# Protected execution planning

Paths on this page are relative to <code>/api/liquidity-studio/v2</code>. Authentication and required headers vary by operation.

[API reference overview](/api-reference/overview/) · [OpenAPI download](/openapi/liquidity-operating-system-v2.openapi.json)

## Operations on this page

| Method | Path | Operation |
| --- | --- | --- |
| <code>GET</code> | <code>/quote-sets</code> | [listQuoteSets](#listQuoteSets) |
| <code>POST</code> | <code>/quote-sets</code> | [admitProtectedExecutionQuoteSet](#admitProtectedExecutionQuoteSet) |
| <code>GET</code> | <code>/quote-sets/{id}</code> | [getQuoteSets](#getQuoteSets) |
| <code>GET</code> | <code>/protected-execution-plans</code> | [listProtectedExecutionPlans](#listProtectedExecutionPlans) |
| <code>POST</code> | <code>/protected-execution-plans</code> | [prepareProtectedExecutionPlan](#prepareProtectedExecutionPlan) |
| <code>GET</code> | <code>/protected-execution-plans/{id}</code> | [getProtectedExecutionPlans](#getProtectedExecutionPlans) |
| <code>POST</code> | <code>/quote-requests</code> | [createProtectedExecutionQuoteRequest](#createProtectedExecutionQuoteRequest) |
| <code>POST</code> | <code>/quote-requests/{id}/quotes</code> | [admitProtectedExecutionQuotesForRequest](#admitProtectedExecutionQuotesForRequest) |
| <code>GET</code> | <code>/protected-execution-plans/{id}/state</code> | [getProtectedExecutionPlanState](#getProtectedExecutionPlanState) |
| <code>POST</code> | <code>/protected-execution-plans/{id}/transitions</code> | [appendProtectedExecutionLegTransition](#appendProtectedExecutionLegTransition) |

<a id="listQuoteSets"></a>

## List protected execution quote sets

`GET /quote-sets`

Operation ID: <code>listQuoteSets</code>

**Authentication:** <code>&#95;&#95;Host-klineo&#95;session</code> cookie (<code>sessionCookie</code>)

### Parameters

| Name | Location | Required | Type | Description and constraints |
| --- | --- | --- | --- | --- |
| <code>x-klineo-organization-id</code> | header | Yes | <code>string</code> | — |
| <code>cursor</code> | query | No | <code>string</code> | Opaque cursor returned in the previous response metadata. |
| <code>limit</code> | query | No | <code>integer</code> | Default: <code>50</code>; Minimum: <code>1</code>; Maximum: <code>100</code> |

### Responses

| Status | Description | Content type and schema |
| --- | --- | --- |
| <code>200</code> | Latest tenant-isolated aggregate versions | <code>application/json</code>: <code>object</code> |

**<code>200</code> <code>application/json</code> body**

<code>object</code> — Additional properties rejected

| Field | Required at this level | Type | Description and constraints |
| --- | --- | --- | --- |
| <code>data</code> | Yes | Array of All of: [RecordEnvelope](/api-reference/schemas/record-envelope/); <code>object</code> | — |
| <code>data&#91;&#93;.allOf&#91;2&#93;.payload</code> | Yes | [ProtectedExecutionQuoteSet](/api-reference/schemas/protected-execution-quote-set/) | — |
| <code>meta</code> | Yes | <code>object</code> | Additional properties rejected |
| <code>meta.count</code> | Yes | <code>integer</code> | Minimum: <code>0</code> |
| <code>meta.hasMore</code> | Yes | <code>boolean</code> | — |
| <code>meta.nextCursor</code> | No | <code>string</code> | — |

Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.

<a id="admitProtectedExecutionQuoteSet"></a>

## Append signed provider quotes to an immutable policy-bound quote request

`POST /quote-sets`

Operation ID: <code>admitProtectedExecutionQuoteSet</code>

**Authentication:** <code>&#95;&#95;Host-klineo&#95;session</code> cookie (<code>sessionCookie</code>)

### Parameters

| Name | Location | Required | Type | Description and constraints |
| --- | --- | --- | --- | --- |
| <code>Idempotency-Key</code> | header | Yes | <code>string</code> | Min length: <code>8</code>; Max length: <code>160</code> |
| <code>x-klineo-organization-id</code> | header | Yes | <code>string</code> | — |
| <code>If-Match</code> | header | Yes | <code>string</code> | Pattern: <code>^"&#91;^"&#92;&#92; &#93;+"$</code> |

### Request body

Required: **yes**.

