{
 "passed": 90,
 "rows": [
  {
   "description": "portable identity does not imply portable authority",
   "detail": "{'identity': 'cid_0d6eac900de513c66dc4daab1ab79d1d', 'foreign': 'orga.example:cid_ad0c4bfdbc8820dc2c32fa17d06f748b', 'granted': [], 'refused': {'read': ['NO_FEDERATION_POLICY']}, 'delegation': '', 'reasons': ['NO_LOCAL_AUTHORITY'], 'authori",
   "family": "law",
   "id": "E28-I1",
   "ok": true
  },
  {
   "description": "delegated authority never exceeds parent authority (16 dimensions)",
   "detail": "{'dims': [True, True, True, True, True, True, True, True, True, True, True, True, True, True], 'bool': ['SUBAGENT_CREATION_FORBIDDEN']}",
   "family": "law",
   "id": "E28-I2",
   "ok": true
  },
  {
   "description": "expired authority does not resurrect",
   "detail": "(['LEASE_EXPIRED'], ['LEASE_EXPIRED_REQUIRES_NEW_GRANT'])",
   "family": "law",
   "id": "E28-I3",
   "ok": true
  },
  {
   "description": "revoked identity does not regain authority through replay",
   "detail": "(['DELEGATION_REVOKED', 'IDENTITY_REVOCATION_EPOCH_STALE', 'IDENTITY_REVOKED', 'LEASE_REVOKED', 'LINEAGE_REVOKED'], ['IDENTITY_REVOCATION_EPOCH_STALE', 'IDENTITY_REVOKED'])",
   "family": "law",
   "id": "E28-I4",
   "ok": true
  },
  {
   "description": "model substitution triggers explicit continuity evaluation",
   "detail": "CONTINUITY_APPROVED ['IDENTITY_STALE_REQUIRES_CONTINUITY_EVALUATION']",
   "family": "law",
   "id": "E28-I5",
   "ok": true
  },
  {
   "description": "runtime substitution triggers explicit continuity evaluation",
   "detail": "CONTINUITY_APPROVED ['IDENTITY_STALE_REQUIRES_CONTINUITY_EVALUATION']",
   "family": "law",
   "id": "E28-I6",
   "ok": true
  },
  {
   "description": "capability expansion does not occur through identity migration",
   "detail": "{'decision': 'NEW_EXECUTION_IDENTITY_REQUIRED', 'reasons': ['CAPABILITY_DIFF'], 'changes': ['location'], 'capability_expansion': ['pay'], 'authority_preserved': False, 'requires': 'NEW_EXECUTION_IDENTITY_REQUIRED', 'authority': 'NONE'}",
   "family": "law",
   "id": "E28-I7",
   "ok": true
  },
  {
   "description": "consensus does not create authorization",
   "detail": "[('DENY', ('DELEGATION_CAPABILITY_NOT_GRANTED', 'LEASE_CAPABILITY_NOT_GRANTED')), ('ALLOW',), ('DENY', ('DELEGATION_CAPABILITY_NOT_GRANTED', 'LEASE_CAPABILITY_NOT_GRANTED')), ('ALLOW',)]",
   "family": "law",
   "id": "E28-I8",
   "ok": true
  },
  {
   "description": "confidence does not create authorization",
   "detail": "[('DENY', ('DELEGATION_CAPABILITY_NOT_GRANTED', 'LEASE_CAPABILITY_NOT_GRANTED')), ('ALLOW',), ('DENY', ('DELEGATION_CAPABILITY_NOT_GRANTED', 'LEASE_CAPABILITY_NOT_GRANTED')), ('ALLOW',)]",
   "family": "law",
   "id": "E28-I9",
   "ok": true
  },
  {
   "description": "research evidence does not automatically create authority",
   "detail": "[('DENY', ('DELEGATION_CAPABILITY_NOT_GRANTED', 'LEASE_CAPABILITY_NOT_GRANTED')), ('ALLOW',), ('DENY', ('DELEGATION_CAPABILITY_NOT_GRANTED', 'LEASE_CAPABILITY_NOT_GRANTED')), ('ALLOW',)]",
   "family": "law",
   "id": "E28-I10",
   "ok": true
  },
  {
   "description": "simulation does not become execution authorization",
   "detail": "[('DENY', ('DELEGATION_CAPABILITY_NOT_GRANTED', 'LEASE_CAPABILITY_NOT_GRANTED')), ('ALLOW',), ('DENY', ('DELEGATION_CAPABILITY_NOT_GRANTED', 'LEASE_CAPABILITY_NOT_GRANTED')), ('ALLOW',)]",
