Machine traffic monetization and agent payments pack
最終確認: 2026-08-02
用途: AI crawler、検索 crawler、user-triggered fetcher、browser agent、API、MCP、tool call を、権利、本人性、価格、決済、配信、入金、成熟、guardrail まで同じ contract で運用する
この pack は判断、計測、運用、証拠管理の書式であり、法律、著作権、契約、税務、会計、金融、暗号資産、決済、privacy、security の個別助言ではない。主体、地域、資産、用途、決済手段、provider、protocol version ごとに一次情報と専門家 review を確認する。
この pack の 14 書式はすべて空欄コピー用である。実績、価格、率、件数、期間、benchmark、推奨目標を記入例として埋めていない。別途例を作る場合は、名称、ID、request、金額、時刻、payment、結果を含め、完全な synthetic data だけを使う。
氏名、email、住所、電話、raw IP、cookie、会話全文、prompt/output、注文詳細、銀行口座、wallet secret、seed phrase、private key、API key、OAuth token、session、password、署名用秘密鍵、顧客秘密その他の個人情報・credential を、この公開書式や生成 AI へ貼らない。実運用では opaque ID、集約、redacted summary、hash、権限制御された正本への reference を使う。
章との責任境界
Section titled “章との責任境界”- 20 章: machine traffic の分類、control、license、price、HTTP 402、agent payments、計測、判断原則。
- 06 章: 日本の privacy、security、契約、表示、税務・法務確認の共通入口。
- 09 章: founder time、完全負荷後貢献、cash、capacity。
- 10 章: platform、protocol、agent、取引境界。
- 11 章: 契約、invoice、payment、acceptance、renewal。
- 12 章: AI job、品質、provider cost、accepted outcome、retention。
- 13 章: release、evidence、review、rollback。
- 17 章: AI 検索・directory・MCP 経由の discovery から settled revenue まで。
- 19 章: 低トラフィックでの baseline、holdout、maturity、guardrail、decision gate。
- SQLite companion: 本書式の rights、identity、policy、payment、delivery、cash、maturity、kill-switch invariant を fully synthetic data で検査する参考実装。
SQLite companion の集計実装範囲は per-request paid access である。license allocation、AI referral contribution、cannibalization は列・ledgerを持たないため、contract 上理由付き N/A なら 0 加算、必要だが未実装・未照合なら最終 KPI を UNKNOWN とする。companion の 25,000 fixture を包括的な利益、実績、価格、需要へ外挿しない。
14 書式を使う順序
Section titled “14 書式を使う順序”- 書式 1 で decision、対象資産、損失上限、許される主張を固定する。
- 書式 2 で program/protocol の current snapshot を固定し、人間、search、training、retrieval、agent、API/MCP、unknown automation を分ける。
- 書式 3 で自分が許可・license・販売できる権利と用途範囲を確認する。
- 書式 4 で operator、bot、principal、end user の本人性と信頼境界を固定する。
- 書式 5 で traffic class ごとの action mode と rule precedence を決める。
- 書式 6 で robots、WAF、edge、origin の policy version と enforcement receipt を残す。
- 書式 7 で request、referral、conversion、payment、delivery を結ぶ最小 event を定義する。
- 書式 8 で原価、価値、cannibalization、primary KPI、driver、guardrail を baseline-first で定義する。
- 書式 9 で price、license terms、quote、HTTP 402 requirement を version 化する。
- 書式 10 で authorization、settlement、fee、refund、bank/wallet cash を照合する。
- 書式 11 で entitlement、delivery、receipt、idempotency、revocation を照合する。
- 書式 12 で maturity と guardrail を閉じ、action と claim cap を決める。
- 書式 13 で kill-switch、incident、rollback、再開条件を先に準備する。
- 書式 14 で 14 日 pilot と Codex handoff を bounded scope で実行する。
共通 machine access contract
Section titled “共通 machine access contract”ID、version、時刻
Section titled “ID、version、時刻”すべての書式、event、snapshot、ledger row は同じ machine_access_contract_id を持つ。別 contract の evidence を暗黙に流用しない。
contract_family_id:machine_access_contract_id / contract_version (positive integer):supersedes_contract_id: N/A | exact prior contract ID
decision_id / decision_version:source_snapshot_id / source_snapshot_revision:resource_contract_id / resource_revision:operator_id / bot_or_agent_id / principal_id:rights_basis_id / rights_revision:identity_observation_id / identity_revision:traffic_policy_id / policy_revision:meter_id / meter_revision:payment_offer_id / offer_revision:request_id / trace_id:challenge_id / challenge_revision:payment_proof_id / proof_revision / payment_event_id / event_sequence / settlement_id:provider_transaction_id:entitlement_event_id / delivery_event_id / delivery_receipt_id / accepted_outcome_event_id:cash_reconciliation_id / maturity_snapshot_id:guardrail_snapshot_id / kill_switch_event_id:evidence_id / evidence_revision:supersedes_evidence_id: N/A | exact ID
environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVEaccounting_environment: TEST | REALenvironment_mapping_revision:effective_from / effective_until:occurred_at / recorded_at:quoted_at / authorized_at / settled_at:entitled_at / delivered_at / accepted_at:cash_observed_at / maturity_at:snapshot_as_of / outcome_cutoff_at:decision_due_at / retention_due_at:
owner / independent_reviewer / reviewed_at:source_system / source_object_ref:payload_ref_hash / artifact_hash:- 過去 row を静かに更新せず、新 revision、新しい
machine_access_contract_id、exactsupersedes_contract_idを作る。同じ family の version は正の整数で単調増加させる。 - provider timestamp、edge receipt、origin event、ledger recorded time、bank/wallet cash time を別に保持する。
- opaque ID や hash は本人性、権利、真正性、適法性、決済、配信を単独では証明しない。同じ
machine_access_contract_id内でも、各 paid request は exactrequest_id → challenge_id → payment_proof_id → payment_event_id → settlement_id → entitlement_event_id → delivery_event_id → delivery_receipt_id → accepted_outcome_event_id → cash_reconciliation_id → maturity_snapshot_idで結び、多件を contract ID だけで join しない。 - SQLite companion へ投影するときだけ
SYNTHETIC/SANDBOXをTEST、LIMITED_LIVE/LIVEをREALに写像する。正本には元の4状態も残す。 accounting_environmentは手入力せず、この固定写像から導出する。写像と一致しない row はFAILEDとして集計から除外し、静かに補正しない。SYNTHETIC/SANDBOXを live demand、revenue、cash、accepted delivery に合算しない。LIMITED_LIVEも上限付き cohort として通常LIVEから分ける。
状態を混ぜない
Section titled “状態を混ぜない”各重要 field と stage は、値とは別に次の state を持つ。
| state | 意味 |
|---|---|
N/A |
contract 上その項目が存在しない。理由、決定者、再確認 trigger がある |
UNKNOWN |
必要だが未確認、期限切れ、矛盾、join 不能、正本不明 |
0 |
対象、期間、分母、coverage が確定した上での観測ゼロ |
FAILED |
実行した検査、必要条件、照合、配信、決済等が明示的に不合格 |
OBSERVED |
contract が要求する evidence class の肯定観測がある |
NOT_DUE |
settlement、refund、conversion、renewal 等の maturity がまだ来ていない |
field_or_stage:state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUEvalue_or_result:reason:required_evidence_class:evidence_id:decided_by / decided_at:recheck_trigger / due_at:UNKNOWNを0、FAILED、N/Aに丸めない。NOT_DUEを no demand、no refund、no conversion、no value と解釈しない。OBSERVED requestから rights、citation、payment、delivery、cash を推定しない。OBSERVED settlementから delivery、acceptance、refund maturity、retained contribution を推定しない。
Evidence class
Section titled “Evidence class”E0_INFERENCEE1_MANUAL_OBSERVATIONE2_VERSIONED_CONFIGE3_VERIFIED_PROVIDER_EVENTE4_FIRST_PARTY_AUTHORITATIVEE5_BANK_WALLET_OR_CUSTOMER_AUTHORITATIVE上位ほど常に正しいという意味ではない。E0 は推論・未検証申告、E1 は手動観測、E2 は versioned config、E3 は検証済み provider/edge event、E4 は first-party authoritative event、E5 は bank/wallet/customer 等の authoritative evidence を表す。identity には署名・公式 IP 等の E3、rights には契約・権利台帳、delivery には first-party receipt の E4、cash には provider と銀行・wallet の E5 のように、stage ごとの最低正本を事前指定する。
Action mode
Section titled “Action mode”一つの request へ適用する terminal action は一つにする。観測・logging は terminal action と別の横断機能として扱う。
MEASURE_ONLYALLOW_FREERATE_LIMITSECURITY_CHALLENGEBLOCKCONTRACT_LICENSEAUTHENTICATED_APIHTTP_402SERVE_ENTITLEDPAUSEoverlap 時の既定 resolver:
KILL_SWITCH override > BLOCK > SECURITY_CHALLENGE > RATE_LIMIT > PAUSE > current SERVE_ENTITLED > AUTHENTICATED_API | HTTP_402 | CONTRACT_LICENSE > ALLOW_FREE > MEASURE_ONLY overlay- resolver は安全側の既定であり、個別 rule の順序、skip、exception を policy receipt に固定する。
HTTP_402は quote/requirement の提示であり、payment、cash、delivery ではない。SERVE_ENTITLEDは current entitlement と delivery条件を満たした場合だけ選ぶ。SECURITY_CHALLENGEとHTTP_402は別 response・別目的であり、混用しない。- identity や rights が
UNKNOWNの request を、売上期待だけでALLOW_FREE/SERVE_ENTITLEDに昇格しない。
Decision priority
Section titled “Decision priority”STOP > PAUSE > UNKNOWN > INCONCLUSIVE > CHANGE > MAINTAIN > EXPANDKILL_SWITCHは decision state ではなく、active harm を止める即時の運用 override である。収益比較を待たない。STOP: rights、security、payment、delivery、法令・契約等の veto が解消していない。PAUSE: bounded investigation、reconciliation、capacity、provider recovery 待ち。UNKNOWN: 必要 evidence が未確認、矛盾、stale、join 不能。INCONCLUSIVE: integrity は有効だが、有益・有害の両方が残る。CHANGE: action mode、price、scope、instrumentation 等を version up する。MAINTAIN: current bounded mode を維持する。EXPAND: rights、identity、unit economics、guardrail、kill-switch が current evidence で通る範囲だけ拡大する。
書式 1 — Decision / scope / loss-limit contract
Section titled “書式 1 — Decision / scope / loss-limit contract”machine traffic を数える前に、変えられる action と最大損失を決める。
# Decision and scope
machine_access_contract_id / contract_version:decision_id / decision_version:created_at / decision_due_at:decision_owner / independent_reviewer:
business question:customer or publisher job:claim sought: DESCRIPTION | ASSOCIATION | CAUSALclaim cap:
resource family in scope:behavior in scope:operator/principal scope:geography / legal entity / product scope:environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVEaccounting_environment: TEST | REAL
current action mode:decision options: - option: - option: - option:
rights assumption to verify:identity assumption to verify:demand assumption to verify:payment assumption to verify:delivery assumption to verify:cash assumption to verify:maturity assumption to verify:
maximum acceptable exposure: resource scope: machine requests: human/search impact: variable cost: cash at risk: founder minutes: elapsed time: privacy/security impact:
hard veto / kill-switch trigger:reversible decision?:rollback owner / rollback SLA:cheapest evidence that could change action:evidence not worth collecting:
decision_state: STOP | PAUSE | UNKNOWN | INCONCLUSIVE | CHANGE | MAINTAIN | EXPANDkill_switch_status: READY | ACTIVE | RECOVERY_REVIEW | CLOSED | UNKNOWNstate reason:required next evidence:書式 1 gate
Section titled “書式 1 gate”[ ] decision は dashboard 作成ではなく action 変更を選べる[ ] resource、behavior、operator、environment の scope が exact[ ] 最大 human/search impact、cash、cost、時間が空欄のまま live に進まない[ ] rights/identity/payment/delivery/cash/maturity を一つの「収益化済み」に束ねていない[ ] kill-switch と STOP 条件が upside より先に書かれている書式 2 — Program / protocol snapshot and resource / traffic inventory
Section titled “書式 2 — Program / protocol snapshot and resource / traffic inventory”provider の product availability と protocol conformance を需要・live eligibility にしない。その current snapshot を固定した上で、AI bot 一分類を禁止し、declared purpose、verified identity、observed behavior、business channel を分ける。一つの bot は複数 behavior を持ち得る。
# Program and protocol source snapshot
machine_access_contract_id / contract_version:source_snapshot_id / source_snapshot_revision:retrieved_at / effective_at / recheck_at:environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVEaccounting_environment: TEST | REAL
provider / product / program:official documentation URLs:documentation revision / artifact hashes:program_status: CURRENT | PREVIEW | INVITE_ONLY | DEPRECATED | UNKNOWN | FAILEDprovider display stage: GA | BETA | CLOSED_BETA | PREVIEW | WAITLIST | CONTACT_SALES | UNAVAILABLE | UNKNOWNaccount / legal entity / country eligibility:plan / role / invitation / approval eligibility:buyer/client support evidence:seller eligibility evidence state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUEbuyer/client support evidence state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUEcurrent live-readiness gate: PASS | FAILED | UNKNOWN | N/A
protocol family: CLOUDFLARE_PPC | X402_V2 | PAYMENT_HTTP_AUTH_DRAFT | MPP | CONTRACT_LICENSE | API_SUBSCRIPTION | OTHER | N/Aprotocol/spec version:underlying HTTP authentication scheme/version: N/A | exact scheme/versionchallenge status / header / body contract:credential or proof header contract:success receipt header/body contract:identity method and limitation:payment rail / asset / network / facilitator:minimum/maximum price and precision:seller fee / network fee / unknown fee:settlement / payout owner and cadence:refund / reversal / dispute support:license/rights transport and limitation:observability / sampling / retention:known interoperability limitation:
source_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUEreviewer / reviewed_at:supersedes_source_snapshot_id:recheck triggers:- same HTTP 402 でも Cloudflare、x402、Payment HTTP Authentication draft、MPP の header・proof・receipt は同一でない。汎用 auth scheme の実装を MPP conformance へ昇格しない。
protocol conformance PASS ≠ account/program eligibility ≠ compatible buyer demand ≠ LIVE_READYとする。- preview、closed beta、waitlist、contact sales、coming soon を current live revenue へ入れない。
- minimum price、fee、settlement period、payout threshold が非公開なら
UNKNOWNのまま残す。
# Resource and traffic inventory
machine_access_contract_id / contract_version:inventory_snapshot_id / snapshot_as_of:resource_contract_id / resource_revision:environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVEaccounting_environment: TEST | REAL
resource name or opaque label:resource class: PUBLIC_MARKETING | PREMIUM_CONTENT | API_COMPUTE | TOOL_ACTION | CUSTOMER_DATAresource subtype: PUBLIC_DISCOVERY | PUBLIC_FULL_CONTENT | MACHINE_DERIVATIVE | FRESH_DATA | COMPUTE_ACTION | WRITE_ACTION | CUSTOMER_PRIVATE | SECRET_OR_SAFETY_CRITICALcanonical public URL ref:machine-specific derivative ref:access requirement: PUBLIC | AUTHENTICATED | ENTITLED | INTERNALdynamic or state changing?:contains third-party material?:contains personal/confidential data?:freshness / update cadence:cacheability / origin dependency:estimated cost basis ref:
traffic_event_id:declared user-agent token:declared operator:declared purpose:verified operator:identity tier: A_AUTH_OR_WBA | B_UA_PLUS_IP_OR_RDNS | C_UA_ONLY | D_BEHAVIORAL | UNKNOWNprimary actor class: HUMAN_BROWSER | SEARCH_INDEXER | AI_SEARCH_RETRIEVAL | AI_TRAINING | USER_TRIGGERED_AGENT | AUTHENTICATED_API_CLIENT | UNKNOWN_AUTOMATION | MALICIOUS_ABUSEbusiness_channel: HUMAN_AI_REFERRAL | SEARCH_INDEX | TRAINING_COLLECTION | LIVE_RETRIEVAL | USER_TRIGGERED_FETCH | BROWSER_AGENT | API_MCP_TOOL | OTHER | N/Abehavior_tags: API_CALL | MCP_RESOURCE_READ | MCP_TOOL_CALL | TRANSACTION | CACHE | BULK | OTHER | N/Adirect_or_intermediary: DIRECT | INTERMEDIARY | UNKNOWNuser_triggered: YES | NO | UNKNOWNhuman referral event?: YES | NO | UNKNOWN
classification state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUEclassification evidence_id:purpose conflict / observed mismatch:next verification:Program and taxonomy reconciliation
Section titled “Program and taxonomy reconciliation”machine_access_contract_id / contract_version:snapshot_as_of:environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVEaccounting_environment: TEST | REAL
current source snapshots / stale snapshots:eligible programs / compatible buyer principals:program/protocol UNKNOWN or FAILED:
human AI referrals:verified search/index requests:verified training requests:verified live retrieval requests:verified user-triggered fetches:verified browser-agent requests:authenticated API calls:authenticated MCP resource reads:authenticated MCP tool calls:unverified or unknown automated requests:
multi-label requests:unclassified requests:classification conflicts:total scoped requests:reconciliation difference:coverage state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE- Human AI referral は crawler request ではなく、AI回答等から来た人間の session である。
- Search/index fetch が、実際の citation、click、conversion を発生させたとは限らない。
- API/MCP/tool call は UA ではなく application auth、principal、method、result で分類する。
UNKNOWN_AUTOMATIONを training demand、license lead、paid demand へ合算しない。
書式 3 — Rights / license / permitted-use gate
Section titled “書式 3 — Rights / license / permitted-use gate”robots.txt は技術 signal であり、rights、authorization、contract そのものではない。資産と用途ごとに、自分が許可・拒否・license・販売できる範囲を確認する。
# Rights and permitted use
machine_access_contract_id / contract_version:rights_basis_id / rights_revision:resource_contract_id / resource_revision:effective_from / effective_until:environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVEaccounting_environment: TEST | REAL
rightsholder opaque ref:operator legal entity scope:territory / governing document ref:ownership or authorization basis ref:third-party content basis ref:OSS / dataset / media license refs:personal/confidential data assessment ref:
permitted machine uses: search indexing: citation / reference: live retrieval / grounding: temporary cache: persistent cache / archive: model training: fine-tuning: evaluation / safety: embeddings / RAG index: derivative output: resale / sublicense: transaction action:
attribution requirement:link requirement:retention / deletion requirement:refresh / version requirement:model or product restriction:exclusivity / most-favored / conflict:audit / reporting requirement:revocation / termination mechanism:post-termination treatment:
allowed action modes by use:prohibited action modes by use:license notice ref:contract / policy authoritative ref:specialist review required?: YES | NO | UNKNOWNspecialist reviewer / reviewed_at:
rights_state: PASS | UNKNOWN | N/A | FAILEDrights_evidence_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUErights_state reason:evidence_id:recheck trigger / due_at:rights_state は gate outcome、rights_evidence_state は必要証拠を観測できたかの状態であり、両者を混ぜない。rights_state=FAILED は decision の STOP を強制する。
Rights gate
Section titled “Rights gate”[ ] resource 単位で rightsholder と authorization basis を参照できる[ ] search、reference、grounding、training、derivative、resale を分けた[ ] third-party、OSS、dataset、個人・秘密情報を黙って自己所有扱いしていない[ ] retention、attribution、sublicense、revocation、post-termination を確認した[ ] rights UNKNOWN / FAILED の資産を payment 可能という理由で配信しない[ ] robots allow/disallow を契約同意や法的結論と置き換えていない書式 4 — Identity / principal / transitive-trust contract
Section titled “書式 4 — Identity / principal / transitive-trust contract”operator、bot、intermediary、end user、payment principal を別 identity として記録する。UA だけを本人確認に使わない。
# Identity and principal verification
machine_access_contract_id / contract_version:identity_observation_id / identity_revision:operator_id / bot_or_agent_id / principal_id:effective_from / expires_at:environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVEaccounting_environment: TEST | REAL
claimed operator:verified operator:bot/product token:access model: DIRECT | INTERMEDIARY | UNKNOWNuser-triggered: YES | NO | UNKNOWNend-user identity available?: YES | NO | PARTIAL | UNKNOWNend-user consent/authority evidence ref:
identity methods observed: API key ref: N/A | opaque credential-record ref OAuth client/token ref: N/A | opaque credential-record ref mTLS/client certificate ref: N/A | opaque certificate ref Web Bot Auth signature ref: N/A | opaque verification ref official IP/CIDR list revision: N/A | exact public snapshot ref forward-confirmed reverse DNS result: N/A | exact evidence ref stable UA match: N/A | exact token/version WAF/provider verified label: N/A | exact event ref behavioral/fingerprint signal: N/A | redacted evidence ref
identity tier: A_AUTH_OR_WBA | B_UA_PLUS_IP_OR_RDNS | C_UA_ONLY | D_BEHAVIORAL | UNKNOWNsignature/key-directory version:signature created/expires window:nonce/replay handling:key rotation / revocation status:credential scope / audience / resource indicator:principal rate/quota scope:
declared purpose:observed behavior:purpose conflict:operator vs end-user authority gap:impersonation or proxy risk:
identity_verification_state: VERIFIED | UNKNOWN | N/A | FAILEDidentity_evidence_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUEverification evidence_id:failure action mode:recheck trigger / due_at:identity_verification_state は principal/operator の検証結果、identity_evidence_state は必要証拠を観測できたかの状態である。UA の観測だけを VERIFIED にしない。
Identity gate
Section titled “Identity gate”[ ] UA-only を verified、licensee、payer、end-user consent と呼んでいない[ ] official IP/CIDR list や rDNS の revision と取得時刻がある[ ] WBA/API/OAuth は scope、expiry、replay、revocation を確認した[ ] intermediary operator と、その先の end user を同一主体扱いしていない[ ] unverified request を monetizable demand や paid conversion の分母へ入れていない[ ] secret/token/key 本文ではなく権限制御された credential-record ref だけを置いた書式 5 — Action-mode policy matrix
Section titled “書式 5 — Action-mode policy matrix”resource、behavior、identity tier、rights、entitlement を条件に、一つの terminal action を返す。policy overlap と exception を明示する。
# Action policy
machine_access_contract_id / contract_version:traffic_policy_id / policy_revision:effective_from / effective_until:policy owner / approver:environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVEaccounting_environment: TEST | REAL
rule_id / rule_priority:resource selector:method / path / host selector:behavior selector:operator/bot selector:identity tier selector:direct/intermediary selector:rights_state requirement: PASS | UNKNOWN | N/A | FAILEDidentity_verification_state requirement: VERIFIED | UNKNOWN | N/A | FAILEDauth_scope requirement / authoritative ref:payment requirement / authoritative ref:entitlement requirement / authoritative ref:rate / cost / abuse condition:environment selector:
terminal action mode: ALLOW_FREE | RATE_LIMIT | SECURITY_CHALLENGE | BLOCK | CONTRACT_LICENSE | AUTHENTICATED_API | HTTP_402 | SERVE_ENTITLED | PAUSEmeasurement overlay: MEASURE_ONLY | NONEresponse status / body schema version:rate-limit key / period / behavior:challenge type / accessibility fallback:license notice ref:auth scheme / scope ref:payment offer ref:entitlement validation ref:
skip / exception rule:known search crawler protection:human/API/mobile false-positive protection:default unmatched action:overlap precedence result:kill-switch override ref:
policy test evidence_id:policy_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUEactivation receipt:rollback traffic_policy_id / policy_revision:next review / recheck trigger:Policy matrix view
Section titled “Policy matrix view”machine_access_contract_id / contract_version:traffic_policy_id / policy_revision / snapshot_as_of:environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVEaccounting_environment: TEST | REAL
