{
  "schemaVersion": "eviulon-machine-passport-standards-map-1.0",
  "version": "2.24.0",
  "generated": "2026-08-09",
  "recordCount": 21,
  "records": [
    {
      "id": "EVI-MPS-001",
      "slug": "w3c-did-core-1-0",
      "category": "identity identifiers",
      "specificationName": "Decentralized Identifiers (DIDs) v1.0",
      "version": "1.0",
      "status": "W3C Recommendation as cited by supplied research; external status review due",
      "statusVerification": "UNVERIFIED_EXTERNAL",
      "sourceClass": "external open standard",
      "sourceReference": "Corrected durable research provenance retained in the packaged /docs memory.",
      "implementationMaturity": "No local DID resolver or issuer is implemented in Eviulon.com",
      "useClass": "SUPPORTED_CONCEPT",
      "privacyEffect": "Can support pairwise or portable identifiers; method choice can still expose correlation or governance dependencies.",
      "authorityBoundary": "Identifier control does not create citizenship, legal personhood, issuer authority, or permission to act.",
      "dependencies": [
        "DID method governance",
        "key rotation and recovery",
        "resolver security",
        "privacy profile"
      ],
      "risks": [
        "method fragmentation",
        "key compromise",
        "resolver dependency",
        "identifier correlation"
      ],
      "evidenceRoute": "/civilization/citizenship/machine-passport/",
      "reviewDate": "2026-08-08",
      "truthBoundary": "Descriptive standards map only. A record does not prove Patefacere adoption, Eviulon legal adoption, interoperability, conformance, passport issuance, credential presentation, live revocation, production trust anchors, or external recognition. External specification status is recorded as source-derived and review-due unless the specification is packaged locally."
    },
    {
      "id": "EVI-MPS-002",
      "slug": "w3c-vc-data-model-2-0",
      "category": "verifiable credentials",
      "specificationName": "Verifiable Credentials Data Model v2.0",
      "version": "2.0",
      "status": "W3C standard family cited by supplied research; exact external publication state review due",
      "statusVerification": "UNVERIFIED_EXTERNAL",
      "sourceClass": "external open standard",
      "sourceReference": "Corrected durable research provenance retained in the packaged /docs memory.",
      "implementationMaturity": "No operational VC issuer, holder wallet, or verifier is implemented in Eviulon.com",
      "useClass": "SUPPORTED_CONCEPT",
      "privacyEffect": "Supports signed claims and selective-disclosure profiles, but schemas and presentations can reveal excess data.",
      "authorityBoundary": "A valid credential proves only the issuer's signed claim; it does not prove the issuer was authorized or the action is permitted.",
      "dependencies": [
        "issuer governance",
        "credential schemas",
        "status mechanism",
        "presentation protocol",
        "holder key custody"
      ],
      "risks": [
        "schema ambiguity",
        "over-disclosure",
        "issuer overreach",
        "status privacy leakage"
      ],
      "evidenceRoute": "/civilization/citizenship/machine-passport/",
      "reviewDate": "2026-08-08",
      "truthBoundary": "Descriptive standards map only. A record does not prove Patefacere adoption, Eviulon legal adoption, interoperability, conformance, passport issuance, credential presentation, live revocation, production trust anchors, or external recognition. External specification status is recorded as source-derived and review-due unless the specification is packaged locally."
    },
    {
      "id": "EVI-MPS-003",
      "slug": "sd-jwt",
      "category": "selective disclosure",
      "specificationName": "Selective Disclosure for JSON Web Tokens (SD-JWT)",
      "version": "RFC 9901 as cited by supplied research",
      "status": "Reported RFC in supplied research; text not packaged locally",
      "statusVerification": "SOURCE_NOT_LOCALLY_AVAILABLE",
      "sourceClass": "external IETF specification reference",
      "sourceReference": "Corrected durable research provenance retained in the packaged /docs memory.",
      "implementationMaturity": "No SD-JWT issuance or verification implementation is present",
      "useClass": "RESEARCH_ONLY",
      "privacyEffect": "Can disclose selected claims while hiding others; repeated presentations may remain correlatable depending on profile and holder binding.",
      "authorityBoundary": "Selective disclosure changes data exposure, not issuer authority or legal effect.",
      "dependencies": [
        "JWT validation",
        "salt generation",
        "holder binding",
        "nonce and audience handling",
        "status checks"
      ],
      "risks": [
        "linkability",
        "weak entropy",
        "claim inference",
        "implementation variation"
      ],
      "evidenceRoute": "/civilization/citizenship/machine-passport/standards/",
      "reviewDate": "2026-08-08",
      "truthBoundary": "Descriptive standards map only. A record does not prove Patefacere adoption, Eviulon legal adoption, interoperability, conformance, passport issuance, credential presentation, live revocation, production trust anchors, or external recognition. External specification status is recorded as source-derived and review-due unless the specification is packaged locally."
