05T18:57:22.560Z","record_kind":"content_head_advance","head_first_seen_at":"2026-10-04T18:57:22.560Z","renewals_since_advance":0,"renewals_total":0,"auth_level":"bearer-stage0","auth_note":"Bearer-key auth only. This is NOT owner-signature auth: the witness verifies that the caller holds a key bound to this namespace prefix, not that the log's owner authorized this record. Anyone who obtains the key can pin or renew. Owner-signature auth — a detached signature over {namespace, rows, chain, timestamp} verified against a public key registered to the namespace — is the Stage-1 requirement and is NOT built yet. Read publisher_heartbeat_current as proof that a key-holder was alive and asserting, never as proof of the log owner's intent.","intervals":[{"seq":1,"kind":"content_head_advance","opened_at":"2026-10-04T18:57:22.560Z","cadence_hours":24,"due_by":"2026-10-05T18:57:22.560Z","supersedes_due_by":null,"superseded_deadline_was_missed":false}],"intervals_total":1,"ever_missed_deadline":false,"missed_deadline_count":0,"missed_deadlines":[]},"source":"github-contents-api","freshness_note":"read via the GitHub contents API (commit-fresh); the authoritative record is the commit history at https://github.com/dan8433-user/arcaeon-witness-pins/commits/main/pins/zz-rc-release-check-20261004t185720","history":"https://github.com/dan8433-user/arcaeon-witness-pins/commits/main/pins/zz-rc-release-check-20261004t185720","next_pin_due_by":"2026-10-05T18:57:22.560Z","status":"current","cadence_status":"current","cadence_gradeable":true,"head_state":"content_head_advanced","cadence_grade":"pass","head_first_seen_at":"2026-10-04T18:57:22.560Z","content_unchanged_for_seconds":39595,"renewals_since_advance":0,"auth_level":"bearer-stage0","auth_note":"Bearer-key auth only. This is NOT owner-signature auth: the witness verifies that the caller holds a key bound to this namespace prefix, not that the log's owner authorized this record. Anyone who obtains the key can pin or renew. Owner-signature auth — a detached signature over {namespace, rows, chain, timestamp} verified against a public key registered to the namespace — is the Stage-1 requirement and is NOT built yet. Read publisher_heartbeat_current as proof that a key-holder was alive and asserting, never as proof of the log owner's intent."}