net-kingdom/canon/standards
tegwick f9e1611cc7
All checks were successful
CI Smoke / host-smoke (push) Successful in 0s
CI Smoke / container-smoke (push) Successful in 1s
Register the tenant-provenance gap in 13 (GH-DEC-2026-013)
One row, no doctrine change. key-cape has no adapter populating the
directory user tenant, so a client registration supplies a human
principal's tenant. gate-house ruled that admissible as a declared
bounded gap rather than as the answer, on the ground that its
distinguishing case fails closed: where registration and directory
disagree, issuance is refused rather than resolved either way.

Registered here because condition 3 of that ruling requires it — a
transitional shape not held in a register becomes the permanent answer
by nobody minding it. Intended owner is left unnamed per 13's own rule
that an intended owner is a proposal to a repository rather than an
assignment onto it.

The standard stays proposed and this changes no normative text.

21 tests pass.

Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_012viPor8WJNCbV64ipwewrm

Assistant: claude-code
Assistant-Model: opus
Assistant-Process: 1754332@bnt-lap001
Assistant-Session: 9c8ac536-ff5e-46a3-8ab1-a548bde25fc0
2026-09-09 23:20:22 +02:00
..
credential-management_v0.2.md Add OpenBao runtime secret authority; complete NK-WP-0006/0007/0008 2026-05-20 22:51:20 +02:00
emission-cadence-security-profile_v0.1.md Validate cadence contract and require functional MFA verification 2026-09-05 01:28:05 +02:00
iam-profile_v0.2.md Separate IAM Profile ids and mark v0.2 superseded 2026-08-19 01:09:18 +02:00
iam-profile_v0.3.md docs: refresh published security canon index 2026-08-31 21:17:38 +02:00
playbook-capability-contract_v0.1.md feat(orchestration): compose security scenarios 2026-08-23 12:40:52 +02:00
posture-feedback_v0.1.md feat(posture): add deterministic feedback proposals 2026-08-23 13:16:34 +02:00
security-layer-model_v0.1.md Security Layer Model v0.2 — accepted 2026-08-28 22:00:31 +02:00
security-layer-model_v0.2.md Security Layer Model v0.3 — assign approvals and maturity 2026-08-28 22:34:58 +02:00
security-layer-model_v0.3.md Security Layer Model v0.4 — audit-core assent and its corrections 2026-08-28 22:54:50 +02:00
security-layer-model_v0.4.md Security Layer Model v0.5 — four reviews, nine changes 2026-08-29 02:54:25 +02:00
security-layer-model_v0.5.md Security Layer Model v0.6 — type the engines, name the gate, hold actuation at zero 2026-08-29 03:32:58 +02:00
security-layer-model_v0.6.md Security Layer Model v0.7 — write the rule v0.6 only announced 2026-08-29 10:44:53 +02:00
security-layer-model_v0.7.md Accept the security layer model; companion v0.2 to the repository root 2026-08-29 11:28:49 +02:00
security-layer-model_v0.8.md Register the tenant-provenance gap in 13 (GH-DEC-2026-013) 2026-09-09 23:20:22 +02:00
security-scenario-composition_v0.1.md feat(orchestration): compose security scenarios 2026-08-23 12:40:52 +02:00
security-zones_v0.1.md docs(canon): record security zone adoption 2026-08-22 15:43:52 +02:00
tenancy-posture_v0.1.md feat(posture): add deterministic feedback proposals 2026-08-23 13:16:34 +02:00
tenant-engine-boundary-contract_v0.1.md docs(canon): reconcile workload and tenant grouping semantics 2026-08-22 14:53:31 +02:00
user-engine-boundary-contract_v0.1.md docs: persist user-engine vs net-kingdom integration assessment (new doc + cross-references in SCOPE, boundary contract, guidance, responsibility map, 0018/0019 workplans). Also updated user-engine integration doc to reference it. 2026-06-03 10:33:31 +02:00