gateBundID seals the cryptographically inseparable coupling of a digital administrative act to the eID assertion of the citizen concerned, including Level-of-Assurance checking and authority validity. Support for public authorities, never a replacement for a regulator's own recognition as evidence.
A digital administrative act concerning a citizen must be cryptographically inseparably coupled to that citizen's eID assertion. If the coupling were dissolvable afterward, a case file could be reassigned to a different citizen without consent, the antithesis of the rule-of-law certainty requirement.
An expired assertion or a non-competent authority leads to a hard rejection, no exception, no discretion.
All values on this page are fictional test data and serve only to illustrate the gate logic.
| Scenario | SG1 | SG2 | SG3 | Verdict |
|---|---|---|---|---|
| Fresh assertion, dispositive | PASS | PASS | PASS | BUNDID_SEALED |
| Assertion 5 days old | FAIL | not evaluated | not evaluated | BLOCK_BUNDID_ASSERTION_EXPIRED |
| LoA LOW where SUBSTANTIAL required | FAIL | not evaluated | not evaluated | BLOCK_BUNDID_EID_SUBSTANTIAL_BELOW_REQUIRED |
| Merge hash missing | PASS | FAIL | not evaluated | NO_DECISION |
| Authority not competent at T=0 | PASS | PASS | FAIL | BLOCK_BUNDID_AUTHORITY_LAPSED |
| Citizen eID hash missing | PASS | FAIL | not evaluated | NO_DECISION |