Publish reciprocal canon federation interface
All checks were successful
CI Smoke / host-smoke (push) Successful in 0s
CI Smoke / container-smoke (push) Successful in 2s

Assistant: codex
Assistant-Model: gpt-6-astra
Assistant-Session: 01a070b5-4994-7271-bd8b-7c3dbcedec4b
This commit is contained in:
tegwick 2026-09-06 01:00:12 +02:00
parent 372f671eef
commit 28c624b10b
21 changed files with 419 additions and 98 deletions

View file

@ -141,3 +141,8 @@ The first benchmark is `kubernetes-rbac`, which maps Kubernetes RBAC native
constructs into CARING descriptors and records canon pressure around native
roles, effective access, derived workload capabilities, induced secret exposure,
and the rule that a Namespace is not automatically a tenant boundary.
## Canon federation
[Published interface card](infospace/interfaces/federation.yaml) declares exports, imports, authority,
source-of-truth boundaries and reciprocal canon references.