API Reference Bounded Authority Protocol v#0.1.0

Copy Markdown View Source

Modules

Deterministic protocol verification for cryptographically bounded proof-of-possession authority.

Deterministic offline verifier CLI for the v1 conformance corpus.

Pure loader and integrity verifier for the portable conformance corpus.

Pure report builder for the loaded corpus and runner results.

Pure case executor for the loaded corpus.

Explicit entry point for the immutable v1 wire profile.

Closed redacted non-authorizing historical-anchor facts.

Closed redacted non-authorizing atomic anchored-export facts.

Raw rows and compact JWS values presented for deterministic archive framing.

Raw stored-object chunks and exact observed object-store version.

Strict bounded canonical base64url decoding for v1.

Closed deterministic boundary-anchor signing input.

Resource ceilings for the v1 wire profile.

Closed redacted non-authorizing consumption-chain facts.

Raw canonical consumption rows presented for chain verification.

Closed deterministic consumption-chain row producer input.

Closed raw compact grant and proof credentials.

Closed bounded decoded grant with explicitly unevaluated verification.

Closed bounded decoded proof with explicitly unevaluated verification.

Exact archive chunks, complete digest, and byte count from deterministic framing.

Exact canonical consumption row bytes and domain-separated row hash.

Closed value-bearing, redacted, non-authorizing verified envelope facts.

Exact expected context for one historical boundary anchor.

Mandatory caller context for atomic anchored-export verification.

Mandatory caller-derived boundaries for one nonempty consumption-chain range.

Exact semantic context required before deterministic archive framing.

Explicit expected context for standalone raw-grant verification.

Exact expected context for one authenticated historical-key transition.

Explicit expected context for combined raw-envelope verification.

Closed deterministic grant producer input.

Closed value-bearing, redacted, non-authorizing verified grant facts.

Ordered nonempty caller-supplied historical public-key chain.

One exact caller-supplied historical public key and validity window.

Bounded RFC 8785 serialization for the closed v1 tagged JSON algebra.

Bounded JSON decoder preserving object order and rejecting duplicate binary names.

Exact public Ed25519 JWK encoding, decoding, and RFC 7638 thumbprints.

An untrusted key identifier hint.

Closed deterministic historical-key transition signing input.

Closed redacted non-authorizing authenticated key-transition facts.

Closed producer input for one named operation and its ordered selectors.

Closed deterministic holder-proof producer input.

Closed deterministic standard-JWS signing input.

Caller-supplied already-trusted issuer key context.

Pure bounded normalization for hierarchical HTTPS DPoP target URIs.