CAIN-42 CAIN Studio

Evidence library · family

Envelope

52 tested rules in the 'envelope' family, 52 held.

Last reviewed 2026-10-01

52 of 52 held   niche Evidence, receipts & proofs

What this family tests

Every rule the CAIN-42 test suites recorded under the family envelope, across 2 evidence bundles. Each rule links to its own page with the recorded result and an in-browser check of the file it came from.

IDRuleBundleResult
E28-I21identity envelope signed by another key is refusedE28held
E28-I22a tampered envelope field is refused on decodeE28held
E28-I23an envelope for another audience is refusedE28held
E28-I24an expired envelope is refusedE28held
E28-I25a session envelope cannot stand in for a transaction envelopeE28held
E28-I26a transaction envelope cannot live longer than 30 sE28held
E28-I27the envelope authority field is always NONE, whatever the issuer is askedE28held
E34-ENVELOPE-proof_idthe envelope binds proof_id for every executed operationE34held
E34-ENVELOPE-proof_versionthe envelope binds proof_version for every executed operationE34held
E34-ENVELOPE-action_idthe envelope binds action_id for every executed operationE34held
E34-ENVELOPE-operation_idthe envelope binds operation_id for every executed operationE34held
E34-ENVELOPE-transaction_idthe envelope binds transaction_id for every executed operationE34held
E34-ENVELOPE-agent_identitythe envelope binds agent_identity for every executed operationE34held
E34-ENVELOPE-agent_passport_digestthe envelope binds agent_passport_digest for every executed operationE34held
E34-ENVELOPE-identity_statethe envelope binds identity_state for every executed operationE34held
E34-ENVELOPE-capability_statethe envelope binds capability_state for every executed operationE34held
E34-ENVELOPE-delegation_chainthe envelope binds delegation_chain for every executed operationE34held
E34-ENVELOPE-authority_statethe envelope binds authority_state for every executed operationE34held
E34-ENVELOPE-authority_digestthe envelope binds authority_digest for every executed operationE34held
E34-ENVELOPE-policy_digestthe envelope binds policy_digest for every executed operationE34held
E34-ENVELOPE-policy_versionthe envelope binds policy_version for every executed operationE34held
E34-ENVELOPE-context_digestthe envelope binds context_digest for every executed operationE34held
E34-ENVELOPE-evidence_digestthe envelope binds evidence_digest for every executed operationE34held
E34-ENVELOPE-risk_digestthe envelope binds risk_digest for every executed operationE34held
E34-ENVELOPE-decision_digestthe envelope binds decision_digest for every executed operationE34held
E34-ENVELOPE-trajectory_digestthe envelope binds trajectory_digest for every executed operationE34held
E34-ENVELOPE-world_state_digestthe envelope binds world_state_digest for every executed operationE34held
E34-ENVELOPE-model_runtime_identitythe envelope binds model_runtime_identity for every executed operationE34held
E34-ENVELOPE-model_runtime_versionthe envelope binds model_runtime_version for every executed operationE34held
E34-ENVELOPE-execution_environmentthe envelope binds execution_environment for every executed operationE34held
E34-ENVELOPE-capability_usedthe envelope binds capability_used for every executed operationE34held
E34-ENVELOPE-resource_targetthe envelope binds resource_target for every executed operationE34held
E34-ENVELOPE-requested_effectthe envelope binds requested_effect for every executed operationE34held
E34-ENVELOPE-authorization_idthe envelope binds authorization_id for every executed operationE34held
E34-ENVELOPE-authorization_scopethe envelope binds authorization_scope for every executed operationE34held
E34-ENVELOPE-authorization_expirythe envelope binds authorization_expiry for every executed operationE34held
E34-ENVELOPE-authorization_noncethe envelope binds authorization_nonce for every executed operationE34held
E34-ENVELOPE-e8_commit_idthe envelope binds e8_commit_id for every executed operationE34held
E34-ENVELOPE-enforcement_boundarythe envelope binds enforcement_boundary for every executed operationE34held
E34-ENVELOPE-enforcement_resultthe envelope binds enforcement_result for every executed operationE34held
E34-ENVELOPE-execution_resultthe envelope binds execution_result for every executed operationE34held
E34-ENVELOPE-outcome_evidencethe envelope binds outcome_evidence for every executed operationE34held
E34-ENVELOPE-revocation_statethe envelope binds revocation_state for every executed operationE34held
E34-ENVELOPE-conformance_statethe envelope binds conformance_state for every executed operationE34held
E34-ENVELOPE-governance_coveragethe envelope binds governance_coverage for every executed operationE34held
E34-ENVELOPE-proof_statusthe envelope binds proof_status for every executed operationE34held
E34-ENVELOPE-timestampthe envelope binds timestamp for every executed operationE34held
E34-ENVELOPE-sequencethe envelope binds sequence for every executed operationE34held
E34-ENVELOPE-previous_proof_hashthe envelope binds previous_proof_hash for every executed operationE34held
E34-ENVELOPE-evidence_referencesthe envelope binds evidence_references for every executed operationE34held
E34-ENVELOPE-verifier_metadatathe envelope binds verifier_metadata for every executed operationE34held
E34-ENVELOPE-governance_contract_digestthe envelope binds governance_contract_digest for every executed operationE34held

Other families in this niche

domain · moat · packet · receipt · research · certificate · supply_chain · state_machine · agency_graph · envelope_binding · telemetry · integrity · graph · proof · radar · risk · event_kind · action_binding · proof_carrying_action · ip · failure_class · status · environment_query · attestation

Try CAIN-42 on your own agents

Create a free account and every new account starts with a 7-day trial of the full platform. Or try the sandbox first, with no account at all.

Create a free account →  ·  Try the sandbox  ·  See the whole ecosystem