**<code>application/json</code>**

<code>object</code> — Additional properties rejected

| Field | Required at this level | Type | Description and constraints |
| --- | --- | --- | --- |
| <code>quoteRequestId</code> | Yes | <code>string</code> | — |
| <code>quotes</code> | Yes | Array of [ProtectedExecutionQuote](/api-reference/schemas/protected-execution-quote/) | Max items: <code>64</code> |
| <code>unavailableReasons</code> | Yes | Array of <code>string</code> | Max items: <code>64</code> |
| <code>reason</code> | Yes | <code>string</code> | Min length: <code>3</code>; Max length: <code>500</code> |

Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.

### Responses

| Status | Description | Content type and schema |
| --- | --- | --- |
| <code>201</code> | Current provider generations and quote signatures verified | <code>application/json</code>: <code>object</code> |
| <code>412</code> | Quote request changed | No response body declared |

**<code>201</code> <code>application/json</code> body**

<code>object</code> — Additional properties rejected

| Field | Required at this level | Type | Description and constraints |
| --- | --- | --- | --- |
| <code>data</code> | Yes | All of: [RecordEnvelope](/api-reference/schemas/record-envelope/); <code>object</code> | — |
| <code>data.allOf&#91;2&#93;.payload</code> | Yes | [ProtectedExecutionQuoteSet](/api-reference/schemas/protected-execution-quote-set/) | — |

Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.

<a id="getQuoteSets"></a>

## Get one protected execution quote sets aggregate

`GET /quote-sets/{id}`

Operation ID: <code>getQuoteSets</code>

**Authentication:** <code>&#95;&#95;Host-klineo&#95;session</code> cookie (<code>sessionCookie</code>)

### Parameters

| Name | Location | Required | Type | Description and constraints |
| --- | --- | --- | --- | --- |
| <code>x-klineo-organization-id</code> | header | Yes | <code>string</code> | — |
| <code>id</code> | path | Yes | <code>string</code> | — |

### Responses

| Status | Description | Content type and schema |
| --- | --- | --- |
| <code>200</code> | Current immutable aggregate version | <code>application/json</code>: <code>object</code> |
| <code>404</code> | Not found | No response body declared |

**<code>200</code> response headers**

| Header | Required | Type | Description and constraints |
| --- | --- | --- | --- |
| <code>ETag</code> | Yes | <code>string</code> | — |

**<code>200</code> <code>application/json</code> body**

<code>object</code> — Additional properties rejected

| Field | Required at this level | Type | Description and constraints |
| --- | --- | --- | --- |
| <code>data</code> | Yes | All of: [RecordEnvelope](/api-reference/schemas/record-envelope/); <code>object</code> | — |
| <code>data.allOf&#91;2&#93;.payload</code> | Yes | [ProtectedExecutionQuoteSet](/api-reference/schemas/protected-execution-quote-set/) | — |

Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.

<a id="listProtectedExecutionPlans"></a>

## List protected execution plans

`GET /protected-execution-plans`

Operation ID: <code>listProtectedExecutionPlans</code>

**Authentication:** <code>&#95;&#95;Host-klineo&#95;session</code> cookie (<code>sessionCookie</code>)

### Parameters

| Name | Location | Required | Type | Description and constraints |
| --- | --- | --- | --- | --- |
| <code>x-klineo-organization-id</code> | header | Yes | <code>string</code> | — |
| <code>cursor</code> | query | No | <code>string</code> | Opaque cursor returned in the previous response metadata. |
| <code>limit</code> | query | No | <code>integer</code> | Default: <code>50</code>; Minimum: <code>1</code>; Maximum: <code>100</code> |

### Responses

| Status | Description | Content type and schema |
| --- | --- | --- |
| <code>200</code> | Latest tenant-isolated aggregate versions | <code>application/json</code>: <code>object</code> |

