From 74216643ebc8ba65ef311c273fca88e90c4f6516 Mon Sep 17 00:00:00 2001 From: custodian-sync Date: Sun, 6 Sep 2026 23:36:56 +0200 Subject: [PATCH] chore(consistency): sync task status from DB [auto] Updated by fix-consistency on 2026-09-06: - update .custodian-brief.md for flex-auth Assistant: codex Assistant-Model: gpt-6-astra Assistant-Session: 01a0726e-5232-73f2-aaca-2c05ceb62efb --- .custodian-brief.md | 19 ++++++++----------- 1 file changed, 8 insertions(+), 11 deletions(-) diff --git a/.custodian-brief.md b/.custodian-brief.md index d72a9b2..cf50ee4 100644 --- a/.custodian-brief.md +++ b/.custodian-brief.md @@ -2,11 +2,18 @@ # Custodian Brief — flex-auth **Domain:** infotech -**Last synced:** 2026-09-06 20:45 UTC +**Last synced:** 2026-09-06 21:36 UTC **State Hub:** http://127.0.0.1:8000 *(adjust if running on a remote machine)* ## Active Workstreams +### Operator caller access path and caller identity in the decision record +Progress: 3/5 done | workplan_id: `ad011f92-786c-51ad-b3f6-c06ad77e7af7` + +**Open tasks:** +- ! 5. Report the gap to gate-house as a v0.8 finding `d685abfc` +- · 4. Record the authenticated caller in the decision record `c0e4f31a` + ### Sign the decision envelope: the response channel is unauthenticated Progress: 1/4 done | workplan_id: `90577acd-6910-548d-a13e-1dbfdfb8ed27` @@ -15,16 +22,6 @@ Progress: 1/4 done | workplan_id: `90577acd-6910-548d-a13e-1dbfdfb8ed27` - ! 4. Report the gap to gate-house `82d6b75e` - · 2. Choose the signature shape and key custody `5482f3cd` -### Operator caller access path and caller identity in the decision record -Progress: 0/5 done | workplan_id: `ad011f92-786c-51ad-b3f6-c06ad77e7af7` - -**Open tasks:** -- ! 2. Run the positive and negative tests and return the receipts `79a8d82d` -- ! 3. Flip `callerAuth.mode` to enforce `8117c9d8` -- ! 5. Report the gap to gate-house as a v0.8 finding `d685abfc` -- · 1. Create the ServiceAccount the deployed binding already names `10e5a40c` -- · 4. Record the authenticated caller in the decision record `c0e4f31a` - --- ## MCP Orientation (when available)