This certificate was signed by the dev environment's test-only key, not by a production signing key, and production's verifier refuses every psn-dev-* key. It is not a credential and proves nothing about any organisation.
What the published record claims. The check runs in your browser; this is not its answer.
Licence-status certificate
cert_01m395rstn8dbck57dywp1p907
This certificate records a status for
recorded licence coverage
SAMPLE — Jordon and Jordon
The scope named below is recorded as covered for the period shown. Licence status is all this certificate records: it says nothing about money, and it carries no claim of support of any kind.
Scope
project: R_kgDOOAeWjQ
Period
2026-09-24 – 2027-09-30
Issued
2026-09-24T07:41:14Z
Check the holder's certificate against this record
This record publishes the certificate's status and its token's hash, and no name and no
signed token. The holder proves the certificate is theirs by showing the signed file to
whoever they choose. Paste the token you were shown: it is checked here against this
record's hash, the published keys and the transparency log, and sent nowhere.
Paper or a picture (a PDF, a certificate picture or a share card): scan its
code or type its certificate id here, then compare the id, the name, the period and the
projects printed on it with what this page shows. A copy shows what was true when it was
made; this page shows the status now.
A QR code should open purposesource.org/verify/ followed by the certificate
id, optionally followed by #h= and a fingerprint, and no other address. The scanner on this
page refuses a code that points anywhere else.
A badge should link to this page, at purposesource.org/verify, with the same
certificate id.
The signed file (certificate.jws): paste its token into the box below. Your
browser checks its signature against the published key.
A status-only record shows no name, so a name on a copy cannot be checked
here: ask the holder for the signed file.
The fingerprint shows which signed version of the certificate this copy was made from. Anyone can copy it, so it proves nothing on its own.
The pattern is drawn from this certificate's hash. It is decoration, not proof.
Offline mode — paste a token
Verify a certificate token against the published key set without looking anything up.
Useful when you have the artifact but not the identifier, and for checking that a
certificate you were sent matches one you already trust.
Offline mode checks the signature, and that the signing key's published validity window
covers the time the token says it was signed. It cannot check transparency-log inclusion
or revocation, so a token that passes here still needs a lookup by identifier to be
trusted.
Check another certificate
The camera picture stays on your device. Nothing is uploaded.
Your phone's camera can open the code too. Scanning here adds one check: it refuses any code that does not point to purposesource.org.