resource_class:behavior:identity_tier:rights_state: PASS | UNKNOWN | N/A | FAILEDidentity_verification_state: VERIFIED | UNKNOWN | N/A | FAILEDauth_scope_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUEpayment_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUEentitlement_state: GRANTED | REVOKED | UNKNOWN | N/A | FAILEDauth/payment/entitlement evidence refs:action_mode:rule_id / priority:exception:owner:evidence_id:- Search、training、agent、API/MCP を一つの global bot toggle へ潰さない。
MEASURE_ONLYは enforcement なしという明示的 overlay であり、UNKNOWNではない。ALLOW_FREEは権利・安全・費用条件が無制限という意味ではない。scope と expiry を持つ。- payment の観測を current entitlement や auth scope へ昇格しない。
SERVE_ENTITLEDは exact principal/resource/method/quota/expiry の current entitlement がGRANTEDの場合だけ返す。 - policy revision を変えた後、旧 revision の結果を新 revision の効果へ混ぜない。
書式 6 — Robots / edge / origin enforcement receipt
Section titled “書式 6 — Robots / edge / origin enforcement receipt”robots signal、CDN/WAF policy、edge response、origin authorization を分離し、public policy と実際の enforcement の drift を検査する。
# Robots and enforcement
machine_access_contract_id / contract_version:traffic_policy_id / policy_revision:host / subdomain opaque ref:environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVEaccounting_environment: TEST | REAL
robots snapshot id / fetched_at:robots authoritative URL hash:robots HTTP status / content type:robots cache / propagation expectation:user-agent product token:allow paths:disallow paths:crawl-delay or nonstandard directive:usage-control token without distinct HTTP UA?: YES | NO | UNKNOWNsearch/training/grounding coupling note:user-triggered fetch robots applicability:
CDN/WAF provider/config ref:edge rule id / version / priority:verified-bot field/tag used:IP/rDNS/WBA validation ref:rate-limit / challenge / block config ref:HTTP response schema/content ref:origin rule/config ref:canonical page behavior:machine derivative behavior:
dry-run/shadow test ref:known search crawler probe ref:training crawler probe ref:user-fetch/agent probe ref:human browser probe ref:API/MCP probe ref:unverified/spoof probe ref:paid entitlement probe ref:
expected action mode:observed edge action:observed origin action:policy drift:false-positive / false-negative:
enforcement_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUEevidence_id:activated_at / activated_by:rollback receipt / tested_at:next fetch / drift check:Enforcement gate
Section titled “Enforcement gate”[ ] robots.txt を全 host/subdomain で current snapshot 化した[ ] robots は access authorization や秘密保護ではないと扱った[ ] UA token と実際の HTTP UA、利用制御 token の違いを記録した[ ] known search、人間、API/MCP、paid entitlement の negative probe がある[ ] edge allow 後に origin が拒否する、または edge block 前に origin cost が出る drift を調べた[ ] rule order、skip、exception、rollback が exact revision で再現できる書式 7 — Metering / attribution / event contract
Section titled “書式 7 — Metering / attribution / event contract”request、referral、citation、conversion、payment、delivery を一つの event に詰めない。欠落し得る referrer と UTM を識別し、join 不能を UNKNOWN のまま残す。
# Metering and attribution
machine_access_contract_id / contract_version:meter_id / meter_revision:event_schema_id / schema_revision:effective_from:environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVEaccounting_environment: TEST | REAL
event_id / event_type / event_revision:supersedes_event_id: N/A | exact prior event IDrequest_id / trace_id:occurred_at / recorded_at:resource_contract_id / resource_revision:operator_id / bot_or_agent_id / principal_id:behavior_tags / business_channel:identity tier / identity_observation_id / identity_revision:traffic_policy_id / policy_revision / action_mode:
request fields: method / host / path class: response status: HTTP request/response bytes: challenge payload bytes: protected resource bytes delivered: cache status / origin hit: origin compute/duration class: third-party API usage class: latency: retry/idempotency key ref: estimated variable-cost event ref:
referral/session fields: referrer class: UTM/source parameter class: native-app/no-referrer possibility: landing session opaque id: first-touch / last-touch policy: attribution window policy ref: conversion event ref: gross-contribution event ref:
citation/visibility fields: server-side citation observable?: YES | NO | UNKNOWN external fixed-query probe ref: N/A | exact evidence ref citation observed state: click observed state:
payment/delivery join fields: payment_offer_id / offer_revision: challenge_id / challenge_revision: payment_proof_id / proof_revision / payment_event_id / event_sequence: settlement_id: provider_transaction_id: entitlement_event_id / delivery_event_id / delivery_receipt_id / accepted_outcome_event_id: cash_reconciliation_id / maturity_snapshot_id: first missing or conflicting exact ID:
data minimization / aggregation:raw IP/user-agent retention handling:privacy/legal basis ref:access role / retention_due_at:
event_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUEDQ result / evidence_id:late/duplicate/correction handling:Daily reconciliation
Section titled “Daily reconciliation”machine_access_contract_id / contract_version:meter_id / meter_revision / date / snapshot_as_of:environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVEaccounting_environment: TEST | REAL
edge scoped requests:origin scoped requests:unique request ids:duplicate/retry requests:verified eligible requests:unverified/unknown requests:human AI referral sessions:attributed conversions:unattributed conversions:payment requirements issued:unique challenge ids / duplicate challenge ids:payments authorized:payments settled:unique payment proof ids / replayed proof ids:entitlements issued:deliveries attempted:deliveries accepted:unique delivery receipt ids / duplicate receipt ids:cash observations:mature outcomes:
edge-to-origin difference:request-to-ledger join difference:payment-to-delivery difference:settlement-to-cash difference:coverage state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE- AI crawler request / human referral の単純比は診断指標であり、conversion や因果価値ではない。
- native app 等で referrer が欠ける場合、欠測をゼロとして扱わない。
- server log だけでは回答内 citation を観測できない。必要なら固定 query の外部 probe を別 evidence とする。
- WAF dashboard が sampling される場合、payment/cash reconciliation の正本にしない。
書式 8 — Cost / value / cannibalization / KPI contract
Section titled “書式 8 — Cost / value / cannibalization / KPI contract”外部 benchmark から target を作らず、自サイト baseline、価値仮説、費用台帳、同時 control を使う。実測値と推計値を分ける。
# Economics and KPI
machine_access_contract_id / contract_version:economics_model_id / model_revision:metric_contract_id / metric_revision:baseline_window / snapshot_as_of:
eligible unit:analysis unit:resource class:behavior/operator scope:environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVEaccounting_environment: TEST | REAL
variable cost components: CDN/edge requests: WAF/bot/payment checks: origin compute: data transfer/egress: storage/read: third-party API/model/tool: payment facilitator/network: refund/fraud/dispute: variable support/founder time: tax/royalty/rights allocation:
value components: matured paid-access gross from accepted, cash-reconciled deliveries: allocated matured license contribution: incremental matured human-referral gross contribution: strategic or learning value (separate, noncash):
cannibalization candidates: paid API/subscription substitution: human organic/referral loss: ad impression loss: premium-data substitution: exclusivity / future license opportunity cost:control/holdout or comparison method:measurement limitations:
