Can you use public-key signatures like RSA/ECDSA like TLS certificates do but for agents entering logs? So the private key remains private to agent only, not even the LLM. Also, each log entry could include the hash of the previous one before the agent signs it so any alternation in previous log signatures break the ones after it, like block chains do.