Skip to main content Crate lenso_service Copy item path Source support_grpc_v1 system_plane workload_control ActiveDegradedMode ArtifactReference AuthenticatedServiceContext AuthenticatedServicePrincipal AuthenticatedTransportBinding Proof supplied by a transport adapter after it authenticates the connection.
It is deliberately separate from endpoint, hostname, IP, replica, and region metadata. AutonomousServiceContract AutonomousServiceIssue AutonomousServiceStore AutonomousServiceSummary AutonomousServiceWorkload BlockedCoordinationOperation CallPolicyCircuitBreaker CallPolicyConcurrency CallPolicyDeclaration CallPolicyEvidence CallPolicyFallback CallPolicyOverload CallPolicyPermit CallPolicyRuntime CallPolicyValidationIssue CanaryDecision CanaryPlan CanaryPlanInput CanaryState CausationContext CloudEvent CommonContextContract CommonContextIssue CompatibilityFixture CompatibilityReason ConfigActivationPlan ConfigActivationReceipt ConfigApplyRejection ConfigContract ConfigContractDefinition ConfigField ConfigFieldContract ConfigImpact ConfigRevision ConfigState ConsoleUiArtifact ContextClaimProof ContractArtifactCheck ContractArtifactCheckError ContractCompatibilityInput ContractCompatibilityResult ContractConsumerEvidence ContractContextRequirements ContractFixture ContractRetirementEffects ContractRetirementEvidence ContractRetirementInput ContractRetirementPlan ContractRetirementReceipt CoordinationOutageClaims CoordinationOutageEvidence CoordinationOutageInput CoordinationOutageObservation CoordinationResumeApproval CoordinationResumeReceipt A deterministic authorization receipt for retrying the protected operation. CoordinationResumeState CorsIntent DeadlineContext DelegatedActorContext DelegatedActorCredentialRequest DelegatedContextError DeliveryConsoleAdapterDrift DeliveryConsoleArtifacts DeliveryConsoleConfiguration DeliveryConsoleDeployment DeliveryConsoleEdge DeliveryConsoleIssue DeliveryConsolePolicy DeliveryConsoleProjection DeliveryConsoleRelease DeliveryConsoleSecretReference DeliveryConsoleSupplyChainWorkload DeliveryConsoleTimelineEntry DeliveryEffects DeliveryEvidenceReference DeliveryFailureRecoveryEvidence DeliveryFailureRecoveryInput DeliveryIssue DeliveryPolicyInputs DeliveryRecoveryIssue DeliveryReliabilityContract DeliveryStateObservation DependencyReliability DependencyReliabilityObservation DeploymentApplyRejection DeploymentEnvironmentBinding DeploymentObservation DeploymentPlan DeploymentReceipt DeploymentState DeploymentWorkloadPlan DeploymentWorkloadSettings DeterministicCoordinationAuthorityProvider DeterministicGatewayObservationProvider DeterministicOperatorObservationAuthorityProvider DeterministicPromotionApprovalAuthority DeterministicReliabilityObservationProvider DeterministicRollbackSafetyProvider DeterministicSecretProvider DeterministicTrustProvider DirectGrpcAdmission DirectGrpcBindings DirectGrpcClient DirectGrpcEvidence DirectGrpcOperation DirectGrpcResponse DirectGrpcServerPolicy DirectHttpBindings DirectHttpCall DirectHttpClient DirectHttpEvidence DirectHttpOperation DirectHttpRequest DirectHttpResponse DirectHttpServerBinding DisasterRecoveryApproval DisasterRecoveryEvidence DisasterRecoveryIssue DisasterRecoveryObservation DisasterRecoveryPlan DisasterRecoveryPlanInput DocumentationIdentity Ed25519DelegatedContextVerifier Verify-only production adapter backed by operator-configured Ed25519 public
keys. Keys are addressed by (issuer, verification method), allowing
overlapping rotation without accepting an issuer’s key under another name. Ed25519GatewayObservationProvider Verify-only Gateway observation authority backed by an Ed25519 public key. Ed25519OperatorObservationAuthorityProvider Verify-only Operator observation authority backed by Ed25519 public keys.
