Declare Engine/PIP and open TEN-WP-0011 for v0.7 conformance

The security layer model is accepted at v0.7. INTENT.md now declares
Engine / PIP in this repository's own voice (TEN-DEC-2026-001), SCOPE.md
is brought current with shipped APIs, and the intent/scope/implementation
review is history/2026-08-29-security-layer-intent-scope-review.md.

TEN-IN-0003 is absorbed by the declaration. Approvals stay with
approval-engine. TEN-IN-0001 and TEN-IN-0002 promote into TEN-WP-0011.

Assistant: grok
Assistant-Session: 01a04cea-e5e8-7081-a0fc-808ebbc35fa9
This commit is contained in:
tegwick 2026-08-29 11:57:37 +02:00
parent d9bacfa953
commit 76677bffc5
7 changed files with 780 additions and 86 deletions

View file

@ -12,7 +12,9 @@ id: TEN-IN-0001
kind: intake
title: "Externalize tenant-engine audit evidence to audit-core"
lane: yellow
status: open
status: closed
outcome: promoted
promoted_to: TEN-WP-0011-T04
priority: high
owner: tenant-engine
repo: tenant-engine
@ -39,6 +41,11 @@ description: |
Promote this intake to a normal workplan before implementation because the
delivery semantics and cross-service dependency require design and review.
state_hub_intake_id: "01a02176-8ca7-725d-b2c2-4353eb4fd3f5"
promoted_at: "2026-08-29"
notes:
- content: Promoted into TEN-WP-0011-T04 after security-layer-model v0.7 made the evidence bound (statute §9.6) explicit for this PIP.
author: tenant-engine
created: "2026-08-29"
```
---
@ -50,7 +57,9 @@ id: TEN-IN-0002
kind: intake
title: "Remove or authorize the tenant-engine unfiltered event-read interface"
lane: red
status: open
status: closed
outcome: promoted
promoted_to: TEN-WP-0011-T05
priority: high
owner: tenant-engine
repo: tenant-engine
@ -67,4 +76,9 @@ description: |
interface. Add cross-tenant negative tests and give risk-nexus the final
accessibility and payload reading.
state_hub_intake_id: "01a02176-c121-7952-8d52-2cbe282fd883"
promoted_at: "2026-08-29"
notes:
- content: Promoted into TEN-WP-0011-T05. Unfiltered production-protocol event reads remain a reconstructability defect under statute §9.6 even without an HTTP route.
author: tenant-engine
created: "2026-08-29"
```