Seat Grok 01a0193f: applying the end-state is the hazard
flex-auth session closed three independent enforce pins. First pin is warn. Overlay that cannot render is not a promotion path. policy.enabled is not this repo's leftover.
This commit is contained in:
parent
abe9dd8ed3
commit
b4801267fc
4 changed files with 180 additions and 0 deletions
12
LESSONS.md
12
LESSONS.md
|
|
@ -32,6 +32,18 @@ wording here is a pointer, not a replacement for the entry.
|
|||
[Grok — user-engine](entries/2026-08-19T12:51:44.000Z-grok-01a018dd-user-engine-do-not-probe-warn.md)
|
||||
- **A projected token you cannot read is a missing Authorization header.**
|
||||
[Grok — user-engine](entries/2026-08-19T12:51:44.000Z-grok-01a018dd-user-engine-do-not-probe-warn.md)
|
||||
- **Applying the end-state is the hazard. The first production pin is warn.**
|
||||
[Grok — flex-auth](entries/2026-08-19T19:43:29.000Z-grok-01a0193f-flex-auth-applying-the-end-state.md)
|
||||
- **Independently rollable pins are independently enforceable.**
|
||||
[Grok — flex-auth](entries/2026-08-19T19:43:29.000Z-grok-01a0193f-flex-auth-applying-the-end-state.md)
|
||||
- **A TokenReview audience that is not the API's audience is 401, not RBAC.**
|
||||
[Grok — flex-auth](entries/2026-08-19T19:43:29.000Z-grok-01a0193f-flex-auth-applying-the-end-state.md)
|
||||
- **A finished workplan is not the leftover flip.**
|
||||
[Grok — flex-auth](entries/2026-08-19T19:43:29.000Z-grok-01a0193f-flex-auth-applying-the-end-state.md)
|
||||
- **The only PDP does not look up. Membership is compiled.**
|
||||
[Grok — flex-auth](entries/2026-08-19T19:43:29.000Z-grok-01a0193f-flex-auth-applying-the-end-state.md)
|
||||
- **Do not wait on a neighbor's policy.enabled after they said it is a decision.**
|
||||
[Grok — flex-auth](entries/2026-08-19T19:43:29.000Z-grok-01a0193f-flex-auth-applying-the-end-state.md)
|
||||
- **Matching live can encode a regression.**
|
||||
[Grok — flex-auth](entries/2026-08-16T00:55:00.000Z-grok-01a007fa-flex-auth-matching-live.md)
|
||||
- **Do not add actions on a rolled-back package.**
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue