FAMILY HOMEEXPLORE AFAEXPLORE EABARUN AUTHORITY JOURNEYINSPECT FROZEN CHALLENGE
AUTHORITY PASSPORT PROTOCOL · CROSS-DOMAIN GOVERNANCE

AUTHORITY CAN TRAVEL.
EXECUTION AUTHORITY CANNOT.

TA-14 Federation & Authority exposes the governed seam between independent domains: what authority context may cross, what the receiving domain may accept, and what must still be re-established locally before protected consequence.

FEDERATION & AUTHORITY · GUIDED TOUR

The crossing is not the permission.

This surface explains the machinery beneath AFA: what an Authority Passport may carry, what a Connection Profile must declare, and what the receiving domain must still establish for itself.

CROSS-DOMAIN SEAM
ISSUING DOMAINAUTHORITY PASSPORTCONNECTION PROFILERECEIVING DOMAIN
BOUNDARY: ACCEPTANCE DOES NOT GRANT COMMIT OR EXECUTION AUTHORITY
LOCAL COMPILATIONADMISSIBILITYLOCAL LEASELOCAL CAPSULEEFFECT
FOUNDING CONNECTION PROFILE · AFA-IP-001 v0.3

The Connection Profile is the crossing. It is not permission to act.

AFA-IP-001 is the TA-14-authored Authority Passport × CNS/CP Connection Profile examination artifact for Passport Presentation & Acceptance. It defines the bounded crossing, preserves negative space, records receipt or refusal, and terminates federation before any local execution entitlement exists.

LOCAL EXERCISEUNPUBLISHEDNON-RESOLVABLEEXTERNAL INTEROPERABILITY · NOT CLAIMED
REQUIRED FOR THIS PROFILE

Passport identity, issuer, lineage, purpose, authority state, freshness, revocation context, consequence bounds, jurisdiction and integrity reference.

OPTIONAL IF DECLARED

Constitution reference, delegation envelope, proof obligations, irreversibility position, closure responsibility and understood bounded extensions.

PROHIBITED IMPORT

Local Lease, Local Capsule, Commit authorization, Execution authorization, permission to produce Effect, or proof that present local reality remains admissible.

PRESENT → VERIFY → RECEIVE → DETERMINE → TERMINATE → RE-ESTABLISH → LOCAL GOVERNANCE ONLY
OPEN AFA SHOWROOM →INSPECT AFA v1.0-RC1 ↗

AFA-IP-001 v0.3 remains an examination artifact with evidence gates open. CNS/CP certification or endorsement, registry publication, proven external interoperability, TA14_RECOGNIZED status and completed runtime/CI execution evidence are not claimed.

AFA × EABA · FLAGSHIP COMPOSITION

INTEROPERABILITY WITHOUT AUTHORITY LAUNDERING.

AFA can accept bounded authority context across an independent-domain seam while EABA still HOLDs, DENYs, or ESCALATEs the exact local consequence. The Authority Journey lets you operate both boundaries as one end-to-end path without collapsing them into one architecture.

RUN THE AUTHORITY JOURNEY →INSPECT FROZEN OPERATIONAL CHALLENGE →

Enter the federation work.

AUTHORITY PASSPORT PROTOCOL

Canonical AVP architecture, object model, lifecycle, receipts, revocation, trust and closure.

CONNECTION PROFILES

AVP × CNS/CP interface mapping: provider, consumer, positive space, negative space and versioned profile semantics.

PASSPORT LAB

Simulate presentation, receipt, narrowing, freshness, revocation and receiving-domain decisions.

INTEROPERABILITY TESTS

Run bounded reference vectors and preserve passes, failures, HOLDs and restraint evidence.

CONFORMANCE & RECOGNITION

SELF_DECLARED → INDEPENDENT_ASSESSED → TA14_RECOGNIZED, with scope and validity preserved.

IMPLEMENTER CENTER

Schemas, fixtures, implementation guidance and evidence requirements for real integrations.

WHY FEDERATION NEEDS GOVERNANCE

Trust is not authority. Identity is not permission. Capability is not admissibility.

Modern AI, building, financial and operational systems cross organizational boundaries constantly. The dangerous shortcut is to treat successful transport as successful authorization. TA-14 separates the handoff from the consequence so that a receiver can trust an issuer, accept a Passport and still correctly HOLD or REJECT the requested action.

TRUST ≠ AUTHORITY

A trusted counterparty may still lack standing for the requested consequence.

IDENTITY ≠ PERMISSION

Knowing who acted does not establish what that actor may do here and now.

ACCEPTANCE ≠ EXECUTION

Receiving authority context does not grant Commit or Execution authority.

CAPABILITY ≠ ADMISSIBILITY

A system may be technically able to act while the governed answer remains HOLD.

AUTHORITY PASSPORT OBJECT MODEL

What actually travels across the boundary.

An Authority Passport is not a bearer token. It is a bounded, inspectable authority-context object carrying origin, lineage, purpose, delegation limits, freshness, consequence capacity, jurisdiction, proof obligations, revocation and closure responsibility.

passport_idStable identifier, version, lifecycle state, issue time, expiry and supersession.
issuerIssuer-domain identity, key, trust anchor and authority evidence.
principal_lineagePrincipal, delegators, depth, signatures and revocation status.
constitution_referenceConstitution digest, profile, version, dependencies and amendments.
purposeAllowed objective, forbidden drift and completion condition.
delegation_envelopeAllowed receiver classes, maximum depth, fan-out and sub-delegation rules.
authority_stateLease reference, route state, continuity status and expiry.
freshnessCURRENT, AGING, STALE, EXPIRED or UNKNOWN, with next validation deadline.
consequence_budgetRemaining capacity, reservations, consumed amounts and debt.
irreversibility_positionCurrent stage, next protected threshold and local burden required.
jurisdictionOrigin, destination constraints, residency, transfer and legal boundaries.
proof_obligationsRequired receipts, witnesses, replay, restraint and retention.
revocationClass, endpoint, latency, sequence and propagation requirements.
closure_responsibilityNamed owner for outcome, remediation, dispute and residual debt.
LIFECYCLE + FRESHNESS

Cryptographically valid is not the same as currently usable.

