Evidence · Independent consequence verification
Execution is an event.
Consequence must be proven.
StableMind Evidence preserves the attributable lineage of a consequential machine action and supports independent Proof of Consequence after execution. It keeps a hard boundary between what an executor reported, what an independent verifier observed, and what the evidence can actually support.
PRODUCT / EVIDENCEPUBLIC PROOF EFFECTS / 0BUILD / SIO14
EVIDENCE / SYNTHETICINDEPENDENT VERIFIER
EXPECTED CONSEQUENCEidentity.user.disabletarget: users/482
expected: account.enabled=false
collateral: no privilege expansion
PERMITBOUND
EXECUTION RECEIPTSUCCESS REPORTED
VERIFIERREAD ONLY
OBSERVATIONPOST-ACTION
EXPECTED2 / 2
COLLATERAL0 VIOLATIONS
PROOF OUTCOMEVERIFIEDExpected state observed independently; prohibited collateral effects not observed.
Synthetic architecture illustration. This public page does not inspect a customer system or establish external Production Proof of Consequence.
The evidence distinction
01 / FOUR TRUTHS
An audit trail can record a story. Proof has to survive disagreement.
REQUEST LINEAGEWhat was asked and under whose authority?
Evidence binds the semantic action to its delegation root, policy decision, approval state, Action Permit, target, and request digest so the later outcome cannot drift away from the authorization that preceded it.
EXECUTION RECEIPTWhat did the executor report?
A certified connector may report success, failure, partial completion, or an error. That receipt is attributable execution evidence, not independent confirmation that the intended consequence exists.
INDEPENDENT OBSERVATIONWhat does a separate witness see afterward?
A distinct read-only verifier observes the target state after execution using its own workload identity, connector certificate, and credential class. The executor is not allowed to verify itself.
PROOF OF CONSEQUENCEWhat conclusion does the evidence support?
A signed proof compares expected postconditions and prohibited collateral effects with the independent observation, preserving uncertainty instead of converting missing data into success.
Request to consequence
02 / SEVEN BOUNDARIES
Proof starts before execution, because you cannot invent the expected outcome afterward.
- 01
Bind the authorization lineageAnchor the consequence record to the exact delegation root, semantic request, deterministic policy decision, required approvals, Action Permit, target, and request digest. Proof remains attributable to the action that was actually authorized.
- 02
Write the consequence contract before executionDefine expected postconditions, prohibited collateral effects, verification deadline, rollback or compensation references, and the independent verification profile before the machine acts. The success criterion cannot be quietly rewritten after seeing the result.
- 03
Preserve the execution receiptExecution Fabric contributes its signed, attributable report of what the certified executor attempted and returned. The receipt is necessary lineage, but it does not get the final word about reality.
- 04
Observe with an independent read-only verifierA separate verifier identity inspects the resulting target state through an independently governed, read-only path. Separation matters because the component that caused the change cannot simply attest that its own work succeeded.
- 05
Compare expected state with observed stateEach required postcondition and prohibited collateral condition is evaluated deterministically against the signed observation. Missing, stale, contradictory, or incomplete evidence remains visible rather than being averaged into a reassuring green light.
- 06
Issue the Proof of Consequence outcomeThe proof records VERIFIED, PARTIAL, MISMATCHED, or UNVERIFIABLE and binds that conclusion to the exact contract and observation. A mismatch can require containment, investigation, compensation planning, or delegation suspension.
- 07
Carry proof forward without turning it into authorityDownstream settlement, assurance, audit, customer acceptance, and recovery processes may consume the proof. None of them may reinterpret a favorable proof as new machine authority or resurrect an expired permit.
Proof outcomes
03 / NO FORCED GREEN
The evidence can say success, mismatch, uncertainty, or something in between.
VERIFIEDRequired postconditions are independently supported.
The expected state is satisfied and prohibited collateral effects are not observed within the governed verification envelope. VERIFIED describes the consequence evidence, not customer acceptance, settlement, or future authority.
PARTIALSome required consequence conditions are supported.
The available independent evidence confirms part, but not all, of the expected outcome. Partial verification remains a first-class state rather than being rounded upward into success.
MISMATCHEDThe observed state conflicts with the contract.
A required postcondition failed or prohibited collateral effect was observed. The proof can drive investigation, containment, compensation planning, or authority suspension without pretending the original action never happened.
UNVERIFIABLEThe evidence cannot support a reliable conclusion.
Missing, stale, inaccessible, contradictory, or invalid evidence produces UNVERIFIABLE. StableMind does not convert absence of proof into proof of success.
Where proof matters
04 / CONSEQUENCE
The more consequential the action, the less useful “the API returned 200” becomes.
AGENTIC PAYMENTSWas value actually transferred to the intended destination?
A processor acceptance or connector response is not settlement. Independent payment evidence can reconcile destination, amount, state, and timing before consequence reserve or downstream financial processes advance.
PRIVILEGED INFRASTRUCTUREDid the environment end in the state the permit described?
A restart, firewall change, role assignment, or production mutation can be checked against independent state after execution, including collateral conditions that must remain unchanged.
ENTERPRISE SAASDid the business object change without widening privilege?
Identity, CRM, procurement, HR, and finance actions can be verified against expected records and prohibited side effects instead of trusting only the same write path that made the change.
RECOVERY & INCIDENTSDid containment actually restore the required state?
Guardian intervention can preserve and request evidence, but containment is not claimed successful until the resulting state is independently observed. Recovery evidence cannot silently restore stale authority.
One chain, separated responsibilities
Evidence becomes credible when the witnesses cannot impersonate one another.
Authorization, execution, observation, and proof remain separately attributable even though they belong to one lineage.
04Independent verifierread-only post-action observation
05Evidence / Proof of Consequencesigned supported conclusion
Constitutional boundaries
06 / PROOF IS NOT POWER
Evidence can strengthen truth. It cannot rewrite authority.
01The executor cannot verify itself.
The verifier uses a distinct workload identity, connector certificate, and read-only credential class. Self-attestation remains execution evidence, not independent Proof of Consequence.
02Expected outcomes are signed before execution.
Postconditions and prohibited collateral effects cannot be retrofitted after the fact to make an inconvenient result look compliant.
03Missing evidence remains missing.
When required evidence is unavailable or stale, the outcome is UNVERIFIABLE. Absence is never silently promoted into VERIFIED.
04Proof does not grant or restore authority.
Even a VERIFIED consequence cannot issue a new Action Permit, release credentials, broaden delegation, or reactivate authority that expired or was revoked.
05Proof is not customer acceptance or payment.
Technical consequence verification, bilateral acceptance, invoicing, cleared payment, revenue recognition, and realized customer value remain separate states with separate evidence.
06Evidence preserves contradiction.
A MISMATCHED or PARTIAL result is not an inconvenience to hide. It is precisely the information a governed machine-action system must surface while response options are still available.
For evaluators
07 / ASK BETTER QUESTIONS
Questions to ask any platform claiming verifiable AI actions.
- What is Proof of Consequence?
- A signed conclusion produced by comparing a pre-execution consequence contract with an independent post-action observation bound to the exact authorization and execution lineage.
- Is an AI agent audit log the same as Proof of Consequence?
- No. An audit log can preserve events and provenance, which are valuable evidence inputs. Proof of Consequence additionally requires an independently observed resulting state and governed comparison against expected and prohibited outcomes.
- Why can’t the executor verify the result?
- Because the same component that caused the state change would be certifying its own work. StableMind separates executor and verifier identity, connector, and credential class so consequence verification has an independent witness.
- What happens when evidence is missing?
- The result becomes UNVERIFIABLE rather than presumed successful. This makes uncertainty operationally visible and prevents optimistic defaults from becoming institutional truth.
- Can Proof of Consequence authorize the next action?
- No. Evidence can inform policy, assurance, settlement, investigation, or future human decisions, but it cannot create delegated authority or issue an Action Permit.
- Does VERIFIED mean the customer accepted the outcome?
- No. StableMind keeps Proof of Consequence, customer acceptance, settlement, payment, revenue recognition, and realized value as separate evidence states.
Public truth boundary
This page explains the Evidence architecture. It does not manufacture external proof.
Examples on this page are synthetic and are labeled as such. StableMind does not claim that this public website has independently verified a customer consequence, observed a live customer environment, established settlement, closed customer acceptance, recognized revenue, or produced realized customer value. The current product lineage remains governed by the same Public Truth Contract used throughout stablemind.io.
content_state=ARCHITECTURE_AND_PRODUCT_INFORMATION_WITH_SYNTHETIC_EVIDENCEexternal_proof_claims=0customer_acceptance_claims=0website_session_creates_authority=falsepublic_signup_active=false
The customer path
Start with the action you need to govern. Proof belongs to the same chain.
ActionGate remains the commercial front door. SIO10 preserves Evidence while making Consequence Capital understandable before signup, but public account activation remains reserved for SIO19 and the first governed-action experience remains SIO21. Visiting or reading this page creates zero authority and zero external proof.
Interactive evidence
Crack open the proof package.
The Proof Explorer lets you inspect a browser-local synthetic evidence envelope artifact by artifact, then change independent evidence quality while keeping the original authorization and executor receipt fixed.