BDD / Blog← All series
Blog/Series/Machine Auth & Identity
Seriescurriculumactive

Machine Auth & Identity

Who a machine is, how it proves it, and when its credentials die.

Series completeness6
Every planned part is published.
Your reading— / 6
Kept on your device. No account, no tracking.
curriculum
Navigate
  • ← All series
  • Blog

Reading path

in order — start at the top
1
Authentication Isn’t One Question

How three security systems that looked alike turned out to protect three completely different boundaries

Aug 3, 20261 min
2
A Credential Designed to Die

Why we issue JBD crossing authority at the last responsible moment, what state-bound verification is meant to prevent, and what still has to be proven in testing.

Aug 19, 20265 min
3
When the Security Measure Becomes the Authority

A debugging story about a legitimate admission control answering the wrong question inside a one-time authorization gate.

Aug 19, 20265 min
4
Turning the Mistake Into a Trap

A cautious design direction for observing use of a demoted credential without letting the decoy influence protected state.

Aug 19, 20265 min
5
The Check That Wasn't Checking

The verifier had been asking the right question all along — and then it threw the answer away. An imposter who was always let in, a fix smaller than the bug, and why a check that never compares is the dangerous kind. Part 5 of the Authentication series.

Aug 28, 20266 min
6
The Gate Is Three Readers

The live crossing is not one question but three, asked at once by three readers who cannot see each other's answers — and the checklist was never beside the gate; it was the gate. Part 6 of the Authentication series.

Aug 28, 20265 min
A conversation becomes governed work — the original Whole Qensai System artwork. Read the series.

The Whole Qensai System