Close B2 and finish FLEX-WP-0030; record tenant-engine's and key-cape's answers.

B2: key-cape (Tooling), net-kingdom (Taxonomy) and ops-mason (Staff) now declare
in their own files. Verified by the survey rather than taken on report: 14 of 14
counterparts declared, 0 undeclared. ops-mason sent no reply and needed none —
under §11 the file is the declaration. Every T04 finding is answered, so
FLEX-WP-0030 is finished. B5's residual ping belongs to FLEX-WP-0020.

key-cape stated the identity boundary from its side for the first time and
cautioned that principal_type must not be read as authentication-derived until
GH-DEC-2026-013/-016 §5 is answered. Checked against every published package:
only the two informed-decision packages gate on a human subject, and both also
require principal_type_source == "authentication-derived", which informed-decision
derives from the verified code-flow MFA event rather than from key-cape's claim.
No change needed; the assessment and a warning about the legacy "otherwise ->
human" fallback are in docs/iam-profile-consumption.md.

tenant-engine confirmed FLEX-DEC-2026-016's reading of commitment (b): the
fixed-record exclusion is consistent with it. Recorded under point 3; v3 stands.

Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>

Assistant: claude-code
Assistant-Model: opus
Assistant-Process: 28468@bnt-lap001
Assistant-Session: c76569b2-6056-4dad-aea4-49cd7a018f5d
This commit is contained in:
tegwick 2026-09-21 22:57:56 +02:00
parent 882b381af6
commit 39a0034fcc
5 changed files with 607 additions and 2 deletions

