The horizontal (agent↔agent) trust complement to the vertical payments chain. Validate an A2A v1.0 agent-card.json — discovered at /.well-known/agent-card.json — then walk the delegated-authority trust chain into KYA-OS attestation and a spend-policy summary. Checks card schema, signature / verification-method block, extension URIs, and every delegation hop for no scope escalation, validity windows, expiry, and spend caps. Issues one PASS / WARN / FAIL trust determination plus a single OpenChainGraph execution_hash receipt (chain_depth: 0 — this node is a chain root). Client-side. Zero PII. Educational / simulation.
Computed client-side via WebCrypto SHA-256 over cgCanon({policy_parameters, output_payload}). Chain root — parent_hashes: none · chain_depth: 0. Feeds ART-04, ART-02, PTG-01.