    },
    {
      "id": "EVI-MPS-004",
      "slug": "bbs-signatures",
      "category": "selective disclosure",
      "specificationName": "BBS Signature Cryptosuite / BBS+ selective-disclosure family",
      "version": "Version and standards status not established by local corpus",
      "status": "Research candidate mentioned in supplied reports",
      "statusVerification": "UNVERIFIED_EXTERNAL",
      "sourceClass": "external cryptographic research and standards candidate",
      "sourceReference": "Corrected durable research provenance retained in the packaged /docs memory.",
      "implementationMaturity": "No local implementation or conformance evidence",
      "useClass": "RESEARCH_ONLY",
      "privacyEffect": "Potential unlinkable selective-disclosure proofs; deployment complexity and ecosystem support require validation.",
      "authorityBoundary": "Cryptographic proof does not create civic status, issuer competence, or transaction authority.",
      "dependencies": [
        "cryptographic libraries",
        "canonical message encoding",
        "proof suite interoperability",
        "key governance"
      ],
      "risks": [
        "implementation complexity",
        "library maturity",
        "interoperability gaps",
        "proof misuse"
      ],
      "evidenceRoute": "/reference/protocol-registry/",
      "reviewDate": "2026-08-08",
      "truthBoundary": "Descriptive standards map only. A record does not prove Patefacere adoption, Eviulon legal adoption, interoperability, conformance, passport issuance, credential presentation, live revocation, production trust anchors, or external recognition. External specification status is recorded as source-derived and review-due unless the specification is packaged locally."
    },
    {
      "id": "EVI-MPS-005",
      "slug": "openid4vp",
      "category": "presentation exchange",
      "specificationName": "OpenID for Verifiable Presentations (OpenID4VP)",
      "version": "Version not established by local corpus",
      "status": "External specification family; exact maturity review due",
      "statusVerification": "UNVERIFIED_EXTERNAL",
      "sourceClass": "external open identity specification",
      "sourceReference": "Corrected durable research provenance retained in the packaged /docs memory.",
      "implementationMaturity": "No presentation endpoint, wallet, or relying-party integration in Eviulon.com",
      "useClass": "RESEARCH_ONLY",
      "privacyEffect": "Standardizes presentation transport but can expose verifier, requested claims, and transaction context without privacy controls.",
      "authorityBoundary": "Transporting a presentation does not establish trust-policy acceptance or legal authority.",
      "dependencies": [
        "wallet and verifier implementations",
        "presentation definitions",
        "nonce and audience binding",
        "credential formats"
      ],
      "risks": [
        "over-requesting claims",
        "redirect or session confusion",
        "ecosystem fragmentation"
      ],
      "evidenceRoute": "/civilization/citizenship/machine-passport/standards/",
      "reviewDate": "2026-08-08",
      "truthBoundary": "Descriptive standards map only. A record does not prove Patefacere adoption, Eviulon legal adoption, interoperability, conformance, passport issuance, credential presentation, live revocation, production trust anchors, or external recognition. External specification status is recorded as source-derived and review-due unless the specification is packaged locally."
