Partner credential / callback security
Verify the rail before trusting any callback.
Credential custody, signature preflight, replay checks, and callback evidence stay separate from payout truth.
0
Custody
0
Preflight
0
Verified
Current status
Security runtime not loaded yet.
1. Readiness truth
Credentials are counted, never exposed.
Runtime flag
off
Payout creds
0/3
Callback secret
0/1
Provider API
blocked
Safe state: provider API is blocked in this preview. Production needs secret manager custody, callback allowlist, replay protection, signed callbacks, and reconciliation.
2. Custody review
Record who controls the partner secrets.
3. Callback preflight
Check signature without trusting payment.
4. Latest evidence
What FAEDA can prove right now.
Security locks
This still cannot release money.
Credential reviews store env readiness and custodian names only. No provider secret value is stored in this preview file.
Signature preflight stores payload hash and masked signature only. Raw callbacks remain out of this demo store.
Even a verified signature would still need reconciliation, exception review, ledger posting approval, and licensed partner production adapter approval.
No wallet balance, payout success, refund success, settlement finality, or public finance claim is created here.