primary KPI: name: matured_incremental_machine_contribution formula revision: baseline: target_state: UNKNOWN | NOT_DUE | OBSERVED target: blank until baseline | exact approved value harm / trivial / valuable zones: maturity:
driver metrics: verified eligible principals/requests: identity verification rate: quote-exposed principals: authorization/settlement rate: entitlement/delivery acceptance rate: repeat paid principal: referral session/conversion/contribution: cache/origin/bytes/variable cost: qualified license inquiry:
guardrail metrics: human/known-search false action: human/search referral and conversion: existing paid-product conversion: latency / 5xx / origin load: payment-delivery mismatch: refund/fraud/replay/double charge: privacy/security/rights incident: support/founder capacity:
metric states: cost_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE value_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE cannibalization_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE primary_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUEevidence ids:
each formula component record: component name: value / unit / currency: state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE state reason / N/A authority: scope / cutoff / maturity: evidence_id / evidence class:管理用 formula:
matured_incremental_machine_contribution= matured_paid_access_gross_from_accepted_cash_reconciled_deliveries + allocated_matured_license_contribution + incremental_matured_AI_referred_human_gross_contribution - refunds_reversals_fraud_and_unreconciled_delivery_loss - unreconciled_cash_shortfall_not_already_excluded_or_allocated - seller_borne_tax - protocol_facilitator_network_and_PSP_fees - incremental_edge_origin_egress_storage_API_and_AI_variable_cost - support_and_founder_rescue_time_cost - measured_cannibalized_contributionpricing floor 用 formula:
price_floor_by_unit= (variable_service_cost + payment_refund_fraud_cost + required_contribution + cannibalization_and_risk_reserve) / expected_successfully_settled_and_delivered_units- 会計利益、cash、management contribution を混ぜない。
- paid-access gross は
verified eligible + settled + entitled + accepted delivery + cash reconciled + maturity reachedの全 gate を通った unit だけを含める。settlement 単独を contribution にしない。 - positive gross/value だけを成功 gate で限定し、refund、reversal、fraud、fee、variable cost、support/founder time は失敗・離脱・paid-undelivered を含む全 mature eligible cohort から控除する。
- 未照合 cash shortfall は、paid gross や delivery loss から既に除外済みでなければ一度だけ控除する。配賦不能な残差があれば primary state は
UNKNOWNである。 - accepted action、avoided cost、license、referral が同じ価値を表す場合に二重加算しない。cost reduction は control との差として variable-cost 項へ一度だけ反映する。
- 14 日で未成熟な LTV、refund、renewal は
NOT_DUEまたは別推計にする。 - denominator が
0/UNKNOWNの率を 0% と表示しない。 - target、stop threshold、MPE は baseline と capacity を見て承認し、業界値を転記しない。
書式 9 — Price / license offer / HTTP 402 contract
Section titled “書式 9 — Price / license offer / HTTP 402 contract”price は resource/action の単位と rights scope を持つ。HTTP 402 は支払 requirement の提示であり、payment、cash、delivery ではない。
# Offer and payment requirement
machine_access_contract_id / contract_version:payment_offer_id / offer_revision:request_id / trace_id:challenge_id / challenge_revision:payment_requirement_id / requirement_revision: N/A | provider aliasresource_contract_id / resource_revision:protocol family / protocol version:effective_from / challenge_issued_at / expires_at:environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVEaccounting_environment: TEST | REAL
eligible operator/principal/identity tier:behavior/use scope:rights_basis_id / rights_revision / allowed-use scope:territory / term / retention / derivative rights:attribution / link / audit requirement:revocation / post-termination treatment:
pricing unit: REQUEST | SUCCESSFUL_DELIVERY | ASSET | BYTE | ROW | TOKEN | TOOL_ACTION | BATCH | TIME_WINDOW | LICENSE_TERM | OTHERunit definition:resource/quality/freshness tier:amount / asset-or-currency / decimals:network / payment method / facilitator:payment recipient opaque ref:list price:discount/volume rule:tax/fee display rule:price floor evidence ref:buyer-value hypothesis:cannibalization reserve ref:founder approval boundary:
HTTP status/action mode:machine-readable requirement schema/version:challenge status/header/body field names:credential/proof header field name:success receipt header/body field name:accepted payment methods:facilitator/provider ref:payment destination opaque ref:offer base-currency value / valuation time:FX source / rate / basis / precision:request method / canonical target / body digest:challenge nonce opaque ref:payment identifier / idempotency opaque ref:single-use and concurrent request rule:expiry / replay handling:server-computed expected tuple: request_id / challenge_id: resource_contract_id / resource_revision / content hash: payment_offer_id / offer_revision: principal / purpose / entitlement scope: amount / asset / network / recipient: method / target / body digest: issued_at / expires_at / nonce:expected tuple canonical hash:challenge artifact hash:license terms URL/hash:human-readable fallback:contact/negotiation path:
cache behavior for 402/offer:canonical public content behavior:search crawler exception:unverified requester behavior:unsupported agent behavior:
offer_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUErequirement_delivery_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUEtest evidence_id:approved_by / approved_at:rollback payment_offer_id / offer_revision:Offer gate
Section titled “Offer gate”[ ] price unit は heterogeneous な request を黙って同一価値扱いしない[ ] price に resource revision、rights scope、term、expiry がある[ ] 402 count、quote count、wallet submission を revenue と呼ばない[ ] `request_id → challenge_id → offer revision → exact resource/amount/asset/network/recipient/scope/expiry/nonce` が一意に結ばれている[ ] client が返した amount、recipient、resource を信用せず、server の current offer から expected tuple を再計算する[ ] security challenge と payment challenge の status/header/bodyを混用していない[ ] unverified/spoofed requester を paid-demand principal と数えない[ ] human と known search crawler の fallback/exception を確認した[ ] unsupported payment client を無限 retry や origin amplification にしない[ ] `SYNTHETIC` / `SANDBOX` offer を `LIMITED_LIVE` / `LIVE` revenue へ混ぜず、SQL projection の TEST/REAL も同じ contract で照合した書式 10 — Payment / settlement / fee / cash reconciliation
Section titled “書式 10 — Payment / settlement / fee / cash reconciliation”payment lifecycle を append-only で記録し、provider settlement と実際の銀行・wallet cash を照合する。credential や秘密鍵は記録しない。
# Payment and cash ledger
machine_access_contract_id / contract_version:request_id / trace_id:challenge_id / challenge_revision:payment_offer_id / offer_revision:payment_requirement_id / requirement_revision: N/A | provider aliaspayment_proof_id / proof_revision:payment_event_id / event_sequence / predecessor_payment_event_id:provider_transaction_id:settlement_id / cash_reconciliation_id:principal_id / resource_contract_id / resource_revision:
environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVEaccounting_environment: TEST | REALprotocol family / protocol version:payment method / rail / network / asset / currency:gross amount:provider/facilitator fee:network fee:tax/withholding/royalty allocation:refund/dispute reserve:net settlement expected:payment destination opaque ref:
challenge/proof binding: challenge artifact hash: proof artifact opaque ref / hash: proof-covered request_id / challenge_id: request method / canonical target / body digest: resource / offer / principal / allowed-use scope: amount / asset / network / recipient: issued_at / expires_at / nonce opaque ref: server-recomputed expected tuple hash: proof-presented tuple hash: exact tuple match result:
payment lifecycle: requirement issued state / at: authorization state / at: submission state / at: provider acceptance state / at: settlement state / at: finality/confirmation state / at: refund state / at: reversal state / at: dispute state / at:
payment idempotency key opaque ref:duplicate payment check:replay check:amount/currency/recipient match:offer expiry/version match:principal/resource match:request/challenge/proof single-use match:
provider settlement statement ref:wallet/bank transaction opaque ref:bank/wallet cash amount observed:cash observed_at:FX valuation policy/time ref:settlement-to-cash difference:unreconciled reason / owner / due_at:
cash component line: cash_line_id / component_type: source payment_event_id / provider_transaction_id: amount / currency / base-currency amount: FX source / valuation time: component idempotency key: correction/supersedes cash_line_id:
proof_verification_state: VERIFIED | UNKNOWN | N/A | FAILEDpayment_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUEsettlement_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUEcash_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUEevidence ids:correction/supersession ref:Payment reconciliation gate
Section titled “Payment reconciliation gate”[ ] requirement、authorization、submission、acceptance、settlement、cash を別 stage にした[ ] `request_id → challenge_id → offer revision → payment_proof_id → payment_event_id → settlement_id → cash_reconciliation_id` が exact contract/version/environment で結ばれている[ ] authorization は challenge が `ISSUED` かつ未失効の時間窓内で、一つの buyer proof が一 request/challenge を一度だけ authorize する[ ] proof が覆う method、target、body digest、resource、principal、amount、asset、network、recipient、expiry、nonce を server の current offer から再計算した[ ] challenge artifact と proof artifact の hash、single-use、expiry、nonce、replay を検査し、client が返した tuple を正本にしていない[ ] settlement/refund/reversal は新しい buyer proof を要求せず、exact predecessor event と provider transaction evidence で進める。originating proof の参照と proof の再消費を混同しない[ ] chain/network confirmation と accounting finality を同一語で扱っていない[ ] gross、fee、tax、refund reserve、net、FX basis を再計算できる[ ] duplicate/replay/idempotency を proof、provider transaction、principal、resource で検査した[ ] provider report と bank/wallet cash の差額 owner と due_at がある[ ] exact settlement/offer amountをauthoritative FX basisでbase currencyへ写し、gross + FX adjustment - fee - tax - refund - reversal とbank/wallet receiptを再計算した[ ] refund/reversal/fee/tax/FX componentは source event + component typeでidempotentで、同じnegative eventを複数控除していない[ ] request occurred ≤ challenge issued ≤ authorization occurred ≤ settlement occurred の順序を確認し、provider recorded_atの遅着をevent occurred_atへ書き換えていない[ ] private key、seed phrase、token、bank detail 本文を保存していない書式 11 — Entitlement / delivery / receipt / idempotency ledger
Section titled “書式 11 — Entitlement / delivery / receipt / idempotency ledger”支払済みでも、正しい resource revision を正しい principal へ一度だけ届けたとは限らない。payment と delivery を別 ledger で照合する。
# Entitlement and delivery
machine_access_contract_id / contract_version:request_id / trace_id:challenge_id / challenge_revision: N/A | exact IDpayment_proof_id / proof_revision / payment_event_id / event_sequence: N/A | exact IDsprovider_transaction_id / settlement_id: N/A | exact IDsentitlement_event_id / entitlement_revision / entitlement_event_sequence:delivery_event_id / delivery_revision / delivery_attempt:delivery_receipt_id:principal_id / resource_contract_id / resource_revision:environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVEaccounting_environment: TEST | REAL
entitlement scope: allowed method/action: resource/asset scope: quantity/quota: geography/product/model scope: valid_from / expires_at: repeat/cache/download rights: delegation/sublicense:
entitlement issuance basis: PAYMENT_SETTLEMENT | CONTRACT_LICENSE | AUTHENTICATED_APIentitlement basis exact event/contract/auth ref:settlement requirement:pre-settlement provisional grant: PROHIBITED | NON_DELIVERY_RESERVATION_ONLYtoken/capability opaque ref:revocation status/ref:
delivery request id / idempotency key ref:requested resource revision:delivered resource revision:content/artifact digest:delivery status / HTTP status:bytes/result class:origin/cache result:delivery started_at / completed_at:provider receipt ref:client acceptance/ack ref:accepted outcome definition:accepted_outcome_event_id / event revision:
accepted chain reconciliation: request-to-challenge: N/A | exact match | mismatch challenge-to-verified-proof: N/A | exact match | mismatch proof-to-authoritative-settlement: N/A | exact match | mismatch basis-to-delivery-time-valid-entitlement: exact match | mismatch entitlement-to-delivered-resource-revision: exact match | mismatch delivery-to-delivery-receipt: exact match | mismatch receipt-to-client-acceptance: UNKNOWN | exact match | mismatch | NOT_DUE first missing/conflicting exact ID:
retry count / reason:duplicate-delivery check:partial/truncated/stale check:payment-without-delivery check:delivery-without-entitlement check:wrong-principal/resource check:refund/retry/remediation path:
entitlement_state: GRANTED | REVOKED | UNKNOWN | N/A | FAILEDentitlement_evidence_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUEdelivery_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUEacceptance_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUEevidence ids:Delivery gate
Section titled “Delivery gate”[ ] payment path の entitlement は authoritative settlement 後にだけ `GRANTED` とし、pre-settlement reservation を delivery-eligible にしていない[ ] payment path は request、challenge、verified proof、settlement、entitlement、delivery、receipt を exact ID で結び、contract ID だけで join していない[ ] contract/API path の challenge/payment を N/A にする場合、entitlement basis の exact contract/auth event と理由がある[ ] entitlement は principal、resource、method、quota、expiry に scoped[ ] paid-but-undelivered、delivered-without-entitlement、wrong revision を検査した[ ] retry が二重課金・二重配信を起こさない idempotency contract がある[ ] HTTP 200、bytes送信、provider receipt を client acceptance と自動的に同一視していない[ ] read/resource deliveryはdelivered bytes/result、204やzero-byte tool actionはfirst-party action/result receiptで成功を表し、`bytes > 0`を全deliveryへ強制していない[ ] payment pathでは settlement occurred ≤ entitlement grant/valid_from ≤ delivery occurred ≤ accepted outcome occurred を検査し、各recorded_atの遅着を別時計として残した[ ] revoke、refund、再配信、期限切れの処理がある書式 12 — Maturity / guardrail / decision readout
Section titled “書式 12 — Maturity / guardrail / decision readout”request から retained contribution までの maturity を閉じる。未成熟をゼロにせず、integrity と safety を business result より先に評価する。
