Mind Chill
    Good Proof™by Mind Chill®
    HomeHow It WorksSectorsNewsMind Chill GuardiansPricing
    Book Sprint
    Mind Chill
    Good Proof™by Mind Chill®

    Contract-referenceable verification for high-impact AI actions. Scope-bound, expiry-aware, and human-final when it matters.

    Sales: [email protected]Security: [email protected]Support: [email protected]

    UK

    Mind Chill Nootropics Ltd

    09667911

    Singapore

    Mindchill Research Pte. Ltd.

    202544340Z

    A division of

    Mind Chill — Department of Human Defense

    Not a certification. Scope-limited verification. Acceptance depends on counterparty/programme requirements.

    Product

    • Good Proof Stamp
    • Stamp Spec
    • IDA Evidence Pack
    • How It Works
    • Verify API
    • Guardians
    • Pricing

    Solutions

    • Sectors
    • Specimens
    • Verify a Stamp
    • AI GOLD
    • Trust Metrics
    • RegTech
    • Security Automation

    Safeguards

    • Kill Switch
    • Agentic Security
    • Clause Pack
    • Coverage Reports
    • Portability & Data Rights

    Company

    • Book a Stamp Sprint
    • Advocate Partners
    • Partner Program
    • News
    • Leadership
    • Trust & Security
    • Official Domains

    © 2026 Good Proof by Mind Chill. All rights reserved.

    PrivacyTermsCookiesSecurityContactFAQStatusOfficial
    HomeContract Clause Pack
    Good Proof
    Procurement Ready

    Contract Clause Pack

    Version:v1.2
    Last updated:2026-02-20
    Owner:Legal / Security
    Applies to:Good Proof Stamps – All Lanes

    Pre-drafted, negotiation-ready contract language that maps Good Proof Stamps to procurement, legal, security, and audit requirements. Forward to legal, embed in RFPs, reference in vendor agreements.

    Use case: High-impact tool execution, including automated security testing, where unsafe defaults, scope drift, or configuration changes must fail-closed.

    If your legal team prefers, we can deliver this as an Exhibit for your MSA/SOW with bracketed variables and redline notes.

    Book a Stamp Sprint
    Contract-readyRedline formatSLA schedulesFramework-mapped

    Clause pack included with every Stamp Sprint. No Stamp → No Ship.

    How to Use This – Procurement Fast-Path

    • 1.Forward this page (or the full Clause Pack) to legal and procurement for redline review.
    • 2.Adapt bracketed variables ([ACTION CLASS], [SLA SCHEDULE], etc.) to your specific requirements.
    • 3.Reference clauses in your RFP, MSA/SOW exhibit, or vendor security questionnaire.
    • 4.Use the Mapping to Verify Fields table to align clauses with technical integration requirements.
    • 5.Request sector-specific addenda if your use case requires additional coverage (healthcare, finance, government, etc.).

    Definitions

    Bracketed variables are intended to be completed by Buyer/Supplier in the Order Form or Exhibit.

    Stamp

    A Good Proof Stamp – the cryptographically-verifiable attestation of scope-limited compliance for a defined action class.

    Status Link

    The machine-checkable verification endpoint that returns current status (VALID, NEEDS_REFRESH, WITHDRAWN, EXPIRED, NOT_VERIFIED).

    Action Class

    A defined category of high-impact actions subject to verification (e.g., tool_execution:high_impact, payment:outbound, account:closure).

    Gate Decision

    The Gate’s enforcement outcome: ALLOW (proceed within scope), BLOCK (deny execution), or ESCALATE (require human approval).

    Official Verifier

    The allowlisted verification domain: verify.goodproof.mindchill.ai. The verify_url host MUST match this exactly.

    Gate

    Buyer’s enforcement point that intercepts gated actions, queries the Status Link, and enforces fail-closed semantics.

    Evidence Pack

    The exportable audit artifact containing decision-time evidence fields for disputes, audits, and procurement reviews.

    Sample Clauses

    Excerpts from the full clause pack. Adapt bracketed variables to your specific requirements.

