How to register, certify, physically label, verify, and maintain an autonomous system.
Use this operating map before public deployment. It covers account creation, organization authority, repository evidence, equipment registration, testing, paid certification, NRID issuance, official QR-label and certificate ordering, serialized shipment custody, installation evidence, independent verification, field-ready release, public lookup, and lifecycle change control.
Maintain repository-change review, recertification, incident, and replacement custody after release.
Submitting an equipment record creates an auditable intake authority. It does not claim a passing test, successful payment, or certification issuance.
Field-ready status requires independent physical-placement verification. NRID and certification issuance remain distinct from physical QR-label and certificate installation. Deployment reliance stays blocked until independent placement verification completes.
Public registry and QR pages disclose approved trust posture only. Restricted mailing, repository, shipment, evidence, and reviewer records stay protected.
Material changes, incidents, credential replacements, and deployment-scope changes continue through lifecycle review, recertification, or emergency hold when required.
Pre-requisites and evidence requirements
Organization authority
Identify who is legally accountable before intake begins.
- Legal organization name, operating jurisdiction, accountable owner, and authorized organization administrator
- Primary operator name and email for system-bound notices and approval actions
- Internal approval to register each autonomous system, drone, vehicle, robot, or covered equipment record
- A mailing contact authorized to receive official credential shipments
System identity
Prepare one manufacturer-bound record for each equipment item or model that will be relied on operationally.
- System or equipment name, category, manufacturer legal name, model identity, and serial number
- Primary operation country and intended public-impact use
- Operational Design Domain boundaries, prohibited conditions, safety-zone behavior, and human-override posture
- A list of every model, device, or equipment record requiring its own official QR sticker and certificate display plan
Repository and evidence readiness
Link the real source-of-truth repositories used to build, govern, and operate the system.
- Repository provider, URL, owner, project name, default branch, visibility, verification method, and evidence purpose
- Authorization to connect private or internal repositories for restricted review
- Safety case, repeatable test plan, telemetry contract, incident-response plan, repository-change policy, and evidence index
- Commit or release references that identify the version submitted for certification testing
Fulfillment and placement readiness
Certification issuance is not the end of onboarding. Plan physical credential delivery and installation before deployment.
- Secure mailing address for official certificates and serialized stick-on QR labels
- QR placement location for each covered equipment record and certificate-display location
- Authorized installer identity and a separate independent reviewer identity
- Evidence capture method for installation photographs, restricted references, and SHA-256 integrity hashes
Start from the NASCA certifiable-system repository instead of discovering requirements during review.
The downloadable starter repository includes guided manifests, starter runtime boundaries, tests, replacement instructions, evidence-pack tooling, and local preflight commands. Replace instructional values with real project evidence. Local execution proves preparation only; NASCA certification issues only from the live authority workflow.
npm test npm run template:inspect npm run source:manifest npm run source:verify npm run certification:preflight npm run evidence:generate npm run audit:verify npm run registration:payload
Account and authority: create the account and establish the accountable organization
Begin with a verified account and an organization-bound authority record. Every later action must resolve to an authenticated actor and organization scope.
Required actions
- Create the registry account or sign in to the existing organization account.
- Complete required account security, identity verification, and password rotation when prompted.
- Enter the legal organization, operator, jurisdiction, and notification contacts.
- Confirm which users may act as owner, administrator, engineering team, operator, compliance reviewer, auditor, or viewer.
Evidence retained
- Authenticated account
- Organization application record
- Role-scoped membership
- Accountable operator contact
Download the project template and map the certification requirements into the repository
The starter repository gives engineering teams a complete evidence structure before live intake. It prevents teams from discovering required manifests only after review begins.
Required actions
- Download the NASCA certifiable-system starter repository.
- Read the replacement map and replace instructional values with project-specific evidence.
- Document system identity, ODD boundaries, human override, telemetry, incident response, public disclosure posture, repository-change review, and the evidence index.
- Run the included local structure, integrity, preflight, evidence-pack, audit, and registration-payload commands.
Evidence retained
- Certification manifests
- Safety-case evidence
- Repository-change policy
- Local preflight output
Register every autonomous system, drone, vehicle, robot, or covered equipment record
An organization may own many systems. Each covered equipment record enters the same central registration authority and appears in the organization portfolio.
Required actions
- Open organization onboarding for the first system or use Register system from the logged-in shell for additional equipment.
- Record the manufacturer-bound identity, category, serial number, primary country, and public-safe summary.
- Declare planned public-impact operation and the required physical-credential workflow.
- Repeat the intake for every covered model or equipment item that must be independently tracked.
Evidence retained
- System registration public ID
- Organization portfolio event
- Manufacturer identity
- Public-operation acknowledgement
Connect the repositories used to build, test, release, and govern the system
NASCA review depends on verifiable source provenance. Repository evidence stays provider-neutral and private URLs remain redacted from public registry views.
Required actions
- Connect GitHub, GitLab, Bitbucket, Azure DevOps, Gitea, Forgejo, or generic Git repositories.
- Record the real URL, owner, repository name, default branch, visibility, verification method, and evidence use.
- Confirm the organization is authorized to connect each repository.
- Attach every repository used for software, firmware, safety-case, test, deployment, and evidence custody when they are separated.
Evidence retained
- Provider-neutral repository linkage
- Ownership attestation
- Verification posture
- Restricted repository evidence
Configure organization branding and public-safe disclosures
The public should be able to identify the responsible organization and verify approved trust facts without receiving restricted operational evidence.
Required actions
- Set the organization public slug, display name, headline, overview, website, public support email, logo, hero image, and brand colors.
