Skip to content

implementation: implement the Evidence Center and retention controls #137

Description

@litroc

Parent and phase

Scope and deliverables

Implement schemas and registries, normalized source records, deterministic generator/index/manifest, status views, supersession, tombstones, public/protected boundary, and retention enforcement.

Exclusions

No raw restricted artifacts in Git, default success for missing/not-applicable controls, production mutation, or work before #38 approval.

Dependencies

#30, #32, #38, #133, and #134.

Acceptance criteria

  • All public records are attributable, versioned, claim-linked, and independently classifiable.
  • Deterministic rebuilds match exact manifests and digests.
  • Leakage sentinels fail closed.
  • Failure, unavailable, withheld, expired, revoked, superseded, and tombstone states remain visible.

Validation

Schema, unit, reproducibility, content, security, retention, link, accessibility, build, and site tests.

Required evidence

Merged PR/commit, required checks, inventory disposition, deterministic manifest/digests, retention fixtures, protected-review attestation, and rollback plan.

Metadata

Metadata

Assignees

No one assigned

    Labels

    evidenceEvidence model, catalog, and retention work.phase:implementImplementation work blocked until the architecture approval gate is satisfied.securitySecurity hardening or public security documentation.

    Type

    No type

    Projects

    Status
    Todo

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions