01 / SUMMARY
The operational view.
3 outputs remain under this policy. Registration is evidence; each distribution context is still evaluated separately.
02 / RIGHTS SCOPE
What the token says.
✓distribute
✓operate-twin
✓stream
×model-training
×paid-media
×post-event-access
!ai-disclosure
!archive-session-logs
!disable-twin-at-expiry
Evaluation rule: a valid signature does not itself authorise use. The requester, action, territory, channel, language, asset and current status must all match. Unknown or contradictory conditions fail closed.
03 / TECHNICAL ENVELOPE
How it can be verified.
sha256:4a5d5ad22e9979d207f876b4a4b22845520b307338da1d518d409ae30fb398c2SHA-25604 / MEDIA BINDINGS
Rights meet provenance.

AAP-AST-2026-B6AE
urn:avatarz:provider:heygen · 11 AUG 2026 · 14:51:55 UTC
- EXACT BINDING
- sha256:53148f8f708e92a3305acea3d86c4798fb1700eb933be8d16e823d88f9f7ff9c
- MIME TYPE
- video/mp4
- C2PA MANIFEST
- unavailable — reference binding only
05 / AUDIT LOG
An explainable history.
Events are appended, correlated and integrity-protected. A transition changes current authority without deleting the original credential or previous decisions.
urn:avatarz:org:future-forum
944d22ea✓urn:avatarz:identity:maya-chen
ad77c2c9✓did:web:proof.avatarz.dev
bca2bffc✓did:web:proof.avatarz.dev
1dfdb8ce✓urn:avatarz:org:future-forum
03f683e4✓06 / RAW CREDENTIAL
Portable by design.
The decoded payload below is the actual signed VC — independently verifiable against /.well-known/jwks.json. The signing key belongs to the demo tenant, not a production issuer.
{
"@context": [
"https://www.w3.org/ns/credentials/v2"
],
"id": "AAP-LIC-2026-4D21",
"type": [
"VerifiableCredential",
"LikenessLicenceCredential"
],
"issuer": "did:web:proof.avatarz.dev",
"validFrom": "2026-08-04T14:51:54.260Z",
"validUntil": "2026-08-16T14:51:54.260Z",
"credentialSubject": {
"id": "urn:avatarz:identity:maya-chen",
"licensee": "urn:avatarz:org:future-forum",
"policy": {
"profile": "https://proof.avatarz.com/ns/odrl/likeness/v1",
"version": "0.1",
"permissions": [
"distribute",
"operate-twin",
"stream"
],
"prohibitions": [
"model-training",
"paid-media",
"post-event-access"
],
"duties": [
"ai-disclosure",
"archive-session-logs",
"disable-twin-at-expiry"
],
"constraints": {
"territories": [
"BE",
"FR"
],
"channels": [
"event-app",
"event-venue",
"owned-social"
],
"languages": [
"en",
"fr"
],
"validFrom": "2026-08-04T14:51:54.260Z",
"validUntil": "2026-08-16T14:51:54.260Z",
"maxAssets": 4
}
}
}
}