Add inactive Control foundation policy roll-up - #215
Merged
Conversation
Deploying ystack with
|
| Latest commit: |
ebc8d21
|
| Status: | ✅ Deploy successful! |
| Preview URL: | https://2dfe2c0b.fabrica-6yx.pages.dev |
| Branch Preview URL: | https://codex-control-foundation-rol.fabrica-6yx.pages.dev |
Owner
Author
Codex reviewer (cross-vendor, read-only)Reviewed-head: ebc8d21 CLEAN — zero unresolved Important findings. Bugs
Security
Compliance
|
Owner
Author
|
Construction publish receipt
|
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Roadmap item: 2 — Control foundation.
What changed
control_policy_setv1 artifact in the required six-section order.Exact identity
81cdf84f0cad6e2b93411a3adceb06c47b2f1dc2ebc8d215dc480fb8da648e7aac7db3ef728fbaabcodex/control-foundation-rollup-v1Proof on the exact head
bash scripts/test/control-foundation-rollup.test.sh— 23 focused checks passed.bash scripts/test/portable-core-schema.test.sh— zero failures: 47/47 owned rules, 141/141 direct cases, 13/13 private route probes, 8/8 registry cases, 39/39 activation guards, 8/8 numeric boundaries, 8/8 review findings, and 44/44 legacy assertions.bash -non both changed test scripts — passed.-x -S styleon both changed test scripts — passed.The focused roll-up test independently hashes all 12 referenced policy and decision files and recomputes the selected core package closure. It rejects mutations to every ref, the core identity, generation, package, order, uniqueness, activation, and fail mode. The six evaluator suites were not run locally; required CI will run the full repository suite.
Inactive boundary
This is a static, repo-only identity bundle. It stays inactive and fails closed. It adds no aggregator runtime and claims no enforcement, qualification, approval, authority, activation, credential access, candidate execution, network access, publish, deploy, or external effect.