Silent Decay Detection
Verifies that a previously valid credential, policy, authority token, or source trust basis that has expired or been superseded is detected and blocked without receiving an explicit revocation event. Absence of revocation is not authorization. The system must independently verify basis freshness against external orientation state — registry status, policy versions, credential expiry, sanctions state — and block execution when the basis has silently decayed past its validity window.
Operational Purpose & Scope
Credential issued 90 days ago with a 90-day validity window. No revocation event was received. The system must independently detect that the credential has expired and block execution. Absence of revocation does not extend validity.
Verification Context
- Target Scope:
only-gate trust validation; credential and policy lifecycle; external orientation discovery; basis freshness verification without explicit revocation events - Audit Strategy:
exact-match - Verification Metrics:
gate_statusrejection_reasondecay_detected_without_eventrevocation_requiredfail_closed_on_missing_orientationunsafe_default_detected - Framework Origin:DGV v0.5.0 Governance Extensions
- Mandatory:Yes — must pass for certification
Governance Risk & Penalty
Expected Outcome
- pass:
false - gate_status:
"CLOSED" - rejection_reason:
"credential_expired_silent_decay" - revocation_required:
false - decay_detected_without_event:
true
Explore this card in 3D
Open DGV-TC-059 in the interactive scenario replay. This illustrates the test flow; it does not run the verifier or generate a cryptographic receipt.
Open DGV Live →