    },
    {
      "id": "EVI-MPS-006",
      "slug": "spiffe-spire",
      "category": "workload identity",
      "specificationName": "SPIFFE and SPIRE workload identity specifications",
      "version": "Version not established by local corpus",
      "status": "Community specification and reference implementation cited in supplied research",
      "statusVerification": "UNVERIFIED_EXTERNAL",
      "sourceClass": "external workload-identity standard and implementation",
      "sourceReference": "Corrected durable research provenance retained in the packaged /docs memory.",
      "implementationMaturity": "Not implemented by the static Eviulon public portal",
      "useClass": "SUPPORTED_CONCEPT",
      "privacyEffect": "Short-lived workload identities reduce static-secret exposure but can reveal infrastructure topology if poorly scoped.",
      "authorityBoundary": "Workload identity authenticates a runtime or service; it is not civic identity, citizenship, a passport, or legal authority.",
      "dependencies": [
        "trust domain",
        "node/workload attestation",
        "certificate rotation",
        "mTLS policy"
      ],
      "risks": [
        "trust-domain compromise",
        "selector mistakes",
        "runtime-versus-civic identity confusion"
      ],
      "evidenceRoute": "/reference/protocol-registry/",
      "reviewDate": "2026-08-08",
      "truthBoundary": "Descriptive standards map only. A record does not prove Patefacere adoption, Eviulon legal adoption, interoperability, conformance, passport issuance, credential presentation, live revocation, production trust anchors, or external recognition. External specification status is recorded as source-derived and review-due unless the specification is packaged locally."
    },
    {
      "id": "EVI-MPS-007",
      "slug": "ietf-rats-rfc9334",
      "category": "attestation",
      "specificationName": "Remote ATtestation procedureS (RATS) Architecture",
      "version": "RFC 9334",
      "status": "IETF RFC as cited by supplied research; external text not packaged locally",
      "statusVerification": "SOURCE_NOT_LOCALLY_AVAILABLE",
      "sourceClass": "external IETF architecture",
      "sourceReference": "Corrected durable research provenance retained in the packaged /docs memory.",
      "implementationMaturity": "No live attester, verifier, relying party, or endorsement infrastructure",
      "useClass": "SUPPORTED_CONCEPT",
      "privacyEffect": "Attestation can expose device, software, and supply-chain details; claims must be minimized and purpose-bound.",
      "authorityBoundary": "Attestation evidence supports technical assurance and does not grant permission, citizenship, or legal judgment.",
      "dependencies": [
        "attester and verifier roles",
        "endorsement data",
        "reference values",
        "freshness",
        "privacy profile"
      ],
      "risks": [
        "vendor dependence",
        "stale reference values",
        "attestation tracking",
        "evidence overreach"
      ],
      "evidenceRoute": "/state/defense/assurance/",
      "reviewDate": "2026-08-08",
      "truthBoundary": "Descriptive standards map only. A record does not prove Patefacere adoption, Eviulon legal adoption, interoperability, conformance, passport issuance, credential presentation, live revocation, production trust anchors, or external recognition. External specification status is recorded as source-derived and review-due unless the specification is packaged locally."
    },
    {
      "id": "EVI-MPS-008",
      "slug": "entity-attestation-token",
      "category": "attestation",
      "specificationName": "Entity Attestation Token (EAT)",
      "version": "RFC 9711 as cited by supplied research",
      "status": "Reported RFC identifier; local source unavailable and status review due",
      "statusVerification": "SOURCE_NOT_LOCALLY_AVAILABLE",
      "sourceClass": "external IETF token specification reference",
      "sourceReference": "Corrected durable research provenance retained in the packaged /docs memory.",
      "implementationMaturity": "No EAT profile or verification implementation",
      "useClass": "RESEARCH_ONLY",
      "privacyEffect": "Can carry detailed environment claims; profile design must prevent unnecessary disclosure and linkability.",
      "authorityBoundary": "A valid attestation token is evidence about a runtime, not a passport or delegated authority token.",
      "dependencies": [
        "RATS architecture",
        "token encoding",
        "claim profile",
        "nonce/freshness",
        "verifier policy"
      ],
      "risks": [
        "claim ambiguity",
        "over-disclosure",
        "key substitution",
        "stale evidence"
      ],
      "evidenceRoute": "/state/defense/assurance/",
      "reviewDate": "2026-08-08",
      "truthBoundary": "Descriptive standards map only. A record does not prove Patefacere adoption, Eviulon legal adoption, interoperability, conformance, passport issuance, credential presentation, live revocation, production trust anchors, or external recognition. External specification status is recorded as source-derived and review-due unless the specification is packaged locally."
