MANDATE LAB Open the invoice workspace ↗

TRUSTED AGENTS / PROGRAMMABLE CAPITAL

Under budget.
Still the wrong payment.

A $42 fake invoice can pass a $250 spending limit. Check it against an approved order before allowing the payment.

One invoice. Two rule sets. See the difference.

What is this? / شرح مبسّط

A mandate is the owner’s permission slip. This lab checks spending rules, then tests an extra requirement: the payment must match an approved invoice that has not already been paid. Request text is context only; no AI model reads it.

تخيّل تعطي مساعدًا ذكيًا ميزانية وتحدد شو مسموح له يسوي. هنا تجرب الطلب وتشوف: ينقبل، يحتاج موافقتك، أو ينرفض. وبعدها نضيف شرط: الفاتورة والمستلم والمبلغ يطابقون طلبًا وافقت عليه، وما تندفع الفاتورة مرتين. هذه محاكاة فقط؛ ما فيها محفظة ولا أموال حقيقية.

Simulation onlyNo live AI, connected wallet or real funds. Decisions and receipts stay in this tab and reset when the page reloads.

THE MISSING CHECK / INVOICE MATCHING

What authorizes this payment?

SANDBOX

PROPOSED PAYMENT
INVOICE / ORDER
RECIPIENT

BUDGET RULES ONLY

Ready to test

A $250 auto-approval limit is not an invoice approval.

+ EXACT INVOICE APPROVAL

Ready to test

Match an approved order. Use it only once.

Inspect the approved record

This owner-approved record is a test fixture. In production, an authenticated owner—not the agent or invoice sender—must create it.

Each case starts two separate ledgers with a $1,000 budget. Selecting a case restarts them. These are separate from the spending-rule lab below. No wallets or live payments.

REPRODUCIBLE / NOT A PROMISE

Try to break the check.

Run 20 deterministic checks, including replay, altered recipients, expired approvals and the false-delivery blind spot.

Not run in this session.

01 / TRY A REQUEST

Test the boundaries

Edit the rules
Build your own test

Values are illustrative USD equivalents, not token quantities or live quotes. Text does not change permissions; the structured fields above determine the decision.

READYNO DECISION YET

Start with a normal payment.

Choose “Buy inference” above to see which rules pass.

    03 / INSPECT THE EVIDENCE

    Decision receipts

    0

    No receipts yet.

    Local simulated decision receipts. Select a row to inspect or approve a pending request.
    RequestUSD eq.Decision
    Your first test will appear here.

    SHA-256 links make edits detectable relative to a trusted copy. This browser-only log is not signed or externally anchored; it is not proof of identity, settlement or an immutable audit trail.

    Connection to YZi’s thesis / production requirements

    Why this experiment

    YZi Labs’ Season 5 thesis highlights delegated authority, policy enforcement and auditable agents. This lab explores that boundary, alongside CZ’s call for crypto infrastructure that agents can use.

    Read YZi Labs’ thesis ↗
    CZ’s remarks, reported by Binance News ↗

    Before using real money

    The invoice check here is working logic, but it runs against a local fixture. A production version needs authenticated order issuance, enforcement at the signing or execution boundary, durable atomic accounting, cross-session replay protection, trusted recipient identity and independently verified delivery evidence. Revocation prevents future authorized actions; it does not reverse settled transactions.

    No production security claim, investment offer, partnership or endorsement is implied.

    Built on Hatchable