{"ok":true,"checkedAt":"2026-06-13T06:45:35.476Z","contractVersion":"background-private-overlap-pilot-v0.2-2026-06","purpose":"Governance-gated pilot guardrail for narrow exact-tag overlap checks over blinded tokens, without accepting free text, revealing raw tags, or enabling production use before cryptographic review.","validation":{"blockers":[],"checks":[{"evidence":"governance_gated_pilot; live=false; storage=pilot_schema_created","id":"governance-gated-release-state","label":"Private-overlap remains governance-gated and not production live-ready","status":"pass"},{"evidence":"DPIA and documented privacy-design review, formal cryptographic design review, narrow threat model and abuse-case review, external security/privacy review before pilot, property tests for non-overlap redaction and token deletion","id":"review-gates","label":"DPIA, formal cryptographic review, threat model, external review, and property tests are required before pilot","status":"pass"},{"evidence":"exact_capability_tag, exact_constraint_tag, exact_verification_tag","id":"curated-tags-only","label":"Namespaces are curated tags only and exclude free text","status":"pass"},{"evidence":"free_text, exact_wish, exact_ask, raw_source_text, contact_details, precise_location | raw_tag, canonical_tag, raw_text, exact_private_wish, non_overlap_value","id":"raw-values-forbidden","label":"Raw source text, raw tags, canonical tags, exact wishes, and non-overlap values are forbidden","status":"pass"},{"evidence":"blinded_tag, token_version, tag_namespace, expires_at, audit_reason","id":"future-storage-is-blinded-only","label":"Future storage is limited to blinded token metadata and excludes raw or canonical tags","status":"pass"},{"evidence":"POST /api/background/private-overlap/check:governance_gated, POST /api/background/private-overlap/refresh-tokens:blocked_pending_crypto_review, DELETE /api/background/private-overlap/tokens:blocked_pending_crypto_review","id":"blocked-live-endpoints","label":"Planned private-overlap endpoints are blocked or governance-gated pending review","status":"pass"},{"evidence":"result_bucket, receipt_id, blockers | forbidden matching_tag_names, non_overlap_tags, raw_tokens, counterparty_tag_set","id":"counts-only-output","label":"Participant output is limited to buckets, receipts, and blockers","status":"pass"},{"evidence":"Use current deterministic broad-preview matching when the private-overlap service is unavailable, unreviewed, or disabled.","id":"deterministic-fallback","label":"Unavailable or unreviewed overlap falls back to current deterministic broad-preview matching","status":"pass"}],"contractVersion":"background-private-overlap-pilot-v0.2-2026-06","liveReady":false,"status":"pass","validatorName":"background-private-overlap-design","validatorVersion":"background-private-overlap-validator-v0.2"},"publicContract":{"releaseState":"governance_gated_pilot","liveEndpointEnabled":false,"storageState":"pilot_schema_created","namespaceRules":[{"allowedSource":"approved exact capability tags only","key":"exact_capability_tag","label":"Exact capability tag","rawValueRetention":"forbidden","storedRepresentation":"blinded_token_only"},{"allowedSource":"approved exact constraint tags only","key":"exact_constraint_tag","label":"Exact constraint tag","rawValueRetention":"forbidden","storedRepresentation":"blinded_token_only"},{"allowedSource":"approved exact verification tags only","key":"exact_verification_tag","label":"Exact verification tag","rawValueRetention":"forbidden","storedRepresentation":"blinded_token_only"}],"forbiddenInputs":["free_text","exact_wish","exact_ask","raw_source_text","contact_details","precise_location"],"forbiddenStoredFields":["raw_tag","canonical_tag","raw_text","exact_private_wish","non_overlap_value"],"futureStoredFields":["blinded_tag","token_version","tag_namespace","expires_at","audit_reason"],"participantOutput":{"allowed":["result_bucket","receipt_id","blockers"],"forbidden":["matching_tag_names","non_overlap_tags","raw_tokens","counterparty_tag_set"]},"plannedEndpoints":[{"method":"POST","path":"/api/background/private-overlap/check","status":"governance_gated"},{"method":"POST","path":"/api/background/private-overlap/refresh-tokens","status":"blocked_pending_crypto_review"},{"method":"DELETE","path":"/api/background/private-overlap/tokens","status":"blocked_pending_crypto_review"}],"blockedUntil":["The /api/background/private-overlap/check route remains governance-gated.","Production use is blocked until DPIA, threat-model, external privacy/security, and formal cryptographic reviews are complete.","No raw or canonical tags are stored.","No overlap result can change matching, disclosure, ranking, or outreach state."],"requiredReviews":["DPIA and documented privacy-design review","formal cryptographic design review","narrow threat model and abuse-case review","external security/privacy review before pilot","property tests for non-overlap redaction and token deletion"],"fallbackBehavior":"Use current deterministic broad-preview matching when the private-overlap service is unavailable, unreviewed, or disabled.","contractTests":["background_private_overlap_contract_validator","background_private_overlap_governance_gated_route_smoke","background_private_overlap_route_contract_smoke","background_private_overlap_receipt_chain_validator"],"liveReady":false},"publicNonClaim":"Private overlap checks are governance-gated; the pilot route must not use free text and must not reveal raw tags.","blockers":[]}