Authorization Receipts
What action-bound organizational approval evidence was produced under the receipt profile?
One approval-evidence profile. It does not establish scoped authority or evidence satisfaction by itself.
Read Receipts -12 →The open Protocol lets a customer, partner, or reviewer check one portable evidence packet without trusting an EMILIA dashboard.
Give anyone the free machinery to verify one evidence packet without trusting EMILIA.
Gate exact actions before consequences. The Protocol makes the supporting record independently checkable. Start with one exact material action and its approval artifact, carry it into the host record, establish scoped authority under the relying party's trust roots, then evaluate whether the verified, action-matched bundle satisfies that party's evidence requirement.
This is a reader-facing path over four active individual Internet-Drafts. It does not merge, replace, retire, or subordinate the rest of the protocol portfolio.
What action-bound organizational approval evidence was produced under the receipt profile?
One approval-evidence profile. It does not establish scoped authority or evidence satisfaction by itself.
Read Receipts -12 →How is named-human authorization evidence bound into an adjacent host record?
A host-agnostic by-value or by-reference binding. It does not redefine the authorization artifact or host format.
Read Binding -00 ↗Under the relying party's trust roots, did the verified key have authority for this scope?
Trust-root introduction and scoped authority. Signature verification alone does not create authority.
Read Authority -03 ↗Does the natively verified, action-matched bundle satisfy the relying party's evidence requirement?
Returns SATISFIED or UNSATISFIED. It never returns a universal authorization verdict.
Read AEC -06 →Each result has a separate owner and claim. Passing one stage never silently proves a later one.
The protocol keeps evidence portable. Gate joins that evidence to local authority and one-time admission at the protected effect boundary.
Bind the operation, target, material parameters, actor, and context before asking for authority. A receipt for a different payload does not transfer.
Check each artifact under its native rules and relying-party-pinned trust inputs, then match every required leg to the same material action.
AEC satisfaction is evidence, not permission. Gate applies local policy and current-status checks, then reserves one-time admission at the protected boundary before the provider call begins.
Preserve refusal, consumption, and outcome evidence. An indeterminate provider result enters authenticated reconciliation; it is not fresh authority to retry.
The four documents define portable evidence semantics. Gate enforces only on the configured effect-capable boundaries a deployment actually controls. A complete-mediation claim needs current deployment evidence that every in-scope route is covered.
Read the current posted receipt profile, then continue through binding, authority, and AEC.
New drafts, conformance releases, and reference updates — sent only when there’s something worth your time.
No spam. One email field, nothing else.