prj-canon-federation/docs/evidence/2026-09-05-identity-model.md
tegwick 45eee0e27b Record identity migration and ready counterparty work
Assistant: codex
Assistant-Model: gpt-6-astra
Assistant-Session: 01a070b5-4994-7271-bd8b-7c3dbcedec4b
2026-09-05 22:11:59 +02:00

2.9 KiB
Raw Blame History

Identity model migration — 2026-09-05

Native INFO-WP-0021 implements CFED-WP-0001-T05. Draft itc-ident 0.1.0 covers exactly the 23 identity-owned concepts in the federation ledger; User and Subscriber remain convenience mappings. P1P13 are adapted to accepted imports and the Family/Household distinction. Commerce P14/P15 remain with T06.

Destination review resolves Delegation by executing ADR-006 decision 4: the donor's bounded authority relation and Organization's bounded responsibility/ authority definition are consolidated under identity's Delegation Relationship. The compatibility name Delegation and Organization section anchor remain as an import. Actor, Responsibility and Authority stay in Organization. No accepted ledger owner is changed, so no ADR amendment is needed. Information Space's generic Identifier similarly becomes an import; its artifact conventions stay.

Identity defines no imported organization/access/evidence concept. Profile is qualified against Observability and canon application profiles. Relationship is scoped to the identity taxonomy. Governance and identity carry reciprocal assurance disambiguation. Access Control now names the identity owner explicitly.

A complete artifact graph reveals reciprocal model imports. The existing zero-cycle check treats these as inconsistent even though the concept ownership is disjoint. Native validation now supports an explicit exact-edge review: the five internal uses edges between Identity, Organization and Access Control, including Access Control's existing Organization import. Raw metrics and graph edges are preserved. Added edges/types/members, unrelated cycles or a missing boundary rationale do not qualify for the exception. Focused regression cases exercise those failures. This is a documented exception to model-document acyclicity, not a relaxation of concept ownership.

All 34 protected seeds and finished workplans match the adjacent SHA-256 snapshot. The donor corpus is unchanged. Model links resolve and ledger coverage is exact. T06 remains the next commerce implementation; T07/T08 retain provenance and interface-card work; T12/T13 retain social collective/Family work. No consumer adoption or stable model promotion is claimed.

Reproduce from InfoTechCanon: make check and git diff --check. Final validation and publication receipts are recorded below.

Final verification: 45 tests pass, generated artifacts are current, canon validation passes with the explicit reviewed model-import exception, and the small-saas profile passes. Native implementation published at 361c944. INFO-WP-0021 UUID: 0e35415e-af27-5710-9d18-25769dc71ec6; all three tasks done. State Hub decision c14abce1-4241-4bbc-986a-8fe46f0a3342 records the implementation review and its rationale. Both required consistency runs passed with no automation errors or assessment failures; existing classification/prefix advisories remain. Progress logged for native and project workplans. T06 is now todo.