{
  "_pruva_terminal_reconciliation": {
    "authored_artifact_closure_sha256": "bdc6b0ed35459cfb71d389fadc521679affb8b23a75c41fd41b1ba4055ef8b9b",
    "authored_runtime_manifest_sha256": "d4ea63cb26f3d724b4f14a5f3ef6817d9adc725f5cb9d2ad496208c75913fe0a",
    "authored_verdict_sha256": "325a1c69f39779b33aaa970c03325ba7e79a6cbeddac887efa313909bfef5332",
    "claim_matching": "evaluated",
    "schema_version": 2,
    "status": "completed"
  },
  "accepted_exploit_knowledge_record_ids": [
    "6aa5a860-8d4d-4746-b0af-6b19ac8caf72",
    "c0978e9b-a2bd-4a67-9c60-876dbeb72bb8"
  ],
  "attacker_controlled_input": "Sandboxed script run inside vm2 VM/NodeVM; script sets p.constructor[Symbol.species] on a host-realm Promise and calls p.then() with no onRejected",
  "claim_outcome": "confirmed",
  "claimed_impact_class": "sandbox_escape",
  "claimed_surface": "library_api",
  "crash_observed": false,
  "end_to_end_target_reached": true,
  "evidence_scope": "realistic_harness",
  "exploit_chain_demonstrated": true,
  "exploitability_confidence": "high",
  "inferred": false,
  "observed_impact_class": "sandbox_escape",
  "read_write_primitive_observed": false,
  "repro_result": "confirmed",
  "sanitizer_used": false,
  "trigger_path": "vm.run() -> host Promise.prototype.then bridge apply-trap -> V8 PerformPromiseThen Thrower -> species-hijacked resultCapability.[[Reject]] -> raw host process object delivered to sandbox closure -> host child_process.execSync",
  "validated_surface": "library_api"
}
