Proof  /  Inspect

Eight record types.

Every GeoProof record is one of these.

A record is a small JSON object with a schema name, carried inside a signed envelope (an XYO bound witness). This page shows what each type is for and what it carries. The full specification is not published yet; this is the anatomy, not the rulebook.

Observations

Something happened.

Eventoxyon.geoproof.event.v1
producer
Which product or module emitted ite.g. geopresence
subject
What it is aboutan address, a device, a content fingerprint
observedAt
When, in UTC milliseconds
location
Optional: latitude, longitude, accuracy, altitude
claims
Optional: the specific facts being asserted
Presenceoxyon.geoproof.presence.v1
everything above
An event, where location is required
method
How the location was obtainedgps · beacon · wifi · cell · manual
try it
Create and sign one →
Attestationoxyon.geoproof.attestation.v1
everything above
An event that makes a statement
statement
What is being attested, in words
example
Oxyon's attestation of its own standard →

Verification and connection

Someone else checked it — and it was recorded.

Receiptoxyon.geoproof.receipt.v1
proofHash
The fingerprint of the exact proof judged
verifier
The address of the key that judged it
verdict
verified · rejected · inconclusiveEarned from validation, never requested
score, reasons
Optional: confidence, and why
verifiedAt
When
Anchor batchoxyon.geoproof.anchor.batch.v1
proofHashes
The fingerprints committed together
network
Where they are anchoredXYO Layer One in production
anchoredAt
When

When the truth changes

History is never deleted. It is added to.

A judge overturns a ruling. A certificate is revoked. A key is replaced. None of these erase the old record — they add a new one that says not to stop there.

Supersessionoxyon.geoproof.supersession.v1
supersededHash
The record no longer current
replacementHash
Optional: what replaces it
reason
Required — a supersession cannot be silent
effectiveAt, issuer
When, and who says so
Revocationoxyon.geoproof.revocation.v1
revokedHash
The record withdrawn, with no replacement
reason
Required — a revocation cannot be silent
effectiveAt, issuer
When, and who says so
Key rotationoxyon.geoproof.rotation.v1
oldAddress, newAddress
The key being retired and its successor
signatures
Both keys sign the same envelope — the old key endorses the new
effectiveAt, reason
When, and optionally why

The envelope

What carries a record.

Records are XYO payloads. The signed envelope — an XYO bound witness — lists who signed, the fingerprints of the records it carries, and their schemas. GeoProof defines the records; the envelope and the cryptography are XYO's.

{
  "schema": "network.xyo.boundwitness",
  "addresses": ["99cb3bf68968d93c1c2f1e56bcc219f8d4df74f1"],
  "payload_hashes": ["3779a2fc347b6a21ee9e86ea909570561a86dd311ff3742ad09666cb6c6bfe4b"],
  "payload_schemas": ["oxyon.geoproof.attestation.v1"],
  "previous_hashes": [null],
  "$signatures": ["e76637c9…a1d43a"]
}

That is the real envelope around Oxyon's attestation of its own standard. Check its signature →