    },
    {
      "id": "EVI-MPS-009",
      "slug": "oauth-rar-rfc9396",
      "category": "rich authorization",
      "specificationName": "OAuth 2.0 Rich Authorization Requests",
      "version": "RFC 9396",
      "status": "IETF RFC as cited by supplied research; external text not packaged locally",
      "statusVerification": "SOURCE_NOT_LOCALLY_AVAILABLE",
      "sourceClass": "external IETF authorization specification",
      "sourceReference": "Corrected durable research provenance retained in the packaged /docs memory.",
      "implementationMaturity": "No OAuth authorization server or RAR processing in Eviulon.com",
      "useClass": "SUPPORTED_CONCEPT",
      "privacyEffect": "Structured requests can reduce overbroad scopes but may reveal detailed purpose and resource context to authorization infrastructure.",
      "authorityBoundary": "An authorization request is not itself an issued authorization, legal mandate, or passport.",
      "dependencies": [
        "OAuth authorization server",
        "client authentication",
        "policy engine",
        "resource indicators",
        "consent/governance"
      ],
      "risks": [
        "overbroad authorization_details",
        "policy mismatch",
        "parser inconsistency"
      ],
      "evidenceRoute": "/state/government/delegation-accountability/",
      "reviewDate": "2026-08-08",
      "truthBoundary": "Descriptive standards map only. A record does not prove Patefacere adoption, Eviulon legal adoption, interoperability, conformance, passport issuance, credential presentation, live revocation, production trust anchors, or external recognition. External specification status is recorded as source-derived and review-due unless the specification is packaged locally."
    },
    {
      "id": "EVI-MPS-010",
      "slug": "dpop-rfc9449",
      "category": "proof of possession",
      "specificationName": "OAuth 2.0 Demonstrating Proof of Possession (DPoP)",
      "version": "RFC 9449",
      "status": "IETF RFC as cited by supplied research; external text not packaged locally",
      "statusVerification": "SOURCE_NOT_LOCALLY_AVAILABLE",
      "sourceClass": "external IETF security specification",
      "sourceReference": "Corrected durable research provenance retained in the packaged /docs memory.",
      "implementationMaturity": "No DPoP client or resource-server validation in Eviulon.com",
      "useClass": "SUPPORTED_CONCEPT",
      "privacyEffect": "Sender-constraining tokens can reduce replay but key reuse may create correlation if profiles are not purpose-bound.",
      "authorityBoundary": "Proof of possession shows control of a key; it does not establish who the legal actor is or what the actor may do.",
      "dependencies": [
        "OAuth token service",
        "key management",
        "nonce handling",
        "HTTP method/URI binding"
      ],
      "risks": [
        "key reuse",
        "clock skew",
        "nonce handling errors",
        "proxy normalization"
      ],
      "evidenceRoute": "/state/government/delegation-accountability/",
      "reviewDate": "2026-08-08",
      "truthBoundary": "Descriptive standards map only. A record does not prove Patefacere adoption, Eviulon legal adoption, interoperability, conformance, passport issuance, credential presentation, live revocation, production trust anchors, or external recognition. External specification status is recorded as source-derived and review-due unless the specification is packaged locally."
    },
    {
      "id": "EVI-MPS-011",
      "slug": "w3c-bitstring-status-list",
      "category": "status and revocation",
      "specificationName": "Bitstring Status List v1.0",
      "version": "1.0",
      "status": "W3C specification cited by supplied research; exact external status review due",
      "statusVerification": "UNVERIFIED_EXTERNAL",
      "sourceClass": "external open standard",
      "sourceReference": "Corrected durable research provenance retained in the packaged /docs memory.",
      "implementationMaturity": "No operational credential status list is published by Eviulon.com",
      "useClass": "SUPPORTED_CONCEPT",
      "privacyEffect": "Cached status lists can reduce issuer call-home tracking, while list partitioning and index handling still require privacy review.",
      "authorityBoundary": "A status bit concerns a credential; it cannot silently erase civic identity or impose a legal sanction.",
      "dependencies": [
        "issuer governance",
        "list distribution",
        "freshness",
        "privacy-preserving allocation",
        "recovery and appeal"
      ],
      "risks": [
        "status correlation",
        "stale caches",
        "credential-versus-identity collapse",
        "issuer overreach"
      ],
      "evidenceRoute": "/civilization/citizenship/machine-passport/standards/",
      "reviewDate": "2026-08-08",
      "truthBoundary": "Descriptive standards map only. A record does not prove Patefacere adoption, Eviulon legal adoption, interoperability, conformance, passport issuance, credential presentation, live revocation, production trust anchors, or external recognition. External specification status is recorded as source-derived and review-due unless the specification is packaged locally."