The protected-operation caller never receives signing material. EdgeContract EdgeRoute EdgeServiceOperation EffectiveReliabilityValues Endpoint EndpointResolutionError EndpointState EnvironmentVerification EnvironmentVerificationInput EventArtifactReference EventContent EventContext EventContractArtifact EventEnvelope EventEnvelopeIssue EvidenceReceiptTrust ExtractionApproval ExtractionApprovalBoundary ExtractionAuthorityCommitError ExtractionAuthorityCommitInputs ExtractionAuthorityCommitReceipt ExtractionAuthorityCommitResult ExtractionAuthorityCommitRevalidation ExtractionBackfillBatchReceipt ExtractionBackfillEffects ExtractionBackfillError ExtractionBackfillEvidence ExtractionBackfillProgress ExtractionBackfillRecord ExtractionBackfillRequest ExtractionBackfillRun ExtractionBackfillScope ExtractionBehaviorObservation ExtractionBoundaryEvidence ExtractionBoundaryReference ExtractionBusinessInvariant ExtractionCandidateHealthEvidence ExtractionCompatibilityEvidence ExtractionConsoleApprovalBoundary ExtractionConsoleArtifacts ExtractionConsoleAuthority ExtractionConsoleBlocker ExtractionConsoleEvidence ExtractionConsoleProjection ExtractionConsoleTimelineEntry ExtractionConsumerCompatibilityEvidence ExtractionContractEvidence ExtractionCursorEvidence ExtractionCutoverEvidence ExtractionCutoverReceipt ExtractionDataAccessEvidence ExtractionDataMapping ExtractionDataTableEvidence ExtractionDataVolumeEvidence ExtractionDrainSnapshot ExtractionEvidenceDigest ExtractionExpandMigration ExtractionExpansionOperation ExtractionExpectedAuthority ExtractionFastRollbackError ExtractionGeneratedBinding ExtractionGeneratedClientPlan ExtractionInputPin ExtractionLinkedRollbackValidation ExtractionMigrationArtifact ExtractionMigrationEvidence ExtractionMigrationMapping ExtractionNormalizedField ExtractionOperationReceipt ExtractionPlan ExtractionPlanContractVersion ExtractionPlanDiff ExtractionPlanDiffEntry ExtractionPlanEffects ExtractionPlanGenerationError ExtractionPlanInputs ExtractionPlanPhase ExtractionPlanRejection ExtractionPolicyEvidence ExtractionPreservedIdentity ExtractionProvisionalCutoverError ExtractionProvisionalCutoverInputs ExtractionProvisionalCutoverRun ExtractionQuiescenceEffects ExtractionQuiescenceEvidence ExtractionQuiescenceIssue ExtractionQuiescenceRun ExtractionQuiescenceStartError ExtractionReadinessEffects ExtractionReadinessEvidence ExtractionReadinessFinding ExtractionReadinessReport ExtractionReadinessSurfaceSummary ExtractionReconciliationEffects ExtractionReconciliationEvidence ExtractionReconciliationInputs ExtractionReconciliationIssue ExtractionReconciliationReadError ExtractionReconciliationResult ExtractionRelationshipCount ExtractionReverseMigrationEvidence ExtractionRun ExtractionRunAdvanceError ExtractionRunEffects ExtractionRunError ExtractionRunEvidence ExtractionRunExpectedState ExtractionRunInputs ExtractionRunPhase ExtractionRunStartError ExtractionScaffold ExtractionScaffoldApplyError ExtractionScaffoldApplyResult ExtractionScaffoldArtifact ExtractionScaffoldEffects ExtractionScaffoldFile ExtractionScaffoldGenerationError ExtractionScaffoldInputs ExtractionScaffoldIssue ExtractionServiceDataEvidence ExtractionServicePlan ExtractionServiceReferencePlan ExtractionSourceSnapshot ExtractionStaleInput ExtractionStorePlan ExtractionTableMapping ExtractionTopologyState ExtractionTransactionEvidence ExtractionVerificationEffects ExtractionVerificationEvidence ExtractionVerificationInputs ExtractionVerificationIssue ExtractionVerificationResult ExtractionWorkloadFailure ExtractionWorkloadPlan ExtractionWorkloadRequest FailureObservation FailureScenarioEvidence FailureScenarioInput GaComponent GaIssue GaSupportEvaluation GaSupportManifest GaSupportManifestInput GatewayConfigurationPlan GatewayEnvironmentBinding GatewayObservation GatewayPlanDiffEntry GeneratedEventContract IdempotencyKeyContext IdentityDecisionEvidence JsonlIdentityDecisionRecorder KubernetesDeploymentConfig KubernetesDeploymentObservation KubernetesRecoveryObservation LastValidEndpointResolver Client-side resolver that keeps the last valid state from any resolver
