{"name":"MandateShield","category":"AI agent payment authority","release":{"product_version":"1.13.0","openapi_version":"3.4.0","standard_version":"2.4.0","released_at":"2026-07-28T14:25:22.000Z","generated_at":"2026-07-28T14:25:22.000Z","artifact_status":"immutable_release_snapshot","published_as_current":true,"latest_pointer":"https://mandateshield.com/current-release.json","supersession_pointer":"https://mandateshield.com/current-release.json","canonical_versioned_documents":{"openapi":"https://mandateshield.com/openapi/3.4.0.json","llms":"https://mandateshield.com/llms/1.13.0.txt","llms_full":"https://mandateshield.com/llms-full/1.13.0.txt","discovery":"https://mandateshield.com/discovery/1.13.0.json"}},"current_release":"https://mandateshield.com/current-release.json","machine_documents":{"release":"https://mandateshield.com/current-release.json","human_release":"https://mandateshield.com/current-release","openapi":"https://mandateshield.com/openapi.json","openapi_versioned":"https://mandateshield.com/openapi/3.4.0.json","llms":"https://mandateshield.com/llms.txt","llms_versioned":"https://mandateshield.com/llms/1.13.0.txt","llms_full":"https://mandateshield.com/llms-full.txt","llms_full_versioned":"https://mandateshield.com/llms-full/1.13.0.txt","discovery":"https://mandateshield.com/.well-known/mandateshield.json","discovery_versioned":"https://mandateshield.com/discovery/1.13.0.json","health":"https://mandateshield.com/api/health","status":"https://mandateshield.com/status"},"not_categories":["SEPA mandate management","direct-debit processing","electronic signature","payment processing"],"version":"1.13.0","standard_version":"2.4.0","canonical":"https://mandateshield.com","agent_payment_authority_discovery":"https://mandateshield.com/.well-known/agent-payment-authority.json","integration_guide":"https://mandateshield.com/integrations","integration_rule":"Required new-account v1.7 path: VERIFY creates only a short RESERVED authorization. Every account created at or after 2026-07-26T12:01:24.000Z must CONSUME with provider_binding; only older accounts retain legacy unbound compatibility. Provider-bound CONSUME atomically creates a ProviderSubmission record, issues a signed execution permit and returns provider_submission_permitted=false. Signature-only or offline permit verification never grants. A customer-deployed, audience-bound execution service must atomically claim the exact permit and bindings. Only the first response with provider_submission_permitted=true, status=CLAIMED and idempotent_replay=false authorizes one idempotent provider-operation attempt using the signed provider_idempotency_key; it does not guarantee exactly-once provider delivery. Report the returned provider_submission_id and stable payment_reference to /api/v2/provider-submissions. The caller report or signed webhook is only a hint; MandateShield must check the configured Stripe PaymentIntent or canonical x402 chain result without trusting the caller before autonomously COMMITting or RELEASEing. The legacy independent_verification response field means caller-report-independent only, not verification by an independent organization, audit, or certification. Unknown and conflicting outcomes remain fail-closed. Provider/facilitator adoption is external and not claimed.","public_activation":{"zero_account_strict_lifecycle_sandbox":{"endpoint":"https://mandateshield.com/api/v2/sandbox/lifecycle","page":"https://mandateshield.com/sandbox","specification":"https://mandateshield.com/specifications/strict-lifecycle-sandbox/v1","request":{"method":"POST","authentication_required":false,"accepted_body":{"scenario":"SUCCESS"}},"trust_boundary":{"test_only":true,"simulated":true,"request_local":true,"persistent_lifecycle_state":false,"money_moved":false,"production_credentials_used":false,"external_provider_contacted":false,"independent_organization_involved":false,"third_party_audit_or_certification":false,"production_conformance_proven":false}},"proof_network":{"page":"https://mandateshield.com/proof-network","list_endpoint":"https://mandateshield.com/api/v1/proof-network/proofs","challenge_endpoint":"https://mandateshield.com/api/v1/proof-network/challenges","attestation_endpoint":"https://mandateshield.com/api/v1/proof-network/attestations","proof_template":"https://mandateshield.com/api/v1/proof-network/proofs/{proof_id}","badge_template":"https://mandateshield.com/api/v1/proof-network/proofs/{proof_id}/badge.svg","specification":"https://mandateshield.com/specifications/proof-attestation/v1","semantics":{"attestation_type":"EXTERNALLY_BOUND_SELF_REPORT","subject_binding_verified":true,"report_integrity_verified":true,"result_verification":"SELF_REPORTED_OUTPUTS_ONLY","conformance_execution_verified":false,"independently_verified":false,"entries_are_users":false,"entries_are_installations":false,"hosted_sandbox_included":false,"third_party_conformance":false,"certification":false,"non_authorizing":true}},"deployment_activation_proofs":{"launch":"https://mandateshield.com/launch","page":"https://mandateshield.com/deployment-proofs","list_endpoint":"https://mandateshield.com/api/v1/deployment-proofs","proof_template":"https://mandateshield.com/api/v1/deployment-proofs/{proof_id}","human_template":"https://mandateshield.com/deployment-proofs/{proof_id}","badge_template":"https://mandateshield.com/api/v1/deployment-proofs/{proof_id}/badge.svg","specification":"https://mandateshield.com/specifications/deployment-activation-proof/v1","runner_release_manifest":"https://mandateshield.com/launch/runner-release.json","semantics":{"attestation_type":"ACCOUNT_BOUND_SERVER_OBSERVED_ACTIVATION","account_bound":true,"private_pilot_completion_before_publication":true,"private_completion_publishes_record":false,"publication_optional":true,"publication_required_for_paid_access":false,"explicit_publication_direction_in_signed_challenge":false,"fresh_explicit_publication_direction_at_finalize":true,"fresh_publication_consent_required_at_finalize":true,"publication_consent_request_field":"publication_consent","publication_consent_required_value":true,"public_record_requires_explicit_consent":true,"publication_consent_version":"2026-07-28","subject_control_verified_at_binding":true,"binding_verified_at_exposed_per_record":true,"strict_live_reservation_server_observed":true,"fresh_credential_bound_permit_redemption_observed":true,"mandateshield_provider_submission_observed":false,"mandateshield_provider_enforcement_observed":false,"provider_evidence_recorded":false,"independent_terminal_evidence_verified":false,"out_of_band_activity_observed":false,"operator_exclusion_no_match_at_evaluation":true,"eligibility_evaluated_at_exposed_per_record":true,"operator_exclusion_no_match_is_independent_identity":false,"entries_are_customers":false,"entries_are_revenue":false,"deployment_runtime_inspected":false,"non_bypassability_verified":false,"independent_organization_verified":false,"audit":false,"certification":false,"security_guarantee":false,"non_authorizing":true}}},"execution_scope":{"primary_last_mile_profile":{"name":"SUPPORTED_AP2_CLOSED_PAYMENT_PROJECTION_TO_STRIPE_PAYMENT_INTENTS_V1","guide":"https://mandateshield.com/integrations/ap2-to-stripe","installable_adapter":"@mandateshield/sdk/gateway/stripe-payment-intents","projection_authorizes_payment":false,"full_ap2_conformance_claimed":false,"exact_stripe_request_binding":true,"request_body_binding_includes":["amount","currency","automatic_capture","confirm_true","payment_method","card_payment_method_type","receipt_id","merchant_id","stripe_account","provider_request_id","canonical_payee_identity"],"configured_lookup_reconstructs_request_body_digest":true,"payment_method_substitution_fails_closed":true,"customer_deployed_credential_isolated_executor_required":true,"exactly_once_provider_delivery_guaranteed":false,"stripe_or_ap2_adoption_claimed":false},"x402_positioning":{"role":"OPTIONAL_COMPATIBILITY_PROFILE","native_x402_controls_remain_authoritative":true,"primary_product_differentiation_claimed":false,"x402_foundation_adoption_or_certification_claimed":false},"hosted_service":{"payment_execution":false,"payment_processing":false,"payment_credentials_received":false,"encrypted_provider_lookup_credentials_supported":true,"caller_report_independent_provider_reconciliation":true,"independent_organization_or_audit_involved":false,"autonomous_terminal_authorization_finalization":true},"customer_side_gate":{"available":true,"bound_provider_submission":true,"canonical_reconciliation":true,"required_journal_consistency":"GLOBAL_SHARED_LINEARIZABLE","journal_declaration_is_independent_attestation":false,"split_brain_safe":false,"execution_profiles":["STRIPE_PAYMENT_INTENTS_V1","MANDATESHIELD_X402_V2_EXACT_EIP3009_V1"],"official_postgresql_journal":{"available":true,"implementation_version":"1.0.0","guide":"https://mandateshield.com/integrations/postgres-gateway-journal","required_database":"PostgreSQL 14+","customer_controlled_database":true,"database_credentials_sent_to_mandateshield":false,"journal_rows_sent_to_mandateshield":false,"required_primary_topology":"one writable globally shared linearizable primary","readiness_attests_topology_or_failover":false,"split_brain_safe":false,"replaces_x402_artifact_journal":false}},"provider_bound_permit":{"available":true,"permit_lifetime_seconds_max":60,"customer_or_agent_submission_permitted_on_consume":false,"online_atomic_redemption_required":true,"signature_only_verification_grants_submission":false,"exact_signed_request_binding_required":true,"provider_idempotency_key_signed":true,"current_provider_or_facilitator_adoption_claimed":false,"permitless_provider_rejection_claimed":false}},"execution_contract":{"production_endpoint":"https://mandateshield.com/api/v2/verify","execution_authorizations_endpoint":"https://mandateshield.com/api/v2/execution-authorizations","execution_permit_verify_endpoint":"https://mandateshield.com/api/v2/execution-permits/verify","execution_permit_redeem_endpoint":"https://mandateshield.com/api/v2/execution-permits/redeem","account_execution_interlock_endpoint":"https://mandateshield.com/api/account/execution-interlock","account_execution_interlock_contract":"https://mandateshield.com/specifications/global-execution-interlock/v1","provider_submission_endpoint":"https://mandateshield.com/api/v2/provider-submissions","stripe_webhook_template":"https://mandateshield.com/api/v2/provider-webhooks/stripe/{connection_id}","execution_receipt_verify_endpoint":"https://mandateshield.com/api/v2/execution-receipts/verify","challenge_endpoint":"https://mandateshield.com/api/v2/challenges","normalization_endpoint":"https://mandateshield.com/api/v2/normalize","analysis_endpoint":"https://mandateshield.com/api/v1/preflight","analysis_is_executable":false,"verification_creates_state":"RESERVED","verification_authorizes_provider_submission":false,"fail_closed":true,"reservation_only_when":{"decision":"ALLOW","enforcement_authorized":true,"mode":"live","persisted":true,"authority_valid":true,"key_trust":"ACCOUNT_PINNED","execution_authorization_state":"RESERVED","consumable":true},"key_scopes":{"verify":{"scope":"VERIFY","may_verify_authority":true,"may_transition_execution_authorizations":false},"processor":{"scope":"PROCESSOR","exact_processor_audience_required":true,"may_verify_authority":false,"may_transition_execution_authorizations":true,"may_redeem_execution_permits":true,"must_remain_in_trusted_gateway_or_execution_edge":true,"redemption_credential_must_remain_at_execution_edge":true}},"lifecycle":{"states":["RESERVED","CONSUMED","COMMITTED","RELEASED","EXPIRED","SETTLEMENT_UNKNOWN"],"transitions":["CONSUME","COMMIT","RELEASE","EXPIRE"],"recommended_path":["VERIFY_RESERVE","CONSUME_WITH_PROVIDER_BINDING","ISSUE_SIGNED_EXECUTION_PERMIT","CUSTOMER_CREDENTIAL_ISOLATED_EXECUTOR_CLAIM","IDEMPOTENT_PROVIDER_OPERATION_ATTEMPT","REPORT_PROVIDER_SUBMISSION","CALLER_REPORT_INDEPENDENT_PROVIDER_OR_CHAIN_CHECK","AUTONOMOUS_COMMIT_OR_RELEASE","SIGNED_EXECUTION_RECEIPT"],"provider_bound_consume":{"provider_binding_required":true,"mandatory_for_accounts_created_at_or_after":"2026-07-26T12:01:24.000Z","legacy_unbound_consume_allowed_only_for_accounts_created_before":"2026-07-26T12:01:24.000Z","missing_account_creation_time_fails_closed":true,"execution_permit_issued":true,"provider_submission_permitted":false,"provider_redemption_required":true},"signature_only_permit_verification":{"online_state":"UNKNOWN","one_use_enforced":false,"advisory_only":true,"provider_submission_permitted":false},"redemption_gate":"provider_submission_permitted must equal true; status must equal CLAIMED; idempotent_replay must equal false","exact_redemption_retry_returns_new_permission":false,"conflicting_replay_status":409,"provider_operation_attempts_authorized_per_fresh_claim":1,"exactly_once_provider_delivery_guaranteed":false,"idempotent_provider_request_required":true,"provider_operation_idempotency_source":"signed execution permit provider.idempotency_key returned as provider_idempotency_key","downstream_enforcement_location":"customer-deployed credential-isolated executor immediately before the provider API call","downstream_submission_count_enforced_by_mandateshield":false,"provider_or_facilitator_adoption_claimed":false,"provider_rejects_permitless_operations_claimed":false,"legacy_unbound_consume_may_return_direct_permission":true,"legacy_unbound_consume_accounts_created_before":"2026-07-26T12:01:24.000Z","legacy_unbound_consume_available_to_new_accounts":false,"legacy_unbound_consume_is_recommended_path":false,"terminal_reporting":"Manual processor_result COMMIT or RELEASE is CALLER_ASSERTED. The recommended provider-bound path reports the ProviderSubmission, checks the exact Stripe PaymentIntent or canonical x402 chain result without trusting the caller report, then autonomously COMMITs or RELEASEs and signs the terminal execution receipt. This is not an independent-organization audit or certification.","provider_reconciliation":{"caller_report_is_terminal_evidence":false,"signed_webhook_is_terminal_evidence":false,"current_caller_report_independent_profiles":["STRIPE_PAYMENT_INTENTS_V1","X402_V2_EXACT"],"strong_evidence_classes":["PROVIDER_API_VERIFIED","CHAIN_FINALIZED"],"terminal_transition_is_autonomous":true,"pending_unknown_or_conflict_is_fail_closed":true,"durable_lease_retry":true},"unknown_outcome":"Do not release or retry. Reconcile first. After the settlement deadline, conservatively charge the cumulative budget and never auto-release it."},"cumulative_budgets":{"optional_periods":["LIFETIME","DAY","MONTH"],"calendar_timezone":"UTC","reservation_is_atomic":true,"fiat_unit":"integer minor units","atomic_asset_unit":"canonical arbitrary-precision decimal string"},"processor_result_boundary":{"source":"customer trusted gateway adapter","authenticated_by":"audience-bound PROCESSOR key","provider_signed_proof":false,"proves_settlement_without_caller_trust":false,"current_execution_receipt_evidence_class":"CALLER_ASSERTED","current_execution_receipt_caller_report_independence":false,"execution_receipt_is_historical_only":true,"execution_receipt_authorizes_execution":false},"caller_report_independent_provider_result_boundary":{"caller_report_or_webhook_is_hint_only":true,"stripe_source":"MandateShield lookup of the configured Stripe PaymentIntent","x402_source":"canonical EVM receipt, transfer log and confirmation verification","exact_request_binding_required":true,"current_evidence_classes":["PROVIDER_API_VERIFIED","CHAIN_FINALIZED"],"caller_report_independent_verification":true,"independent_organization_or_audit_involved":false,"terminal_transition_is_system_applied":true,"external_provider_enforcement_adoption_claimed":false},"production_prerequisites":["active live VERIFY API key","separate live PROCESSOR API key bound to the exact gateway audience","registered immutable mandate","account-pinned issuer public key","fresh one-time verification challenge","valid signed authority bound to the final purchase","durable signed receipt","provider-bound CONSUME that issues a signed execution permit while submission remains forbidden","fresh atomic online claim by a customer-deployed credential-isolated executor","idempotent provider-operation attempt using the signed provider idempotency key","stable provider submission report and payment reference","configured MandateShield Stripe PaymentIntent lookup or canonical x402 chain check without trusting the caller report","autonomous terminal transition from strong provider evidence","signed terminal execution receipt after COMMIT or RELEASE"]},"endpoints":{"http_preflight":"https://mandateshield.com/api/v1/preflight","analysis_preflight":"https://mandateshield.com/api/v1/preflight","analysis_batch":"https://mandateshield.com/api/v1/batch","verification_challenge":"https://mandateshield.com/api/v2/challenges","cryptographic_verify":"https://mandateshield.com/api/v2/verify","protocol_normalization":"https://mandateshield.com/api/v2/normalize","cryptographic_batch":"https://mandateshield.com/api/v2/batch","execution_authorizations":"https://mandateshield.com/api/v2/execution-authorizations","execution_permit_verify":"https://mandateshield.com/api/v2/execution-permits/verify","execution_permit_redeem":"https://mandateshield.com/api/v2/execution-permits/redeem","provider_submission_report":"https://mandateshield.com/api/v2/provider-submissions","stripe_provider_webhook_template":"https://mandateshield.com/api/v2/provider-webhooks/stripe/{connection_id}","execution_receipt_verify":"https://mandateshield.com/api/v2/execution-receipts/verify","receipt_verify":"https://mandateshield.com/api/v2/receipts/verify","receipt_transparency_template":"https://mandateshield.com/api/v2/transparency/{receipt_id}","threat_intelligence":"https://mandateshield.com/api/v1/threat-intelligence","zero_account_strict_lifecycle_sandbox":"https://mandateshield.com/api/v2/sandbox/lifecycle","proof_network_list":"https://mandateshield.com/api/v1/proof-network/proofs","proof_network_challenge":"https://mandateshield.com/api/v1/proof-network/challenges","proof_network_attestation":"https://mandateshield.com/api/v1/proof-network/attestations","proof_network_proof_template":"https://mandateshield.com/api/v1/proof-network/proofs/{proof_id}","proof_network_badge_template":"https://mandateshield.com/api/v1/proof-network/proofs/{proof_id}/badge.svg","deploy_and_prove":"https://mandateshield.com/launch","deployment_proofs_page":"https://mandateshield.com/deployment-proofs","deployment_proofs_list":"https://mandateshield.com/api/v1/deployment-proofs","deployment_proof_template":"https://mandateshield.com/api/v1/deployment-proofs/{proof_id}","deployment_proof_human_template":"https://mandateshield.com/deployment-proofs/{proof_id}","deployment_proof_badge_template":"https://mandateshield.com/api/v1/deployment-proofs/{proof_id}/badge.svg","http_batch":"https://mandateshield.com/api/v1/batch","mcp":"https://mandateshield.com/api/mcp","mcp_current_protocol":"2026-07-28","mcp_current_flow":"stateless server/discover","mcp_legacy_protocols":["2025-11-25","2025-06-18","2025-03-26"],"mcp_legacy_flow":"initialize-based compatibility","mcp_session_id_issued":false,"mcp_standalone_noauth":"https://mandateshield.com/api/mcp/plugin","a2a":"https://mandateshield.com/a2a","a2a_agent_card":"https://mandateshield.com/.well-known/agent-card.json","openapi":"https://mandateshield.com/openapi.json","jwks":"https://mandateshield.com/.well-known/jwks.json"},"clients":{"javascript":"https://mandateshield.com/sdk/v1.13.0/mandateshield.mjs","cli":"https://mandateshield.com/sdk/v1.13.0/mandateshield-cli.mjs","receipt_verifier":"https://mandateshield.com/sdk/v1.13.0/mandateshield-receipt-verifier.mjs","execution_evidence_verifier":"https://mandateshield.com/sdk/v1.13.0/mandateshield-execution-evidence-verifier.mjs","execution_evidence_verifier_types":"https://mandateshield.com/sdk/v1.13.0/mandateshield-execution-evidence-verifier.d.ts","gateway":"https://mandateshield.com/sdk/v1.13.0/mandateshield-gateway.mjs","gateway_types":"https://mandateshield.com/sdk/v1.13.0/mandateshield-gateway.d.ts","postgres_gateway_journal":"https://mandateshield.com/sdk/v1.13.0/mandateshield-postgres-gateway-journal.mjs","postgres_gateway_journal_current":"https://mandateshield.com/sdk/mandateshield-postgres-gateway-journal.mjs","postgres_gateway_journal_types":"https://mandateshield.com/sdk/v1.13.0/mandateshield-postgres-gateway-journal.d.ts","postgres_gateway_journal_types_current":"https://mandateshield.com/sdk/mandateshield-postgres-gateway-journal.d.ts","postgres_gateway_journal_migration":"https://mandateshield.com/sdk/v1.13.0/mandateshield-postgres-gateway-journal.sql","postgres_gateway_journal_migration_current":"https://mandateshield.com/sdk/mandateshield-postgres-gateway-journal.sql","postgres_gateway_journal_npm_export":"@mandateshield/sdk/gateway/postgres","postgres_gateway_journal_npm_schema_export":"@mandateshield/sdk/gateway/postgres/schema.sql","gateway_v1_frozen":"https://mandateshield.com/sdk/v1.4.0/mandateshield-gateway.mjs","gateway_v1_release_manifest":"https://mandateshield.com/evidence/v1.4.0/release-manifest.json","stripe_payment_intents":"https://mandateshield.com/sdk/v1.13.0/mandateshield-stripe-payment-intents.mjs","stripe_payment_intents_types":"https://mandateshield.com/sdk/v1.13.0/mandateshield-stripe-payment-intents.d.ts","stripe_payment_intents_npm_export":"@mandateshield/sdk/gateway/stripe-payment-intents","x402_v2_exact_eip3009":"https://mandateshield.com/sdk/v1.13.0/mandateshield-x402-v2-exact.mjs","x402_v2_exact_eip3009_types":"https://mandateshield.com/sdk/v1.13.0/mandateshield-x402-v2-exact.d.ts","checksums":"https://mandateshield.com/sdk/v1.13.0/SHA256SUMS","integration_examples":"https://mandateshield.com/integrations","primary_ap2_to_stripe_guide":"https://mandateshield.com/integrations/ap2-to-stripe","hosted_distributions":{"release_version":"1.13.0","publication_status":"mandateshield_origin_hosted","third_party_registry_status":"not_published","npm_name":"@mandateshield/sdk","npm_install":"npm install https://mandateshield.com/packages/npm/1.13.0/mandateshield-sdk-1.13.0.tgz","python_name":"mandateshield","python_install":"python3 -m pip install --index-url https://mandateshield.com/packages/python/simple --no-deps mandateshield==1.13.0","go_module":"github.com/mandateshield/mandateshield-go","go_install":"GONOSUMDB=github.com/mandateshield/mandateshield-go GOPROXY=https://mandateshield.com/packages/go go get github.com/mandateshield/mandateshield-go@v1.13.0","external_registry_install_claimed":false}},"release_evidence":{"page":"https://mandateshield.com/evidence/release-integrity","manifest":"https://mandateshield.com/evidence/v1.13.0/release-manifest.json","manifest_schema":"https://mandateshield.com/schemas/release-manifest/v3","sbom":"https://mandateshield.com/evidence/v1.13.0/sbom.spdx.json","x402_compatibility":"https://mandateshield.com/evidence/v1.13.0/x402-compatibility.json","checksums":"https://mandateshield.com/sdk/v1.13.0/SHA256SUMS"},"capabilities":{"capabilities_scope":"HOSTED_SERVICE_UNLESS_EXPLICITLY_CUSTOMER_SIDE","policy_analysis":true,"cryptographic_authority_verification":true,"supported_authority_algorithms":["ES256","RS256","PS256"],"decision_receipt_algorithm":"ES256","registered_mandates":true,"account_pinned_issuer_keys":true,"one_time_challenges":true,"signed_decision_receipts":true,"public_receipt_transparency_lookup":true,"strict_batch_verification_max_items":25,"cumulative_budgets":["LIFETIME","UTC_DAY","UTC_MONTH"],"execution_authorization_reservations":true,"execution_authorization_transitions":["CONSUME","COMMIT","RELEASE","EXPIRE"],"signed_execution_permits":true,"execution_permit_algorithm":"ES256","execution_permit_max_lifetime_seconds":60,"online_atomic_execution_permit_redemption":true,"execution_permit_offline_verification_is_executable":false,"signed_terminal_execution_receipts":true,"execution_receipt_algorithm":"ES256","execution_receipt_authorizes_execution":false,"current_execution_receipt_evidence_classes":["CALLER_ASSERTED","PROVIDER_API_VERIFIED","CHAIN_FINALIZED","LEDGER_DERIVED","UNRESOLVED"],"caller_report_independent_provider_evidence_verification":true,"caller_report_independent_provider_evidence_classes":["PROVIDER_API_VERIFIED","CHAIN_FINALIZED"],"caller_asserted_execution_receipt_caller_report_independence":false,"strong_provider_execution_receipt_caller_report_independence":true,"independent_organization_or_audit_verification_claimed":false,"autonomous_provider_submission_reconciliation":true,"autonomous_terminal_authorization_finalization":true,"stripe_webhook_is_terminal_evidence":false,"provider_or_facilitator_enforcement_adoption_claimed":false,"provider_rejects_permitless_operations_claimed":false,"provider_bound_consume_default_for_new_accounts":true,"provider_bound_consume_required_from_account_created_at":"2026-07-26T12:01:24.000Z","legacy_unbound_consume_available_to_new_accounts":false,"separate_verify_and_processor_key_scopes":true,"processor_audience_binding":true,"gateway_adapter_assertions":true,"first_party_postgresql_gateway_journal":true,"postgresql_gateway_journal_customer_controlled":true,"postgresql_gateway_journal_topology_attested":false,"postgresql_gateway_journal_split_brain_safe":false,"postgresql_gateway_journal_replaces_x402_artifact_journal":false,"canonical_payee_identity_profile":"MANDATESHIELD_PAYEE_IDENTITY_V1","deployment_assurance_levels":["UNVERIFIED","SDK_ONLY","CREDENTIAL_ISOLATED","OPERATOR_DECLARED_EGRESS_CONTROLS","OPERATOR_DECLARED_PROVIDER_OUTCOME_CONTROLS"],"deployment_assurance_is_independent_certification":false,"bounded_execution_model_evidence":true,"mathematical_proof_claimed":false,"native_protocol_field_projections":["AP2","X402","MPP"],"protocol_projection_assurance":"assurance.projection_fields_valid=true validates only documented projected fields and explicit context mappings; it is not complete source-protocol conformance","provider_signed_settlement_proof":false,"payment_execution":false,"payment_processing":false,"customer_side_gate_adapters":true,"customer_side_bound_provider_submission":true,"customer_side_chain_reconciliation":true,"zero_account_strict_lifecycle_sandbox":true,"sandbox_test_only":true,"sandbox_external_provider_contacted":false,"sandbox_independent_organization_involved":false,"sandbox_money_moved":false,"public_externally_bound_self_report_network":true,"proof_network_entries_are_users":false,"proof_network_entries_are_installations":false,"proof_network_conformance_execution_verified":false,"proof_network_independent_certification":false,"account_bound_server_observed_deployment_activation_proofs":true,"deployment_proof_strict_live_reservation_observed":true,"deployment_proof_fresh_credential_bound_permit_redemption_observed":true,"deployment_proof_mandateshield_provider_submission_observed":false,"deployment_proof_mandateshield_provider_enforcement_observed":false,"deployment_proof_provider_evidence_recorded":false,"deployment_proof_independent_terminal_evidence_verified":false,"deployment_proof_out_of_band_activity_observed":false,"deployment_proof_operator_exclusion_no_match_is_independent_identity":false,"deployment_proof_entries_are_customers":false,"deployment_proof_entries_are_revenue":false,"deployment_proof_deployment_runtime_inspected":false,"deployment_proof_non_bypassability_verified":false,"deployment_proof_independent_organization_verified":false,"deployment_proof_is_audit":false,"deployment_proof_is_certification":false,"deployment_proof_is_security_guarantee":false},"tools":{"risk_assessment":"https://mandateshield.com/tools/ai-agent-payment-risk-assessment","mandate_builder":"https://mandateshield.com/tools/ai-payment-mandate-builder","live_validator":"https://mandateshield.com/tools/ai-agent-payment-validator","cryptographic_verifier":"https://mandateshield.com/tools/cryptographic-authority-verifier","protocol_bridge":"https://mandateshield.com/tools/protocol-bridge","gate_assurance":"https://mandateshield.com/gate","postgres_gateway_journal":"https://mandateshield.com/integrations/postgres-gateway-journal","strict_lifecycle_sandbox":"https://mandateshield.com/sandbox","proof_network":"https://mandateshield.com/proof-network","deploy_and_prove":"https://mandateshield.com/launch","deployment_proofs":"https://mandateshield.com/deployment-proofs"},"schemas":{"purchase_envelope":"https://mandateshield.com/schemas/purchase-envelope.json","decision_receipt":"https://mandateshield.com/schemas/decision-receipt.json","cryptographic_evidence":"https://mandateshield.com/schemas/cryptographic-evidence.json","signed_decision_receipt":"https://mandateshield.com/schemas/decision-receipt-v2.json","execution_permit":"https://mandateshield.com/schemas/execution-permit-v1.json","execution_receipt":"https://mandateshield.com/schemas/execution-receipt-v1.json","provider_submission":"https://mandateshield.com/schemas/provider-submission-v1.json","provider_evidence":"https://mandateshield.com/schemas/provider-evidence-v1.json","reconciliation_record":"https://mandateshield.com/schemas/reconciliation-record-v1.json","execution_assurance_level":"https://mandateshield.com/schemas/execution-assurance-level-v1.json","payee_identity":"https://mandateshield.com/schemas/payee-identity-v1.json","deployment_assurance":"https://mandateshield.com/schemas/deployment-assurance-v2.json","deployment_assurance_v1":"https://mandateshield.com/schemas/deployment-assurance-v1.json","formal_model_results":"https://mandateshield.com/schemas/formal-model-results/v1","release_manifest":"https://mandateshield.com/schemas/release-manifest/v3","release_manifest_v2":"https://mandateshield.com/schemas/release-manifest/v2","release_manifest_v1":"https://mandateshield.com/schemas/release-manifest/v1","gateway_adapter_v2":"https://mandateshield.com/schemas/gateway-adapter-v2.json","x402_gate_artifact_v1":"https://mandateshield.com/schemas/x402-gate-artifact-v1.json","x402_compatibility_evidence_v1":"https://mandateshield.com/schemas/x402-compatibility-evidence/v1","reason_codes":"https://mandateshield.com/reason-codes.json"},"specifications":{"mandate_execution_boundary":"https://mandateshield.com/standard","signed_decision_receipt":"https://mandateshield.com/specifications/decision-receipt/v2","execution_permit":"https://mandateshield.com/specifications/execution-permit/v1","execution_receipt":"https://mandateshield.com/specifications/execution-receipt/v1","threat_intelligence":"https://mandateshield.com/specifications/threat-intelligence/v1","gateway_adapter":"https://mandateshield.com/specifications/gateway-adapter/v2","gateway_adapter_v1":"https://mandateshield.com/specifications/gateway-adapter/v1","x402_gate_v1":"https://mandateshield.com/specifications/x402-gate/v1","payee_identity":"https://mandateshield.com/specifications/payee-identity/v1","payee_identity_evidence":"https://mandateshield.com/evidence/v1/payee-identity.json","gate_assurance":"https://mandateshield.com/gate","formal_execution_model":"https://mandateshield.com/evidence/formal-execution-model","formal_execution_model_results":"https://mandateshield.com/evidence/formal-execution-model/v1/results.json","canonical_json_vectors":"https://mandateshield.com/conformance/v2/canonicalization-vectors.json","strict_lifecycle_sandbox":"https://mandateshield.com/specifications/strict-lifecycle-sandbox/v1","proof_attestation":"https://mandateshield.com/specifications/proof-attestation/v1","deployment_activation_proof":"https://mandateshield.com/specifications/deployment-activation-proof/v1"},"privacy":"Never send card numbers, bank credentials, private keys or personal shopping data."}
