Supplied approval scope comparison
Compare a structured caller-supplied approval receipt to a proposed action: exact actor and scope, declared data-class subset, payload digest, caller time window, revocation and use count. Does not authenticate or grant authorization.
workflow-assurance · Operation ID: approval-scope-check
Choose this operation when
- Detect scope drift or expiry in an offline human-approval receipt
- Compare a proposed action with an exact structured approval artifact before human review
Outside this profile
- Executing tools, sending messages, retrying effects, restoring state, or contacting live services
- Authenticating evidence, verifying signatures or identities, granting permission, or enforcing authorization
- Inferring facts omitted from the supplied artifact snapshot or guaranteeing exactly-once execution
Exact release references
Static JSON contract · Markdown reference · Fixed example response
Complete input schema
{
"$schema": "https://json-schema.org/draft/2020-12/schema",
"type": "object",
"properties": {
"asOfMs": {
"type": "integer",
"minimum": 0,
"maximum": 9007199254740991
},
"approval": {
"type": "object",
"properties": {
"id": {
"type": "string",
"minLength": 1,
"maxLength": 100
},
"actor": {
"type": "string",
"minLength": 1,
"maxLength": 100
},
"scope": {
"type": "object",
"properties": {
"operation": {
"type": "string",
"minLength": 1,
"maxLength": 100
},
"recipient": {
"type": "string",
"minLength": 1,
"maxLength": 100
},
"resource": {
"type": "string",
"minLength": 1,
"maxLength": 100
},
"purpose": {
"type": "string",
"minLength": 1,
"maxLength": 200
},
"dataClasses": {
"maxItems": 16,
"type": "array",
"items": {
"type": "string",
"minLength": 1,
"maxLength": 100
}
}
},
"required": [
"operation",
"recipient",
"resource",
"purpose",
"dataClasses"
],
"additionalProperties": false
},
"payloadSha256": {
"type": "string",
"pattern": "^[a-f0-9]{64}$"
},
"issuedAtMs": {
"type": "integer",
"minimum": 0,
"maximum": 9007199254740991
},
"expiresAtMs": {
"type": "integer",
"minimum": 0,
"maximum": 9007199254740991
},
"revoked": {
"type": "boolean"
},
"maxUses": {
"type": "integer",
"minimum": 1,
"maximum": 1000000
},
"priorUses": {
"type": "integer",
"minimum": 0,
"maximum": 1000000
}
},
"required": [
"id",
"actor",
"scope",
"payloadSha256",
"issuedAtMs",
"expiresAtMs",
"revoked",
"maxUses",
"priorUses"
],
"additionalProperties": false
},
"proposal": {
"type": "object",
"properties": {
"actor": {
"type": "string",
"minLength": 1,
"maxLength": 100
},
"scope": {
"type": "object",
"properties": {
"operation": {
"type": "string",
"minLength": 1,
"maxLength": 100
},
"recipient": {
"type": "string",
"minLength": 1,
"maxLength": 100
},
"resource": {
"type": "string",
"minLength": 1,
"maxLength": 100
},
"purpose": {
"type": "string",
"minLength": 1,
"maxLength": 200
},
"dataClasses": {
"maxItems": 16,
"type": "array",
"items": {
"type": "string",
"minLength": 1,
"maxLength": 100
}
}
},
"required": [
"operation",
"recipient",
"resource",
"purpose",
"dataClasses"
],
"additionalProperties": false
},
"payload": {
"$ref": "#/$defs/__schema0"
}
},
"required": [
"actor",
"scope",
"payload"
],
"additionalProperties": false
}
},
"required": [
"asOfMs",
"approval",
"proposal"
],
"additionalProperties": false,
"$defs": {
"__schema0": {
"anyOf": [
{
"type": "string"
},
{
"type": "number"
},
{
"type": "boolean"
},
{
"type": "null"
},
{
"type": "array",
"items": {
"$ref": "#/$defs/__schema0"
}
},
{
"type": "object",
"propertyNames": {
"type": "string"
},
"additionalProperties": {
"$ref": "#/$defs/__schema0"
}
}
]
}
}
}
Complete output-envelope schema
{
"type": "object",
"required": [
"operation",
"version",
"result",
"provenance"
],
"properties": {
"operation": {
"const": "approval-scope-check",
"type": "string"
},
"version": {
"const": "0.29.0",
"type": "string"
},
"result": {
"$schema": "https://json-schema.org/draft/2020-12/schema",
"type": "object",
"properties": {
"profile": {
"type": "string",
"const": "approval-scope-v1"
},
"matchesSuppliedApproval": {
"type": "boolean"
},
"advisoryOnly": {
"type": "boolean",
"const": true
},
"authorizationGranted": {
"type": "boolean",
"const": false
},
