diff --git a/credential-change-requests/CCR-2026-0029-activity-core-ops-run-worker-rein-aharness-railiance01.yaml b/credential-change-requests/CCR-2026-0029-activity-core-ops-run-worker-rein-aharness-railiance01.yaml index 70e8943..3b83dff 100644 --- a/credential-change-requests/CCR-2026-0029-activity-core-ops-run-worker-rein-aharness-railiance01.yaml +++ b/credential-change-requests/CCR-2026-0029-activity-core-ops-run-worker-rein-aharness-railiance01.yaml @@ -3,7 +3,7 @@ kind: credential-change-request schema_version: 1 request_type: workload-kv-read title: activity-core ops_run worker token for rein-aharness@railiance01 via the activity-core-eso store -status: proposed +status: approved created: '2026-09-23' updated: '2026-09-23' requester: @@ -31,6 +31,11 @@ review: activity-core-eso (RPF-WP-0045). The change adds two exact data-read paths to that role's policy. There is no wildcard, no metadata or list, and no new role. + - at: '2026-09-23' + reviewer: bernd.worsch + decision: approved + comment: 'Approved in chat (Claude Code session, 2026-09-23) acting as all + required approvers: platform-operator, activity-core-owner.' target: domain: financials tenant: activity-core diff --git a/credential-change-requests/CCR-2026-0030-activity-core-ops-run-worker-rein-aharness-metered-railiance01.yaml b/credential-change-requests/CCR-2026-0030-activity-core-ops-run-worker-rein-aharness-metered-railiance01.yaml index 9af37d7..768eece 100644 --- a/credential-change-requests/CCR-2026-0030-activity-core-ops-run-worker-rein-aharness-metered-railiance01.yaml +++ b/credential-change-requests/CCR-2026-0030-activity-core-ops-run-worker-rein-aharness-metered-railiance01.yaml @@ -3,7 +3,7 @@ kind: credential-change-request schema_version: 1 request_type: workload-kv-read title: activity-core ops_run worker token for rein-aharness-metered@railiance01 via the activity-core-eso store -status: proposed +status: approved created: '2026-09-23' updated: '2026-09-23' requester: @@ -31,6 +31,11 @@ review: activity-core-eso (RPF-WP-0045). The change adds two exact data-read paths to that role's policy. There is no wildcard, no metadata or list, and no new role. + - at: '2026-09-23' + reviewer: bernd.worsch + decision: approved + comment: 'Approved in chat (Claude Code session, 2026-09-23) acting as all + required approvers: platform-operator, activity-core-owner.' target: domain: financials tenant: activity-core