{"entry":{"fixtureId":"attack-xchain-timelock-inversion-v0","appSlug":"attack-xchain-timelock-inversion","appName":"ATTACK: timelock-inversion","reportId":"lab_attack-xchain-timelock-inversion-v0_20260610225855222","generatedAt":"2026-06-10T22:58:55.222Z","status":"pass","jsonPath":"/bundle/server-functions/default/.nocklab/attack-xchain-timelock-inversion.report.json","markdownPath":"/bundle/server-functions/default/.nocklab/attack-xchain-timelock-inversion.report.md","reportHash":"sha256:ae93bc4e7f0f83665e8eeb1e4aed9412d550c114f7be52fb2d3ffd8fef131c97","snapshotRoot":"61e1a041e3b2b9c2","badgeCandidate":{"id":"badge-candidate-attack-xchain-timelock-inversion","label":"ATTACK: timelock-inversion Verification Candidate","reportSlug":"attack-xchain-timelock-inversion","fixtureId":"attack-xchain-timelock-inversion-v0","status":"watch","evidenceKind":"exploit-prevention","statusReDerived":"pass","statusConsistent":true,"kernelHash":null,"kernelVerified":false,"baseDeploymentHash":null,"baseVerified":false,"signatureStatus":"unsigned","evidence":{"reportHash":"sha256:ae93bc4e7f0f83665e8eeb1e4aed9412d550c114f7be52fb2d3ffd8fef131c97","snapshotRoot":"61e1a041e3b2b9c2","invariantPacks":[]}},"stepsPassed":1,"stepsTotal":1,"invariantsPassed":0,"invariantsTotal":1,"alertsTriggered":0,"snapshotsCaptured":2,"adapterObservationCount":0,"invariantPackCount":0},"report":{"reportId":"lab_attack-xchain-timelock-inversion-v0_20260610225855222","fixtureId":"attack-xchain-timelock-inversion-v0","generatedAt":"2026-06-10T22:58:55.222Z","app":{"name":"ATTACK: timelock-inversion","slug":"attack-xchain-timelock-inversion","version":"0.0.1","kernel":"xchain-attack-model"},"environment":{"mode":"mock-fakenet","grpcEndpoint":"n/a","fakenetCommand":"model","notes":["NEGATIVE CONTROL (expectRejected=true): a cross-chain exploit that the invariant MUST catch.","First-funded (Nockchain) refund window <= the Base claim window (free option / theft).","expectRejected inverts a CAUGHT exploit to a green PASS (a signed proof-of-prevention)."]},"summary":{"status":"pass","stepsPassed":1,"stepsFailed":0,"invariantsPassed":0,"invariantsFailed":1,"alertsClear":0,"alertsTriggered":0,"snapshotsCaptured":2,"durationMs":17,"expectRejected":true,"rawStatus":"fail"},"invariantPacks":[],"steps":[{"id":"observe","type":"bridge","title":"Observe the terminal joint state","status":"pass","expectation":"xchain.observed == true","observed":"true","beforeHash":"8dfc45b110a33bfc","afterHash":"61e1a041e3b2b9c2","stateDiffs":[{"path":"xchain.observed","before":"undefined","after":"true"}],"durationMs":19}],"invariants":[{"id":"timelock-ordering","title":"First-funded refund > second claim window","severity":"critical","status":"fail","observed":"FREE OPTION: first-funded nockchain=100 <= base=200","expected":"refund timelock on the first-funded leg > claim window on every other leg under xchain"}],"alerts":[],"adapterObservations":[],"stateSnapshots":[{"label":"Initial state","stateHash":"8dfc45b110a33bfc","state":{"xchain":{"preimage":"aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa","legs":[{"chain":"nockchain","hashAlgo":"tip5","commitment":"t1p5cccccccccccccccccccccccccccccccccccccccccccccccccccccccccccc","derivedFromSharedPreimage":true,"timelockBlocks":100,"fundsFirst":true},{"chain":"base","hashAlgo":"sha256","commitment":"e0e77a507412b120f6ede61f62295b1a7b2ff19d3dcc8f7253e51663470c888e","derivedFromSharedPreimage":true,"timelockBlocks":200,"fundsFirst":false}],"settlement":["claimed","claimed"]}}},{"label":"After observe","stateHash":"61e1a041e3b2b9c2","state":{"xchain":{"preimage":"aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa","legs":[{"chain":"nockchain","hashAlgo":"tip5","commitment":"t1p5cccccccccccccccccccccccccccccccccccccccccccccccccccccccccccc","derivedFromSharedPreimage":true,"timelockBlocks":100,"fundsFirst":true},{"chain":"base","hashAlgo":"sha256","commitment":"e0e77a507412b120f6ede61f62295b1a7b2ff19d3dcc8f7253e51663470c888e","derivedFromSharedPreimage":true,"timelockBlocks":200,"fundsFirst":false}],"settlement":["claimed","claimed"],"observed":true}},"stepId":"observe"}],"stateDiffs":[{"path":"xchain.observed","before":"undefined","after":"true"}],"nextActions":["Replace mock poke and peek execution with local fakenet adapter calls.","Replace command-backed fakenet metadata probes with stable gRPC-native probes once node surfaces are available.","Persist generated reports under a project workspace.","Add app-specific invariant packs as the NockApp interface stabilizes."]},"markdown":"# ✅ ATTACK: timelock-inversion Lab Report\n\n> **PASS** — 1/1 steps · 0/1 invariants · 0 alerts · 17ms\n\n| Field | Value |\n| --- | --- |\n| Report | `lab_attack-xchain-timelock-inversion-v0_20260610225855222` |\n| Fixture | `attack-xchain-timelock-inversion-v0` |\n| Status | ✅ pass |\n| Steps | 1 passed, 0 failed |\n| Invariants | 0 passed, 1 failed |\n| Alerts | 0 clear, 0 triggered |\n| Snapshots | 2 |\n\n## Steps\n\n- ✅ `observe` — true _(xchain.observed == true)_; 8dfc45b110a33bfc -> 61e1a041e3b2b9c2\n  - xchain.observed: undefined -> true\n\n## Invariants\n\n- ❌ `timelock-ordering` — FREE OPTION: first-funded nockchain=100 <= base=200 _(expected refund timelock on the first-funded leg > claim window on every other leg under xchain)_\n\n## Alerts\n\n- No alert policies configured.\n\n## Adapter Observations\n\n- No adapter observations captured.\n\n## State Diffs\n\n- xchain.observed: undefined -> true\n\n## Snapshot Timeline\n\n- Initial state: 8dfc45b110a33bfc\n- After observe: 61e1a041e3b2b9c2\n\n","evidence":{"stateDiffCount":1,"snapshotCount":2,"alertCount":0,"triggeredAlertCount":0,"clearAlertCount":0,"triggeredCriticalAlertCount":0,"triggeredWarningAlertCount":0,"triggeredInfoAlertCount":0,"environmentMode":"mock-fakenet","grpcEndpoint":"n/a","environmentNoteCount":3,"nextActionCount":4,"firstNextAction":"Replace mock poke and peek execution with local fakenet adapter calls.","invariantPackCount":0,"invariantPackIds":[],"invariantPackDomains":[],"firstInvariantPackPath":"","changedPaths":["xchain.observed"],"markdownPreview":"# ✅ ATTACK: timelock-inversion Lab Report"}}