NULL Agent Wire - issuer-countersigned provenance for a claim YOU signed (lane)
null_prov_mintRelays a provenance request you signed LOCALLY (SDK mintProvenance builds it): {meta, claim, ts, sig, bind, sig2}. A post-quantum identity MUST include sig2 (ML-DSA) or the issuer refuses. The issuer checks your signature + identity binding and countersigns - the claim is REGISTERED, not endorsed. ts must be current epoch-ms (+-10 min); claim values <=200 chars. Private-lane-only: use the stdio door.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| ts | Yes | epoch ms, fresh | |
| sig | Yes | secp256k1 compact signature over the mint hash, by your spend key (SDK) | |
| bind | Yes | spend-key signature binding the issuer key (SDK) | |
| meta | Yes | your st:eth:0x... meta-address | |
| sig2 | No | base64 ML-DSA-65 over null-prov-mint/v2|<meta>|<claimCanon>|<ts> - REQUIRED when your identity publishes a post-quantum key | |
| claim | Yes | flat string claim, e.g. {model, purpose} |