adapter, so source or System Plane availability is never request-path state. LinkedModuleDelivery LocalProcessEndpointResolver In-process registry for a local development supervisor that starts and
observes Autonomous Service Workloads on the same machine. ManifestFormat ManifestMigrationEffects ManifestMigrationInput ManifestMigrationPlan ManifestMigrationReceipt ManualCallPolicyClock MemoryIdentityDecisionRecorder MigrationCompatibilityInput MigrationRecoveryEvidence ModuleCompatibilityDeclaration ModuleContractIssue ModuleManifest The serializable metadata a module exposes. Runtime configuration is part
of this contract so a Managed Service can enforce a descriptor-bound
System Plane operation without opening a generic key/value seam. ModuleRelease OperatorObservationAttestation OperatorObservationClaims PerformanceBudget PerformanceIssue PerformanceMeasurement PerformanceProfile PerformanceProfileInput PerformanceRun PolicyEvidence PolicyPack PolicyRule PolicyRuleResult PostgresRestoreObservation ProductionEligibilityEvidence ProductionEligibilityInput PromotionApplyRejection PromotionApproval PromotionPlan PromotionPlanInput PromotionProtectedEvidence PromotionReceipt PromotionState ProviderSemantics RateIntent ReferenceService ReferenceSystemTopology RegionContext ReleaseContractVersion ReleaseMigration ReleaseModule ReleaseProvenance ReleaseRetention ReleaseRollbackConstraints ReleaseRolloutGate ReleaseSignature ReleaseTrustEvidence ReliabilityCheck ReliabilityContract ReliabilityEnforcementBoundary ReliabilityHealthResult ReliabilityObservation ReliabilityProfileOverrides ReliabilityReport RequestResponseCanonicalizationError RequestResponseCompatibilityReason RequestResponseCompatibilityResult ResolvedEdgeRoute RestoreIssue RetirementApproval RetryDecision RiskAcceptance RollbackCompatibilityInput RollbackConvergenceEvidence RollbackPlan RollbackReceipt RollbackSafetyEvidence RollbackSafetyInput RollbackState SchemaArtifactReference SecretReference SecretReferenceObservation SecurityContinuity SecurityFinding SecurityReleaseSubject SecurityReviewEvidence SecurityReviewInput SecurityReviewIssue SecurityScanEvidence ServiceArtifactReference ServiceBackup ServiceBackupInput ServiceCompatibility ServiceConfigField ServiceContext ServiceContextAdmission ServiceContextPolicy ServiceContract ServiceContractArtifact ServiceContractIssue ServiceDeploymentCheck ServiceDeploymentHostObservation ServiceDeploymentObservation ServiceDeploymentsFile ServiceEnvField ServiceEnvironment ServiceEnvironmentsFile ServiceHealth ServiceLocalProcess ServiceModuleDelivery ServicePackage ServicePrincipal ServiceProvider ServiceReference Stable logical input for Service discovery. It intentionally contains no
instance, Workload, endpoint, host, or region identity. ServiceRelease ServiceReleaseChangeSet ServiceReleaseDiff ServiceReleaseDiffEntry ServiceReleaseInput ServiceReleaseManifestSummary ServiceReleaseModuleChangeSet ServiceReleasePlan ServiceReleasePolicy ServiceReleasePolicyIssue ServiceRestoreEvidence ServiceRestoreInput ServiceSystem ServiceSystemDependency ServiceSystemGraph ServiceSystemGraphDependency ServiceSystemGraphIssue ServiceSystemGraphModule ServiceSystemGraphService ServiceSystemModule ServiceSystemService ServiceUpgradeAdmission ServiceUpgradeInput ServiceUpgradePlan ServiceUpgradeRuntimeObservation ServiceUpgradeStep ServiceWorkspace ServiceWorkspaceModuleServices ServiceWorkspaceModuleServicesFile ServiceWorkspaceProcess ServiceWorkspaceService SignatureTrustEvidence SpiffeWorkloadIdentityConfig Operator-owned SPIFFE composition for one stable Lenso Service Principal.
The Workload API endpoint supplies both JWT-SVIDs and rotating X.509-SVIDs;
Lenso never receives certificate-authority signing material. SpiffeWorkloadIdentityProvider Production Workload Identity provider backed by a SPIFFE Workload API.