# Maturity and decision readout
machine_access_contract_id / contract_version:maturity_snapshot_id / snapshot_as_of / outcome_cutoff_at:guardrail_snapshot_id:traffic_policy_id / policy_revision:payment_offer_id / offer_revision:meter_id / meter_revision:control/treatment or comparison ref:environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVEaccounting_environment: TEST | REAL
outcome maturity contract: payment finality due_at: delivery acceptance due_at: refund/reversal due_at: referral conversion due_at: cannibalization review due_at: retention/renewal due_at:
stage state/count: verified eligible demand: payment requirement: authorization: settlement: entitlement: delivery: accepted outcome: cash: refund/reversal/dispute maturity: human referral conversion maturity: cannibalization maturity:
state reconciliation: N/A: UNKNOWN: 0: FAILED: OBSERVED: NOT_DUE: total expected units: difference:
data-quality gate: identity coverage: duplicate/retry handling: payment-delivery-cash join: policy/version coverage: maturity coverage: correction/supersession coverage: DQ state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
guardrail readout: human/known-search false action: latency/5xx/origin load: payment-delivery mismatch: double charge/replay/fraud/refund: rights/privacy/security incident: existing-product cannibalization: founder/support capacity: guardrail state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
primary KPI readout: matured paid-access gross from eligible, accepted, cash-reconciled delivery: allocated matured license contribution: incremental matured AI-referred human gross contribution: matured refunds/reversals/fraud/unreconciled delivery loss: seller-borne tax: protocol/facilitator/network/PSP fees: incremental edge/origin/egress/storage/API/AI variable cost: support and founder rescue time cost: measured cannibalized contribution: unreconciled cash shortfall not already excluded/allocated: matured_incremental_machine_contribution: uncertainty / comparison limitation: primary state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
each KPI line-item record: component name: value / unit / currency: state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE state reason / N/A authority: scope / cutoff / maturity: evidence_id / evidence class:
first failing or unknown stage:decision_state: STOP | PAUSE | UNKNOWN | INCONCLUSIVE | CHANGE | MAINTAIN | EXPANDkill_switch_status: READY | ACTIVE | RECOVERY_REVIEW | CLOSED | UNKNOWNnext action mode:claim permitted:claim prohibited:one next change:owner / due_at:evidence ids:Mature KPI inclusion gate
Section titled “Mature KPI inclusion gate”[ ] original environment は保持され、TEST facts は REAL economics から除外された[ ] paid-access unit は verified eligible request、current rights、exact challenge/proof、authoritative settlement を通った[ ] same principal/resource revision の entitlement が delivery 時点で `GRANTED` かつ有効で、delivery receipt、accepted outcome と exact ID で結ばれ、後続 revoke/refund/reversal を反映した[ ] provider statement と bank/wallet cash が照合され、差額は控除または UNKNOWN のまま残る[ ] cash shortfall を paid gross/lossから既に除外・配賦していなければ一度だけ控除し、未配賦残差があれば primary state は UNKNOWN である[ ] refund/reversal/dispute、delivery acceptance、cannibalization の maturity due_at を過ぎた[ ] license/referral/accepted action が同じ価値を表す場合に二重加算していない[ ] cost、tax、fee、support/founder time、measured cannibalization を同じ scope と期間で控除した[ ] 全 formula component に state/reason/evidence があり、必要 component が UNKNOWN / FAILED / NOT_DUE なら primary state も同様に閉じた[ ] 一つでも必須 gate が UNKNOWN / FAILED / NOT_DUE なら settlement gross を mature KPI へ昇格していない[ ] cutoff前にoccurredしたがsnapshot後にrecordedされたeventは現snapshotから除外し、拒否・時刻改変せず次のsuperseding snapshotで再計算したDecision rules
Section titled “Decision rules”kill-switch override / STOP: rights, security, privacy, identity compromise, double charge, paid-but-undelivered, human/search harm, other hard veto
PAUSE / UNKNOWN: required evidence missing, stale, contradictory, unreconciled, provider incident
INCONCLUSIVE: integrity valid, but exposure or maturity insufficient for action
CHANGE: one versioned policy/price/scope/instrumentation change with bounded retest
MAINTAIN: current bounded action remains inside approved economics and guardrails
EXPAND: current rights + identity + settled delivery + cash + maturity + guardrail evidence supports only the proposed incremental scope書式 13 — Kill-switch / incident / rollback / recovery
Section titled “書式 13 — Kill-switch / incident / rollback / recovery”kill-switch は revenue experiment の一部ではなく、active harm を止める独立 control である。activation authority と recovery authority を分離できるようにする。
# Kill-switch and incident
machine_access_contract_id / contract_version:kill_switch_policy_id / policy_revision:incident_id / kill_switch_event_id:environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVEaccounting_environment: TEST | REAL
kill-switch scope: host/path/resource: operator/behavior/principal: policy/action mode: payment offer/provider: entitlement/delivery: origin/API/tool:
predeclared triggers: rights revoke/expiry/conflict: identity/key/credential compromise: spoof/verification failure: personal/confidential data exposure: security incident: human/known-search false block/charge: double charge/replay/fraud: settled-but-undelivered: wrong principal/resource/revision: refund/reversal spike: latency/5xx/origin/cost threshold: provider/network/facilitator incident: founder/support capacity threshold:
trigger observed_at / evidence_id:severity / impact scope:activated_at / activated_by:activation receipt:override action mode:traffic response after activation:payment intake disabled?:entitlement/delivery disabled?:provider/contact escalation ref:customer/operator notice ref:evidence preservation ref:
rollback target exact pairs: traffic_policy_id / policy_revision: payment_offer_id / offer_revision: meter_id / meter_revision: resource_contract_id / resource_revision: event_schema_id / schema_revision:rollback executed_at / by:rollback verification probes:cash/payment/delivery reconciliation owner:refund/remediation owner:
root cause state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUEcontainment state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUErecovery state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
recovery requirements: root cause corrected evidence: affected principals/resources reconciled: payment/refund/delivery closed: rights/identity current: negative probes pass: independent approval: revised policy/offer/version:
resume prohibited until:resume decision owner / approver:resumed_at / activation scope:post-incident review due_at:preventive action / owner / due_at:Kill-switch drill receipt
Section titled “Kill-switch drill receipt”machine_access_contract_id / contract_version:drill_id:environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVEaccounting_environment: TEST | REALscenario:started_at / expected completion:actual containment_at:payment stop verified:delivery stop verified:known-search/human fallback verified:rollback verified:alert/owner receipt verified:evidence retained:drill_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUEgap / next drill due_at:KILL_SWITCHは自動的な全データ削除ではない。reconciliation、refund、incident evidence を保持する。- kill-switch解除は、原因修正、negative probe、reconciliation、独立承認が揃うまで自動化しない。
