| E34-L1 | intelligence is not authority | Policy, law & governance | held |
| E34-L2 | identity is not authority | Policy, law & governance | held |
| E34-L3 | capability is not authority | Policy, law & governance | held |
| E34-L4 | memory is not authority | Policy, law & governance | held |
| E34-L5 | reputation is not authority | Policy, law & governance | held |
| E34-L6 | confidence is not authority | Policy, law & governance | held |
| E34-L7 | consensus is not authority | Policy, law & governance | held |
| E34-L8 | prediction is not authority | Policy, law & governance | held |
| E34-L9 | simulation is not authority | Policy, law & governance | held |
| E34-L10 | optimization is not authority | Policy, law & governance | held |
| E34-L11 | reward is not authority | Policy, law & governance | held |
| E34-L12 | economic value is not authority | Policy, law & governance | held |
| E34-L13 | model size is not authority | Policy, law & governance | held |
| E34-L14 | compute is not authority | Policy, law & governance | held |
| E34-L15 | self-improvement is not authority | Policy, law & governance | held |
| E34-L16 | proof is not authority | Policy, law & governance | held |
| E34-L17 | a valid proof does not create permission | Policy, law & governance | held |
| E34-L18 | a governance receipt does not create authority | Policy, law & governance | held |
| E34-L19 | a model cannot authorize itself | Policy, law & governance | held |
| E34-L20 | an agent cannot authorize itself | Policy, law & governance | held |
| E34-L21 | a child agent cannot grant itself more authority than its parent | Policy, law & governance | held |
| E34-L22 | a collective cannot create authority by voting | Policy, law & governance | held |
| E34-L23 | a market cannot create authority by price | Policy, law & governance | held |
| E34-L24 | a reputation system cannot create authority | Policy, law & governance | held |
| E34-L25 | a revoked authorization cannot resurrect | Policy, law & governance | held |
| E34-L26 | unknown never silently becomes allow | Policy, law & governance | held |
| E34-L27 | no enforcement, no claim of control | Policy, law & governance | held |
| E34-L28 | no E8 commit, no claim of governed execution | Policy, law & governance | held |
| E34-L29 | no evidence, no verified outcome | Policy, law & governance | held |
| E34-L30 | no proof, no verified governance | Policy, law & governance | held |
| E34-ENVELOPE-proof_id | the envelope binds proof_id for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-proof_version | the envelope binds proof_version for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-action_id | the envelope binds action_id for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-operation_id | the envelope binds operation_id for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-transaction_id | the envelope binds transaction_id for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-agent_identity | the envelope binds agent_identity for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-agent_passport_digest | the envelope binds agent_passport_digest for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-identity_state | the envelope binds identity_state for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-capability_state | the envelope binds capability_state for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-delegation_chain | the envelope binds delegation_chain for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-authority_state | the envelope binds authority_state for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-authority_digest | the envelope binds authority_digest for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-policy_digest | the envelope binds policy_digest for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-policy_version | the envelope binds policy_version for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-context_digest | the envelope binds context_digest for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-evidence_digest | the envelope binds evidence_digest for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-risk_digest | the envelope binds risk_digest for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-decision_digest | the envelope binds decision_digest for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-trajectory_digest | the envelope binds trajectory_digest for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-world_state_digest | the envelope binds world_state_digest for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-model_runtime_identity | the envelope binds model_runtime_identity for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-model_runtime_version | the envelope binds model_runtime_version for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-execution_environment | the envelope binds execution_environment for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-capability_used | the envelope binds capability_used for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-resource_target | the envelope binds resource_target for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-requested_effect | the envelope binds requested_effect for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-authorization_id | the envelope binds authorization_id for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-authorization_scope | the envelope binds authorization_scope for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-authorization_expiry | the envelope binds authorization_expiry for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-authorization_nonce | the envelope binds authorization_nonce for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-e8_commit_id | the envelope binds e8_commit_id for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-enforcement_boundary | the envelope binds enforcement_boundary for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-enforcement_result | the envelope binds enforcement_result for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-execution_result | the envelope binds execution_result for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-outcome_evidence | the envelope binds outcome_evidence for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-revocation_state | the envelope binds revocation_state for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-conformance_state | the envelope binds conformance_state for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-governance_coverage | the envelope binds governance_coverage for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-proof_status | the envelope binds proof_status for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-timestamp | the envelope binds timestamp for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-sequence | the envelope binds sequence for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-previous_proof_hash | the envelope binds previous_proof_hash for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-evidence_references | the envelope binds evidence_references for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-verifier_metadata | the envelope binds verifier_metadata for every executed operation | Evidence, receipts & proofs | held |
| E34-ENVELOPE-governance_contract_digest | the envelope binds governance_contract_digest for every executed operation | Evidence, receipts & proofs | held |
| E34-STATUS-VERIFIED_GOVERNED | VERIFIED_GOVERNED is a reachable proof status, never a score | Evidence, receipts & proofs | held |
| E34-STATUS-PARTIALLY_GOVERNED | PARTIALLY_GOVERNED is a reachable proof status, never a score | Evidence, receipts & proofs | held |
| E34-STATUS-ENFORCED_WITH_INCOMPLETE_PROOF | ENFORCED_WITH_INCOMPLETE_PROOF is a reachable proof status, never a score | Evidence, receipts & proofs | held |
| E34-STATUS-OBSERVED_ONLY | OBSERVED_ONLY is a reachable proof status, never a score | Evidence, receipts & proofs | held |
| E34-STATUS-MONITORED_ONLY | MONITORED_ONLY is a reachable proof status, never a score | Evidence, receipts & proofs | held |
| E34-STATUS-SIMULATED | SIMULATED is a reachable proof status, never a score | Evidence, receipts & proofs | held |
| E34-STATUS-DEMO_ONLY | DEMO_ONLY is a reachable proof status, never a score | Evidence, receipts & proofs | held |
| E34-STATUS-UNCONTROLLED | UNCONTROLLED is a reachable proof status, never a score | Evidence, receipts & proofs | held |
| E34-STATUS-UNKNOWN | UNKNOWN is a reachable proof status, never a score | Evidence, receipts & proofs | held |
| E34-STATUS-REJECTED | REJECTED is a reachable proof status, never a score | Evidence, receipts & proofs | held |
| E34-STATUS-REVOKED | REVOKED is a reachable proof status, never a score | Identity, authority & delegation | held |
