GOVERNED CLAIMS REGISTER

Public wording must have an evidence source and limitation.

Approved public claims, status, evidence source, scope, owner, limitations and approval state.

IDPublic claimStatusEvidence sourceVersion / scopeOwnerLimitationsApproval
CLM-001Trusted Key Token is a FIPS 140-3 Level 3 validated hardware cryptographic moduleValidatedNIST CMVP Certificate #5331 and public Security PolicyIdentified module and validated firmware/configurationProduct SecurityDoes not imply PQC algorithm validationApproved
CLM-002Mobile-ID provides QuantumSafe readiness, architecture, pilot, migration, validation and operation servicesAvailable serviceService catalogue and approved statement of work templatesProject-defined scopeQuantumSafe ProgramSpecific product capability remains version-specificApproved
CLM-003Specific ML-KEM/ML-DSA/Hybrid capabilityPilot / release-specificApproved capability matrix and project evidenceAlgorithm, parameter, provider, firmware, OS and application requiredProduct EngineeringNot covered by #5331 unless separately evidencedConditional