**<code>200</code> <code>application/json</code> body**

<code>object</code> — Additional properties rejected

| Field | Required at this level | Type | Description and constraints |
| --- | --- | --- | --- |
| <code>data</code> | Yes | Array of All of: [RecordEnvelope](/api-reference/schemas/record-envelope/); <code>object</code> | — |
| <code>data&#91;&#93;.allOf&#91;2&#93;.payload</code> | Yes | [ProtectedExecutionPlan](/api-reference/schemas/protected-execution-plan/) | — |
| <code>meta</code> | Yes | <code>object</code> | Additional properties rejected |
| <code>meta.count</code> | Yes | <code>integer</code> | Minimum: <code>0</code> |
| <code>meta.hasMore</code> | Yes | <code>boolean</code> | — |
| <code>meta.nextCursor</code> | No | <code>string</code> | — |

Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.

<a id="prepareProtectedExecutionPlan"></a>

## Prepare typed child legs under the quote request current immutable policy binding

`POST /protected-execution-plans`

Operation ID: <code>prepareProtectedExecutionPlan</code>

**Authentication:** <code>&#95;&#95;Host-klineo&#95;session</code> cookie (<code>sessionCookie</code>)

### Parameters

| Name | Location | Required | Type | Description and constraints |
| --- | --- | --- | --- | --- |
| <code>Idempotency-Key</code> | header | Yes | <code>string</code> | Min length: <code>8</code>; Max length: <code>160</code> |
| <code>x-klineo-organization-id</code> | header | Yes | <code>string</code> | — |

### Request body

Required: **yes**.

**<code>application/json</code>**

<code>object</code> — Additional properties rejected

| Field | Required at this level | Type | Description and constraints |
| --- | --- | --- | --- |
| <code>quoteSetId</code> | Yes | <code>string</code> | Min length: <code>3</code>; Max length: <code>160</code> |
| <code>childLegCount</code> | Yes | <code>integer</code> | Minimum: <code>1</code>; Maximum: <code>32</code> |
| <code>reason</code> | Yes | <code>string</code> | Min length: <code>3</code>; Max length: <code>500</code> |

Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.

### Responses

| Status | Description | Content type and schema |
| --- | --- | --- |
| <code>201</code> | Non-broadcast typed plan, or explicit PAUSED state when protected liquidity is unavailable | <code>application/json</code>: <code>object</code> |

**<code>201</code> <code>application/json</code> body**

<code>object</code> — Additional properties rejected

| Field | Required at this level | Type | Description and constraints |
| --- | --- | --- | --- |
| <code>data</code> | Yes | <code>object</code> | Additional properties rejected |
| <code>data.id</code> | Yes | <code>string</code> | — |
| <code>data.organizationId</code> | Yes | <code>string</code> | — |
| <code>data.recordType</code> | Yes | [OperatingSystemRecordType](/api-reference/schemas/operating-system-record-type/) | — |
| <code>data.version</code> | Yes | <code>integer</code> | Minimum: <code>1</code> |
| <code>data.status</code> | Yes | [OperatingSystemRecordStatus](/api-reference/schemas/operating-system-record-status/) | — |
| <code>data.payload</code> | Yes | [ProtectedExecutionPlan](/api-reference/schemas/protected-execution-plan/) | — |
| <code>data.artifactHash</code> | Yes | [Hash](/api-reference/schemas/hash/) | — |
| <code>data.evidenceHashes</code> | Yes | Array of [Hash](/api-reference/schemas/hash/) | — |
| <code>data.createdBy</code> | Yes | <code>string</code> | — |
| <code>data.reason</code> | Yes | <code>string</code> | — |
| <code>data.requestId</code> | Yes | <code>string</code> | — |
| <code>data.createdAt</code> | Yes | <code>string</code> | Format: <code>date-time</code> |
| <code>data.updatedAt</code> | Yes | <code>string</code> | Format: <code>date-time</code> |
| <code>data.supersedesVersion</code> | No | <code>integer</code> | Minimum: <code>1</code> |
| <code>data.resourceVersion</code> | Yes | [Hash](/api-reference/schemas/hash/) | — |
| <code>data.stateHash</code> | Yes | [Hash](/api-reference/schemas/hash/) | — |
| <code>data.publicMempoolFallbackDerivedFromPolicy</code> | Yes | Constant <code>true</code> | — |
| <code>data.executionBroadcast</code> | Yes | Constant <code>false</code> | — |

Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.