JWT-SVIDs authenticate the application request and are bound to the peer
SPIFFE ID authenticated by the live X.509-SVID mTLS connection. StaticEndpointResolver StoryContext StorySegment StorySegmentContract StorySegmentFeed StorySegmentOperation StorySegmentSource StorySegmentWorkflow SupportCombinationInput SupportEnvelope SupportEnvelopeInput SupportEnvelopeIssue SupportScalePoint SystemCallPolicyClock SystemSandboxDelegatedContextProvider SystemSandboxWorkloadIdentityProvider SystemV2Graph SystemV2GraphNode SystemV2GraphRelationship SystemV2Issue TenantContext TenantCredentialRequest ThreatModelEvidence TraceContext UpgradeEdgeInput UpgradeRollbackConstraint WorkflowCompatibilityInput WorkloadArtifact WorkloadCredential WorkloadCredentialRequest WorkloadIdentityError WorkloadIdentityEvidence WorkloadIdentityRotationEvidence WorkloadIdentityVerification WorkloadTrustEvidence AutonomousServiceIssueCode CallPolicyEvent CallPolicyFailure CallPolicyTerminalOutcome CanaryOutcome CommonContextIssueCode CommonContextRequirement CompatibilityCategory ComponentKind ConfigActivation ConfigFieldActivation ConfigFieldScope ConfigFieldSensitivity ConfigMutability ConfigOperation ConfigRevisionActivation ConfigScope ConfigValueType ContractArtifactCheckErrorCode ContractArtifactKind ContractCompatibilityKind ContractOwner ContractSemanticKind CoordinationOperationSubject The exact typed mutation payload protected by a coordination resume approval. DataPlaneOperation DelegatedContextErrorCode DeliveryConsoleState DeliveryDecision DeliveryFailureCondition DeliveryFailureStage DeliveryIssueCode DeliveryRecoveryDecision DeliveryRecoveryIssueCode DeliveryRecoveryScope DependencyCriticality DeploymentAdapterKind DirectGrpcAdmissionError DirectGrpcCallError DirectHttpCallError DisasterRecoveryDecision DisasterRecoveryIssueCode DisasterRecoveryPhase EdgeAuthentication EdgeOperationVisibility EndpointResolutionErrorCode EventArtifactFormat EventContractGenerationError EventEnvelopeIssueCode ExtractionAuthorityCommitErrorCode ExtractionAuthorityCommitStatus ExtractionAuthorityKind ExtractionBackfillBoundary ExtractionBackfillErrorCode ExtractionBackfillStatus ExtractionBoundaryReferenceKind ExtractionConsoleState ExtractionContractArtifactFormat ExtractionContractDirection ExtractionContractKind ExtractionCopyMode ExtractionDataAccessKind ExtractionDataEvidenceSource ExtractionEvidenceStatus ExtractionExpansionOperationKind ExtractionFastRollbackIssueCode ExtractionGeneratedBindingKind ExtractionInputPinKind ExtractionOperationOutcome ExtractionPlanGenerationIssueCode ExtractionPlanIssueCode ExtractionPlanPhaseKind ExtractionProvisionalCutoverIssueCode ExtractionProvisionalCutoverStatus ExtractionQuiescenceIssueCode ExtractionQuiescenceStatus ExtractionReadinessIssueCode ExtractionReconciliationIssueCode ExtractionReconciliationStatus