Every OpenChainGraph tool exports a verifiable artifact. Each artifact carries an execution_hash: SHA-256 over sorted-key JSON of the policy parameters and output payload, computed in-browser via WebCrypto. No data leaves the browser. Every decision is reproducible, traceable, and chainable; the output of one tool is the precondition for the next. Spec v0.4.1 adds Compute Binding (server-side kernels make every gpu:false node agent-native over MCP) and Export Profiles (the chaingraph_export umbrella: xlsx / pdf / csv / xbrl / vc, the last a W3C Verifiable Credential), atop the v0.3 ISO 20022 / LEI·did:key / OKF layer and the v0.2 provenance envelope (W3C PROV-DM, in-toto, Ed25519, OpenTelemetry, DCAT 3.0). Every addition sits outside the hash preimage.
Every live deterministic node above: a real risc0 groth16-bn254 receipt, journal byte-identical to the kernel's own compute() output, independently replayable and verifiable offline.
v0.4 is additive and fully backwards-compatible: all v0.1–v0.3 artifacts remain valid and the execution-hash preimage is unchanged. It adds three things: Compute Binding, server-side kernels that let an agent call a gpu:false tool over MCP and get a verifiable artifact in one round-trip, no browser; Export Profiles, the chaingraph_export umbrella that renders a verified artifact as xlsx / pdf / csv / xbrl for human, pipeline, and regulator consumption, generated downstream of and excluded from the hash; and (v0.4.1) the Verifiable Credentials profile (§13.11), a deterministic W3C VC 2.0 view of any artifact, hash-anchored, no new proof. The v0.3 ISO 20022 / identity / OKF layer is carried forward below.
A registered server-side kernel computes a gpu:false node's decision and returns a verifiable v0.4 artifact in a single MCP round-trip. compute_capability declares dispatch; compute_mode records it. Zero-egress preserved.
Generated, hash-excluded renderings of a verified artifact (xlsx / pdf / csv / xbrl) served by the read-only export_artifact MCP tool. XBRL maps to EBA COREP (capital/liquidity) for regulator-ready submission. A view, never a fact.
An optional JSON-LD overlay maps payload fields (amount, party, agent) to ISO 20022 business elements plus the external code lists (ISO 4217 / 3166 / 9362 / 13616 / 17442). Aligned, not registered. The hash preimage is untouched.
📘 Integration guide →The suite as an OKF bundle: one markdown concept per tool, auto-generated from chaingraph.json. The narrative knowledge layer beside the DCAT catalog. Concepts are knowledge, never decision artifacts.
Optional ISO 17442 LEI on publisher / tool identity, and did:key as the recommended keyid, binding the provenance layer to regulator-grade legal-entity and self-describing signer identity.
A published @context URL makes every artifact interpretable by any W3C PROV processor (regulatory tooling, DORA/Basel audit platforms, and semantic web reasoners) with zero changes to the core schema.
An optional buildType URI identifies the exact hash construction algorithm (https://ainumbers.co/chaingraph/context/v0.2#WebCryptoSHA256 by default). Required if a vendor uses a non-standard preimage construction.
audit_signature is upgraded from a bare string to an in-toto Attestation Framework envelope: payloadType, base64url payload, and a signatures[] array. Compatible with Sigstore and Cosign verifiers.
Optional Ed25519 signing over the execution_hash (via WebCrypto Ed25519) adds authenticity to the hash's integrity. Any party can verify: regenerate the hash, verify the signature against the vendor's published public key.
execution_hash → spanId; parent_hashes[0] → parentSpanId; root → traceId. Decision chains appear in Datadog, Jaeger, or Grafana Tempo via a one-function adapter, with no new infrastructure required.
