ak.schema.applet_registration_epoch_evidence.v1
ak.schema.applet_registration_epoch_evidence.v1 · file: schemas/applet-registration-epoch-evidence.schema.json Versioned Applet service DID evidence used to derive a stable registration epoch and Service signer evidence root. Only did:webvh and did:key are accepted; did:web current snapshots cannot support historical producer verification.
* $ · object
Versioned Applet service DID evidence used to derive a stable registration epoch and Service signer evidence root. Only did:webvh and did:key are accepted; did:web current snapshots cannot support historical producer verification.
allOf · allOf[0] · oneOf[2]
oneOf · oneOf[0] · object
did ·
string · $ref ./common-ids.schema.json#/$defs/webvh_didCanonical bare did:webvh identifier used at method-native registration, document and evidence boundaries. Role admission is enforced separately.
pattern:
^did:webvh:[^\s:/?#]+:[^\s/?#]+$method_version_evidence · object
method ·
const "did:webvh"enum:
"did:webvh"oneOf · oneOf[1] · object
did ·
stringpattern:
^did:key:[^\s/?#]+$method_version_evidence · object
method ·
const "did:key"enum:
"did:key"* did ·
string · $ref ./common-ids.schema.json#/$defs/didCanonical bare DID used for registration, DID method resolution and owner-published current resolution. It contains no path, query or fragment and MUST project through the registered method adapter to exactly one did_core_id.
pattern:
^did:[a-z0-9]+:[^\s/?#]+$* document_digest ·
string · $ref ./account-operations.schema.json#/$defs/sha256_digestpattern:
^sha256:[0-9a-f]{64}$* method_version_evidence · object · $ref ./applet-registration-epoch-transcript.schema.json#/$defs/did_method_version
oneOf · oneOf[0] · object
* method ·
string (enum)enum:
"did:webvh" "did:key"* unversioned_refetch ·
const falseenum:
falseoneOf · oneOf[1] · object
* method ·
const "did:webvh"enum:
"did:webvh"* unversioned_refetch ·
const falseenum:
false* method ·
stringpattern:
^did:[a-z0-9]+$version_id · allOf[2]
allOf · allOf[0] ·
$ref #/$defs/non_empty_string · $ref #/$defs/non_empty_stringallOf · allOf[1] ·
? · $ref string-profiles.schema.json#/$defs/non_typed_identifier_floorLexical floor of every identifier value category that does NOT own the ak: namespace (opaque_correlation, document_local_symbol, external_system_identifier, registry_catalog_symbol, unregistered_object_identifier); see common-fields.md 2.1. The negative lookahead IS the floor: it mechanically proves the value cannot be an ak: typed id, which maxLength alone can never prove, while admitting every other value the field already accepted. It deliberately constrains nothing else - the per-field convergence direction (a registered typed kind, or a tighter opaque profile) is decided per object family, so a pattern-only floor composes with whatever profile the field already carries instead of pre-empting it.
pattern:
^(?!ak:)version_time ·
$ref #/$defs/timestamp · $ref #/$defs/timestamp* unversioned_refetch ·
boolean* accepted_signing_keys · array<$ref ./applet-registration-epoch-transcript.schema.json#/$defs/accepted_signing_key>
items · object · $ref ./applet-registration-epoch-transcript.schema.json#/$defs/accepted_signing_key
* key_ref ·
$ref #/$defs/did_url · $ref #/$defs/did_url* public_key_digest ·
$ref #/$defs/digest · $ref #/$defs/digestSource
- registry row:
spec/v1/artifacts/registry/schema-registry.json - schema document:
spec/v1/artifacts/schemas/applet-registration-epoch-evidence.schema.json