ExtractionRunAdvanceErrorCode ExtractionRunErrorCode ExtractionRunEvidenceKind ExtractionRunMode ExtractionRunStartErrorCode ExtractionRunStatus ExtractionScaffoldApplyErrorCode ExtractionScaffoldBindingRole ExtractionScaffoldFileKind ExtractionScaffoldGenerationIssueCode ExtractionScaffoldIssueCode ExtractionTrafficRoute ExtractionVerificationIssueCode ExtractionVerificationStatus ExtractionWorkloadFailureCode ExtractionWorkloadRole FailureCondition FailureOutcome FindingDisposition GaIssueCode GrpcIdempotency HttpIdempotency ManifestKind MigrationPhase ModuleDelivery PerformanceBudgetDirection PerformanceDecision PerformanceIssueCode PerformanceMetric PerformanceProfileScope PolicyEnvironmentProfile PolicyEvaluationSurface PolicyRuleSeverity ProtectedCoordinationOperation ReleaseSignerStatus ReleaseWorkloadRole ReliabilityCheckState ReliabilityIssueCode ReliabilityLivenessSemantics ReliabilityProfile ReliabilityReadinessSemantics ReliabilityServiceState RequestResponseCompatibilityCategory RequestResponseContractKind RestoreDecision RestoreIssueCode RollbackOutcome SecretReferenceStatus SecurityReviewDecision SecurityReviewIssueCode SecuritySeverity ServiceArtifactFormat ServiceDeploymentDrift ServiceDeploymentState ServiceDeploymentTarget ServiceReleaseRisk ServiceResponsibilityProfile ServiceTenancyMode SupportDecision SupportEnvelopeDecision SupportEnvelopeIssueCode SupportStatus ThreatSurface UpgradeWorkload WorkloadIdentityErrorCode WorkloadRole AUTONOMOUS_SERVICE_PROTOCOL AUTONOMOUS_SERVICE_V2_FIXTURE_JSON CANARY_DECISION_PROTOCOL CANARY_PLAN_PROTOCOL COMMON_CONTEXT_GLOSSARY_MARKDOWN COMMON_CONTEXT_PROTOCOL COMMON_CONTEXT_V1_FIXTURE_JSON COMMON_CONTEXT_V1_SCHEMA_JSON CONFIG_ACTIVATION_PLAN_PROTOCOL CONFIG_ACTIVATION_RECEIPT_PROTOCOL CONFIG_COMPATIBILITY_BLOCKED_FIXTURE_JSON CONFIG_COMPATIBILITY_BREAKING_FIXTURE_JSON CONFIG_COMPATIBILITY_FIXTURES CONFIG_COMPATIBILITY_NEEDS_ATTENTION_FIXTURE_JSON CONFIG_COMPATIBILITY_SAFE_FIXTURE_JSON CONFIG_CONTRACT_PROTOCOL CONFIG_REVISION_PROTOCOL CONTRACT_COMPATIBILITY_MARKDOWN CONTRACT_RETIREMENT_PLAN_PROTOCOL CONTRACT_RETIREMENT_RECEIPT_PROTOCOL COORDINATION_OUTAGE_OBSERVATION_PROTOCOL COORDINATION_OUTAGE_PROTOCOL COORDINATION_RESUME_APPROVAL_PROTOCOL COORDINATION_RESUME_PROTOCOL DELIVERY_ARTIFACT_BATCH_PROTOCOL DELIVERY_CONSOLE_PROJECTION_PROTOCOL DELIVERY_FAILURE_RECOVERY_PROTOCOL DEPLOYMENT_OBSERVATION_PROTOCOL DEPLOYMENT_PLAN_PROTOCOL DEPLOYMENT_RECEIPT_PROTOCOL DESTINATION_EXPANSION_PHASE_ID DIRECT_GRPC_DESCRIPTOR_V1 DIRECT_GRPC_PROTO_V1_FIXTURE DIRECT_HTTP_OPENAPI_V1_FIXTURE_YAML DISASTER_FAILBACK_APPROVAL_BOUNDARY DISASTER_RECOVERY_APPROVAL_BOUNDARY DISASTER_RECOVERY_EVIDENCE_PROTOCOL DISASTER_RECOVERY_PLAN_PROTOCOL EDGE_CONTRACT_PROTOCOL ENVIRONMENT_VERIFICATION_PROTOCOL EVENT_COMPATIBILITY_BLOCKED_FIXTURE_JSON EVENT_COMPATIBILITY_BREAKING_FIXTURE_JSON