One decision before a supplier payment moves.
The customer actor is an autonomous agent with independently delegated authority and budget. A signed BuyerPaymentMandate binds the request; the RunOnProof Payment Decision evaluates federal evidence and economic risk, charges at most once, and returns a signed replayable proof without executing the supplier payment.
Signed buyer mandate
Agent, buyer, supplier, invoice, payee, destination, amount, purpose, validity, and limits are cryptographically bound.
One RunOnProof Payment Decision
RELEASE_PAYMENT_TO_SUPPLIER is the only Phase 1 commercial intent. Former paid operations are migration aliases only.
One 0.79 USDC fee
One request, one decision, and at most one x402 charge on Base. No subscription or recurring billing.
Canonical solution and intent map
| Solution | Role | Capabilities | Taxonomy |
|---|---|---|---|
| RunOnProof Payment Decisiondecision-gate-release-payment-to-supplier | Commercial solution | decision-gate.release-payment-to-supplier.v1 | 1 state · 1 intent |
Exact x402 resource
| Resource | Endpoint | Price | Intent mapping |
|---|---|---|---|
| decision-gate-release-payment-to-supplierdecision-gate.release-payment-to-supplier.v1 | POST /v1/us/decision-gates/release-payment-to-supplier | 0.79 USDC | 1 mapped intents |
Machine discovery
GET https://api.runonproof.com/.well-known/runonproof-intents.json
GET https://api.runonproof.com/.well-known/ai-catalog.json
GET https://api.runonproof.com/.well-known/agent-card.json
GET https://api.runonproof.com/.well-known/mcp/server-card.json
GET https://api.runonproof.com/.well-known/agent-map.json
GET https://api.runonproof.com/v1/openapi.json
POST https://api.runonproof.com/v1/agent/mcpUnsupported coverage, insufficient mandate authority or budget, stale mandatory evidence, economic-risk uncertainty, or settlement uncertainty fails closed. The result always keeps payment_executed=false.
External index evidence
| Channel | State | Evidence |
|---|---|---|
| virtuals | EXTERNALLY OBSERVED | evidence |
| bazaar | EXTERNAL PROOF REQUIRED | Independent external proof required |
| agentic.market | EXTERNAL PROOF REQUIRED | Independent external proof required |
| agentverse | EXTERNAL PROOF REQUIRED | Independent external proof required |
| agenthansa | EXTERNAL PROOF REQUIRED | Independent external proof required |
| near | EXTERNAL PROOF REQUIRED | Independent external proof required |
Runtime descriptors never imply registry or marketplace indexing. Account, review and cache blockers remain explicit.