railiance-fabric/workplans/RAIL-FAB-WP-0028-hosted-financial-fabric-authority.md
codex b47dd43b04
All checks were successful
CI Smoke / host-smoke (push) Successful in 0s
CI Smoke / container-smoke (push) Successful in 1s
Complete local coordination view switching and record remaining blockers
Assistant: codex
Assistant-Model: gpt-6-astra
Assistant-Session: 01a0e3b8-9815-70f2-9ac5-37bcde2c5090
2026-09-27 18:44:21 +02:00

100 lines
3.3 KiB
Markdown
Raw Blame History

This file contains ambiguous Unicode characters

This file contains Unicode characters that might be confused with other characters. If you think that this is intentional, you can safely ignore this warning. Use the Escape button to reveal them.

---
id: RAIL-FAB-WP-0028
type: workplan
title: "Host and operate the financial Fabric authority"
domain: financials
repo: railiance-fabric
status: blocked
flavor: residual
origin: residual
origin_ref: STATE-WP-0079
owner: codex
topic_slug: railiance
created: "2026-08-31"
updated: "2026-09-27"
state_hub_workstream_id: "58a56363-3bda-50f7-8240-1e45131bc7d9"
---
# RAIL-FAB-WP-0028 - Hosted financial Fabric authority
## Goal
Turn the local registry-backed authority proven by FIN-WP-0003 and
STATE-WP-0079-D2 into a durable production owner surface. State Hub can retain
an immutable projection during the strangler window, but retirement must not
depend on a workstation process or a workstation-owned SQLite database.
Origin: residual from `STATE-WP-0079-T04` after the 2026-08-31 D2 parity and
rollback rehearsal.
## T01 - Decide runtime and persistence ownership
```task
id: RAIL-FAB-WP-0028-T01
status: wait
flavor: residual
priority: high
state_hub_task_id: "65702f41-b87e-59e5-9396-cd1fda5e8ef4"
```
Select the production runtime, persistent registry store, backup/restore
boundary, authentication policy, and deployment repository. Preserve accepted
snapshot history and deterministic snapshot-set provenance.
## T02 - Deploy the authority service
```task
id: RAIL-FAB-WP-0028-T02
status: wait
flavor: residual
priority: high
state_hub_task_id: "cad1af1d-177b-5a47-a9fa-d99c40bb2649"
```
Starts after T01. Package and deploy the registry service with health/readiness checks and stable
owner endpoints for `/exports/financial`, `/graph/summary`, and `/graph/edges`.
Do not expose mutation endpoints without the authorization selected in T01.
## T03 - Automate freshness and recovery
```task
id: RAIL-FAB-WP-0028-T03
status: wait
flavor: residual
priority: high
state_hub_task_id: "78a73d4e-46aa-53c7-911b-be5f79bc25e8"
```
Starts after T02. Run a reviewed accepted-snapshot refresh loop, surface stale/error state, and
prove backup/restore without changing the deterministic export for an unchanged
accepted snapshot set.
## T04 - Cut direct consumers over
```task
id: RAIL-FAB-WP-0028-T04
status: wait
flavor: residual
priority: high
state_hub_task_id: "c66c3fa4-8856-5999-8c47-dbb2f6efc21e"
```
Starts after T03. Run the fin-hub consumer gate against the hosted owner endpoint, inventory and
switch any real callers, exercise rollback, and hand the receipts back to
`STATE-WP-0079-T04` before State Hub's Fabric projection routes retire.
## Loose-end review — 2026-09-27
T01–T04 remain blocked. The fin-hub consumer contract selects Fabric as the
specialized authority, but does not select or admit its production runtime,
persistent volume, offsite backup ownership, authentication policy, or deployment
repository. No hosted Fabric onboarding decision was found in this repository
or railiance-platform's workplans. A workstation SQLite service does not satisfy
this plan's durability gate.
T01 needs a runtime/persistence and access decision with railiance-platform and
railiance-enablement, including named backup/recovery ownership and deployment
admission. T02 waits for that decision; T03 waits for the deployed authority;
T04 waits for freshness/recovery receipts and the fin-hub consumer gate. Keep
State Hub projection routes available until those gates pass. Existing tasks
retain all work; no new task or workplan was opened.