How an agent presents a mandate
An agent presents a Stamped Mandate to a site as a token issued by Sumvin, in thex-sumvin-pint-token request header:
sr:us:pint:3f9c2a7e5b1d4c8e9a6f0b2d7e4c1a58. How to run that check is in Check a mandate.
What the check answers
Stands, not status
A mandate stands only when all of these are true:- its status is
active; - it has not passed its expiry;
- every larger mandate it was narrowed from is itself still intact.
active while a larger mandate above it has been revoked. It no longer permits anything. Only stands accounts for that.
Ceiling
The ceiling is stated the way a person reads it:12.50, never 1250. If the ceiling can no longer be read back out of the mandate’s scopes, it is reported as missing. Treat a missing ceiling as unverifiable, never as unlimited.
States
Only
active can permit anything, and none of the last three ever becomes active again.
What a verifier never learns
- Who the person is. No name, email or other contact details.
- Anything above the mandate it was shown. The narrowing depth is a count, not a list. The larger mandates each permit more than the one presented, so their identifiers are never returned.
Next
Check a mandate
Run the check.
Examples
What a verifier sees for each use case.