GIOS Studioalpha · read-only
Broker policy not-binding
Broker decision — HOW is this authorized request brokered? Fail-closed verification of the ApprovalToken, capability plan, BINDING policy allow, vault references, and scope binding. A single-use grant is issued only on brokered; it authorizes nothing to execute here — only the future Provider Execution runtime (V4) consumes it.
deniedbinding: trueno consumption0 vault refs#2fb86e44
approval token:apptoken:appr-evidence-okbinding policy:policy:eval-desktop-dryruncapability:capperm:emb-a-fs
Verification reasons (fail-closed)
policy_not_bindingdeny
policy decision "policy:eval-desktop-dryrun" is not binding (mode dry_run) — the Broker enforces only binding decisions
Broker grant & provider handoff (V4 readiness only)
No grant — the request was denied (fail closed). Nothing to hand to the Provider Execution runtime.
Request inputs
execution reasonbroker brk-policy-not-binding
consumed approvalappr-evidence-ok
binding policy ref (M41)policy:eval-desktop-dryrun
execution intent (M50)—
brokered at ordinal100