feat: deliver approved factory audit sender custody
All checks were successful
CI Smoke / host-smoke (push) Successful in 0s
CI Smoke / container-smoke (push) Successful in 1s

Assistant: codex
Assistant-Model: gpt-6-astra
Assistant-Session: 01a07ff8-19d0-7820-b4d0-1353833cb7fc
This commit is contained in:
codex 2026-09-11 09:38:27 +02:00
parent fe1b1c5fe2
commit 44314cad37
7 changed files with 411 additions and 8 deletions

View file

@ -397,11 +397,11 @@ into this client-identity grant.
```task
id: RPF-WP-0035-T08
status: wait
status: progress
priority: high
assignee: railiance-platform
needs_human: true
intervention_note: "All named CCR-2026-0021/0022 reviews are approved. Compatible receiver and namespaces are ready. Attended OIDC failed before owner-command handoff; Warden could not confirm remote session revocation. Await operator browser/MFA feedback and login/session resolution before custody retry. Do not repeat sender approval."
needs_human: false
intervention_note: null
state_hub_task_id: "0ef52c26-2669-5cd1-8149-b1f6fcdda6cb"
```
@ -498,3 +498,14 @@ resolution. Approvals remain valid; T08 waits for the identity act, not review.
The receiver check now selects component=receiver, so retained attestation-job
pods cannot falsely block a stable receiver. Eighteen custody tests pass.
[Native return](../docs/evidence/2026-09-11-factory-receiver-live.json).
### Attended custody retry succeeded — 2026-09-11
The user requested a retry and completed the attended identity act. Both CCRs
are applied: independent version-1 custody and registry CAS 7→8 succeeded,
preserving other senders/fields. Warden exited 0 with self-revocation confirmed
for this session. This does not retrospectively attest the earlier failed
login's remote session state. The old login wait is cleared; T08 is progress
for ESO delivery, exact native reader/namespace refusals, receiver reload and
producer acceptance. No token is reseeded or rotated on continuation.
[Seed receipt](../docs/evidence/2026-09-11-factory-audit-sender-seed.json).