<a id="getProtectedExecutionPlans"></a>

## Get one protected execution plans aggregate

`GET /protected-execution-plans/{id}`

Operation ID: <code>getProtectedExecutionPlans</code>

**Authentication:** <code>&#95;&#95;Host-klineo&#95;session</code> cookie (<code>sessionCookie</code>)

### Parameters

| Name | Location | Required | Type | Description and constraints |
| --- | --- | --- | --- | --- |
| <code>x-klineo-organization-id</code> | header | Yes | <code>string</code> | — |
| <code>id</code> | path | Yes | <code>string</code> | — |

### Responses

| Status | Description | Content type and schema |
| --- | --- | --- |
| <code>200</code> | Current immutable aggregate version | <code>application/json</code>: <code>object</code> |
| <code>404</code> | Not found | No response body declared |

**<code>200</code> response headers**

| Header | Required | Type | Description and constraints |
| --- | --- | --- | --- |
| <code>ETag</code> | Yes | <code>string</code> | — |

**<code>200</code> <code>application/json</code> body**

<code>object</code> — Additional properties rejected

| Field | Required at this level | Type | Description and constraints |
| --- | --- | --- | --- |
| <code>data</code> | Yes | All of: [RecordEnvelope](/api-reference/schemas/record-envelope/); <code>object</code> | — |
| <code>data.allOf&#91;2&#93;.payload</code> | Yes | [ProtectedExecutionPlan](/api-reference/schemas/protected-execution-plan/) | — |

Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.

<a id="createProtectedExecutionQuoteRequest"></a>

## Create a server-derived quote request bound to the current immutable AutonomyPolicy generation

`POST /quote-requests`

Operation ID: <code>createProtectedExecutionQuoteRequest</code>

**Authentication:** <code>&#95;&#95;Host-klineo&#95;session</code> cookie (<code>sessionCookie</code>)

### Parameters

| Name | Location | Required | Type | Description and constraints |
| --- | --- | --- | --- | --- |
| <code>Idempotency-Key</code> | header | Yes | <code>string</code> | Min length: <code>8</code>; Max length: <code>160</code> |
| <code>x-klineo-organization-id</code> | header | Yes | <code>string</code> | — |

### Request body

Required: **yes**.

**<code>application/json</code>**

<code>object</code> — Additional properties rejected

| Field | Required at this level | Type | Description and constraints |
| --- | --- | --- | --- |
| <code>vaultId</code> | Yes | <code>string</code> | — |
| <code>chainId</code> | Yes | <code>integer</code> | Minimum: <code>1</code> |
| <code>assetIn</code> | Yes | [Address](/api-reference/schemas/address/) | — |
| <code>assetOut</code> | Yes | [Address](/api-reference/schemas/address/) | — |
| <code>settlementContract</code> | Yes | [Address](/api-reference/schemas/address/) | — |
| <code>settlementAdapterId</code> | Yes | <code>string</code> | — |
| <code>amountIn</code> | Yes | [PositiveAtomicAmount](/api-reference/schemas/positive-atomic-amount/) | — |
| <code>maximumSlippagePips</code> | Yes | [Pips](/api-reference/schemas/pips/) | — |
| <code>expiresAt</code> | Yes | <code>string</code> | Format: <code>date-time</code> |
| <code>providerIds</code> | Yes | Array of <code>string</code> | Min items: <code>1</code>; Max items: <code>64</code> |
| <code>reason</code> | Yes | <code>string</code> | Min length: <code>3</code>; Max length: <code>500</code> |

Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.