"identityVerified": {
"type": "boolean",
"const": false
},
"approvalId": {
"type": "string",
"minLength": 1,
"maxLength": 100
},
"payloadSha256": {
"type": "string",
"pattern": "^[a-f0-9]{64}$"
},
"digestProfile": {
"type": "string",
"const": "sorted-json-sha256-v1"
},
"checks": {
"type": "object",
"properties": {
"actor": {
"type": "boolean"
},
"operation": {
"type": "boolean"
},
"recipient": {
"type": "boolean"
},
"resource": {
"type": "boolean"
},
"purpose": {
"type": "boolean"
},
"dataClasses": {
"type": "boolean"
},
"payload": {
"type": "boolean"
},
"timeWindow": {
"type": "boolean"
},
"notRevoked": {
"type": "boolean"
},
"usesRemaining": {
"type": "boolean"
}
},
"required": [
"actor",
"operation",
"recipient",
"resource",
"purpose",
"dataClasses",
"payload",
"timeWindow",
"notRevoked",
"usesRemaining"
],
"additionalProperties": false
},
"limitations": {
"type": "array",
"items": {
"type": "string"
}
},
"findings": {
"maxItems": 200,
"type": "array",
"items": {
"type": "object",
"properties": {
"code": {
"type": "string"
},
"severity": {
"type": "string",
"enum": [
"error",
"warning"
]
},
"path": {
"type": "string"
},
"message": {
"type": "string"
},
"relatedIds": {
"maxItems": 8,
"type": "array",
"items": {
"type": "string",
"minLength": 1,
"maxLength": 100
}
}
},
"required": [
"code",
"severity",
"path",
"message",
"relatedIds"
],
"additionalProperties": false
}
},
"findingCount": {
"type": "integer",
"minimum": 0,
"maximum": 9007199254740991
},
"errorCount": {
"type": "integer",
"minimum": 0,
"maximum": 9007199254740991
},
"truncated": {
"type": "boolean"
}
},
"required": [
"profile",
"matchesSuppliedApproval",
"advisoryOnly",
"authorizationGranted",
"identityVerified",
"approvalId",
"payloadSha256",
"digestProfile",
"checks",
"limitations",
"findings",
"findingCount",
"errorCount",
"truncated"
],
"additionalProperties": false
},
"provenance": {
"type": "object",
"required": [
"inputSha256",
"outputSha256",
"deterministic",
"externalRequests"
],
"properties": {
"inputSha256": {
"type": "string",
"pattern": "^[a-f0-9]{64}$"
},
"outputSha256": {
"type": "string",
"pattern": "^[a-f0-9]{64}$"
},
"deterministic": {
"const": true
},
"externalRequests": {
"const": 0
}
}
}
},
"additionalProperties": false
}
Fixed example
One accepted fixed example, not a custom-input trial. No operation runs when this static page is requested.
Example input
{
"asOfMs": 100,
"approval": {
"id": "approval-1",
"actor": "agent-1",
"scope": {
"operation": "send-note",
"recipient": "team@example.test",
"resource": "thread-1",
"purpose": "status-update",
"dataClasses": [
"business-contact"
]
},
"payloadSha256": "44136fa355b3678a1146ad16f7e8649e94fb4fc21fe77e8310c060f61caaff8a",
"issuedAtMs": 0,
"expiresAtMs": 1000,
"revoked": false,
"maxUses": 1,
"priorUses": 0
},
"proposal": {
"actor": "agent-1",
"scope": {
"operation": "send-note",
"recipient": "team@example.test",
"resource": "thread-1",
"purpose": "status-update",
"dataClasses": [
"business-contact"
]
},
"payload": {}
}
}
Example response
{
"operation": "approval-scope-check",
"version": "0.29.0",
"result": {
"profile": "approval-scope-v1",
"matchesSuppliedApproval": true,
"advisoryOnly": true,
"authorizationGranted": false,
"identityVerified": false,
"approvalId": "approval-1",
"payloadSha256": "44136fa355b3678a1146ad16f7e8649e94fb4fc21fe77e8310c060f61caaff8a",
"digestProfile": "sorted-json-sha256-v1",
"checks": {
"actor": true,
"operation": true,
"recipient": true,
"resource": true,
"purpose": true,
"dataClasses": true,
"payload": true,
"timeWindow": true,
"notRevoked": true,
"usesRemaining": true
},
"limitations": [
"All approval, identity, revocation, usage and time inputs are unverified caller assertions.",
"This is an offline comparison and never grants or substitutes for required human approval or an authorization service.",
"Scope strings are exact and case-sensitive; no wildcards, URL equivalence, delegation, or implicit recipient expansion.",
"Proposal data classes must be a subset of the declared approved classes; their truth is not inferred from payload contents.",
"The payload digest uses the custom sorted-json-sha256-v1 profile, not a signature or general canonical JSON standard."