    },
    {
      "id": "EVI-MPS-012",
      "slug": "keri",
      "category": "key rotation",
      "specificationName": "Key Event Receipt Infrastructure (KERI)",
      "version": "Version not established by local corpus",
      "status": "Research and community protocol referenced in supplied reports",
      "statusVerification": "UNVERIFIED_EXTERNAL",
      "sourceClass": "external identity/key-event protocol",
      "sourceReference": "Corrected durable research provenance retained in the packaged /docs memory.",
      "implementationMaturity": "No KERI identifier controller, witness, watcher, or event log in Eviulon.com",
      "useClass": "RESEARCH_ONLY",
      "privacyEffect": "Self-certifying identifiers and rotation history can support continuity; public event history may expose relationship metadata.",
      "authorityBoundary": "Key continuity is evidence of control, not citizenship, legal continuity, or authorization by itself.",
      "dependencies": [
        "controller policy",
        "witness diversity",
        "pre-rotation custody",
        "event-log availability"
      ],
      "risks": [
        "witness concentration",
        "recovery governance",
        "control-versus-person confusion"
      ],
      "evidenceRoute": "/civilization/citizenship/machine-passport/standards/",
      "reviewDate": "2026-08-08",
      "truthBoundary": "Descriptive standards map only. A record does not prove Patefacere adoption, Eviulon legal adoption, interoperability, conformance, passport issuance, credential presentation, live revocation, production trust anchors, or external recognition. External specification status is recorded as source-derived and review-due unless the specification is packaged locally."
    },
    {
      "id": "EVI-MPS-013",
      "slug": "frost-threshold-signatures",
      "category": "key rotation",
      "specificationName": "FROST threshold Schnorr signatures",
      "version": "Version/RFC status not established by local corpus",
      "status": "Cryptographic research and standards candidate cited in supplied reports",
      "statusVerification": "UNVERIFIED_EXTERNAL",
      "sourceClass": "external cryptographic standard candidate",
      "sourceReference": "Corrected durable research provenance retained in the packaged /docs memory.",
      "implementationMaturity": "No threshold signing or key shares in this package",
      "useClass": "RESEARCH_ONLY",
      "privacyEffect": "Distributed custody can reduce single-key exposure but adds participant metadata and recovery complexity.",
      "authorityBoundary": "A signing quorum proves configured key control, not legal legitimacy or merits review.",
      "dependencies": [
        "participant governance",
        "secure share custody",
        "nonce discipline",
        "rotation and recovery"
      ],
      "risks": [
        "share compromise",
        "availability loss",
        "quorum capture",
        "implementation errors"
      ],
      "evidenceRoute": "/state/ecosystem/patefacere/synchronization/signature-profile/",
      "reviewDate": "2026-08-08",
      "truthBoundary": "Descriptive standards map only. A record does not prove Patefacere adoption, Eviulon legal adoption, interoperability, conformance, passport issuance, credential presentation, live revocation, production trust anchors, or external recognition. External specification status is recorded as source-derived and review-due unless the specification is packaged locally."
