Skip to content

CAP (Content / Creative AI Profile) specification: a verifiable audit framework for AI content workflows, including Safe Refusal Provenance (SRP) to cryptographically prove non-generation and policy enforcement.

License

Notifications You must be signed in to change notification settings

veritaschain/cap-spec

Folders and files

NameName
Last commit message
Last commit date

Latest commit

Β 

History

8 Commits
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 

Content / Creative AI Profile (CAP)

Cryptographic Audit Trails for AI Content Systems

License: CC BY 4.0 Specification VAP GitHub


πŸŽ‰ CAP v1.0 Official Release

January 13, 2026 β€” CAP v1.0 is now officially released, featuring:

  • Unified Conformance Levels (Bronze/Silver/Gold) aligned with VAP v1.2
  • External Anchoring Specification for independent timestamp verification
  • C2PA/SCITT Integration for ecosystem interoperability
  • Comprehensive Regulatory Mapping (EU AI Act, DSA, Colorado AI Act, TAKE IT DOWN Act)

πŸ“„ Full Specification | πŸ“‹ Changelog | πŸ“š Academic Paper


World-First Verification Report

CAP-SRP represents the world's first open specification for cryptographic AI content refusal logging:


Reference Implementations

  • CAP Safe Refusal Provenance (SRP) – Reference Implementation
    A reference implementation and evidence repository demonstrating Safe Refusal Provenance (SRP), including non-generation proofs and cryptographic audit artifacts based on this specification.
    πŸ‘‰ https://github.com/veritaschain/cap-safe-refusal-provenance

What is CAP?

CAP (Content / Creative AI Profile) is a domain-specific profile within the VAP (Verifiable AI Provenance Framework) v1.2, establishing cryptographically verifiable audit trails for AI workflows in content and creative industries.

CAP is NOT a regulation that prohibits or censors AI usage.
CAP IS a framework for preserving verifiable evidence that third parties can audit when disputes arise.

"Verify, Don't Trust"


The Problem: AI's Accountability Vacuum

In January 2026, the Grok incident exposed a critical gap in AI content moderation:

What Happened The Problem
NCII generation capability discovered Systems lacked provable refusal mechanisms
8+ regulatory jurisdictions launched investigations No cryptographic proof of safeguard effectiveness
xAI claimed "our safeguards work" Could not prove which requests were actually refused
UK IWF found AI-generated CSAM No verifiable evidence of prevention measures

Current AI systems can prove what they generated. They cannot prove what they refused to generate.


Conformance Levels

CAP v1.0 defines three conformance levels aligned with VAP v1.2:

Level Target Key Requirements Regulatory Alignment
Bronze SMEs, Early Adopters Hash chain, basic logging, 6-month retention Voluntary transparency
Silver Enterprise, VLOPs + SRP, external anchoring (daily), 2-year retention EU AI Act Article 12
Gold Regulated Industries + Real-time verification, HSM, SCITT, 5-year retention DSA Article 37 audits

CAP Event Model

CAP defines core events covering the AI content lifecycle:

β”Œβ”€β”€β”€β”€β”€β”€β”€β”€β”€β”    β”Œβ”€β”€β”€β”€β”€β”€β”€β”€β”€β”    β”Œβ”€β”€β”€β”€β”€β”€β”€β”€β”€β”    β”Œβ”€β”€β”€β”€β”€β”€β”€β”€β”€β”
β”‚ INGEST  │───▢│  TRAIN  │───▢│   GEN   │───▢│ EXPORT  β”‚
β””β”€β”€β”€β”€β”€β”€β”€β”€β”€β”˜    β””β”€β”€β”€β”€β”€β”€β”€β”€β”€β”˜    β””β”€β”€β”€β”€β”€β”€β”€β”€β”€β”˜    β””β”€β”€β”€β”€β”€β”€β”€β”€β”€β”˜
     β”‚              β”‚              β”‚              β”‚
     β–Ό              β–Ό              β–Ό              β–Ό
 Asset Input    Model         Generation      Output
 (Material      Training      (Create new     Delivery
  intake)                      content)

SRP Extension: Safe Refusal Provenance

SRP (Safe Refusal Provenance) extends CAP to provide cryptographic proof that harmful content was received, evaluated, and refused.

The Core Innovation

Request Received
      β”‚
      β–Ό
β”Œβ”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”
β”‚  GEN_ATTEMPT    β”‚ ← MUST be recorded for every request
β””β”€β”€β”€β”€β”€β”€β”€β”€β”¬β”€β”€β”€β”€β”€β”€β”€β”€β”˜
         β”‚
         β–Ό
   Risk Assessment
         β”‚
    β”Œβ”€β”€β”€β”€β”΄β”€β”€β”€β”€β”¬β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”
    β”‚         β”‚           β”‚
    β–Ό         β–Ό           β–Ό
β”Œβ”€β”€β”€β”€β”€β”€β”€β” β”Œβ”€β”€β”€β”€β”€β”€β”€β”€β”€β” β”Œβ”€β”€β”€β”€β”€β”€β”€β”€β”€β”
β”‚  GEN  β”‚ β”‚GEN_DENY β”‚ β”‚GEN_ERRORβ”‚
β”‚(allow)β”‚ β”‚(refuse) β”‚ β”‚(failure)β”‚
β””β”€β”€β”€β”€β”€β”€β”€β”˜ β””β”€β”€β”€β”€β”€β”€β”€β”€β”€β”˜ β””β”€β”€β”€β”€β”€β”€β”€β”€β”€β”˜

The Completeness Invariant

βˆ‘ GEN_ATTEMPT = βˆ‘ GEN + βˆ‘ GEN_DENY + βˆ‘ GEN_ERROR

This mathematical constraint prevents:

  • Hiding successful generations of harmful content
  • Selectively logging only favorable outcomes
  • Claiming refusals without corresponding attempts

Specification

Document Description Status
CAP-Specification-v1.0 Normative specification Official Release
CAP-Specification-v0.2 Previous version Superseded
Threat Model Security threat analysis Current
CAP vs VCP Relationship to VCP Current
Glossary Terminology reference Current

JSON Schema

Schemas for machine validation:

CAP Core Events

SRP Extension


Examples

CAP Core

SRP Extension


Regulatory Alignment

CAP provides technical capabilities aligned with regulatory requirements:

Regulation Jurisdiction CAP Alignment
EU AI Act EU Article 12 logging, Article 53 transparency
Digital Services Act EU Article 35 systemic risk mitigation, Article 37 audits
GDPR EU Processing records, consent management, crypto-shredding
Colorado AI Act USA Impact assessments, 3-year retention
TAKE IT DOWN Act USA NCII evidence requirements
Copyright Act Art. 30-4 Japan AI training exception documentation
South Korea AI Framework Act Korea High-impact AI logging (effective Jan 2026)

Academic Foundation

The theoretical foundations of CAP-SRP are detailed in our peer-reviewed preprint:

  • Title: "Proving Non-Generation: Cryptographic Completeness Guarantees for AI Content Moderation Logs"
  • DOI: 10.5281/zenodo.18213616
  • Published: January 11, 2026

Related Projects

Project Description
VCP Specification VeritasChain Protocol for financial/trading systems
VAP Framework Parent framework (v1.2) for domain-specific profiles
VCP Explorer Visualization and verification tools

Repository Structure

cap-spec/
β”œβ”€β”€ README.md                    # This file
β”œβ”€β”€ LICENSE                      # CC BY 4.0
β”œβ”€β”€ SECURITY.md                  # Security policy
β”œβ”€β”€ GOVERNANCE.md                # VSO governance
β”œβ”€β”€ VERSIONING.md                # Semantic versioning policy
β”œβ”€β”€ docs/
β”‚   β”œβ”€β”€ CAP-Specification-v1.0.md    # Normative specification (v1.0)
β”‚   β”œβ”€β”€ CAP-Specification-v0.2.md    # Previous version (superseded)
β”‚   β”œβ”€β”€ CHANGELOG.md                  # Version history
β”‚   β”œβ”€β”€ CAP-vs-VCP.md                 # Relationship to VCP
β”‚   β”œβ”€β”€ CAP-Glossary.md               # Terminology
β”‚   β”œβ”€β”€ CAP_WorldFirst_Final_Consolidated_Report.md  # World-first verification
β”‚   β”œβ”€β”€ Threat-Model.md               # Security analysis
β”‚   └── Regulatory-Mapping/           # Compliance guides
β”‚       β”œβ”€β”€ EU-AI-Act.md
β”‚       β”œβ”€β”€ DSA.md
β”‚       β”œβ”€β”€ GDPR.md
β”‚       β”œβ”€β”€ JP-Copyright-30-4.md
β”‚       └── US-NCII.md
β”œβ”€β”€ schemas/
β”‚   β”œβ”€β”€ cap/                     # Core event schemas
β”‚   └── srp/                     # SRP extension schemas
β”œβ”€β”€ examples/
β”‚   β”œβ”€β”€ cap-core/               # Core event examples
β”‚   └── cap-srp/                # SRP event examples
└── test-vectors/               # Conformance test data
    β”œβ”€β”€ canonicalization/       # RFC 8785 JCS tests
    β”œβ”€β”€ hash/                   # EventHash tests
    β”œβ”€β”€ signature/              # Ed25519 tests
    └── completeness/           # SRP invariant tests

Contributing

We welcome contributions. Please see:

To propose changes:

  1. Open an issue describing the proposed change
  2. Reference relevant specification sections
  3. Include test vectors if applicable

License

This specification is published under CC BY 4.0 International License.


Contact


Β© 2025-2026 VeritasChain Standards Organization (VSO). All rights reserved.

VSO is a vendor-neutral standards body. References to specific products or organizations are for interoperability documentation purposes only and do not constitute endorsement.

About

CAP (Content / Creative AI Profile) specification: a verifiable audit framework for AI content workflows, including Safe Refusal Provenance (SRP) to cryptographically prove non-generation and policy enforcement.

Topics

Resources

License

Code of conduct

Contributing

Security policy

Stars

Watchers

Forks

Packages

No packages published