   "family": "law",
   "id": "E28-I11",
   "ok": true
  },
  {
   "description": "memory does not mint authority (restoring memory never restores an old lease)",
   "detail": "(['IDENTITY_STALE_REQUIRES_CONTINUITY_EVALUATION'], [('DENY', ('DELEGATION_CAPABILITY_NOT_GRANTED', 'LEASE_CAPABILITY_NOT_GRANTED')), ('ALLOW',), ('DENY', ('DELEGATION_CAPABILITY_NOT_GRANTED', 'LEASE_CAPABILITY_NOT_GRANTED')), ('ALLOW',)])",
   "family": "law",
   "id": "E28-I12",
   "ok": true
  },
  {
   "description": "a child agent cannot create authority for its parent",
   "detail": "(['DELEGATION_TO_ANCESTOR'], ['LINEAGE_NODE_ALREADY_PARENTED', 'LINEAGE_CYCLE'])",
   "family": "law",
   "id": "E28-I13",
   "ok": true
  },
  {
   "description": "a subagent inherits bounded authority",
   "detail": "{'capabilities': ['read'], 'resources': ['docs/'], 'tools': ['*'], 'data_scopes': ['internal'], 'org_scopes': ['self'], 'regions': ['eu', 'us'], 'max_transaction_value': 10000, 'economic_budget': 100000, 'max_executions': 1000, 'risk_ceilin",
   "family": "law",
   "id": "E28-I14",
   "ok": true
  },
  {
   "description": "unknown remains unknown (fork telemetry, risk, hardware, translation)",
   "detail": "({'identity': 'cid_41574d0c6e12dcb7da9cea222187b9e6', 'verdict': 'UNKNOWN', 'findings': [], 'observations': 0, 'sufficient_telemetry': False, 'not_cloned_claimed': False, 'authority': 'NONE'}, ['DELEGATION_RISK_UNKNOWN'], {'identity': 'UNKN",
   "family": "law",
   "id": "E28-I15",
   "ok": true
  },
  {
   "description": "a governance receipt is not forgeable without the signing key",
   "detail": "forged refused",
   "family": "law",
   "id": "E28-I16",
   "ok": true
  },
  {
   "description": "an execution identity is bound to its intended transaction",
   "detail": "['TRANSACTION_BINDING_MISMATCH']",
   "family": "law",
   "id": "E28-I17",
   "ok": true
  },
  {
   "description": "a stale authorization does not authorize materially changed execution",
   "detail": "['IDENTITY_STALE_REQUIRES_CONTINUITY_EVALUATION', 'LEASE_IDENTITY_STALE', 'LEASE_STALE']",
   "family": "law",
   "id": "E28-I18",
   "ok": true
  },
  {
   "description": "a forked identity does not silently merge with the original",
   "detail": "{'class': 'UNVERIFIED_FORK', 'material_changes': ['weights_digest'], 'authority_retained': False, 'requires': ['REFUSE'], 'authority': 'NONE'}",
   "family": "law",
   "id": "E28-I19",
   "ok": true
  },
  {
   "description": "every consequential governed execution reaches the E8 Action Commit boundary",
   "detail": "3",
   "family": "law",
   "id": "E28-I20",
   "ok": true
  },
  {
   "description": "identity envelope signed by another key is refused",
   "detail": "1",
   "family": "envelope",
   "id": "E28-I21",
   "ok": true
  },
  {
   "description": "a tampered envelope field is refused on decode",
   "detail": "['IDENTITY_ENVELOPE_ID_MISMATCH']",
   "family": "envelope",
   "id": "E28-I22",
   "ok": true
  },
  {
   "description": "an envelope for another audience is refused",
   "detail": "1",
   "family": "envelope",
   "id": "E28-I23",
   "ok": true
  },
  {
   "description": "an expired envelope is refused",
   "detail": "1",
   "family": "envelope",
   "id": "E28-I24",
   "ok": true
  },
  {
   "description": "a session envelope cannot stand in for a transaction envelope",
