CGA · Sovereign Payment Provider
the PII island · zero-PII mandates & receipts out
No wallet loaded

The PP is the only entity that ever sees who you are financially — and that knowledge stays here. What leaves is a signed, zero-PII PaymentMandateToken bound to your sovereign device key: it lets a specific Gym charge you, up to a cap you set, without ever learning who you are.

1Load your device wallet

Your mandate is bound to your sovereign key, so it's non-transferable without your device. No wallet yet? Enroll at the Gym first.

Drop your cga-wallet-*.json here, or click to choose

2Authorize a payment method

Add one payment method and a per-charge cap. This creates your PP account and issues a PaymentMandateToken that lets sovGym charge you later (per course) — you get a signed TxCode receipt for each charge, and can review every debit & credit here.

SIMULATED (Stripe-ready) — no processor is called. In production the card is vaulted by the processor; we keep only the last 4 digits, with your name and email, here at the PP and nowhere else.

3Your mandate → your device

The mandate is added to your wallet file and downloaded — replace your old wallet file with this one. Present it at the Gym to enroll; the Gym charges it and admits you on the returned TxCode.


      

4Direct-deposit payout (X-Org dividends)

Enroll the bank account your data dividends should reach. Bank PII stays at the PP - what you carry away is a zero-PII PayoutToken (a pointer bound to your device key) for the Trustee.

SIMULATED - numbers are validated then discarded; only the last 4 digits are stored, here.

      
CGA Sovereign Infrastructure · the PP knows who paid, never what they learn.