EVENT_COMPATIBILITY_FIXTURES EVENT_COMPATIBILITY_NEEDS_ATTENTION_FIXTURE_JSON EVENT_COMPATIBILITY_SAFE_FIXTURE_JSON EVENT_CONTRACT_ARTIFACT_PROTOCOL EVENT_ENVELOPE_PROTOCOL EVENT_ENVELOPE_V1_SCHEMA_JSON EXTRACTION_AUTHORITY_COMMIT_PROTOCOL EXTRACTION_BACKFILL_PROTOCOL EXTRACTION_CANDIDATE_HEALTH_PROTOCOL EXTRACTION_CONSOLE_PROJECTION_PROTOCOL EXTRACTION_OPERATION_RECEIPT_PROTOCOL EXTRACTION_PLAN_GENERATOR_VERSION EXTRACTION_PLAN_PROTOCOL EXTRACTION_PROVISIONAL_CUTOVER_PROTOCOL EXTRACTION_QUIESCENCE_PROTOCOL EXTRACTION_READINESS_ANALYZER_VERSION EXTRACTION_READINESS_REPORT_PROTOCOL EXTRACTION_RECONCILIATION_PROTOCOL EXTRACTION_RUN_PROTOCOL EXTRACTION_SCAFFOLD_GENERATOR_VERSION EXTRACTION_SCAFFOLD_PROTOCOL EXTRACTION_VERIFICATION_PROTOCOL FAILURE_SCENARIO_EVIDENCE_PROTOCOL GATEWAY_OBSERVATION_PROTOCOL GATEWAY_PLAN_PROTOCOL GA_SUPPORT_EVALUATION_PROTOCOL GA_SUPPORT_MANIFEST_PROTOCOL LEGACY_CONTRACT_FIXTURES LEGACY_SERVICE_V1_FIXTURE_JSON LEGACY_SYSTEM_V1_FIXTURE_JSON MANIFEST_MIGRATION_PLAN_PROTOCOL MANIFEST_MIGRATION_RECEIPT_PROTOCOL MIXED_SYSTEM_V2_FIXTURE_JSON MODULE_MANIFEST_PROTOCOL MODULE_MANIFEST_SCHEMA_JSON MODULE_RELEASE_PROTOCOL MODULE_RELEASE_SCHEMA_JSON OPERATOR_OBSERVATION_CLAIMS_PROTOCOL PERFORMANCE_PROFILE_PROTOCOL POLICY_EVIDENCE_PROTOCOL POLICY_PACK_PROTOCOL PRODUCTION_ELIGIBILITY_PROTOCOL PROMOTION_APPROVAL_PROTOCOL PROMOTION_PLAN_PROTOCOL PROMOTION_RECEIPT_PROTOCOL RELEASE_TRUST_EVIDENCE_PROTOCOL RELIABILITY_COMPATIBILITY_BLOCKED_FIXTURE_JSON RELIABILITY_COMPATIBILITY_BREAKING_FIXTURE_JSON RELIABILITY_COMPATIBILITY_FIXTURES RELIABILITY_COMPATIBILITY_NEEDS_ATTENTION_FIXTURE_JSON RELIABILITY_COMPATIBILITY_SAFE_FIXTURE_JSON RELIABILITY_CONTRACT_PROTOCOL RELIABILITY_OBSERVATION_PROTOCOL RELIABILITY_REPORT_PROTOCOL REQUEST_RESPONSE_COMPATIBILITY_BLOCKED_FIXTURE_JSON REQUEST_RESPONSE_COMPATIBILITY_BREAKING_FIXTURE_JSON REQUEST_RESPONSE_COMPATIBILITY_FIXTURES REQUEST_RESPONSE_COMPATIBILITY_MARKDOWN REQUEST_RESPONSE_COMPATIBILITY_NEEDS_ATTENTION_FIXTURE_JSON REQUEST_RESPONSE_COMPATIBILITY_SAFE_FIXTURE_JSON ROLLBACK_CONVERGENCE_PROTOCOL ROLLBACK_PLAN_PROTOCOL ROLLBACK_RECEIPT_PROTOCOL ROLLBACK_SAFETY_PROTOCOL SECURITY_REVIEW_PROTOCOL SERVICE_BACKUP_PROTOCOL SERVICE_CONTRACT_PROTOCOL SERVICE_CONTRACT_SCHEMA_JSON SERVICE_PACKAGE_PROTOCOL SERVICE_PACKAGE_SCHEMA_JSON SERVICE_RELEASE_PLAN_PROTOCOL SERVICE_RELEASE_PROTOCOL SERVICE_RESTORE_EVIDENCE_PROTOCOL SERVICE_SYSTEM_PROTOCOL SERVICE_SYSTEM_SCHEMA_JSON SERVICE_UPGRADE_PLAN_PROTOCOL SERVICE_V2_CONTRACT_SCHEMA_JSON SERVICE_WORKSPACE_PROTOCOL SERVICE_WORKSPACE_SCHEMA_JSON STORY_SEGMENT_FEED_PROTOCOL SUPPORT_ENVELOPE_PROTOCOL SUPPORT_EVENT_SCHEMA_JSON SYSTEM_V2_CONTRACT_SCHEMA_JSON SYSTEM_V2_PROTOCOL CallPolicyClock CoordinationAuthorityProvider DelegatedContextIssuer Console-side authority that creates bounded actor and tenant credentials.
