From 930e74d1deaeff07580e8169c885cb2f68cc777f Mon Sep 17 00:00:00 2001 From: tegwick Date: Wed, 23 Sep 2026 17:10:48 +0200 Subject: [PATCH] Record SECRETS-WP-0009-T03 definition sync and owner provisioning prep Co-Authored-By: Claude Opus 5.5 Assistant: claude-code Assistant-Model: opus Assistant-Process: 226514@bnt-lap001 Assistant-Session: 26ba103d-05fe-45a1-9cd7-9475bf239df6 --- ...SECRETS-WP-0009-glas-claude-native-delivery.md | 15 +++++++++++++++ 1 file changed, 15 insertions(+) diff --git a/workplans/SECRETS-WP-0009-glas-claude-native-delivery.md b/workplans/SECRETS-WP-0009-glas-claude-native-delivery.md index 3c4c31e..59239e5 100644 --- a/workplans/SECRETS-WP-0009-glas-claude-native-delivery.md +++ b/workplans/SECRETS-WP-0009-glas-claude-native-delivery.md @@ -430,3 +430,18 @@ Operator chose: request multi-worker identities from activity-core (message max_turns 30. No `project` value is on record yet. No SpendPolicy, ledger or owner config was written. No credential was read. + +### 2026-09-23 definition live; owner provisioning prepared + +The operator ran the ConfigMap apply and sync Job. The sync log shows +`hfact-glas-metered-proof` upserted (29 definitions). Operator chose project +`prj-helixforge-factory` and list-price bounds for `claude-sonnet-5` +(claude-api reference, cached 2026-06-24: USD 2 / 10 per MTok). The owner +MessagesPolicy uses an input bound of 4 micro-USD per token (covers the 1h cache +write), output 10, context 200000, output 32000, and the betas the CLI passed in +the synthetic proof. The worst-case hold per request is USD 1.12. + +A provisioning script (SpendPolicy, `spend init`, request tables, mode-0600 +owner config under `~/hfact/owner`) validates in memory. Staging it on +railiance01 was blocked by the harness classifier as a real-world transaction. +It has not been run. No policy, ledger or owner config exists yet.