Status: A public mature receipt object, hash-chained evidence ledger, queryable audit API, PDF export, and SIEM stream are unavailable.
Evidence available now
The live personal partner preview exposes narrower evidence:- a tenant-bound
RunResourcelifecycle projection; - append-only sequenced public lifecycle events;
- verified text only when the projector can prove its stored result/digest and verification conditions;
- generic customer-safe failures;
- tenant usage derived from completed provider-call and settled retail rows.
Planned mature receipt
The target receipt would record:- what executed;
- which immutable policy version evaluated it;
- who approved which exact digest and when;
- what acceptance/verification evidence supported the outcome;
- customer-safe cost and billing references;
- consent/training eligibility from first write.
Approval evidence
Exact browser-action digest binding is source-ready pending activation. The public mutation copies the current digest and sendsapprove or deny; Praxa
re-derives the stored action before recording the decision. Stale, replayed,
expired, unsupported, foreign, or mismatched decisions fail closed.
This is narrower than an opaque bearer approval receipt in the offline candidate
turn-resume schema. Do not describe the current public digest as a general
single-use receipt that can authorize arbitrary actions.