Target Services do not need this interface in order to verify requests. DelegatedContextProvider Full provider retained for development sandboxes and Console-side
composition that intentionally owns both interfaces. DelegatedContextVerifier Target-Service authority that verifies delegated credentials without
receiving signing material or acquiring credential issuance capability. EndpointResolver ExtractionApprovalVerifier ExtractionExpansionWorkload Public behavior used by CLI-owned Postgres orchestration and candidate Workloads. GatewayObservationProvider IdentityDecisionRecorder OperatorObservationAuthorityProvider PromotionApprovalAuthority ReleaseTrustProvider ReliabilityObservationProvider RollbackSafetyProvider SecretProvider Replaceable boundary for observing an opaque reference without reading its value. WorkloadIdentityProvider advance_destination_expansion apply_config_activation apply_contract_retirement apply_deployment apply_extraction_backfill_batch apply_extraction_scaffold apply_manifest_migration apply_postgres_extraction_backfill_batch Atomically persists destination records, the batch receipt, and the next
checkpoint in PostgreSQL. The run row is locked and compared by digest so a
restarted or concurrent orchestrator cannot overwrite newer progress. apply_promotion apply_rollback approve_coordination_resume approve_promotion assemble_ga_support_manifest assemble_ga_support_manifest_with_trust assemble_service_backup assemble_service_release attach_service_release_signature attest_coordination_outage attest_operator_observation attest_production_eligibility_input build_config_contract build_config_revision build_edge_contract build_extraction_operation_receipt canary_decision_integrity_is_valid canary_plan_integrity_is_valid cancel_extraction_quiescence canonical_module_json canonicalize_openapi_request_response Converts a raw OpenAPI JSON value into the canonical operation shape consumed by the
compatibility evaluator. YAML callers should deserialize to serde_json::Value first. canonicalize_protobuf_request_response Converts a binary Protobuf FileDescriptorSet into the canonical operation shape. check_contract_artifact_value Checks a versioned Provider or Autonomous Service artifact and projects its meaning. check_contract_artifact_value_with_artifacts Checks an artifact and resolves its owned contract files against a packaged path set. commit_extraction_authority commit_extraction_authority_postgres Atomically compares and changes the persisted authority, routing, and
System graph revisions. The receipt and committed state share one database
transaction, so a partial topology transfer cannot escape. complete_extraction_quiescence complete_provisional_rollback_validation config_activation_plan_integrity_is_valid config_activation_receipt_integrity_is_valid config_contract_integrity_is_valid config_revision_integrity_is_valid config_revision_matches_contract contract_retirement_plan_integrity_is_valid contract_retirement_plan_schema contract_retirement_receipt_integrity_is_valid coordination_operation_subject_digest coordination_outage_evidence_digest Recomputes the content digest of an outage proof without conferring authority.
Consumers must still call coordination_outage_evidence_integrity_is_valid ,
which deterministically replays the signed evidence semantics. coordination_outage_evidence_integrity_is_valid coordination_outage_observation_integrity_is_valid coordination_resume_approval_integrity_is_valid coordination_resume_receipt_integrity_is_valid copy_postgres_extraction_service_data_batch Read one plan-scoped source batch and copy it into the planned candidate
Postgres table before atomically advancing the durable checkpoint. delegated_actor_signing_bytes Canonical, domain-separated bytes signed by a Console authority for an
Actor Context. The proof itself is excluded from the payload. delivery_artifact_batch_subject Compute the canonical subject signed by the provider that records a delivery batch. delivery_failure_recovery_integrity_is_valid delivery_failure_recovery_schema deployment_observation_content_integrity_is_valid deployment_observation_integrity_is_valid deployment_plan_integrity_is_valid deployment_receipt_integrity_is_valid development_policy_pack diff_service_releases digest_module_json disaster_recovery_evidence_integrity_is_valid disaster_recovery_evidence_schema dry_run_destination_expansion dry_run_extraction_plan dry_run_extraction_scaffold edge_authority_subject edge_contract_authority_is_valid edge_contract_integrity_is_valid ensure_extraction_plan_fresh environment_verification_authority_is_valid environment_verification_digest environment_verification_integrity_is_valid evaluate_canary evaluate_config_compatibility evaluate_delivery_failure_recovery evaluate_delivery_policy evaluate_disaster_recovery evaluate_event_compatibility evaluate_extraction_readiness evaluate_failure_scenario evaluate_ga_support evaluate_generated_event_contract_compatibility evaluate_performance_profile evaluate_production_eligibility evaluate_reliability_compatibility evaluate_request_response_compatibility Compares canonical OpenAPI or Protobuf request/response operation shapes. evaluate_request_response_compatibility_in_system evaluate_security_review evaluate_service_release_policy evaluate_service_restore evaluate_service_upgrade_admission evaluate_support_envelope event_envelope_from_cloudevent extraction_backfill_integrity_is_valid extraction_candidate_health_integrity_is_valid