Automatic and manual clamps Automatic clamps Nonce replay rejection. Tight timestamp windows. Per-Key rate limits. Per-action rate limits. Maximum active children. Maximum delegation depth. Maximum child lifetime. Resource and namespace scoping. Audience restrictions. Required signature combinations. Parent and ancestor status checks. Automatic descendant suspension when an ancestor is suspended. Automatic descendant revocation when an ancestor is revoked. One-time enrollment claims. Claim expiration. Component-specific status. Deny precedence. Immutable policy versions. Immutable historical signatures. Detection clamps Generate alerts for: Repeated invalid signatures. Replayed nonces. Unexpected new network or geography. Rapid minting. Permission expansion. Additional Primary Author creation. Delegation component rotation. Bulk export. Subtree revocation attempts. Sudden messaging or publishing spikes. Use of a Key after a long period of inactivity. Simultaneous use from substantially different locations. Requests against forbidden endpoints. Manual clamps The Owner can: Suspend one component. Suspend a logical Key. Quarantine a child. Freeze a subtree. Revoke a child. Revoke a subtree. Reduce permissions. Reduce child ceilings. Disable additional minting. Force component rotation. Freeze the entire tenant. Revoke all Owner sessions.