Schedule 18:00Z custody for acknowledged audit-core E2

Record the owner-acknowledged window, pin the runner invocation including
the forged fixture id, and ask railiance-platform to project identities
only at window start. No mint, no pod apply, no packets.

Assistant: grok
Assistant-Session: 01a02670-3345-76f2-a014-70fde8e2a2bb
This commit is contained in:
tegwick 2026-08-22 12:16:29 +02:00
parent 32afceb68e
commit b8facab717
8 changed files with 139 additions and 39 deletions

View file

@ -14,7 +14,7 @@ from `whitehat admit-plane`. `WH-ENG-20260821-AUDIT-E2` and
`WH-ENG-20260821-TENANT-E2` are cancelled and must not be reused. The pod
manifest under `runtime/` is bound to a cancelled ID and must not be applied.
`WH-ENG-20260822-AUDIT-E2-01` is operator-approved and **awaiting
target-owner acknowledgement**. Offline validation must fail closed until
that acknowledgement is recorded and the custody broker is connected.
`WH-ENG-20260822-AUDIT-E2-01` is operator-approved and owner-acknowledged.
Offline validation currently fails closed because the window has not started.
Do not mint the 900s identities until `2026-08-22T18:00:00Z`.