Variant table ready: .spt/preserved/297-enforcement-shape/variant-table-run-02.txt (JSON sibling), raw scratch-probe/run-02/variants.json. Package Any is isolated by the one-factor control: minimal OK/[5,1], minimal+Package Inactive/[5,20]. All four Package variants are Inactive; all fifteen others OK/[5,1]. LocalUser hypothesis refuted; full-minus-LocalUser and full-minus-all3 identities remain Inactive. ZERO rows satisfy current exact[1] criterion. Cleanup complete. I can regress/remove Package Any now, but that alone cannot pass the current verifier. Proposed next measurement: same minimal rule under Private, Domain, Any, and Private+Domain, with a full-minus-Package row; raw arrays/PrimaryStatus plus active-profile census, no criterion relaxation. Please rule the verification path after that evidence; I will not silently accept [5,1]. Consumer legs remain held.