gate-house/docs/conformance/README.md

26 lines
1.2 KiB
Markdown
Raw Normal View History

# Conformance review register
Gate House records doctrine dispositions for returned assurance and posture
reports here. This directory does not hold raw exploit evidence, credential
values, severity decisions, or another repository's remediation tasks.
Normative inputs:
- [`asm-assurance-targets.v1`](../assurance/asm-t01-t10-executable-targets.md);
- [`asm-targets.yaml`](../assurance/asm-targets.yaml);
- [`conformance-reporting.v1`](../contracts/conformance-reporting.md);
- [`posture-findings-return.v1`](../contracts/posture-findings-return.md).
A review record names the external report and safe evidence references, copies
the executor's outcome without changing it, records Gate House's doctrine
disposition, and links every residual to a live owner.
Returned reviews:
- [`2026-09-02 — kings-guard qonto live observation`](2026-09-02-kings-guard-qonto-live-observation.md):
origin-linked advisory observation is staffed for one lane; load-bearing deny
stream completeness remains unknown; doctrine disposition `no_change`.
No whitehat-security ASM execution report has returned under
`conformance-reporting.v1`. That target set remains `not_run`, not conformance.