   "detail": "['IDENTITY_ENVELOPE_KIND_MISMATCH', 'TRANSACTION_BINDING_MISMATCH']",
   "family": "envelope",
   "id": "E28-I25",
   "ok": true
  },
  {
   "description": "a transaction envelope cannot live longer than 30 s",
   "detail": "ENVELOPE_TTL_OUT_OF_RANGE",
   "family": "envelope",
   "id": "E28-I26",
   "ok": true
  },
  {
   "description": "the envelope authority field is always NONE, whatever the issuer is asked",
   "detail": "NONE",
   "family": "envelope",
   "id": "E28-I27",
   "ok": true
  },
  {
   "description": "every protocol carrier round-trips the envelope byte-identically",
   "detail": "{'a2a': True, 'mcp': True, 'http': True, 'rest': True, 'grpc': True, 'websocket': True, 'event_bus': True, 'cli': True, 'browser': True, 'computer_use': True, 'local_ipc': True, 'cloud_api': True, 'subagent': True, 'scheduled_job': True, 'a",
   "family": "carrier",
   "id": "E28-I28",
   "ok": true
  },
  {
   "description": "a carrier altered in transit never yields a valid envelope",
   "detail": "['CARRIER_MALFORMED']",
   "family": "carrier",
   "id": "E28-I29",
   "ok": true
  },
  {
   "description": "an unknown protocol has no carrier",
   "detail": "['PROTOCOL_UNSUPPORTED:carrier-pigeon']",
   "family": "carrier",
   "id": "E28-I30",
   "ok": true
  },
  {
   "description": "registration without proof of possession is refused",
   "detail": "['POP_SIGNATURE_INVALID']",
   "family": "registration",
   "id": "E28-I31",
   "ok": true
  },
  {
   "description": "a proof-of-possession challenge is single use",
   "detail": "['IDENTITY_CLONE_KEY_REUSED', 'POP_CHALLENGE_UNKNOWN_OR_EXPIRED']",
   "family": "registration",
   "id": "E28-I32",
   "ok": true
  },
  {
   "description": "a key already bound to an identity cannot register again (clone)",
   "detail": "['IDENTITY_CLONE_KEY_REUSED']",
   "family": "registration",
   "id": "E28-I33",
   "ok": true
  },
  {
   "description": "a registration signed by a non-sponsor key is refused",
   "detail": "['SPONSOR_UNKNOWN_OR_KEY_MISMATCH']",
   "family": "registration",
   "id": "E28-I34",
   "ok": true
  },
  {
   "description": "declaring an unregistered capability is refused",
   "detail": "['CAPABILITY_UNREGISTERED']",
   "family": "registration",
   "id": "E28-I35",
   "ok": true
  },
  {
   "description": "a measurement mismatch gives attestation level 0",
   "detail": "{'level': 0, 'matched': [], 'mismatched': ['model_id'], 'hardware': 'UNKNOWN', 'at': 1000011, 'authority': 'NONE'}",
   "family": "attestation",
   "id": "E28-I36",
   "ok": true
  },
  {
   "description": "hardware attestation is UNKNOWN, never simulated",
   "detail": "{'value': {'software_level': 1, 'hardware': 'UNKNOWN'}, 'status': 'ATTESTED'}",
   "family": "attestation",
   "id": "E28-I37",
   "ok": true
  },
  {
   "description": "an unchanged agent is SAME_GOVERNED_AGENT and keeps its live authority",
   "detail": "{'class': 'SAME_GOVERNED_AGENT', 'material_changes': [], 'authority_retained': True, 'requires': [], 'authority': 'NONE'}",
   "family": "continuity",
   "id": "E28-I38",
   "ok": true
  },
  {
   "description": "same identity presented with another key is IDENTITY_CLONE",
   "detail": "{'same': 'SAME_GOVERNED_AGENT', 'clone': 'IDENTITY_CLONE', 'fork': 'UNVERIFIED_FORK', 'unknown': 'UNKNOWN_ACTOR'}",
