Invariants / DC-TXV-06

DC-TXV-06

DC derived enforced

For each era, the certificate-deposit classification map(state, cert) is a closed, total, era-versioned function: every certificate variant resolves to exactly one of new_deposit(coin) | refund(coin) | neutral | explicit_reject, with the coin sourced from the cert (Conway explicit-deposit variants, tags 7/8) or the protocol parameter (legacy variants, tags 0/1). An unrecognized cert tag, malformed cert CBOR, or undecodable withdrawals field is a deterministic reject, never a silent neutral. State-dependent cases that cannot be accounted (e.g. pool re-registration charged as a new deposit) reject with a structured UnsupportedStateDependentDepositAccounting error rather than guessing. Incomplete classification is a forbidden false-accept path feeding the value-conservation equation.

Source

Cardano ledger spec (Conway CDDL certificate tags 0..18; UTXO deposit/refund accounting); IDD fail-fast + closed-surface doctrine

Cluster
CL-LEDGER-VERDICT
Authority surface
BLUE Conway value-conservation accounting

Enforcement trace

Tests 10

  • decode_total_over_tags_0_18
  • unknown_cert_tag_is_codec_error
  • removed_tag_5_6_is_not_valid_in_conway
  • malformed_cert_cbor_rejected
  • decode_is_replay_deterministic
  • class_mapping_is_total
  • legacy_unregistration_unresolved_is_unsupported_state_dependent
  • legacy_unregistration_resolves_recorded_deposit
  • pool_reregistration_is_neutral
  • pool_new_registration_charges_pool_deposit

Cross-references

Strengthened in