{"name":"MandateShield","category":"AI agent payment authority","release":{"product_version":"1.10.0","openapi_version":"3.1.0","standard_version":"2.4.0","released_at":"2026-07-26T19:12:33.000Z","generated_at":"2026-07-26T19:12:33.000Z","artifact_status":"immutable_release_snapshot","published_as_current":true,"latest_pointer":"https://mandateshield.com/current-release.json","supersession_pointer":"https://mandateshield.com/current-release.json","canonical_versioned_documents":{"openapi":"https://mandateshield.com/openapi/3.1.0.json","llms":"https://mandateshield.com/llms/1.10.0.txt","llms_full":"https://mandateshield.com/llms-full/1.10.0.txt","discovery":"https://mandateshield.com/discovery/1.10.0.json"}},"current_release":"https://mandateshield.com/current-release.json","machine_documents":{"release":"https://mandateshield.com/current-release.json","human_release":"https://mandateshield.com/current-release","openapi":"https://mandateshield.com/openapi.json","openapi_versioned":"https://mandateshield.com/openapi/3.1.0.json","llms":"https://mandateshield.com/llms.txt","llms_versioned":"https://mandateshield.com/llms/1.10.0.txt","llms_full":"https://mandateshield.com/llms-full.txt","llms_full_versioned":"https://mandateshield.com/llms-full/1.10.0.txt","discovery":"https://mandateshield.com/.well-known/mandateshield.json","discovery_versioned":"https://mandateshield.com/discovery/1.10.0.json","health":"https://mandateshield.com/api/health","status":"https://mandateshield.com/status"},"not_categories":["SEPA mandate management","direct-debit processing","electronic signature","payment processing"],"version":"1.10.0","standard_version":"2.4.0","canonical":"https://mandateshield.com","integration_guide":"https://mandateshield.com/integrations","integration_rule":"Required new-account v1.7 path: VERIFY creates only a short RESERVED authorization. Every account created at or after 2026-07-26T12:01:24.000Z must CONSUME with provider_binding; only older accounts retain legacy unbound compatibility. Provider-bound CONSUME atomically creates a ProviderSubmission record, issues a signed execution permit and returns provider_submission_permitted=false. Signature-only or offline permit verification never grants. An audience-bound execution service must atomically redeem the exact permit and bindings. Only the first response with provider_submission_permitted=true, status=CLAIMED and idempotent_replay=false grants one provider operation using the signed provider_idempotency_key. Report the returned provider_submission_id and stable payment_reference to /api/v2/provider-submissions. The caller report or signed webhook is only a hint; configured Stripe API lookup or canonical x402 chain verification must independently confirm a terminal outcome before MandateShield autonomously COMMITs or RELEASEs and signs an independent execution receipt. Unknown and conflicting outcomes remain fail-closed. Provider/facilitator adoption is external and not claimed.","public_activation":{"zero_account_strict_lifecycle_sandbox":{"endpoint":"https://mandateshield.com/api/v2/sandbox/lifecycle","page":"https://mandateshield.com/sandbox","specification":"https://mandateshield.com/specifications/strict-lifecycle-sandbox/v1","request":{"method":"POST","authentication_required":false,"accepted_body":{"scenario":"SUCCESS"}},"trust_boundary":{"test_only":true,"simulated":true,"request_local":true,"persistent_lifecycle_state":false,"money_moved":false,"production_credentials_used":false,"external_provider_contacted":false,"independent_organization_involved":false,"third_party_audit_or_certification":false,"production_conformance_proven":false}},"proof_network":{"page":"https://mandateshield.com/proof-network","list_endpoint":"https://mandateshield.com/api/v1/proof-network/proofs","challenge_endpoint":"https://mandateshield.com/api/v1/proof-network/challenges","attestation_endpoint":"https://mandateshield.com/api/v1/proof-network/attestations","proof_template":"https://mandateshield.com/api/v1/proof-network/proofs/{proof_id}","badge_template":"https://mandateshield.com/api/v1/proof-network/proofs/{proof_id}/badge.svg","specification":"https://mandateshield.com/specifications/proof-attestation/v1","semantics":{"attestation_type":"EXTERNALLY_BOUND_SELF_REPORT","subject_binding_verified":true,"report_integrity_verified":true,"result_verification":"SELF_REPORTED_OUTPUTS_ONLY","conformance_execution_verified":false,"independently_verified":false,"entries_are_users":false,"entries_are_installations":false,"hosted_sandbox_included":false,"third_party_conformance":false,"certification":false,"non_authorizing":true}}},"execution_scope":{"hosted_service":{"payment_execution":false,"payment_processing":false,"payment_credentials_received":false,"encrypted_provider_lookup_credentials_supported":true,"independent_provider_reconciliation":true,"autonomous_terminal_authorization_finalization":true},"customer_side_gate":{"available":true,"bound_provider_submission":true,"canonical_reconciliation":true,"required_journal_consistency":"GLOBAL_SHARED_LINEARIZABLE","journal_declaration_is_independent_attestation":false,"split_brain_safe":false,"execution_profiles":["STRIPE_PAYMENT_INTENTS_V1","MANDATESHIELD_X402_V2_EXACT_EIP3009_V1"]},"provider_bound_permit":{"available":true,"permit_lifetime_seconds_max":60,"customer_or_agent_submission_permitted_on_consume":false,"online_atomic_redemption_required":true,"signature_only_verification_grants_submission":false,"exact_signed_request_binding_required":true,"provider_idempotency_key_signed":true,"current_provider_or_facilitator_adoption_claimed":false,"permitless_provider_rejection_claimed":false}},"execution_contract":{"production_endpoint":"https://mandateshield.com/api/v2/verify","execution_authorizations_endpoint":"https://mandateshield.com/api/v2/execution-authorizations","execution_permit_verify_endpoint":"https://mandateshield.com/api/v2/execution-permits/verify","execution_permit_redeem_endpoint":"https://mandateshield.com/api/v2/execution-permits/redeem","provider_submission_endpoint":"https://mandateshield.com/api/v2/provider-submissions","stripe_webhook_template":"https://mandateshield.com/api/v2/provider-webhooks/stripe/{connection_id}","execution_receipt_verify_endpoint":"https://mandateshield.com/api/v2/execution-receipts/verify","challenge_endpoint":"https://mandateshield.com/api/v2/challenges","normalization_endpoint":"https://mandateshield.com/api/v2/normalize","analysis_endpoint":"https://mandateshield.com/api/v1/preflight","analysis_is_executable":false,"verification_creates_state":"RESERVED","verification_authorizes_provider_submission":false,"fail_closed":true,"reservation_only_when":{"decision":"ALLOW","enforcement_authorized":true,"mode":"live","persisted":true,"authority_valid":true,"key_trust":"ACCOUNT_PINNED","execution_authorization_state":"RESERVED","consumable":true},"key_scopes":{"verify":{"scope":"VERIFY","may_verify_authority":true,"may_transition_execution_authorizations":false},"processor":{"scope":"PROCESSOR","exact_processor_audience_required":true,"may_verify_authority":false,"may_transition_execution_authorizations":true,"may_redeem_execution_permits":true,"must_remain_in_trusted_gateway_or_execution_edge":true,"redemption_credential_must_remain_at_execution_edge":true}},"lifecycle":{"states":["RESERVED","CONSUMED","COMMITTED","RELEASED","EXPIRED","SETTLEMENT_UNKNOWN"],"transitions":["CONSUME","COMMIT","RELEASE","EXPIRE"],"recommended_path":["VERIFY_RESERVE","CONSUME_WITH_PROVIDER_BINDING","ISSUE_SIGNED_EXECUTION_PERMIT","PROVIDER_OR_FACILITATOR_REDEEM","PROVIDER_OPERATION_WITH_SIGNED_IDEMPOTENCY_KEY","REPORT_PROVIDER_SUBMISSION","INDEPENDENT_PROVIDER_OR_CHAIN_VERIFICATION","AUTONOMOUS_COMMIT_OR_RELEASE","SIGNED_EXECUTION_RECEIPT"],"provider_bound_consume":{"provider_binding_required":true,"mandatory_for_accounts_created_at_or_after":"2026-07-26T12:01:24.000Z","legacy_unbound_consume_allowed_only_for_accounts_created_before":"2026-07-26T12:01:24.000Z","missing_account_creation_time_fails_closed":true,"execution_permit_issued":true,"provider_submission_permitted":false,"provider_redemption_required":true},"signature_only_permit_verification":{"online_state":"UNKNOWN","one_use_enforced":false,"advisory_only":true,"provider_submission_permitted":false},"redemption_gate":"provider_submission_permitted