    Clause 1Verification Requirement

    “Supplier SHALL ensure that all [ACTION CLASS] decisions are issued with a Good Proof Stamp and corresponding Status Link. Buyer SHALL verify status at decision time for covered [ACTION CLASS] before reliance via the Official Verifier (verify.goodproof.mindchill.ai). Supplier acknowledges that Buyer’s reliance on the Stamp is conditioned upon successful verification.”

    Clause 2Fail-Closed Semantics

    “If a Status Link returns NOT_VERIFIED, NEEDS_REFRESH, WITHDRAWN, or EXPIRED, or if verification cannot be performed due to network failure, timeout, TLS/certificate failure, domain mismatch, or malformed response, Buyer SHALL treat the decision as unverified and SHALL block downstream processing or escalate per [ESCALATION PATH]. Supplier acknowledges that fail-closed enforcement may result in action denial and accepts this as an intended security control.”

    Clause 3Refresh Triggers

    “Supplier agrees that material changes to [MODEL VERSION / POLICY VERSION / TOOL INVENTORY / SCOPE BOUNDARIES / VERIFIER DOMAIN / SIGNING KEYS] SHALL trigger a NEEDS_REFRESH status until re-verification is complete. Supplier SHALL notify Buyer of material changes via the method specified in [NOTIFICATION SCHEDULE].”

    Clause 4Withdrawal & Notification

    “Supplier may withdraw a Stamp at any time for documented security, safety, compliance, legal, fraud, or material risk events, with reason_code recorded and notice obligations per [SLA SCHEDULE]. Withdrawal is immediate at source and changes current validity; status changes are recorded and traceable via audit evidence. Supplier SHALL include a reason_code in audit evidence for each withdrawal. If webhook notifications are enabled, Supplier SHALL deliver withdrawal events to Buyer’s registered endpoint(s) per the delivery targets defined in [SLA SCHEDULE / ORDER FORM]. The live verification check (polling) remains the source of truth if webhook delivery fails or is delayed. Buyer MAY route WITHDRAWN status to [ESCALATION PATH]; Supplier acknowledges this is intended behavior.”

    Clause 5Definitions & Scope

    “For purposes of this Agreement: ‘Stamp’ means a Good Proof Stamp issued for [ACTION CLASS]; ‘Status Link’ means the machine-checkable verification endpoint; ‘Gate’ means Buyer’s enforcement point that queries the Status Link; ‘Official Verifier’ means verify.goodproof.mindchill.ai; ‘Gate Decision’ means ALLOW, BLOCK, or ESCALATE as determined by the Gate. This clause applies to all [ACTION CLASS] within scope of [COVERED SYSTEMS / ENVIRONMENTS].”

    Clause 6Verifier Trust & Anti-Spoof

    “Buyer’s Gate SHALL enforce: (a) verify_url host MUST exactly match Official Verifier or Buyer-approved verifier allowlist; (b) HTTPS only with mandatory TLS certificate validation (no insecure overrides); (c) no redirects or HTTP fallback permitted; (d) signer identity MUST match Buyer’s allowlist of permitted signers; (e) verified_at MUST be fresh within Buyer’s configured TTL (or verify-per-action); (f) response MUST correlate to the request via request_id or equivalent identifier. Any mismatch, TLS failure, redirect attempt, stale response, or missing correlation SHALL be treated as NOT_VERIFIED. Supplier SHALL not issue Stamps with verify_url pointing to domains other than the Official Verifier. Supplier SHALL provide [ADVANCE NOTICE PERIOD] notice for verifier domain or signing key changes; emergency rotation is permitted for security reasons with notice as soon as practicable. For signing key rotations, Supplier SHALL maintain an overlap window of [ROTATION OVERLAP WINDOW] to support Buyer allowlist updates.”

    Clause 7Evidence & Audit Production

    “Supplier SHALL ensure the Status Link response exposes fields sufficient for Buyer evidence: stamp_id, status, verified_at, expires_at, verifier_domain, signer, version, request_id, reason_code, and failure_mode (if any). Buyer SHOULD log each verification decision; minimum recommended fields: stamp_id, action_class, decision, status, verified_at, expires_at, verifier_domain, latency_ms, request_id, reason_code, failure_mode. Buyer MAY retain logs for [RETENTION PERIOD] and SHOULD protect logs against tampering (e.g., append-only storage, access controls, integrity monitoring). Upon request and subject to [NOTICE PERIOD], Supplier SHALL produce audit evidence of Stamp issuance, status changes, withdrawals, and signer/key rotations relevant to [ACTION CLASS].”

