コンテンツにスキップ

Machine traffic monetization and agent payments pack

最終確認: 2026-08-02
用途: AI crawler、検索 crawler、user-triggered fetcher、browser agent、API、MCP、tool call を、権利、本人性、価格、決済、配信、入金、成熟、guardrail まで同じ contract で運用する

この pack は判断、計測、運用、証拠管理の書式であり、法律、著作権、契約、税務、会計、金融、暗号資産、決済、privacy、security の個別助言ではない。主体、地域、資産、用途、決済手段、provider、protocol version ごとに一次情報と専門家 review を確認する。

この pack の 14 書式はすべて空欄コピー用である。実績、価格、率、件数、期間、benchmark、推奨目標を記入例として埋めていない。別途例を作る場合は、名称、ID、request、金額、時刻、payment、結果を含め、完全な synthetic data だけを使う。

氏名、email、住所、電話、raw IP、cookie、会話全文、prompt/output、注文詳細、銀行口座、wallet secret、seed phrase、private key、API key、OAuth token、session、password、署名用秘密鍵、顧客秘密その他の個人情報・credential を、この公開書式や生成 AI へ貼らない。実運用では opaque ID、集約、redacted summary、hash、権限制御された正本への reference を使う。

  • 20 章: machine traffic の分類、control、license、price、HTTP 402、agent payments、計測、判断原則。
  • 06 章: 日本の privacy、security、契約、表示、税務・法務確認の共通入口。
  • 09 章: founder time、完全負荷後貢献、cash、capacity。
  • 10 章: platform、protocol、agent、取引境界。
  • 11 章: 契約、invoice、payment、acceptance、renewal。
  • 12 章: AI job、品質、provider cost、accepted outcome、retention。
  • 13 章: release、evidence、review、rollback。
  • 17 章: AI 検索・directory・MCP 経由の discovery から settled revenue まで。
  • 19 章: 低トラフィックでの baseline、holdout、maturity、guardrail、decision gate。
  • SQLite companion: 本書式の rights、identity、policy、payment、delivery、cash、maturity、kill-switch invariant を fully synthetic data で検査する参考実装。

SQLite companion の集計実装範囲は per-request paid access である。license allocation、AI referral contribution、cannibalization は列・ledgerを持たないため、contract 上理由付き N/A なら 0 加算、必要だが未実装・未照合なら最終 KPI を UNKNOWN とする。companion の 25,000 fixture を包括的な利益、実績、価格、需要へ外挿しない。

  1. 書式 1 で decision、対象資産、損失上限、許される主張を固定する。
  2. 書式 2 で program/protocol の current snapshot を固定し、人間、search、training、retrieval、agent、API/MCP、unknown automation を分ける。
  3. 書式 3 で自分が許可・license・販売できる権利と用途範囲を確認する。
  4. 書式 4 で operator、bot、principal、end user の本人性と信頼境界を固定する。
  5. 書式 5 で traffic class ごとの action mode と rule precedence を決める。
  6. 書式 6 で robots、WAF、edge、origin の policy version と enforcement receipt を残す。
  7. 書式 7 で request、referral、conversion、payment、delivery を結ぶ最小 event を定義する。
  8. 書式 8 で原価、価値、cannibalization、primary KPI、driver、guardrail を baseline-first で定義する。
  9. 書式 9 で price、license terms、quote、HTTP 402 requirement を version 化する。
  10. 書式 10 で authorization、settlement、fee、refund、bank/wallet cash を照合する。
  11. 書式 11 で entitlement、delivery、receipt、idempotency、revocation を照合する。
  12. 書式 12 で maturity と guardrail を閉じ、action と claim cap を決める。
  13. 書式 13 で kill-switch、incident、rollback、再開条件を先に準備する。
  14. 書式 14 で 14 日 pilot と Codex handoff を bounded scope で実行する。

すべての書式、event、snapshot、ledger row は同じ machine_access_contract_id を持つ。別 contract の evidence を暗黙に流用しない。

contract_family_id:
machine_access_contract_id / contract_version (positive integer):
supersedes_contract_id: N/A | exact prior contract ID
decision_id / decision_version:
source_snapshot_id / source_snapshot_revision:
resource_contract_id / resource_revision:
operator_id / bot_or_agent_id / principal_id:
rights_basis_id / rights_revision:
identity_observation_id / identity_revision:
traffic_policy_id / policy_revision:
meter_id / meter_revision:
payment_offer_id / offer_revision:
request_id / trace_id:
challenge_id / challenge_revision:
payment_proof_id / proof_revision / payment_event_id / event_sequence / settlement_id:
provider_transaction_id:
entitlement_event_id / delivery_event_id / delivery_receipt_id / accepted_outcome_event_id:
cash_reconciliation_id / maturity_snapshot_id:
guardrail_snapshot_id / kill_switch_event_id:
evidence_id / evidence_revision:
supersedes_evidence_id: N/A | exact ID
environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVE
accounting_environment: TEST | REAL
environment_mapping_revision:
effective_from / effective_until:
occurred_at / recorded_at:
quoted_at / authorized_at / settled_at:
entitled_at / delivered_at / accepted_at:
cash_observed_at / maturity_at:
snapshot_as_of / outcome_cutoff_at:
decision_due_at / retention_due_at:
owner / independent_reviewer / reviewed_at:
source_system / source_object_ref:
payload_ref_hash / artifact_hash:
  • 過去 row を静かに更新せず、新 revision、新しい machine_access_contract_id、exact supersedes_contract_id を作る。同じ family の version は正の整数で単調増加させる。
  • provider timestamp、edge receipt、origin event、ledger recorded time、bank/wallet cash time を別に保持する。
  • opaque ID や hash は本人性、権利、真正性、適法性、決済、配信を単独では証明しない。同じ machine_access_contract_id 内でも、各 paid request は exact request_id → challenge_id → payment_proof_id → payment_event_id → settlement_id → entitlement_event_id → delivery_event_id → delivery_receipt_id → accepted_outcome_event_id → cash_reconciliation_id → maturity_snapshot_id で結び、多件を contract ID だけで join しない。
  • SQLite companion へ投影するときだけ SYNTHETIC / SANDBOXTESTLIMITED_LIVE / LIVEREAL に写像する。正本には元の4状態も残す。
  • accounting_environment は手入力せず、この固定写像から導出する。写像と一致しない row は FAILED として集計から除外し、静かに補正しない。
  • SYNTHETIC / SANDBOX を live demand、revenue、cash、accepted delivery に合算しない。LIMITED_LIVE も上限付き cohort として通常 LIVE から分ける。

各重要 field と stage は、値とは別に次の state を持つ。

state 意味
N/A contract 上その項目が存在しない。理由、決定者、再確認 trigger がある
UNKNOWN 必要だが未確認、期限切れ、矛盾、join 不能、正本不明
0 対象、期間、分母、coverage が確定した上での観測ゼロ
FAILED 実行した検査、必要条件、照合、配信、決済等が明示的に不合格
OBSERVED contract が要求する evidence class の肯定観測がある
NOT_DUE settlement、refund、conversion、renewal 等の maturity がまだ来ていない
field_or_stage:
state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
value_or_result:
reason:
required_evidence_class:
evidence_id:
decided_by / decided_at:
recheck_trigger / due_at:
  • UNKNOWN0FAILEDN/A に丸めない。
  • NOT_DUE を no demand、no refund、no conversion、no value と解釈しない。
  • OBSERVED request から rights、citation、payment、delivery、cash を推定しない。
  • OBSERVED settlement から delivery、acceptance、refund maturity、retained contribution を推定しない。
E0_INFERENCE
E1_MANUAL_OBSERVATION
E2_VERSIONED_CONFIG
E3_VERIFIED_PROVIDER_EVENT
E4_FIRST_PARTY_AUTHORITATIVE
E5_BANK_WALLET_OR_CUSTOMER_AUTHORITATIVE

