Those docs look out of date and appear to be designed for "app" ecosystems. The latest proposal from Mozilla is https://docs.google.com/document/d/1QMHkAQ4JiuJkNcyGjAkOikPK...
And I'm now quite sure this system is insecure. Fundamentally, either:
1. There is some magical sybil protection: An attacker can only spend their own privacy budget without affecting the rest of the system.
2. The system can be saturated: An attacker can spend everyone's privacy budget.
3. The system is not private: An attacker can exceed the "safe" privacy budget by combining information from multiple sybils.