chore(consistency): sync RPF-WP-0020 registration
All checks were successful
CI Smoke / host-smoke (push) Successful in 0s
CI Smoke / container-smoke (push) Successful in 1s

This commit is contained in:
codex 2026-08-18 15:19:19 +02:00
parent b1f973c2d5
commit 7fb7c503df
2 changed files with 10 additions and 0 deletions

View file

@ -13,6 +13,7 @@ related:
- RPF-WP-0014
origin: residual
origin_ref: RPF-WP-0019
state_hub_workstream_id: "e2da7c94-0693-40fa-a339-1873b7dd061a"
---
# RPF-WP-0020 — CCR schema drift
@ -77,6 +78,7 @@ draft and a real gap produce identical output.
id: RPF-WP-0020-T01
status: todo
priority: high
state_hub_task_id: "3bf8bf9c-ac33-4ce7-8b3f-5b40135b227c"
```
**Migrate CCR-2026-0010 to the current schema.** Determine the actual
authentication path for the `email-connect` transactional lane — Kubernetes
@ -90,6 +92,7 @@ disagreement is the finding.
id: RPF-WP-0020-T02
status: todo
priority: medium
state_hub_task_id: "12933d69-82a3-470d-b01c-0c40c28a7984"
```
**Give the suite a way to express a draft.** Add an explicit in-flight state
so `CCR-2026-0011` is skipped *by declaration* rather than by exception list —
@ -101,6 +104,7 @@ allowlist of filenames would work today and rot on the next draft.
id: RPF-WP-0020-T03
status: todo
priority: medium
state_hub_task_id: "da52b518-c6fb-40b8-acb9-c64724ca4eee"
```
**Report the drift rather than only fixing it.** If the `openbao.auth`
requirement was added without migrating existing active CCRs, other repos
@ -111,6 +115,7 @@ whether the requirement originated here or upstream, and notify accordingly.
id: RPF-WP-0020-T04
status: todo
priority: low
state_hub_task_id: "2259ee69-4914-42c4-9175-8c61b2206888"
```
**Make the suite green and keep it that way.** With T01 and T02 done, the full
suite passes. Record in `docs/credential-change-approval.md` that a new