-
Notifications
You must be signed in to change notification settings - Fork 0
ADR 015 GSN Adoption for Adequacy and Sufficiency
Status: Accepted Date: 2026-05-16 Deciders: Michael Zargham Related: ADR-005 Adequacy and Sufficiency as Guidance Subtypes; ADR-014 Parsimony Layer Build-Time Extraction; ADR-021 Three Attestation Subclasses Ship in v0.1; GSN Integration; PROV EARL GSN P-PLAN; Design Spec
Adequacy and sufficiency claims (see ADR-005 Adequacy and Sufficiency as Guidance Subtypes) are not unique to flexo-rtm — they are the same arguments that Goal Structuring Notation (GSN) has standardized in the assurance-case community for two decades. GSN gives a formal structure for assurance arguments: Goal nodes (the claim), Strategy nodes (how the claim is decomposed), Solution nodes (the evidence), and Context/Assumption/Justification nodes. The ADCS prototype (flexo-rtm's predecessor — see ADCS Prototype Lessons) used a flat AdequacyClaim / SufficiencyClaim vocabulary that did not interoperate with GSN tooling. The question is whether v0.1 adopts GSN as the elaborated argument structure for adequacy and sufficiency claims, or stays with flat claim types. See Design Spec §8 and GSN Integration.
flexo-rtm v0.1 adopts GSN (parsimony-extracted per ADR-014 Parsimony Layer Build-Time Extraction) for adequacy and sufficiency claim structure. rtm:AdequacyGuidance and rtm:SufficiencyGuidance (see ADR-005 Adequacy and Sufficiency as Guidance Subtypes) map onto GSN's Goal/Strategy/Solution structure; assurance arguments can be authored in GSN-compatible tools and projected to RDF. Attestations (see ADR-021 Three Attestation Subclasses Ship in v0.1) reference the GSN Goal they attest to.
- Interoperability with the assurance-case community: GSN tools (Astah GSN, Adelard ASCE, NOR-STA, AdvoCATE) become potential authoring surfaces for
flexo-rtmadequacy and sufficiency arguments - Consistency with the ADCS prototype's experience: ADCS prototype lessons (see ADCS Prototype Lessons) showed that flat claim types lose argument structure that reviewers need; GSN restores it
- PROV-O + EARL + GSN + P-PLAN compose into a coherent assurance-trace vocabulary (see PROV EARL GSN P-PLAN) — adopters get a familiar argument structure plus rigorous provenance
- Forward-compatible with any downstream-analysis path that consumes adequacy/sufficiency attestations (per ADR-032 Methodology Agnosticism as Foundational Axiom): adopters who choose to run topological analysis as a downstream-analysis mode (see ADR-003 Topological Framework Documented as Future Work), GSN-based assurance-case audits, or other in-house analyses read the surrounding argument structure natively. GSN is the elaborated argument structure; the topological framework is one possible downstream-analysis methodology that may compose with it
- Adopters not already using GSN have to learn its vocabulary; mitigated by the fact that the RTM-level claim types remain
rtm:AdequacyGuidance/rtm:SufficiencyGuidance— GSN is the elaborated structure underneath, not a replacement - GSN ontology is large; parsimony extraction (see ADR-014 Parsimony Layer Build-Time Extraction) has to be careful to import only what
flexo-rtmactually references - GSN tool maturity varies; v0.1 cannot guarantee a specific authoring tool experience, only that the RDF projection is GSN-conformant
- GSN aliases (flat
rtm:AdequacyClaimshortcuts to GSN Goal nodes) are not introduced — the GSN structure is the canonical representation
-
Flat
rtm:AdequacyClaim/rtm:SufficiencyClaimwithout GSN: Stay with the ADCS prototype's flat vocabulary. Rejected: loses argument structure that reviewers and assurance-case auditors expect; foregoes interoperability with the assurance-case tool ecosystem; the ADCS prototype's lessons (see ADCS Prototype Lessons) explicitly identified flat-claim-loss-of-structure as a gap to close in v0.1. -
GSN + flat aliases: Adopt GSN but also introduce flat
rtm:AdequacyClaimaliases for adopters who want them. Rejected: aliasing is a vocabulary maintenance burden and invites adopters to use the aliases instead of learning GSN — defeating the interoperability purpose. The RTM-level Guidance subtypes (see ADR-005 Adequacy and Sufficiency as Guidance Subtypes) are already the abstraction layer; below that, GSN is the canonical argument structure.