   "family": "continuity",
   "id": "E28-I39",
   "ok": true
  },
  {
   "description": "a signed succession gives CONTROLLED_SUCCESSOR with no retained authority",
   "detail": "{'class': 'CONTROLLED_SUCCESSOR', 'material_changes': ['model_version'], 'authority_retained': False, 'requires': ['REAUTHORIZATION'], 'authority': 'NONE'}",
   "family": "continuity",
   "id": "E28-I40",
   "ok": true
  },
  {
   "description": "a succession signed by the agent itself is not accepted",
   "detail": "{'class': 'UNVERIFIED_FORK', 'material_changes': ['model_version'], 'authority_retained': False, 'requires': ['REFUSE'], 'authority': 'NONE'}",
   "family": "continuity",
   "id": "E28-I41",
   "ok": true
  },
  {
   "description": "a revoked identity presenting again is REVOKED_RESURRECTION",
   "detail": "({'class': 'REVOKED_RESURRECTION', 'material_changes': [], 'authority_retained': False, 'requires': ['REFUSE'], 'authority': 'NONE'}, {'class': 'REVOKED_RESURRECTION', 'material_changes': [], 'authority_retained': False, 'requires': ['REFUS",
   "family": "continuity",
   "id": "E28-I42",
   "ok": true
  },
  {
   "description": "an actor claiming an unknown identity is UNKNOWN_ACTOR",
   "detail": "{'class': 'UNKNOWN_ACTOR', 'material_changes': [], 'authority_retained': False, 'requires': ['REFUSE'], 'authority': 'NONE'}",
   "family": "continuity",
   "id": "E28-I43",
   "ok": true
  },
  {
   "description": "a new key with a parent claim and no registration is UNVERIFIED_FORK",
   "detail": "{'class': 'UNVERIFIED_FORK', 'material_changes': [], 'authority_retained': False, 'requires': ['REFUSE'], 'authority': 'NONE'}",
   "family": "continuity",
   "id": "E28-I44",
   "ok": true
  },
  {
   "description": "a quarantine decision quarantines identity and E25 instance",
   "detail": "{'decision': 'QUARANTINE', 'reasons': ['POLICY_INCOMPATIBLE'], 'changes': ['model_id'], 'capability_expansion': [], 'authority_preserved': False, 'requires': 'QUARANTINE', 'authority': 'NONE'}",
   "family": "continuity",
   "id": "E28-I45",
   "ok": true
  },
  {
   "description": "a lineage edge signed by anyone but its source is refused",
   "detail": "['LINEAGE_SIGNER_NOT_SOURCE', 'LINEAGE_CYCLE']",
   "family": "lineage",
   "id": "E28-I46",
   "ok": true
  },
  {
   "description": "a lineage cycle is refused",
   "detail": "['LINEAGE_NODE_ALREADY_PARENTED', 'LINEAGE_CYCLE']",
   "family": "lineage",
   "id": "E28-I47",
   "ok": true
  },
  {
   "description": "a tampered lineage edge is detected",
   "detail": "['LINEAGE_HASH_MISMATCH:0', 'LINEAGE_SIGNATURE_INVALID:0', 'LINEAGE_SIGNER_NOT_SOURCE:0']",
   "family": "lineage",
   "id": "E28-I48",
   "ok": true
  },
  {
   "description": "a compressed path proof verifies; a tampered one does not",
   "detail": "['alice', 'cid_b0b6bf998b891479331855e5f2e81d84', 'cid_0b206caa4186a5f6b7cb3ab0f58741bd']",
   "family": "lineage",
   "id": "E28-I49",
   "ok": true
  },
  {
   "description": "the root principal of a depth-2 subagent is the human sponsor",
   "detail": "['alice', 'cid_6e2bf67078f6f5071ca2714ec446b67e', 'cid_21328aa0fac78f99caf16f85eb1c5beb']",
   "family": "lineage",
   "id": "E28-I50",
   "ok": true
  },
  {
   "description": "revoking a parent identity revokes every descendant identity, token and lease",
   "detail": "({'identities': ['cid_a44ca199fac6f6ce0b521a95e61d2b2e', 'cid_e58ea534e70362fcca79191d3b6dfc89'], 'tokens': ['dlg_9b04d6f600dfc6b783ff0ff03e6ec530', 'dlg_cbb93a0136f4c9be79b6d0ffa3b07627'], 'leases': ['lse_11f4f912449e5b379a804de7f4c5de87',",
   "family": "lineage",
   "id": "E28-I51",
   "ok": true
  },
  {
   "description": "an unknown delegation dimension is refused",
   "detail": "['DELEGATION_DIMENSION_UNKNOWN:god_mode']",
   "family": "delegation",
   "id": "E28-I52",
   "ok": true
  },
  {
   "description": "an omitted dimension is inherited, never widened",
   "detail": "{'capabilities': ['read'], 'resources': ['docs/'], 'tools': ['*'], 'data_scopes': ['internal'], 'org_scopes': ['self'], 'regions': ['eu', 'us'], 'max_transaction_value': 10000, 'economic_budget': 100000, 'max_executions': 1000, 'risk_ceilin",
   "family": "delegation",
   "id": "E28-I53",
   "ok": true
  },
  {
   "description": "a parent without downstream delegation cannot delegate",
   "detail": "['DOWNSTREAM_DELEGATION_FORBIDDEN']",
   "family": "delegation",
   "id": "E28-I54",
   "ok": true
  },
  {
   "description": "delegation beyond max depth is refused",
   "detail": "['DELEGATION_DEPTH_EXCEEDED']",
   "family": "delegation",
   "id": "E28-I55",
   "ok": true
  },
  {
   "description": "a child cannot outlive its parent",
   "detail": "['AMPLIFICATION:expires_at']",
   "family": "delegation",
   "id": "E28-I56",
   "ok": true
  },
  {
   "description": "a tampered delegation token is detected in the chain",
   "detail": "1",
   "family": "delegation",
   "id": "E28-I57",
   "ok": true
  },
  {
   "description": "revoking a delegation revokes every descendant token",
   "detail": "['dlg_0cc93a867a4f25d4fe44edaa84ab28af', 'dlg_23dce899f35fff9b890962835a7aa967']",
   "family": "delegation",
   "id": "E28-I58",
   "ok": true
  },
  {
   "description": "the execution count bound is enforced",
   "detail": "1",
   "family": "delegation",
   "id": "E28-I59",
   "ok": true
  },
  {
   "description": "the economic budget bound is enforced",
   "detail": "(['DELEGATION_ECONOMIC_BUDGET_EXHAUSTED'], ['DELEGATION_ECONOMIC_BUDGET_EXHAUSTED', 'DELEGATION_VALUE_EXCEEDED'])",
   "family": "delegation",
   "id": "E28-I60",
   "ok": true
  },
  {
   "description": "a region outside the grant is refused",
   "detail": "1",
   "family": "delegation",
   "id": "E28-I61",
   "ok": true
  },
  {
   "description": "risk that is not measured is refused, not assumed low",
   "detail": "['DELEGATION_RISK_UNKNOWN']",
   "family": "delegation",
   "id": "E28-I62",
   "ok": true
  },
  {
   "description": "a deleted, reordered or altered receipt breaks the chain",
   "detail": "1",
   "family": "receipt",
   "id": "E28-I63",
   "ok": true
  },
  {
   "description": "a public-safe receipt commits to identities without revealing them",
   "detail": "commit:61262d991169cf2c00aca75fbbaf09bc8a275c5022a39a571afd02a52628fa77",
   "family": "receipt",
   "id": "E28-I64",
   "ok": true
  },
  {
   "description": "supersession and revocation are new receipts; status reflects them",
   "detail": "1",
   "family": "receipt",
   "id": "E28-I65",
   "ok": true
  },
  {
   "description": "a refused action also produces a signed receipt",
   "detail": "['DELEGATION_RESOURCE_NOT_GRANTED', 'LEASE_RESOURCE_NOT_GRANTED']",
   "family": "receipt",
   "id": "E28-I66",
   "ok": true
  },
  {
