Section 33 of 101
32. Identity Verification
Stable section ID: S05-CON-006-SECTION-33 · 34 content blocks
Identity Verification establishes whether a discovered BIOS node, Interface, Cartridge, service, user, robot, or external system is the entity it claims to be.
Verification methods may include:
cryptographic device credentials;
digital signatures;
secure hardware identity;
manufacturer certificates;
System05 Registry confirmation;
trusted physical marking;
supervised enrollment;
inspection of serial and manufacturing records;
multi-factor human authentication.
Identity Verification shall evaluate:
identifier validity;
issuer trust;
credential validity period;
revocation status;
identity duplication;
consistency with physical markings;
consistency with Type Registration;
consistency with installed location;
consistency with previous lifecycle records.
The BIOS shall assign an identity status:
verified;
provisionally verified;
physically identified but digitally unauthenticated;
expired;
revoked;
duplicate;
inconsistent;
unknown.
The required verification strength shall reflect the authority and criticality of the entity. A passive finish Cartridge may use durable physical identification, while a control or Safety Cartridge may require hardware-backed cryptographic authentication.
A verified identity does not imply compatibility, health, certification, or authorization. These shall be evaluated separately.
Identity failure shall not erase the discovered object. The object shall remain recorded in an untrusted or quarantined state for investigation.
Replacement of a damaged identifier shall preserve the original Instance Identity and create a traceable re-identification event.