Appearance
Linked Devices
Device linking creates a distinct signing lane for another user-controlled device.
Flow
- A new device presents a QR link session with a link public key.
- An existing owner device authenticates the user and approves permissions.
- The owner worker creates a distinct holder share for the linked device.
- The server creates the matching server share for the linked-device lane.
- The linked device receives an encrypted holder-share package.
- The lane activates after delivery receipt and address parity checks.
The linked device has its own laneId, laneShareEpoch, holder-share envelope, permission policy, revocation status, and audit history.
Owner-equivalent linked-device lanes should require local user presence for signing. Scoped linked-device lanes should use the same mandate admission model as delegated agents.