Ownership of a phonon is defined by ownership of the associated Phonon Device.
Ownership of the Phonon Device is defined by cardholder verification.
Cardholder verification is performed via knowledge of the PIN code
Or it might be an on-board biometric sensor performing match-on-card
Cardholder verification will result in a single use "session code" that must be used to authorize individual messages to the device. Not unlike FIOD/CTAP2 PIN protocols
In high level: present PIN (or biometrics) to the card, get a "token" back. Later use that token for authenticating messages with hmac(token, message). See also #7
Cardholder verification will result in a single use "session code" that must be used to authorize individual messages to the device. Not unlike FIOD/CTAP2 PIN protocols
Document exact protocol