Authority narrows as agents delegate, never expands.
In multi-agent systems, trust cannot automatically propagate. Xybern constrains authority at every delegation boundary, so one agent can never grant another more power than it holds itself, and every delegated action is sealed to the vault.
When one agent delegates to another, the granted authority is the intersection of what the source may delegate and what the target may accept. It is always a subset, never an expansion.
Delegated authority can expire with the task, the session or a defined window, and can be narrowed or revoked at any point without waiting on the downstream agent.
Every downstream action stays traceable through the full delegation chain, so you can always answer which authority permitted it and how it was passed on.
Related capabilities on the same authorisation layer. Every one is enforced before an action runs and sealed to the Provenance Vault.
Put one workflow behind Xybern and watch every agent action authorised, and sealed to the vault.