ops-mason/workplans
tegwick 958a667dd6 feat(workplan): open MASON-WP-0004 for credential descriptions
custody-inventory.py reports 21 paths, 17 undescribed. An undescribed
credential is one nobody can identify without reading it, so orientation
needs the access the store exists to control — and both of the week's
failure modes stay available: no used_by list, so a rotation misses a
consumer; no on_loss line, so recovery is improvised under pressure.

Sequenced so ops-mason does not guess. T01 establishes owners, because a
confidently wrong used_by is worse than an empty one — a rotation will
trust it.

Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>

Assistant: claude-code
Assistant-Model: opus
Assistant-Process: 3377672@bnt-lap001
Assistant-Session: 15463ccf-238f-4e13-b163-93aa25c6d166
2026-08-28 11:50:50 +02:00
..
MASON-0001-statehub-bootstrap.md Mark MASON-0001 bootstrap workplan finished 2026-07-27 02:03:45 +02:00
MASON-WP-0001-foundation.md fix(workplans): declare type: workplan on records the hub already holds 2026-08-26 20:56:05 +02:00
MASON-WP-0002-whitehat-foundational-plane.md close: finish MASON-WP-0002 with governed residual 2026-08-22 11:36:13 +02:00
MASON-WP-0003-state-hub-forge-read-lane.md feat(mason): deliver and verify the forge read credential 2026-08-27 23:46:42 +02:00
MASON-WP-0004-credential-inventory-descriptions.md feat(workplan): open MASON-WP-0004 for credential descriptions 2026-08-28 11:50:50 +02:00