# International pilots after France

**Original recommendation: Colombia first; Paraguay next with a bounded cohort; Brazil later as a more ambitious project.** Colombia is scored and Paraguay now has an unscored documentary pilot. No CPI ranking and no country bonus in the index.

> **Status update (22 September 2026): the Colombia/SECOP II pilot is implemented** as a bounded, pre-announced cohort — three buyers (MEN, Gobernación de Caldas, Alcaldía Local de Usaquén), 7,560 contracts signed 2024-09-01 → 2026-09-01, process and contract IDs plus supplier name present on all rows (usable supplier document on 7,553/7,560; intra-row check only), Spanish source text preserved, COP only, licence CC BY-SA 4.0. **Jurisdiction-specific indicators are now implemented**: four checks on declared competition-avoidance justifications, their repetition, buyer/contract-type concentration and declared duration — **not** the French rules, and **never** the bare “Contratación directa” modality (≈82 % of the cohort is ordinary legal context). Method, thresholds and exact counts: [`docs/score-colombia.md`](score-colombia.md). Data: `data/colombia-secop2-coverage.json`, `tools/import-colombia-secop2.py`, `tests/colombia.cjs` and the README section. The offers/proposals and payment-reconciliation verification remains open before any attrition or payment indicator. The rest of this document keeps the original recommendation, of which the parts below about Paraguay, Brazil and the general rules still apply.

> **Pilot update:** [Paraguay DNCP documentary cohort](paraguay-pilot.md) is now imported: 88 process records for one municipality's calls published 2024-09-01 → 2025-09-01; 84 linked contract entries retained. All are **Not assessed** pending locally validated indicators. See `data/paraguay-dncp-coverage.json` for exact provenance and exclusions. This is not a full-country experiment or a verified payment dataset. The earlier access-only status below is historical context.

> **Status update (22 September 2026): Paraguay access is validated anonymously.** Despite the Swagger’s global Bearer declaration, three data routes answered **HTTP 200 without any token**: `/ocds/record/{ocid}` for the documented example `ocds-03ad3f-365292-1` (full record package, OCDS 1.1), `/search/processes` with a one-row date-filtered query, and `/parameters/parameters` (100 catalogue entries). The record package declares licence **CC BY 4.0**, publisher DNCP, publication policy `https://www.contrataciones.gov.py/datos/legal`. An accessible Swagger was never enough; these probes now show an anonymously readable data API. At the time of these access-only probes, quotas/exhaustiveness, rate limits and cohort design remained open; the later one-buyer pilot above does not establish national completeness. Log: `data/international-access-checks.json` (search `Paraguay OCDS`).

The CPI figures, national volumes and exhaustiveness claims from the text proposed by the user were not taken as facts. The checks in the original table below are small anonymous HTTP tests, carried out on **21–22 September 2026**; subsequent imports are described above and in their own methods. Sources, parameters, statuses, failures and UTC times: [`international-access-checks.json`](../data/international-access-checks.json). The original access probes did not retain foreign personal-data rows; the later bounded imports retain raw source records under their stated licences.

| Candidate | Verification performed | Practical decision |
| --- | --- | --- |
| **Colombia — SECOP II** | Official metadata of “Contratos Electrónicos” and a request limited to one row: HTTP 200 JSON, without a token. The dataset sheet announces the `CC_40_BY_SA` licence. | **Pilot implemented (see status update above); the offers/proposals and payment-reconciliation verification remains open before any attrition or payment indicator.** |
| **Paraguay — DNCP/OCDS** | Portal and Swagger v3: HTTP 200. **22 September:** record (example OCID), date-filtered search and parameters catalogue all HTTP 200 **without a token**, licence CC BY 4.0 in the payload. | **One-buyer documentary pilot imported (see update above).** National exhaustiveness, rate limits, source-document review and local scoring remain open. |
| **Brazil — PNCP** | A request with page size 1 responded 400; two other variants timed out, including a size 10 on a single day. | High enrichment potential, but **operational access not established here**. Repeat a consultation attempt before announcing a ready pilot. Compras, PNCP and Transparência must not be treated as an already-linked base. |
| **Ukraine — Prozorro** | Public index of tenders, `limit=1`: HTTP 200 JSON, one entry, without a token. | Promising technical access; wartime regime, exceptions and publication restrictions require specific local handling. Not the first scoring pilot. |
| **Moldova — MTender** | Official open-data page accessible, HTTP 200 HTML. | To explore next; this test verifies neither a records API nor the completeness of its releases. |
| **Another EU country via TED** | Official XML of a notice already matched by UUID: HTTP 200 without a token. The project has already tested anonymous TED search and downloaded the Tours XMLs. | Least expensive variant technically: a small TED scope in **Portugal or Romania**, for example. The national systems of these two countries were not tested here; TED does not cover all their purchases or payments. |

## Official sources and exact limits

- **Colombia**: [SECOP II metadata](https://www.datos.gov.co/api/views/jbjy-vk9h), [one-row API](https://www.datos.gov.co/resource/jbjy-vk9h.json?$limit=1). The tested dataset is the electronic-contracts one; the other candidate tables or payment plans were not verified in this work. An updated sheet is not an immutable version history. Check attribution, licence and sharing obligations before redistribution/enrichment.
- **Paraguay**: [DNCP portal](https://www.contrataciones.gov.py/datos/), [Swagger v3](https://www.contrataciones.gov.py/datos/api/v3/doc/swagger.json), [documentation interface](https://www.contrataciones.gov.py/datos/api/v3/doc/). Base path for data calls is `/datos/api/v3/doc` (the Swagger `basePath`), **not** `/datos/api/v3`. Verified 22 September without a token: example record `ocds-03ad3f-365292-1`, one-row date-filtered search, parameters catalogue — all HTTP 200, licence CC BY 4.0 in the payload, publication policy `/datos/legal`. The name of a route still does not demonstrate that the whole national history is available; quotas and exhaustiveness remain to be confirmed before any cohort design.
- **Brazil**: [PNCP portal](https://www.gov.br/pncp/pt-br), tested endpoint `https://pncp.gov.br/api/consulta/v1/contratos`. The exact parameters and errors are in the log. Timeouts do not prove an access ban. The modalities of the federal transparency portal, CNPJ/partner data, redistribution rights and join keys **were not verified here**.
- **Ukraine**: [Prozorro API index limited to one entry](https://public.api.openprocurement.org/api/2.5/tenders?limit=1). A readable index does not demonstrate that all documents of each tender are available or redistributable.
- **Moldova**: [MTender page](https://mtender.gov.md/public/open-data). No cohort download in this check.
- **TED**: [verified official XML](https://ted.europa.eu/en/notice/8206-2025/xml), [legal notice](https://ted.europa.eu/en/legal-notice). Do not confuse observed anonymous access with unconditional authorization for all European content or services.

## Proposed pilot: small, reproducible, not “the whole country”

1. **Colombia: pre-select 3 buyers**, by administrative level and documented availability, without consulting their scores. Common window of **24 months**; announce the identifiers before downloading.
2. Download all pages of this cohort, keep the versions and conflicts. Verify the process–contract–supplier join before adding proposals or payments.
3. Verify dates, amounts and original currencies, cancelled contracts, amendments, coverage of each field and diffusion rights. Do not automatically convert all amounts into euros.
4. Publish a small static JSON, with **jurisdiction-specific** parameters/rules. Start with coverage and sources; do not copy the French thresholds as Colombian legal thresholds.
5. Examine flagged **and unflagged** examples, then only decide whether to extend to more buyers or to Paraguay.
6. **Paraguay (access now validated):** announce a small buyer set and a fixed window before download, re-check quotas and rate limits, keep OCDS versions/conflicts, licence CC BY 4.0 attribution, and design **Paraguayan** indicators from local modalities/justifications — never a French or Colombian transplant.

No global spending total or country league table: coverage and publication obligations differ too much. Grants remain a separate module. Payments must match the same contract, scope, currency and period before comparison; a difference is not automatically a diversion. A sanction must be relevant to the entity, the dates, the jurisdiction, the remedies and the applicable prohibition. Sharing a name, an address or an administrator is not enough to add points or infer a control relationship. Document requests and their access conditions are to be verified country by country.

These recommendations concern the **order of work**, not a presumed rate of corruption. Colombia is now imported and scored under its own documented rules (see the status update above and [score-colombia.md](score-colombia.md)); Paraguay’s data API is anonymously readable but **not yet imported**; Paraguay now has a bounded one-buyer documentary pilot, but no approved Paraguayan index or country-wide coverage; other countries have not been imported.
