approval-engine/workplans
tegwick fec4eaeb1b Hold the pinned image against the repository's schema
Schema v4 gave the deployment a silent drift surface: the pinned pair is
self-consistent, migrating to 3 and serving 3, while this repository has
moved to 4. That reads as healthy, which makes it worse than an error —
the failure is the assumption that the deployment records approver
principal type.

Document v4 in storage-operations, state in the deploy runbook that the
pin predates it, and add a test that requires the statement whenever the
release record's schema version differs from this repository's. Verified
to fail when the acknowledgement is removed.

Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01HyybaE7DUXrWYrhbnESCTe

Assistant: claude-code
Assistant-Model: opus
Assistant-Process: 1275879@bnt-lap001
Assistant-Session: eb464208-f821-41b2-bc5a-a6c33d92a8ad
2026-09-09 14:38:21 +02:00
..
APPROVAL-WP-0001-v07-alignment-and-engine-spine.md Finish approval engine spine 2026-09-01 23:45:48 +02:00
APPROVAL-WP-0002-production-readiness-and-consumer-adoption.md Hold the pinned image against the repository's schema 2026-09-09 14:38:21 +02:00