Evidence library · niche
Identity, authority & delegation
Who an agent is, what it may do, and who allowed it. 964 tested invariants.
Last reviewed 2026-10-01
964 of 964 held
Test families in this niche
capability (54) · handshake (54) · authorization_binding (49) · aip (48) · revocation (26) · credential (25) · domain (21) · service_passport (21) · non_authority (18) · binding (16) · lease_v2 (15) · protected_key (14) · research (13) · state_machine (11) · cross_domain (11) · delegation (11) · kernel (11) · delegation_attenuation (9) · replay_revocation (9) · moat (9) · risk (6) · failure_class (6) · root_of_trust (6) · telemetry (5) · action (5) · action_binding (4) · config_key (4) · knowledge_revocation (4) · primitive (4) · agency_graph (4) · relationship (4) · delegation_receipt (3) · reassessment (3) · capability_passport (3) · authority_graph (3) · integrity (3) · consistency (3) · soc (3) · lease (3) · operation_kind (3) · event_kind (3) · exhaustion_mode (3) · gap_detector (3) · profile (3) · graph (3) · approval (2) · offline (2) · registration (2) · scientist (2) · radar (2) · federation (1) · intent (1) · tenancy (1) · cross-domain (1) · passport (1) · stage (1) · operation_state (1) · status (1) · environment_query (1) · ip (1) · competitive_gap (1) · authority_algebra (1) · minimum_authority (1) · systemic (1)
Where these come from
- CAIN-42 Evolution 24 -- Governed Agentic Internet Fabric: 198
- CAIN-42 Evolution 25 -- Universal Machine Agency Fabric: 105
- CAIN-42 Evolution 26 -- Universal Machine Agency Trust Fabric: 90
- CAIN-42 Evolution 23 -- Governed Meta-Intelligence Fabric: 84
- CAIN-42 Evolution 27 -- Agentic Internet Control Plane: 64
- CAIN-42 Evolution 31 -- Universal Proof-of-Governance Fabric: 52
- CAIN-42 Evolution 33 -- Governed Agentic Operating Fabric: 49
- CAIN-42 Evolution 36 -- Machine Agency Exchange Fabric: 49
- CAIN-42 Evolution 19 -- Governed Autonomy Operating Fabric: 43
- CAIN-42 Evolution 21 -- Governed Open-Ended Intelligence Fabric: 40
- CAIN-42 Evolution 20 -- Governed Agentic Civilization Fabric: 36
- CAIN-42 Evolution 32 -- Governed Autonomy Learning Fabric: 34
- CAIN-42 Evolution 41 -- Machine Agency Exchange Fabric: 28
- CAIN-42 Evolution 42 -- Supreme Governed Agentic Infrastructure Platform: 24
- CAIN-42 Evolution 35 -- Continuous Governance Intelligence Fabric: 21
- CAIN-42 Evolution 34 -- Proof-Carrying Machine Agency: 20
- CAIN-42 Evolution 28 -- Portable Machine Agency & Execution Identity: 18
- CAIN-42 Evolution 30 -- Governed Machine Autonomy Fabric: 2
- CAIN-42 Evolution 37 -- Autonomous Execution Mesh: 2
- CAIN-42 Evolution 38 -- Portable Proof-Carrying Machine Agency: 2
- CAIN-42 Evolution 29 -- Governed Agentic Internet Transaction Fabric: 1
- CAIN-42 Evolution 39 -- Governed Agent Factory: 1
- CAIN-42 Evolution 40 -- Autonomous Enterprise Intelligence Fabric: 1
Rules 751–900 of 964
| ID | Rule | Bundle | Result |
|---|---|---|---|
| E32-PROT-tolerances | tolerances is outside what learning may change | E32 | held |
| E32-SCI-authorize | the governance scientist may not authorize | E32 | held |
| E32-SCI-expand_authority | the governance scientist may not expand_authority | E32 | held |
| E32-NONAUTH-consensus | consensus creates no authority | E32 | held |
| E32-NONAUTH-ensemble_agreement | ensemble_agreement creates no authority | E32 | held |
| E32-NONAUTH-world_model_agreement | world_model_agreement creates no authority | E32 | held |
| E32-NONAUTH-research_consensus | research_consensus creates no authority | E32 | held |
| E32-NONAUTH-collective_vote | collective_vote creates no authority | E32 | held |
| E32-NONAUTH-reputation | reputation creates no authority | E32 | held |
| E32-NONAUTH-economic_value | economic_value creates no authority | E32 | held |
| E32-NONAUTH-historical_success | historical_success creates no authority | E32 | held |
| E32-NONAUTH-reward | reward creates no authority | E32 | held |
| E32-NONAUTH-confidence | confidence creates no authority | E32 | held |
| E32-KREV-prediction | invalidated evidence propagates to prediction | E32 | held |
| E32-KREV-improvement | invalidated evidence propagates to improvement | E32 | held |
| E32-KREV-policy | invalidated evidence propagates to policy | E32 | held |
