dido:03-dido-te:99-annexes:annex-c-requirements:03-functional-requirements:03-03-twin-node-requirements:twin-010-control-twin-interaction:twin-010d-prevent-unauthorized-state-changing-interactions

This is an old revision of the document!


TWIN-010d — Prevent Unauthorized State-Changing Interactions

The DIDO-TE SHALL prevent execution of a state-changing interaction that lacks authorization.

TWIN-010c establishes that a permitted state-changing interaction requires authorization.

This requirement enforces that authorization decision by preventing execution when the required authorization is absent or denied.

Separating the authorization requirement from enforcement keeps the obligations independently verifiable. A system may correctly identify that authorization is required yet still fail to prevent an unauthorized interaction from executing.

Prevention of unauthorized execution protects the state of participating Twin Realizations, Nodes, and Resources from unauthorized modification.

Verification confirms that:

  1. A state-changing interaction without authorization does not execute.
  2. A state-changing interaction for which authorization is denied does not execute.
  3. An authorization granted for one interaction does not authorize a different interaction.
  4. An authorization granted for one target entity does not authorize modification of another target entity.
  5. Prevented execution does not change the state of the target Twin Realization, Node, or Resource.
  6. Prevention of unauthorized execution is traceable to the interaction and authorization decision.

Verification includes an attempted state-changing interaction without authorization and confirms that the interaction does not execute and the target state remains unchanged.

This requirement enforces the authorization prerequisite established by TWIN-010c before a state-changing interaction executes.

TBD

Draft

{{section>dido:03-dido-te:99-annexes:annex-c-requirements:03-functional-requirements:03-03-twin-node-requirements:twin-010-control-twin-interaction:twin-010d-prevent-unauthorized-state-changing-interactions#Statement&noheader&nofooter&noeditbtn}}

© 2026 Dido Solutions, Inc. and Jackrabbit Consulting, Inc.

  • dido/03-dido-te/99-annexes/annex-c-requirements/03-functional-requirements/03-03-twin-node-requirements/twin-010-control-twin-interaction/twin-010d-prevent-unauthorized-state-changing-interactions.1787356744.txt.gz
  • Last modified: 2026/08/21 16:59
  • by nick_dido