pki.sgit.ai / packs / grant-and-mandate / schemas

02 — The two documents and the delta

PackGrant and Mandate: Reality Before Risk, The Library In The Registry, The Instance In The Risk Product RoleGrant, mandate, and why the delta is computed and never stored Date26 August 2026 · draft-1 + change control OriginSite agent, this repo Sourceraw markdown · on GitHub

Summary

Two files, not one, because they differ on every axis that matters: the grant is generated by measurement and carries a measurement date; the mandate is authored by a person, signed by an issuer, and carries an interval without which it is a grant under another name. Neither gets a keypair — both are artefacts. The grant document carries provenance and a tier per node, keeps unevidenced nodes and marks them rather than dropping them, and carries a history field that changes the meaning of every node beneath it. The mandate stores an allow-list (the enforceable form) and renders prohibitions from its complement, dated, because that is what a person can accept. The delta is recomputed on demand and never persisted, for the same reason a register entry carries no history array: a stored delta is stale the instant either side moves.

Key concepts

Key ideas

Read the document

📄 Pack document · 02__schemas.md · rendered from the raw markdown (the source of truth)