Skip to content

OBL-003: provenance sealing obligations delegated by UDLM ADR-059 - #117

Merged
croadfeldt merged 3 commits into
mainfrom
feat/obl-adr059-provenance
Aug 3, 2026
Merged

croadfeldt merged 3 commits into
mainfrom
feat/obl-adr059-provenance

Conversation

@croadfeldt

Copy link
Copy Markdown
Owner

What this settles: the DCM-side register entry for ADR-059's delegated policy work — recorded with the decision (croadfeldt/udlm#342), not after it, per the established obligations pattern.

One new row + section, register shape unchanged: the invariant DCM must satisfy (full-lifecycle OL sealing including Discovered, state-claims-only working record, DCM as sole hasher, no silent port-fidelity loss) and the six decisions DCM must make — emission completeness/delivery, Discovered-seal retention, provider-scope consumption permission, port-fidelity classes, ledger operation (anchoring/verification/tenancy), and L1-verification failure as a tamper finding class distinct from drift.

Marked open + pending ratification; discharging any of it waits on #342.

🤖 Generated with Claude Code

https://claude.ai/code/session_01AZUFo3Fe5ejQJwT71ELQWB

croadfeldt and others added 3 commits August 3, 2026 00:07
…ort fidelity) delegated by UDLM ADR-059

Registered pending ADR-059 ratification (croadfeldt/udlm#342) so the obligations land
with the decision. Follows the register's OBL shape: the invariant DCM must satisfy
(full-lifecycle sealing incl. Discovered, state-claims-only working record, sole-hasher,
no silent fidelity loss) and the six policy decisions DCM must make (emission
completeness/delivery, Discovered-seal retention, provider-scope consumption permission,
port-fidelity classes, ledger operation, L1-failure as tamper not drift).

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01AZUFo3Fe5ejQJwT71ELQWB
…tinuity citation

Maintainer ruling (2026-08-03): discovery-run chains deliberately do not link cycle to
cycle — runs are independent evidence, and chains prove integrity of what exists, never
completeness of what should. The suppressed-run case is therefore a completeness
obligation: declared discovery cadence + a finding on a missing seal (the ADR-048
expected_observation shape), which also survives seal retention where a chain would not.
Profiles that want structural gap detection anyway (fsi/sovereign) MAY require each run
seal to cite the previous run's head — the pathway_ref citation mechanism pointed
backward — without making cross-run chaining the default or entangling RHY-008.

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01AZUFo3Fe5ejQJwT71ELQWB
…y posture (ADR-059 Decision 8)

- Continuity citations generalized per pathway: the discovery-run option extends to
  provider event streams (the third pathway anchor), with a stronger SHOULD for
  fsi/sovereign there — a provider is an interested external party, not the
  platform's own probe.
- The drift policy decision registered: per-field relevance, severity onto the
  canonical enum, flap debounce, and the deliberately open ACCEPT fork
  (adopt-into-intent vs accepted-deviation record — both priced in the ADR; this
  register is where the ruling lands).
- Finding lifecycle operation: open-once keying, confirm-not-duplicate, closure by
  citing resolution seal; current status derived on read, never from a finding.

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01AZUFo3Fe5ejQJwT71ELQWB
@croadfeldt
croadfeldt merged commit a972713 into main Aug 3, 2026
4 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant