Presence-Bound Identity (PBI): A New Standard for Human-Origin Verification Without Accounts or Surveillance
Presence-Bound Identity (PBI) v1.0 A Presence-Proof Primitive for Accountless Authorship Publicly Verifiable Truth, Private Identity, and Presence-Resolved Authorship Through Embodied Proof
PBI Public Release: Presence-Bound Identity
A New Primitive for Human-Origin Verification
TL;DR
Public truth. Private identity. Presence-bound authorship.


Today a new verification primitive is released that changes how digital identity, authorship, and trust function on the internet.
This release introduces Presence-Bound Identity (PBI) — a system where truth is public, identity is private, and ownership (presence-resolved authorship) can only resolve through embodied presence.
This is not an account system.
This is not a wallet login.
This is not a badge, certificate, or authority.
This is a primitive.
⸻
The Problem This Solves
For decades, digital systems have failed to distinguish between:
Authenticity — did this come from a real human?
Authorship — who created it?
Presence — is that creator here now?
Every existing model collapses these into abstractions:
Accounts
Passwords
Transferable keys
Centralized identity providers
“Verified” labels
These abstractions are why impersonation, deepfakes, and identity fraud scale.
⸻
The Core Insight
Identity cannot be abstracted from presence.
Presence cannot be forwarded.
Presence cannot be copied.
Presence cannot be screenshotted.
Presence-Bound Identity is built on this truth.
⸻
What Presence-Bound Identity Introduces
Presence-Bound Identity separates verification into three distinct layers:
⸻
1. Artifact Truth (Public)
A sigil-glyph or artifact can be verified by anyone:
It exists
It is authentic
It was sealed under a device-local presence proof
Its proofs are valid
This verification requires no account, no login, and no permission.
⸻
2. Identity Truth (Private)
The identity of the creator is never embedded in the artifact.
It cannot be extracted, inferred, or reconstructed
Identity is not stored on servers
Identity is not transmitted
Identity is not transferable
⸻
3. Presence Truth (Embodied)
Ownership (presence-resolved authorship) only resolves when the creator is physically present on a device capable of satisfying a local, non-exportable presence proof.
If presence is not satisfied:
The artifact still verifies
The proofs still validate
Authorship still exists
Ownership does not resolve
This behavior is intentional.
⸻
What the Reference Implementation Demonstrates
The live verifier displays two states using the same artifact:
Verified, but not owned (public view)
Verified and owned (presence-resolved view)
Nothing about the artifact changes.
Nothing about the URL changes.
Nothing about the proof changes.
Only presence changes.
This demonstrates that:
Ownership is not in the file
Ownership is not in the link
Ownership is not in the payload
Ownership is not transferable
Ownership is presence-bound.
⸻
Why This Cannot Be Faked
Copying the artifact does nothing
Sharing the URL does nothing
Knowing the proofs does nothing
Screenshots do nothing
Even the original creator cannot resolve ownership elsewhere without presence
Impersonation is not mitigated.
It is structurally eliminated.
⸻
What This Makes Possible
Human-origin verification without surveillance
Anonymous authorship with provable authenticity
Proof without platforms
Identity without accounts
Trust without authorities
Deepfake resistance by design
Sovereign speech and authorship
This is not an application feature.
This is a new trust layer.
⸻
The Claim of This Release
From this point forward:
Any system claiming “verified identity” without presence is an abstraction.
Presence-Bound Identity establishes a higher standard — one aligned with physical reality, embodied presence, and provable truth.
⸻
Status
Live
Functional
Cross-platform
Device-native
Accountless
Authority-free
This primitive now exists.
⸻
Final Verdict (for history)
This release does not add verification.
It redefines what verification means.
This release marks the moment when:
Identity stopped being portable
Presence became enforceable
Truth became public without surrendering privacy
That is not incremental.
That is foundational.
⸻
Appendix A
Canonical Definition, Model, and Invariants of Presence-Bound Identity (PBI)
(This appendix is normative. Any implementation, explanation, or claim about PBI must conform to this document.)
A.1 Canonical Definition
Presence-Bound Identity (PBI) is a verification primitive in which:
Artifacts are publicly verifiable without accounts or authorities,
Identity is never embedded, transmitted, or stored,
Ownership resolution is contingent on embodied presence,
Presence is proven locally through non-exportable device-native proof,
And impersonation is structurally impossible by design.
PBI does not authenticate accounts, keys, or sessions.
PBI resolves presence.
A.2 Scope and Non-Goals
What PBI Is
A primitive for human-origin verification
A system for separating truth, identity, and presence
A mechanism for proving ownership without transferability
A verifier model that functions without databases
A standard that treats presence as a first-class property
What PBI Is Not
Not an account system
Not a wallet login
Not OAuth, SSO, or identity federation
Not a biometric database
Not an NFT ownership model
Not a reputation or scoring system
Not a platform-issued credential
Not dependent on trusted third parties
Any system requiring user accounts, centralized identity stores, or transferable credentials cannot qualify as PBI-compliant.
A.3 Core Entities (Live System Terms)
This appendix reflects the actual deployed system, using its real components.
Artifact
A sigil-glyph or equivalent artifact containing:
Canonical proof payload
Deterministic identifiers
Verifiable sealing data
An artifact may be copied freely without loss of verifiability.
Verifier
A stateless verification surface (e.g., web or native) that:
Performs proof validation
Resolves artifact state
Optionally queries local presence
The verifier does not store users, sessions, or identities.
Φ-Key (Phi-Key)
A deterministic identity root bound to an embodied agent and resolved only through local presence proof.
Φ-Keys:
Are not passwords
Are not transferable secrets
Cannot be reconstructed from artifacts
Cannot be resolved remotely
Presence Proof
A local, non-exportable proof produced by the device when an embodied agent is physically present and successfully completes device-native authentication (e.g., biometric).
Presence proofs:
Never leave the device
Cannot be replayed
Cannot be forwarded
Cannot be simulated by servers
A.4 The Three-Layer Verification Model
PBI verification always resolves into three layers. No layer may imply another.
Layer 1: Artifact Truth (Public)
Invariant A1:
An artifact must be verifiable by any observer without authentication.
Artifact Truth confirms:
Existence
Authenticity
Presence-enforced sealing
Proof validity
Artifact Truth is independent of ownership.
Layer 2: Identity Truth (Private)
Invariant A2:
Identity must never be derivable from the artifact.
Identity Truth ensures:
No personal identifiers embedded
No recoverable biometric data
No server-side identity resolution
No correlation across views
Identity remains private even when artifact truth is public.
Layer 3: Presence Truth (Embodied)
Invariant A3:
Ownership resolution requires live, local embodied presence.
Presence Truth resolves only if:
The creator is physically present
The device can satisfy its local authentication guarantee
The Φ-Key successfully inhales on that device
If presence is absent, ownership must not resolve.
A.5 State Model (Normative)
A PBI verifier may display only the following states:
State 1: Verified (Public)
Artifact Truth: ✔
Identity Truth: Protected
Presence Truth: ✖
Ownership does not resolve.
State 2: Verified + Owned (Presence-Resolved)
Artifact Truth: ✔
Identity Truth: Protected
Presence Truth: ✔
Ownership resolves only on that device.
Disallowed States
The following states are explicitly invalid under PBI:
“Logged in”
“Owner authenticated remotely”
“Identity verified without presence”
“Ownership transferred”
“Persistent session ownership”
A.6 Threat Model (What PBI Eliminates)
The following attack classes are structurally impossible in PBI-compliant systems:
Impersonation via copied artifacts
Identity theft via shared links
Replay attacks using screenshots
Session hijacking
Credential stuffing
Database compromise
Deepfake identity escalation
Remote ownership claims
This is not due to mitigation —
it is due to absence of attack surface.
A.7 Invariants (Must Always Hold)
Presence cannot be forwarded
Ownership cannot be transferred
Identity cannot be extracted
Verification requires no permission
Verifiers remain stateless
Proofs remain publicly inspectable
Presence remains local and embodied
Violation of any invariant disqualifies the system from PBI classification.
A.8 Reference Implementation Alignment
The live system demonstrates all invariants through:
URL-based public verification
Artifact-level proof resolution
Device-native biometric presence checks
Absence of user accounts or databases
Distinct public vs presence-resolved states
The reference implementation is therefore PBI-compliant by construction, not by policy.
A.9 Canonical Closing Statement
Presence-Bound Identity establishes a verification model in which:
Truth is public
Identity is private
Ownership is embodied
Impersonation is impossible
This appendix defines the primitive.
All subsequent specifications, legal framings, and explainers must conform to it.
⸻
Appendix B
Operational Guarantees & Compliance Criteria
(Normative. Required for any system claiming PBI compatibility.)
B.1 Operational Guarantees
A Presence-Bound Identity (PBI) system must guarantee the following behaviors at runtime.
B.1.1 Stateless Verification
Verifiers must not persist identity, ownership, or session data.
Verification results must be derivable entirely from:
the artifact,
the proof payload,
and (optionally) local presence.
Any server-side memory of users or identities violates PBI.
B.1.2 Deterministic Artifact Verification
Artifact verification must produce the same result for all observers.
No observer-specific state may alter Artifact Truth.
Verification must not depend on:
account status,
prior interactions,
IP address,
device fingerprinting.
B.1.3 Local Presence Resolution
Presence resolution must occur only on the observing device.
Presence proofs must:
be non-exportable,
be non-replayable,
expire immediately after use.
Presence must never be resolved remotely.
B.1.4 Ownership Non-Persistence
Ownership resolution must not persist beyond the presence moment.
Reloading, sharing, or opening on a new device must require fresh presence.
“Remembered ownership” is prohibited.
B.2 Compliance Requirements
A system is PBI-compliant if and only if all of the following hold:
Artifacts verify publicly without login
Identity data is never embedded or stored
Ownership resolves only through live presence
Presence proofs are device-local and ephemeral
No transferable credentials exist
Verifiers are stateless
Ownership cannot be delegated or proxied
Failure of any single requirement disqualifies compliance.
B.3 Explicit Non-Compliance Examples
The following models are explicitly non-PBI, even if they claim similar properties:
Wallet-based logins (transferable keys)
Account + biometric hybrids
OAuth with passkeys
NFT ownership models
Centralized “verified creator” systems
Reputation or trust-score systems
Session-based authentication
B.4 Canonical Compliance Statement
Presence-Bound Identity compliance is binary.
Partial implementation is non-compliance.
⸻
Appendix C
Threat Model & Security Properties
(Normative. Defines what PBI eliminates by construction.)
C.1 Threat Classes Eliminated
The following attack classes are structurally impossible in PBI systems:
Identity impersonation
Credential theft
Session hijacking
Replay attacks
Deepfake escalation
Artifact forgery
Ownership forwarding
Database compromise
These threats do not require mitigation because the required primitives do not exist.
C.2 Why These Attacks Fail
Attack
Reason for Failure
Impersonation
Presence cannot be copied
Replay
Proofs are local + ephemeral
Phishing
No credentials to steal
Deepfakes
Presence is embodied
Database breach
No identity database exists
Key theft
No transferable keys exist
C.3 Adversarial Assumptions
PBI assumes adversaries may:
Copy artifacts freely
Know all proof formats
Control servers
Observe network traffic
Attempt social engineering
PBI remains secure under all of the above.
C.4 Security Invariant
If presence is not physically satisfied, ownership must not resolve.
This invariant is absolute.
⸻
Appendix D
User-Visible State Semantics
(Normative. Prevents UI deception and misuse.)
D.1 Allowed States
Only the following states may be displayed:
Verified
Artifact Truth resolved
Presence not resolved
Ownership (presence-resolved authorship) unknown
Verified + Owned
Artifact Truth resolved
Presence resolved locally
Ownership (presence-resolved authorship) momentarily resolved
D.2 Prohibited Language
The following terms must not be used:
“Logged in”
“Authenticated user”
“Owner account”
“Session active”
“Identity verified remotely”
D.3 UX Invariant
UI must not imply ownership persistence.
Any implication that ownership continues beyond presence violates PBI.
⸻
Appendix E
Privacy Properties & Data Minimalism
(Normative.)
E.1 Zero Identity Disclosure
PBI systems must not:
Store biometric data
Transmit biometric data
Correlate identity across artifacts
Infer identity from behavior
E.2 Data Minimization Principle
Only the following data may exist:
Artifact data
Public proof data
Ephemeral presence confirmation (local only)
Everything else is prohibited.
E.3 Regulatory Positioning
PBI systems:
Do not process biometric data centrally
Do not store personal data
Do not require consent banners
Do not create identity profiles
⸻
Appendix F
Interoperability & Future Extensions
(Normative constraints on extension.)
F.1 Allowed Extensions
Future systems may extend PBI by:
Adding new artifact formats
Adding new proof systems
Supporting additional device presence methods
F.2 Disallowed Extensions
No extension may:
Introduce accounts
Introduce persistent ownership
Introduce delegated presence
Introduce centralized identity stores
F.3 Forward Compatibility Rule
Extensions may add capabilities but may never weaken presence.
⸻
Appendix G
Canonical Summary of Appendices
Presence-Bound Identity establishes a verification primitive where:
Truth is public
Identity is private
Ownership (presence-resolved authorship) is embodied
Presence is required
Impersonation is impossible
Verification is stateless
Trust is structural, not social
These appendices define what PBI is, what it is not, and what it must always remain.
⸻
RFC-PBI-1.0
Presence-Bound Identity (PBI)
A Specification for Human-Origin Verification
Status: Final
Category: Standards Track
Obsoletes: None
Updates: None
Abstract
This document specifies Presence-Bound Identity (PBI), a verification primitive in which artifact truth is publicly verifiable, identity remains private, and ownership (presence-resolved authorship) resolution requires embodied presence on a local device. PBI eliminates impersonation, transferable credentials, and centralized identity by design. This specification defines the lifecycle, state model, compliance requirements, and prohibited behaviors for PBI-compliant systems.
1. Introduction
Digital identity systems have historically conflated truth, identity, and presence, resulting in impersonation, replay, surveillance, and fraud. Presence-Bound Identity separates these concerns into orthogonal layers and treats presence as a first-class, non-transferable property.
This RFC defines the minimum requirements for implementing PBI without altering its invariants.
2. Terminology
The key words MUST, MUST NOT, REQUIRED, SHALL, SHALL NOT, SHOULD, MAY, and OPTIONAL are to be interpreted as described in RFC 2119.
Artifact: A publicly shareable object (e.g., sigil-glyph) containing proof material.
Verifier: A stateless surface that validates artifacts and optionally resolves presence locally.
Φ-Key (Phi-Key): A deterministic identity root resolved only via local presence.
Presence Proof: A non-exportable, device-local proof of embodied presence.
Ownership Resolution: The momentary confirmation that the creator is present on the observing device.
3. System Overview
A PBI system consists of three independent processes:
Artifact Verification (public, deterministic)
Identity Protection (private, non-derivable)
Presence Resolution (local, embodied)
No process implies another.
4. Artifact Model
4.1 Artifact Requirements
An artifact:
MUST be verifiable by any observer without authentication.
MUST contain sufficient proof material to validate authenticity.
MUST NOT contain identity, biometric, or personal data.
MAY be copied or shared freely without loss of verifiability.
4.2 Artifact Verification
Artifact verification:
MUST be deterministic.
MUST produce identical results for all observers.
MUST NOT depend on accounts, sessions, IPs, or prior state.
5. Verifier Requirements
5.1 Statelessness
A verifier:
MUST be stateless with respect to identity and ownership.
MUST NOT store user profiles, sessions, or credentials.
MAY cache non-identity proof material for performance.
5.2 Verification Flow
A verifier MUST perform the following steps:
Parse artifact proof material.
Validate artifact proofs.
Display Verified state.
OPTIONALLY request local presence.
If presence resolves, display Verified + Owned.
No step may be skipped or reordered.
6. Presence Resolution
6.1 Locality
Presence resolution:
MUST occur on the observing device.
MUST use device-native, non-exportable mechanisms.
MUST NOT be performed remotely or delegated.
6.2 Ephemerality
Presence proofs:
MUST be ephemeral.
MUST NOT be replayable.
MUST expire immediately after resolution.
6.3 Ownership Scope
Ownership resolution:
MUST apply only to the current device and moment.
MUST NOT persist across reloads, devices, or sessions.
7. State Model
Only the following states are permitted.
7.1 Verified
Artifact Truth: Resolved
Presence: Not resolved
Ownership: Not resolved
7.2 Verified + Owned
Artifact Truth: Resolved
Presence: Resolved locally
Ownership: Momentarily resolved
7.3 Prohibited States
The following states MUST NOT exist:
Logged in
Authenticated user
Persistent owner
Remote ownership
Delegated presence
8. Compliance Requirements
A system is PBI-compliant if and only if all of the following hold:
Public artifact verification without login
No embedded or stored identity data
Ownership resolves only via local presence
Presence proofs are non-exportable
Verifiers are stateless
Ownership is non-transferable
No accounts, sessions, or credentials exist
Compliance is binary.
9. Security Considerations
PBI eliminates the following attack classes by construction:
Impersonation
Credential theft
Replay attacks
Session hijacking
Deepfake escalation
Database compromise
No mitigation is required because the necessary primitives do not exist.
10. Privacy Considerations
PBI systems:
Do not store biometric data.
Do not transmit biometric data.
Do not create identity graphs.
Do not enable cross-artifact correlation.
Presence remains local and private.
11. Interoperability
11.1 Allowed Extensions
Implementations MAY:
Support additional artifact formats.
Support additional proof systems.
Support additional device presence methods.
11.2 Disallowed Extensions
Implementations MUST NOT:
Introduce accounts.
Introduce transferable credentials.
Introduce centralized identity stores.
Introduce persistent ownership.
12. Reference Implementation Alignment
The live PBI system demonstrates compliance through:
URL-based public verification
Deterministic artifact proofs
Device-native presence resolution
Absence of identity databases
Distinct public vs presence-resolved states
This RFC codifies existing behavior; it does not invent new mechanisms.
13. IANA Considerations
This document requires no IANA actions.
14. Conclusion
Presence-Bound Identity defines a verification primitive in which:
Truth is public
Identity is private
Ownership is embodied
Presence is required
Impersonation is impossible
This RFC establishes the technical standard for PBI-compliant systems.
Status of This Document
This specification is final, normative, and complete.
Future versions may extend capabilities but must not weaken presence.
