BengarTrust infrastructure

Product

Approvals PREVIEW

A person decides, and signs exactly what they were shown.

What it is

Why it exists

How it works

Who uses it

Security boundary

  • The passkey proves presence. It does not sign the approval — a separate key held by Custody does.
  • Self-approval is refused, and one person cannot satisfy a two-person rule twice.
  • If Custody's answer is lost, the result is UNKNOWN and is held for a person. It is never retried.

Example flow

A 40,000 ₺ purchase

  1. The agent asks. Policy answers REQUIRE_APPROVAL and the action does not proceed.
  2. An approver opens it, and reads the amount, resource and agent as the Gateway states them.
  3. They authenticate with their passkey; Custody signs; the approval is recorded.
  4. The agent's next attempt carries the discharged obligation and proceeds.

Current status

CapabilityStatusWhere
See the approval queue
Reading the queue and one approval. Deciding is APPROVER.
READ ONLY/projects/:id/approvals
Approve or reject, with a passkeyAVAILABLE/projects/:id/approvals/:id
Enrol a passkeyAVAILABLE/security/passkeys

Related API

Full API reference →

Documentation