Clear it in 3 steps
Start the environment
Investigate the target
Submit the flag

findings.json is generated from the FLAG injected at startup. Locate the reachable critical finding and reverse reversed_token to recover the flag.
Inspect findings.json and identify the target record
locate the reachable critical finding and reverse reversed_token
Verify that the reconstructed value has FLAG{...} format