| E34-STATUS-EXPIRED | EXPIRED is a reachable proof status, never a score | Evidence, receipts & proofs | held |
| E34-STATUS-INVALID_PROOF | INVALID_PROOF is a reachable proof status, never a score | Evidence, receipts & proofs | held |
| E34-STATUS-SUPERSEDED | SUPERSEDED is a reachable proof status, never a score | Evidence, receipts & proofs | held |
| E34-PCA-INTENT | the proof-carrying action chain includes INTENT | Evidence, receipts & proofs | held |
| E34-PCA-IDENTITY | the proof-carrying action chain includes IDENTITY | Evidence, receipts & proofs | held |
| E34-PCA-CAPABILITY | the proof-carrying action chain includes CAPABILITY | Evidence, receipts & proofs | held |
| E34-PCA-DELEGATION | the proof-carrying action chain includes DELEGATION | Evidence, receipts & proofs | held |
| E34-PCA-AUTHORITY | the proof-carrying action chain includes AUTHORITY | Evidence, receipts & proofs | held |
| E34-PCA-POLICY | the proof-carrying action chain includes POLICY | Evidence, receipts & proofs | held |
| E34-PCA-CONTEXT | the proof-carrying action chain includes CONTEXT | Evidence, receipts & proofs | held |
| E34-PCA-EVIDENCE | the proof-carrying action chain includes EVIDENCE | Evidence, receipts & proofs | held |
| E34-PCA-RISK | the proof-carrying action chain includes RISK | Evidence, receipts & proofs | held |
| E34-PCA-DECISION | the proof-carrying action chain includes DECISION | Evidence, receipts & proofs | held |
| E34-PCA-AUTHORIZATION | the proof-carrying action chain includes AUTHORIZATION | Evidence, receipts & proofs | held |
| E34-PCA-E8_COMMIT | the proof-carrying action chain includes E8_COMMIT | Evidence, receipts & proofs | held |
| E34-PCA-ENFORCEMENT | the proof-carrying action chain includes ENFORCEMENT | Evidence, receipts & proofs | held |
| E34-PCA-EXECUTION | the proof-carrying action chain includes EXECUTION | Evidence, receipts & proofs | held |
| E34-PCA-OUTCOME | the proof-carrying action chain includes OUTCOME | Evidence, receipts & proofs | held |
| E34-PCA-PROOF | the proof-carrying action chain includes PROOF | Evidence, receipts & proofs | held |
| E34-ENFORCE-DECISION_MADE | enforcement distinguishes DECISION_MADE | Evidence, receipts & proofs | held |
| E34-ENFORCE-AUTHORIZATION_ISSUED | enforcement distinguishes AUTHORIZATION_ISSUED | Evidence, receipts & proofs | held |
| E34-ENFORCE-ACTION_COMMITTED | enforcement distinguishes ACTION_COMMITTED | Evidence, receipts & proofs | held |
| E34-ENFORCE-ACTION_ENFORCED | enforcement distinguishes ACTION_ENFORCED | Evidence, receipts & proofs | held |
| E34-ENFORCE-ACTION_EXECUTED | enforcement distinguishes ACTION_EXECUTED | Evidence, receipts & proofs | held |
| E34-ENFORCE-OUTCOME_OBSERVED | enforcement distinguishes OUTCOME_OBSERVED | Evidence, receipts & proofs | held |
| E34-PRIM-identity | the identity proof primitive exists and binds fields | Identity, authority & delegation | held |
| E34-PRIM-capability | the capability proof primitive exists and binds fields | Identity, authority & delegation | held |
| E34-PRIM-delegation | the delegation proof primitive exists and binds fields | Identity, authority & delegation | held |
| E34-PRIM-authority | the authority proof primitive exists and binds fields | Identity, authority & delegation | held |
| E34-PRIM-policy | the policy proof primitive exists and binds fields | Evidence, receipts & proofs | held |
| E34-PRIM-risk | the risk proof primitive exists and binds fields | Evidence, receipts & proofs | held |
| E34-PRIM-evidence | the evidence proof primitive exists and binds fields | Evidence, receipts & proofs | held |
| E34-PRIM-decision | the decision proof primitive exists and binds fields | Evidence, receipts & proofs | held |
| E34-PRIM-commit | the commit proof primitive exists and binds fields | Evidence, receipts & proofs | held |
| E34-PRIM-enforcement | the enforcement proof primitive exists and binds fields | Evidence, receipts & proofs | held |
| E34-PRIM-outcome | the outcome proof primitive exists and binds fields | Evidence, receipts & proofs | held |
| E34-COVCLASS-ENFORCED | coverage class ENFORCED exists and is never auto-universal | Benchmarks, coverage & performance | held |
| E34-COVCLASS-MONITORED | coverage class MONITORED exists and is never auto-universal | Benchmarks, coverage & performance | held |
| E34-COVCLASS-OBSERVED | coverage class OBSERVED exists and is never auto-universal | Benchmarks, coverage & performance | held |
| E34-COVCLASS-PARTIALLY_ENFORCED | coverage class PARTIALLY_ENFORCED exists and is never auto-universal | Benchmarks, coverage & performance | held |
| E34-COVCLASS-BYPASSABLE | coverage class BYPASSABLE exists and is never auto-universal | Benchmarks, coverage & performance | held |
| E34-COVCLASS-UNCONTROLLED | coverage class UNCONTROLLED exists and is never auto-universal | Benchmarks, coverage & performance | held |
| E34-COVCLASS-UNKNOWN | coverage class UNKNOWN exists and is never auto-universal | Benchmarks, coverage & performance | held |
| E34-SURFACE-mcp | surface mcp states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-a2a | surface a2a states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-http | surface http states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-rest | surface rest states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-grpc | surface grpc states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-websocket | surface websocket states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-event_bus | surface event_bus states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-cli | surface cli states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-shell | surface shell states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-filesystem | surface filesystem states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-browser | surface browser states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-computer_use | surface computer_use states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-databases | surface databases states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-cloud_apis | surface cloud_apis states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-credentials | surface credentials states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-secrets | surface secrets states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-deployment | surface deployment states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-ci_cd | surface ci_cd states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-containers | surface containers states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-subagents | surface subagents states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-delegation | surface delegation states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-scheduled_jobs | surface scheduled_jobs states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-autonomous_loops | surface autonomous_loops states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-memory_mutation | surface memory_mutation states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-policy_mutation | surface policy_mutation states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-model_replacement | surface model_replacement states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-skill_installation | surface skill_installation states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-plugin_installation | surface plugin_installation states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-capability_acquisition | surface capability_acquisition states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-financial_transactions | surface financial_transactions states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-machine_contracts | surface machine_contracts states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-physical_actuators | surface physical_actuators states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-vehicle_robot_boundaries | surface vehicle_robot_boundaries states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-research_experiments | surface research_experiments states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-self_improvement | surface self_improvement states its real class and basis | Benchmarks, coverage & performance | held |
| E34-SURFACE-code_modification | surface code_modification states its real class and basis | Benchmarks, coverage & performance | held |
| E34-PROFILE-agent | profile agent is defined | Policy, law & governance | held |
| E34-PROFILE-model_runtime | profile model_runtime is defined | Policy, law & governance | held |
| E34-PROFILE-tool | profile tool is defined | Policy, law & governance | held |
| E34-PROFILE-mcp_server | profile mcp_server is defined | Policy, law & governance | held |
