Private request
A household asks for food help through a private form. The request is never published, never shown to sponsors and never attached to a name in a public view.
This is the proof room. It explains the provider states, privacy boundaries, ledger rules, payment gates and limitations behind ProvisionLoop so nobody has to trust a marketing sentence when the operating rule can be shown instead.
—
Providers mapped
—
Operator verified
—
Funding-enabled kitchens
—
Meals delivered (ledger)
The operating chain
A household asks for food help through a private form. The request is never published, never shown to sponsors and never attached to a name in a public view.
An approved community partner reviews an assigned request using its own eligibility and safeguarding practices. Identifiable data stays behind the partner access boundary.
A claimed and approved operator publishes usable capacity and its own posted meal cost. ProvisionLoop does not invent or mark up that price.
Prep shifts and delivery runs expose only what the worker needs to complete the job. Public boards do not expose household identity.
Operational states move through preparation and delivery before the loop can close. Payout logic is tied to fulfillment rather than a promise made at checkout.
Closed outcomes create aggregate impact events. The public can inspect meals, geography and timing without seeing the person who received help.
Provider verification
Visibility, operator verification and funding eligibility are separate facts. The interface and server rules should never collapse them into one badge.
A real local food program mapped from public information so people can find help. The organization has not partnered with or endorsed ProvisionLoop and cannot receive platform funding.
An operator claim has been reviewed and approved. The operator can control provider details and capacity, but verification by itself does not make the provider funding-enabled.
A verified operator that has also completed the required payout-readiness state. Server-side funding checks enforce this state rather than relying on a hidden button in the UI.
How impact counts are created
Recipient privacy boundary
Money boundaries
What we refuse to claim
Pilot limitations
This is a Galveston County pilot. Geographic coverage and verified provider capacity are still limited.
The complete real-money Stripe lifecycle still requires operational certification with live credentials, signed webhooks and an actual payout-enabled provider before it should be described as proven end to end.
Directory details come from public sources and can become stale. People should confirm hours and eligibility with the organization directly.
The civic ledger is intentionally small and privacy-suppressed; it is not a substitute for a countywide needs assessment.
For listed organizations
A public directory listing does not mean you signed up. Operators can claim a listing through verification, and any listed organization can request a correction or removal without first becoming a ProvisionLoop partner.