So in first place it says
|
The `prf` field lists the path of authority from the [Subject] to the [Invoker]. This MUST be an array of CIDs pointing [Delegations][Delegation] starting from the root Delegation (issued by the Subject), in strict sequence where the `aud` of the previous Delegation matches the `iss` of the next Delegation. |
starting from the root Delegation (issued by the Subject)
Which I interpret as
{ iss: 'did:key:zAlice', sub: 'did:key:zAlice', aud: 'did:key:zBob' } → { iss: 'did:key:zBob', ...}
But then linked section o the spec says
|
A Task MUST include the entire [UCAN Delegation] proof chain in the `prf` field. The chain MUST form a direct line of authority, starting with the delegation with an `aud` that matches the Invoker, and ending with a delegation where the `iss` matches the `sub`. The `sub` throughout MUST match the `aud` of the Invocation. |
starting with the delegation with an aud that matches the Invoker
Which seems to suggest the oppsite
{ iss: 'did:key:zBob', ...} <- { iss: 'did:key:zAlice', sub: 'did:key:zAlice', aud: 'did:key:zBob' }
So in first place it says
invocation/README.md
Line 307 in 445f444
Which I interpret as
But then linked section o the spec says
invocation/README.md
Line 339 in 445f444
Which seems to suggest the oppsite