- provider障害時の失敗を、顧客・agentへ無限402や無限retryとして返さない。
書式 14 — 14-day pilot / Codex handoff
Section titled “書式 14 — 14-day pilot / Codex handoff”14 日は payment/access の診断 pilot であり、search ranking、index inclusion、citation、renewal、長期 cannibalization の成熟を保証しない。known search crawler と人間を treatment から除外し、低リスク資産で一変更だけ試す。
# Fourteen-day pilot
machine_access_contract_id / contract_version:pilot_id / design_revision:decision_id / decision_version:start_at / end_at:owner / independent_reviewer:environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVEaccounting_environment: TEST | REAL
preconditions: rights_state / evidence: identity_verification_state / evidence: instrumentation_state / evidence: payment test state / evidence: delivery test state / evidence: kill-switch drill state / evidence:
eligible resource class:eligible behavior/operator/identity tier:excluded humans/search crawlers:excluded private/PII/state-changing resources:unit of assignment:stable allocation/hash rule:control action mode:treatment action mode:one changed variable:payment_offer_id / offer_revision:exposure/cost/cash cap:
Day 1-2 — shadow and DQ: tasks: required evidence: proceed gate:
Day 3 — freeze: cohort_id / assignment_revision: resource_contract_id / resource_revision: rights_basis_id / rights_revision: identity_observation_id / identity_revision: event_schema_id / schema_revision: traffic_policy_id / policy_revision: payment_offer_id / offer_revision: meter_id / meter_revision: stop/guardrail thresholds: freeze receipt:
Day 4-12 — bounded live or sandbox treatment: monitoring cadence: payment/delivery/cash reconciliation cadence: guardrail owner: deviation handling:
Day 13-14 — close and reconcile: new exposure stop_at: late settlement/refund handling: maturity_snapshot_id / snapshot_as_of / outcome_cutoff_at: decision review_at:
primary KPI / baseline:target_state: UNKNOWN | NOT_DUE | OBSERVEDapproved target or blank-until-baseline:driver metrics:guardrail metrics:kill-switch triggers:
pilot result: NO_SIGNAL | ALLOW_FOR_DISCOVERY | LICENSE_NEGOTIATE | METERED_GO_LIVE | BLOCK_OR_THROTTLE | INCONCLUSIVE | UNKNOWNdecision_state: STOP | PAUSE | UNKNOWN | INCONCLUSIVE | CHANGE | MAINTAIN | EXPANDkill_switch_status: READY | ACTIVE | RECOVERY_REVIEW | CLOSED | UNKNOWNnext action mode:claim permitted:long-lag outcomes still NOT_DUE:one next change / owner / due_at:Codex implementation / review handoff
Section titled “Codex implementation / review handoff”production authority は人間に残す。Codex へ渡すのは redacted、bounded、reversible な実装・分析 scope に限る。
# Codex handoff
machine_access_contract_id / contract_version:handoff_id / handoff_revision:pilot_id / design_revision:environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVEaccounting_environment: TEST | REAL
objective:non-goals:allowed files / systems:prohibited files / systems:allowed tools/network/data:production mutation allowed?: NO | exact human-approved boundary
redacted input refs:synthetic fixture refs:event_schema_id / schema_revision:traffic_policy_id / policy_revision:payment_offer_id / offer_revision:meter_id / meter_revision:expected invariants:required DQ checks:negative/adversarial probes:build/test/verification commands:rollback command/runbook ref:
must not receive: personal data: raw IP/cookie/session: customer prompt/output: API/OAuth credential: private key/seed phrase: bank/wallet secret: contract/customer secret:
requested output: facts: assumptions: UNKNOWN/NOT_DUE: actionable findings: changed files: test evidence: residual risks: rollback evidence:
Codex may recommend action?: YES | NOCodex may activate policy/payment/live delivery?: NOhuman production authorizer:independent reviewer:approved_at / approval evidence_id:handoff hash:Codex review prompt
Section titled “Codex review prompt”次の machine_access_contract と redacted evidence を review してください。
1. resource が search/training/retrieval/agent/API/MCP/unknown に適切に分離されているか。2. rights、identity、policy、offer、payment、delivery、cash、maturity を逆算していないか。3. UA-only、402、authorization、settlement、HTTP 200 を revenue/accepted outcome と誤認していないか。4. N/A、UNKNOWN、0、FAILED、OBSERVED、NOT_DUE が定義どおりか。5. human と known search crawler の false action、replay、double charge、paid-but-undelivered を検査したか。6. cost、value、cannibalization、attribution の実測と推計を分けたか。7. decision priority と kill-switch が upside を上書きするか。8. long-lag outcome を14日で確定していないか。
credential、個人情報、customer secret を出力せず、各 finding に source ref、影響する state/action、最小修正、再検証 command、残る UNKNOWN を返してください。live policy、決済、配信、refund、rollback の実行判断はしないでください。Machine access decision register
Section titled “Machine access decision register”一つの contract につき一行を append-only で残す。successful case だけを残さない。
machine_access_contract_id / contract_version:resource/behavior/operator scope:rights_state / identity_verification_state:environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVEaccounting_environment: TEST | REALcurrent action mode:verified eligible demand state:payment / delivery / cash / maturity states:primary KPI state/value ref:guardrail state:decision_state:kill-switch status:first failed/unknown/not-due stage:one next change:owner / due_at:evidence bundle ref:post-decision realized review due_at:Pack 完了チェック
Section titled “Pack 完了チェック”[ ] 14 書式の全 record が同じ machine_access_contract_id と exact version で結ばれている[ ] original environment を保持し、固定写像で導出した TEST/REAL と不一致の row を拒否した[ ] 全書式は空欄コピー用で、実績・benchmark・非 synthetic の記入例を置いていない[ ] 氏名、raw IP、cookie、会話、prompt/output、credential、private key、seed phrase を貼っていない[ ] human referral、search、training、retrieval、user fetch、browser agent、API/MCP、unknown を分けた[ ] multi-purpose bot を排他的な一分類へ潰していない[ ] rights、identity、payment、delivery、cash、maturity を request から逆算していない[ ] robots.txt を access authorization、license、秘密保護と同一視していない[ ] UA-only を verified identity、payer、licensee、end-user consent と呼んでいない[ ] action mode は一 request 一 terminal action で、overlap precedence と exception がある[ ] kill-switch override と decision priority の STOP / PAUSE / UNKNOWN が upside より先に評価される[ ] N/A、UNKNOWN、0、FAILED、OBSERVED、NOT_DUE を混ぜていない[ ] external benchmark から target を捏造せず、baseline未確定の空欄と承認済み threshold を分けた[ ] cost、value、cannibalization、attribution の observed と estimated を分けた[ ] HTTP 402、quote、authorization、submission を revenue、cash、delivery と呼んでいない[ ] settlement、entitlement、delivery、acceptance、bank/wallet cash、refund maturity を別 stage にした[ ] duplicate/retry、idempotency、replay、double charge、paid-but-undelivered を検査した[ ] provider/edge dashboard の sampling を payment/cash 正本にしていない[ ] known search crawler と人間の false block/charge が guardrail と kill-switch に入っている[ ] rights revoke、identity compromise、PII/security、payment/delivery failure の kill-switch を drill した[ ] kill-switch解除に原因修正、reconciliation、negative probe、独立承認を要求した[ ] 14日 pilot を長期 ranking、citation、refund、renewal、cannibalization の確定証拠にしていない[ ] Codex handoff は redacted/synthetic、bounded scope で、live activation authority を渡していない[ ] chapter と SQLite companion の相対リンクを確認した[ ] decision register に NO_SIGNAL、negative、failed、unknown、inconclusive も残す