⸻
Legal & Evidentiary Framing
Presence-Bound Identity (PBI)
Status: Normative Legal Interpretation
Scope: Identity, authorship, presence, evidence, impersonation
Applies to: All systems claiming PBI compliance
1. Purpose of This Document
This document establishes the legal meaning, evidentiary properties, and non-equivalence boundaries of Presence-Bound Identity (PBI).
It exists to:
Prevent mischaracterization of PBI as an account system, biometric database, or credential scheme
Clarify what PBI does and does not assert
Enable courts and regulators to reason correctly about authorship, presence, and responsibility
Distinguish PBI from existing identity and authentication models
This document does not create new rights.
It clarifies the properties of an already-existing system.
2. Definitions (Legal Context)
Artifact
A digital object whose authenticity and origin can be publicly verified without identifying its creator.
Presence
The physical, embodied availability of an embodied agent at a specific moment, verified locally by a device capable of enforcing non-exportable presence proof.
Presence is:
Moment-bound
Device-local
Non-transferable
Ownership (PBI Context)
A momentary, non-transferable resolution of authorship indicating that the creator of an artifact is physically present on the observing device at the time of verification.
Ownership under PBI:
Is not persistent
Is not contractual
Is not transferable
Is not delegable
Ownership refers solely to presence-resolved authorship, not property rights or legal personhood.
3. What PBI Asserts (Legally)
Presence-Bound Identity makes only the following assertions:
An artifact exists and is authentic
The artifact was sealed under device-local presence proof
The creator is or is not physically present on the observing device at the moment of verification
PBI does not assert:
Civil or legal identity
Legal name
Citizenship or residency
Continuous control
Intent beyond the presence moment
Consent beyond presence
Contractual ownership
Transfer of rights
Any interpretation extending beyond these assertions is invalid.
4. What PBI Explicitly Does Not Do
Presence-Bound Identity is not:
An account system
A login mechanism
A biometric identity registry
A credential issuer
A surveillance technology
A reputation or trust-score system
A persistent identity framework
Any attempt to classify PBI as such is factually incorrect.
5. Biometric Data Clarification
5.1 No Biometric Processing by the System
PBI systems:
Do not store biometric data
Do not transmit biometric data
Do not receive biometric data
Do not infer biometric characteristics
All biometric operations occur entirely within the device’s secure environment and are never exposed to the PBI system.
Legally, PBI systems do not process biometric data.
6. Evidentiary Value
6.1 Artifact Authenticity
An artifact verified under PBI constitutes evidence that:
The artifact was created intentionally
The artifact was sealed under device-local presence proof
The artifact has not been altered
This may be relevant in:
Authorship disputes
Provenance claims
Integrity verification
6.2 Presence Evidence
A Verified + Owned state establishes:
At the time of verification, the creator of the artifact was physically present on the observing device.
This evidence is:
Time-bounded
Non-persistent
Non-transferable
It does not establish:
Ongoing control
Exclusive ownership
Future intent
7. Impersonation & Fraud Analysis
7.1 Structural Elimination of Impersonation
Because PBI systems:
Have no transferable credentials
Have no accounts
Have no persistent sessions
Require embodied presence
Claims of impersonation require physical presence, not credential theft.
Impersonation claims must therefore address physical reality, not digital abstraction.
7.2 Misrepresentation Boundaries
It is materially misleading to claim PBI equivalence if a system:
Allows remote login
Stores identity data
Uses transferable keys
Resolves ownership server-side
Persists ownership across time
Such systems are not PBI-compliant.
8. Contractual Non-Transferability
Ownership resolution under PBI:
Cannot be assigned
Cannot be sold
Cannot be inherited
Cannot be delegated
Contracts may reference PBI artifacts, but cannot override presence requirements.
Presence cannot be contracted away.
9. Regulatory Positioning
PBI systems:
Do not constitute identity providers
Do not function as authentication services
Do not require user registration
Do not maintain personal data stores
Accordingly, PBI does not fall under traditional identity-provider regulatory regimes.
10. Legal Boundary Statement
Presence-Bound Identity does not assert who a person is.
It asserts only whether the creator of an artifact is physically present at the moment of verification.
Any broader interpretation is invalid.
11. Canonical Legal Conclusion
Presence-Bound Identity establishes a verification primitive grounded in physical presence, not abstract identity.
Its legal significance derives from:
Absence of transferable credentials
Absence of stored identity
Embodied, moment-bound authorship resolution
This framing allows PBI to be evaluated by courts without reliance on trust, platforms, or third-party authorities.
⸻
Public Explainer
Presence-Bound Identity (PBI)
What this is — in simple terms
Presence-Bound Identity is a new way to prove:
something is real,
who created it, and
whether that creator is actually here right now.
It works without accounts, passwords, platforms, or surveillance.
The problem with verification today
Most systems verify credentials, not creators.
They rely on:
logins
accounts
badges
servers saying “yes”
That breaks when credentials are copied, stolen, or faked.
The core idea
There is one thing you cannot fake:
Being physically present.
You can copy files.
You can steal passwords.
You can fake images and voices.
But you cannot be somewhere you are not.
PBI makes presence the gate.
How PBI works
Anyone can verify the artifact
It’s real
It hasn’t been altered
It was sealed under device-local presence proof
The creator’s identity stays private
No name
No account
No profile
Ownership only resolves if the creator is present
Presence happens locally
Nothing is stored
Nothing is tracked
If presence is satisfied: Verified + Owned
If not: Verified
Why this stops impersonation
Because nothing can be copied:
Not the artifact
Not the proof
Not the presence
Impersonation doesn’t get detected — it becomes impossible.
What this makes possible
Human-origin verification without surveillance
Anonymous authorship with provable authenticity
Accountability without monitoring
Trust without platforms
What PBI is not
Not a login system
Not a wallet
Not a biometric database
Not a reputation score
There is nothing to steal.
The simplest way to understand it
Truth is public
Identity is private
Ownership is physical
If the creator is here, ownership resolves.
If not, it doesn’t.
Final takeaway
Presence-Bound Identity does not try to guess who someone is.
It answers a simpler, more honest question:
Is the creator actually here — right now?
That turns out to be enough.
Canonical Closing & Version Seal
Presence-Bound Identity (PBI) —
v1.0
Final Canonical Statement
Presence-Bound Identity establishes a verification primitive in which:
Truth is public — artifacts can be verified by anyone, without permission.
Identity is private — no identity is embedded, stored, or transmitted.
Ownership is embodied — authorship resolves only through local, non-exportable presence proof.
Presence is required — if presence is absent, ownership does not resolve.
Impersonation is impossible — not mitigated, but eliminated by construction.
Verification is stateless — no accounts, no sessions, no databases.
Trust is structural — not social, reputational, or platform-based.
PBI verifies presence, not profiles.
PBI attributes authorship, not accounts.
PBI creates responsibility without surveillance.
Non-Equivalence Boundary (Final)
Any system that includes accounts, transferable credentials, persistent sessions, centralized identity stores, or remote ownership resolution is not Presence-Bound Identity.
Equivalence claims outside these invariants are invalid.
Version Declaration
Standard: Presence-Bound Identity (PBI)
Version: 1.0
Status: Final / Normative
Stability: Stable
Compatibility: Forward-compatible (extensions may add capabilities but must not weaken presence)
Scope of Application
PBI applies to human-origin verification today and generalizes to any embodied agent capable of satisfying device-local presence proof, without modifying the primitive.
PBI does not assert personhood, species, or legal identity.
PBI asserts presence at the moment of authorship.
Seal of Completeness
This document set (Release, Appendices A–G, RFC-PBI-1.0, Legal & Evidentiary Framing, Public Explainer) constitutes the complete, canonical specification of Presence-Bound Identity v1.0.
All future documents, implementations, and interpretations must conform to these invariants.
Closing (for the record)
Presence-Bound Identity does not ask who you are.
It asks whether you are here.
That question cannot be faked.
That answer does not require surveillance.
PBI v1.0 is hereby sealed.
Public Explainer
Presence-Bound Identity (PBI)
What this is — in simple terms
Presence-Bound Identity (PBI) is a new way to prove:
something is real,
who created it, and
whether that creator is actually here right now.
It works without accounts, passwords, platforms, or surveillance.
The problem with verification today
Most “verification” systems verify credentials, not creators.
They rely on:
logins,
accounts,
badges,
servers saying “yes.”
That breaks the moment credentials are copied, stolen, or faked — which is why impersonation, deepfakes, and identity fraud scale.
The core idea
There is one thing you cannot fake:
Being physically present.
You can copy files.
You can steal passwords.
You can fake images and voices.
But you cannot be somewhere you are not.
PBI makes presence the gate.
How PBI works
Anyone can verify the artifact
It’s real
It hasn’t been altered
It was sealed under device-local presence proof
It validates without permission
The creator’s identity stays private
No name
No account
No profile
No identity database
Ownership only resolves if the creator is present
Presence resolves locally on the device
Nothing is stored
Nothing is tracked
Nothing can be forwarded
If presence is satisfied: Verified + Owned
If not: Verified
Why this stops impersonation
Because nothing essential can be copied:
Not the artifact
Not the proof
Not the presence
Impersonation doesn’t get detected — it becomes impossible.
What this makes possible
Human-origin verification without surveillance
Anonymous authorship with provable authenticity
Accountability without monitoring
Trust without platforms
What PBI is not
Not a login system
Not a wallet
Not a biometric database
Not a reputation score
There is nothing to steal.
The simplest way to understand it
Truth is public
Identity is private
Ownership is physical
If the creator is here, ownership resolves.
If not, it doesn’t.
Final takeaway
Presence-Bound Identity does not try to guess who someone is.
It answers a simpler, more honest question:
Is the creator actually here — right now?
That turns out to be enough.
TL;DR
Presence-Bound Identity (PBI) is a new verification primitive where artifacts are publicly verifiable, identity remains private, and ownership can only be resolved through physical presence on a local device.
There are no accounts, passwords, credentials, or servers that “decide” identity.
Impersonation and deepfakes stop working because presence cannot be copied or forwarded.
It enables human-origin verification and accountability without surveillance.
VERIFIED • Pulse 10015059 • ΦKey 165WNibgfeSZ…zYN6kvnQsQ • KAS ✅ • G16 ✅
{
“hashAlg”: “sha256”,
“canon”: “JCS”,
“proofCapsule”: {
“v”: “KPV-1”,
“pulse”: 10015059,
“chakraDay”: “Solar Plexus”,
“kaiSignature”: “4aa8d638e382d59bd4826178286cf59119081e4c10fa0a41f38c51204fdc3783”,
“phiKey”: “165WNibgfeSZfukpRVKMa7RpzYN6kvnQsQ”,
“verifierSlug”: “10015059-4aa8d638e3”
},
“capsuleHash”: “8512b0c165990f0f7c6e366959ae703c26d5ac59dc2a4dd5cd238d822133a6b2”,
“svgHash”: “b658296d65733bd9b48d2ab1b0bf84c5247fd71ad9b98391e288f11288e35bd2”,
“bundleHash”: “c0bc0f772e5e2efe6cee13437010bcf3e03696023ec5813c84f15a68c93711e2”,
“verifierUrl”: “https://phi.network/verify/10015059-4aa8d638e3”,
“authorSig”: {
“v”: “KAS-1”,
“alg”: “webauthn-es256”,
“credId”: “thjJb6EpnOksNTtLXc7lxK0qwLM”,
“pubKeyJwk”: {
“kty”: “EC”,
“crv”: “P-256”,
“x”: “KCjPJ_LbAdHudmFhlq0Dwe7bdFHKU06L5rpPbVU2I9A”,
“y”: “FMCzVNOU7iyK23k-XRM82WchWlcbEKRpLexi8Aui3c8”,
“ext”: true
},
“challenge”: “wLwPdy5eLv5s7hNDcBC88-A2lgI-xYE8hPFaaMk3EeI”,
“signature”: “MEYCIQDHdCSGoxuYpu8XQ3qSXI28dE-ldE8y32HfSOUSmIpofQIhALL0Fx8oUa3UB4irtb8CeiZ4d9dSjyRCLfR6c1Ezby5C”,
“authenticatorData”: “J5c10kYwycIsGdWqoizaMzc0tbo4Oe6aknH6ufd1VeEdAAAAAA”,
“clientDataJSON”: “eyJ0eXBlIjoid2ViYXV0aG4uZ2V0IiwiY2hhbGxlbmdlIjoid0x3UGR5NWVMdjVzN2hORGNCQzg4LUEybGdJLXhZRThoUEZhYU1rM0VlSSIsIm9yaWdpbiI6Imh0dHBzOi8vcGhpLm5ldHdvcmsiLCJjcm9zc09yaWdpbiI6ZmFsc2V9”
},
“zkPoseidonHash”: “21585281458354712179864410064517842297168960868475199866432496982941801958235”,
“zkProof”: {
“pi_a”: [
“7066942846654913795479543090966237970421393143939131830079196656078006664254”,
“595454018834229476101782561001643574451968004059163514261968784598453101163”,
“1”
],
“pi_b”: [
[
“14241631458873136553748036339697556227218473547653966617577115372950517750499”,
“8333209342203567823369159327147924032097232651346118337859387205864047821966”
],
[
“11504414031121951645204953529063772608811493038663064183898588901079384987997”,
“5239998261428517090224931268703649134367634807950605348124766974437675454116”
],
[
“1”,
“0”
]
],
“pi_c”: [
“5956728124412617134015748443136411774456355221202797355338629302501084255653”,
“7568985736909925445795162547111440393693123450221000572287868732481767145207”,
“1”
],
“protocol”: “groth16”,
“curve”: “bn128”
},
“proofHints”: {
“scheme”: “groth16-poseidon”,
“api”: “/api/proof/sigil”,
“explorer”: “/keystream/hash/21585281458354712179864410064517842297168960868475199866432496982941801958235”
},
“zkPublicInputs”: [
“21585281458354712179864410064517842297168960868475199866432496982941801958235”,
“21585281458354712179864410064517842297168960868475199866432496982941801958235”
]
}
https://phi.network/stream#t=
TL;DR
Presence-Bound Identity (PBI) is a new verification primitive where artifacts are publicly verifiable, identity remains private, and ownership can only be resolved through physical presence on a local device.
There are no accounts, passwords, credentials, or servers that “decide” identity.
Impersonation and deepfakes stop working because presence cannot be copied or forwarded.
It enables human-origin verification and accountability without surveillance.
{
“hashAlg”: “sha256”,
“canon”: “JCS”,
“proofCapsule”: {
“v”: “KPV-1”,
“pulse”: 10094093,
“chakraDay”: “Sacral”,
“kaiSignature”: “4b309f5afbc84aea1f9ea140a5c6a33e9dab205e70cad812b67585ff5fd08f6d”,
“phiKey”: “175nPzE8v3n99NjP6yYbpGq6LBEhGv1scr”,
“verifierSlug”: “10094093-4b309f5afb”
},
“capsuleHash”: “7d61d6a79e2bc3c84da687fb1cde47bcf01eff2923d3ac1a0e13cdeeabf737c4”,
“svgHash”: “c403efea40c5186c2214d2fbd36839bbc750c890e8f0209b5f053d9699ce62e0”,
“bundleHash”: “d418010031c029cad57058150abff0617607a3f4029c53f4a616211a017a81f4”,
“verifierUrl”: “https://phi.network/verify/10094093-4b309f5afb”,
“authorSig”: {
“v”: “KAS-1”,
“alg”: “webauthn-es256”,
“credId”: “ESCsoQQ7mG-4Tfq7GZhTgjfuAgA”,
“pubKeyJwk”: {
“kty”: “EC”,
“crv”: “P-256”,
“x”: “yFOhYUz53kkSk44aXNnAcZdeQM62tMZcuVpdk-mEDro”,
“y”: “R2X-bubSEUNXarC-snYEBSMDscbRToiFMa1Yt3koMYA”,
“ext”: true
},
“challenge”: “1BgBADHAKcrVcFgVCr_wYXYHo_QCnFP0phYhGgF6gfQ”,
“signature”: “MEYCIQDflSoMfLbQ-mA4ftlUnLGFpiO-7qarwMMszvzoNmKyJgIhALOTyehDS-a1nZ8Y2AMx_pa-Ks1772O9wj0Ixjyl3bnW”,
“authenticatorData”: “J5c10kYwycIsGdWqoizaMzc0tbo4Oe6aknH6ufd1VeEdAAAAAA”,
“clientDataJSON”: “eyJ0eXBlIjoid2ViYXV0aG4uZ2V0IiwiY2hhbGxlbmdlIjoiMUJnQkFESEFLY3JWY0ZnVkNyX3dZWFlIb19RQ25GUDBwaFloR2dGNmdmUSIsIm9yaWdpbiI6Imh0dHBzOi8vcGhpLm5ldHdvcmsiLCJjcm9zc09yaWdpbiI6ZmFsc2V9”
},
“zkPoseidonHash”: “6842247216703442992330312120768288943907052846767356765731345868247564062615”,
“zkProof”: {
“pi_a”: [
“8653207166479458164264856113664870636072878020904560934569327675662401159615”,
“19992634483897155781767540385085094384444344344608034413390908026627695976318”,
“1”
],
“pi_b”: [
[
“17528367960630530711346041453547465594263639469260522431830793438443112620613”,
“10748684460049125944072069493614991023907098269676738152077628095860872392159”
],
[
“10363432764098966441021947580814595587864747150246345576157084954486893072835”,
“4657222628119078658802831749309561180957747511473883106217299349777946282433”
],
[
“1”,
“0”
]
],
“pi_c”: [
“17559360770841529521998968509181995559510738496956141344424558138941812689212”,
“592023628180856911509632357790922699246020682794197938565137258293954750946”,
“1”
],
“protocol”: “groth16”,
“curve”: “bn128”
},
“proofHints”: {
“scheme”: “groth16-poseidon”,
“api”: “/api/proof/sigil”,
“explorer”: “/keystream/hash/6842247216703442992330312120768288943907052846767356765731345868247564062615”
},
“zkPublicInputs”: [
“6842247216703442992330312120768288943907052846767356765731345868247564062615”,
“6842247216703442992330312120768288943907052846767356765731345868247564062615”
]
}
VERIFIED • Pulse 10094093 • ΦKey 175nPzE8v3n9…LBEhGv1scr • KAS ✅ • G16 ✅







