@techreport{rehfeld-apix-quality-00, number = {draft-rehfeld-apix-quality-00}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-rehfeld-apix-quality/00/}, author = {Carsten Rehfeld}, title = {{APIX Quality Attestation Extension: Verifiable Product, Process, and Organisation Quality Claims for Discovered Services}}, pagetotal = 22, year = 2026, month = jun, day = 14, abstract = {The APIX Core ({[}APIX-CORE{]}) defines a three-dimensional trust model — Organisation Trust Level (O), Service Verification Level (S), and Liveness — that lets a consuming agent decide whether a discovered service is operated by a verified party, is technically reachable and consistent, and is currently alive. These dimensions do not describe the \_quality\_ of what a service produces. They cannot answer whether a manufacturing process is GMP-certified, whether a product carries an independent quality grade, or whether an organisation holds a domain quality certification, nor who attested any of these and with what strength. This document defines the APIX Quality Attestation Extension: a cross-cutting extension, docking via the structured extensions container of the APM ({[}APIX-CORE{]} Section 7.1), that records third- party and self-declared quality claims about a discovered service's Organisation, Process, or Product, each carried with an explicit assurance level, attestation provenance, validity state, and liability regime. The extension reuses and extends the Core Verification Basis Registry for provenance and mirrors the Core capability-taxonomy governance for its criterion vocabulary. It is the mechanism by which measurable quality enters the agentic purchase decision without re-introducing the central-arbiter and race-to-the- bottom failure modes the Core is designed to prevent.}, }