### Responses

| Status | Description | Content type and schema |
| --- | --- | --- |
| <code>201</code> | Immutable draft request; public fallback is derived server-side | <code>application/json</code>: <code>object</code> |

**<code>201</code> <code>application/json</code> body**

<code>object</code> — Additional properties rejected

| Field | Required at this level | Type | Description and constraints |
| --- | --- | --- | --- |
| <code>data</code> | Yes | <code>object</code> | Additional properties rejected |
| <code>data.id</code> | Yes | <code>string</code> | — |
| <code>data.organizationId</code> | Yes | <code>string</code> | — |
| <code>data.recordType</code> | Yes | [OperatingSystemRecordType](/api-reference/schemas/operating-system-record-type/) | — |
| <code>data.version</code> | Yes | <code>integer</code> | Minimum: <code>1</code> |
| <code>data.status</code> | Yes | [OperatingSystemRecordStatus](/api-reference/schemas/operating-system-record-status/) | — |
| <code>data.payload</code> | Yes | [ProtectedExecutionQuoteRequest](/api-reference/schemas/protected-execution-quote-request/) | — |
| <code>data.artifactHash</code> | Yes | [Hash](/api-reference/schemas/hash/) | — |
| <code>data.evidenceHashes</code> | Yes | Array of [Hash](/api-reference/schemas/hash/) | — |
| <code>data.createdBy</code> | Yes | <code>string</code> | — |
| <code>data.reason</code> | Yes | <code>string</code> | — |
| <code>data.requestId</code> | Yes | <code>string</code> | — |
| <code>data.createdAt</code> | Yes | <code>string</code> | Format: <code>date-time</code> |
| <code>data.updatedAt</code> | Yes | <code>string</code> | Format: <code>date-time</code> |
| <code>data.supersedesVersion</code> | No | <code>integer</code> | Minimum: <code>1</code> |
| <code>data.resourceVersion</code> | Yes | [Hash](/api-reference/schemas/hash/) | — |
| <code>data.publicMempoolFallbackDerivedFromPolicy</code> | Yes | Constant <code>true</code> | — |
| <code>data.executable</code> | Yes | Constant <code>false</code> | — |

Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.

<a id="admitProtectedExecutionQuotesForRequest"></a>

## Verify and append current-generation signed provider quotes

`POST /quote-requests/{id}/quotes`

Operation ID: <code>admitProtectedExecutionQuotesForRequest</code>

**Authentication:** <code>&#95;&#95;Host-klineo&#95;session</code> cookie (<code>sessionCookie</code>)

### Parameters

| Name | Location | Required | Type | Description and constraints |
| --- | --- | --- | --- | --- |
| <code>Idempotency-Key</code> | header | Yes | <code>string</code> | Min length: <code>8</code>; Max length: <code>160</code> |
| <code>x-klineo-organization-id</code> | header | Yes | <code>string</code> | — |
| <code>id</code> | path | Yes | <code>string</code> | — |
| <code>If-Match</code> | header | Yes | <code>string</code> | Pattern: <code>^"&#91;^"&#92;&#92; &#93;+"$</code> |

### Request body

Required: **yes**.

**<code>application/json</code>**

<code>object</code> — Additional properties rejected

| Field | Required at this level | Type | Description and constraints |
| --- | --- | --- | --- |
| <code>quoteRequestId</code> | Yes | <code>string</code> | — |
| <code>quotes</code> | Yes | Array of [ProtectedExecutionQuote](/api-reference/schemas/protected-execution-quote/) | Max items: <code>64</code> |
| <code>unavailableReasons</code> | Yes | Array of <code>string</code> | Max items: <code>64</code> |
| <code>reason</code> | Yes | <code>string</code> | Min length: <code>3</code>; Max length: <code>500</code> |

Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.

### Responses

| Status | Description | Content type and schema |
| --- | --- | --- |
| <code>201</code> | Signed quote set appended | <code>application/json</code>: <code>object</code> |
| <code>412</code> | Quote request changed | No response body declared |

**<code>201</code> <code>application/json</code> body**

<code>object</code> — Additional properties rejected

| Field | Required at this level | Type | Description and constraints |
| --- | --- | --- | --- |
| <code>data</code> | Yes | All of: [RecordEnvelope](/api-reference/schemas/record-envelope/); <code>object</code> | — |
| <code>data.allOf&#91;2&#93;.payload</code> | Yes | [ProtectedExecutionQuoteSet](/api-reference/schemas/protected-execution-quote-set/) | — |

Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.

<a id="getProtectedExecutionPlanState"></a>

## Read materialized child-leg accounting and its deterministic state hash

`GET /protected-execution-plans/{id}/state`

Operation ID: <code>getProtectedExecutionPlanState</code>

**Authentication:** <code>&#95;&#95;Host-klineo&#95;session</code> cookie (<code>sessionCookie</code>)

### Parameters

| Name | Location | Required | Type | Description and constraints |
| --- | --- | --- | --- | --- |
| <code>x-klineo-organization-id</code> | header | Yes | <code>string</code> | — |
| <code>id</code> | path | Yes | <code>string</code> | — |

### Responses

| Status | Description | Content type and schema |
| --- | --- | --- |
| <code>200</code> | Typed append-only lifecycle state | <code>application/json</code>: <code>object</code> |

**<code>200</code> response headers**

| Header | Required | Type | Description and constraints |
| --- | --- | --- | --- |
| <code>ETag</code> | Yes | <code>string</code> | — |

**<code>200</code> <code>application/json</code> body**

<code>object</code> — Additional properties rejected

| Field | Required at this level | Type | Description and constraints |
| --- | --- | --- | --- |
| <code>data</code> | Yes | <code>object</code> | Additional properties rejected |
| <code>data.plan</code> | Yes | [ProtectedExecutionPlan](/api-reference/schemas/protected-execution-plan/) | — |
| <code>data.stateHash</code> | Yes | [Hash](/api-reference/schemas/hash/) | — |

Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.

<a id="appendProtectedExecutionLegTransition"></a>

## Request a server-verified typed lifecycle transition without accepting client evidence

`POST /protected-execution-plans/{id}/transitions`

Operation ID: <code>appendProtectedExecutionLegTransition</code>

**Authentication:** <code>&#95;&#95;Host-klineo&#95;session</code> cookie (<code>sessionCookie</code>)

### Parameters

| Name | Location | Required | Type | Description and constraints |
| --- | --- | --- | --- | --- |
| <code>Idempotency-Key</code> | header | Yes | <code>string</code> | Min length: <code>8</code>; Max length: <code>160</code> |
| <code>x-klineo-organization-id</code> | header | Yes | <code>string</code> | — |
| <code>id</code> | path | Yes | <code>string</code> | — |
| <code>If-Match</code> | header | Yes | <code>string</code> | Pattern: <code>^"&#91;^"&#92;&#92; &#93;+"$</code> |

### Request body

Required: **yes**.

**<code>application/json</code>**

<code>object</code> — Additional properties rejected

| Field | Required at this level | Type | Description and constraints |
| --- | --- | --- | --- |
| <code>childLegId</code> | Yes | <code>string</code> | — |
| <code>toStatus</code> | Yes | <code>string</code> | Allowed: <code>SUBMITTED</code>, <code>FINALIZED&#95;RECONCILED</code>, <code>PAUSED</code>, <code>FAILED</code> |
| <code>previousStateHash</code> | Yes | [Hash](/api-reference/schemas/hash/) | — |
| <code>reason</code> | Yes | <code>string</code> | Min length: <code>3</code>; Max length: <code>500</code> |

Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.

### Responses

| Status | Description | Content type and schema |
| --- | --- | --- |
| <code>201</code> | Server-derived transition, immutable event, and conservation result | <code>application/json</code>: <code>object</code> |
| <code>400</code> | Client attempted to supply authority-bearing evidence | No response body declared |
| <code>409</code> | Release, Safe/action authorization, gateway, finality, or reconciliation is unavailable | No response body declared |
| <code>412</code> | Plan or state changed | No response body declared |

**<code>201</code> <code>application/json</code> body**

<code>object</code> — Additional properties rejected

| Field | Required at this level | Type | Description and constraints |
| --- | --- | --- | --- |
| <code>data</code> | Yes | <code>object</code> | Additional properties rejected |
| <code>data.record</code> | Yes | All of: [RecordEnvelope](/api-reference/schemas/record-envelope/); <code>object</code> | — |
| <code>data.record.allOf&#91;2&#93;.payload</code> | Yes | [ProtectedExecutionPlan](/api-reference/schemas/protected-execution-plan/) | — |
| <code>data.transition</code> | Yes | [OperatingSystemEvent](/api-reference/schemas/operating-system-event/) | — |
| <code>data.stateHash</code> | Yes | [Hash](/api-reference/schemas/hash/) | — |
| <code>data.inputConserved</code> | Yes | <code>boolean</code> | — |
| <code>data.executionBroadcast</code> | Yes | Constant <code>false</code> | — |

Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
