Institutional Trust Infrastructure →
Language:
PRODUCTS
SECTORS
MORE
Quantum Security 🔍 Search Request Access →
MACHINE LAW · EXECUTION RIGHTS INFRASTRUCTURE

THE CONTROL LAYER BEFORE EXECUTION.

Observation tells an institution what happened. Prediction estimates what may happen. Intervention changes a trajectory that is already moving. Machine Law introduces a separate control question before a bounded capability exists: does the right to execute this exact action exist now?

01 · OBSERVATION
What happened?

Logs, reports and telemetry can make activity visible. Visibility is valuable, but it does not itself create or withdraw execution permission.

02 · PREDICTION
What may happen?

Models can estimate risk, drift or consequence. Probability can inform a determination, but probability is not institutional authority.

03 · INTERVENTION
Can trajectory be changed?

Escalation, pause and override can preserve governability. An intervention right is still not the same thing as the right behind the original execution.

04 · AUTHORIZATION
May this action exist?

Machine Law closes the relevant authority state for the exact action. If required closure is absent, no valid bounded capability should follow in the governed execution path.

EXECUTION RIGHTS INFRASTRUCTURE · FROZEN ARCHITECTURE

ARCHITECTURE FREEZE = TRUE

The Execution Rights architecture is formalized, hardened and frozen. Rights closure, bounded capabilities, registered execution surfaces, current-right revalidation, replay protection, reassessment and portable verification form one fail-closed control chain.

REQUEST → DETERMINATIONS → RIGHTS CLOSURE → EXECUTION RIGHT → BOUNDED CAPABILITY → ENFORCEMENT → EXECUTION → EVIDENCE
NO VALID EXECUTION RIGHT → NO CAPABILITY → NO EXECUTIONInternal architecture freeze of a tested implementation. Not third-party certification.
GLOBAL EXECUTION REQUIREMENTS

Regulation is moving toward execution.

FINMA, BaFin, NIST, NSA, EU and U.S. government strategies are converging on continuous authorization, Zero Trust, resilience, evidence and enforceable boundaries. See how immo.quick already operationalizes these control properties at the Execution Rights layer.

Open the global comparison →Execution Rights →
THE ARCHITECTURAL DIFFERENCE

Governability is not authorization.

An enterprise can remain observable, manageable and even interruptible while the authorization question is still unresolved. immo.quick separates those layers instead of treating them as one.

AUTHORITATIVE SOURCERULE STATEJURISDICTIONTIMEDEPENDENCIESDETERMINATIONEXECUTION-RIGHTS CLOSURECAPABILITY / NONEEVIDENCE
WHAT THE MACHINE MAY DO
Determine, bind, constrain and evidence.

The architecture can process encoded rules and authoritative states, resolve required conditions, bind a capability to the supported authorization state and preserve evidence within explicit claim boundaries.

WHAT THE MACHINE MAY NOT INVENT
Authority, legal sovereignty or substantive truth.

Institutional authority originates outside the machine. A Gate Judgment is not an Execution Right. Cryptographic integrity is not a legal judgment.

Intervention can stop execution. Execution Rights determine whether a valid capability may exist in the first place.

WHY THIS MATTERS NOW

Autonomous software compresses the distance between decision and consequence.

As agents and automated systems touch payments, regulated workflows, clinical processes, critical infrastructure and public-sector execution, a retrospective explanation becomes less valuable than a provable boundary before action. The institutional problem is no longer only whether software can act. It is whether software can demonstrate the authority under which that action became executable.

BOARD / CRO
Control exposure before consequence.

Separate responsibility on paper from the technical conditions that create an executable capability.

REGULATOR / AUDITOR
Inspect the authorization path.

Trace authority, rule state, dependencies and evidence without asking a model to become the sovereign decision-maker.

CFO / INVESTOR / PE
Look below compliance software.

Execution failures can become remediation, legal, operational and balance-sheet exposure. The diligence question is whether the control layer is structural, inspectable and difficult to substitute.

INSTITUTIONAL ENTRY POINTS

One architecture. Different institutional questions.

immo.quick does not claim that software creates legal or sovereign authority. The architecture binds execution to externally legitimate authority and publishes the boundary of what its evidence can establish.

CURRENT ERI AUDIT · ADVERSARIAL + GLOBAL ENFORCEMENT

FORGE THE CAPABILITY. BYPASS THE CLOSURE. RACE THE STATE. REPLAY THE CAPABILITY.

The Execution Rights Infrastructure was tested beyond the happy path. The audit deliberately attacks capability bindings, closure, state transitions, dependency graphs and runtime invariants. The objective is not probabilistic robustness, but deterministic fail-closed behavior.

113/113ADVERSARIAL + GLOBAL ENFORCEMENT TESTS PASSED · 0 FAILED
Global Enforcement

39/39 tests passed. 0 bypass paths detected in tested scope. A non-Spine capability is blocked with SPINE_ISSUANCE_REQUIRED.

Capability Forgery

Manipulating action, subject, executor, validity, state references, scope, max_uses, environment or determination hash → INVALID_CAPABILITY_BINDING.

Closure Bypass

4/5 closed dimensions are insufficient. Authority, Rule, Jurisdiction, Time and Dependencies must all close.

Revocation Race

If authority or dependency state changes between revalidation and execution, the Atomic Execution Check blocks.

Replay Attack · Capability Replay

Re-use of an already consumed capability is deterministically detected and blocked.

Graph Poisoning

Orphan nodes, missing edges, circular dependencies and stale nodes invalidate the dependency graph.

Manifest / Runtime Conformance

Published architecture claims are checked against actual runtime enforcement.

“Replay Attack” explicitly means a cryptographic/technical replay attack here.

An already validly consumed capability is presented again for execution. This is not probabilistic repetition and not an AI re-run. The same capability + same idempotency key returns the already known result; a new execution attempt with a different key after consumption is blocked as REPLAY_DETECTED.

Technical conformance evidence for the tested system state. Not third-party certification and not a claim of absolute invulnerability.

INSTITUTIONAL PROOF PATH
Request Access →