Technical evidence for reliance decisions. Not an insurance decision.
EMILIA Gate adds a bounded risk plane around the exact authorization lifecycle: a carrier-readable control schedule, customer-owned responsibility terms, declared open-exposure custody, signed technical refusals, provider-outcome evidence, period population reconciliation, and one re-performable action packet.
An insurer, auditor, or customer can re-perform those artifacts under independently pinned inputs. EMILIA does not supply the underwriting, legal, coverage, causation, completeness, solvency, adjudication, or payment conclusion.
Seven evidence surfaces. None can authorize an action by itself.
Terms, authority, exposure, outcome, and recourse stay separate.
The loss schedule records customer-supplied terms. Authorization still comes from the existing exact-action evidence and local policy. The Open Exposure Ledger reserves a declared amount before provider entry and preserves uncertainty without granting a retry. Reconciliation accepts authenticated outcome evidence; it does not decide legal loss or policy coverage.
The reference artifacts are open and reproducible: read the architecture contract.
A synthetic payment-release pilot shows the complete and hostile paths: inspect the runnable example.
Start with one exact action and one declared exposure boundary.
No. EMILIA is technical enforcement and evidence infrastructure. It does not insure, decide policy coverage, allocate or bear loss, establish liability, adjudicate a claim, or move money.
It proves that the signed technical statement binds the named action, program, failed requirements, challenge, nonce, custody, and time under the pinned verification inputs. It is not a legal denial, an adverse-benefit denial, or proof that a refusal was substantively correct.
No. It signs the supplied inventory roots and conserving counts for a bounded period. Completeness needs separate system-of-record evidence. The receipt census also uses only coarse primary suppression, not differential privacy.
A carrier can run the public schedule and packet code with its own trust pins and native artifact verifiers. The packet module orchestrates those verifiers; it does not ship production adapters or make a callback trustworthy. The current implementation is JavaScript, and no insurer adoption or external deployment is claimed.
EMILIA does not insure, bear or allocate loss, adjudicate disputes or losses, establish legal enforceability, prove insurance coverage, causation, solvency, or source-population completeness, or move money. Refusal statements are exact technical evidence, not legal or adverse-benefit denials. No external deployment or insurer adoption is claimed.