| E34-PROFILE-a2a_agent | profile a2a_agent is defined | Policy, law & governance | held |
| E34-PROFILE-gateway | profile gateway is defined | Policy, law & governance | held |
| E34-PROFILE-sidecar | profile sidecar is defined | Policy, law & governance | held |
| E34-PROFILE-organization | profile organization is defined | Policy, law & governance | held |
| E34-PROFILE-transaction | profile transaction is defined | Policy, law & governance | held |
| E34-PROFILE-physical_system | profile physical_system is defined | Policy, law & governance | held |
| E34-PROFILE-computer_use_runtime | profile computer_use_runtime is defined | Policy, law & governance | held |
| E34-PROFILE-research_agent | profile research_agent is defined | Policy, law & governance | held |
| E34-PROFILE-self_improving_agent | profile self_improving_agent is defined | Policy, law & governance | held |
| E34-LEVEL-G0 | level G0 means UNKNOWN | Policy, law & governance | held |
| E34-LEVEL-G1 | level G1 means OBSERVED | Policy, law & governance | held |
| E34-LEVEL-G2 | level G2 means IDENTIFIED | Policy, law & governance | held |
| E34-LEVEL-G3 | level G3 means AUTHORIZED | Policy, law & governance | held |
| E34-LEVEL-G4 | level G4 means ENFORCED | Policy, law & governance | held |
| E34-LEVEL-G5 | level G5 means PROOF-CARRYING | Policy, law & governance | held |
| E34-LEVEL-G6 | level G6 means INDEPENDENTLY VERIFIABLE | Policy, law & governance | held |
| E34-LEVEL-G7 | level G7 means FEDERATED GOVERNANCE | Policy, law & governance | held |
| E34-CERTFIELD-subject | a governability certificate without subject is refused | Evidence, receipts & proofs | held |
| E34-CERTFIELD-identity | a governability certificate without identity is refused | Evidence, receipts & proofs | held |
| E34-CERTFIELD-version | a governability certificate without version is refused | Evidence, receipts & proofs | held |
| E34-CERTFIELD-protocols | a governability certificate without protocols is refused | Evidence, receipts & proofs | held |
| E34-CERTFIELD-governance_profile | a governability certificate without governance_profile is refused | Evidence, receipts & proofs | held |
| E34-CERTFIELD-proof_profile | a governability certificate without proof_profile is refused | Evidence, receipts & proofs | held |
| E34-CERTFIELD-evidence_root | a governability certificate without evidence_root is refused | Evidence, receipts & proofs | held |
| E34-CERTFIELD-verifier_version | a governability certificate without verifier_version is refused | Evidence, receipts & proofs | held |
| E34-CERTFIELD-test_suite_version | a governability certificate without test_suite_version is refused | Evidence, receipts & proofs | held |
| E34-CERTFIELD-conformance_level | a governability certificate without conformance_level is refused | Evidence, receipts & proofs | held |
| E34-CERTFIELD-expiration | a governability certificate without expiration is refused | Evidence, receipts & proofs | held |
| E34-CERTFIELD-revocation_endpoint | a governability certificate without revocation_endpoint is refused | Evidence, receipts & proofs | held |
| E34-CERTFIELD-limitations | a governability certificate without limitations is refused | Evidence, receipts & proofs | held |
| E34-CERTFIELD-unknown_fields | a governability certificate without unknown_fields is refused | Evidence, receipts & proofs | held |
| E34-CERTCLAIM-identity_verified | certificate claim identity_verified is in scope | Evidence, receipts & proofs | held |
| E34-CERTCLAIM-authorization_verified | certificate claim authorization_verified is in scope | Evidence, receipts & proofs | held |
| E34-CERTCLAIM-execution_boundary_verified | certificate claim execution_boundary_verified is in scope | Evidence, receipts & proofs | held |
| E34-CERTCLAIM-proof_generated | certificate claim proof_generated is in scope | Evidence, receipts & proofs | held |
| E34-CERTCLAIM-evidence_verified | certificate claim evidence_verified is in scope | Evidence, receipts & proofs | held |
| E34-CERTCLAIM-conformance_passed | certificate claim conformance_passed is in scope | Evidence, receipts & proofs | held |
| E34-CERTCLAIM-revocation_tested | certificate claim revocation_tested is in scope | Evidence, receipts & proofs | held |
| E34-CERTCLAIM-recovery_tested | certificate claim recovery_tested is in scope | Evidence, receipts & proofs | held |
| E34-CERTCLAIM-protocol_adapter_tested | certificate claim protocol_adapter_tested is in scope | Evidence, receipts & proofs | held |
| E34-CONTRACTLIM-scope | a contract limit scope is required | Transactions, markets & economics | held |
| E34-CONTRACTLIM-time | a contract limit time is required | Transactions, markets & economics | held |
| E34-CONTRACTLIM-budget | a contract limit budget is required | Transactions, markets & economics | held |
| E34-CONTRACTLIM-capability | a contract limit capability is required | Transactions, markets & economics | held |
| E34-CONTRACTLIM-geographic | a contract limit geographic is required | Transactions, markets & economics | held |
| E34-CONTRACTLIM-organizational | a contract limit organizational is required | Transactions, markets & economics | held |
| E34-CONTRACTLIM-resource | a contract limit resource is required | Transactions, markets & economics | held |
| E34-CONTRACTLIM-transaction | a contract limit transaction is required | Transactions, markets & economics | held |
| E34-CONTRACTLIM-trajectory | a contract limit trajectory is required | Transactions, markets & economics | held |
| E34-CONTRACTLIM-model_runtime | a contract limit model_runtime is required | Transactions, markets & economics | held |
| E34-CONTRACTLIM-evidence | a contract limit evidence is required | Transactions, markets & economics | held |
| E34-CONTRACTLIM-human_approval | a contract limit human_approval is required | Transactions, markets & economics | held |
| E34-CONTRACTLIM-multi_party_approval | a contract limit multi_party_approval is required | Transactions, markets & economics | held |
| E34-CONTRACTSTAGE-DISCOVER | contract lifecycle includes DISCOVER | Transactions, markets & economics | held |
| E34-CONTRACTSTAGE-IDENTIFY | contract lifecycle includes IDENTIFY | Transactions, markets & economics | held |
| E34-CONTRACTSTAGE-ATTEST | contract lifecycle includes ATTEST | Transactions, markets & economics | held |
| E34-CONTRACTSTAGE-NEGOTIATE | contract lifecycle includes NEGOTIATE | Transactions, markets & economics | held |
| E34-CONTRACTSTAGE-CONSTRAIN | contract lifecycle includes CONSTRAIN | Transactions, markets & economics | held |
| E34-CONTRACTSTAGE-AUTHORIZE | contract lifecycle includes AUTHORIZE | Transactions, markets & economics | held |
| E34-CONTRACTSTAGE-EXECUTE | contract lifecycle includes EXECUTE | Transactions, markets & economics | held |
| E34-CONTRACTSTAGE-PROVE | contract lifecycle includes PROVE | Transactions, markets & economics | held |
| E34-CONTRACTSTAGE-VERIFY | contract lifecycle includes VERIFY | Transactions, markets & economics | held |
| E34-CONTRACTSTAGE-SETTLE | contract lifecycle includes SETTLE | Transactions, markets & economics | held |
| E34-CONTRACTSTAGE-REASSESS | contract lifecycle includes REASSESS | Transactions, markets & economics | held |
| E34-CONTRACTSTAGE-RENEW_OR_REVOKE | contract lifecycle includes RENEW_OR_REVOKE | Transactions, markets & economics | held |
| E34-MANIFEST-identity | a governability manifest needs identity | Trust & reputation | held |
| E34-MANIFEST-runtime | a governability manifest needs runtime | Trust & reputation | held |
| E34-MANIFEST-model | a governability manifest needs model | Trust & reputation | held |
| E34-MANIFEST-capabilities | a governability manifest needs capabilities | Trust & reputation | held |
| E34-MANIFEST-protocols | a governability manifest needs protocols | Trust & reputation | held |
| E34-MANIFEST-governance_boundaries | a governability manifest needs governance_boundaries | Trust & reputation | held |
| E34-MANIFEST-enforcement_paths | a governability manifest needs enforcement_paths | Trust & reputation | held |
| E34-MANIFEST-evidence_capabilities | a governability manifest needs evidence_capabilities | Trust & reputation | held |
| E34-MANIFEST-proof_capabilities | a governability manifest needs proof_capabilities | Trust & reputation | held |
| E34-MANIFEST-policy_capabilities | a governability manifest needs policy_capabilities | Trust & reputation | held |
| E34-MANIFEST-delegation_rules | a governability manifest needs delegation_rules | Trust & reputation | held |
| E34-MANIFEST-revocation | a governability manifest needs revocation | Trust & reputation | held |
| E34-MANIFEST-limitations | a governability manifest needs limitations | Trust & reputation | held |
| E34-MANIFEST-unknown_states | a governability manifest needs unknown_states | Trust & reputation | held |
