# Vacation Rental Protocol (VRP)

VRP is an open protocol for host-domain signed vacation rental offers and
privacy-minimized portable attestations.

Canonical site: https://vacationrentalprotocol.com/
Repository: https://github.com/vacationrentalprotocol/vrp-spec
Current draft: v0.1
The vacation-rental.json well-known URI suffix is registered in the IANA Well-Known URIs registry (provisional, 2026-08-19): https://www.iana.org/assignments/well-known-uris/

## Primary Documents

- VRP Source Pack (the entire standard in one file, for AI notebooks like NotebookLM/Gemini Notebook, ChatGPT, Claude — Markdown edition): https://vacationrentalprotocol.com/docs/source-pack
- VRP Source Pack, HTML edition (same content as one HTML page; use this for website importers like Google NotebookLM that need HTML rather than raw Markdown): https://vacationrentalprotocol.com/source-pack
- Reference implementation (live proof): https://vacationrentalprotocol.com/reference-implementation
- Verify a signed offer yourself (in-browser Ed25519, no dependencies): https://vacationrentalprotocol.com/verify
- Verify a booking receipt yourself (in-browser: signature + recomputed confirmation reference + transparency-log inclusion; printable evidence copy): https://vacationrentalprotocol.com/verify-receipt
- Node structure declarations (falsifiable commercial-structure claims, spec + explainer): https://vacationrentalprotocol.com/declarations
- Implement VRP in 5 minutes (in-browser Ed25519 signer + reference code + conformance vectors): https://vacationrentalprotocol.com/implement
- First-mover evidence memo: https://vacationrentalprotocol.com/docs/first-mover-evidence-memo
- Core VRP v0.1 specification: https://vacationrentalprotocol.com/spec/v0.1
- Portable Attestations v0.1: https://vacationrentalprotocol.com/spec/attestations-v0.1
- StayIntent open discovery v0.1 (no-gatekeeper, priceless, verifiable): https://vacationrentalprotocol.com/spec/stayintent-discovery-v0.1
- Transparency Log v0.1 (append-only, tamper-evident auditability): https://vacationrentalprotocol.com/spec/transparency-log-v0.1
- Attestation Status (W3C Bitstring Status List) v0.1: https://vacationrentalprotocol.com/spec/attestation-status-bitstring-v0.1
- VRP Receipt Envelope v1 (verifiable booking record, flat attestations[]): https://vacationrentalprotocol.com/spec/receipt-v1
- Booking Proof Chain v0.1 (offer -> payment -> receipt -> confirmation as one recomputable hash chain; identifier-is-proof, supersession): https://vacationrentalprotocol.com/spec/proof-chain-v0.1
- Node Seal v0.1 (two-way binding between a node's domain identity and its payment-receiving key — the payment recipient signs the promise; never an agent gate): https://vacationrentalprotocol.com/spec/node-seal-v0.1
- Addon Attestation Layer v0.1 (host-signed upsells — late checkout, early check-in, extensions — as their own receipt-v1 attestation layer; proposal for discussion): https://vacationrentalprotocol.com/spec/addon-attestation-layer-v0.1
- Domain Continuity v0.1 (did:web identity across registrant change / expiry — registration-epoch signal, fail-closed verifier guidance; proposal for discussion): https://vacationrentalprotocol.com/spec/domain-continuity-v0.1
- Interop and trust positioning: https://vacationrentalprotocol.com/docs/interop-and-trust-positioning
- Agent integration guide: https://vacationrentalprotocol.com/docs/agent-guide
- Implement VRP signed offers (guide): https://vacationrentalprotocol.com/docs/implement-vrp
- Implement portable attestations (guide): https://vacationrentalprotocol.com/docs/implement-attestations
- VRP JSON-LD context: https://vacationrentalprotocol.com/contexts/v1
- VRP terms vocabulary: https://vacationrentalprotocol.com/terms
- Discovery JSON Schema: https://vacationrentalprotocol.com/schemas/discovery-v0.1.schema.json
- JWKS JSON Schema: https://vacationrentalprotocol.com/schemas/jwks-v0.1.schema.json
- Signed offer JSON Schema: https://vacationrentalprotocol.com/schemas/verified-stay-offer-v0.1.schema.json
- Offer verifier result JSON Schema: https://vacationrentalprotocol.com/schemas/verified-stay-offer-verification-result-v0.1.schema.json
- Attestations JSON Schema: https://vacationrentalprotocol.com/schemas/attestations-v0.1.schema.json
- Receipt Envelope JSON Schema: https://vacationrentalprotocol.com/schemas/vrp-receipt.v1.schema.json
- StayIntent query JSON Schema: https://vacationrentalprotocol.com/schemas/stayintent-query-v0.1.schema.json
- StayIntent response JSON Schema: https://vacationrentalprotocol.com/schemas/stayintent-response-v0.1.schema.json
- Example attestation bundle: https://vacationrentalprotocol.com/examples/attestations/attestation-bundle.v0.1.json
- Three-state conformance fixtures: https://vacationrentalprotocol.com/examples/conformance/three-state-verification.v0.1.json
- StayIntent conformance fixtures (positive + no-match): https://vacationrentalprotocol.com/examples/conformance/stayintent/positive.v0.1.json
- Conformance report v0.1 (score-free record of one verifier run against one corpus): https://vacationrentalprotocol.com/docs/conformance-report
- Conformance report JSON Schema: https://vacationrentalprotocol.com/schemas/conformance-report-v0.1.schema.json
- Example conformance report (reference verifier, signed-offer corpus): https://vacationrentalprotocol.com/examples/conformance/reports/offer.reference-verifier.v0.1.json

