Similar to the existing code ID tables controlling acceptable CCF nodes, we need governance for controlling acceptable executor nodes. We should consider how we make this extensible (for eg adding per-code ID restrictions on which URIs are served, or restricting which tables are accessible).