    Clause 8Change Management & Refresh

    “Material changes include but are not limited to: model version, tool inventory, policy version, scope boundaries, verifier domain, and signing keys. Upon material change, Supplier SHALL transition affected Stamps to NEEDS_REFRESH status. Supplier SHALL provide [ADVANCE NOTICE PERIOD] written notice before changes to Official Verifier domain or signing keys, during which Buyer SHOULD update allowlists and configurations accordingly. For signing key rotations, Supplier SHALL maintain an overlap window of [ROTATION OVERLAP WINDOW] to support Buyer allowlist updates, unless emergency rotation is required for security reasons (in which case Supplier SHALL notify as soon as practicable).”

    Clause 9Data Processing Boundary

    “Verification path excludes raw PII/PHI payloads by default; verification uses references, hashes, and scope identifiers. Buyer controls retention periods per [RETENTION SCHEDULE]. Logs SHALL be protected with access controls and integrity safeguards. Where a Data Processing Agreement (DPA) is executed, DPA terms take precedence over this clause for data handling obligations.”

    Reliance Rule

    Decision-time polling from the Official Verifier is the source of truth. Webhook delivery accelerates notification but does not replace verification checks.

    Full clause pack includes: SLA schedule templates, liability limitation language, audit rights, indemnification, Guardian service clauses, and sector-specific addenda.

    Not legal advice. These are template clauses for legal review. Consult qualified counsel before use.

    Mapping to Verify Fields

    Each clause references specific fields from the Status Link response. Use this table to align contract language with technical integration.

    ClauseReferenced Fields
    1 – Verification Requirement
    stamp_idverify_urlstatusofficial_verifier
    2 – Fail-Closed Semantics
    statusverify_urlofficial_verifier
    3 – Refresh Triggers
    statusverified_atversionscopescope_hash
    4 – Withdrawal & Notification
    statusversionverified_atreason_code
    5 – Definitions & Scope
    scopescope_hashaction_class
    6 – Verifier Trust & Anti-Spoof
    verify_urlofficial_verifiersignerverified_atrequest_id
    7 – Evidence & Audit
    stamp_idverified_atexpires_atstatussignerversionrequest_idreason_code
    8 – Change Management
    statusversionscope_hashsignerverified_atrequest_id
    9 – Data Processing Boundary
    scopescope_hashretention_period

    Control Mapping (Non-Claiming)

    These clauses map to common control frameworks. This is a reference alignment, not a certification claim.

    SOC 2 (Type II)

    Control IDFamilyClauses
    CC6.1–6.3Logical Access1, 2, 6
    CC7.1–7.2Change Management3, 8
    CC7.3–7.4Monitoring & Detection2, 7
    CC8.1System Operations4, 7

    ISO 27001:2022

    Control IDFamilyClauses
    A.5.15–5.18Access Control1, 2, 6
    A.8.24Cryptography & Comms Security6
    A.8.15–8.16Logging & Monitoring7
    A.5.19–5.23Supplier Relationships3, 4, 8

    NIST SP 800-53

    Control IDFamilyClauses
    AC-*Access Control1, 2, 6
    AU-*Audit & Accountability7
    CM-*Configuration Management3, 8
    SC-*System & Comms Protection6
    SI-*System & Info Integrity2, 4

    Control mappings are indicative alignments only and are not certifications, attestations, or legal compliance advice. Buyers should assess fit-for-purpose based on their own compliance requirements.

    Request Full Clause Pack

    Get the complete contract clause pack with sector-specific templates, SLA schedules, and redline-ready exhibit format.

    Book a Stamp Sprint

    Clause pack included with every Stamp Sprint. Also available for standalone procurement review.

    Next steps:

    View SpecimensSee Verify APIView Stamp SpecView Kill Switch Flow