chore(registrar): assign State Hub identifiers

Assistant: claude-code
Assistant-Model: opus
Assistant-Process: 2583210@bnt-lap001
Assistant-Session: f2bff2d5-e9b2-4338-92ca-10282a927006
This commit is contained in:
repo-manager 2026-08-25 17:48:24 +02:00
parent 49a3227cfe
commit 96d06e320a
5 changed files with 33 additions and 0 deletions

View file

@ -16,6 +16,7 @@ waiting_on:
would_change: "C-31 stops being a standing warning; the estate's work-record backbone gains four species it currently cannot name"
default: "C-31 documented as expected noise for this repo, and the register stops treating it as a gap it can close"
default_at: "2026-09-17"
state_hub_workstream_id: "dadd2aa5-6c2a-5f38-ab30-f442f875b6a1"
---
# RISK-WP-0001 — make the register decidable
@ -102,6 +103,7 @@ publishable through `policy-nexus` later; this workplan does not publish it.
id: RISK-WP-0001-T01
status: done
priority: high
state_hub_task_id: "aae498d9-90d8-5f0b-9490-7cde4317f890"
```
Write the scale: impact bands, likelihood bands, how they combine, and the
@ -129,6 +131,7 @@ Completed 2026-08-19. `docs/method/severity.md`: impact `I1`-`I4` x likelihood `
id: RISK-WP-0001-T02
status: done
priority: high
state_hub_task_id: "a185be6b-8097-5770-bbbd-fdd0f4db2ee7"
```
Define the disclosure states — at minimum publish-now, embargoed-until-fixed,
@ -155,6 +158,7 @@ Completed 2026-08-19. `docs/method/disclosure.md`. The deferral was re-taken and
id: RISK-WP-0001-T03
status: done
priority: high
state_hub_task_id: "565046e4-8dea-5fcc-bcf2-72c8b6a23741"
```
Write the rule `INTENT.md` says is not yet written. Settle the five candidate
@ -187,6 +191,7 @@ In progress 2026-08-19. `docs/method/escalation.md` is written and `status: prop
id: RISK-WP-0001-T04
status: done
priority: medium
state_hub_task_id: "ae3dd735-a2fe-5b79-a8fe-3ad6d5d4a76d"
```
Every finding gets a review date on entry, set from its severity. Define the
@ -211,6 +216,7 @@ Completed 2026-08-19. `docs/method/review.md`: 7/30/90/180-day intervals by seve
id: RISK-WP-0001-T05
status: done
priority: medium
state_hub_task_id: "0a65417f-561a-5ff9-b055-3ae19bc03747"
```
One `REGISTER.md`: id, title, system, severity, disclosure, escalation, fix
@ -233,6 +239,7 @@ Completed 2026-08-19. `REGISTER.md`, generated by `tools/register_index.py` from
id: RISK-WP-0001-T06
status: done
priority: high
state_hub_task_id: "336c0355-77ae-5b65-bb84-db1b79499eea"
```
Apply T01T04 to `RISK-F-0001`, `RISK-F-0002` and `RISK-F-0003`. For each:
@ -267,6 +274,7 @@ Completed 2026-08-19, in three rounds — the third after reading the inbox, whi
id: RISK-WP-0001-T07
status: done
priority: medium
state_hub_task_id: "85a93d4d-9d46-5323-820d-eff1c6b1dd7c"
```
`INTENT.md` names things visible but unfiled, held back pending the precedent
@ -296,6 +304,7 @@ Completed 2026-08-19. `docs/rulings/2026-08-19-second-grading.md`. Four filed
id: RISK-WP-0001-T08
status: done
priority: low
state_hub_task_id: "5141e1bf-f3a7-50a9-a4b6-9d1f71f88470"
```
The smallest mechanism that makes silence visible: a check over the register

View file

@ -11,6 +11,7 @@ created: "2026-08-20"
updated: "2026-08-20"
depends_on_workplans:
- RISK-WP-0001
state_hub_workstream_id: "b79af69c-5b08-55df-8caa-258eed3e397e"
---
# RISK-WP-0002 — publication handover
@ -45,6 +46,7 @@ batch — so the route wants to exist before it is needed, not during.
id: RISK-WP-0002-T01
status: progress
priority: high
state_hub_task_id: "9ac32008-76b6-591c-82a1-ad6e2f8368b7"
```
Follow `policy-nexus`'s publication contract as it stands. Do not invent an
@ -64,6 +66,7 @@ In progress 2026-08-20. Operator ruled: findings publish **whole**. Publication
id: RISK-WP-0002-T02
status: done
priority: medium
state_hub_task_id: "ce61806e-02c8-594f-a7b6-88f21d0ee371"
```
`docs/method/severity.md`, `disclosure.md`, `escalation.md`, `review.md`.
@ -88,6 +91,7 @@ Completed 2026-08-20. Public: `severity`, `disclosure`, `review`, `verification`
id: RISK-WP-0002-T03
status: done
priority: medium
state_hub_task_id: "595737b7-19f3-5c39-b208-958c57775bc2"
```
Write down what happens when an embargo lifts: who hands over, in what shape,

View file

@ -11,6 +11,7 @@ created: "2026-08-20"
updated: "2026-08-20"
depends_on_workplans:
- RISK-WP-0001
state_hub_workstream_id: "a86026f4-5dfa-559a-b9ee-e59ff83b3bb5"
---
# RISK-WP-0003 — regulatory intake
@ -53,6 +54,7 @@ From `RISK-REG-0001` and `RISK-F-0008`, both already written down:
id: RISK-WP-0003-T01
status: done
priority: high
state_hub_task_id: "a2980efd-fc39-5baf-847f-570b17070536"
```
Custodian decision. Cheap, and it is what stops the estate either buying advice
@ -71,6 +73,7 @@ Two entries turned out to be **already active and unowned**: commercial and tax
id: RISK-WP-0003-T02
status: done
priority: high
state_hub_task_id: "69d45a18-0626-592b-8b5b-599ad5fff290"
```
State a period and a reason per category in `RISK-REG-0001`, or state plainly
@ -90,6 +93,7 @@ They are **targets, not achievements**, and the record says so in its own text:
id: RISK-WP-0003-T03
status: done
priority: medium
state_hub_task_id: "6d2a09fa-cc9a-586c-9b1a-3dd94650e306"
```
`audit-core` routed theirs by messaging this repo and asking for an owner,
@ -109,6 +113,7 @@ Completed 2026-08-20. `docs/regulatory/README.md` carries the reporter's half, w
id: RISK-WP-0003-T04
status: done
priority: medium
state_hub_task_id: "8f4a718f-dd5c-5c0c-9750-ee7e322490c3"
```
Regulatory records expire; that is why the remit moved here. Put them on the

View file

@ -11,6 +11,7 @@ created: "2026-08-20"
updated: "2026-08-20"
depends_on_workplans:
- RISK-WP-0001
state_hub_workstream_id: "aeb4047e-6a43-5922-9a31-6de9bc79327a"
---
# RISK-WP-0004 — run the register
@ -50,6 +51,7 @@ Every task below traces to something that happened, not something imagined.
id: RISK-WP-0004-T01
status: done
priority: high
state_hub_task_id: "e8f5b149-48a5-5875-9ff6-23ba51880a84"
```
`tools/record_check.py` moves a finding along the ladder and writes the dated
@ -99,6 +101,7 @@ and not from this checkout.
id: RISK-WP-0004-T02
status: done
priority: high
state_hub_task_id: "59196b2c-df84-5e35-abc3-a22ce18da882"
```
`RISK-WP-0001`'s residual says: if it slips again, make it a check. It has
@ -118,6 +121,7 @@ Completed 2026-08-20. `tools/inbox_check.py`, wired into `make check`. Compares
id: RISK-WP-0004-T03
status: done
priority: medium
state_hub_task_id: "4cc53842-7221-5f25-89cc-d3916c18f212"
```
The `mitigated` defect was one instance of a class: the tooling quietly
@ -135,6 +139,7 @@ Completed 2026-08-20. `make check` now reports, by name and without ever silentl
id: RISK-WP-0004-T04
status: done
priority: medium
state_hub_task_id: "681e7bab-f645-5be4-a028-ec6f5b65923a"
```
`RISK-F-0007` is accepted until production on the strength of a path nobody has
@ -153,6 +158,7 @@ Completed 2026-08-20 as far as this repo can complete it. `RISK-V-0002`: verific
id: RISK-WP-0004-T05
status: done
priority: medium
state_hub_task_id: "ffdfd3b3-a026-5705-8dad-a0aa3c07df33"
```
`RISK-F-0009` and `RISK-F-0003`'s mitigation both rest on comparing files
@ -173,6 +179,7 @@ Completed 2026-08-20, by trying rather than reasoning. `docs/method/verification
id: RISK-WP-0004-T06
status: done
priority: low
state_hub_task_id: "bff86b2b-28ce-53fe-8417-dee92c94fd3f"
```
Duplicate of `RISK-WP-0003-T04`, kept here as a pointer rather than a second

View file

@ -12,6 +12,7 @@ updated: "2026-08-21"
depends_on_workplans:
- RISK-WP-0001
- RISK-WP-0004
state_hub_workstream_id: "bdcf890a-c870-502c-9ca8-dbb782faa3da"
---
# RISK-WP-0005 — close the INTENT gaps
@ -47,6 +48,7 @@ plainly at the top:
id: RISK-WP-0005-T01
status: done
priority: high
state_hub_task_id: "6e8bd46e-fe49-5df2-878d-6e656ce2cd28"
```
Gap 2, and first because it is the only place the register currently reports
@ -81,6 +83,7 @@ Four findings carry no fix tracking at all, which the report now says out loud i
id: RISK-WP-0005-T02
status: done
priority: high
state_hub_task_id: "a3152d63-5364-5c2f-a5da-31b39834c5a1"
```
Gap 1. `INTENT.md` claims intake "from any source: research, review, incident,
@ -113,6 +116,7 @@ External report: **no address exists anywhere in the estate** and creating one i
id: RISK-WP-0005-T03
status: done
priority: high
state_hub_task_id: "9f308660-a5bd-5f2b-9865-62d9b5a316ad"
```
Gap 4, and cheap. Five findings owe a re-score at "the production transition"
@ -138,6 +142,7 @@ Declared by the custodian, never by this register: a risk register that unilater
id: RISK-WP-0005-T04
status: done
priority: medium
state_hub_task_id: "e8997412-13de-5cb7-a819-06ec234fdfc9"
```
Gap 5. `README.md` and `INTENT.md` both say this repo serves
@ -159,6 +164,7 @@ Completed 2026-08-21. `README.md` now says the repo serves nothing yet and that
id: RISK-WP-0005-T05
status: done
priority: medium
state_hub_task_id: "30dbcabd-7217-5997-9386-a5c39a9ccd60"
```
Gap 6. An escalation goes to an inbox and is said aloud in whatever session is
@ -180,6 +186,7 @@ Completed 2026-08-21. Escalation carries a delivery state — `sent → seen →
id: RISK-WP-0005-T06
status: done
priority: medium
state_hub_task_id: "a2319f77-3cbc-56dd-ab75-f1792c2ea9f9"
```
Gap 7. If nothing performs checks, every finding still climbs nowhere and sits
@ -203,6 +210,7 @@ Completed 2026-08-21. Two defences against the rung lying: `checked_by` recorded
id: RISK-WP-0005-T07
status: done
priority: low
state_hub_task_id: "b0798b6c-96d4-539f-9edc-fb1fd72fe9fb"
```
Gap 3: the largest, the most expensive, and the one that decides whether