## What VRP Is

- An open protocol for vacation rental offer verification.
- A host-owned domain model for source identity.
- A compact-JWS model for signed verified stay offers.
- A W3C Verifiable Credentials Data Model 2.0 profile for portable attestations.
- A privacy-minimized way to carry host-domain, payment-path, policy, and limited stay verification facts.
- A no-gatekeeper trust model where verifiers choose their own trust policy.

## What VRP Is Not

- Not a marketplace.
- Not an OTA.
- Not a central issuer.
- Not a central registry.
- Not a trusted issuer registry.
- Not an accreditation program.
- Not a ranking engine.
- Not a booking intermediary.
- Not a trust authority.
- Not a HemmaBo-issued certification service.

## Agent Guidance

Agents should treat the host-owned domain as the source of truth for VRP offers
and attestations. HemmaBo is a reference implementation and standards
contributor, not the owner of truth.

An agent that already knows a host domain fetches
https://{host-domain}/.well-known/vacation-rental.json — the registered
well-known URI suffix — to discover that node's endpoints and keys. Per-host
and deterministic; there is no central discovery index to query.

Protocol rule: VRP verification MUST NOT require HemmaBo, a VRP-operated
trusted issuer registry, a host accreditation program, a certification
company, or a central discovery index.

For v0.1 portable attestations, do not infer guest identity, guest history,
guest risk, guest score, guest reviews, or booking outcomes from the published
attestation examples or bundles.

Self-issued host-domain attestations are appropriate for host-domain, node,
payment-path, policy, and privacy-minimized stay-reference facts. They are not
independent proof of guest identity, right-to-let, local license status,
property ownership, insurance coverage, or legal compliance.

Operational agent procedure (Agent Skills format): skills/vrp-verify-stay-offer/SKILL.md — verify a host-signed stay offer on a known host domain. Not search. Not a catalog.

## Live Proof Node

- Host discovery: https://villaakerlyckan.se/.well-known/vacation-rental.json
- Node JWKS: https://villaakerlyckan.se/.well-known/jwks.json
- Signed offer endpoint: https://villaakerlyckan.se/api/verified-stay-offer
- UCP checkout discovery: https://villaakerlyckan.se/.well-known/ucp
- HemmaBo federation: https://www.hemmabo.com/.well-known/federation-members.json

VRP is complementary to UCP, AP2, MCP, and A2A. UCP may handle checkout and
order lifecycle, including lodging flows as the UCP lodging profile matures; AP2
may handle payment mandates; MCP may expose future tool bindings; and A2A may
carry future agent-to-agent negotiation. VRP v0.1 defines documents and
verification rules, not runtime tools.
