Code List
The provenance record of one projected code list — exactly one per generated package. It names the source the entries were read from, the source's own version and the digest of the bytes read, and the producer that projected them, so the package can be verified against its source and regenerated identically.