- Choose public, unlisted, or private visibility.
- Choose whether public pages show system inventory, certification summary, and field-readiness posture.
- Publish the revision and retain the evidence hash and revision chain.
Evidence retained
- Organization public-profile revision
- Snapshot hash
- Revision-chain hash
- Public-safe projection
Prepare the system-bound testing plan and submitted release version
Testing must be bound to the registered system and the release evidence under review. The test plan should prove the public-impact controls claimed during intake.
Required actions
- Confirm the exact repository version, firmware release, configuration, and evidence pack entering testing.
- Review ODD limits, prohibited conditions, human override, emergency stop, telemetry integrity, incident response, and applicable safety lanes.
- Schedule or enter the organization trust testing center and execute the required suites.
- Preserve failed attempts, remediation notes, reruns, and passing outcomes as separate auditable records.
Evidence retained
- System-bound test attempt
- Execution evidence
- Pass/fail history
- Custody hashes
Select the certification tier and complete verified payment
Every certification tier is paid, including Base. Payment and testing must both succeed before issuance releases the NRID, QR code, and NASCA seal posture.
Required actions
- Choose Base or a higher certification tier and the billing cycle.
- Review any support-code or affiliate attribution disclosures before checkout.
- Accept the court-defensible certification terms.
- Complete secure checkout or a validated sponsored-waiver receipt when an authorized program applies.
Evidence retained
- Selected paid tier
- Checkout receipt
- Payment verification
- Commercial attribution evidence when applicable
Receive the NRID, digital QR materials, seal posture, and issuance proof
Certification issuance proves that the required decision gates completed. It does not yet prove that the equipment is ready for field deployment.
Required actions
- Open the issuance workspace after successful testing and payment.
- Review the NRID, downloadable QR materials, seal posture, certification record, and deployment-eligibility hold.
- Download digital materials for records and internal preparation.
- Acknowledge that official mailed copies and verified placement remain mandatory before field-ready release.
Evidence retained
- NRID issuance
- Digital QR material
- Certification record
- Deployment hold
Order serialized QR stickers and official certificates for the equipment
Every covered equipment record must display official QR materials and certificate information according to its placement plan.
Required actions
- Acknowledge the QR-label placement plan and certificate-display location.
- Enter the restricted mailing address for official copies.
- Order at least one serialized stick-on QR label and one official certificate for the registered equipment record.
- Order the correct quantities for every model, device, or display location requiring an official physical credential.
Evidence retained
- Physical-credential workflow
- Placement-plan acknowledgement
- Official copy order
- Restricted address hash
Track production, serialization, shipment, and delivery custody
Physical credentials require a traceable custody trail from production through delivery. Shipment cannot begin before the artifacts are serialized.
Required actions
- Verify the restricted mailing address and queue production.
- Serialize each official QR sticker and certificate artifact.
- Record fulfillment events, carrier posture, masked tracking information, shipment custody, and delivery confirmation.
- Use replacement-required handling when artifacts are lost, damaged, or invalidated.
Evidence retained
- Serialized artifact ledger
- Chain-linked fulfillment events
- Shipment posture
- Delivery confirmation
Install the physical credentials and submit placement evidence
The QR label must be visibly bound to the correct equipment. The certificate must be displayed or retained according to the declared plan.
Required actions
- Install each serialized QR sticker on the correct registered model, device, or equipment record.
- Place or retain the official certificate according to the display plan.
- Submit restricted installation photographs or evidence references, the placement description, installer attestation, and SHA-256 evidence hash.
- Do not treat uploaded evidence as self-approval. The installer cannot verify their own installation.
Evidence retained
- Installation record
- Restricted evidence reference
- SHA-256 evidence hash
- Installer attestation
Complete independent placement verification and release field-ready status
A separate reviewer must validate the installation evidence. A time-bounded review lock prevents collisions and preserves operator accountability.
Required actions
- Acquire the review lock for the physical-credential workflow.
- Confirm the QR artifact, certificate artifact, placement location, evidence hash, installer attestation, and correct equipment binding.
- Approve valid placement or mark replacement required with an auditable disposition.
- Verify that the NRID physical-mark record is created and every required placement is independently approved.
Evidence retained
- Independent reviewer disposition
- Collision-safe review lock
- NRID physical-mark record
- Field-ready release event
Verify the field-ready posture through the public registry and QR lookup
Certification and field readiness remain separate public facts. A public scan should never imply deployment eligibility when physical placement verification is incomplete.
Required actions
- Open the public registry or scan the official QR sticker.
- Confirm the organization public profile, system identity, certification status, testing history, QR posture, and deployment eligibility.
- Treat certification-issued but not field-ready status as a deployment hold.
- Escalate discrepancies through the applicable support, audit, or enforcement channel.
Evidence retained
- Public registry record
- Public QR lookup
- Testing-history disclosure
- Field-readiness posture
Lifecycle change control: maintain repository-change review, recertification, incident, and replacement custody after release
Field-ready release is not a permanent exemption. Material software, firmware, hardware, ownership, placement, or incident changes must remain auditable.
Required actions
- Submit material repository and release changes through repository-change review.
- Trigger operator review, recertification, or emergency hold when the change classification requires it.
- Record incidents, credential replacements, lost labels, damaged labels, ownership changes, and deployment-scope changes.
- Export evidence packs and preserve lifecycle custody for audit, enforcement, and court-defensible review.
Evidence retained
- Repository-change review
- Recertification posture
- Replacement custody
- Evidence-pack export
Keep the registration guide open while the team completes intake.
The FAQ page answers enterprise implementation questions. The starter repository gives engineering teams a concrete replacement map before source linkage begins.