- GSN vocabulary parsimony-extracted into
ontology/imports/gsn.ttl(see ADR-014 Parsimony Layer Build-Time Extraction) -
rtm:AdequacyGuidanceandrtm:SufficiencyGuidancedefined as compatible with GSN Goal nodes; canonical RTM examples show the GSN argument structure - PROV-O + EARL + GSN + P-PLAN integration documented in PROV EARL GSN P-PLAN
- Attestations (see ADR-021 Three Attestation Subclasses Ship in v0.1) reference GSN Goal IRIs via
rtm:attestsClaim
- Design Spec §8 (Assurance Argument Structure)
- GSN Integration — the canonical GSN integration documentation
- PROV EARL GSN P-PLAN — the composed assurance-trace vocabulary
- ADR-005 Adequacy and Sufficiency as Guidance Subtypes — the Guidance subtypes GSN elaborates
- ADCS Prototype Lessons — what the prototype taught about flat-claim limitations
-
ADR-032 Methodology Agnosticism as Foundational Axiom — GSN and topological framework are independent downstream-analysis paths, each composable with
flexo-rtm's named-signer substrate - GSN Community Standard v3 (Assurance Case Working Group)
- Flexo Git Coexistence
- ADCS Prototype Lessons
- MVC Pattern from RIME TRL ANT
- Human-AI Accountability
- Multi-Agent Discourse Graph Precedent
- OSLC RM and QM Review
- INCOSE V2 Review
- OMG SysMLv2
- PROV EARL GSN P-PLAN
- Dragon Architecture and Mission Enterprise
- Traditional Forward and Backward Analysis
- Attestation Infrastructure in v0.1
- Identity Boundaries and Policy Projections
- External URI References
- Signed Envelopes and Established Standards
- Aspect Coverage with Adequacy and Sufficiency
- Federated Audit and Composition
- Certification Predicate
- Gap Taxonomy
- Quantitative Outcomes
- Engineering Lifecycle Stages (v0.2)
- Topological Framework Future Work (research phase)
- Vertices Edges Faces (research phase)
- Three-Layer Architecture
- Operational Layer UX Discipline
- Storage Layer Flexo Conventions
- Analysis Layer Scope Algebra
- OSLC Roundtrip Acceptance
- Identity Adapter Contract
- Flexo REST Binding
- SysMLv2 Ingestion Contract
- External URI Rules
- Signed Envelope Shapes
- Parsimony Manifest
- Lossless Roundtrip Definition
- Vendor Extension Carry-Through
- OSLC RM Adapter Contract
- OSLC QM Adapter Contract
- ADR Template
- ADR-001 Foundations First Approach
- ADR-002 SysMLv2 Anchoring
- ADR-003 Topological Framework Documented as Future Work
- ADR-003a v0.1 Ships Traditional Analysis Only
- ADR-004 Quantitative Certification Outcome
- ADR-005 Adequacy and Sufficiency as Guidance Subtypes
- ADR-006 Three-Layer Architecture
- ADR-007 Scope as First-Class RDF Resource
- ADR-008 Repo Name and Org Transfer Plan
- ADR-009 Two-Repo Strategy
- ADR-010 OSLC-RM and OSLC-QM in v0.1
- ADR-011 Lossless Criterion A plus C
- ADR-012 Direct RDF Properties over Reified Edges
- ADR-013 Simplicial Complex as Derived View When Built
- ADR-014 Parsimony Layer Build-Time Extraction
- ADR-015 GSN Adoption for Adequacy and Sufficiency
- ADR-016 Composable SHACL Profiles
- ADR-017 knowledgecomplex as Optional Extras
- ADR-018 V minus F Invariant Deferred with Topological Framework
- ADR-019 Derived Binary View from Quantitative Metrics
- ADR-020 Vocabulary Alignment with Zargham 2026
- ADR-021 Three Attestation Subclasses Ship in v0.1
- ADR-022 External URI References as Open-Source Foundation
- ADR-023 Cryptography by Composition of Battle-Tested Standards
- ADR-024 Identity by Thin Projection of External Sources
- ADR-025 Reproducibility is Structural and Local
- ADR-026 Cryptographic Agility via Algorithm Profiles
- ADR-027 Bit-Exactness vs Numerical Tolerances Are Both First-Class
- ADR-028 Scope-Level Adequacy and Sufficiency for Federated Audit
- ADR-029 Engineering Lifecycle Stages as Scope Metadata
- ADR-030 Polycentric ASOT Authority Model
- ADR-031 Attestation Status Pass Fail Deferred Deprecated
- ADR-032 Methodology Agnosticism as Foundational Axiom
- ADR-033 Generalized ASOT Principle for All Identified Things