View file

@ -0,0 +1,531 @@
{
"checks_only": "the closed four-token §3 vocabulary, ASCII case folded per GH-DEC-2026-017 §2; and A12 r2 (GH-DEC-2026-020): no standard or companion version in any key or value of INTENT.md frontmatter or layer.yaml; stance, claims and classification maps not read; no flex-auth house rules applied to peers",
"derived_at": "run time",
"off_vocab": null,
"root": "/home/worsch",
"rows": [
{
"Repo": "approval-engine",
"Intent": {
"Source": "approval-engine/INTENT.md",
"Layer": "Engine",
"Role": "PIP",
"Found": true,
"InVocabulary": true,
"Canonical": "Engine"
},
"File": {
"Source": "approval-engine/layer.yaml",
"Layer": "engine",
"Role": "pip",
"Found": true,
"InVocabulary": true,
"Canonical": "Engine"
},
"InCatalog": true
},
{
"Repo": "audit-core",
"Intent": {
"Source": "audit-core/INTENT.md",
"Layer": "Engine",
"Role": "Evidence",
"Found": true,
"InVocabulary": true,
"Canonical": "Engine"
},
"File": {
"Source": "audit-core/layer.yaml",
"Layer": "engine",
"Role": "evidence",
"Found": true,
"InVocabulary": true,
"Canonical": "Engine"
},
"InCatalog": true
},
{
"Repo": "flex-auth",
"Intent": {
"Source": "flex-auth/INTENT.md",
"Layer": "Engine",
"Role": "PDP",
"Found": true,
"InVocabulary": true,
"Canonical": "Engine"
},
"File": {
"Source": "",
"Layer": "",
"Role": "",
"Found": false,
"InVocabulary": false,
"Canonical": ""
},
"InCatalog": true
},
{
"Repo": "gate-house",
"Intent": {
"Source": "gate-house/INTENT.md",
"Layer": "Staff",
"Role": "—",
"Found": true,
"InVocabulary": true,
"Canonical": "Staff"
},
"File": {
"Source": "",
"Layer": "",
"Role": "",
"Found": false,
"InVocabulary": false,
"Canonical": ""
},
"InCatalog": true
},
{
"Repo": "key-cape",
"Intent": {
"Source": "key-cape/INTENT.md",
"Layer": "Tooling",
"Role": "—",
"Found": true,
"InVocabulary": true,
"Canonical": "Tooling"
},
"File": {
"Source": "",
"Layer": "",
"Role": "",
"Found": false,
"InVocabulary": false,
"Canonical": ""
},
"InCatalog": true
},
{
"Repo": "kings-guard",
"Intent": {
"Source": "kings-guard/INTENT.md",
"Layer": "Staff",
"Role": "",
"Found": true,
"InVocabulary": true,
"Canonical": "Staff"
},
"File": {
"Source": "kings-guard/layer.yaml",
"Layer": "staff",
"Role": "",
"Found": true,
"InVocabulary": true,
"Canonical": "Staff"
},
"InCatalog": true
},
{
"Repo": "maturity-engine",
"Intent": {
"Source": "maturity-engine/INTENT.md",
"Layer": "Engine",
"Role": "PIP",
"Found": true,
"InVocabulary": true,
"Canonical": "Engine"
},
"File": {
"Source": "maturity-engine/layer.yaml",
"Layer": "engine",
"Role": "pip",
"Found": true,
"InVocabulary": true,
"Canonical": "Engine"
},
"InCatalog": true
},
{
"Repo": "net-kingdom",
"Intent": {
"Source": "net-kingdom/INTENT.md",
"Layer": "Taxonomy",
"Role": "",
"Found": true,
"InVocabulary": true,
"Canonical": "Taxonomy"
},
"File": {
"Source": "",
"Layer": "",
"Role": "",
"Found": false,
"InVocabulary": false,
"Canonical": ""
},
"InCatalog": true
},
{
"Repo": "ops-mason",
"Intent": {
"Source": "ops-mason/INTENT.md",
"Layer": "Staff",
"Role": "pep-shaped",
"Found": true,
"InVocabulary": true,
"Canonical": "Staff"
},
"File": {
"Source": "",
"Layer": "",
"Role": "",
"Found": false,
"InVocabulary": false,
"Canonical": ""
},
"InCatalog": true
},
{
"Repo": "ops-warden",
"Intent": {
"Source": "ops-warden/INTENT.md",
"Layer": "Staff",
"Role": "",
"Found": true,
"InVocabulary": true,
"Canonical": "Staff"
},
"File": {
"Source": "ops-warden/layer.yaml",
"Layer": "staff",
"Role": "",
"Found": true,
"InVocabulary": true,
"Canonical": "Staff"
},
"InCatalog": true
},
{
"Repo": "secrets-engine",
"Intent": {
"Source": "secrets-engine/INTENT.md",
"Layer": "Engine",
"Role": "Lifecycle",
"Found": true,
"InVocabulary": true,
"Canonical": "Engine"
},
"File": {
"Source": "secrets-engine/layer.yaml",
"Layer": "engine",
"Role": "lifecycle",
"Found": true,
"InVocabulary": true,
"Canonical": "Engine"
},
"InCatalog": true
},
{
"Repo": "tenant-engine",
"Intent": {
"Source": "tenant-engine/INTENT.md",
"Layer": "Engine",
"Role": "PIP",
"Found": true,
"InVocabulary": true,
"Canonical": "Engine"
},
"File": {
"Source": "tenant-engine/layer.yaml",
"Layer": "engine",
"Role": "pip",
"Found": true,
"InVocabulary": true,
"Canonical": "Engine"
},
"InCatalog": true
},
{
"Repo": "user-engine",
"Intent": {
"Source": "user-engine/INTENT.md",
"Layer": "Engine",
"Role": "PIP",
"Found": true,
"InVocabulary": true,
"Canonical": "Engine"
},
"File": {
"Source": "user-engine/layer.yaml",
"Layer": "engine",
"Role": "pip",
"Found": true,
"InVocabulary": true,
"Canonical": "Engine"
},
"InCatalog": true
},
{
"Repo": "zone-engine",
"Intent": {
"Source": "zone-engine/INTENT.md",
"Layer": "Engine",
