Logical principal comprising a public Credential ID plus four purpose-separated keypairs.
What this representsThis entry is recorded as Security principal in the Items section.
Statement status: Source descriptionThis records how the historical source describes the system.
- Id
idStable catalogue identity. Ordinary edits should preserve it. - key.logical
- Name
nameRecorded inventory field; its exact name and structure are preserved. - Logical CRE8 Key
- Kind
kindStructural role of this entry within the catalogue. - security_principal
- Description
descriptionHuman-language explanation preserved by the inventory. - Logical principal comprising a public Credential ID plus four purpose-separated keypairs.
- Modality
modalityStrength or status of the source statement. - source_description
- Subcomponents
subcomponentsRecorded inventory field; its exact name and structure are preserved. - Credential ID
- Authentication keypair
- Delegation keypair
- Authorship keypair
- Confidentiality/Box keypair
Random immutable public identifier used to locate the logical Key, versions, public keys, status, policy, lineage, and historical signatures; never a bearer secret.
What this representsThis entry is recorded as Public identifier in the Items section.
Statement status: Explicit immutableThe source explicitly presents this as immutable or non-configurable.
- Id
idStable catalogue identity. Ordinary edits should preserve it. - key.credential_id
- Name
nameRecorded inventory field; its exact name and structure are preserved. - Credential ID
- Kind
kindStructural role of this entry within the catalogue. - public_identifier
- Description
descriptionHuman-language explanation preserved by the inventory. - Random immutable public identifier used to locate the logical Key, versions, public keys, status, policy, lineage, and historical signatures; never a bearer secret.
- Modality
modalityStrength or status of the source statement. - explicit_immutable
- Example
exampleRecorded inventory field; its exact name and structure are preserved. - cre8_k_7PK1BHZ4...
Ed25519 K_auth pair for request signing and possession proof; binds method, path, body digest, timestamp, nonce, and Credential ID. Cannot mint, change permission, author-sign, or decrypt.
What this representsThis entry is recorded as Cryptographic component in the Items section.
Statement status: Source descriptionThis records how the historical source describes the system.
- Id
idStable catalogue identity. Ordinary edits should preserve it. - key.authentication
- Name
nameRecorded inventory field; its exact name and structure are preserved. - Authentication keypair
- Kind
kindStructural role of this entry within the catalogue. - cryptographic_component
- Description
descriptionHuman-language explanation preserved by the inventory. - Ed25519 K_auth pair for request signing and possession proof; binds method, path, body digest, timestamp, nonce, and Credential ID. Cannot mint, change permission, author-sign, or decrypt.
- Modality
modalityStrength or status of the source statement. - source_description
- Algorithm
algorithmRecorded inventory field; its exact name and structure are preserved. - Ed25519
- Fields
fieldsRecorded inventory field; its exact name and structure are preserved. - K_auth_private
- K_auth_public
Ed25519 K_delegate pair for child minting, permissions, reductions, rotation, suspension/revocation requests; alone cannot perform ordinary operations, publish, or decrypt.
What this representsThis entry is recorded as Cryptographic component in the Items section.
Statement status: Source descriptionThis records how the historical source describes the system.
- Id
idStable catalogue identity. Ordinary edits should preserve it. - key.delegation
- Name
nameRecorded inventory field; its exact name and structure are preserved. - Delegation keypair
- Kind
kindStructural role of this entry within the catalogue. - cryptographic_component
- Description
descriptionHuman-language explanation preserved by the inventory. - Ed25519 K_delegate pair for child minting, permissions, reductions, rotation, suspension/revocation requests; alone cannot perform ordinary operations, publish, or decrypt.
- Modality
modalityStrength or status of the source statement. - source_description
- Algorithm
algorithmRecorded inventory field; its exact name and structure are preserved. - Ed25519
- Fields
fieldsRecorded inventory field; its exact name and structure are preserved. - K_delegate_private
- K_delegate_public
Ed25519 K_author pair for signed objects, credentials/statements, versions, amendments, co-signatures, and provenance.
What this representsThis entry is recorded as Cryptographic component in the Items section.
Statement status: Source descriptionThis records how the historical source describes the system.
- Id
idStable catalogue identity. Ordinary edits should preserve it. - key.authorship
- Name
nameRecorded inventory field; its exact name and structure are preserved. - Authorship keypair
- Kind
kindStructural role of this entry within the catalogue. - cryptographic_component
- Description
descriptionHuman-language explanation preserved by the inventory. - Ed25519 K_author pair for signed objects, credentials/statements, versions, amendments, co-signatures, and provenance.
- Modality
modalityStrength or status of the source statement. - source_description
- Algorithm
algorithmRecorded inventory field; its exact name and structure are preserved. - Ed25519
- Fields
fieldsRecorded inventory field; its exact name and structure are preserved. - K_author_private
- K_author_public
X25519 K_box pair for encrypted messages/shares/keyring packages and shared secrets; cannot authenticate, sign, mint, or change policy.
What this representsThis entry is recorded as Cryptographic component in the Items section.
Statement status: Source descriptionThis records how the historical source describes the system.
- Id
idStable catalogue identity. Ordinary edits should preserve it. - key.box
- Name
nameRecorded inventory field; its exact name and structure are preserved. - Confidentiality/Box keypair
- Kind
kindStructural role of this entry within the catalogue. - cryptographic_component
- Description
descriptionHuman-language explanation preserved by the inventory. - X25519 K_box pair for encrypted messages/shares/keyring packages and shared secrets; cannot authenticate, sign, mint, or change policy.
- Modality
modalityStrength or status of the source statement. - source_description
- Algorithm
algorithmRecorded inventory field; its exact name and structure are preserved. - X25519
- Fields
fieldsRecorded inventory field; its exact name and structure are preserved. - K_box_private
- K_box_public
Credential ID and eight private/public component values; legacy field naming conflicts with purpose-oriented K_auth/K_delegate/K_author/K_box names.
What this representsThis entry is recorded as Client payload in the Items section.
Statement status: Source descriptionThis records how the historical source describes the system.
- Id
idStable catalogue identity. Ordinary edits should preserve it. - key.bundle
- Name
nameRecorded inventory field; its exact name and structure are preserved. - Nine-field credential bundle
- Kind
kindStructural role of this entry within the catalogue. - client_payload
- Description
descriptionHuman-language explanation preserved by the inventory. - Credential ID and eight private/public component values; legacy field naming conflicts with purpose-oriented K_auth/K_delegate/K_author/K_box names.
- Modality
modalityStrength or status of the source statement. - source_description
- Legacy fields
legacy_fieldsRecorded inventory field; its exact name and structure are preserved. - credential_id
- assertion_private_key
- assertion_public_key
- delegation_private_key
- delegation_public_key
- access_private_key
- access_public_key
- control_private_key
- control_public_key
Server should never persist CRE8/long-lived Author private keys; client custody and component-limited blast radius are central.
What this representsThis entry is recorded as Security boundary in the Items section.
Statement status: Explicit immutableThe source explicitly presents this as immutable or non-configurable.
- Id
idStable catalogue identity. Ordinary edits should preserve it. - key.private_custody
- Name
nameRecorded inventory field; its exact name and structure are preserved. - Client private-key custody
- Kind
kindStructural role of this entry within the catalogue. - security_boundary
- Description
descriptionHuman-language explanation preserved by the inventory. - Server should never persist CRE8/long-lived Author private keys; client custody and component-limited blast radius are central.
- Modality
modalityStrength or status of the source statement. - explicit_immutable