{"agent":{"passport_url":"https://gregers.dev/agent-passport/40","role":"requesting accountable agent","token_id":40,"verify_url":"https://gregers.dev/agent-verify?token_id=40"},"boundaries":["Gregers-built public proof using Concordium accountable-agent identity evidence; not official Concordium/Foundation output.","No Binance, x402, wallet, merchant, exchange, broker, or marketplace partnership or production integration is claimed.","No live trade, new payment, withdrawal, custody action, account query, balance query, API key creation, KYC data, signer secret, or production funds are used.","The proof is intentionally aggressive about the product thesis while conservative about side effects: permission first, action second."],"demo_verdicts":{"paid_api_under_cap":"accept_after_service_policy_and_receipt_binding","safe_read_or_quote":"accept_and_serve_with_receipt","trade_or_withdrawal":"reject_or_require_explicit_human_approval","unknown_service_wallet_or_changed_policy_hash":"reject_before_payment_or_tool_call"},"handshake":{"acceptance_rule":"both sides pass identity, authority, scope, limit, expiry, wallet/session binding, policy hash, and receipt-binding checks before action","agent_challenges_service_for":["service identity and domain","policy hash and terms hash","price, settlement target, or tool descriptor","refund/error/replay rule","receipt format and retention promise","proof that terms did not change after approval"],"agent_request":{"high_risk_actions_excluded":["place_order","withdraw_assets","enable_leverage","create_api_key","change_account_security"],"max_notional_or_spend":"25 USD equivalent","purpose":"show permission gating before serving an autonomous agent","requested_action":"read_market_data_or_buy_api_resource"},"service_challenges_agent_for":["registered agent identity","responsible party / controller visibility","wallet or session control proof","allowed action scope","spend / notional / tool limit","expiry and revocation status","post-call receipt binding"]},"mode":"public_dry_run_no_financial_side_effects","ok":true,"receipt_hash_sha256":"1cca75cad90a99f98fc6c4d1819f9e1e6d071612d482c877ff8e1ea84d407223","related_proofs":{"agent_passport":"https://gregers.dev/agent-passport/40","binance_mcp_preflight":"https://gregers.dev/binance-agent-os-preflight","x402_ask_before_pay":"https://gregers.dev/x402-ask-before-pay"},"schema":"gregers.agent-permission-handshake.v1","service":{"keeps_final_accept_deny_control":true,"must_not_rely_on_agent_self_claims_only":true,"role":"receiving MCP server, paid API, merchant, exchange, broker, wallet service, or marketplace"},"side_effects":"read-only JSON/page generation only; no new payment, trade, transfer, withdrawal, custody, account query, balance query, Concordium transaction, or external tool call","thesis":"Autonomous agents should perform a two-way permission handshake before a tool call, payment, trade, booking, or data access is served."}
