vault zone
- source events
- claims & summaries
- identity bindings
- policies & keys
private sources remain inside the vault. approved context crosses through policy as an expiring, recipient-bound bundle; every operation leaves a receipt.
six recorded steps move context from capture to bounded action. receipts record outcomes & route proposed writeback through policy.
the vault remains authoritative. each consumer receives an expiring bundle with explicit capabilities & restrictions.
native source events retain origin, time, visibility & integrity
claims remain linked to source evidence, confidence & validity
private sources, policy, identity bindings & keys stay authoritative
requester, purpose, scope, recipient, expiry & approval produce one decision
the consumer receives only approved facts, capabilities & restrictions
tools & writeback remain bounded by the bundle, then create receipts
capture receipt → policy receipt → disclosure receipt → action receipt
local execution does not establish authorization. policy, recipient binding & expiry still apply.
authenticated client & delegated authority
declared task class & intended outcome
requested selectors, actions & sensitivity
model, agent, tool or application binding
expiry, retention & revocation state
human review when policy requires it
the receipt preserves inputs, the policy snapshot & reason codes.
name the purpose, recipient, scope, actions & validity window
evaluate identity, policy, sensitivity, expiry & approval
issue the minimum approved facts, capabilities & restrictions
bind side effects to the granted capability set
record the outcome without copying private payloads
stage memory updates for review, supersession or rejection
download a portable summary of the request, decision, disclosure, action & writeback lifecycle, or read the specification for the complete contract.