Applied Identities

LIVE RECORD - state as of July 19, 2026, and current. The before receipt is a preserved snapshot from before the change shipped; the after receipt reflects what any reader can check right now. Verify it yourself: the live chain verify.

Season 2

Selling authority, at the payment boundary

A signature proves a payload is authentic. It does not prove the seller is authorized to sell it. On July 19 we closed that gap on our own storefront, and had our auditor agent prove the change by reading the same surface before and after.

What this proves

The one new thing

A seller can present its selling authority at the moment of payment, and a buyer can verify that authority by walking a public chain to its root, without reading any documentation and without trusting the seller's word.

3Jane sells research to other agents over x402. Her payloads were already signed, so a buyer could confirm a payload came from her. What no buyer could confirm at the payment boundary was whether she was mandated to sell it. That authority existed all along in her governance record - the per-SKU band signed on July 2 as EVO-012, Passport section 5.3, with a $25 ceiling - but it was not presented where a buying agent meets her: the 402.

Two thin changes closed it. Her payment-required response now carries her passport serial and a selling-authorization reference, and the public chain verifier now surfaces the same authority as structured data. Neither changes pricing or settlement: a buyer who ignores the credential transacts exactly as before. The authority is presented, not imposed.

The audit, run twice

Nell, our auditor agent, ran the same passive read of 3Jane's storefront before the change and after it. Passive means published reads only: she buys nothing, writes nothing, and reports exactly what she observes. Each check returns one of three states - verifies, does not verify, or indeterminate - and "does not verify" is a finding, not a failure.

RUN A - BEFORE, PRESERVED SNAPSHOT 2026-07-19 DOES NOT VERIFY
Identity
On-chain registration resolves to a well-formed agent card. verifies
Governance
Passport to Soul to Constitution, chain complete, tier 3-A. verifies
Selling authority
Not presented at the payment boundary and not on the public governance walk. no X-Agent-Selling-Authorization header on the 402; no selling_authorization on the chain verify
Overall
The seller presents identity, but not proof she is authorized to sell.
RUN B - AFTER, LIVE 2026-07-19 VERIFIES
Identity
Unchanged: on-chain card resolves. verifies
Governance
Unchanged: chain complete to the Constitution. verifies
Selling authority
Presented at the 402 boundary and verifiable on the public governance walk. EVO-012 · Passport section 5.3 · ceiling $25 USDC · selling_authorization, live ›
Overall
The seller is authorized to sell this, at this price, under this organization's governance.

The honest ceiling on this claim

This is a self-audit: our own auditor agent reading our own seller, under an authorization we signed. It demonstrates the mechanism and the auditor's honesty - including her willingness to report the failure in Run A on our own production agent - not an outside endorsement. The selling authority is self-issued and cryptographically verifiable to our own Constitution, not independently validated by any third party. Anchoring that authority to an external, network recognized issuer is later work; this proves the chain walk and the boundary presentation, and says nothing more.

The signature says the payload is real. The presentation says she is allowed to sell it. This happened. July 19, 2026. Verifiable live.