"Role": "PIP",
"Found": true,
"InVocabulary": true,
"Canonical": "Engine"
},
"File": {
"Source": "zone-engine/layer.yaml",
"Layer": "engine",
"Role": "pip",
"Found": true,
"InVocabulary": true,
"Canonical": "Engine"
},
"InCatalog": true
}
],
"scope": {
"Name": "estate-wide",
"Statement": "every repository surveyed, catalogued or not. Repositories outside §4 are reported as declared voluntarily, outside catalog scope — never as §11 non-conformances.",
"Repos": [
"approval-engine",
"audit-core",
"flex-auth",
"gate-house",
"key-cape",
"kings-guard",
"maturity-engine",
"net-kingdom",
"ops-mason",
"ops-warden",
"secrets-engine",
"tenant-engine",
"user-engine",
"zone-engine"
]
},
"self_disagreeing": [
{
"Repo": "approval-engine",
"Intent": {
"Source": "approval-engine/INTENT.md",
"Layer": "Engine",
"Role": "PIP",
"Found": true,
"InVocabulary": true,
"Canonical": "Engine"
},
"File": {
"Source": "approval-engine/layer.yaml",
"Layer": "engine",
"Role": "pip",
"Found": true,
"InVocabulary": true,
"Canonical": "Engine"
},
"InCatalog": true
},
{
"Repo": "audit-core",
"Intent": {
"Source": "audit-core/INTENT.md",
"Layer": "Engine",
"Role": "Evidence",
"Found": true,
"InVocabulary": true,
"Canonical": "Engine"
},
"File": {
"Source": "audit-core/layer.yaml",
"Layer": "engine",
"Role": "evidence",
"Found": true,
"InVocabulary": true,
"Canonical": "Engine"
},
"InCatalog": true
},
{
"Repo": "kings-guard",
"Intent": {
"Source": "kings-guard/INTENT.md",
"Layer": "Staff",
"Role": "",
"Found": true,
"InVocabulary": true,
"Canonical": "Staff"
},
"File": {
"Source": "kings-guard/layer.yaml",
"Layer": "staff",
"Role": "",
"Found": true,
"InVocabulary": true,
"Canonical": "Staff"
},
"InCatalog": true
},
{
"Repo": "maturity-engine",
"Intent": {
"Source": "maturity-engine/INTENT.md",
"Layer": "Engine",
"Role": "PIP",
"Found": true,
"InVocabulary": true,
"Canonical": "Engine"
},
"File": {
"Source": "maturity-engine/layer.yaml",
"Layer": "engine",
"Role": "pip",
"Found": true,
"InVocabulary": true,
"Canonical": "Engine"
},
"InCatalog": true
},
{
"Repo": "ops-warden",
"Intent": {
"Source": "ops-warden/INTENT.md",
"Layer": "Staff",
"Role": "",
"Found": true,
"InVocabulary": true,
"Canonical": "Staff"
},
"File": {
"Source": "ops-warden/layer.yaml",
"Layer": "staff",
"Role": "",
"Found": true,
"InVocabulary": true,
"Canonical": "Staff"
},
"InCatalog": true
},
{
"Repo": "secrets-engine",
"Intent": {
"Source": "secrets-engine/INTENT.md",
"Layer": "Engine",
"Role": "Lifecycle",
"Found": true,
"InVocabulary": true,
"Canonical": "Engine"
},
"File": {
"Source": "secrets-engine/layer.yaml",
"Layer": "engine",
"Role": "lifecycle",
"Found": true,
"InVocabulary": true,
"Canonical": "Engine"
},
"InCatalog": true
},
{
"Repo": "tenant-engine",
"Intent": {
"Source": "tenant-engine/INTENT.md",
"Layer": "Engine",
"Role": "PIP",
"Found": true,
"InVocabulary": true,
"Canonical": "Engine"
},
"File": {
"Source": "tenant-engine/layer.yaml",
"Layer": "engine",
"Role": "pip",
"Found": true,
"InVocabulary": true,
"Canonical": "Engine"
},
"InCatalog": true
},
{
"Repo": "user-engine",
"Intent": {
"Source": "user-engine/INTENT.md",
"Layer": "Engine",
"Role": "PIP",
"Found": true,
"InVocabulary": true,
"Canonical": "Engine"
},
"File": {
"Source": "user-engine/layer.yaml",
"Layer": "engine",
"Role": "pip",
"Found": true,
"InVocabulary": true,
"Canonical": "Engine"
},
"InCatalog": true
},
{
"Repo": "zone-engine",
"Intent": {
"Source": "zone-engine/INTENT.md",
"Layer": "Engine",
"Role": "PIP",
"Found": true,
"InVocabulary": true,
"Canonical": "Engine"
},
"File": {
"Source": "zone-engine/layer.yaml",
"Layer": "engine",
"Role": "pip",
"Found": true,
"InVocabulary": true,
"Canonical": "Engine"
},
"InCatalog": true
}
],
"spellings": {
"Engine": [
"approval-engine/INTENT.md",
"audit-core/INTENT.md",
"flex-auth/INTENT.md",
"maturity-engine/INTENT.md",
"secrets-engine/INTENT.md",
"tenant-engine/INTENT.md",
"user-engine/INTENT.md",
"zone-engine/INTENT.md"
],
"Staff": [
"gate-house/INTENT.md",
"kings-guard/INTENT.md",
"ops-mason/INTENT.md",
"ops-warden/INTENT.md"
],
"Taxonomy": [
"net-kingdom/INTENT.md"
],
"Tooling": [
"key-cape/INTENT.md"
],
"engine": [
"approval-engine/layer.yaml",
"audit-core/layer.yaml",
"maturity-engine/layer.yaml",
"secrets-engine/layer.yaml",
"tenant-engine/layer.yaml",
"user-engine/layer.yaml",
"zone-engine/layer.yaml"
],
"staff": [
"kings-guard/layer.yaml",
"ops-warden/layer.yaml"
]
},
"undeclared": null,
"validated_against": "net-kingdom/canon/standards/security-layer-model_v0.7.md (net-kingdom@66dc491) as amended by GH-DEC-2026-017, GH-DEC-2026-020, GH-DEC-2026-021 (gate-house@39d9287)",
"version_pinned": null,
"volunteers": null
}