Diligence

Legal scenarios for signed receipts.

This matrix explains the software boundary in five common buyer-review scenarios. AgentGuard records technical receipts. Customers operate their agents and choose their review process.

ScenarioLikely named partyLegal theoryAgentGuard roleMitigation
A. Agent sends incorrect customer communicationCustomer operating the agentMisstatement, contract, consumer protectionWhen signing is configured, the receipt records model, policy result, projected cost, and a triggered cap when one exists. It does not sign the selected governance posture.Use capability tiers, reviewer cascade for high-impact messages, and application-level blocked-send policies
B. Receipt presented in regulator reviewCustomer presenting the recordRecord weight and evidentiary challengeVerifier checks signed-record integrity, chain linkage, and sequence onlyExport the vendor due-diligence file and preserve raw local logs under the organization's retention process
C. Foreign-origin model used after opt-inCustomer account ownerVendor diligence and procurement reviewThe hosted consent receipt records selected model-family and outcome labels. The current SDK validates the receipt ID but does not bind those labels to the current call.Compliance posture blocks. Standard posture requires a receipt ID accepted by the hosted consent endpoint. Velocity posture does not require one.
D. Regulated workflow uses unsupported provider routeCustomer configuring routeBAA, retention, residency, or vendor-review gapThe signed provenance block preserves registry-derived and integrator-configured hosting, jurisdiction, BAA, and retention fields. It does not prove the underlying provider facts.Review the actual route, configuration, current provider terms, and applicable contract outside AgentGuard
E. Signing-key compromise allegedKey custodian and affected operatorAuthenticity challengeVerification cannot distinguish the legitimate custodian from an attacker who holds the private key. Retained chains can still reveal internal gaps or broken links.Rotate keys, pin public keys, preserve independently retained chain-head checkpoints, and document the compromise boundary