7 OpenChainGraph nodes covering AP2 Foundations, Credit-Scoring & DORA/AMLA Conformity.
10 OpenChainGraph nodes covering x402, ACP, EUDI Wallet & Basel 3.1 Reporting.
1 OpenChainGraph node covering PSD3 / PSR Readiness.
10 OpenChainGraph nodes covering Agentic Checkout & Multi-Rail Protocol Comparison.
3 OpenChainGraph nodes covering DORA readiness, Register of Information (RoI) building, and ICT incident classification.
5 OpenChainGraph nodes covering Cross-Protocol Agent Commerce & A2A/MCP Attestation.
8 OpenChainGraph nodes covering Tempo Network. → Guide hub →
6 OpenChainGraph nodes covering Circle Arc Network. → Guide hub →
4 OpenChainGraph nodes covering US Treasury Clearing (FICC). → Guide hub →
7 OpenChainGraph nodes covering Digital Trade Corridor (MLETR / eBL / eUCP / eURC). → Guide hub →
4 OpenChainGraph nodes covering Wholesale Tokenized Settlement (WTS). → Guide hub →
4 OpenChainGraph nodes covering Agent Economy Runtime (AER). → Guide hub →
4 OpenChainGraph nodes covering AI Governance & Conformity (EU AI Act). → Guide hub →
9 OpenChainGraph nodes covering Carbon & Climate Computational Compliance. → Guide hub →
8 OpenChainGraph nodes covering EU/UK/CH T+1 & CSDR Settlement Discipline. → Guide hub →
5 OpenChainGraph nodes covering Post-Quantum Cryptography Migration. → Guide hub →
10 OpenChainGraph nodes covering Sanctions & Export-Control Screening. → Guide hub →
8 OpenChainGraph nodes covering MiCA CASP Lifecycle. → Guide hub →
6 OpenChainGraph nodes covering Tempo / Canton / Arc Extension.
11 OpenChainGraph nodes covering Supply-Chain Traceability, DSCSA, FSMA 204 & Digital Product Passport.
6 OpenChainGraph nodes covering C2PA Content Provenance & AI-Act Marking.
6 OpenChainGraph nodes covering Web Bot Auth, Agent Directory & Key-Rotation Trust.
6 OpenChainGraph nodes covering Software Supply-Chain Integrity, SBOM, SLSA & OpenVEX.
6 OpenChainGraph nodes covering NIS2 Cybersecurity & Operational Resilience.
6 OpenChainGraph nodes covering MCP Governance & Agent Authorization Lifecycle.
6 OpenChainGraph nodes covering EMIR Refit Trade Reporting.
6 OpenChainGraph nodes covering ViDA, VAT in the Digital Age.
6 OpenChainGraph nodes covering EU Deforestation Regulation (EUDR).
6 OpenChainGraph nodes covering AI Governance Frameworks, ISO 42001, NIST AI RMF & GPAI.
8 OpenChainGraph nodes covering Insurance, IFRS 17 & Solvency II.
8 OpenChainGraph nodes covering IRRBB, Interest Rate Risk in the Banking Book.
6 OpenChainGraph nodes covering Client-Side Conversions.
16 OpenChainGraph nodes covering Content Licensing & Rights, Creative Commons, PIL & NFT Metadata.
4 OpenChainGraph nodes covering Prediction Markets & Perpetuals Analytics.
6 OpenChainGraph nodes covering US Mortgage Compliance Core.
6 OpenChainGraph nodes covering US Mortgage Agency & Government Loan Pricing.
9 OpenChainGraph nodes covering Fair Lending & Adverse Action.
5 OpenChainGraph nodes covering AI Decision Logs & Agent Audit Trail.
7 OpenChainGraph nodes covering Cross-Border Payments, CBPR+ / ISO 20022 Conformance.
3 OpenChainGraph nodes covering Remittance Disclosure & Corridor Economics.
7 OpenChainGraph nodes covering Insurance Underwriting & Claims STP.
6 OpenChainGraph nodes covering Corporate Treasury STP.
6 OpenChainGraph nodes covering Revenue Operations & Bank KYB STP.
10 OpenChainGraph nodes covering Onchain Derivatives & DeFi Analytics.
8 OpenChainGraph nodes covering Mandate Loop, Work-Mandate Compiler.
8 OpenChainGraph nodes covering Basel Endgame Capital & ACA Employer Compliance.
5 OpenChainGraph nodes covering Agreements, Reputation & Reserve-Proof Attestation.
8 OpenChainGraph nodes covering Retirement Planning & Decentralized-Identity Verification.
7 OpenChainGraph nodes covering Fund NAV Accuracy & Private-Input Compliance Screens.
1 OpenChainGraph node covering Credential Revocation Status.
5 OpenChainGraph nodes covering EVM Settlement Bridging & On-Ledger Screening.
