Execution Authority for Autonomous Systems.
Pre-Decryption Admission Control for Encrypted Communications.
Yandeh Holdings Inc. — patent applications defining two protocol categories: XAP (Execution Authority Protocol, also AMIAP) for runtime governance of autonomous AI agents and machines, and VEMP (Verifiable Enterprise Messaging Protocol) for pre-decryption admission control of encrypted communications.
Each family addresses a layer existing categories do not. XAP operates above session-time authorization and below the operation itself, producing a cryptographic record of each decision an independent party can verify. VEMP enforces admission of encrypted communications before decryption, with state-machine-governed release and bounded post-release revocation.
Continuations Filed
Nonprovisional Filings
Defined
One
Prioritized Examination
The foundational application defining the Execution Authority Protocol (XAP) category: a new layer of the security stack addressing per-operation execution authority with cryptographic proof an independent party can verify. The category is complementary to authentication, access authorization, and channel security; each governs a distinct function at a distinct point in the execution lifecycle. Specific claim language is held in the filed application and made available to qualified evaluators under NDA.
Extends category coverage to distributed enforcement topologies: the architectures real production deployments use, where governance is performed by cooperating components rather than a single point. Specifies how XAP category membership applies in these settings, so that the category matches the systems it is designed to govern. Specific claim language is held in the filed application and made available to qualified evaluators under NDA.
Defines the Pre-Decryption Admission Control category: a communication governance architecture in which an encrypted communication is admitted into a controlled communication plane only after artifact-bound, state-machine-governed evaluation of admission preconditions, and decryption keys are released only upon affirmative state machine advancement. The category is distinct from encrypted email (S/MIME, OpenPGP), transport-layer security (TLS), secure email gateways, information rights management, and zero-trust network access. Specific claim language is held in the filed application and made available to qualified evaluators under NDA.
Extends VEMP coverage to alternative architectural patterns: cloud-hosted key management and trusted execution environment boundaries, reduced-state-count governance state machines, and governance records implemented as a plurality of cooperating signed objects rather than a single binary artifact. The continuation preserves VEMP's core governance relationships across diverse implementation architectures, foreclosing design-arounds based on alternative key-protection mechanisms or alternative structural forms of the governance record. Specific claim language is held in the filed application and made available to qualified evaluators under NDA.