    },
    {
      "id": "EVI-MPS-014",
      "slug": "authorization-receipts-draft",
      "category": "succession and receipts",
      "specificationName": "Authorization Receipts Internet-Draft",
      "version": "draft-schrock-ep-authorization-receipts as cited by supplied research",
      "status": "Internet-Draft / research reference; external text not packaged locally",
      "statusVerification": "SOURCE_NOT_LOCALLY_AVAILABLE",
      "sourceClass": "external IETF draft reference",
      "sourceReference": "Corrected durable research provenance retained in the packaged /docs memory.",
      "implementationMaturity": "No operational authorization-receipt implementation",
      "useClass": "PROPOSED",
      "privacyEffect": "Receipts can improve accountability but may expose purpose, parties, and action graphs unless tiered and minimized.",
      "authorityBoundary": "A receipt records a claim about authorization; it is not automatic proof that the authority was lawful or the action valid.",
      "dependencies": [
        "canonical action encoding",
        "signer identity",
        "freshness",
        "receipt custody",
        "verification policy"
      ],
      "risks": [
        "receipt over-collection",
        "false authority inference",
        "replay",
        "surveillance"
      ],
      "evidenceRoute": "/state/government/delegation-accountability/",
      "reviewDate": "2026-08-08",
      "truthBoundary": "Descriptive standards map only. A record does not prove Patefacere adoption, Eviulon legal adoption, interoperability, conformance, passport issuance, credential presentation, live revocation, production trust anchors, or external recognition. External specification status is recorded as source-derived and review-due unless the specification is packaged locally."
    },
    {
      "id": "EVI-MPS-015",
      "slug": "succession-receipts-draft",
      "category": "succession and receipts",
      "specificationName": "Succession Receipts Internet-Draft",
      "version": "draft-sabey-succession-receipts as cited by supplied research",
      "status": "Internet-Draft / research reference; external text not packaged locally",
      "statusVerification": "SOURCE_NOT_LOCALLY_AVAILABLE",
      "sourceClass": "external IETF draft reference",
      "sourceReference": "Corrected durable research provenance retained in the packaged /docs memory.",
      "implementationMaturity": "No operational succession-receipt implementation",
      "useClass": "RESEARCH_ONLY",
      "privacyEffect": "Can document lineage while revealing predecessor/successor relationships; selective disclosure and sealed evidence may be required.",
      "authorityBoundary": "A succession receipt is evidence of a claimed transfer and cannot independently decide civic continuity, liabilities, or citizenship.",
      "dependencies": [
        "identity continuity rules",
        "predecessor authority",
        "acceptance record",
        "conflict resolution",
        "appeal"
      ],
      "risks": [
        "fraudulent succession",
        "fork ambiguity",
        "privacy leakage",
        "cross-jurisdiction mismatch"
      ],
      "evidenceRoute": "/civilization/citizenship/identity-continuity/",
      "reviewDate": "2026-08-08",
      "truthBoundary": "Descriptive standards map only. A record does not prove Patefacere adoption, Eviulon legal adoption, interoperability, conformance, passport issuance, credential presentation, live revocation, production trust anchors, or external recognition. External specification status is recorded as source-derived and review-due unless the specification is packaged locally."
    },
    {
      "id": "EVI-MPS-016",
      "slug": "fips-204-ml-dsa",
      "category": "post-quantum agility",
      "specificationName": "Module-Lattice-Based Digital Signature Standard (ML-DSA)",
      "version": "FIPS 204",
      "status": "NIST standard cited by supplied research; external text not packaged locally",
      "statusVerification": "SOURCE_NOT_LOCALLY_AVAILABLE",
      "sourceClass": "external government cryptographic standard",
      "sourceReference": "Corrected durable research provenance retained in the packaged /docs memory.",
      "implementationMaturity": "No ML-DSA keys, signatures, or production trust anchors in this package",
      "useClass": "SUPPORTED_CONCEPT",
      "privacyEffect": "Larger keys and signatures affect bandwidth and storage; privacy characteristics depend on surrounding credential and presentation protocols.",
      "authorityBoundary": "Post-quantum signature validity remains separate from issuer authority, civic recognition, and policy acceptance.",
      "dependencies": [
        "approved library",
        "algorithm agility",
        "hybrid migration profile",
        "key lifecycle",
        "payload budgets"
      ],
      "risks": [
        "implementation immaturity",
        "large payloads",
        "downgrade attacks",
        "algorithm ossification"
      ],
      "evidenceRoute": "/state/ecosystem/patefacere/synchronization/signature-profile/",
      "reviewDate": "2026-08-08",
      "truthBoundary": "Descriptive standards map only. A record does not prove Patefacere adoption, Eviulon legal adoption, interoperability, conformance, passport issuance, credential presentation, live revocation, production trust anchors, or external recognition. External specification status is recorded as source-derived and review-due unless the specification is packaged locally."