must equal true; status must equal CLAIMED; idempotent_replay must equal false","exact_redemption_retry_returns_new_permission":false,"conflicting_replay_status":409,"provider_operations_per_fresh_redemption":1,"provider_operation_idempotency_source":"signed execution permit provider.idempotency_key returned as provider_idempotency_key","downstream_enforcement_location":"provider or facilitator execution boundary","downstream_submission_count_enforced_by_mandateshield":false,"provider_or_facilitator_adoption_claimed":false,"provider_rejects_permitless_operations_claimed":false,"legacy_unbound_consume_may_return_direct_permission":true,"legacy_unbound_consume_accounts_created_before":"2026-07-26T12:01:24.000Z","legacy_unbound_consume_available_to_new_accounts":false,"legacy_unbound_consume_is_recommended_path":false,"terminal_reporting":"Manual processor_result COMMIT or RELEASE is CALLER_ASSERTED. The recommended provider-bound path reports the ProviderSubmission, independently verifies the exact Stripe PaymentIntent or canonical x402 chain result, then autonomously COMMITs or RELEASEs and signs the terminal execution receipt.","provider_reconciliation":{"caller_report_is_terminal_evidence":false,"signed_webhook_is_terminal_evidence":false,"current_independent_profiles":["STRIPE_PAYMENT_INTENTS_V1","X402_V2_EXACT"],"strong_evidence_classes":["PROVIDER_API_VERIFIED","CHAIN_FINALIZED"],"terminal_transition_is_autonomous":true,"pending_unknown_or_conflict_is_fail_closed":true,"durable_lease_retry":true},"unknown_outcome":"Do not release or retry. Reconcile first. After the settlement deadline, conservatively charge the cumulative budget and never auto-release it."},"cumulative_budgets":{"optional_periods":["LIFETIME","DAY","MONTH"],"calendar_timezone":"UTC","reservation_is_atomic":true,"fiat_unit":"integer minor units","atomic_asset_unit":"canonical arbitrary-precision decimal string"},"processor_result_boundary":{"source":"customer trusted gateway adapter","authenticated_by":"audience-bound PROCESSOR key","provider_signed_proof":false,"independently_proves_settlement":false,"current_execution_receipt_evidence_class":"CALLER_ASSERTED","current_execution_receipt_independent_verification":false,"execution_receipt_is_historical_only":true,"execution_receipt_authorizes_execution":false},"independent_provider_result_boundary":{"caller_report_or_webhook_is_hint_only":true,"stripe_source":"independent Stripe PaymentIntent API lookup","x402_source":"canonical EVM receipt, transfer log and confirmation verification","exact_request_binding_required":true,"current_evidence_classes":["PROVIDER_API_VERIFIED","CHAIN_FINALIZED"],"independent_verification":true,"terminal_transition_is_system_applied":true,"external_provider_enforcement_adoption_claimed":false},"production_prerequisites":["active live VERIFY API key","separate live PROCESSOR API key bound to the exact gateway audience","registered immutable mandate","account-pinned issuer public key","fresh one-time verification challenge","valid signed authority bound to the final purchase","durable signed receipt","provider-bound CONSUME that issues a signed execution permit while submission remains forbidden","fresh atomic online redemption by the provider or facilitator execution service","provider operation using the signed provider idempotency key","stable provider submission report and payment reference","configured independent Stripe API or x402 chain verification","autonomous terminal transition from strong provider evidence","signed terminal execution receipt after COMMIT or RELEASE"]},"endpoints":{"http_preflight":"https://mandateshield.com/api/v1/preflight","analysis_preflight":"https://mandateshield.com/api/v1/preflight","analysis_batch":"https://mandateshield.com/api/v1/batch","verification_challenge":"https://mandateshield.com/api/v2/challenges","cryptographic_verify":"https://mandateshield.com/api/v2/verify","protocol_normalization":"https://mandateshield.com/api/v2/normalize","cryptographic_batch":"https://mandateshield.com/api/v2/batch","execution_authorizations":"https://mandateshield.com/api/v2/execution-authorizations","execution_permit_verify":"https://mandateshield.com/api/v2/execution-permits/verify","execution_permit_redeem":"https://mandateshield.com/api/v2/execution-permits/redeem","provider_submission_report":"https://mandateshield.com/api/v2/provider-submissions","stripe_provider_webhook_template":"https://mandateshield.com/api/v2/provider-webhooks/stripe/{connection_id}","execution_receipt_verify":"https://mandateshield.com/api/v2/execution-receipts/verify","receipt_verify":"https://mandateshield.com/api/v2/receipts/verify","receipt_transparency_template":"https://mandateshield.com/api/v2/transparency/{receipt_id}","threat_intelligence":"https://mandateshield.com/api/v1/threat-intelligence","zero_account_strict_lifecycle_sandbox":"https://mandateshield.com/api/v2/sandbox/lifecycle","proof_network_list":"https://mandateshield.com/api/v1/proof-network/proofs","proof_network_challenge":"https://mandateshield.com/api/v1/proof-network/challenges","proof_network_attestation":"https://mandateshield.com/api/v1/proof-network/attestations","proof_network_proof_template":"https://mandateshield.com/api/v1/proof-network/proofs/{proof_id}","proof_network_badge_template":"https://mandateshield.com/api/v1/proof-network/proofs/{proof_id}/badge.svg","http_batch":"https://mandateshield.com/api/v1/batch","mcp":"https://mandateshield.com/api/mcp","mcp_standalone_noauth":"https://mandateshield.com/api/mcp/plugin","a2a":"https://mandateshield.com/a2a","a2a_agent_card":"https://mandateshield.com/.well-known/agent-card.json","openapi":"https://mandateshield.com/openapi.json","jwks":"https://mandateshield.com/.well-known/jwks.json"},"clients":{"javascript":"https://mandateshield.com/sdk/v1.10.0/mandateshield.mjs","cli":"https://mandateshield.com/sdk/v1.10.0/mandateshield-cli.mjs","receipt_verifier":"https://mandateshield.com/sdk/v1.10.0/mandateshield-receipt-verifier.mjs","execution_evidence_verifier":"https://mandateshield.com/sdk/v1.10.0/mandateshield-execution-evidence-verifier.mjs","execution_evidence_verifier_types":"https://mandateshield.com/sdk/v1.10.0/mandateshield-execution-evidence-verifier.d.ts","gateway":"https://mandateshield.com/sdk/v1.10.0/mandateshield-gateway.mjs","gateway_types":"https://mandateshield.com/sdk/v1.10.0/mandateshield-gateway.d.ts","gateway_v1_frozen":"https://mandateshield.com/sdk/v1.4.0/mandateshield-gateway.mjs","gateway_v1_release_manifest":"https://mandateshield.com/evidence/v1.4.0/release-manifest.json","stripe_payment_intents":"https://mandateshield.com/sdk/v1.10.0/mandateshield-stripe-payment-intents.mjs","x402_v2_exact_eip3009":"https://mandateshield.com/sdk/v1.10.0/mandateshield-x402-v2-exact.mjs","x402_v2_exact_eip3009_types":"https://mandateshield.com/sdk/v1.10.0/mandateshield-x402-v2-exact.d.ts","checksums":"https://mandateshield.com/sdk/v1.10.0/SHA256SUMS","integration_examples":"https://mandateshield.com/integrations","hosted_distributions":{"release_version":"1.10.0","publication_status":"mandateshield_origin_hosted","third_party_registry_status":"not_published","npm_name":"@mandateshield/sdk","npm_install":"npm install https://mandateshield.com/packages/npm/1.10.0/mandateshield-sdk-1.10.0.tgz","python_name":"mandateshield","python_install":"python3 -m pip install --index-url https://mandateshield.com/packages/python/simple --no-deps mandateshield==1.10.0","go_module":"github.com/mandateshield/mandateshield-go","go_install":"GONOSUMDB=github.com/mandateshield/mandateshield-go GOPROXY=https://mandateshield.com/packages/go go get github.com/mandateshield/mandateshield-go@v1.10.0","external_registry_install_claimed":false}},"release_evidence":{"page":"https://mandateshield.com/evidence/release-integrity","manifest":"https://mandateshield.com/evidence/v1.10.0/release-manifest.json","manifest_schema":"https://mandateshield.com/schemas/release-manifest/v3","sbom":"https://mandateshield.com/evidence/v1.10.0/sbom.spdx.json","x402_compatibility":"https://mandateshield.com/evidence/v1.10.0/x402-compatibility.json","checksums":"https://mandateshield.com/sdk/v1.10.0/SHA256SUMS"},"capabilities":{"capabilities_scope":"HOSTED_SERVICE_UNLESS_EXPLICITLY_CUSTOMER_SIDE","policy_analysis":true,"cryptographic_authority_verification":true,"supported_authority_algorithms":["ES256","RS256","PS256"],"decision_receipt_algorithm":"ES256","registered_mandates":true,"account_pinned_issuer_keys":true,"one_time_challenges":true,"signed_decision_receipts":true,"public_receipt_transparency_lookup":true,"strict_batch_verification_max_items":25,"cumulative_budgets":["LIFETIME","UTC_DAY","UTC_MONTH"],"execution_authorization_reservations":true,"execution_authorization_transitions":["CONSUME","COMMIT","RELEASE","EXPIRE"],"signed_execution_permits":true,"execution_permit_algorithm":"ES256","execution_permit_max_lifetime_seconds":60,"online_atomic_execution_permit_redemption":true,"execution_permit_offline_verification_is_executable":false,"signed_terminal_execution_receipts":true,"execution_receipt_algorithm":"ES256","execution_receipt_authorizes_execution":false,"current_execution_receipt_evidence_classes":["CALLER_ASSERTED","PROVIDER_API_VERIFIED","CHAIN_FINALIZED","LEDGER_DERIVED","UNRESOLVED"],"independent_provider_evidence_verification":true,"independent_provider_evidence_classes":["PROVIDER_API_VERIFIED","CHAIN_FINALIZED"],"caller_asserted_execution_receipt_independent_verification":false,"strong_provider_execution_receipt_independent_verification":true,"autonomous_provider_submission_reconciliation":true,"autonomous_terminal_authorization_finalization":true,"stripe_webhook_is_terminal_evidence":false,"provider_or_facilitator_enforcement_adoption_claimed":false,"provider_rejects_permitless_operations_claimed":false,"provider_bound_consume_default_for_new_accounts":true,"provider_bound_consume_required_from_account_created_at":"2026-07-26T12:01:24.000Z","legacy_unbound_consume_available_to_new_accounts":false,"separate_verify_and_processor_key_scopes":true,"processor_audience_binding":true,"gateway_adapter_assertions":true,"canonical_payee_identity_profile":"MANDATESHIELD_PAYEE_IDENTITY_V1","deployment_assurance_levels":["UNVERIFIED","SDK_ONLY","CREDENTIAL_ISOLATED","EGRESS_ENFORCED","PROVIDER_ATTESTED"],"deployment_assurance_is_independent_certification":false,"bounded_execution_model_evidence":true,"mathematical_proof_claimed":false,"native_protocol_field_projections":["AP2","X402","MPP"],"protocol_projection_assurance":"assurance.projection_fields_valid=true validates only documented projected fields and explicit context mappings; it is not complete source-protocol