Capability brief · Not affiliated · Unlisted

Plan Vivo's PV Climate V5, sourced directly, then asked what sits beneath a verified credit

Every figure below was fetched directly from planvivo.org (and Calyx Global's independent case study on V5) for this note. The question is not whether Plan Vivo's community model is real: the revenue-share rule and V5's verified-only retirement answer that. The question is what a vPVC is verified against, and whether a proof-gated field receipt could sit honestly beneath it.

Read this first. Independent recon by EcoWealth Corporation. Not requested, produced, reviewed, or endorsed by Plan Vivo. Passive reads only: public pages, a same-host robots.txt/security.txt/sitemap check, one same-host soft-404/true-404 control probe. No login, no scraping behind any paywall, no state-changing call. Captured 2026-07-16; every URL below is independently re-runnable.
Baseline, stated up front Plan Vivo is the oldest smallholder/community-focused carbon standard (founded 1994), with a real, unusual governance rule (majority revenue to communities) and a just-tightened verification model (V5's verified-only retirement). The findings below extend that model one layer down, they don't audit it for gaps.

The bottom line, in plain English

No jargon. Plan Vivo's community model and V5 verification are real and credited below; the one fresh technical gap is worth naming plainly. Here's what closing it is worth.

A real contact in your security.txt → a researcher who finds a bug reaches you, not "[email protected]."

Your security.txt ships, but its Contact line is still the template's placeholder email, so a good-faith reporter has nowhere real to send a finding.

An agent front door (llms.txt / agent card) → AI representing Plan Vivo reads your model, not a guess.

Those files 404 today, so an assistant asked about Plan Vivo's community model and V5 verification has no machine-legible surface and paraphrases from third parties.

1 · Credit: a real, recent integrity tightening

Credit 1

fPVC / rPVC / vPVC: only verified credits can retire

Per Calyx Global's independent case study, Plan Vivo's V5 standard introduces three certificate types: fPVCs ("future," ex-ante credits, of which "up to 90% ... can be claimed at any time during the crediting period"), rPVCs ("reported," quantified during monitoring but not yet independently verified), and vPVCs ("verified," the only type eligible for retirement). Calyx states plainly: "The newest version of the Plan Vivo standard does not allow retirement of unverified or ex-ante credits," a direct integrity fix versus V3/V4, where that distinction wasn't enforced at the point of retirement.

Source: calyxglobal.com/research-hub/research/how-moving-to-new-frameworks-improves-quality-faster-a-case-study-of-Plan-Vivo/ (referenced 2026-07-16, exact quotes above)

2 · Credit: a genuinely different revenue model

Credit 2

Founded 1994; majority revenue flows directly to communities

Plan Vivo is documented across independent sources as the oldest smallholder-focused carbon standard, distinguished from larger registries (Verra, Gold Standard) specifically by requiring that projects be community-led and that a defined majority share of revenue (historically at least 60%) flow directly to smallholder participants and community groups, not project developers or intermediaries. Credits (PVCs) are tracked on the S&P Global registry.

Source: cross-referenced across independent secondary sources (Model Diplomat, TracexTech), 2026-07-16, flagged here as directionally solid, not a direct Plan Vivo quote

3 · Agent discovery: a real security.txt, never filled in

Precision note 3

security.txt exists (credit) but its Contact field is the literal placeholder "[email protected]"

www.planvivo.org actually ships a working /.well-known/security.txt (HTTP 200, 536 bytes), a real credit, since most entities we've checked don't have one at all. But the file's own Contact line reads "Contact: [email protected]," the securitytxt.org template's literal placeholder email, evidently never customized. Everything else agent-facing (llms.txt, ai.txt, /.well-known/agent-card.json) returns an honest 404 with an identical branded template (73,302 bytes), matching a nonsense-path control exactly.

$ curl -s https://www.planvivo.org/.well-known/security.txt # security.txt file for https://www.planvivo.org/ ... Contact: [email protected] Expiration: 2027-07-17T00:14:27+01:00 ... $ curl -s -o /dev/null -w "%{http_code} %{size_download}\n" https://www.planvivo.org/llms.txt 404 73302 $ curl -s -o /dev/null -w "%{http_code} %{size_download}\n" https://www.planvivo.org/zzz-nonexistent-control-xk29qv 404 73302

Source: www.planvivo.org/.well-known/security.txt, llms.txt, control path (fetched 2026-07-16, contents and byte counts above)

EWP intersection: what this adds up to

Plan Vivo's V5 vPVC-only-retirement rule is the registry-scale version of a principle EWP already applies at packet scale: don't count what hasn't been proven. But a vPVC is verified against a periodic monitoring report cross-checked on the S&P Global registry, not against a single, dated, GPS-located field task. EWP's photo+GPS+signature+on-chain-settlement receipt is proposed as a candidate primary-evidence layer directly beneath that monitoring report, and Plan Vivo's majority-community-revenue rule is close in spirit to EWP's own worker-paid, no-recruitment design: two systems built around the same instinct (pay the people who actually did the work), applied at different scales.

← Back to the hub
Provisioned by EcoWealth · Digital Provisioning Protocol · provenance‑sealed