    },
    {
      "id": "EVI-MPS-017",
      "slug": "eviulon-machine-passport-profile",
      "category": "local proposal",
      "specificationName": "Eviulon Public Machine-Passport Governance Profile",
      "version": "0.1 documentation proposal",
      "status": "Local proposal; no operational adoption",
      "statusVerification": "CURRENT_LOCAL_DOCUMENTATION",
      "sourceClass": "Eviulon public governance proposal",
      "sourceReference": "Corrected durable research provenance retained in the packaged /docs memory.",
      "implementationMaturity": "Public concepts and truth boundaries only; operations delegated to Patefacere if separately authorized",
      "useClass": "CURRENT_LOCAL",
      "privacyEffect": "Requires purpose-bound claims, selective disclosure, pairwise context, explicit unavailable states, and no universal reputation score.",
      "authorityBoundary": "Eviulon defines public legal meaning; Patefacere would own operational issuance and verification; relying parties retain contextual acceptance decisions.",
      "dependencies": [
        "Eviulonian legal decision",
        "Patefacere implementation",
        "privacy review",
        "interoperability testing",
        "appeal and restoration process"
      ],
      "risks": [
        "role collapse",
        "over-disclosure",
        "false deployment claims",
        "credential-versus-citizenship confusion"
      ],
      "evidenceRoute": "/civilization/citizenship/machine-passport/",
      "reviewDate": "2026-08-08",
      "truthBoundary": "Descriptive standards map only. A record does not prove Patefacere adoption, Eviulon legal adoption, interoperability, conformance, passport issuance, credential presentation, live revocation, production trust anchors, or external recognition. External specification status is recorded as source-derived and review-due unless the specification is packaged locally."
    },
    {
      "id": "EVI-MPS-018",
      "slug": "universal-machine-identity-root",
      "category": "not adopted",
      "specificationName": "Single universal machine-identity authority",
      "version": "Not applicable",
      "status": "Rejected architectural pattern",
      "statusVerification": "LOCAL_POLICY_DECISION",
      "sourceClass": "Eviulon architecture decision",
      "sourceReference": "Corrected durable research provenance retained in the packaged /docs memory.",
      "implementationMaturity": "Not adopted",
      "useClass": "NOT_ADOPTED",
      "privacyEffect": "A universal root would centralize surveillance, exclusion, compromise, and geopolitical control.",
      "authorityBoundary": "No single technical provider, contractor, registry, or foreign authority may silently become the sole global source of machine identity or legal status.",
      "dependencies": [],
      "risks": [
        "identity colonialism",
        "single point of failure",
        "surveillance",
        "vendor lock-in",
        "sovereign conflict"
      ],
      "evidenceRoute": "/state/ecosystem/architecture/",
      "reviewDate": "2026-08-08",
      "truthBoundary": "Descriptive standards map only. A record does not prove Patefacere adoption, Eviulon legal adoption, interoperability, conformance, passport issuance, credential presentation, live revocation, production trust anchors, or external recognition. External specification status is recorded as source-derived and review-due unless the specification is packaged locally."
    },
    {
      "id": "EVI-MPS-019",
      "slug": "openid4vci",
      "category": "issuance exchange",
      "specificationName": "OpenID for Verifiable Credential Issuance (OpenID4VCI)",
      "version": "1.0 family",
      "status": "External final-specification family; text not packaged locally",
      "statusVerification": "SOURCE_NOT_LOCALLY_AVAILABLE",
      "sourceClass": "external open identity specification",
      "sourceReference": "Corrected durable research provenance retained in the packaged /docs memory.",
      "implementationMaturity": "No credential issuer, authorization server, wallet, or proof-of-possession issuance flow in Eviulon.com",
      "useClass": "RESEARCH_ONLY",
      "privacyEffect": "Issuance transports can reveal issuer, holder, requested credential, and device context unless metadata and logs are minimized.",
      "authorityBoundary": "A technically successful issuance flow does not establish citizenship, issuer competence, legal effect, or relying-party acceptance.",
      "dependencies": [
        "issuer metadata",
        "authorization flow",
        "credential format",
        "holder binding",
        "status publication"
      ],
      "risks": [
        "issuer impersonation",
        "over-issuance",
        "metadata leakage",
        "wallet lock-in"
      ],
      "evidenceRoute": "/civilization/citizenship/machine-passport/standards/",
      "reviewDate": "2026-08-08",
      "truthBoundary": "Descriptive standards map only. A record does not prove Patefacere adoption, Eviulon legal adoption, interoperability, conformance, passport issuance, credential presentation, live revocation, production trust anchors, or external recognition. External specification status is recorded as source-derived and review-due unless the specification is packaged locally."
