Location
§1.1.5 and §22.7.
Problem
§1.1.5 says Human Continuity links agent requests to the human “on whose behalf” the agent acts, but the protocol defines no assertion or verification of that delegation relationship.
Current Web Bot Auth explicitly says that multiple signatures do not by themselves express authorization, delegation, or consent: §4.2.2.
Proposed -01 resolution
Keep delegation semantics outside core:
- describe Web Bot Auth and Human Continuity as independent signals;
- state that their coexistence does not establish delegation, authorization, or consent; and
- revise §22.7 to assume that the origin established the agent–human association through a separate authenticated authorization process.
Location
§1.1.5 and §22.7.
Problem
§1.1.5 says Human Continuity links agent requests to the human “on whose behalf” the agent acts, but the protocol defines no assertion or verification of that delegation relationship.
Current Web Bot Auth explicitly says that multiple signatures do not by themselves express authorization, delegation, or consent: §4.2.2.
Proposed
-01resolutionKeep delegation semantics outside core: