Defines platform-neutral pairing, authorization, credential, scope, and trusted-device contracts for authenticated companion ingress and future relay carriers.
- Pairing invitations, public-key proof requests/results, issued credentials, scopes, trusted-device projections, principals, expiry, and revocation behavior.
- Traffic models, remote transport, connectivity setup, proxy runtime, or UI.
May depend only on the neutral identity types in :core:identity; remain independent of desktop, connectivity, engine, UI, and persistence implementations.
The desktop pairing coordinator, Room-backed registered-device adapter, and Android/iOS companion products implement these contracts. A registered identity is durable while source-address authorization remains session-only. Relay carriers remain absent and can be added without changing this module's identity, credential, and principal types.