7 OpenChainGraph nodes covering AIUC-1 Agent-Insurability Evidence.
4 OpenChainGraph nodes covering US State AI Compliance, TRAIGA, AB 2013 & SB 53.
7 OpenChainGraph nodes covering Robinhood Chain Tokenized-Equity Verification.
8 OpenChainGraph nodes covering Time-Value-of-Money Primitives.
1 OpenChainGraph node covering Amortization Schedule Builder.
12 OpenChainGraph nodes covering Consumer Lending & Payroll Calculators.
1 OpenChainGraph node covering Quantized Credit Model Scoring.
3 OpenChainGraph nodes covering Electronic Trade Records & Basel Output Floor.
7 OpenChainGraph nodes covering Bank Capital Ratios & IDV/KYC Evidence.
11 OpenChainGraph nodes covering Global Minimum Tax, Embedded Insurance & Cross-Border Fees.
3 OpenChainGraph nodes covering Rate-Shock Replay & Canton Network Economics.
9 OpenChainGraph nodes covering Agent Evidence Composers & Tempo Fee Mechanics.
2 OpenChainGraph nodes covering x402 v2 Migration.
2 OpenChainGraph nodes covering Crypto Margin & UMR/AANA Readiness.
1 OpenChainGraph node covering Evidence Bundle Tiering.
2 OpenChainGraph nodes covering GDPR Processor Agreements.
12 OpenChainGraph nodes covering Bank Prudential Risk, Large Exposures, CECL & VaR Backtesting, plus the SR 26-2 model passport lifecycle.
8 OpenChainGraph nodes covering Bank Regulatory Reporting, Call Report, Y-9C & FR 2052a.
8 OpenChainGraph nodes covering SOX 404 / ICFR attribute sampling, segregation of duties, IPE integrity, control-test evidence, workpaper bundling, and audit recalculation testing.
2 OpenChainGraph nodes covering OECD BEPS Action 13 CbCR reporting and transfer-pricing interquartile benchmarking.
2 OpenChainGraph nodes covering BCBS 239 risk-data aggregation recompute and data-quality scorecarding.
2 OpenChainGraph nodes covering EMIR trade-repository pairing/matching adjudication and reconciliation-break ageing.
2 OpenChainGraph nodes covering published regulatory-report edit-check execution and period-over-period variance explanation.
2 OpenChainGraph nodes covering Swift CSCF control applicability and coverage plus assessor-independence checking.
2 OpenChainGraph nodes covering model-replication differencing and model test-battery execution.
2 OpenChainGraph nodes covering FATCA/CRS submission checking and responsible-officer remediation closure.
Every multi-step workflow in chaingraph.json, generator-maintained: new chains appear here automatically on the next regenerate.
// execution_hash = SHA-256 over sorted-key JSON of { policy_parameters, output_payload } { "@context": "https://ainumbers.co/chaingraph/context/v0.3/context.jsonld", // v0.3 — W3C PROV-DM alignment (ISO 20022 tools add iso20022-context.jsonld) "chaingraph_version": "0.3.0", "ap2_version": "1.0.0", "mandate_type": "compliance_mandate", // AINumbers internal taxonomy "semantic_profile": "iso20022:pacs.008-subset", // v0.3 — optional, ISO 20022 tools only "tool_id": "art-01-ap2-mandate-chain-validator", "tool_version": "1.0.0", "generated_at": "2026-06-12T14:30:00Z", "buildType": "https://ainumbers.co/chaingraph/context/v0.2#WebCryptoSHA256", // version-independent algorithm URI — unchanged in v0.3 "execution_hash": "sha256:abc123...", "chain": { "parent_hashes": [], // sha256: strings from upstream artifacts "parent_tool_ids": [], "chain_depth": 0 // 0 for root; max(parent depths) + 1 }, "policy_parameters": {}, // tool inputs — included in hash preimage "output_payload": {}, // tool outputs — included in hash preimage "compliance_flags": [], "audit_signature": { // in-toto ITE-6 envelope "payloadType": "application/vnd.openchain.graph+json;version=0.2", "payload": "<base64url canonical JSON of artifact minus audit_signature>", "signatures": [{ "keyid": "<Ed25519 key fingerprint>", "sig": "<base64url Ed25519>" }] } }
All 48 decision tools exposed via tools/call at mcp.ainumbers.co/mcp. Cloudflare Workers, StreamableHTTP transport, 41 named workflow chains, Analytics Engine telemetry.
