docs(canon): record security zone adoption
All checks were successful
CI Smoke / host-smoke (push) Successful in 0s
CI Smoke / container-smoke (push) Successful in 1s

Assistant: codex
Assistant-Model: gpt-5.6-sol
Assistant-Session: 01a0291a-1e87-7151-9934-fcbfe3f65eb1
This commit is contained in:
tegwick 2026-08-22 15:43:52 +02:00
parent a286b91652
commit 104d5c684c

View file

@ -337,7 +337,7 @@ evaluated where their effects occur. This requires no zone-engine runtime.
## 10. Adoption
The draft is offered to net-kingdom for publication. Adoption requires:
Net-kingdom published this standard at revision `337484a`. Adoption requires:
1. flex-auth and ops-warden accept the initial control profile or publish a
versioned replacement with total zone and `unknown` coverage;
@ -345,3 +345,8 @@ The draft is offered to net-kingdom for publication. Adoption requires:
3. a third consumer compiles or reads the resolved view; and
4. ops-warden retires `policy.enabled` and the dormant `trust_zone` constant in
the same migration.
All four gates were met on 2026-08-22. The owning zone-engine repository records
the exact consumer revisions, tests, resolved membership digests, and live
caller decision in
`docs/evidence/security-zone-adoption-2026-08-22.md`.