Trust starts with who is allowed to issue.
Consortium-10060 is the governance surface for RCO issuers. It publishes the signed issuer registry, the append-only amendment record and the consortium trust anchor.
An RCO does not become trustworthy because GSC serves it. It becomes verifiable because the record identifies its issuer, the issuer publishes its public key and the signed registry establishes that issuer's standing.
Issuer → key → record → verification.
/issuers.json — signed issuer registry
/amendments.json — append-only governance history
/.well-known/jwks.json — consortium public key
The consortium trust anchor is additionally pinned outside the registry — on the dpuone.ai keyring page and in DNS — so the registry itself can be checked from two independent origins.
Seats are governed by the Enterprise Partner License (terms; counsel writes the words). Conformance: the MIT protocol layer — tool contract v1.4, record schema and signature test vectors; a verifier that passes the vectors byte-for-byte conforms.
21 x-gsc response headers as served, generated from the estate variable table; timestamp and nonce regenerate per request.
x-gsc-protocol | CPG-68000 |
x-gsc-version | 4.0 |
x-gsc-handshake | https://gsc-registry.ai/resolve/consortium-10060.org |
x-gsc-card | https://consortium-10060.org/.well-known/agent-card.json |
x-gsc-trust-anchor | https://dpuone.ai/.well-known/jwks.json |
x-gsc-operator | GreenCore Solutions Corp. |
x-gsc-duns | 24-336-6774 |
x-gsc-microsoft-partner | AI-Cloud-Partner-Program-Member |
x-gsc-node | consortium-10060.org |
x-gsc-region | France Central |
x-gsc-jurisdiction | apex |
x-gsc-signal | CPG-200 |
x-gsc-state | ALLOW |
x-gsc-graph | https://mcp.cpgknowledgegraph.ai/mcp |
x-gsc-mcp | https://mcp.rco-a2a.ai/mcp |
x-gsc-inbound | https://x-gsi.ai/ingest |
x-gsc-product | https://rco-a2a.ai/ |
x-gsc-fleet | https://gsc-cpg.ai,https://gsc-a2a.ai,https://gsc-a2a.io,https://gsc-fleet.ai |
x-gsc-git | io.github.greencore-solutions/rco-a2a |
x-gsc-timestamp | [per-request, ISO 8601] |
x-gsc-nonce | [per-request, 32-char hex] |
The issuer owns the statement. GSC verifies and serves partner records. It does not author them, hold the issuer's private key or vouch for their substance.