pub struct RestoreSafetyRequirementRecord { /* private fields */ }Expand description
Strict v1 immutable restore intent, original source and safety declaration.
Source plan and artifacts must be qualified and kept in stable custody by the integration. This record authenticates no backup, creates no fence, and grants no load/start, paid call, artifact completeness or reference-release authority.
Implementations§
Source§impl RestoreSafetyRequirementRecord
impl RestoreSafetyRequirementRecord
Sourcepub fn new(
plan: &OperationPlanRecord,
source: &OperationPlanRecord,
input: RestoreSafetyRequirementRequest,
) -> Result<Self, RestoreSafetyRequirementError>
pub fn new( plan: &OperationPlanRecord, source: &OperationPlanRecord, input: RestoreSafetyRequirementRequest, ) -> Result<Self, RestoreSafetyRequirementError>
Bind original restore and source plans, same network/release/IDs and explicit safety lane.
A restore selection may be a subset of the source selection. Application safety for that exact subset remains qualified by the provider. Source caller equality is not required; current caller permissions are a separate boundary.
§Errors
Rejects source network/release/selection mismatch or an inappropriate fence.
Sourcepub fn plan_intent(&self) -> &str
pub fn plan_intent(&self) -> &str
Read full original restore intent, including requests and attempt allowances.
Sourcepub fn source_plan_intent(&self) -> &str
pub fn source_plan_intent(&self) -> &str
Read full original source plan identity; not source completeness or authenticity.
Sourcepub const fn source_artifacts(&self) -> &ArtifactChecksumRecord
pub const fn source_artifacts(&self) -> &ArtifactChecksumRecord
Read exact original source artifact binding supplied by its qualified owner.
Sourcepub const fn safety(&self) -> RestoreSafetyLaneRecord
pub const fn safety(&self) -> RestoreSafetyLaneRecord
Read the original explicit safety lane.
Sourcepub const fn expected_fence(&self) -> Option<&RestoreFenceBindingRecord>
pub const fn expected_fence(&self) -> Option<&RestoreFenceBindingRecord>
Read original retained fence/revisions; creates no current custody or release capability.
Sourcepub fn validate_plans(
&self,
plan: &OperationPlanRecord,
source: &OperationPlanRecord,
) -> Result<(), RestoreSafetyRequirementError>
pub fn validate_plans( &self, plan: &OperationPlanRecord, source: &OperationPlanRecord, ) -> Result<(), RestoreSafetyRequirementError>
Validate both exact original plans and same-network/release/ID source admission.
§Errors
Rejects changed original intent/source or source context/selection mismatch.
Sourcepub fn digest(&self) -> ArtifactChecksumRecord
pub fn digest(&self) -> ArtifactChecksumRecord
Hash NUL-terminated v1 ASCII domain, three 64-byte ASCII digests and safety tag.
Tags: no irreversible effects=0, application fenced=1. The fenced lane appends 64 ASCII bytes each of fence identity, membership revision and external-obligations revision. Version is bound through the domain.