| E32-KREV-unrelated_untouched | invalidated evidence propagates to unrelated_untouched | E32 | held |
| E33-STATE-AUTHORIZE | no state can be skipped after AUTHORIZE | E33 | held |
| E33-KIND-access_credential | access_credential is executed only through E8 | E33 | held |
| E33-KIND-delegate_capability | delegate_capability is executed only through E8 | E33 | held |
| E33-KIND-create_capability | create_capability is routed to E29 AgentCapabilityMarketplace conformance | E33 | held |
| E33-EVENT-capability_request | capability_request events chain and verify | E33 | held |
| E33-EVENT-authorization_request | authorization_request events chain and verify | E33 | held |
| E33-EVENT-delegation | delegation events chain and verify | E33 | held |
| E33-EXHAUST-STOP | exhaustion mode STOP never increases authority | E33 | held |
| E33-EXHAUST-REAUTHORIZE | exhaustion mode REAUTHORIZE never increases authority | E33 | held |
| E33-EXHAUST-DEGRADED_MODE | exhaustion mode DEGRADED_MODE never increases authority | E33 | held |
| E33-LEASE-identity | a lease without identity is refused | E33 | held |
| E33-LEASE-scope | a lease without scope is refused | E33 | held |
| E33-LEASE-capabilities | a lease without capabilities is refused | E33 | held |
| E33-LEASE-authority | a lease without authority is refused | E33 | held |
| E33-LEASE-budget | a lease without budget is refused | E33 | held |
| E33-LEASE-not_after | a lease without not_after is refused | E33 | held |
| E33-LEASE-max_actions | a lease without max_actions is refused | E33 | held |
| E33-LEASE-risk_threshold | a lease without risk_threshold is refused | E33 | held |
| E33-LEASE-trajectory | a lease without trajectory is refused | E33 | held |
| E33-LEASE-economic | a lease without economic is refused | E33 | held |
| E33-LEASE-physical | a lease without physical is refused | E33 | held |
| E33-LEASE-geographic | a lease without geographic is refused | E33 | held |
| E33-LEASE-delegation | a lease without delegation is refused | E33 | held |
| E33-LEASE-model_runtime | a lease without model_runtime is refused | E33 | held |
| E33-LEASE-evidence_requirements | a lease without evidence_requirements is refused | E33 | held |
| E33-MOAT-identity_continuity | identity_continuity is not claimed as an established market moat | E33 | held |
| E33-HANDSHAKE-IDENTITY | an unknown IDENTITY stops the handshake | E33 | held |
| E33-HANDSHAKE-CAPABILITY | an unknown CAPABILITY stops the handshake | E33 | held |
| E33-HANDSHAKE-AUTHORITY | an unknown AUTHORITY stops the handshake | E33 | held |
| E33-HANDSHAKE-POLICY | an unknown POLICY stops the handshake | E33 | held |
| E33-HANDSHAKE-EVIDENCE | an unknown EVIDENCE stops the handshake | E33 | held |
| E33-HANDSHAKE-ENFORCEMENT | an unknown ENFORCEMENT stops the handshake | E33 | held |
| E33-HANDSHAKE-PROOF | an unknown PROOF stops the handshake | E33 | held |
| E33-HANDSHAKE-REVOCATION | an unknown REVOCATION stops the handshake | E33 | held |
| E33-HANDSHAKE-RECOVERY | an unknown RECOVERY stops the handshake | E33 | held |
| E33-GAP-authority_gap | the gap detector knows authority_gap | E33 | held |
| E33-GAP-revocation_gap | the gap detector knows revocation_gap | E33 | held |
| E33-GAP-identity_gap | the gap detector knows identity_gap | E33 | held |
| E33-RESEARCH-R1 | research item R1 has provenance and no authority | E33 | held |
| E33-RESEARCH-R2 | research item R2 has provenance and no authority | E33 | held |
| E33-RESEARCH-R3 | research item R3 has provenance and no authority | E33 | held |
| E33-RESEARCH-R4 | research item R4 has provenance and no authority | E33 | held |
| E33-RESEARCH-R5 | research item R5 has provenance and no authority | E33 | held |
| E33-RESEARCH-R6 | research item R6 has provenance and no authority | E33 | held |
| E33-RESEARCH-R7 | research item R7 has provenance and no authority | E33 | held |
| E33-RESEARCH-R8 | research item R8 has provenance and no authority | E33 | held |
| E33-RESEARCH-R9 | research item R9 has provenance and no authority | E33 | held |
| E33-RESEARCH-R10 | research item R10 has provenance and no authority | E33 | held |
| E33-RESEARCH-R11 | research item R11 has provenance and no authority | E33 | held |
