Open to anyone
Check as often as you need, on whatever you are handed.
Read the full provenance on any file.
Read what comes back on any artifact: which identities contributed, when, which workflow steps it passed through, and whether the provenance still holds. It works on files from any vendor, not just ours.
Have a platform account? The full validator keeps a history of what you have checked. This one keeps nothing.
Check as often as you need, on whatever you are handed.
One tool across the artifact types your organisation actually ships.
It reads artifacts we had nothing to do with. That is the point of open standards.
Everything in one result.
Provenance rarely lives in one place, and checking it usually means several tools and several answers that have to be reconciled by hand. The validator reads the formats that matter and reports them together.
Which identities contributed and under which authority, plus every edit since. If a step was added or removed, the chain breaks and you see where. C2PA and compatible manifests.
Whether the provenance was independently witnessed, and when — so it cannot be backdated or quietly withdrawn later. Sigstore among others.
For software: which source, which build system, and at what assurance level. The difference between a binary that claims an origin and one that can show it.
Anyone can validate an artifact here. If you need to attest at scale under policy, that is the platform.