上位ほど常に正しいという意味ではない。E0 は推論・未検証申告、E1 は手動観測、E2 は versioned config、E3 は検証済み provider/edge event、E4 は first-party authoritative event、E5 は bank/wallet/customer 等の authoritative evidence を表す。identity には署名・公式 IP 等の E3、rights には契約・権利台帳、delivery には first-party receipt の E4、cash には provider と銀行・wallet の E5 のように、stage ごとの最低正本を事前指定する。

一つの request へ適用する terminal action は一つにする。観測・logging は terminal action と別の横断機能として扱う。

MEASURE_ONLY
ALLOW_FREE
RATE_LIMIT
SECURITY_CHALLENGE
BLOCK
CONTRACT_LICENSE
AUTHENTICATED_API
HTTP_402
SERVE_ENTITLED
PAUSE

overlap 時の既定 resolver:

KILL_SWITCH override
> BLOCK
> SECURITY_CHALLENGE
> RATE_LIMIT
> PAUSE
> current SERVE_ENTITLED
> AUTHENTICATED_API | HTTP_402 | CONTRACT_LICENSE
> ALLOW_FREE
> MEASURE_ONLY overlay
  • resolver は安全側の既定であり、個別 rule の順序、skip、exception を policy receipt に固定する。
  • HTTP_402 は quote/requirement の提示であり、payment、cash、delivery ではない。
  • SERVE_ENTITLED は current entitlement と delivery条件を満たした場合だけ選ぶ。
  • SECURITY_CHALLENGEHTTP_402 は別 response・別目的であり、混用しない。
  • identity や rights が UNKNOWN の request を、売上期待だけで ALLOW_FREE / SERVE_ENTITLED に昇格しない。
STOP > PAUSE > UNKNOWN > INCONCLUSIVE > CHANGE > MAINTAIN > EXPAND
  • KILL_SWITCH は decision state ではなく、active harm を止める即時の運用 override である。収益比較を待たない。
  • STOP: rights、security、payment、delivery、法令・契約等の veto が解消していない。
  • PAUSE: bounded investigation、reconciliation、capacity、provider recovery 待ち。
  • UNKNOWN: 必要 evidence が未確認、矛盾、stale、join 不能。
  • INCONCLUSIVE: integrity は有効だが、有益・有害の両方が残る。
  • CHANGE: action mode、price、scope、instrumentation 等を version up する。
  • MAINTAIN: current bounded mode を維持する。
  • EXPAND: rights、identity、unit economics、guardrail、kill-switch が current evidence で通る範囲だけ拡大する。

書式 1 — Decision / scope / loss-limit contract

Section titled “書式 1 — Decision / scope / loss-limit contract”

machine traffic を数える前に、変えられる action と最大損失を決める。

# Decision and scope
machine_access_contract_id / contract_version:
decision_id / decision_version:
created_at / decision_due_at:
decision_owner / independent_reviewer:
business question:
customer or publisher job:
claim sought: DESCRIPTION | ASSOCIATION | CAUSAL
claim cap:
resource family in scope:
behavior in scope:
operator/principal scope:
geography / legal entity / product scope:
environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVE
accounting_environment: TEST | REAL
current action mode:
decision options:
- option:
- option:
- option:
rights assumption to verify:
identity assumption to verify:
demand assumption to verify:
payment assumption to verify:
delivery assumption to verify:
cash assumption to verify:
maturity assumption to verify:
maximum acceptable exposure:
resource scope:
machine requests:
human/search impact:
variable cost:
cash at risk:
founder minutes:
elapsed time:
privacy/security impact:
hard veto / kill-switch trigger:
reversible decision?:
rollback owner / rollback SLA:
cheapest evidence that could change action:
evidence not worth collecting:
decision_state: STOP | PAUSE | UNKNOWN | INCONCLUSIVE | CHANGE | MAINTAIN | EXPAND
kill_switch_status: READY | ACTIVE | RECOVERY_REVIEW | CLOSED | UNKNOWN
state reason:
required next evidence:
[ ] decision は dashboard 作成ではなく action 変更を選べる
[ ] resource、behavior、operator、environment の scope が exact
[ ] 最大 human/search impact、cash、cost、時間が空欄のまま live に進まない
[ ] rights/identity/payment/delivery/cash/maturity を一つの「収益化済み」に束ねていない
[ ] kill-switch と STOP 条件が upside より先に書かれている

書式 2 — Program / protocol snapshot and resource / traffic inventory

Section titled “書式 2 — Program / protocol snapshot and resource / traffic inventory”

provider の product availability と protocol conformance を需要・live eligibility にしない。その current snapshot を固定した上で、AI bot 一分類を禁止し、declared purpose、verified identity、observed behavior、business channel を分ける。一つの bot は複数 behavior を持ち得る。

# Program and protocol source snapshot
machine_access_contract_id / contract_version:
source_snapshot_id / source_snapshot_revision:
retrieved_at / effective_at / recheck_at:
environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVE
accounting_environment: TEST | REAL
provider / product / program:
official documentation URLs:
documentation revision / artifact hashes:
program_status: CURRENT | PREVIEW | INVITE_ONLY | DEPRECATED | UNKNOWN | FAILED
provider display stage: GA | BETA | CLOSED_BETA | PREVIEW | WAITLIST |
CONTACT_SALES | UNAVAILABLE | UNKNOWN
account / legal entity / country eligibility:
plan / role / invitation / approval eligibility:
buyer/client support evidence:
seller eligibility evidence state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
buyer/client support evidence state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
current live-readiness gate: PASS | FAILED | UNKNOWN | N/A
protocol family: CLOUDFLARE_PPC | X402_V2 | PAYMENT_HTTP_AUTH_DRAFT | MPP |
CONTRACT_LICENSE | API_SUBSCRIPTION | OTHER | N/A
protocol/spec version:
underlying HTTP authentication scheme/version: N/A | exact scheme/version
challenge status / header / body contract:
credential or proof header contract:
success receipt header/body contract:
identity method and limitation:
payment rail / asset / network / facilitator:
minimum/maximum price and precision:
seller fee / network fee / unknown fee:
settlement / payout owner and cadence:
refund / reversal / dispute support:
license/rights transport and limitation:
observability / sampling / retention:
known interoperability limitation:
source_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
reviewer / reviewed_at:
supersedes_source_snapshot_id:
recheck triggers:
  • same HTTP 402 でも Cloudflare、x402、Payment HTTP Authentication draft、MPP の header・proof・receipt は同一でない。汎用 auth scheme の実装を MPP conformance へ昇格しない。
  • protocol conformance PASS ≠ account/program eligibility ≠ compatible buyer demand ≠ LIVE_READY とする。
  • preview、closed beta、waitlist、contact sales、coming soon を current live revenue へ入れない。
  • minimum price、fee、settlement period、payout threshold が非公開なら UNKNOWN のまま残す。
# Resource and traffic inventory
machine_access_contract_id / contract_version:
inventory_snapshot_id / snapshot_as_of:
resource_contract_id / resource_revision:
environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVE
accounting_environment: TEST | REAL
resource name or opaque label:
resource class: PUBLIC_MARKETING | PREMIUM_CONTENT | API_COMPUTE |
TOOL_ACTION | CUSTOMER_DATA
resource subtype: PUBLIC_DISCOVERY | PUBLIC_FULL_CONTENT | MACHINE_DERIVATIVE |
FRESH_DATA | COMPUTE_ACTION | WRITE_ACTION |
CUSTOMER_PRIVATE | SECRET_OR_SAFETY_CRITICAL
canonical public URL ref:
machine-specific derivative ref:
access requirement: PUBLIC | AUTHENTICATED | ENTITLED | INTERNAL
dynamic or state changing?:
contains third-party material?:
contains personal/confidential data?:
freshness / update cadence:
cacheability / origin dependency:
estimated cost basis ref:
traffic_event_id:
declared user-agent token:
declared operator:
declared purpose:
verified operator:
identity tier: A_AUTH_OR_WBA | B_UA_PLUS_IP_OR_RDNS |
C_UA_ONLY | D_BEHAVIORAL | UNKNOWN
primary actor class: HUMAN_BROWSER | SEARCH_INDEXER | AI_SEARCH_RETRIEVAL |
AI_TRAINING | USER_TRIGGERED_AGENT |
AUTHENTICATED_API_CLIENT | UNKNOWN_AUTOMATION |
MALICIOUS_ABUSE
business_channel: HUMAN_AI_REFERRAL | SEARCH_INDEX | TRAINING_COLLECTION |
LIVE_RETRIEVAL | USER_TRIGGERED_FETCH | BROWSER_AGENT |
API_MCP_TOOL | OTHER | N/A
behavior_tags: API_CALL | MCP_RESOURCE_READ | MCP_TOOL_CALL | TRANSACTION |
CACHE | BULK | OTHER | N/A
direct_or_intermediary: DIRECT | INTERMEDIARY | UNKNOWN
user_triggered: YES | NO | UNKNOWN
human referral event?: YES | NO | UNKNOWN
classification state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
classification evidence_id:
purpose conflict / observed mismatch:
next verification:
machine_access_contract_id / contract_version:
snapshot_as_of:
environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVE
accounting_environment: TEST | REAL
current source snapshots / stale snapshots:
eligible programs / compatible buyer principals:
program/protocol UNKNOWN or FAILED:
human AI referrals:
verified search/index requests:
verified training requests:
verified live retrieval requests:
verified user-triggered fetches:
verified browser-agent requests:
authenticated API calls:
authenticated MCP resource reads:
authenticated MCP tool calls:
unverified or unknown automated requests:
multi-label requests:
unclassified requests:
classification conflicts:
total scoped requests:
reconciliation difference:
coverage state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
  • Human AI referral は crawler request ではなく、AI回答等から来た人間の session である。
  • Search/index fetch が、実際の citation、click、conversion を発生させたとは限らない。
  • API/MCP/tool call は UA ではなく application auth、principal、method、result で分類する。
  • UNKNOWN_AUTOMATION を training demand、license lead、paid demand へ合算しない。

書式 3 — Rights / license / permitted-use gate

Section titled “書式 3 — Rights / license / permitted-use gate”

robots.txt は技術 signal であり、rights、authorization、contract そのものではない。資産と用途ごとに、自分が許可・拒否・license・販売できる範囲を確認する。

# Rights and permitted use
machine_access_contract_id / contract_version:
rights_basis_id / rights_revision:
resource_contract_id / resource_revision:
effective_from / effective_until:
environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVE
accounting_environment: TEST | REAL
rightsholder opaque ref:
operator legal entity scope:
territory / governing document ref:
ownership or authorization basis ref:
third-party content basis ref:
OSS / dataset / media license refs:
personal/confidential data assessment ref:
permitted machine uses:
search indexing:
citation / reference:
live retrieval / grounding:
temporary cache:
persistent cache / archive:
model training:
fine-tuning:
evaluation / safety:
embeddings / RAG index:
derivative output:
resale / sublicense:
transaction action:
attribution requirement:
link requirement:
retention / deletion requirement:
refresh / version requirement:
model or product restriction:
exclusivity / most-favored / conflict:
audit / reporting requirement:
revocation / termination mechanism:
post-termination treatment:
allowed action modes by use:
prohibited action modes by use:
license notice ref:
contract / policy authoritative ref:
specialist review required?: YES | NO | UNKNOWN
specialist reviewer / reviewed_at:
rights_state: PASS | UNKNOWN | N/A | FAILED
rights_evidence_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
rights_state reason:
evidence_id:
recheck trigger / due_at:

rights_state は gate outcome、rights_evidence_state は必要証拠を観測できたかの状態であり、両者を混ぜない。rights_state=FAILED は decision の STOP を強制する。

[ ] resource 単位で rightsholder と authorization basis を参照できる
[ ] search、reference、grounding、training、derivative、resale を分けた
[ ] third-party、OSS、dataset、個人・秘密情報を黙って自己所有扱いしていない
[ ] retention、attribution、sublicense、revocation、post-termination を確認した
[ ] rights UNKNOWN / FAILED の資産を payment 可能という理由で配信しない
[ ] robots allow/disallow を契約同意や法的結論と置き換えていない

書式 4 — Identity / principal / transitive-trust contract

Section titled “書式 4 — Identity / principal / transitive-trust contract”

operator、bot、intermediary、end user、payment principal を別 identity として記録する。UA だけを本人確認に使わない。

# Identity and principal verification
machine_access_contract_id / contract_version:
identity_observation_id / identity_revision:
operator_id / bot_or_agent_id / principal_id:
effective_from / expires_at:
environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVE
accounting_environment: TEST | REAL
claimed operator:
verified operator:
bot/product token:
access model: DIRECT | INTERMEDIARY | UNKNOWN
user-triggered: YES | NO | UNKNOWN
end-user identity available?: YES | NO | PARTIAL | UNKNOWN
end-user consent/authority evidence ref:
identity methods observed:
API key ref: N/A | opaque credential-record ref
OAuth client/token ref: N/A | opaque credential-record ref
mTLS/client certificate ref: N/A | opaque certificate ref
Web Bot Auth signature ref: N/A | opaque verification ref
official IP/CIDR list revision: N/A | exact public snapshot ref
forward-confirmed reverse DNS result: N/A | exact evidence ref
stable UA match: N/A | exact token/version
WAF/provider verified label: N/A | exact event ref
behavioral/fingerprint signal: N/A | redacted evidence ref
identity tier: A_AUTH_OR_WBA | B_UA_PLUS_IP_OR_RDNS |
C_UA_ONLY | D_BEHAVIORAL | UNKNOWN
signature/key-directory version:
signature created/expires window:
nonce/replay handling:
key rotation / revocation status:
credential scope / audience / resource indicator:
principal rate/quota scope:
declared purpose:
observed behavior:
purpose conflict:
operator vs end-user authority gap:
impersonation or proxy risk:
identity_verification_state: VERIFIED | UNKNOWN | N/A | FAILED
identity_evidence_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
verification evidence_id:
failure action mode:
recheck trigger / due_at:

identity_verification_state は principal/operator の検証結果、identity_evidence_state は必要証拠を観測できたかの状態である。UA の観測だけを VERIFIED にしない。

[ ] UA-only を verified、licensee、payer、end-user consent と呼んでいない
[ ] official IP/CIDR list や rDNS の revision と取得時刻がある
[ ] WBA/API/OAuth は scope、expiry、replay、revocation を確認した
[ ] intermediary operator と、その先の end user を同一主体扱いしていない
[ ] unverified request を monetizable demand や paid conversion の分母へ入れていない
[ ] secret/token/key 本文ではなく権限制御された credential-record ref だけを置いた

resource、behavior、identity tier、rights、entitlement を条件に、一つの terminal action を返す。policy overlap と exception を明示する。

# Action policy
machine_access_contract_id / contract_version:
traffic_policy_id / policy_revision:
effective_from / effective_until:
policy owner / approver:
environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVE
accounting_environment: TEST | REAL
rule_id / rule_priority:
resource selector:
method / path / host selector:
behavior selector:
operator/bot selector:
identity tier selector:
direct/intermediary selector:
rights_state requirement: PASS | UNKNOWN | N/A | FAILED
identity_verification_state requirement: VERIFIED | UNKNOWN | N/A | FAILED
auth_scope requirement / authoritative ref:
payment requirement / authoritative ref:
entitlement requirement / authoritative ref:
rate / cost / abuse condition:
environment selector:
terminal action mode: ALLOW_FREE | RATE_LIMIT | SECURITY_CHALLENGE | BLOCK |
CONTRACT_LICENSE | AUTHENTICATED_API | HTTP_402 |
SERVE_ENTITLED | PAUSE
measurement overlay: MEASURE_ONLY | NONE
response status / body schema version:
rate-limit key / period / behavior:
challenge type / accessibility fallback:
license notice ref:
auth scheme / scope ref:
payment offer ref:
entitlement validation ref:
skip / exception rule:
known search crawler protection:
human/API/mobile false-positive protection:
default unmatched action:
overlap precedence result:
kill-switch override ref:
policy test evidence_id:
policy_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
activation receipt:
rollback traffic_policy_id / policy_revision:
next review / recheck trigger:
machine_access_contract_id / contract_version:
traffic_policy_id / policy_revision / snapshot_as_of:
environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVE
accounting_environment: TEST | REAL
resource_class:
behavior:
identity_tier:
rights_state: PASS | UNKNOWN | N/A | FAILED
identity_verification_state: VERIFIED | UNKNOWN | N/A | FAILED
auth_scope_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
payment_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
entitlement_state: GRANTED | REVOKED | UNKNOWN | N/A | FAILED
auth/payment/entitlement evidence refs:
action_mode:
rule_id / priority:
exception:
owner:
evidence_id:
  • Search、training、agent、API/MCP を一つの global bot toggle へ潰さない。
  • MEASURE_ONLY は enforcement なしという明示的 overlay であり、UNKNOWN ではない。
  • ALLOW_FREE は権利・安全・費用条件が無制限という意味ではない。scope と expiry を持つ。
  • payment の観測を current entitlement や auth scope へ昇格しない。SERVE_ENTITLED は exact principal/resource/method/quota/expiry の current entitlement が GRANTED の場合だけ返す。
  • policy revision を変えた後、旧 revision の結果を新 revision の効果へ混ぜない。

書式 6 — Robots / edge / origin enforcement receipt

Section titled “書式 6 — Robots / edge / origin enforcement receipt”

robots signal、CDN/WAF policy、edge response、origin authorization を分離し、public policy と実際の enforcement の drift を検査する。

# Robots and enforcement
machine_access_contract_id / contract_version:
traffic_policy_id / policy_revision:
host / subdomain opaque ref:
environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVE
accounting_environment: TEST | REAL
robots snapshot id / fetched_at:
robots authoritative URL hash:
robots HTTP status / content type:
robots cache / propagation expectation:
user-agent product token:
allow paths:
disallow paths:
crawl-delay or nonstandard directive:
usage-control token without distinct HTTP UA?: YES | NO | UNKNOWN
search/training/grounding coupling note:
user-triggered fetch robots applicability:
CDN/WAF provider/config ref:
edge rule id / version / priority:
verified-bot field/tag used:
IP/rDNS/WBA validation ref:
rate-limit / challenge / block config ref:
HTTP response schema/content ref:
origin rule/config ref:
canonical page behavior:
machine derivative behavior:
dry-run/shadow test ref:
known search crawler probe ref:
training crawler probe ref:
user-fetch/agent probe ref:
human browser probe ref:
API/MCP probe ref:
unverified/spoof probe ref:
paid entitlement probe ref:
expected action mode:
observed edge action:
observed origin action:
policy drift:
false-positive / false-negative:
enforcement_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
evidence_id:
activated_at / activated_by:
rollback receipt / tested_at:
next fetch / drift check:
[ ] robots.txt を全 host/subdomain で current snapshot 化した
[ ] robots は access authorization や秘密保護ではないと扱った
[ ] UA token と実際の HTTP UA、利用制御 token の違いを記録した
[ ] known search、人間、API/MCP、paid entitlement の negative probe がある
[ ] edge allow 後に origin が拒否する、または edge block 前に origin cost が出る drift を調べた
[ ] rule order、skip、exception、rollback が exact revision で再現できる

書式 7 — Metering / attribution / event contract

Section titled “書式 7 — Metering / attribution / event contract”

request、referral、citation、conversion、payment、delivery を一つの event に詰めない。欠落し得る referrer と UTM を識別し、join 不能を UNKNOWN のまま残す。

# Metering and attribution
machine_access_contract_id / contract_version:
meter_id / meter_revision:
event_schema_id / schema_revision:
effective_from:
environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVE
accounting_environment: TEST | REAL
event_id / event_type / event_revision:
supersedes_event_id: N/A | exact prior event ID
request_id / trace_id:
occurred_at / recorded_at:
resource_contract_id / resource_revision:
operator_id / bot_or_agent_id / principal_id:
behavior_tags / business_channel:
identity tier / identity_observation_id / identity_revision:
traffic_policy_id / policy_revision / action_mode:
request fields:
method / host / path class:
response status:
HTTP request/response bytes:
challenge payload bytes:
protected resource bytes delivered:
cache status / origin hit:
origin compute/duration class:
third-party API usage class:
latency:
retry/idempotency key ref:
estimated variable-cost event ref:
referral/session fields:
referrer class:
UTM/source parameter class:
native-app/no-referrer possibility:
landing session opaque id:
first-touch / last-touch policy:
attribution window policy ref:
conversion event ref:
gross-contribution event ref:
citation/visibility fields:
server-side citation observable?: YES | NO | UNKNOWN
external fixed-query probe ref: N/A | exact evidence ref
citation observed state:
click observed state:
payment/delivery join fields:
payment_offer_id / offer_revision:
challenge_id / challenge_revision:
payment_proof_id / proof_revision / payment_event_id / event_sequence:
settlement_id:
provider_transaction_id:
entitlement_event_id / delivery_event_id / delivery_receipt_id / accepted_outcome_event_id:
cash_reconciliation_id / maturity_snapshot_id:
first missing or conflicting exact ID:
data minimization / aggregation:
raw IP/user-agent retention handling:
privacy/legal basis ref:
access role / retention_due_at:
event_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
DQ result / evidence_id:
late/duplicate/correction handling:
machine_access_contract_id / contract_version:
meter_id / meter_revision / date / snapshot_as_of:
environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVE
accounting_environment: TEST | REAL
edge scoped requests:
origin scoped requests:
unique request ids:
duplicate/retry requests:
verified eligible requests:
unverified/unknown requests:
human AI referral sessions:
attributed conversions:
unattributed conversions:
payment requirements issued:
unique challenge ids / duplicate challenge ids:
payments authorized:
payments settled:
unique payment proof ids / replayed proof ids:
entitlements issued:
deliveries attempted:
deliveries accepted:
unique delivery receipt ids / duplicate receipt ids:
cash observations:
mature outcomes:
edge-to-origin difference:
request-to-ledger join difference:
payment-to-delivery difference:
settlement-to-cash difference:
coverage state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
  • AI crawler request / human referral の単純比は診断指標であり、conversion や因果価値ではない。
  • native app 等で referrer が欠ける場合、欠測をゼロとして扱わない。
  • server log だけでは回答内 citation を観測できない。必要なら固定 query の外部 probe を別 evidence とする。
  • WAF dashboard が sampling される場合、payment/cash reconciliation の正本にしない。

書式 8 — Cost / value / cannibalization / KPI contract

Section titled “書式 8 — Cost / value / cannibalization / KPI contract”

外部 benchmark から target を作らず、自サイト baseline、価値仮説、費用台帳、同時 control を使う。実測値と推計値を分ける。

# Economics and KPI
machine_access_contract_id / contract_version:
economics_model_id / model_revision:
metric_contract_id / metric_revision:
baseline_window / snapshot_as_of:
eligible unit:
analysis unit:
resource class:
behavior/operator scope:
environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVE
accounting_environment: TEST | REAL
variable cost components:
CDN/edge requests:
WAF/bot/payment checks:
origin compute:
data transfer/egress:
storage/read:
third-party API/model/tool:
payment facilitator/network:
refund/fraud/dispute:
variable support/founder time:
tax/royalty/rights allocation:
value components:
matured paid-access gross from accepted, cash-reconciled deliveries:
allocated matured license contribution:
incremental matured human-referral gross contribution:
strategic or learning value (separate, noncash):
cannibalization candidates:
paid API/subscription substitution:
human organic/referral loss:
ad impression loss:
premium-data substitution:
exclusivity / future license opportunity cost:
control/holdout or comparison method:
measurement limitations:
primary KPI:
name: matured_incremental_machine_contribution
formula revision:
baseline:
target_state: UNKNOWN | NOT_DUE | OBSERVED
target: blank until baseline | exact approved value
harm / trivial / valuable zones:
maturity:
driver metrics:
verified eligible principals/requests:
identity verification rate:
quote-exposed principals:
authorization/settlement rate:
entitlement/delivery acceptance rate:
repeat paid principal:
referral session/conversion/contribution:
cache/origin/bytes/variable cost:
qualified license inquiry:
guardrail metrics:
human/known-search false action:
human/search referral and conversion:
existing paid-product conversion:
latency / 5xx / origin load:
payment-delivery mismatch:
refund/fraud/replay/double charge:
privacy/security/rights incident:
support/founder capacity:
metric states:
cost_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
value_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
cannibalization_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
primary_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
evidence ids:
each formula component record:
component name:
value / unit / currency:
state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
state reason / N/A authority:
scope / cutoff / maturity:
evidence_id / evidence class:

管理用 formula:

matured_incremental_machine_contribution
= matured_paid_access_gross_from_accepted_cash_reconciled_deliveries
+ allocated_matured_license_contribution
+ incremental_matured_AI_referred_human_gross_contribution
- refunds_reversals_fraud_and_unreconciled_delivery_loss
- unreconciled_cash_shortfall_not_already_excluded_or_allocated
- seller_borne_tax
- protocol_facilitator_network_and_PSP_fees
- incremental_edge_origin_egress_storage_API_and_AI_variable_cost
- support_and_founder_rescue_time_cost
- measured_cannibalized_contribution

pricing floor 用 formula:

price_floor_by_unit
= (variable_service_cost
+ payment_refund_fraud_cost
+ required_contribution
+ cannibalization_and_risk_reserve)
/ expected_successfully_settled_and_delivered_units
  • 会計利益、cash、management contribution を混ぜない。
  • paid-access gross は verified eligible + settled + entitled + accepted delivery + cash reconciled + maturity reached の全 gate を通った unit だけを含める。settlement 単独を contribution にしない。
  • positive gross/value だけを成功 gate で限定し、refund、reversal、fraud、fee、variable cost、support/founder time は失敗・離脱・paid-undelivered を含む全 mature eligible cohort から控除する。
  • 未照合 cash shortfall は、paid gross や delivery loss から既に除外済みでなければ一度だけ控除する。配賦不能な残差があれば primary state は UNKNOWN である。
  • accepted action、avoided cost、license、referral が同じ価値を表す場合に二重加算しない。cost reduction は control との差として variable-cost 項へ一度だけ反映する。
  • 14 日で未成熟な LTV、refund、renewal は NOT_DUE または別推計にする。
  • denominator が 0 / UNKNOWN の率を 0% と表示しない。
  • target、stop threshold、MPE は baseline と capacity を見て承認し、業界値を転記しない。

書式 9 — Price / license offer / HTTP 402 contract

Section titled “書式 9 — Price / license offer / HTTP 402 contract”

price は resource/action の単位と rights scope を持つ。HTTP 402 は支払 requirement の提示であり、payment、cash、delivery ではない。

# Offer and payment requirement
machine_access_contract_id / contract_version:
payment_offer_id / offer_revision:
request_id / trace_id:
challenge_id / challenge_revision:
payment_requirement_id / requirement_revision: N/A | provider alias
resource_contract_id / resource_revision:
protocol family / protocol version:
effective_from / challenge_issued_at / expires_at:
environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVE
accounting_environment: TEST | REAL
eligible operator/principal/identity tier:
behavior/use scope:
rights_basis_id / rights_revision / allowed-use scope:
territory / term / retention / derivative rights:
attribution / link / audit requirement:
revocation / post-termination treatment:
pricing unit: REQUEST | SUCCESSFUL_DELIVERY | ASSET | BYTE | ROW | TOKEN |
TOOL_ACTION | BATCH | TIME_WINDOW | LICENSE_TERM | OTHER
unit definition:
resource/quality/freshness tier:
amount / asset-or-currency / decimals:
network / payment method / facilitator:
payment recipient opaque ref:
list price:
discount/volume rule:
tax/fee display rule:
price floor evidence ref:
buyer-value hypothesis:
cannibalization reserve ref:
founder approval boundary:
HTTP status/action mode:
machine-readable requirement schema/version:
challenge status/header/body field names:
credential/proof header field name:
success receipt header/body field name:
accepted payment methods:
facilitator/provider ref:
payment destination opaque ref:
offer base-currency value / valuation time:
FX source / rate / basis / precision:
request method / canonical target / body digest:
challenge nonce opaque ref:
payment identifier / idempotency opaque ref:
single-use and concurrent request rule:
expiry / replay handling:
server-computed expected tuple:
request_id / challenge_id:
resource_contract_id / resource_revision / content hash:
payment_offer_id / offer_revision:
principal / purpose / entitlement scope:
amount / asset / network / recipient:
method / target / body digest:
issued_at / expires_at / nonce:
expected tuple canonical hash:
challenge artifact hash:
license terms URL/hash:
human-readable fallback:
contact/negotiation path:
cache behavior for 402/offer:
canonical public content behavior:
search crawler exception:
unverified requester behavior:
unsupported agent behavior:
offer_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
requirement_delivery_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
test evidence_id:
approved_by / approved_at:
rollback payment_offer_id / offer_revision:
[ ] price unit は heterogeneous な request を黙って同一価値扱いしない
[ ] price に resource revision、rights scope、term、expiry がある
[ ] 402 count、quote count、wallet submission を revenue と呼ばない
[ ] `request_id → challenge_id → offer revision → exact resource/amount/asset/network/recipient/scope/expiry/nonce` が一意に結ばれている
[ ] client が返した amount、recipient、resource を信用せず、server の current offer から expected tuple を再計算する
[ ] security challenge と payment challenge の status/header/bodyを混用していない
[ ] unverified/spoofed requester を paid-demand principal と数えない
[ ] human と known search crawler の fallback/exception を確認した
[ ] unsupported payment client を無限 retry や origin amplification にしない
[ ] `SYNTHETIC` / `SANDBOX` offer を `LIMITED_LIVE` / `LIVE` revenue へ混ぜず、SQL projection の TEST/REAL も同じ contract で照合した

書式 10 — Payment / settlement / fee / cash reconciliation

Section titled “書式 10 — Payment / settlement / fee / cash reconciliation”

payment lifecycle を append-only で記録し、provider settlement と実際の銀行・wallet cash を照合する。credential や秘密鍵は記録しない。

# Payment and cash ledger
machine_access_contract_id / contract_version:
request_id / trace_id:
challenge_id / challenge_revision:
payment_offer_id / offer_revision:
payment_requirement_id / requirement_revision: N/A | provider alias
payment_proof_id / proof_revision:
payment_event_id / event_sequence / predecessor_payment_event_id:
provider_transaction_id:
settlement_id / cash_reconciliation_id:
principal_id / resource_contract_id / resource_revision:
environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVE
accounting_environment: TEST | REAL
protocol family / protocol version:
payment method / rail / network / asset / currency:
gross amount:
provider/facilitator fee:
network fee:
tax/withholding/royalty allocation:
refund/dispute reserve:
net settlement expected:
payment destination opaque ref:
challenge/proof binding:
challenge artifact hash:
proof artifact opaque ref / hash:
proof-covered request_id / challenge_id:
request method / canonical target / body digest:
resource / offer / principal / allowed-use scope:
amount / asset / network / recipient:
issued_at / expires_at / nonce opaque ref:
server-recomputed expected tuple hash:
proof-presented tuple hash:
exact tuple match result:
payment lifecycle:
requirement issued state / at:
authorization state / at:
submission state / at:
provider acceptance state / at:
settlement state / at:
finality/confirmation state / at:
refund state / at:
reversal state / at:
dispute state / at:
payment idempotency key opaque ref:
duplicate payment check:
replay check:
amount/currency/recipient match:
offer expiry/version match:
principal/resource match:
request/challenge/proof single-use match:
provider settlement statement ref:
wallet/bank transaction opaque ref:
bank/wallet cash amount observed:
cash observed_at:
FX valuation policy/time ref:
settlement-to-cash difference:
unreconciled reason / owner / due_at:
cash component line:
cash_line_id / component_type:
source payment_event_id / provider_transaction_id:
amount / currency / base-currency amount:
FX source / valuation time:
component idempotency key:
correction/supersedes cash_line_id:
proof_verification_state: VERIFIED | UNKNOWN | N/A | FAILED
payment_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
settlement_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
cash_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
evidence ids:
correction/supersession ref:
[ ] requirement、authorization、submission、acceptance、settlement、cash を別 stage にした
[ ] `request_id → challenge_id → offer revision → payment_proof_id → payment_event_id → settlement_id → cash_reconciliation_id` が exact contract/version/environment で結ばれている
[ ] authorization は challenge が `ISSUED` かつ未失効の時間窓内で、一つの buyer proof が一 request/challenge を一度だけ authorize する
[ ] proof が覆う method、target、body digest、resource、principal、amount、asset、network、recipient、expiry、nonce を server の current offer から再計算した
[ ] challenge artifact と proof artifact の hash、single-use、expiry、nonce、replay を検査し、client が返した tuple を正本にしていない
[ ] settlement/refund/reversal は新しい buyer proof を要求せず、exact predecessor event と provider transaction evidence で進める。originating proof の参照と proof の再消費を混同しない
[ ] chain/network confirmation と accounting finality を同一語で扱っていない
[ ] gross、fee、tax、refund reserve、net、FX basis を再計算できる
[ ] duplicate/replay/idempotency を proof、provider transaction、principal、resource で検査した
[ ] provider report と bank/wallet cash の差額 owner と due_at がある
[ ] exact settlement/offer amountをauthoritative FX basisでbase currencyへ写し、gross + FX adjustment - fee - tax - refund - reversal とbank/wallet receiptを再計算した
[ ] refund/reversal/fee/tax/FX componentは source event + component typeでidempotentで、同じnegative eventを複数控除していない
[ ] request occurred ≤ challenge issued ≤ authorization occurred ≤ settlement occurred の順序を確認し、provider recorded_atの遅着をevent occurred_atへ書き換えていない
[ ] private key、seed phrase、token、bank detail 本文を保存していない

書式 11 — Entitlement / delivery / receipt / idempotency ledger

Section titled “書式 11 — Entitlement / delivery / receipt / idempotency ledger”

支払済みでも、正しい resource revision を正しい principal へ一度だけ届けたとは限らない。payment と delivery を別 ledger で照合する。

# Entitlement and delivery
machine_access_contract_id / contract_version:
request_id / trace_id:
challenge_id / challenge_revision: N/A | exact ID
payment_proof_id / proof_revision / payment_event_id / event_sequence: N/A | exact IDs
provider_transaction_id / settlement_id: N/A | exact IDs
entitlement_event_id / entitlement_revision / entitlement_event_sequence:
delivery_event_id / delivery_revision / delivery_attempt:
delivery_receipt_id:
principal_id / resource_contract_id / resource_revision:
environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVE
accounting_environment: TEST | REAL
entitlement scope:
allowed method/action:
resource/asset scope:
quantity/quota:
geography/product/model scope:
valid_from / expires_at:
repeat/cache/download rights:
delegation/sublicense:
entitlement issuance basis: PAYMENT_SETTLEMENT | CONTRACT_LICENSE |
AUTHENTICATED_API
entitlement basis exact event/contract/auth ref:
settlement requirement:
pre-settlement provisional grant: PROHIBITED | NON_DELIVERY_RESERVATION_ONLY
token/capability opaque ref:
revocation status/ref:
delivery request id / idempotency key ref:
requested resource revision:
delivered resource revision:
content/artifact digest:
delivery status / HTTP status:
bytes/result class:
origin/cache result:
delivery started_at / completed_at:
provider receipt ref:
client acceptance/ack ref:
accepted outcome definition:
accepted_outcome_event_id / event revision:
accepted chain reconciliation:
request-to-challenge: N/A | exact match | mismatch
challenge-to-verified-proof: N/A | exact match | mismatch
proof-to-authoritative-settlement: N/A | exact match | mismatch
basis-to-delivery-time-valid-entitlement: exact match | mismatch
entitlement-to-delivered-resource-revision: exact match | mismatch
delivery-to-delivery-receipt: exact match | mismatch
receipt-to-client-acceptance: UNKNOWN | exact match | mismatch | NOT_DUE
first missing/conflicting exact ID:
retry count / reason:
duplicate-delivery check:
partial/truncated/stale check:
payment-without-delivery check:
delivery-without-entitlement check:
wrong-principal/resource check:
refund/retry/remediation path:
entitlement_state: GRANTED | REVOKED | UNKNOWN | N/A | FAILED
entitlement_evidence_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
delivery_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
acceptance_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
evidence ids:
[ ] payment path の entitlement は authoritative settlement 後にだけ `GRANTED` とし、pre-settlement reservation を delivery-eligible にしていない
[ ] payment path は request、challenge、verified proof、settlement、entitlement、delivery、receipt を exact ID で結び、contract ID だけで join していない
[ ] contract/API path の challenge/payment を N/A にする場合、entitlement basis の exact contract/auth event と理由がある
[ ] entitlement は principal、resource、method、quota、expiry に scoped
[ ] paid-but-undelivered、delivered-without-entitlement、wrong revision を検査した
[ ] retry が二重課金・二重配信を起こさない idempotency contract がある
[ ] HTTP 200、bytes送信、provider receipt を client acceptance と自動的に同一視していない
[ ] read/resource deliveryはdelivered bytes/result、204やzero-byte tool actionはfirst-party action/result receiptで成功を表し、`bytes > 0`を全deliveryへ強制していない
[ ] payment pathでは settlement occurred ≤ entitlement grant/valid_from ≤ delivery occurred ≤ accepted outcome occurred を検査し、各recorded_atの遅着を別時計として残した
[ ] revoke、refund、再配信、期限切れの処理がある

書式 12 — Maturity / guardrail / decision readout

Section titled “書式 12 — Maturity / guardrail / decision readout”

request から retained contribution までの maturity を閉じる。未成熟をゼロにせず、integrity と safety を business result より先に評価する。

# Maturity and decision readout
machine_access_contract_id / contract_version:
maturity_snapshot_id / snapshot_as_of / outcome_cutoff_at:
guardrail_snapshot_id:
traffic_policy_id / policy_revision:
payment_offer_id / offer_revision:
meter_id / meter_revision:
control/treatment or comparison ref:
environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVE
accounting_environment: TEST | REAL
outcome maturity contract:
payment finality due_at:
delivery acceptance due_at:
refund/reversal due_at:
referral conversion due_at:
cannibalization review due_at:
retention/renewal due_at:
stage state/count:
verified eligible demand:
payment requirement:
authorization:
settlement:
entitlement:
delivery:
accepted outcome:
cash:
refund/reversal/dispute maturity:
human referral conversion maturity:
cannibalization maturity:
state reconciliation:
N/A:
UNKNOWN:
0:
FAILED:
OBSERVED:
NOT_DUE:
total expected units:
difference:
data-quality gate:
identity coverage:
duplicate/retry handling:
payment-delivery-cash join:
policy/version coverage:
maturity coverage:
correction/supersession coverage:
DQ state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
guardrail readout:
human/known-search false action:
latency/5xx/origin load:
payment-delivery mismatch:
double charge/replay/fraud/refund:
rights/privacy/security incident:
existing-product cannibalization:
founder/support capacity:
guardrail state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
primary KPI readout:
matured paid-access gross from eligible, accepted, cash-reconciled delivery:
allocated matured license contribution:
incremental matured AI-referred human gross contribution:
matured refunds/reversals/fraud/unreconciled delivery loss:
seller-borne tax:
protocol/facilitator/network/PSP fees:
incremental edge/origin/egress/storage/API/AI variable cost:
support and founder rescue time cost:
measured cannibalized contribution:
unreconciled cash shortfall not already excluded/allocated:
matured_incremental_machine_contribution:
uncertainty / comparison limitation:
primary state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
each KPI line-item record:
component name:
value / unit / currency:
state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
state reason / N/A authority:
scope / cutoff / maturity:
evidence_id / evidence class:
first failing or unknown stage:
decision_state: STOP | PAUSE | UNKNOWN | INCONCLUSIVE | CHANGE | MAINTAIN | EXPAND
kill_switch_status: READY | ACTIVE | RECOVERY_REVIEW | CLOSED | UNKNOWN
next action mode:
claim permitted:
claim prohibited:
one next change:
owner / due_at:
evidence ids:
[ ] original environment は保持され、TEST facts は REAL economics から除外された
[ ] paid-access unit は verified eligible request、current rights、exact challenge/proof、authoritative settlement を通った
[ ] same principal/resource revision の entitlement が delivery 時点で `GRANTED` かつ有効で、delivery receipt、accepted outcome と exact ID で結ばれ、後続 revoke/refund/reversal を反映した
[ ] provider statement と bank/wallet cash が照合され、差額は控除または UNKNOWN のまま残る
[ ] cash shortfall を paid gross/lossから既に除外・配賦していなければ一度だけ控除し、未配賦残差があれば primary state は UNKNOWN である
[ ] refund/reversal/dispute、delivery acceptance、cannibalization の maturity due_at を過ぎた
[ ] license/referral/accepted action が同じ価値を表す場合に二重加算していない
[ ] cost、tax、fee、support/founder time、measured cannibalization を同じ scope と期間で控除した
[ ] 全 formula component に state/reason/evidence があり、必要 component が UNKNOWN / FAILED / NOT_DUE なら primary state も同様に閉じた
[ ] 一つでも必須 gate が UNKNOWN / FAILED / NOT_DUE なら settlement gross を mature KPI へ昇格していない
[ ] cutoff前にoccurredしたがsnapshot後にrecordedされたeventは現snapshotから除外し、拒否・時刻改変せず次のsuperseding snapshotで再計算した
kill-switch override / STOP:
rights, security, privacy, identity compromise, double charge,
paid-but-undelivered, human/search harm, other hard veto
PAUSE / UNKNOWN:
required evidence missing, stale, contradictory, unreconciled, provider incident
INCONCLUSIVE:
integrity valid, but exposure or maturity insufficient for action
CHANGE:
one versioned policy/price/scope/instrumentation change with bounded retest
MAINTAIN:
current bounded action remains inside approved economics and guardrails
EXPAND:
current rights + identity + settled delivery + cash + maturity + guardrail evidence
supports only the proposed incremental scope

書式 13 — Kill-switch / incident / rollback / recovery

Section titled “書式 13 — Kill-switch / incident / rollback / recovery”

kill-switch は revenue experiment の一部ではなく、active harm を止める独立 control である。activation authority と recovery authority を分離できるようにする。

# Kill-switch and incident
machine_access_contract_id / contract_version:
kill_switch_policy_id / policy_revision:
incident_id / kill_switch_event_id:
environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVE
accounting_environment: TEST | REAL
kill-switch scope:
host/path/resource:
operator/behavior/principal:
policy/action mode:
payment offer/provider:
entitlement/delivery:
origin/API/tool:
predeclared triggers:
rights revoke/expiry/conflict:
identity/key/credential compromise:
spoof/verification failure:
personal/confidential data exposure:
security incident:
human/known-search false block/charge:
double charge/replay/fraud:
settled-but-undelivered:
wrong principal/resource/revision:
refund/reversal spike:
latency/5xx/origin/cost threshold:
provider/network/facilitator incident:
founder/support capacity threshold:
trigger observed_at / evidence_id:
severity / impact scope:
activated_at / activated_by:
activation receipt:
override action mode:
traffic response after activation:
payment intake disabled?:
entitlement/delivery disabled?:
provider/contact escalation ref:
customer/operator notice ref:
evidence preservation ref:
rollback target exact pairs:
traffic_policy_id / policy_revision:
payment_offer_id / offer_revision:
meter_id / meter_revision:
resource_contract_id / resource_revision:
event_schema_id / schema_revision:
rollback executed_at / by:
rollback verification probes:
cash/payment/delivery reconciliation owner:
refund/remediation owner:
root cause state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
containment state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
recovery state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
recovery requirements:
root cause corrected evidence:
affected principals/resources reconciled:
payment/refund/delivery closed:
rights/identity current:
negative probes pass:
independent approval:
revised policy/offer/version:
resume prohibited until:
resume decision owner / approver:
resumed_at / activation scope:
post-incident review due_at:
preventive action / owner / due_at:
machine_access_contract_id / contract_version:
drill_id:
environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVE
accounting_environment: TEST | REAL
scenario:
started_at / expected completion:
actual containment_at:
payment stop verified:
delivery stop verified:
known-search/human fallback verified:
rollback verified:
alert/owner receipt verified:
evidence retained:
drill_state: N/A | UNKNOWN | 0 | FAILED | OBSERVED | NOT_DUE
gap / next drill due_at:
  • KILL_SWITCH は自動的な全データ削除ではない。reconciliation、refund、incident evidence を保持する。
  • kill-switch解除は、原因修正、negative probe、reconciliation、独立承認が揃うまで自動化しない。
  • provider障害時の失敗を、顧客・agentへ無限402や無限retryとして返さない。

書式 14 — 14-day pilot / Codex handoff

Section titled “書式 14 — 14-day pilot / Codex handoff”