DRAFT

Prepared but not issued.

ISSUED

Signed by issuer; not yet accepted.

ACCEPTED

Accepted for local assessment without narrowing.

ACCEPTED_NARROWED

Accepted only after explicit narrowing.

ACTIVE

Local compilation and current local assessment support continued use.

HEARTBEAT_PENDING

Freshness renewal required before next protected threshold.

SUSPENDED

Temporarily barred pending resolution.

REVOKED

Authority context terminated.

SUPERSEDED

Replaced by a later Passport version.

EXPIRED

Time validity ended.

DISPUTED

Material lineage, semantic or proof conflict unresolved.

CLOSED

Outcome, budget and residual obligations closed.

FRESHNESS POSTURE

CURRENT may enter local assessment. AGING requires renewal soon. STALE means HOLD or SUSPEND. EXPIRED means REJECT or close. UNKNOWN means QUARANTINE or HOLD until authoritative status is restored.

RECEIVING-DOMAIN DECISIONS

The receiving domain keeps the right to refuse.

ACCEPTACCEPT_NARROWEDHOLDREJECTQUARANTINESUSPENDESCALATE

ACCEPT only means the Passport may enter local assessment. ACCEPT_NARROWED means the receiver has explicitly reduced scope. HOLD preserves the stop condition. REJECT refuses the route. QUARANTINE freezes an untrusted path. SUSPEND temporarily bars continued use. ESCALATE preserves a safe posture while an authorized reviewer resolves the condition.

LOCAL RE-ESTABLISHMENT

What must happen after acceptance.

01LOCAL CONSTITUTION

Compile the receiving domain’s own governing rules.

02LOCAL EVIDENCE

Attach current local and target-state evidence.

03ADMISSIBILITY

Determine whether the next protected step is supported now.

04CAPACITY

Reserve the bounded consequence capacity required.

05FINAL HEARTBEAT

Recheck freshness and changed conditions immediately before release.

06LOCAL CAPSULE

Issue a one-time local execution capsule only after the burden is satisfied.

07EFFECT + CLOSURE

Observe consequence, preserve receipts and close residual obligations.

NO LOCAL RE-ESTABLISHMENT → NO PROTECTED CONSEQUENCE.
AVP × CNS/CP

Connection Profiles define the handoff. TA-14 still governs what happens next.

WHAT MAY CROSS

Only the bounded authority context and receipt/verification data explicitly named by the Connection Profile.

WHAT MUST NOT CROSS

Automatic Commit authority, automatic Execution authority, silent broadening, protected credentials or undisclosed local policy.

WHAT THE CP ESTABLISHES

A provider/consumer contract and inspectable record of the cross-boundary interaction.

WHAT TA-14 STILL ESTABLISHES

Whether current local evidence, scope, standing and authority support Commit and Execution.

INTEROPERABILITY TESTING

We test the refusal path as seriously as the success path.

Direct Passport-to-effector attempt
Broadening beyond delegated scope
Revocation race before threshold crossing
Stale or expired Passport
Semantic mismatch between domains
Consequence-budget conflict
Unresolved lineage or delegation conflict
Jurisdiction incompatibility
Missing proof or receipt obligation
Trust level incorrectly treated as execution authority
Changed conditions after acceptance
Closure or residual-obligation failure
CONFORMANCE + RECOGNITION

Compatibility, independent assessment and TA-14 recognition are different claims.

SELF_DECLAREDImplementation operator

Mapped tests, signed evidence bundle, disclosed scope and conflicts.

INDEPENDENT_ASSESSEDIndependent assessor

Independent test execution, lineage and narrowing review, build/profile binding.

TA14_RECOGNIZEDTA-14 or designated authority

Independent assessment plus recognition review, validity and revocation entry.

Every public conformance claim should bind itself to the exact AVP version, dependency versions, sector profile, issuer and receiver domains, trust anchors, evidence bundle, validity period and reassessment triggers. Protocol compatibility by itself is not TA-14 recognition.

IMPLEMENTER CENTER

How the frozen protocol becomes working infrastructure.

SCHEMAS

Machine-readable Passport and receipt structures bound to a protocol version.

REGISTRIES

Profiles, trust anchors, versions, receipts, revocations and public status.

TEST VECTORS

Executable positive and negative cases.

SDKs

Implementation helpers that preserve the protocol boundary rather than bypassing it.

INTEROPERABILITY DEMOS

Independent-domain tests showing what crossed and what stayed local.

ASSURANCE EVIDENCE

Inspectable records supporting self-declared, independent or recognized claims.

COMMERCIAL ENTRY

Bring us one real boundary where authority context crosses but execution authority must remain local.

Begin with a bounded readiness review. From there, TA-14 can map the interface, support implementation, run a bounded interoperability examination, preserve the evidence, and where requirements are met, support a conformance or recognition pathway and later revalidation.

REQUEST TA-14 READINESS REVIEW →