extraction_input_digest extraction_operation_receipt_integrity_is_valid extraction_plan_integrity_is_valid extraction_plan_json extraction_plan_schema extraction_provisional_cutover_integrity_is_valid extraction_quiescence_integrity_is_valid extraction_readiness_report_json extraction_readiness_report_schema extraction_reconciliation_integrity_is_valid extraction_run_integrity_is_valid extraction_run_json extraction_run_schema extraction_scaffold_integrity_is_valid extraction_scaffold_json extraction_scaffold_schema extraction_verification_integrity_is_valid fail_provisional_cutover failure_scenario_evidence_schema ga_support_manifest_integrity_valid ga_support_manifest_schema gateway_observation_content_integrity_is_valid gateway_observation_integrity_is_valid gateway_plan_authority_is_valid gateway_plan_integrity_is_valid generate_direct_grpc_bindings generate_direct_http_bindings generate_event_contract generate_extraction_plan generate_extraction_scaffold health_router initialize_extraction_topology_state load_delivery_console_projection Load the newest persisted delivery evidence and evaluate its read-only projection. load_extraction_artifact Load one persisted workflow artifact by its stable identifier. load_extraction_console_projection Load persisted artifacts and evaluate the backend-owned projection. load_postgres_extraction_backfill Reload the last transactionally committed run after process restart or a
lost client response. manifest_migration_plan_schema observe_deployment observe_deployment_adapter observe_gateway observe_rollback_convergence observe_secret_reference operator_observation_attestation_is_valid operator_observation_claims_digest operator_observation_claims_from_deployment operator_observation_matches_deployment parse_protobuf_call_policies performance_profile_integrity_is_valid performance_profile_schema plan_canary plan_config_activation plan_contract_retirement plan_deployment plan_disaster_recovery plan_gateway_configuration plan_manifest_migration plan_promotion plan_rollback plan_service_upgrade policy_evidence_integrity_is_valid policy_pack_integrity_is_valid production_eligibility_evidence_integrity_is_valid production_policy_evidence_is_valid production_policy_pack project_delivery_console project_extraction_console promotion_approval_integrity_is_valid promotion_plan_integrity_is_valid promotion_receipt_integrity_is_valid prove_system_plane_outage reconcile_extraction_data reconcile_postgres_extraction_service_data Reads fresh plan-scoped source and candidate snapshots from PostgreSQL and
reconciles those durable rows instead of trusting the Backfill receipt as
the candidate state. record_autonomous_mutation record_delivery_artifact Persist one immutable production-delivery artifact for the read-only projection. record_delivery_artifacts Validate and atomically persist a signed production-delivery artifact batch. record_destination_expansion_receipt record_extraction_artifact Persist one authoritative workflow artifact for read-only operator projection. record_extraction_drain release_trust_evidence_integrity_is_valid reliability_contract_digest Returns the canonical digest that a signed Service Release must bind for this
exact Reliability Contract. reliability_observation_integrity_is_valid render_extraction_plan render_extraction_readiness_report render_extraction_run render_extraction_scaffold_patch render_ga_support_manifest request_fast_extraction_rollback resume_protected_operation rollback_convergence_integrity_is_valid rollback_plan_integrity_is_valid rollback_receipt_integrity_is_valid rollback_safety_evidence_integrity_is_valid seal_reliability_observation seal_rollback_safety_evidence secret_reference_metadata_is_safe Return whether a Secret Reference contains only the bounded, non-value metadata
accepted by the production delivery contract. security_review_evidence_schema security_review_integrity_is_valid service_base_url_from_manifest_url service_base_url_from_ready_url service_release_integrity_is_valid service_release_next_action service_release_restart_required service_release_schema service_restore_evidence_schema service_restore_integrity_is_valid service_system_graph service_upgrade_plan_schema service_workspace_base_url service_workspace_to_module_services start_destination_expansion start_extraction_backfill start_extraction_quiescence start_provisional_cutover support_envelope_integrity_is_valid support_envelope_schema system_v2_graph Validates and canonicalizes a declarative mixed-topology System v2 artifact. tenant_context_signing_bytes Canonical, domain-separated bytes signed by a Console authority for a
Tenant Context. Actor and tenant signatures cannot be exchanged. validate_autonomous_service_artifact_references Resolves every owned contract artifact against paths packaged by a caller such as the CLI. validate_autonomous_service_contract validate_autonomous_service_contract_value validate_common_context_contract validate_common_context_contract_for_audience validate_common_context_contract_value validate_event_envelope validate_event_envelope_value validate_expand_first_postgres_sql validate_extraction_scaffold validate_module_manifest_value validate_module_release_value validate_service_contract_value validate_service_package_value validate_service_system_value validate_service_workspace_value verify_extraction_behavior verify_provisional_cutover verify_service_release_trust verify_staging_environment