Earlier, you followed a chip from sand to server and saw that verifiability depends on where you sit in the supply chain. Documents behave the same way. A verification report draws on sources upstream of it and feeds decisions downstream of it, and writing a useful one starts with understanding both. To watch this happen in a regime that already runs at treaty scale, sit with the one international inspectorate that has been doing this work for decades: the International Atomic Energy Agency.
The Setup
Put yourself on an IAEA verification team at the Fordow Fuel Enrichment Plant in Iran in January 2023. Iran is a party to the Nuclear Non-Proliferation Treaty and has a safeguards agreement with the Agency, so it must declare its nuclear material and enrichment activity, and the Agency's job is to confirm that the declaration is complete and correct. Iran has declared that it enriches uranium at Fordow to 60 percent U-235. That is already far above the 3.67 percent cap of the 2015 nuclear deal and well beyond any civilian power need, though still short of the roughly 90 percent that counts as weapons grade.
Your first draft of the central finding reads:
"Enrichment at Fordow is 60 percent U-235, below weapons grade, and the facility's operating records match the declaration."
Pause before reading on. What is wrong with this sentence? Every clause in it is true.
The problem is provenance. Iran declared the 60 percent figure, and the Atomic Energy Organization of Iran, which runs the plant, keeps the operating records that "match" it. Two sources produced by the same side agreeing with each other is not verification; it is one actor being consistent with itself. Your draft presents that internal consistency as if it were confirmation, and it leaves out the one stream that came from somewhere else.
Three sources sit upstream of your report, and they do not deserve equal trust:
- Iran's declaration. Iran is the party the treaty binds, which gives it the strongest reason to understate enrichment or omit activity it would rather not explain.
- The facility's operating records. The operator maintains these itself, and an operator has every reason to keep its records consistent with the state's declaration.
- Independent Agency measurements. Environmental swipe samples, tamper-indicating seals and cameras the Agency installs, and satellite imagery of the site are all difficult for Iran to alter after the fact. None of them restates Iran's declared number; the inspectorate collects or controls each one, which is what lets them check the declaration rather than echo it.
Here the independent stream is decisive. Inspectors swiped surfaces at Fordow and sent the samples to the Agency's laboratory in Austria, which can detect uranium particles at below a trillionth of a gram and read their enrichment level directly. The swipe taken on 22 January 2023 contained particles enriched to 83.7 percent U-235, above the declared 60 percent and close to weapons grade. Inspectors had also found two IR-6 centrifuge cascades configured substantially differently from what Iran had declared.
A revision that keeps each source attached to its claim:
"Iran declares enrichment at Fordow to 60 percent U-235, and the operating records kept by the Atomic Energy Organization of Iran agree with that declaration. Environmental swipe samples the Agency collected on 22 January 2023 contained particles enriched to 83.7 percent U-235, above the declared level and approaching weapons grade, and inspectors found two IR-6 cascades configured substantially differently from the declaration. Iran attributes the particles to unintended fluctuations while transitioning cascades toward 60 percent production. The Agency has not confirmed that account, and discussions to clarify the matter are ongoing."
The revision is longer and less quotable. In exchange, every claim now carries its source, and a reader can weigh each one against the actor that produced it. That matters because your readers will apply the same test to you.
Downstream: Who Acts on This?
Two readers will use this finding, and each needs something different from it.
The IAEA Board of Governors has to decide whether the finding meets the bar to declare Iran in non-compliance with its safeguards obligations and report the matter to the UN Security Council, or whether to press Iran for more access first. The Board needs a determination measured against the safeguards standard: whether the 83.7 percent result and the reconfigured cascades clear the threshold for escalation, and what further evidence would resolve Iran's explanation one way or the other. A page of particle counts does not, on its own, tell them whether to act.
Independent analysts, at organizations such as the Institute for Science and International Security, will not accept the Board's determination on faith. From where they sit, the Agency is itself an upstream source with incentives of its own; it has to preserve working access inside Iran, and that can soften how it words a finding. They need the discrepancy itself, with the date, the enrichment level, and which cascades were involved, so they can point their own collection at it, for example commercial satellite imagery of Fordow and tracking of Iran's centrifuge procurement.
A report written only as a determination gives the analysts nothing to check. A report written only as raw findings gives the Board no basis to act. Effective verification writing has to do both, and the revision above aims to do that in one passage.
The Takeaway
No verification document stands alone. An actor with incentives produced every source upstream of you, and everything you write becomes an upstream source for readers who will weigh your incentives in turn.
Before writing, answer two questions.
- Upstream: whose claims does this document rely on, and which of them did I verify myself, rather than inherit from the actor being checked?
- Downstream: who will act on this document, and what does each reader need in order to act?
The structure carries over to the compute reports this track is building toward. A future report on a training run rests on the same three layers: the lab's own declaration, the utilization logs kept by the cloud provider that hosted the run, and physical streams that are harder to fake, such as on-chip attestation, chip location tracking, and the facility's measured power draw. The IAEA case is decades ahead of the AI case in practice, which is why it is worth reading closely: the questions an inspector asks of a swipe sample are the questions you will ask of a power meter.
Sources for this case: IAEA quarterly report to member states, late February 2023, on the 83.7 percent U-235 particles found at Fordow and Iran's explanation; IAEA materials on environmental swipe sampling and safeguards verification.
The next exercise asks you to apply this directly. You will assemble a report from a pool of candidate details and connect each detail to the reader who needs it. The standard is the one demonstrated here: every claim carries its source, and every finding reaches the actor who acts on it.
The Context Distiller Exercise
The next page is that exercise. Four reports are on the table; you pick one and work the whole chain — clip the facts that would change what a reader does, distil them, name who the report was built from and who reads it next, then thread each point to the readers who need it.
Written output · 1.7
Case Briefing on Actors
Named in the module timing table as a 15–20 minute written exercise. No brief, audience or rubric is drafted. Draft into it anyway if you like — the brief will appear here once it exists.
- Budget
- about 600 words