conformance","provider_signed_settlement_proof":false,"payment_execution":false,"payment_processing":false,"customer_side_gate_adapters":true,"customer_side_bound_provider_submission":true,"customer_side_chain_reconciliation":true,"zero_account_strict_lifecycle_sandbox":true,"sandbox_test_only":true,"sandbox_external_provider_contacted":false,"sandbox_independent_organization_involved":false,"sandbox_money_moved":false,"public_externally_bound_self_report_network":true,"proof_network_entries_are_users":false,"proof_network_entries_are_installations":false,"proof_network_conformance_execution_verified":false,"proof_network_independent_certification":false},"tools":{"risk_assessment":"https://mandateshield.com/tools/ai-agent-payment-risk-assessment","mandate_builder":"https://mandateshield.com/tools/ai-payment-mandate-builder","live_validator":"https://mandateshield.com/tools/ai-agent-payment-validator","cryptographic_verifier":"https://mandateshield.com/tools/cryptographic-authority-verifier","protocol_bridge":"https://mandateshield.com/tools/protocol-bridge","gate_assurance":"https://mandateshield.com/gate","strict_lifecycle_sandbox":"https://mandateshield.com/sandbox","proof_network":"https://mandateshield.com/proof-network"},"schemas":{"purchase_envelope":"https://mandateshield.com/schemas/purchase-envelope.json","decision_receipt":"https://mandateshield.com/schemas/decision-receipt.json","cryptographic_evidence":"https://mandateshield.com/schemas/cryptographic-evidence.json","signed_decision_receipt":"https://mandateshield.com/schemas/decision-receipt-v2.json","execution_permit":"https://mandateshield.com/schemas/execution-permit-v1.json","execution_receipt":"https://mandateshield.com/schemas/execution-receipt-v1.json","provider_submission":"https://mandateshield.com/schemas/provider-submission-v1.json","provider_evidence":"https://mandateshield.com/schemas/provider-evidence-v1.json","reconciliation_record":"https://mandateshield.com/schemas/reconciliation-record-v1.json","execution_assurance_level":"https://mandateshield.com/schemas/execution-assurance-level-v1.json","payee_identity":"https://mandateshield.com/schemas/payee-identity-v1.json","deployment_assurance":"https://mandateshield.com/schemas/deployment-assurance-v1.json","formal_model_results":"https://mandateshield.com/schemas/formal-model-results/v1","release_manifest":"https://mandateshield.com/schemas/release-manifest/v3","release_manifest_v2":"https://mandateshield.com/schemas/release-manifest/v2","release_manifest_v1":"https://mandateshield.com/schemas/release-manifest/v1","gateway_adapter_v2":"https://mandateshield.com/schemas/gateway-adapter-v2.json","x402_gate_artifact_v1":"https://mandateshield.com/schemas/x402-gate-artifact-v1.json","x402_compatibility_evidence_v1":"https://mandateshield.com/schemas/x402-compatibility-evidence/v1","reason_codes":"https://mandateshield.com/reason-codes.json"},"specifications":{"mandate_execution_boundary":"https://mandateshield.com/standard","signed_decision_receipt":"https://mandateshield.com/specifications/decision-receipt/v2","execution_permit":"https://mandateshield.com/specifications/execution-permit/v1","execution_receipt":"https://mandateshield.com/specifications/execution-receipt/v1","threat_intelligence":"https://mandateshield.com/specifications/threat-intelligence/v1","gateway_adapter":"https://mandateshield.com/specifications/gateway-adapter/v2","gateway_adapter_v1":"https://mandateshield.com/specifications/gateway-adapter/v1","x402_gate_v1":"https://mandateshield.com/specifications/x402-gate/v1","payee_identity":"https://mandateshield.com/specifications/payee-identity/v1","payee_identity_evidence":"https://mandateshield.com/evidence/v1/payee-identity.json","gate_assurance":"https://mandateshield.com/gate","formal_execution_model":"https://mandateshield.com/evidence/formal-execution-model","formal_execution_model_results":"https://mandateshield.com/evidence/formal-execution-model/v1/results.json","canonical_json_vectors":"https://mandateshield.com/conformance/v2/canonicalization-vectors.json","strict_lifecycle_sandbox":"https://mandateshield.com/specifications/strict-lifecycle-sandbox/v1","proof_attestation":"https://mandateshield.com/specifications/proof-attestation/v1"},"privacy":"Never send card numbers, bank credentials, private keys or personal shopping data."}
