◷ OpenTimestamps

Hashes submitted to blockchain

The final hashes of the SSL certificate chain+requests+responses, as well as the TLSNotary zk proof (if enabled) are submitted to the Bitcoin blockchain for timestamping via OpenTimestmaps.

Download timestamp proof · Download stamped manifest

Archive Merkle root
$ROOT_HASH
Stamped manifest SHA-256
$MANIFEST_SHA256

Upgrade and verify later

Keep both files together. After Bitcoin confirmation, upgrade and verify with the OpenTimestamps client:

ots upgrade hashes.json.ots
ots verify hashes.json.ots

How the archive trust chain works · OpenTimestamps client documentation