14 日は payment/access の診断 pilot であり、search ranking、index inclusion、citation、renewal、長期 cannibalization の成熟を保証しない。known search crawler と人間を treatment から除外し、低リスク資産で一変更だけ試す。

# Fourteen-day pilot
machine_access_contract_id / contract_version:
pilot_id / design_revision:
decision_id / decision_version:
start_at / end_at:
owner / independent_reviewer:
environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVE
accounting_environment: TEST | REAL
preconditions:
rights_state / evidence:
identity_verification_state / evidence:
instrumentation_state / evidence:
payment test state / evidence:
delivery test state / evidence:
kill-switch drill state / evidence:
eligible resource class:
eligible behavior/operator/identity tier:
excluded humans/search crawlers:
excluded private/PII/state-changing resources:
unit of assignment:
stable allocation/hash rule:
control action mode:
treatment action mode:
one changed variable:
payment_offer_id / offer_revision:
exposure/cost/cash cap:
Day 1-2 — shadow and DQ:
tasks:
required evidence:
proceed gate:
Day 3 — freeze:
cohort_id / assignment_revision:
resource_contract_id / resource_revision:
rights_basis_id / rights_revision:
identity_observation_id / identity_revision:
event_schema_id / schema_revision:
traffic_policy_id / policy_revision:
payment_offer_id / offer_revision:
meter_id / meter_revision:
stop/guardrail thresholds:
freeze receipt:
Day 4-12 — bounded live or sandbox treatment:
monitoring cadence:
payment/delivery/cash reconciliation cadence:
guardrail owner:
deviation handling:
Day 13-14 — close and reconcile:
new exposure stop_at:
late settlement/refund handling:
maturity_snapshot_id / snapshot_as_of / outcome_cutoff_at:
decision review_at:
primary KPI / baseline:
target_state: UNKNOWN | NOT_DUE | OBSERVED
approved target or blank-until-baseline:
driver metrics:
guardrail metrics:
kill-switch triggers:
pilot result: NO_SIGNAL | ALLOW_FOR_DISCOVERY | LICENSE_NEGOTIATE |
METERED_GO_LIVE | BLOCK_OR_THROTTLE | INCONCLUSIVE | UNKNOWN
decision_state: STOP | PAUSE | UNKNOWN | INCONCLUSIVE | CHANGE | MAINTAIN | EXPAND
kill_switch_status: READY | ACTIVE | RECOVERY_REVIEW | CLOSED | UNKNOWN
next action mode:
claim permitted:
long-lag outcomes still NOT_DUE:
one next change / owner / due_at:

production authority は人間に残す。Codex へ渡すのは redacted、bounded、reversible な実装・分析 scope に限る。

# Codex handoff
machine_access_contract_id / contract_version:
handoff_id / handoff_revision:
pilot_id / design_revision:
environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVE
accounting_environment: TEST | REAL
objective:
non-goals:
allowed files / systems:
prohibited files / systems:
allowed tools/network/data:
production mutation allowed?: NO | exact human-approved boundary
redacted input refs:
synthetic fixture refs:
event_schema_id / schema_revision:
traffic_policy_id / policy_revision:
payment_offer_id / offer_revision:
meter_id / meter_revision:
expected invariants:
required DQ checks:
negative/adversarial probes:
build/test/verification commands:
rollback command/runbook ref:
must not receive:
personal data:
raw IP/cookie/session:
customer prompt/output:
API/OAuth credential:
private key/seed phrase:
bank/wallet secret:
contract/customer secret:
requested output:
facts:
assumptions:
UNKNOWN/NOT_DUE:
actionable findings:
changed files:
test evidence:
residual risks:
rollback evidence:
Codex may recommend action?: YES | NO
Codex may activate policy/payment/live delivery?: NO
human production authorizer:
independent reviewer:
approved_at / approval evidence_id:
handoff hash:
次の machine_access_contract と redacted evidence を review してください。
1. resource が search/training/retrieval/agent/API/MCP/unknown に適切に分離されているか。
2. rights、identity、policy、offer、payment、delivery、cash、maturity を逆算していないか。
3. UA-only、402、authorization、settlement、HTTP 200 を revenue/accepted outcome と誤認していないか。
4. N/A、UNKNOWN、0、FAILED、OBSERVED、NOT_DUE が定義どおりか。
5. human と known search crawler の false action、replay、double charge、paid-but-undelivered を検査したか。
6. cost、value、cannibalization、attribution の実測と推計を分けたか。
7. decision priority と kill-switch が upside を上書きするか。
8. long-lag outcome を14日で確定していないか。
credential、個人情報、customer secret を出力せず、各 finding に source ref、
影響する state/action、最小修正、再検証 command、残る UNKNOWN を返してください。
live policy、決済、配信、refund、rollback の実行判断はしないでください。

一つの contract につき一行を append-only で残す。successful case だけを残さない。

machine_access_contract_id / contract_version:
resource/behavior/operator scope:
rights_state / identity_verification_state:
environment: SYNTHETIC | SANDBOX | LIMITED_LIVE | LIVE
accounting_environment: TEST | REAL
current action mode:
verified eligible demand state:
payment / delivery / cash / maturity states:
primary KPI state/value ref:
guardrail state:
decision_state:
kill-switch status:
first failed/unknown/not-due stage:
one next change:
owner / due_at:
evidence bundle ref:
post-decision realized review due_at:
[ ] 14 書式の全 record が同じ machine_access_contract_id と exact version で結ばれている
[ ] original environment を保持し、固定写像で導出した TEST/REAL と不一致の row を拒否した
[ ] 全書式は空欄コピー用で、実績・benchmark・非 synthetic の記入例を置いていない
[ ] 氏名、raw IP、cookie、会話、prompt/output、credential、private key、seed phrase を貼っていない
[ ] human referral、search、training、retrieval、user fetch、browser agent、API/MCP、unknown を分けた
[ ] multi-purpose bot を排他的な一分類へ潰していない
[ ] rights、identity、payment、delivery、cash、maturity を request から逆算していない
[ ] robots.txt を access authorization、license、秘密保護と同一視していない
[ ] UA-only を verified identity、payer、licensee、end-user consent と呼んでいない
[ ] action mode は一 request 一 terminal action で、overlap precedence と exception がある
[ ] kill-switch override と decision priority の STOP / PAUSE / UNKNOWN が upside より先に評価される
[ ] N/A、UNKNOWN、0、FAILED、OBSERVED、NOT_DUE を混ぜていない
[ ] external benchmark から target を捏造せず、baseline未確定の空欄と承認済み threshold を分けた
[ ] cost、value、cannibalization、attribution の observed と estimated を分けた
[ ] HTTP 402、quote、authorization、submission を revenue、cash、delivery と呼んでいない
[ ] settlement、entitlement、delivery、acceptance、bank/wallet cash、refund maturity を別 stage にした
[ ] duplicate/retry、idempotency、replay、double charge、paid-but-undelivered を検査した
[ ] provider/edge dashboard の sampling を payment/cash 正本にしていない
[ ] known search crawler と人間の false block/charge が guardrail と kill-switch に入っている
[ ] rights revoke、identity compromise、PII/security、payment/delivery failure の kill-switch を drill した
[ ] kill-switch解除に原因修正、reconciliation、negative probe、独立承認を要求した
[ ] 14日 pilot を長期 ranking、citation、refund、renewal、cannibalization の確定証拠にしていない
[ ] Codex handoff は redacted/synthetic、bounded scope で、live activation authority を渡していない
[ ] chapter と SQLite companion の相対リンクを確認した
[ ] decision register に NO_SIGNAL、negative、failed、unknown、inconclusive も残す