| E34-PROTOCOL-mcp | protocol mcp is classified SUPPORTED with a basis | Tools, MCP, protocols & adapters | held |
| E34-PROTOCOL-a2a | protocol a2a is classified SUPPORTED with a basis | Tools, MCP, protocols & adapters | held |
| E34-PROTOCOL-http | protocol http is classified SUPPORTED with a basis | Tools, MCP, protocols & adapters | held |
| E34-PROTOCOL-rest | protocol rest is classified SUPPORTED with a basis | Tools, MCP, protocols & adapters | held |
| E34-PROTOCOL-grpc | protocol grpc is classified SUPPORTED with a basis | Tools, MCP, protocols & adapters | held |
| E34-PROTOCOL-websocket | protocol websocket is classified SUPPORTED with a basis | Tools, MCP, protocols & adapters | held |
| E34-PROTOCOL-event_bus | protocol event_bus is classified SUPPORTED with a basis | Tools, MCP, protocols & adapters | held |
| E34-PROTOCOL-cli | protocol cli is classified SUPPORTED with a basis | Tools, MCP, protocols & adapters | held |
| E34-PROTOCOL-local_ipc | protocol local_ipc is classified PARTIALLY_SUPPORTED with a basis | Tools, MCP, protocols & adapters | held |
| E34-PROTOCOL-cloud_api | protocol cloud_api is classified PARTIALLY_SUPPORTED with a basis | Tools, MCP, protocols & adapters | held |
| E34-PROTOCOL-browser | protocol browser is classified PARTIALLY_SUPPORTED with a basis | Tools, MCP, protocols & adapters | held |
| E34-PROTOCOL-computer_use | protocol computer_use is classified PARTIALLY_SUPPORTED with a basis | Tools, MCP, protocols & adapters | held |
| E34-PROTOCOL-physical | protocol physical is classified UNSUPPORTED with a basis | Tools, MCP, protocols & adapters | held |
| E34-PROTOCOL-unknown_transport | protocol unknown_transport is classified UNKNOWN with a basis | Tools, MCP, protocols & adapters | held |
| E34-HANDSHAKE-IDENTITY | handshake step IDENTITY is required; unknown yields GOVERNANCE_UNKNOWN | Identity, authority & delegation | held |
| E34-HANDSHAKE-CAPABILITY | handshake step CAPABILITY is required; unknown yields GOVERNANCE_UNKNOWN | Identity, authority & delegation | held |
| E34-HANDSHAKE-DELEGATION | handshake step DELEGATION is required; unknown yields GOVERNANCE_UNKNOWN | Identity, authority & delegation | held |
| E34-HANDSHAKE-AUTHORITY | handshake step AUTHORITY is required; unknown yields GOVERNANCE_UNKNOWN | Identity, authority & delegation | held |
| E34-HANDSHAKE-POLICY | handshake step POLICY is required; unknown yields GOVERNANCE_UNKNOWN | Identity, authority & delegation | held |
| E34-HANDSHAKE-EVIDENCE | handshake step EVIDENCE is required; unknown yields GOVERNANCE_UNKNOWN | Identity, authority & delegation | held |
| E34-HANDSHAKE-ENFORCEMENT | handshake step ENFORCEMENT is required; unknown yields GOVERNANCE_UNKNOWN | Identity, authority & delegation | held |
| E34-HANDSHAKE-PROOF | handshake step PROOF is required; unknown yields GOVERNANCE_UNKNOWN | Identity, authority & delegation | held |
| E34-HANDSHAKE-REVOCATION | handshake step REVOCATION is required; unknown yields GOVERNANCE_UNKNOWN | Identity, authority & delegation | held |
| E34-HANDSHAKE-RECOVERY | handshake step RECOVERY is required; unknown yields GOVERNANCE_UNKNOWN | Identity, authority & delegation | held |
| E34-HANDSHAKE-CONFORMANCE | handshake step CONFORMANCE is required; unknown yields GOVERNANCE_UNKNOWN | Identity, authority & delegation | held |
| E34-HANDSHAKE-ECONOMY | handshake step ECONOMY is required; unknown yields GOVERNANCE_UNKNOWN | Identity, authority & delegation | held |
| E34-IMMUNESIG-proof_forgery | the immune system detects proof_forgery | Attacks, threats & containment | held |
| E34-IMMUNESIG-proof_chain_discontinuity | the immune system detects proof_chain_discontinuity | Attacks, threats & containment | held |
| E34-IMMUNESIG-authority_laundering | the immune system detects authority_laundering | Attacks, threats & containment | held |
| E34-IMMUNESIG-capability_laundering | the immune system detects capability_laundering | Attacks, threats & containment | held |
| E34-IMMUNESIG-identity_cloning | the immune system detects identity_cloning | Attacks, threats & containment | held |
| E34-IMMUNESIG-delegation_amplification | the immune system detects delegation_amplification | Attacks, threats & containment | held |
| E34-IMMUNESIG-governance_bypass | the immune system detects governance_bypass | Attacks, threats & containment | held |
| E34-IMMUNESIG-collective_compromise | the immune system detects collective_compromise | Attacks, threats & containment | held |
| E34-IMMUNESIG-transaction_fraud | the immune system detects transaction_fraud | Attacks, threats & containment | held |
| E34-IMMUNESIG-economic_manipulation | the immune system detects economic_manipulation | Attacks, threats & containment | held |
| E34-IMMUNESIG-model_substitution | the immune system detects model_substitution | Attacks, threats & containment | held |
| E34-IMMUNESIG-runtime_substitution | the immune system detects runtime_substitution | Attacks, threats & containment | held |
| E34-IMMUNESIG-policy_poisoning | the immune system detects policy_poisoning | Attacks, threats & containment | held |
| E34-IMMUNESIG-memory_poisoning | the immune system detects memory_poisoning | Attacks, threats & containment | held |
| E34-IMMUNESIG-verifier_compromise | the immune system detects verifier_compromise | Attacks, threats & containment | held |
| E34-IMMUNESIG-repeated_denial_pattern | the immune system detects repeated_denial_pattern | Attacks, threats & containment | held |
| E34-IMMUNESIG-certificate_forgery | the immune system detects certificate_forgery | Attacks, threats & containment | held |
| E34-IMMUNESIG-conformance_gaming | the immune system detects conformance_gaming | Attacks, threats & containment | held |
| E34-IMMUNESTEP-DETECT | immune step DETECT is part of the response | Attacks, threats & containment | held |
| E34-IMMUNESTEP-CLASSIFY | immune step CLASSIFY is part of the response | Attacks, threats & containment | held |
| E34-IMMUNESTEP-CONTAIN | immune step CONTAIN is part of the response | Attacks, threats & containment | held |
| E34-IMMUNESTEP-REVOKE | immune step REVOKE is part of the response | Attacks, threats & containment | held |
| E34-IMMUNESTEP-QUARANTINE | immune step QUARANTINE is part of the response | Attacks, threats & containment | held |
| E34-IMMUNESTEP-PRESERVE_EVIDENCE | immune step PRESERVE_EVIDENCE is part of the response | Attacks, threats & containment | held |
| E34-IMMUNESTEP-RECOVER | immune step RECOVER is part of the response | Attacks, threats & containment | held |
| E34-IMMUNESTEP-LEARN | immune step LEARN is part of the response | Attacks, threats & containment | held |
| E34-IMMUNESTEP-GENERATE_TEST | immune step GENERATE_TEST is part of the response | Attacks, threats & containment | held |
| E34-IMMUNESTEP-HARDEN | immune step HARDEN is part of the response | Attacks, threats & containment | held |
| E34-IMMUNESTEP-VERIFY | immune step VERIFY is part of the response | Attacks, threats & containment | held |
| E34-F2P-INCIDENT | failure-to-proof stage INCIDENT exists | Evidence, receipts & proofs | held |
| E34-F2P-ROOT_CAUSE | failure-to-proof stage ROOT_CAUSE exists | Evidence, receipts & proofs | held |
| E34-F2P-NEW_INVARIANT | failure-to-proof stage NEW_INVARIANT exists | Evidence, receipts & proofs | held |
| E34-F2P-NEW_ATTACK | failure-to-proof stage NEW_ATTACK exists | Evidence, receipts & proofs | held |
| E34-F2P-NEW_TEST | failure-to-proof stage NEW_TEST exists | Evidence, receipts & proofs | held |
| E34-F2P-NEW_VERIFIER_CHECK | failure-to-proof stage NEW_VERIFIER_CHECK exists | Evidence, receipts & proofs | held |
| E34-F2P-NEW_EVIDENCE | failure-to-proof stage NEW_EVIDENCE exists | Evidence, receipts & proofs | held |
| E34-F2P-NEW_PRODUCT_CONTROL | failure-to-proof stage NEW_PRODUCT_CONTROL exists | Evidence, receipts & proofs | held |
| E34-DP-identity | data-plane kind identity is chained | Memory, data & privacy | held |
| E34-DP-capability | data-plane kind capability is chained | Memory, data & privacy | held |
| E34-DP-authority | data-plane kind authority is chained | Memory, data & privacy | held |
| E34-DP-policy | data-plane kind policy is chained | Memory, data & privacy | held |
| E34-DP-action | data-plane kind action is chained | Memory, data & privacy | held |
| E34-DP-decision | data-plane kind decision is chained | Memory, data & privacy | held |
| E34-DP-authorization | data-plane kind authorization is chained | Memory, data & privacy | held |
| E34-DP-execution | data-plane kind execution is chained | Memory, data & privacy | held |
| E34-DP-outcome | data-plane kind outcome is chained | Memory, data & privacy | held |
| E34-DP-incident | data-plane kind incident is chained | Memory, data & privacy | held |
| E34-DP-recovery | data-plane kind recovery is chained | Memory, data & privacy | held |
