# A-004

- **Artifact ID:** A-004
- **Status:** ACTIVE
- **Public record:** https://record.cybersecurityhq.com/assumptions#A-004
- **Machine-record SHA-256:** `b994f6578f24fe65f28082f5a1bf47212f44d9f3db12202074bc0983b9974114`

## Complete structured record

```json
{
  "id": "A-004",
  "statement": "Verification failures can be remediated locally",
  "status": "ACTIVE",
  "category": "Closure & Governance Signals",
  "ledger_references": [
    "2026-03-24 — CHQ-P-2026-014 evidence set: When the management plane is compromised, systems required for local remediation are themselves under attacker control. Cisco FMC controls firewall policy; Quest KACE controls endpoint patching and deployment; Stryker/Intune managed device recovery. Recovery denial is a structural consequence of management plane compromise, not an optional attacker choice."
  ],
  "evidence_count": 17,
  "last_updated": "2026-05-13",
  "related_positions": []
}
```