],
"findings": [],
"findingCount": 0,
"errorCount": 0,
"truncated": false
},
"provenance": {
"inputSha256": "1dad1a8fc0a2aa96d0cc1216c1f6ba3500c4f2d51b51098c2ef5dba80d4ee048",
"outputSha256": "01cfe41c857b2418ca2e408aed082517f8dbfcfea2e59f557c77bfebd62c823a",
"deterministic": true,
"externalRequests": 0
}
}
Bounds and precision
JavaScript IEEE-754 numbers; use strings for large integer IDs/exact decimals where the schema accepts strings. No lossless numeric parsing.
{
"global": {
"requestBytes": 131072,
"responseBytes": 524288,
"jsonDepth": 32,
"jsonNodes": 20000,
"requestsPerMinute": 60,
"paidAttemptsPerMinute": 20,
"idempotencyHours": 24
},
"operation": {
"inputBytes": 100000,
"outputBytes": 400000,
"jsonNodes": 12000,
"depth": 20,
"findings": 200,
"events": 256,
"actors": 32,
"traceSteps": 128,
"observations": 256,
"dataClassesPerScope": 16,
"scopeMatching": "exact case-sensitive strings; no wildcards"
}
}
Complete schemas, descriptions and cross-field validation may impose additional limits.
Proposed price and protocol definitions
{
"unit": "one successful operation call",
"proposedNominalUsd": "0.005",
"sixDecimalTokenBaseUnits": "5000",
"subscription": false,
"includesPayerWalletOrNetworkFees": false,
"liveQuoteVerified": false,
"condition": "Actual SDK challenge is authoritative only within the caller's explicit authorization; configured six-decimal token peg is an operator assertion, not a conversion guarantee."
}
Protocol definitions: x402, mpp. MPP uses Tempo charge. Paid MCP execution is unsupported. All runtime readiness is not evaluated in this build.
API path templates, not endpoints on this documentation host
{
"x402": "/v1/x402/approval-scope-check",
"mpp": "/v1/mpp/approval-scope-check"
}
Required headers
{
"Content-Type": "application/json",
"Idempotency-Key": "random 16–128 character operation identifier"
}
Actual SDK challenge amount, asset, network, recipient and wallet costs must pass independent authorization. Preserve identical key, body, protocol and credential on retries; on PAYMENT_UNCERTAIN stop and reconcile.
Execution profile and provider conditions
{
"deterministic": true,
"externalRequests": 0,
"maxExternalRequests": 0,
"resultSnapshotPersisted": false,
"fixedExampleIsIllustrativeSnapshot": false,
"requiresPayment": true,
"supportsMcpExecution": false
}
Deterministic supplied-input operation with no external requests or stored request/result bodies. Payment infrastructure retains payment metadata and hashes.
Failure handling
- HTTP 400: Malformed JSON, missing/invalid idempotency key, or payment identifier mismatch Correct the request before payment
- HTTP 402: Payment challenge or rejected payment Use official protocol SDK; inspect payment outcome before another payment
- HTTP 409: Idempotency conflict, duplicate proof, or PAYMENT_UNCERTAIN Keep original key, body, and proof; reconcile uncertainty with operator; never blindly repay
- HTTP 413: Input or generated output too large Reduce input; no payment attempted for validation failure
- HTTP 415: Unsupported media type or compression Send uncompressed application/json
- HTTP 422: Schema or service-specific semantic validation failure Correct input using returned error code; no payment attempted
- HTTP 429: Request/payment-attempt rate exceeded Wait for rate limit window; preserve existing payment identity
- HTTP 503: Payment configuration/provider/state unavailable, or live DNS preparation failed before settlement Check readiness; DNS preparation failures may retry the identical key/body/credential only; uncertainty requires reconciliation
Declared requirements
Before any paid call, refresh the live operation contract and POST the complete bounded budgeted plan to the separate API's /preflight. Unknown requirements block selection; compatible preflight is not permission to spend.