Machine-readable graph index: every tool's MCP name, mandate_type, inputSchema pointer, chain edges (consumes/feeds). Primary LLMEO surface, linked from llms.txt. Download →
Template registry v1.1: one entry per mandate_type with regulatory citations, stochastic framing rules, escalation conditions, and template_body. Separately licensable. View →
All computation in-browser via WebCrypto and WebAssembly. No data transmitted. No analytics on inputs. No storage. CC BY 4.0; every file attribution-ready.
ART-01 validates AP2 v0.2 (FIDO Alliance / Google). ART-12 validates ACP (OpenAI / Stripe). The only tool suite covering both agentic payment protocol stacks.
chaingraph.json is linked from llms.txt and embedded as JSON-LD on this page. Designed for agentic engineers who fetch the graph index first before tool discovery.
Formal technical specification: artifact schema, hash preimage construction, JSON-LD @context, in-toto envelope, Ed25519 signing, OTel span mapping, DCAT 3.0 Graph Index, Compute Binding (§12), and Export Profiles (§13). Read the spec →
Every v0.3 artifact is a PROV entity (prov:wasGeneratedBy, prov:wasDerivedFrom). The OTel adapter maps execution_hash → spanId so decision chains appear in Datadog, Jaeger, or Grafana Tempo natively.
Animated walkthrough: 7 stages + hashing foundations: artifact creation, chain depth, agent verification, cross-vendor trust, W3C PROV-DM/@context, in-toto/Ed25519 signing, OTel span mapping. Popup quizzes at each stage. Open explainer →
Edit a real OCG v0.4 artifact and watch the execution_hash recompute keystroke-by-keystroke using WebCrypto SHA-256. Tamper controls, character-level diff, and a hash playground demonstrating the avalanche effect. Open sandbox →
Click-to-compose a multi-step compliance workflow (Basel ICAAP). Watch parent_hash links auto-populate in live artifacts and visualize the DAG. Switch to Compare mode to see the legacy paper trail this replaces. Open builder →
Three real scenarios (ICAAP, fraud chargeback, trade finance) side-by-side: the legacy email/PDF audit trail versus hash-linked artifact chains. Written for CFOs, auditors, and regulators, with no technical background needed. Read comparison →
v0.4 adds chaingraph_export: generated, non-canonical renderings of an already-verified artifact. The xlsx profile produces a three-sheet analyst/board workbook. Exports are produced after execution_hash is fixed and excluded from the hash preimage, so the cryptographic anchor travels to the last mile intact. Read guide →
56 concepts for OCG artifacts across generative art, gaming, narrative, AI agents, physical installations, payments infrastructure, scientific computing, digital identity, and 12 regulated industry verticals, with OCG primitives and build-readiness for each. Explore concepts →
If your stack already uses one of these standards, here is how to connect it to OpenChainGraph v0.4.
Map OCG artifacts to PROV entities and activities via the JSON-LD @context. Query chains with SPARQL prov:wasDerivedFrom*. Read guide →
The buildType URI declares the exact hash algorithm. Satisfies SLSA Level 1 out of the box; Level 2–3 via in-toto envelope and Rekor. Read guide →
audit_signature is a full DSSE envelope. Validate the PAE, verify the Ed25519 sig, and slot OCG into any in-toto policy engine. Read guide →
Key generation (WebCrypto, Python, Cosign), keyid derivation, multi-signer co-sign patterns, and key rotation timeline. Read guide →
execution_hash → spanId, parent_hashes[0] → parentSpanId. Decision chains appear natively in Datadog, Jaeger, or Grafana Tempo. Read guide →
Optional v0.3 semantic profile maps payload fields (amount, party, agent) to ISO 20022 business elements + external code lists (ISO 4217/3166/9362/13616/17442). Aligned, not registered. Read guide →
The suite as an OKF bundle: one markdown concept per tool, auto-generated from chaingraph.json. The narrative knowledge layer beside the DCAT catalog. Read guide →
Append anchor_bindings to any OCG artifact to embed RFC 3161 timestamp receipts from Sigstore, DigiCert, Sectigo, or FreeTSA. The execution_hash is anchored without touching the integrity scope (§20). Try Anchor Suite →