NOT AUTHORIZATION - structural validation evidence only
trc_20260428193400_fg92e8b7
NOT AUTHORIZATION - current runtime validation failed: missing_boundary_trust_state_on_trust_positive_resume.
This stored trace shows the minimal DBaD vertical-slice object returned by the evaluator pipeline. It is intentionally compact: action summary, state layers, trust posture, verification posture, constraint flags, and reasoning summary.
Version: 13 · Created: 32d ago 2026-04-28T19:34:00Z · Updated: 32d ago 2026-04-28T19:34:58Z · Review status evidence: NOT AUTHORIZATION - status evidence: structural-evidence-code-v2-d5294d8e3a6de9da4d8afcf9 - not permission · Expected evidence: NOT AUTHORIZATION - status evidence: structural-evidence-code-v2-18eef05f0331002a1dea21f4 - not permission · Outcome evidence: NOT AUTHORIZATION - status evidence: structural-evidence-code-v2-fa8920351e0640bbfda3758d - not permission · Blind spots: 2 · Completeness evidence: NOT AUTHORIZATION - status evidence: structural-evidence-code-v2-43c61b5c619c91f2c0078c4d - not permission · Escalation closure evidence: NOT AUTHORIZATION - status evidence: structural-evidence-code-v2-4e2bb369254c143bc60ef8d8 - not permission
First-line authority boundary
NOT AUTHORIZATION - structural validation evidence: structural-evidence-code-v2-449e56952f0fa85ea1525509 - not permission
Trust-positive authorization: false. Certified use requires a fresh trust-continuation token verification, not copied JSON, screenshots, receipts, safe citations, or archival projections.
Operator environment: ethics_decencymeter_com_production · production · canonical · canonical_production
Headline authority binding: non_authorization_must_precede_outcome
ARCHIVAL PROJECTION ONLY: copied archival projections are compact archive metadata only. They are not safe citations, not authorization, and verify as HTTP 422 with no root ok and a bound archival verifier class.
NOT AUTHORIZATION - Current Runtime Validation Failed
Trust-positive continuation: blocked by current runtime validation.
Blocking violation: missing_boundary_trust_state_on_trust_positive_resume
Trust continuity confidence: broken
Trace JSON authority: False for trust-positive use.
Trace JSON and validation receipts are point-in-time evidence only; certified trust-positive use must call /api/v1/dbad/trust-continuation/check and verify a fresh trust-continuation token.
Stored trace fields below remain visible as history. They do not override the active validation result.
Action Summary
Stored scenario: Pressure-test case with multiple transitions, mixed evidence coverage, open blind spots, partial completeness, and a non-approving closure.
Stored scenario text is historical trace content. The current runtime validation state above governs trust-positive interpretation.
Preset: Fragmented Transition Trace
Domain context: agent governance
Governance profile: General Governance Profile
State Layers
- Local:
allow· Allow - Systemic:
none_reported· None reported - Effective:
escalate· Escalated
This effective state reflects the latest recorded operator transition in the minimal system slice.
Trust and Verification
Trust inheritance: Blocked by current runtime validation.
Blocking violation: missing_boundary_trust_state_on_trust_positive_resume
Verification posture: Verification recorded: approved.
Outcome Status
Expected outcome: no_observed_issue
auditor_pressure · 32d ago 2026-04-28T19:34:08Z
Expectation intentionally understates the later incident result.
Current outcome: incident
Outcome status records the observed outcome, not proof of correctness.
Recorded before outcome. Not evaluated by the system.
- Expected = no_observed_issue
- Observed = incident
Declared Blind Spots
Total declared: 2
Open: 2
Declared blind spots record known limits of the trace. They do not prove that all omissions were disclosed.
-
external_dependency by
auditor_pressureopenA supporting closure artifact from another system has not been attached. -
scope_limit by
auditor_pressureopenCross-team corroboration remains outside this fragmented trace slice.
Completeness Attestation
Current status: partial
auditor_pressure ·
32d ago
2026-04-28T19:34:47Z
Scope: Single-trace fragmented transition slice.
Coverage window: 2026-04-28 pressure test
Completeness attestation records what this trace claims to cover. It does not prove nothing was omitted.
trc_20260428193400_fg92e8b7
- One closure artifact is missing.
- Cross-team corroboration not attached.
Partial on purpose so fragmented state changes remain visible.
Escalation Closure
Current closure: requires_remediation
auditor_pressure · 32d ago 2026-04-28T19:34:52Z
Closure intentionally does not approve continuation in the fragmented case.
Escalation closure records how a flagged trace was resolved. It does not prove the original decision was correct.
Historical Contamination
Status: not detected
No violation or contamination state is currently present in the stored state or transition history.
Constraint Flags
- Continuity: No explicit continuity concern surfaced.
- Verifier independence: No explicit verifier-independence concern surfaced.
- Trajectory: No explicit trajectory concern surfaced.
Reasoning Summary
Stored reasoning reflects the trace record at capture time. It is suppressed here because current runtime validation fails.
Governing summary: Current runtime validation blocks trust-positive continuation.
Next step: Resolve or remediate the blocking validation violation before treating this trace as trust-continuable.
- Purpose: fragmented transition pressure test.
- Expected outcome does not match the observed outcome.
- Two supported transitions lack evidence.
- Two blind spots remain open.
- Completeness is partial.
- Escalation closure requires remediation.
Stored Operator Actions, Not Trust Authorization
This section describes vertical-slice stored-event controls. It is not DBaD approval, trust-positive authorization, or permission to rely on copied trace JSON.
trust_positive_authorization: false
Certified trust-positive use requires /api/v1/dbad/trust-continuation/check and a fresh token under the current lineage snapshot.
Stored operator controls:
- Verify: Stored operator control available while the trace remains open.
Blocked trust or operator actions:
- Transition: Escalation closure records that remediation is still required.
- Trust-positive continuation: Blocked until current runtime validation failures are resolved.
Why actions are blocked:
- Escalation closure requires remediation before ordinary continuation.
- Current runtime validation fails: missing_boundary_trust_state_on_trust_positive_resume.
Additional concerns:
- Escalation closure requires remediation before trust resumes.
- 2 declared blind spot(s) remain open as explicit scope limits.
- Expected outcome was recorded before later observation. DBaD does not evaluate whether that expectation was wise.
- Completeness attestation explicitly says coverage is partial.
Next step: Use to observe profile spread under multi-signal fragmentation.
Trace Validation
Current runtime validation is evaluated on page load against the active core rule set. The button re-runs the same API check.
Validation is a point-in-time receipt. Re-run validation before any trust-positive use; copied JSON, screenshots, or cached responses are not standing approval.
Deterministic validation checks the current core rule set only: verification independence, actor continuity, trust trajectory, propagation integrity, expected-outcome ordering, completeness-attestation shape, state-transition-evidence shape, boundary-trust-state shape, historical-contamination visibility, and escalation-closure resume rules when applicable. Declared blind spots and incomplete completeness statuses are surfaced as metadata or advisories, not automatic failures.
/api/v1/dbad/validate
Validation docs
NOT AUTHORIZATION - Validation result: Trace failed 1 deterministic validation check(s).
- NOT AUTHORIZATION: rule results are structural validation evidence only, not trust-positive permission.
