PRODUCT ECOSYSTEM
Seven capability families. One governed trust model.
Each capability maps to persona, API, evidence, authority, architecture and maturity.
01REFERENCE IMPLEMENTATION
Identity & Resolution
Resolve authoritative identifiers, correlate governed aliases and maintain stable
item/model/batch context without redefining the official identifier.
- Thing Identity Resolver
- Identifier Governance
- Alias / Correlation
- Carrier Resolution
- Experiences
- Consumer / Owner · DPP Viewer · Economic Operator
- API
- Resolver API
- Evidence
- Resolution decision · alias provenance · authority context
- Architecture
- P03
02PILOT READY
DPP & Regulatory
Apply versioned product-group profiles to authoring, validation, publication, registration
orchestration and lifecycle maintenance.
- DPP Regulatory Engine
- Product-group Profiles
- Validation & Publication
- Registry Orchestration
- Reconciliation
- Lifecycle
- Experiences
- Economic Operator · DPP Viewer · Regulator / Customs
- API
- DPP API · Lifecycle API
- Evidence
- Validation · publication · registry status · lifecycle evidence
- Architecture
- P04
03REFERENCE IMPLEMENTATION
Relationship & Rights
Model ownership, custody, possession, maintenance, delegation and mandate as distinct
evidence-backed relationships.
- Ownership
- Custody
- Possession
- Delegation
- Mandate
- Maintenance Relationship
- Experiences
- Consumer / Owner · Distributor · Field Operations
- API
- Claims API · Mandate API
- Evidence
- Relationship claim · transfer evidence · delegation lifecycle
- Architecture
- P03
04REFERENCE ARCHITECTURE
Policy & Disclosure
Separate authentication, authorization, mandate, purpose and field-level disclosure so a
successful login never implies unrestricted data access.
- Authentication
- Authorization
- Purpose
- Mandate
- Field-level Disclosure
- PAP / PIP / PDP / PEP
- Experiences
- All Experiences
- API
- Authentication · Claims context
- Evidence
- Policy decision · mandate context · composed-view record
- Architecture
- P02
05PILOT READY
Evidence & Provenance
Bind claims, lifecycle changes and external interactions to source provenance, trusted time,
integrity evidence and immutable audit.
- Evidence Store
- Evidence Manifest
- Provenance
- Immutable Audit
- Trusted Time
- Evidence Renewal
- Long-Term Verification
- Experiences
- Operations Admin · Regulator · Developer
- API
- Evidence API · Events
- Evidence
- Evidence manifest · digest · trusted time · audit event
- Architecture
- P05
06REFERENCE ARCHITECTURE
Device & Thing Trust
Extend trust from passive carriers to hardware-backed identity and runtime appraisal with a
risk/capability-selected L0–L3 assurance model.
- Device Identity
- Certificate Lifecycle
- Hardware-bound Key
- L0–L3 Assurance
- Attestation
- Runtime Appraisal
- Enforcement
- Experiences
- Device / Thing Operations
- API
- Device Attestation API
- Evidence
- Certificate status · attestation evidence · appraisal decision
- Architecture
- P05/P06
07PILOT READY
Integration & Operations
Coordinate API, event, workflow, connector, reconciliation, observability and administration
without absorbing external authority.
- API Gateway
- Connectors
- Events & Webhooks
- Registry Integration
- Reconciliation
- Observability
- Administration
- Experiences
- Developer · Operations Admin · External systems
- API
- Connector API · Events / AsyncAPI
- Evidence
- Connector status · retry/reconciliation trail · integration audit
- Architecture
- P06