The short answerRetain both completed reviewer files and the original E045 hashes. Reconstruct each blank packet by clearing only its six return fields, verify the exact restricted key and every mapped evidence row, then release a joined pre-adjudication record only if all checks pass.
Consistency is not authenticityA matching reconstruction shows consistency with the references supplied here. It does not authenticate the references, prove reviewer identity or independence, establish successful blinding, or make either label correct.

Gate the handoff before agreement or adjudication

Reconstruct both blanksKeep each returned row order and first seven fields, clear only the six return fields, and compare the canonical SHA-256 with the retained blank hash.
Verify the restricted joinRequire the exact key hash, unique mappings, exact reviewer-visible evidence, and declared completion vocabulary before releasing a joined file.
Preserve, do not decideBoth original label sets remain separate. The page computes no agreement, consensus, truth, accuracy, correction, or adjudicated label.
Browser-local pre-adjudication control

Check the two returns and key

Nothing is uploaded. Exact imported hashes cover the supplied bytes; reconstructed hashes cover canonical blank packets derived from the parsed returns.

01 · Handoff identity

Name the record, people, codebook, and confidence policy

These are coordinator declarations recorded in the memo. The page does not verify identities or an external codebook file.

Enter 1–12 unique, case-sensitive values separated by commas. Whitespace around separators is removed.
02 · Return locks and process declarations

Record separate return locks before opening the key

Timestamps must include Z or a numeric UTC offset. The confirmations are declarations, not access-control or chronology proof.

03 · Retained references

Enter the original E045 artifact hashes

Use the packet generator’s exact reviewer-A, reviewer-B, and restricted-key SHA-256 values retained before release.

04 · Completed returns and exact key

Import the three E045 CSV files

Each file must be valid UTF-8, use its exact header and column order, and stay within 5 MB and 5,000 data rows.

Exact 13-column reviewer-packet schema.
No file selected.
Exact 13-column reviewer-packet schema.
No file selected.
Exact 22-column E045 key schema.
No file selected.
Local processing. File decoding, exact hashing, reconstruction, mapping checks, preview, and downloads happen in this browser. Reloading clears every imported file and output.

Exact E045 input schemas

The checker accepts only the packet generator’s exact 13-column reviewer header and exact 22-column restricted-key header. It does not guess renamed, reordered, or missing columns.

Required reviewer packet columns in exact order
Columns 1–7: reconstructed blankColumns 8–13: completed returnCompletion rule
packet_id, target_entity, exact_prompt, answer_text, citation_evidence, engine_surface, run_timestampbrand_mentioned, brand_cited, actively_recommended, reviewer_confidence, abstention_reason, reviewer_noteAll three endpoints are exact and nonblank. Unknown or ineligible requires a reason. Confidence follows the frozen vocabulary; note is optional.
Required restricted-key columns in exact order
Identity and mappingsEvidence and concealed metadataEligibility and inclusion
source_response_id, packet_a_id, packet_b_idtarget_entity, exact_prompt, answer_text, citation_evidence, original_engine_surface, reviewer_engine_surface, original_run_timestamp, reviewer_run_timestamp, collection_period, comparison_arm, prior_label, expected_outcome, evidence_reference, collector_notereview_eligibility, exclusion_reason, residual_cue_status, residual_cue_note, packet_inclusion

Method, release posture, and limits

The checker hashes the exact imported bytes. It separately reconstructs each original blank reviewer packet by preserving the parsed row order and first seven fields, clearing only the six return fields, and serializing every field in double quotes with UTF-8 and CRLF. This allows ordinary CSV quoting and line-ending reserialization while making any changed ID, evidence value, row, order, or retained spreadsheet-safety prefix visible through the reconstructed hash.

A passing run requires both reconstructed hashes, the exact restricted-key hash, unique and complete mappings, exact reviewer-visible evidence, completed endpoint fields, valid abstention reasons, the frozen confidence vocabulary, and all process declarations. The joined CSV retains the full key metadata plus both separate return-field sets; it contains no agreement, consensus, accuracy, truth, or adjudication field.

Spreadsheet-oriented export defenseNewly returned fields whose first non-whitespace character is =, +, -, @, , , , or receive a disclosed leading horizontal tab only in the joined download. Existing packet and key values are not re-defended. This changes output bytes and is not universal protection across spreadsheet importers.

The checker does not upload, store, share, sign, authenticate, correct, overwrite, calculate agreement, score accuracy, vote, adjudicate, certify compliance, or enforce key custody. Hash matches do not prove file authorship, external retention, independent review, successful blinding, label correctness, or fitness for a decision.

Method sources and workflow context

Frequently asked questions

What files does the reviewer return integrity checker require?

It requires completed reviewer-A and reviewer-B CSVs from the Quoted First packet generator, the exact restricted-key CSV, and retained SHA-256 references for both original blank packets and the key. Each input is limited to valid UTF-8, 5 MB, and 5,000 data rows.

Why reconstruct each blank reviewer packet?

Clearing only the six return fields and canonically reserializing the imported values checks whether packet IDs, evidence, rows, order, and retained spreadsheet-safety prefixes still match the original blank-packet hash while allowing intended label entry and ordinary CSV reserialization.

Does a matching hash prove a file is authentic?

No. A match establishes consistency with supplied references and deterministic reconstruction. It does not prove who created or retained a file, whether the references are authentic or out-of-band, or whether the original files were already altered before their hashes were recorded.

What reviewer labels are accepted?

Mention, citation, and active-recommendation fields accept only yes, no, unknown, or ineligible. Unknown or ineligible requires a nonblank abstention reason. Confidence follows a coordinator-frozen case-sensitive vocabulary of at most twelve values; blank is allowed only when predeclared.

Does this checker calculate agreement or adjudicate labels?

No. It preserves both returned label sets and produces a pre-adjudication join only after integrity checks pass. It computes no agreement statistic, accuracy score, consensus, majority vote, correction, or final label.

Where are the reviewer files sent?

Nowhere by this page. Parsing, exact hashing, reconstruction, mapping checks, preview, and downloads happen locally in the current browser tab. Reloading clears the imported files and results.

After the integrity gate passes

Measure agreement without overwriting either reviewer

Use the preserved pre-adjudication label sets for endpoint-specific agreement QA. Keep any later resolution separate from the original independent record.

Open reviewer agreement calculator