| E34-DP-transaction | data-plane kind transaction is chained | Memory, data & privacy | held |
| E34-DP-delegation | data-plane kind delegation is chained | Memory, data & privacy | held |
| E34-DP-proof | data-plane kind proof is chained | Memory, data & privacy | held |
| E34-DP-conformance | data-plane kind conformance is chained | Memory, data & privacy | held |
| E34-REP-identity_continuity | reputation dimension identity_continuity carries no authority | Trust & reputation | held |
| E34-REP-governance_conformance | reputation dimension governance_conformance carries no authority | Trust & reputation | held |
| E34-REP-enforcement_reliability | reputation dimension enforcement_reliability carries no authority | Trust & reputation | held |
| E34-REP-proof_integrity | reputation dimension proof_integrity carries no authority | Trust & reputation | held |
| E34-REP-incident_history | reputation dimension incident_history carries no authority | Trust & reputation | held |
| E34-REP-recovery_quality | reputation dimension recovery_quality carries no authority | Trust & reputation | held |
| E34-REP-delegation_discipline | reputation dimension delegation_discipline carries no authority | Trust & reputation | held |
| E34-REP-capability_stability | reputation dimension capability_stability carries no authority | Trust & reputation | held |
| E34-REP-transaction_reliability | reputation dimension transaction_reliability carries no authority | Trust & reputation | held |
| E34-REP-evidence_quality | reputation dimension evidence_quality carries no authority | Trust & reputation | held |
| E34-REP-policy_compliance | reputation dimension policy_compliance carries no authority | Trust & reputation | held |
| E34-REP-disclosure_quality | reputation dimension disclosure_quality carries no authority | Trust & reputation | held |
| E34-REP-verification_history | reputation dimension verification_history carries no authority | Trust & reputation | held |
| E34-INDEX-enforcement_coverage | governability index dimension enforcement_coverage is reported separately | Trust & reputation | held |
| E34-INDEX-identity_coverage | governability index dimension identity_coverage is reported separately | Trust & reputation | held |
| E34-INDEX-authority_coverage | governability index dimension authority_coverage is reported separately | Trust & reputation | held |
| E34-INDEX-evidence_coverage | governability index dimension evidence_coverage is reported separately | Trust & reputation | held |
| E34-INDEX-proof_coverage | governability index dimension proof_coverage is reported separately | Trust & reputation | held |
| E34-INDEX-revocation_coverage | governability index dimension revocation_coverage is reported separately | Trust & reputation | held |
| E34-INDEX-delegation_coverage | governability index dimension delegation_coverage is reported separately | Trust & reputation | held |
| E34-INDEX-protocol_coverage | governability index dimension protocol_coverage is reported separately | Trust & reputation | held |
| E34-INDEX-recovery_coverage | governability index dimension recovery_coverage is reported separately | Trust & reputation | held |
| E34-INDEX-independent_verification | governability index dimension independent_verification is reported separately | Trust & reputation | held |
| E34-INDEX-conformance | governability index dimension conformance is reported separately | Trust & reputation | held |
| E34-INDEX-residual_unknown_surface | governability index dimension residual_unknown_surface is reported separately | Trust & reputation | held |
| E34-TRUTHPHRASE-fully_autonomous | the truth guard knows the phrase 'fully autonomous' | Prediction, world models & simulation | held |
| E34-TRUTHPHRASE-fully_secure | the truth guard knows the phrase 'fully secure' | Prediction, world models & simulation | held |
| E34-TRUTHPHRASE-guaranteed | the truth guard knows the phrase 'guaranteed' | Prediction, world models & simulation | held |
| E34-TRUTHPHRASE-controls_all_agents | the truth guard knows the phrase 'controls all agents' | Prediction, world models & simulation | held |
| E34-TRUTHPHRASE-controls_the_internet | the truth guard knows the phrase 'controls the internet' | Prediction, world models & simulation | held |
| E34-TRUTHPHRASE-certified | the truth guard knows the phrase 'certified' | Prediction, world models & simulation | held |
| E34-TRUTHPHRASE-enterprise-ready | the truth guard knows the phrase 'enterprise-ready' | Prediction, world models & simulation | held |
| E34-TRUTHPHRASE-independently_audited | the truth guard knows the phrase 'independently audited' | Prediction, world models & simulation | held |
| E34-TRUTHPHRASE-hardware-attested | the truth guard knows the phrase 'hardware-attested' | Prediction, world models & simulation | held |
| E34-TRUTHPHRASE-universal | the truth guard knows the phrase 'universal' | Prediction, world models & simulation | held |
| E34-TRUTHPHRASE-production-ready | the truth guard knows the phrase 'production-ready' | Prediction, world models & simulation | held |
| E34-TRUTHPHRASE-in_production | the truth guard knows the phrase 'in production' | Prediction, world models & simulation | held |
| E34-MOAT-governance_kernel | moat governance_kernel is technical only, not a market moat | Transactions, markets & economics | held |
| E34-MOAT-enforcement_integrations | moat enforcement_integrations is technical only, not a market moat | Transactions, markets & economics | held |
| E34-MOAT-proof_format | moat proof_format is technical only, not a market moat | Evidence, receipts & proofs | held |
| E34-MOAT-proof_verifier | moat proof_verifier is technical only, not a market moat | Evidence, receipts & proofs | held |
| E34-MOAT-conformance_ecosystem | moat conformance_ecosystem is technical only, not a market moat | Transactions, markets & economics | held |
| E34-MOAT-agent_identity | moat agent_identity is technical only, not a market moat | Identity, authority & delegation | held |
| E34-MOAT-identity_continuity | moat identity_continuity is technical only, not a market moat | Identity, authority & delegation | held |
| E34-MOAT-delegation_provenance | moat delegation_provenance is technical only, not a market moat | Identity, authority & delegation | held |
| E34-MOAT-governance_receipts | moat governance_receipts is technical only, not a market moat | Evidence, receipts & proofs | held |
| E34-MOAT-transaction_graph | moat transaction_graph is technical only, not a market moat | Transactions, markets & economics | held |
| E34-MOAT-incident_graph | moat incident_graph is technical only, not a market moat | Attacks, threats & containment | held |
| E34-MOAT-governance_coverage_data | moat governance_coverage_data is technical only, not a market moat | Memory, data & privacy | held |
| E34-MOAT-machine_reputation | moat machine_reputation is technical only, not a market moat | Transactions, markets & economics | held |
| E34-MOAT-federation | moat federation is technical only, not a market moat | Transactions, markets & economics | held |
| E34-MOAT-developer_sdk | moat developer_sdk is technical only, not a market moat | Transactions, markets & economics | held |
| E34-MOAT-enterprise_integrations | moat enterprise_integrations is technical only, not a market moat | Transactions, markets & economics | held |
| E34-MOAT-governance_marketplace | moat governance_marketplace is technical only, not a market moat | Transactions, markets & economics | held |
| E34-MOAT-research_corpus | moat research_corpus is technical only, not a market moat | Transactions, markets & economics | held |
| E34-MOAT-adversarial_corpus | moat adversarial_corpus is technical only, not a market moat | Attacks, threats & containment | held |
| E34-MOAT-failure_to_proof_corpus | moat failure_to_proof_corpus is technical only, not a market moat | Evidence, receipts & proofs | held |
| E34-MOAT-interoperability | moat interoperability is technical only, not a market moat | Transactions, markets & economics | held |
| E34-MOAT-governance_certificates | moat governance_certificates is technical only, not a market moat | Evidence, receipts & proofs | held |
| E34-MOAT-proof_exchange | moat proof_exchange is technical only, not a market moat | Evidence, receipts & proofs | held |
| E34-MOAT-governance_profiles | moat governance_profiles is technical only, not a market moat | Transactions, markets & economics | held |
| E34-MOAT-public_verification_infrastructure | moat public_verification_infrastructure is technical only, not a market moat | Transactions, markets & economics | held |
| E34-MOAT-edge_deployment | moat edge_deployment is technical only, not a market moat | Transactions, markets & economics | held |
| E34-MOAT-governance_cloud | moat governance_cloud is technical only, not a market moat | Transactions, markets & economics | held |
