fix: recheck policy decision expiry after audit custody
Assistant: codex Assistant-Model: gpt-6-astra Assistant-Session: 01a0e747-8f27-7242-8df8-8bc44f88c929
This commit is contained in:
parent
72f3513954
commit
f11b948e8c
7 changed files with 126 additions and 8 deletions
|
|
@ -21,7 +21,8 @@ cancellation mark it unavailable immediately. Successful observations expire to
|
|||
`stale` after ten seconds using a monotonic clock. Invalid user-token refusals
|
||||
neither poison a previously healthy identity sample nor refresh its age. Invalid
|
||||
facts and malformed policy adapter results do not count as success. A fact that
|
||||
expires while policy/audit run also becomes unavailable. The aggregate is `ok`
|
||||
expires while policy/audit run also becomes unavailable. A decision that expires
|
||||
before dispatch marks policy unavailable, even if audit custody succeeded. The aggregate is `ok`
|
||||
only when all four samples are fresh successes.
|
||||
|
||||
These process-local observations are diagnostics, never cached authorization.
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue