Evidence
4 photos, 7.5 MB, plus one stock reference. Every photo's EXIF capture time is compared to the incident window: a photo taken before the damage was reported is either the reference shot or a problem, and either way the page says which.
One incident end to end: the evidence, the unit it attaches to, the duplicate that was rejected and the one that was merged, the disposition and who signed it, the exact ledger rows it produced, and the compensating pair that fixed the first decision without editing anything
4 photos, 7.5 MB, plus one stock reference. Every photo's EXIF capture time is compared to the incident window: a photo taken before the damage was reported is either the reference shot or a problem, and either way the page says which.
Three levels of precision. This incident has all three, which is the best case and not the common one: 31 of 96 incidents MTD carry an EPC.
Who, where, and which scan. The two reports that became this one incident are both shown, because the merge does not erase the second reporter.
Every candidate placed at its real offset from this incident. The rule is a shared match key plus 48 hours, with precedence unit, then carton, then SKU and location and context. Only an exact unit match may auto-merge.
Grade is minor, so two of five exits are refused by the API rather than hidden by the UI. A control you can press and be refused teaches nothing; a control that is visibly unavailable with its reason teaches the rule.
The chain shown against a live tier-2 request on a sibling incident, so the shape is visible rather than described.
| Entry | Occurred | SKU | Location | From | To | Delta | Balance after | Source type | Idempotency key | Approval |
|---|---|---|---|---|---|---|---|---|---|---|
| LE-8842011 | 29-07 11:02:14 | MIN-VAS-022 | MCC | DISPLAY_GOOD | - | -1 | 3 | damage_confirm | i3:dmg:DMG-2026-0729-014:hold | - |
| LE-8842012 | 29-07 11:02:14 | MIN-VAS-022 | MCC | - | QUARANTINE | +1 | 1 | damage_confirm | i3:dmg:DMG-2026-0729-014:hold | - |
| LE-8842388 | 29-07 13:40:02 | MIN-VAS-022 | MCC | QUARANTINE | - | -1 | 0 | damage_dispose | i3:dmg:DMG-…-014:disp:v1 | - |
| LE-8842389 | 29-07 13:40:02 | MIN-VAS-022 | MCC | - | WRITTEN_OFF | +1 | 1 | damage_dispose | i3:dmg:DMG-…-014:disp:v1 | WO-…-004 |
| LE-8842501 | 29-07 14:18:37 | MIN-VAS-022 | MCC | WRITTEN_OFF | - | -1 | 0 | damage_revise | i3:dmg:DMG-…-014:rev:v1:out | WO-…-004R |
| LE-8842502 | 29-07 14:18:37 | MIN-VAS-022 | MCC | - | QUARANTINE | +1 | 1 | damage_revise | i3:dmg:DMG-…-014:rev:v1:in | - |
| LE-8842503 | 29-07 14:18:37 | MIN-VAS-022 | MCC | QUARANTINE | - | -1 | 0 | damage_dispose | i3:dmg:DMG-…-014:disp:v2 | - |
| LE-8842504 | 29-07 14:18:37 | MIN-VAS-022 | MCC | - | DISPLAY_DAMAGED | +1 | 1 | damage_dispose | i3:dmg:DMG-…-014:disp:v2 | - |
| UL-441207 | 29-07 11:02:14 | E280…8F3C | MCC | on_display | damaged | unit | - | unit_damage | i3:unit:DMG-…-014:hold | - |
| UL-441466 | 29-07 14:18:37 | E280…8F3C | MCC | written_off | on_display | unit | - | unit_revise | i3:unit:DMG-…-014:rev:v1 | - |
| CL-220914 | 29-07 13:40:02 | MIN-VAS-022 | MCC | cost_ledger | damage_loss | -180.00 | AED 0 | writeoff_value | i3:cost:DMG-…-014:disp:v1 | WO-…-004 |
| CL-221038 | 29-07 14:18:37 | MIN-VAS-022 | MCC | damage_loss | cost_ledger | +180.00 | AED 180 | writeoff_reverse | i3:cost:DMG-…-014:rev:v1 | WO-…-004R |
Every row of damage_events. Actor kind is recorded alongside actor, so a decision made by a device or a rule is never mistaken for one made by a person.
Pick a damage incident from the register to see its evidence, its duplicates, its decisions and the ledger rows it produced.
The actor filter is set to actor_kind: human and the last 4 events on this incident were written by a rule and a device.
The photo CDN timed out on 3 of 5 thumbnails and the incident record itself loaded fine. Everything below the evidence card is accurate; the disposition controls are disabled, because a decision taken without seeing the evidence is exactly what the evidence requirement exists to prevent.
Your grant on app i3 is viewer. Evidence, timeline, ledger rows and the compensating pair are all visible, because the whole point of an audit surface is that it is readable. Confirm, grade, disposition, merge and sign are absent.
Nightly hash-chain verify. This incident's 12 ledger rows are being re-hashed and cannot accept a thirteenth until 21:25. Evidence upload still works, because a photo is not a ledger row.
Everything on this page is real and posted except the write-off chain, which runs in shadow: requests collect real signatures and the posting step is held. That is why WO-2026-0729-004 shows an approval and a reversal but the WRITTEN_OFF balance never moved outside shadow. The recovery figure is marked provisional.