Established inside the proof
- An exact configured P-256 issuer key signed the credential.
- Exactly two bounded scalar disclosures open signed
_sdvalues. - The configured claim relation is true.
- Holder mode proves the bounded KB-JWT relation and key possession.
- An optional revocation check proves private
VALIDmembership under the selected root.