| E34-STATUS-REVOKED | REVOKED is a reachable proof status, never a score | E34 | held |
| E34-PRIM-identity | the identity proof primitive exists and binds fields | E34 | held |
| E34-PRIM-capability | the capability proof primitive exists and binds fields | E34 | held |
| E34-PRIM-delegation | the delegation proof primitive exists and binds fields | E34 | held |
| E34-PRIM-authority | the authority proof primitive exists and binds fields | E34 | held |
| E34-HANDSHAKE-IDENTITY | handshake step IDENTITY is required; unknown yields GOVERNANCE_UNKNOWN | E34 | held |
| E34-HANDSHAKE-CAPABILITY | handshake step CAPABILITY is required; unknown yields GOVERNANCE_UNKNOWN | E34 | held |
| E34-HANDSHAKE-DELEGATION | handshake step DELEGATION is required; unknown yields GOVERNANCE_UNKNOWN | E34 | held |
| E34-HANDSHAKE-AUTHORITY | handshake step AUTHORITY is required; unknown yields GOVERNANCE_UNKNOWN | E34 | held |
| E34-HANDSHAKE-POLICY | handshake step POLICY is required; unknown yields GOVERNANCE_UNKNOWN | E34 | held |
| E34-HANDSHAKE-EVIDENCE | handshake step EVIDENCE is required; unknown yields GOVERNANCE_UNKNOWN | E34 | held |
| E34-HANDSHAKE-ENFORCEMENT | handshake step ENFORCEMENT is required; unknown yields GOVERNANCE_UNKNOWN | E34 | held |
| E34-HANDSHAKE-PROOF | handshake step PROOF is required; unknown yields GOVERNANCE_UNKNOWN | E34 | held |
| E34-HANDSHAKE-REVOCATION | handshake step REVOCATION is required; unknown yields GOVERNANCE_UNKNOWN | E34 | held |
| E34-HANDSHAKE-RECOVERY | handshake step RECOVERY is required; unknown yields GOVERNANCE_UNKNOWN | E34 | held |
| E34-HANDSHAKE-CONFORMANCE | handshake step CONFORMANCE is required; unknown yields GOVERNANCE_UNKNOWN | E34 | held |
| E34-HANDSHAKE-ECONOMY | handshake step ECONOMY is required; unknown yields GOVERNANCE_UNKNOWN | E34 | held |
| E34-MOAT-agent_identity | moat agent_identity is technical only, not a market moat | E34 | held |
| E34-MOAT-identity_continuity | moat identity_continuity is technical only, not a market moat | E34 | held |
| E34-MOAT-delegation_provenance | moat delegation_provenance is technical only, not a market moat | E34 | held |
| E35-RISK-authority | risk dimension authority is separate | E35 | held |
| E35-RISK-capability | risk dimension capability is separate | E35 | held |
| E35-RISK-delegation | risk dimension delegation is separate | E35 | held |
| E35-QUERY-authority_chains | environment query authority_chains exists | E35 | held |
| E35-PROFILE-revocability | agentic profile dimension revocability exists | E35 | held |
| E35-PROFILE-delegation_depth | agentic profile dimension delegation_depth exists | E35 | held |
| E35-PROFILE-capability_surface | agentic profile dimension capability_surface exists | E35 | held |
| E35-RADAR-agent_identity | radar topic agent_identity exists | E35 | held |
| E35-RADAR-agent_authorization | radar topic agent_authorization exists | E35 | held |
| E35-IP-autonomy_leases | IP primitive autonomy_leases exists | E35 | held |
| E35-MOAT-agent_identity | moat agent_identity is technical, not a market moat | E35 | held |
| E35-MOAT-identity_continuity | moat identity_continuity is technical, not a market moat | E35 | held |
| E35-MOAT-delegation_provenance | moat delegation_provenance is technical, not a market moat | E35 | held |
| E35-INTEGRITY-identity | integrity monitor watches identity | E35 | held |
| E35-INTEGRITY-authority | integrity monitor watches authority | E35 | held |
| E35-ROOT-identity | root of trust identity exists | E35 | held |
| E35-ROOT-policy | root of trust policy exists | E35 | held |
| E35-ROOT-evidence | root of trust evidence exists | E35 | held |
| E35-ROOT-proof | root of trust proof exists | E35 | held |
| E35-ROOT-verifier | root of trust verifier exists | E35 | held |
| E35-ROOT-enforcement | root of trust enforcement exists | E35 | held |
| E36-DOMAIN-SERVICE-IDENTITY | signed domain SERVICE-IDENTITY is defined | E36 | held |
| E36-DOMAIN-SERVICE-PASSPORT | signed domain SERVICE-PASSPORT is defined | E36 | held |
| E36-DOMAIN-CAPABILITY | signed domain CAPABILITY is defined | E36 | held |
| E36-DOMAIN-PAYMENT-AUTHORIZATION | signed domain PAYMENT-AUTHORIZATION is defined | E36 | held |
