The TSF derives the final symmetric keys securely from raw data according to the protocol: sifting, parameter estimation, error correction and privacy amplification, with an amount of privacy amplification that parameter estimation justifies and aborted sessions yielding no key. Part 2's EAs 6.2 and 6.3 test it against an emulator.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.