covenant__check_act
Check a proposed act against a covenant. Denies by default, records if allowed, idempotent to prevent double consumption, and logs to audit chain.
Instructions
[covenant — deny-by-default authority leases] Check (and if allowed, record) a proposed act against a covenant. Deny-by-default. Idempotent on act_id — retries never double-consume budget. Every check lands on the audit chain.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| scope | Yes | ||
| act_id | Yes | ||
| covenant_id | Yes | ||
| amount_minor | No |