| E36-DOMAIN-REVOCATION | signed domain REVOCATION is defined | E36 | held |
| E36-PASSPORT-service_id | a passport without service_id is refused | E36 | held |
| E36-PASSPORT-owner_id | a passport without owner_id is refused | E36 | held |
| E36-PASSPORT-operator_id | a passport without operator_id is refused | E36 | held |
| E36-PASSPORT-agent_id | a passport without agent_id is refused | E36 | held |
| E36-PASSPORT-model_id | a passport without model_id is refused | E36 | held |
| E36-PASSPORT-runtime_id | a passport without runtime_id is refused | E36 | held |
| E36-PASSPORT-capability_set | a passport without capability_set is refused | E36 | held |
| E36-PASSPORT-governance_profile | a passport without governance_profile is refused | E36 | held |
| E36-PASSPORT-conformance_profile | a passport without conformance_profile is refused | E36 | held |
| E36-PASSPORT-proof_profile | a passport without proof_profile is refused | E36 | held |
| E36-PASSPORT-service_version | a passport without service_version is refused | E36 | held |
| E36-PASSPORT-uptime_evidence | a passport without uptime_evidence is refused | E36 | held |
| E36-PASSPORT-incident_history | a passport without incident_history is refused | E36 | held |
| E36-PASSPORT-recovery_history | a passport without recovery_history is refused | E36 | held |
| E36-PASSPORT-security_history | a passport without security_history is refused | E36 | held |
| E36-PASSPORT-pricing_model | a passport without pricing_model is refused | E36 | held |
| E36-PASSPORT-supported_protocols | a passport without supported_protocols is refused | E36 | held |
| E36-PASSPORT-authorization_model | a passport without authorization_model is refused | E36 | held |
| E36-PASSPORT-revocation_endpoint | a passport without revocation_endpoint is refused | E36 | held |
| E36-PASSPORT-service_limits | a passport without service_limits is refused | E36 | held |
| E36-PASSPORT-unknown_surface | a passport without unknown_surface is refused | E36 | held |
| E36-TELEMETRY-authority | telemetry metric authority exists | E36 | held |
| E36-TELEMETRY-delegation | telemetry metric delegation exists | E36 | held |
| E36-AGENCY-NODE-capability | agency graph node capability exists | E36 | held |
| E36-AGENCY-NODE-identity | agency graph node identity exists | E36 | held |
| E36-AGENCY-NODE-authority | agency graph node authority exists | E36 | held |
| E36-AGENCY-EDGE-DELEGATES | agency graph edge DELEGATES exists | E36 | held |
| E36-REVOKE-compromised_identity | revocation trigger compromised_identity exists | E36 | held |
| E36-REVOKE-proof_failure | revocation trigger proof_failure exists | E36 | held |
| E36-REVOKE-policy_violation | revocation trigger policy_violation exists | E36 | held |
| E36-REVOKE-contract_violation | revocation trigger contract_violation exists | E36 | held |
| E36-REVOKE-supply_chain_compromise | revocation trigger supply_chain_compromise exists | E36 | held |
| E36-REVOKE-malicious_behavior | revocation trigger malicious_behavior exists | E36 | held |
| E36-REVOKE-governance_drift | revocation trigger governance_drift exists | E36 | held |
| E36-REVOKE-certificate_expiration | revocation trigger certificate_expiration exists | E36 | held |
| E36-REVOKE-severe_reliability_degradation | revocation trigger severe_reliability_degradation exists | E36 | held |
| E36-MOAT-machine_service_passports | moat machine_service_passports is technical only | E36 | held |
| E36-COMPETITOR-agent_identity_platforms | competitor category agent_identity_platforms makes no claim | E36 | held |
Other niches
Consensus & distributed systems · Attacks, threats & containment · Evidence, receipts & proofs · Memory, data & privacy · Prediction, world models & simulation · Transactions, markets & economics · Tools, MCP, protocols & adapters · Autonomy, control loops & recovery · Policy, law & governance · Trust & reputation · Supply chain, registry & lifecycle · Benchmarks, coverage & performance · Core guarantees
Try CAIN-42 on your own agents
Create a free account and every new account starts with a 7-day trial of the full platform. Or try the sandbox first, with no account at all.
Create a free account → · Try the sandbox · See the whole ecosystem