| E34-MOAT-evolution_engine | moat evolution_engine is technical only, not a market moat | Transactions, markets & economics | held |
| E34-MOAT-machine_economy_controls | moat machine_economy_controls is technical only, not a market moat | Transactions, markets & economics | held |
| E34-MOAT-historical_governance_replay | moat historical_governance_replay is technical only, not a market moat | Transactions, markets & economics | held |
| E34-PRODUCT-CAIN_Gateway | CAIN Gateway maps to real code or says it is not deployed | Supply chain, registry & lifecycle | held |
| E34-PRODUCT-CAIN_Sidecar | CAIN Sidecar maps to real code or says it is not deployed | Supply chain, registry & lifecycle | held |
| E34-PRODUCT-CAIN_Passport | CAIN Passport maps to real code or says it is not deployed | Supply chain, registry & lifecycle | held |
| E34-PRODUCT-CAIN_Proof | CAIN Proof maps to real code or says it is not deployed | Supply chain, registry & lifecycle | held |
| E34-PRODUCT-CAIN_Verify | CAIN Verify maps to real code or says it is not deployed | Supply chain, registry & lifecycle | held |
| E34-PRODUCT-CAIN_Conformance | CAIN Conformance maps to real code or says it is not deployed | Supply chain, registry & lifecycle | held |
| E34-PRODUCT-CAIN_Trust | CAIN Trust maps to real code or says it is not deployed | Supply chain, registry & lifecycle | held |
| E34-PRODUCT-CAIN_Incident | CAIN Incident maps to real code or says it is not deployed | Supply chain, registry & lifecycle | held |
| E34-PRODUCT-CAIN_Transactions | CAIN Transactions maps to real code or says it is not deployed | Supply chain, registry & lifecycle | held |
| E34-PRODUCT-CAIN_Edge | CAIN Edge maps to real code or says it is not deployed | Supply chain, registry & lifecycle | held |
| E34-PRODUCT-CAIN_Research | CAIN Research maps to real code or says it is not deployed | Supply chain, registry & lifecycle | held |
| E34-PRODUCT-CAIN_Evolution | CAIN Evolution maps to real code or says it is not deployed | Supply chain, registry & lifecycle | held |
| E34-PRODUCT-CAIN_Governance_Cloud | CAIN Governance Cloud maps to real code or says it is not deployed | Supply chain, registry & lifecycle | held |
| E34-PRODUCT-CAIN_Proof_Exchange | CAIN Proof Exchange maps to real code or says it is not deployed | Supply chain, registry & lifecycle | held |
| E34-SDK-python | SDK target python states its real status | Tools, MCP, protocols & adapters | held |
| E34-SDK-typescript | SDK target typescript states its real status | Tools, MCP, protocols & adapters | held |
| E34-SDK-go | SDK target go states its real status | Tools, MCP, protocols & adapters | held |
| E34-SDK-rest | SDK target rest states its real status | Tools, MCP, protocols & adapters | held |
| E34-SDK-grpc | SDK target grpc states its real status | Tools, MCP, protocols & adapters | held |
| E34-GATEWAY-MCP | gateway surface MCP states its real status | Tools, MCP, protocols & adapters | held |
| E34-GATEWAY-A2A | gateway surface A2A states its real status | Tools, MCP, protocols & adapters | held |
| E34-GATEWAY-cloud | gateway surface cloud states its real status | Tools, MCP, protocols & adapters | held |
| E34-GATEWAY-code | gateway surface code states its real status | Tools, MCP, protocols & adapters | held |
| E34-GATEWAY-database | gateway surface database states its real status | Tools, MCP, protocols & adapters | held |
| E34-GATEWAY-financial | gateway surface financial states its real status | Tools, MCP, protocols & adapters | held |
| E34-GATEWAY-physical | gateway surface physical states its real status | Tools, MCP, protocols & adapters | held |
| E34-CLOUD-identity | cloud service identity is architecture only (NOT DEPLOYED) | Policy, law & governance | held |
| E34-CLOUD-trust | cloud service trust is architecture only (NOT DEPLOYED) | Policy, law & governance | held |
| E34-CLOUD-policy | cloud service policy is architecture only (NOT DEPLOYED) | Policy, law & governance | held |
| E34-CLOUD-evidence | cloud service evidence is architecture only (NOT DEPLOYED) | Policy, law & governance | held |
| E34-CLOUD-proof | cloud service proof is architecture only (NOT DEPLOYED) | Policy, law & governance | held |
| E34-CLOUD-conformance | cloud service conformance is architecture only (NOT DEPLOYED) | Policy, law & governance | held |
| E34-CLOUD-incident | cloud service incident is architecture only (NOT DEPLOYED) | Policy, law & governance | held |
| E34-CLOUD-analytics | cloud service analytics is architecture only (NOT DEPLOYED) | Policy, law & governance | held |
| E34-CLOUD-learning | cloud service learning is architecture only (NOT DEPLOYED) | Policy, law & governance | held |
| E34-CLOUD-federation | cloud service federation is architecture only (NOT DEPLOYED) | Policy, law & governance | held |
| E34-CLOUD-marketplace | cloud service marketplace is architecture only (NOT DEPLOYED) | Policy, law & governance | held |
| E34-CLOUD-research | cloud service research is architecture only (NOT DEPLOYED) | Policy, law & governance | held |
| E34-CAT-envelope | every envelope scenario holds | Benchmarks, coverage & performance | held |
| E34-CAT-status | every status scenario holds | Benchmarks, coverage & performance | held |
| E34-CAT-receipt_chain | every receipt_chain scenario holds | Benchmarks, coverage & performance | held |
| E34-CAT-delegation_proof | every delegation_proof scenario holds | Benchmarks, coverage & performance | held |
| E34-CAT-coverage | every coverage scenario holds | Benchmarks, coverage & performance | held |
| E34-CAT-conformance | every conformance scenario holds | Benchmarks, coverage & performance | held |
| E34-CAT-certificate | every certificate scenario holds | Benchmarks, coverage & performance | held |
| E34-CAT-contract | every contract scenario holds | Benchmarks, coverage & performance | held |
| E34-CAT-disclosure | every disclosure scenario holds | Benchmarks, coverage & performance | held |
| E34-CAT-federation | every federation scenario holds | Benchmarks, coverage & performance | held |
| E34-CAT-edge | every edge scenario holds | Benchmarks, coverage & performance | held |
| E34-CAT-transaction | every transaction scenario holds | Benchmarks, coverage & performance | held |
| E34-CAT-computer_use | every computer_use scenario holds | Benchmarks, coverage & performance | held |
| E34-CAT-evolution | every evolution scenario holds | Benchmarks, coverage & performance | held |
| E34-CAT-supply_chain | every supply_chain scenario holds | Benchmarks, coverage & performance | held |
| E34-CAT-recovery | every recovery scenario holds | Benchmarks, coverage & performance | held |
| E34-CAT-reputation | every reputation scenario holds | Benchmarks, coverage & performance | held |
| E34-CAT-governability | every governability scenario holds | Benchmarks, coverage & performance | held |
| E34-CAT-tenancy | every tenancy scenario holds | Benchmarks, coverage & performance | held |
| E34-CAT-handshake | every handshake scenario holds | Benchmarks, coverage & performance | held |
| E34-CAT-interchange | every interchange scenario holds | Benchmarks, coverage & performance | held |
| E34-CAT-immune_v3 | every immune_v3 scenario holds | Benchmarks, coverage & performance | held |
| E34-CAT-failure_to_proof | every failure_to_proof scenario holds | Benchmarks, coverage & performance | held |
| E34-CAT-replay | every replay scenario holds | Benchmarks, coverage & performance | held |
| E34-CAT-time_machine | every time_machine scenario holds | Benchmarks, coverage & performance | held |
| E34-CAT-dataplane | every dataplane scenario holds | Benchmarks, coverage & performance | held |
| E34-CAT-truth_guard | every truth_guard scenario holds | Benchmarks, coverage & performance | held |
| E34-CAT-moat | every moat scenario holds | Benchmarks, coverage & performance | held |
| E34-CAT-law | every law scenario holds | Benchmarks, coverage & performance | held |
| E34-CAT-primitive | every primitive scenario holds | Benchmarks, coverage & performance | held |
| E34-CAT-enforcement | every enforcement scenario holds | Benchmarks, coverage & performance | held |
| E34-CAT-proof_exchange | every proof_exchange scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-certificate-blanket_refused | every certificate/blanket_refused scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-certificate-certificate_expires | every certificate/certificate_expires scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-certificate-field_required | every certificate/field_required scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-certificate-scoped_claim | every certificate/scoped_claim scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-computer_use-model_claim_is_not_evidence | every computer_use/model_claim_is_not_evidence scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-conformance-g7_needs_federation | every conformance/g7_needs_federation scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-conformance-level_ladder | every conformance/level_ladder scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-conformance-level_meaning | every conformance/level_meaning scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-contract-cannot_exceed_grants | every contract/cannot_exceed_grants scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-contract-contract_expires | every contract/contract_expires scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-contract-contract_valid | every contract/contract_valid scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-contract-limit_required | every contract/limit_required scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-coverage-no_universal_claim | every coverage/no_universal_claim scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-coverage-surface_basis | every coverage/surface_basis scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-coverage-uncontrolled_disclosed | every coverage/uncontrolled_disclosed scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-dataplane-event_chain_tamper | every dataplane/event_chain_tamper scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-dataplane-event_kind | every dataplane/event_kind scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-delegation_proof-attenuation | every delegation_proof/attenuation scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-delegation_proof-attenuation_ok | every delegation_proof/attenuation_ok scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-delegation_proof-chain_shape | every delegation_proof/chain_shape scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-delegation_proof-chain_tamper | every delegation_proof/chain_tamper scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-disclosure-hides_undisclosed | every disclosure/hides_undisclosed scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-disclosure-inclusion_proof | every disclosure/inclusion_proof scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-disclosure-root_signature | every disclosure/root_signature scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-disclosure-tampered_disclosure | every disclosure/tampered_disclosure scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-disclosure-tampered_salt | every disclosure/tampered_salt scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-edge-bundle_rollback | every edge/bundle_rollback scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-edge-edge_decides | every edge/edge_decides scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-edge-emergency_revoke | every edge/emergency_revoke scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-edge-partition_no_widen | every edge/partition_no_widen scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-edge-partition_reduces | every edge/partition_reduces scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-enforcement-enforcement_order | every enforcement/enforcement_order scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-enforcement-enforcement_stage | every enforcement/enforcement_stage scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-envelope-bulk_field_fuzz | every envelope/bulk_field_fuzz scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-envelope-extra_field | every envelope/extra_field scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-envelope-field_tamper | every envelope/field_tamper scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-envelope-hash | every envelope/hash scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-envelope-null_vs_unknown | every envelope/null_vs_unknown scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-envelope-required_component | every envelope/required_component scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-envelope-signature | every envelope/signature scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-evolution-evolution_proof | every evolution/evolution_proof scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-failure_to_proof-stage_present | every failure_to_proof/stage_present scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-failure_to_proof-unknown_not_invented | every failure_to_proof/unknown_not_invented scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-federation-recognized_as_evidence | every federation/recognized_as_evidence scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-federation-revocation_propagates | every federation/revocation_propagates scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-federation-untrusted_domain | every federation/untrusted_domain scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-governability-index_multidimensional | every governability/index_multidimensional scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-handshake-established_no_authority | every handshake/established_no_authority scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-handshake-unknown_step | every handshake/unknown_step scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-immune_v3-signal_response | every immune_v3/signal_response scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-immune_v3-unknown_signal | every immune_v3/unknown_signal scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-interchange-protocol_support | every interchange/protocol_support scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-law-law_no_authority | every law/law_no_authority scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-moat-no_market_moat | every moat/no_market_moat scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-primitive-primitive_binds_layer | every primitive/primitive_binds_layer scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-proof_exchange-exchange_verifies | every proof_exchange/exchange_verifies scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-proof_exchange-proof_not_authority | every proof_exchange/proof_not_authority scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-receipt_chain-chain_break | every receipt_chain/chain_break scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-receipt_chain-no_authority | every receipt_chain/no_authority scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-receipt_chain-receipt_tamper | every receipt_chain/receipt_tamper scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-recovery-incomplete_recovery | every recovery/incomplete_recovery scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-recovery-recovery_proof | every recovery/recovery_proof scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-replay-replay_diff | every replay/replay_diff scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-replay-replay_same | every replay/replay_same scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-reputation-reputation_vector | every reputation/reputation_vector scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-status-demo_only | every status/demo_only scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-status-expired | every status/expired scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-status-no_single_score | every status/no_single_score scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-status-observed_only | every status/observed_only scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-status-simulation_is_not_production | every status/simulation_is_not_production scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-status-status | every status/status scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-status-status_priority | every status/status_priority scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-status-uncontrolled_channel | every status/uncontrolled_channel scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-status-unknown_core | every status/unknown_core scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-supply_chain-component_kind | every supply_chain/component_kind scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-supply_chain-model_substitution | every supply_chain/model_substitution scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-supply_chain-unsigned_component | every supply_chain/unsigned_component scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-tenancy-cross_tenant_denied | every tenancy/cross_tenant_denied scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-tenancy-isolated_key | every tenancy/isolated_key scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-tenancy-rbac_denied | every tenancy/rbac_denied scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-time_machine-known_at_time | every time_machine/known_at_time scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-transaction-transaction_units | every transaction/transaction_units scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-truth_guard-negated_ok | every truth_guard/negated_ok scenario holds | Benchmarks, coverage & performance | held |
| E34-BENCHFAM-truth_guard-unsupported_claim | every truth_guard/unsupported_claim scenario holds | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-mcp | surface mcp carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-a2a | surface a2a carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-http | surface http carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-rest | surface rest carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-grpc | surface grpc carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-websocket | surface websocket carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-event_bus | surface event_bus carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-cli | surface cli carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-shell | surface shell carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-filesystem | surface filesystem carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-browser | surface browser carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-computer_use | surface computer_use carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-databases | surface databases carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-cloud_apis | surface cloud_apis carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-credentials | surface credentials carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-secrets | surface secrets carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-deployment | surface deployment carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-ci_cd | surface ci_cd carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-containers | surface containers carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-subagents | surface subagents carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-delegation | surface delegation carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-scheduled_jobs | surface scheduled_jobs carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-autonomous_loops | surface autonomous_loops carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-memory_mutation | surface memory_mutation carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-policy_mutation | surface policy_mutation carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-model_replacement | surface model_replacement carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-skill_installation | surface skill_installation carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-plugin_installation | surface plugin_installation carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-capability_acquisition | surface capability_acquisition carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-financial_transactions | surface financial_transactions carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-machine_contracts | surface machine_contracts carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-physical_actuators | surface physical_actuators carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-vehicle_robot_boundaries | surface vehicle_robot_boundaries carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-research_experiments | surface research_experiments carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-self_improvement | surface self_improvement carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-SURFBASIS-code_modification | surface code_modification carries a stated enforcement basis | Benchmarks, coverage & performance | held |
| E34-LAW2-E34-L1 | law E34-L1 is mapped to at least one held bench scenario | Policy, law & governance | held |
| E34-LAW2-E34-L2 | law E34-L2 is mapped to at least one held bench scenario | Policy, law & governance | held |
| E34-LAW2-E34-L3 | law E34-L3 is mapped to at least one held bench scenario | Policy, law & governance | held |
| E34-LAW2-E34-L4 | law E34-L4 is mapped to at least one held bench scenario | Policy, law & governance | held |
| E34-LAW2-E34-L5 | law E34-L5 is mapped to at least one held bench scenario | Policy, law & governance | held |
| E34-LAW2-E34-L6 | law E34-L6 is mapped to at least one held bench scenario | Policy, law & governance | held |
| E34-LAW2-E34-L7 | law E34-L7 is mapped to at least one held bench scenario | Policy, law & governance | held |
| E34-LAW2-E34-L8 | law E34-L8 is mapped to at least one held bench scenario | Policy, law & governance | held |
| E34-LAW2-E34-L9 | law E34-L9 is mapped to at least one held bench scenario | Policy, law & governance | held |
| E34-LAW2-E34-L10 | law E34-L10 is mapped to at least one held bench scenario | Policy, law & governance | held |
| E34-LAW2-E34-L11 | law E34-L11 is mapped to at least one held bench scenario | Policy, law & governance | held |
| E34-LAW2-E34-L12 | law E34-L12 is mapped to at least one held bench scenario | Policy, law & governance | held |
| E34-LAW2-E34-L13 | law E34-L13 is mapped to at least one held bench scenario | Policy, law & governance | held |
| E34-LAW2-E34-L14 | law E34-L14 is mapped to at least one held bench scenario | Policy, law & governance | held |
| E34-LAW2-E34-L15 | law E34-L15 is mapped to at least one held bench scenario | Policy, law & governance | held |
| E34-LAW2-E34-L16 | law E34-L16 is mapped to at least one held bench scenario | Policy, law & governance | held |
| E34-LAW2-E34-L17 | law E34-L17 is mapped to at least one held bench scenario | Policy, law & governance | held |
| E34-LAW2-E34-L18 | law E34-L18 is mapped to at least one held bench scenario | Policy, law & governance | held |
| E34-LAW2-E34-L19 | law E34-L19 is mapped to at least one held bench scenario | Policy, law & governance | held |
| E34-LAW2-E34-L20 | law E34-L20 is mapped to at least one held bench scenario | Policy, law & governance | held |
| E34-LAW2-E34-L21 | law E34-L21 is mapped to at least one held bench scenario | Policy, law & governance | held |
| E34-LAW2-E34-L22 | law E34-L22 is mapped to at least one held bench scenario | Policy, law & governance | held |
| E34-LAW2-E34-L23 | law E34-L23 is mapped to at least one held bench scenario | Policy, law & governance | held |
| E34-LAW2-E34-L24 | law E34-L24 is mapped to at least one held bench scenario | Policy, law & governance | held |
| E34-LAW2-E34-L25 | law E34-L25 is mapped to at least one held bench scenario | Policy, law & governance | held |
| E34-LAW2-E34-L26 | law E34-L26 is mapped to at least one held bench scenario | Policy, law & governance | held |
| E34-LAW2-E34-L27 | law E34-L27 is mapped to at least one held bench scenario | Policy, law & governance | held |
| E34-LAW2-E34-L28 | law E34-L28 is mapped to at least one held bench scenario | Policy, law & governance | held |
| E34-LAW2-E34-L29 | law E34-L29 is mapped to at least one held bench scenario | Policy, law & governance | held |
| E34-LAW2-E34-L30 | law E34-L30 is mapped to at least one held bench scenario | Policy, law & governance | held |
| E34-PROTOCOL2-mcp | protocol mcp never carries authority across a domain | Tools, MCP, protocols & adapters | held |
| E34-PROTOCOL2-a2a | protocol a2a never carries authority across a domain | Tools, MCP, protocols & adapters | held |
| E34-PROTOCOL2-http | protocol http never carries authority across a domain | Tools, MCP, protocols & adapters | held |
| E34-PROTOCOL2-rest | protocol rest never carries authority across a domain | Tools, MCP, protocols & adapters | held |
| E34-PROTOCOL2-grpc | protocol grpc never carries authority across a domain | Tools, MCP, protocols & adapters | held |
| E34-PROTOCOL2-websocket | protocol websocket never carries authority across a domain | Tools, MCP, protocols & adapters | held |
| E34-PROTOCOL2-event_bus | protocol event_bus never carries authority across a domain | Tools, MCP, protocols & adapters | held |
| E34-PROTOCOL2-cli | protocol cli never carries authority across a domain | Tools, MCP, protocols & adapters | held |
| E34-PROTOCOL2-local_ipc | protocol local_ipc never carries authority across a domain | Tools, MCP, protocols & adapters | held |
| E34-PROTOCOL2-cloud_api | protocol cloud_api never carries authority across a domain | Tools, MCP, protocols & adapters | held |
| E34-PROTOCOL2-browser | protocol browser never carries authority across a domain | Tools, MCP, protocols & adapters | held |
| E34-PROTOCOL2-computer_use | protocol computer_use never carries authority across a domain | Tools, MCP, protocols & adapters | held |
| E34-PROTOCOL2-physical | protocol physical never carries authority across a domain | Tools, MCP, protocols & adapters | held |
| E34-PROTOCOL2-unknown_transport | protocol unknown_transport never carries authority across a domain | Tools, MCP, protocols & adapters | held |