Back to Glossary
VEX

Evidence Capsule

VEX Protocolgoverned executionagentic provenance

The Evidence Capsule is a cryptographic evidence construct in the VEX Protocol family — designed to preserve the governance context of selected governed execution events in VEX-governed flows.

WHY THIS EXISTS

Without a structured evidence model, agentic AI systems produce no verifiable record of why an action was taken, who authorized it, or what actually occurred. Evidence Capsules are one approach to closing this accountability gap.

PROTOCOL CONTEXT (VEX — EVIDENCE MODEL)

In VEX-governed pilot flows, selected governed actions can produce cryptographically verifiable evidence. The Evidence Capsule is one artifact in a broader evidence model:

Intent

The declared or system-inferred goal that authorized the execution. Governed execution validates that actions remain within the scope of the authorized goal.

Authority

The authorization context that governed the execution — including permitted tools, data categories, and action types.

Identity

The trust context of the agent instance. Current deployments may use different trust configurations, including hardware-backed and software-backed approaches.

Witness

The tamper-evident execution record preserving what crossed the boundary during governed execution.

ProvnAI Mitigation

VEX-governed deployments can produce evidence for selected actions that can be preserved, inspected, and verified. McpVanguard can feed selected security observations into VEX-integrated deployments for optional evidence preservation.