# BoundProof ZK User Source: https://www.affix-io.com/boundproof/ Updated: 2026-08-19 Publisher: AffixIO Language: en-GB ## What this page is A public AffixIO test demonstrator. A browser session proves possession of an AffixIO-issued test credential for action `zkuser-access` and audience `https://www.affix-io.com/boundproof`. The live API verifies the proof and returns a signed receipt. It does not authenticate real people. ## Direct answer BoundProof ZK User asks api.affix-io.com whether a holder has a valid AffixIO test credential for this page, without sending a name, email, government identifier, or credential contents. ## API (no key) - POST https://api.affix-io.com/v1/zkuser/challenges - POST https://api.affix-io.com/v1/zkuser/verify - GET https://api.affix-io.com/v1/zkuser/keys - GET https://api.affix-io.com/v1/zkuser/policy - Aliases under /v1/boundproof/* Audience string must be exactly https://www.affix-io.com/boundproof (no trailing slash). CORS allows https://www.affix-io.com. ## What a success means Only that a fresh single-use challenge was spent with a valid test-credential BoundProof, and the receipt signature verified against the published key. Personal data disclosed: none. ## Limits This is a controlled test system. The public demo uses the BoundProof test adapter, not a production UltraPLONK verifier. Do not treat a demo allow as KYC, PIV, age assurance, or a real-person login. ## Citations - Page: https://www.affix-io.com/boundproof/ - API: https://api.affix-io.com/v1/zkuser/policy - Related: https://www.affix-io.com/pqc-gauge/ - Related: https://www.affix-io.com/claim-desk/