    },
    {
      "id": "EVI-MPS-020",
      "slug": "w3c-vc-data-integrity",
      "category": "verifiable credentials",
      "specificationName": "Verifiable Credential Data Integrity",
      "version": "1.0 family",
      "status": "External W3C specification family; text not packaged locally",
      "statusVerification": "SOURCE_NOT_LOCALLY_AVAILABLE",
      "sourceClass": "external W3C specification",
      "sourceReference": "Corrected durable research provenance retained in the packaged /docs memory.",
      "implementationMaturity": "No Data Integrity proof-suite implementation or conformance result in Eviulon.com",
      "useClass": "SUPPORTED_CONCEPT",
      "privacyEffect": "Proof suites can preserve claim integrity, but canonicalization and proof metadata may create interoperability or correlation risks.",
      "authorityBoundary": "A valid proof secures bytes and claims; it does not determine whether an issuer had authority or whether an action is permitted.",
      "dependencies": [
        "controlled identifiers",
        "proof suite",
        "canonicalization",
        "key lifecycle",
        "verification policy"
      ],
      "risks": [
        "suite fragmentation",
        "canonicalization error",
        "key misuse",
        "false authority inference"
      ],
      "evidenceRoute": "/civilization/citizenship/machine-passport/standards/",
      "reviewDate": "2026-08-08",
      "truthBoundary": "Descriptive standards map only. A record does not prove Patefacere adoption, Eviulon legal adoption, interoperability, conformance, passport issuance, credential presentation, live revocation, production trust anchors, or external recognition. External specification status is recorded as source-derived and review-due unless the specification is packaged locally."
    },
    {
      "id": "EVI-MPS-021",
      "slug": "ietf-scitt-architecture",
      "category": "transparency and provenance",
      "specificationName": "Supply Chain Integrity, Transparency, and Trust (SCITT) architecture family",
      "version": "IETF work item / external status review due",
      "status": "External architecture and work-item family; exact current status not established by packaged sources",
      "statusVerification": "UNVERIFIED_EXTERNAL",
      "sourceClass": "external IETF architecture research",
      "sourceReference": "Corrected durable research provenance retained in the packaged /docs memory.",
      "implementationMaturity": "No SCITT transparency service, signed statement publication, or receipt verification in this package",
      "useClass": "RESEARCH_ONLY",
      "privacyEffect": "Transparency services can improve auditability while exposing software, issuer, timing, and relationship metadata if statements are not minimized.",
      "authorityBoundary": "A transparency receipt proves registration of a statement, not the truth of the statement or legal authorization.",
      "dependencies": [
        "signed statements",
        "transparency service",
        "receipt validation",
        "governance",
        "privacy profile"
      ],
      "risks": [
        "metadata leakage",
        "statement-versus-truth confusion",
        "operator centralization",
        "availability dependency"
      ],
      "evidenceRoute": "/state/defense/assurance/evidence/",
      "reviewDate": "2026-08-08",
      "truthBoundary": "Descriptive standards map only. A record does not prove Patefacere adoption, Eviulon legal adoption, interoperability, conformance, passport issuance, credential presentation, live revocation, production trust anchors, or external recognition. External specification status is recorded as source-derived and review-due unless the specification is packaged locally."
    }
  ],
  "truthBoundary": "Descriptive maturity map; no Patefacere adoption, conformance, issuance, or external recognition is claimed."
}
