Project Mad AdderHelp Centre
All help articles

Current PMA guide

PMA Passport — Secure Handoff

Secure Handoff creates an immutable recipient package for one animal transfer. The recipient must use the invitation link and a separately shared access code before viewing the package, accepting terms, or confirming custody.

Security boundary

PMA stores a salted digest—not the reusable plaintext access code. The code is displayed to the sender only when issued or rotated. Recipient sessions expire after 30 minutes, invitations can be revoked, and repeated incorrect attempts trigger a temporary lock.

Before issuing

  • Create or activate the animal Passport.
  • Create the transfer and confirm recipient name, email, terms, expected handoff, and readiness.
  • Resolve any transfer restriction before issuing.
  • Use a manager, administrator, or owner account.

1. Issue the protected package

  1. Open Customers & Sales → PMA Passport → Transfers.
  2. Select the transfer and choose Issue secure handoff.
  3. Copy the recipient link and access code immediately.
Expected result: The transfer moves to Awaiting recipient and PMA freezes the package snapshot with a SHA-256 digest.

2. Share link and code

Send the invitation link and access code separately when practical—for example, link by email and code by direct message or phone. PMA does not send these handoff messages automatically.

3. Recipient verification

The recipient enters their name, invited email when required, and access code. Five incorrect attempts temporarily lock verification for 15 minutes. Successful verification creates a short-lived session without exposing the code again.

4. Acceptance and custody receipts

Acceptance records the exact package digest, acknowledgements, recipient identity, notes, and a receipt digest. After delivery, custody confirmation creates a separate receipt tied to the same frozen package.

Rotate, revoke, and audit

  • Rotate: creates a new link and access code while preserving the package snapshot.
  • Revoke: disables the invitation and all active recipient sessions.
  • Verify audit chain: recalculates every chained event hash and reports whether the evidence remains internally consistent.

Important limits

  • PMA does not guarantee legal electronic signatures or identity proofing.
  • The package digest proves which PMA snapshot was reviewed; it is not a government, veterinary, laboratory, or ownership certificate.
  • The audit chain is internal tamper evidence, not an external blockchain or third-party notarization.
  • PMA does not automatically create an animal in a recipient’s separate PMA organization.

Troubleshooting

Code was lost: rotate the credentials; the old link and code stop working.

Invitation expired: rotate it with a new expiry.

Recipient is locked out: wait until the lock time or rotate credentials.

Package information is wrong: revoke the invitation, correct the source records, and issue a new package.