Scoped interface details
PastWipe does not publish an unauthenticated production interface reference. API details are provided during a scoped evaluation and are matched to the selected data flow and control point.
Information to prepare
- The asset and actor identifiers already used by the customer environment.
- The policy condition to evaluate.
- The service or gateway that can enforce an accepted or declined result.
- The evidence store and correlation identifiers required for audit.
- Security requirements for authentication, signing, key storage and event delivery.
Review points
Before implementation, agree data minimisation, error handling, replay protection, logging, retention and the expected behaviour when validation is unavailable.
