Authority before
autonomy.

Vowgate turns natural-language shopping intent into a narrow, customer-approved authorization capability, then prevents an AI agent from constructing a checkout outside it.

OPEN CHECKOUT MANDATE APPROVED / 15 MIN
Normalized customer authority

1 × graphite dimmable task light

ITEM ≤ ₹3,000 · TOTAL ≤ ₹3,000
CHECKOUT MUTATION+₹800 SHIPPING
BLOCKED
Deterministic policy NO MODEL AUTHORIZES CHECKOUT
06conformance scenarios
05unsafe mutations stopped
00unsafe orders permitted

All evaluation data is synthetic. Razorpay runs in Test Mode only.

Pressure-test the checkout boundary.

Normalize the instruction, review and approve its exact limits, then inspect the deterministic gate that permits or refuses checkout execution.

VERIFIED FIXTURE / INTENT SIMULATED / PAYMENT
MERCHANT UNDER TEST NIGHTSWITCH SUPPLY SYNTHETIC CATALOG

Six deterministic scenarios. One authorized checkout. Five threats expected to stop.

Authorization review

NOT ACTIVE
Approved item1 × TASK LIGHT
Maximum item price₹3,000
Maximum final total₹3,000 · ALL CHARGES
Required attributesGRAPHITE · DIMMABLE
Substitution policyPROHIBITED
Delivery deadlineREVIEW REQUIRED
Merchant scopeNIGHTSWITCH ONLY
Catalog snapshotCATALOG_2026…
Review normalized limits
MANDATE NOT ACTIVE

Pressure board

NOT RUN
Gates passed
Threats stopped
Unsafe checkouts

Commerce flight recorder

AWAITING RUN
No signal yet

Run the pressure suite or select a scenario to inspect its decision chain.

Checkout authorization WAITING FOR POLICY PASS Razorpay test Checkout opens only on explicit command.

The model translates.
The policy decides.

Natural language ends before authorization begins. The customer approves normalized limits; every later decision uses typed evidence, canonical checkout hashing, and atomic single-use state.

Read the architecture
  1. 01
    Normalize for review

    Gemini extracts explicit limits into a fixed schema. Its output is not authority.

    MODEL
  2. 02
    Customer approves

    A separate activation action signs the reviewed merchant, catalog, item, total, delivery, and expiry limits.

    CONSENT
  3. 03
    Bind exact checkout

    Canonical payable fields become a SHA-256 fingerprint and signed, single-use Payment Mandate.

    POLICY
  4. 04
    Open human Checkout

    Only an atomic authorization pass creates the test order. Razorpay still requires user interaction and server verification.

    RAZORPAY

Catalog data is evidence—not instruction.

Descriptions remain untrusted text. Policy trusts the configured catalog backend for typed price, stock, category, attributes, charges, and fulfillment—not merchant prose.

SKUProductVerified attributesPriceStock
NS-L01Orbit Task LightGraphite · Dimmable₹2,49908
NS-L02Fold Task LightChalk · Fixed output₹2,19905
NS-T01Interval Focus TimerGraphite · Silent₹1,29914

Prove why checkout was authorized.

Review the normalized authority, inspect every refusal, then complete one human-facing Razorpay test Checkout with server-side payment verification.

Run Vowgate