   "description": "every log entry has a verifying RFC 6962 inclusion proof",
   "detail": "6",
   "family": "log",
   "id": "E28-I67",
   "ok": true
  },
  {
   "description": "every earlier tree is provably a prefix of the current tree",
   "detail": "[True, True, True, True, True, True]",
   "family": "log",
   "id": "E28-I68",
   "ok": true
  },
  {
   "description": "an altered log entry is detected",
   "detail": "['LOG_ENTRY_TAMPERED:0']",
   "family": "log",
   "id": "E28-I69",
   "ok": true
  },
  {
   "description": "a signed tree head verifies; a forged one does not",
   "detail": "{'size': 4, 'root': 'b4d89aa968c8daa8ca33463dd74093598838388cc9522e8b75595d3f2e1faff3', 'at': 1}",
   "family": "log",
   "id": "E28-I70",
   "ok": true
  },
  {
   "description": "with insufficient telemetry the fork verdict is UNKNOWN",
   "detail": "{'identity': 'cid_9c7fe358fa421d7a0b3e7c0d405b8956', 'verdict': 'UNKNOWN', 'findings': [], 'observations': 1, 'sufficient_telemetry': False, 'not_cloned_claimed': False, 'authority': 'NONE'}",
   "family": "fork",
   "id": "E28-I71",
   "ok": true
  },
  {
   "description": "a duplicated nonce is reported as a fork signal",
   "detail": "{'identity': 'x', 'verdict': 'FORK_DETECTED', 'findings': ['DUPLICATED_NONCE'], 'observations': 2, 'sufficient_telemetry': False, 'not_cloned_claimed': False, 'authority': 'NONE'}",
   "family": "fork",
   "id": "E28-I72",
   "ok": true
  },
  {
   "description": "impossible concurrent use of an exclusive identity is detected",
   "detail": "{'identity': 'x', 'verdict': 'FORK_DETECTED', 'findings': ['IMPOSSIBLE_CONCURRENT_USE'], 'observations': 2, 'sufficient_telemetry': True, 'not_cloned_claimed': False, 'authority': 'NONE'}",
   "family": "fork",
   "id": "E28-I73",
   "ok": true
  },
  {
   "description": "two successors claiming one parent are divergent descendants",
   "detail": "{'identity': 'a', 'verdict': 'FORK_DETECTED', 'findings': ['DIVERGENT_DESCENDANTS'], 'observations': 0, 'sufficient_telemetry': False, 'not_cloned_claimed': False, 'authority': 'NONE'}",
   "family": "fork",
   "id": "E28-I74",
   "ok": true
  },
  {
   "description": "an envelope from an unpinned trust domain is UNKNOWN",
   "detail": "{'identity': 'UNKNOWN', 'reasons': ['TRUST_DOMAIN_UNKNOWN'], 'granted': [], 'authority': 'NONE'}",
   "family": "cross-domain",
   "id": "E28-I75",
   "ok": true
  },
  {
   "description": "local authority is requested AND federated AND local sponsor AND home ceiling",
   "detail": "{'identity': 'cid_9c428b2d7b2171dd94cd9c7d6aad6225', 'foreign': 'orga.example:cid_0852da16a6507db1556946c4fc6f3c42', 'granted': ['read'], 'refused': {'pay': ['ABOVE_HOME_CEILING'], 'write': ['CAPABILITY_NOT_FEDERATED']}, 'delegation': 'dlg_",
   "family": "cross-domain",
   "id": "E28-I76",
   "ok": true
  },
  {
   "description": "a foreign envelope cannot be replayed into the receiving domain",
   "detail": "{'identity': 'UNKNOWN', 'reasons': ['FOREIGN_ENVELOPE_REPLAYED'], 'granted': [], 'authority': 'NONE'}",
   "family": "cross-domain",
   "id": "E28-I77",
   "ok": true
  },
  {
   "description": "digital-to-physical translation needs platform attestation",
   "detail": "{'identity': 'cid_b4494cd17fbe7e0cd85c1e8bb64008a4', 'foreign': 'orga.example:cid_adc0beb9503fcd5fa3fff17420edc8b5', 'granted': [], 'refused': {'read': ['PHYSICAL_BOUNDARY_REQUIRES_PLATFORM_ATTESTATION']}, 'delegation': '', 'reasons': ['NO_",
   "family": "cross-domain",
   "id": "E28-I78",
   "ok": true
  },
  {
   "description": "a revoked identity cannot renew its lease",
   "detail": "['LEASE_REVOKED']",
   "family": "lease",
   "id": "E28-I79",
   "ok": true
  },
  {
   "description": "renewal re-signs against the current identity and policy",
   "detail": "['LEASE_SPONSOR_KEY_MISMATCH']",
   "family": "lease",
   "id": "E28-I80",
   "ok": true
  },
  {
   "description": "the lease action budget is enforced",
   "detail": "1",
   "family": "lease",
   "id": "E28-I81",
   "ok": true
  },
  {
   "description": "more test-time compute is not more authority",
   "detail": "[('DENY', ('DELEGATION_CAPABILITY_NOT_GRANTED', 'LEASE_CAPABILITY_NOT_GRANTED')), ('ALLOW',), ('DENY', ('DELEGATION_CAPABILITY_NOT_GRANTED', 'LEASE_CAPABILITY_NOT_GRANTED')), ('ALLOW',)]",
   "family": "compute",
   "id": "E28-I82",
   "ok": true
  },
  {
   "description": "a self-improvement candidate cannot approve itself",
   "detail": "({'promoted': False, 'reasons': ['SELF_OR_UNREGISTERED_APPROVER'], 'authority': 'NONE'}, {'promoted': True, 'continuity': 'CONTINUITY_APPROVED', 'authority_preserved': False, 'authority': 'NONE'})",
   "family": "evolution",
   "id": "E28-I83",
   "ok": true
  },
  {
   "description": "a candidate with any evaluation stage missing is not promoted",
   "detail": "{'promoted': False, 'reasons': ['STAGE_NOT_PASSED:evidence'], 'authority': 'NONE'}",
   "family": "evolution",
   "id": "E28-I84",
   "ok": true
  },
  {
   "description": "learning from prediction error never changes the policy",
   "detail": "{'n': 5, 'correct': 2, 'accuracy': 0.4, 'authority': 'NONE', 'brier_micro_mean': 330000, 'policy_changes': 0}",
   "family": "prediction",
   "id": "E28-I85",
   "ok": true
  },
  {
   "description": "a research bid is bounded by the lease's economic permission; reward is not authority",
   "detail": "({'accepted': False, 'reasons': ['BID_EXCEEDS_ECONOMIC_PERMISSION'], 'kind': 'SIMULATION', 'authority': 'NONE'}, [('DENY', ('DELEGATION_CAPABILITY_NOT_GRANTED', 'LEASE_CAPABILITY_NOT_GRANTED')), ('ALLOW',), ('DENY', ('DELEGATION_CAPABILITY_",
   "family": "economy",
   "id": "E28-I86",
   "ok": true
  },
  {
   "description": "selective disclosure verifies revealed attributes and detects a changed value",
   "detail": "1",
   "family": "disclosure",
   "id": "E28-I87",
   "ok": true
  },
  {
   "description": "the passport is signed and every section carries an epistemic label",
   "detail": "{'VERIFIED', 'CLAIMED', 'OBSERVED', 'ATTESTED'}",
   "family": "passport",
   "id": "E28-I88",
   "ok": true
  },
  {
   "description": "the conformance runner executes every dimension against the real fabric",
   "detail": "{'identity_binding': 'PASS', 'request_binding': 'PASS', 'authority_binding': 'PASS', 'delegation_security': 'PASS', 'capability_restrictions': 'PASS', 'replay_resistance': 'PASS', 'revocation': 'PASS', 'model_substitution': 'PASS', 'runtime",
   "family": "conformance",
   "id": "E28-I89",
   "ok": true
  },
  {
   "description": "a subagent cannot spawn with a stolen parent token (wrong parent key)",
   "detail": "['PARENT_KEY_MISMATCH']",
   "family": "lineage",
   "id": "E28-I90",
   "ok": true
  }
 ],
 "total": 90
}
