diff --git a/canon/standards/security-zones_v0.1.md b/canon/standards/security-zones_v0.1.md index 50a1899..1d3df36 100644 --- a/canon/standards/security-zones_v0.1.md +++ b/canon/standards/security-zones_v0.1.md @@ -337,7 +337,7 @@ evaluated where their effects occur. This requires no zone-engine runtime. ## 10. Adoption -The draft is offered to net-kingdom for publication. Adoption requires: +Net-kingdom published this standard at revision `337484a`. Adoption requires: 1. flex-auth and ops-warden accept the initial control profile or publish a versioned replacement with total zone and `unknown` coverage; @@ -345,3 +345,8 @@ The draft is offered to net-kingdom for publication. Adoption requires: 3. a third consumer compiles or reads the resolved view; and 4. ops-warden retires `policy.enabled` and the dormant `trust_zone` constant in the same migration. + +All four gates were met on 2026-08-22. The owning zone-engine repository records +the exact consumer revisions, tests, resolved membership digests, and live +caller decision in +`docs/evidence/security-zone-adoption-2026-08-22.md`.