From 502a2d5c56e7440116dbad102b6fd506a8b847b0 Mon Sep 17 00:00:00 2001 From: tegwick Date: Sun, 13 Sep 2026 17:06:32 +0200 Subject: [PATCH] Retain provider acceptance CI and synchronized assurance task binding Assistant: codex Assistant-Model: gpt-6-astra Assistant-Session: 01a092fe-13b1-7f12-ac74-7d258af4d79c --- docs/enrollment-assurance-release-2026-09-13.md | 6 ++++++ workplans/KEY-WP-0035-optional-mfa.md | 1 + 2 files changed, 7 insertions(+) diff --git a/docs/enrollment-assurance-release-2026-09-13.md b/docs/enrollment-assurance-release-2026-09-13.md index 7171b47..c2061c6 100644 --- a/docs/enrollment-assurance-release-2026-09-13.md +++ b/docs/enrollment-assurance-release-2026-09-13.md @@ -33,3 +33,9 @@ or production self-service enrollment policy was changed by this release. The remaining T02/T03 work is actual self-service browser acceptance, scoped optional client activation and privileged portal assurance. P04 audited lost-factor recovery is still separate. Isolated provider tests do not claim those complete. + +Final CI evidence: [run 56](https://forgejo.coulomb.social/coulomb/key-cape/actions/runs/56) +succeeded for ecca6cb, including both the full Go suite and the isolated provider +contract job. The final deployment is Ready 1/1; health, readiness, discovery and +JWKS endpoints each returned HTTP 200. Workplan synchronization completed with +zero failures; the generated T05 task binding is retained in its source record. diff --git a/workplans/KEY-WP-0035-optional-mfa.md b/workplans/KEY-WP-0035-optional-mfa.md index 687fd38..826eeb8 100644 --- a/workplans/KEY-WP-0035-optional-mfa.md +++ b/workplans/KEY-WP-0035-optional-mfa.md @@ -83,6 +83,7 @@ Consumer source 632b1f1 deployed and Ready 1/1; CI, four provider HTTP checks an id: KEY-WP-0035-T05 status: done priority: high +state_hub_task_id: "94f579d1-a7af-564c-ab0c-ae76fce343aa" ``` Live provider source inspection found active tokens can remain in verification