Check a record
Check a model’s record, on your own computer.
Load a record and get plain answers: was it changed, who signed it, do you trust them, and do the model’s files match. Everything runs in this page. Nothing you load is uploaded or leaves your computer.
Loading the checker…
-
1 The record
The record is a small file that comes with the model, usually ending in
.vmror.json. -
2 Whose key do you trust?
A record proves who signed it only against a key you decide to trust. This page trusts no one until you say so.
Copy it from the issuer’s own website, a signed letter or a call with them. Never from the record: a forger’s record would show the forger’s key. Spaces don’t matter; capital letters do.
Choose more than “not stated” only if the issuer’s own publication says so.
A key list says which keys you trust, and for which issuers. Your organisation, an auditor or a regulator may give you one.
-
3 Rules to grade it against optional
A policy pack is a set of rules written from a published text. It grades only what the record declares.
The reference packs are KHALM’s reading of each text. No regulator or standards body wrote or endorsed them, and a result is not a legal finding. About the packs.
-
4 The model’s files optional
If you have the model itself, choose its folder. Each file is read on your computer to compute its fingerprint (a SHA-256 hash); large models take a while.
Choose a record and a key to trust first.
What this page can and can’t tell you
It can tell you that a record was not changed after it was signed, that a key you trust signed it, and that the files you hold are the files it lists.
It can’t tell you that what the record declares is true. Its lineage, training and environment are the issuer’s signed statements: fixed, attributable and checkable, but statements.
It checks one record on its own. If a record builds on earlier records, their history isn’t checked here, and there is no place to load a separate list of trusted policy-pack authors. The vmr command-line tool does both.
What runs here
The same checker as the vmr command-line tool, built for the browser. It has no access to the network, the clock or anything else: the time it checks against is your computer’s, and the page tells you so.
Checker version and fingerprint appear here once it loads.