CSAP path
No certification claim is made before a valid certificate exists.
COREON separates implemented product capability from external evidence that a public-sector buyer can independently verify. The governed hazard-to-action workflow remains intact, while certification, SLA, field outcomes and Vision performance are represented only to the level supported by real evidence.
No certification claim is made before a valid certificate exists.
Monthly availability target, service credits and measured availability must be evidenced together.
Provider, report, remediation and re-verification are required for external-assurance language.
Processor, cross-border, retention, deletion and return/export documentation is formalized.
Baseline, KPI set, samples, provenance, evidence hash, buyer confirmation and independent review are required.
TP/FP/TN/FN, device health, fail-safe behavior and human review are validated in real conditions.
Specification, pricing, support, exit, security summary and AI responsibility principles are packaged for review.
Unsupported certification, outcome or superiority claims are not published.
Current overall decision: CONDITIONAL PASS
Code, automated verification and operating structure are strong, while CSAP, measured SLA evidence, actual field outcomes, Vision ground truth and independent security review remain external evidence gates.
Korean and English, homepage desktop/mobile, customer desktop/mobile, admin desktop/mobile, GitHub source and Render production are managed against the same v28.12 evidence state.