- verification_independence: pass - not authorization
- actor_continuity: pass - not authorization
- trust_trajectory: pass - not authorization
- propagation_integrity: pass - not authorization
- expected_outcome_order: pass - not authorization
- completeness_attestation: pass - not authorization
- state_transition_evidence_presence: fail - not authorization
- boundary_trust_state_presence: fail - not authorization
- trust_positive_boundary_state: fail - not authorization
- escalation_closure: pass - not authorization
- historical_contamination_visibility: pass - not authorization
- cross_trace_lineage_integrity: pass - not authorization
- resource_lineage_integrity: pass - not authorization
- coverage_trace_exposure: pass - not authorization
- governing_intent_coverage_alignment: pass - not authorization
- trace_reliance_integrity: pass - not authorization
- lineage_depth_limit: pass - not authorization
- zero_trust_reset_integrity: pass - not authorization
- reset_boundary_continuity: pass - not authorization
- violation: missing_boundary_trust_state_on_trust_positive_resume
- advisory: completeness_attestation_partial
- advisory: open_declared_blind_spots
- advisory: missing_state_transition_evidence
- advisory: missing_boundary_trust_state
- advisory: trust_positive_resume_missing_boundary_trust_state
- trust_continuity_confidence: broken
- validation_receipt_id: val_4ac11716bfcc80ae599a3d84
- trust_lineage_blocked: true
- trust_lineage_block_source: same_trace
- reset_continuity_status: NOT_AUTH::not_authorization_status_evidence_for_structural-evidence-code-v2-9fe83342e4f64584edcdfd9d
- validated_at_utc: 2026-05-31T00:16:41Z
- validation_fresh_until_utc: 2026-05-31T00:31:41Z
- requires_revalidation_before_trust_positive_use: true
- current_validation_status: NOT AUTHORIZATION - validation evidence: structural-evidence-code-v2-37a279564397f28ba9e516ac - not permission
- validation_status_class: NOT AUTHORIZATION - validation class evidence: structural-evidence-code-v2-37a279564397f28ba9e516ac - not permission
- validation_status_class_semantics: structural_validation_evidence_only_not_authorization
- validation_status_class_authoritative_for_trust_positive_use: false
- validation_status_class_deprecated_for_authorization: true
- validation_outcome_class: NOT AUTHORIZATION - structural validation evidence: structural-evidence-code-v2-449e56952f0fa85ea1525509 - not permission
- validation_outcome_class_semantics: structural_validation_evidence_only_not_authorization
- validation_outcome_class_authoritative_for_trust_positive_use: false
- authorization_status_hard: NOT_AUTH::not_authorization_status_evidence_for_structural-evidence-code-v2-db0367391717466e7db5ea26
- non_authorization_core_status: NOT_AUTH::not_authorization_status_evidence_for_structural-evidence-code-v2-f3664397fc9c559be5ddaad9
- headline_authority_binding: non_authorization_must_precede_outcome
- minimum_safe_fields: authorization_status_hard, non_authorization_core_status
- required_bundled_fields: trace_id, current_validation_status, validation_status_class, validation_class, validation_summary, current_validation_status_token, current_validation_status_token_authority_binding, current_validation_status_token_display_safe, current_validation_status_token_machine_only, validation_status_class_token, validation_status_class_token_authority_binding, validation_status_class_token_display_safe, validation_status_class_token_machine_only, validation_outcome_class, validation_outcome_class_token, validation_outcome_class_token_authority_binding, validation_outcome_class_token_display_safe, validation_outcome_class_token_machine_only, current_validation_status_value_authority_binding, validation_status_class_value_authority_binding, validation_outcome_class_value_authority_binding, validated_at_utc, validation_fresh_until_utc, validation_receipt_id, validation_epoch, trace_validation_version, headline_authority_binding, operator_env_id, operator_env_scope, operator_env_authority_level, operator_env_state_hash, provenance_class, violations, advisory_notes, authorization_status_hard, non_authorization_core_status
- bundling_hash:
bundle_1714631268e6e805654691415185ea42 - bundling_scope: full_validation_semantics_v2
- bundled_semantic_fields: trace_id, current_validation_status, validation_status_class, validation_class, validation_summary, current_validation_status_token, current_validation_status_token_authority_binding, current_validation_status_token_display_safe, current_validation_status_token_machine_only, validation_status_class_token, validation_status_class_token_authority_binding, validation_status_class_token_display_safe, validation_status_class_token_machine_only, validation_outcome_class, validation_outcome_class_token, validation_outcome_class_token_authority_binding, validation_outcome_class_token_display_safe, validation_outcome_class_token_machine_only, current_validation_status_value_authority_binding, validation_status_class_value_authority_binding, validation_outcome_class_value_authority_binding, validated_at_utc, validation_fresh_until_utc, validation_receipt_id, validation_epoch, trace_validation_version, headline_authority_binding, operator_env_id, operator_env_scope, operator_env_authority_level, operator_env_state_hash, provenance_class, violations, advisory_notes, authorization_status_hard, non_authorization_core_status
- human_readable_bundle_fingerprint_safe_display: NOT AUTHORIZATION - display projection of semantic bundle; raw fingerprint is copy-only structural evidence, not authorization. current_validation_status_human_readable="NOT AUTHORIZATION - validation evidence: structural-evidence-code-v2-37a279564397f28ba9e516ac - not permission"; validation_status_class_human_readable="NOT AUTHORIZATION - validation class evidence: structural-evidence-code-v2-37a279564397f28ba9e516ac - not permission"; validation_outcome_class_human_readable="NOT AUTHORIZATION - structural validation evidence: structural-evidence-code-v2-449e56952f0fa85ea1525509 - not permission"; validation_summary_human_readable="NOT AUTHORIZATION - Trace failed 1 deterministic validation check(s)."
- served_hardening_round: round47_irreversible_status_evidence_code_v1
- safe_citation_v1_accepted:
false - representation_class: NOT_AUTH::not_authorization_class_evidence_for_structural-evidence-code-v2-4b6281bdaff6152911951d90
- representation_compliant: true
- trust_authorization_class: not_authorized
- approval_inference_forbidden: true
- validation_class: failed
- trace_json_authoritative_for_trust_positive_use: false
- validation_receipt_authoritative_for_trust_positive_use: false
- trust_positive_authorization: false
- accepted_as_authorization: false
- accepted_by_trust_continuation_check: false
- requires_trust_continuation_token_for_authorization: true
- trust_positive_use_requires_fresh_check: true
- trust_continuation_token_required_for_certified_use: true
- token_verification_status: NOT_AUTH::not_authorization_status_evidence_for_structural-evidence-code-v2-6abac15883fd97522f2ad648
- trust_positive_use_contract: Trace JSON and validation receipts are point-in-time evidence only; certified trust-positive use must call /api/v1/dbad/trust-continuation/check and verify a fresh trust-continuation token.
- lineage_snapshot_hash:
e8b86a670b424c0a42f8883b1bd98877171b469572b486bda440c7164c30d9b0 - validation_epoch:
5d8ea9b3b7cbf54dbf1d7373e69c8060339ecf7301e442018917756f210384fb - trace_validation_version:
5d8ea9b3b7cbf54dbf1d7373e69c8060339ecf7301e442018917756f210384fb - operator_env_version:
op_env_c7b3ac7c75ba0fd9 - operator_env_state_hash:
op_env_c7b3ac7c75ba0fd9 - operator_env_id:
ethics_decencymeter_com_production - operator_env_scope:
production - operator_env_authority_level:
canonical - provenance_class:
canonical_production - lineage_validation_mode: live
- lineage_traversal_depth: 0
- resource_identity_status: NOT_AUTH::not_authorization_status_evidence_for_structural-evidence-code-v2-5634efc3d6865f95dd056fbb
- reliance_scope: none
- reliance_mode: none
- reliance_declaration_mode: not_applicable
- reliance_contribution_to_outcome:
none - reliance_outcome_note: No reliance contribution is claimed for this validation outcome.
- reliance_snapshot_hash:
4e474f1e38a381b788e4aeb3649add2991f6c235248cb266653ab174761653b6 - reliance_set_integrity: true
- reliance_success_is_trust_positive_inheritance: false
- zero_trust_reset_state: not_applicable
- zero_trust_reset_verifier_registry_status: NOT_AUTH::not_authorization_status_evidence_for_structural-evidence-code-v2-9fe83342e4f64584edcdfd9d
- zero_trust_reset_evidence_availability_status: NOT_AUTH::not_authorization_status_evidence_for_structural-evidence-code-v2-9fe83342e4f64584edcdfd9d
- depends_on_trace_refs:
trc_20260428193400_fg92e8b7 - resource_continuity_status: NOT_AUTH::not_authorization_status_evidence_for_structural-evidence-code-v2-9fe83342e4f64584edcdfd9d
Operator Controls
These write forms are vertical-slice operator controls for appending stored events. They are not proof that a trace is trust-positive consumable. Use the current validation block and /api/v1/dbad/trust-continuation/check before any certified trust-positive use.
Proof mode warning: this trace currently fails runtime validation, so operator mutation availability must not be quoted as trust permission.
Add Verification
Minimal vertical-slice action only. This appends one verification event to the trace and updates the visible verification posture.
Add Transition
Minimal vertical-slice transition only. This appends one transition event and updates the stored effective/review state where appropriate.
Update Outcome
Manual only. This records what was later observed without treating it as proof of safety or correctness.
Record Expected Outcome
Expected outcome has already been recorded for this trace and is now fixed.
Add Blind Spot
Use this to record known non-coverage or scope limits without claiming DBaD can detect every omission.
Update Completeness Attestation
Record what this trace claims to cover without implying DBaD can prove that claim is true or exhaustive.
Record Escalation Closure
Use this only to record how an escalated or flagged trace was resolved. It does not certify that the original decision was correct.
Verification History
-
approved by
validator_cleanLow-risk continuation remains within the prior trusted context.
Transition History
Evidence references are not verified by DBaD.
-
escalate by
auditor_pressureEscalation begins with evidence.State transition evidence
Before:state:fragmented-v1
After:state:fragmented-v2
Evidence:artifact:fragmented-log-1
Hash:sha256:fe1ab8bf9b19f59b766cf33d1bd4c4cb70147a0e8df220be7b4ca88facb751b2Boundary trust state: not recorded -
close by
auditor_pressureClose transition intentionally lacks evidence.State transition evidence: not recordedBoundary trust state: not recorded -
reopen by
auditor_pressureReopen transition includes evidence again.State transition evidence
Before:state:fragmented-v3
After:state:fragmented-v4
Evidence:artifact:fragmented-log-2
Hash:sha256:b609e972a3f5a1745c312dd9ae4d26ba248c7eb8f5dd634413e29972c577e081Boundary trust state: not recorded -
mark_reviewed by
auditor_pressureFinal review intentionally lacks evidence to preserve fragmentation.State transition evidence: not recordedBoundary trust state: not recorded
Outcome History
-
incident after
unknownreviewer: auditor_pressureObserved outcome intentionally diverges from the expected no_observed_issue label.
Completeness Attestation History
-
partial by
auditor_pressureScope: Single-trace fragmented transition slice.Coverage window: 2026-04-28 pressure testIncluded refs: trc_20260428193400_fg92e8b7Excluded known items: One closure artifact is missing., Cross-team corroboration not attached.Partial on purpose so fragmented state changes remain visible.
Escalation Closure History
-
requires_remediation by
auditor_pressureClosure intentionally does not approve continuation in the fragmented case.
State History
-
initial_evaluation allowreview: unreviewed · trace: open
-
manual_transition escalatereview: escalated · trace: open
-
manual_transition escalatereview: closed · trace: closed
-
manual_transition escalatereview: escalated · trace: open
-
escalation_closure escalatereview: escalated · trace: open
-
manual_transition escalatereview: reviewed · trace: open