Skip to main content

Crate lenso_service

Crate lenso_service 

Source

Modules§

support_grpc_v1
system_plane
workload_control

Structs§

ActiveDegradedMode
ArtifactReference
AuthenticatedServiceContext
AuthenticatedServicePrincipal
AuthenticatedTransportBinding
Proof supplied by a transport adapter after it authenticates the connection. It is deliberately separate from endpoint, hostname, IP, replica, and region metadata.
AutonomousServiceContract
AutonomousServiceIssue
AutonomousServiceStore
AutonomousServiceSummary
AutonomousServiceWorkload
BlockedCoordinationOperation
CallPolicyCircuitBreaker
CallPolicyConcurrency
CallPolicyDeclaration
CallPolicyEvidence
CallPolicyFallback
CallPolicyOverload
CallPolicyPermit
CallPolicyRuntime
CallPolicyValidationIssue
CanaryDecision
CanaryPlan
CanaryPlanInput
CanaryState
CausationContext
CloudEvent
CommonContextContract
CommonContextIssue
CompatibilityFixture
CompatibilityReason
ConfigActivationPlan
ConfigActivationReceipt
ConfigApplyRejection
ConfigContract
ConfigContractDefinition
ConfigField
ConfigFieldContract
ConfigImpact
ConfigRevision
ConfigState
ConsoleUiArtifact
ContextClaimProof
ContractArtifactCheck
ContractArtifactCheckError
ContractCompatibilityInput
ContractCompatibilityResult
ContractConsumerEvidence
ContractContextRequirements
ContractFixture
ContractRetirementEffects
ContractRetirementEvidence
ContractRetirementInput
ContractRetirementPlan
ContractRetirementReceipt
CoordinationOutageClaims
CoordinationOutageEvidence
CoordinationOutageInput
CoordinationOutageObservation
CoordinationResumeApproval
CoordinationResumeReceipt
A deterministic authorization receipt for retrying the protected operation.
CoordinationResumeState
CorsIntent
DeadlineContext
DelegatedActorContext
DelegatedActorCredentialRequest
DelegatedContextError
DeliveryConsoleAdapterDrift
DeliveryConsoleArtifacts
DeliveryConsoleConfiguration
DeliveryConsoleDeployment
DeliveryConsoleEdge
DeliveryConsoleIssue
DeliveryConsolePolicy
DeliveryConsoleProjection
DeliveryConsoleRelease
DeliveryConsoleSecretReference
DeliveryConsoleSupplyChainWorkload
DeliveryConsoleTimelineEntry
DeliveryEffects
DeliveryEvidenceReference
DeliveryFailureRecoveryEvidence
DeliveryFailureRecoveryInput
DeliveryIssue
DeliveryPolicyInputs
DeliveryRecoveryIssue
DeliveryReliabilityContract
DeliveryStateObservation
DependencyReliability
DependencyReliabilityObservation
DeploymentApplyRejection
DeploymentEnvironmentBinding
DeploymentObservation
DeploymentPlan
DeploymentReceipt
DeploymentState
DeploymentWorkloadPlan
DeploymentWorkloadSettings
DeterministicCoordinationAuthorityProvider
DeterministicGatewayObservationProvider
DeterministicOperatorObservationAuthorityProvider
DeterministicPromotionApprovalAuthority
DeterministicReliabilityObservationProvider
DeterministicRollbackSafetyProvider
DeterministicSecretProvider
DeterministicTrustProvider
DirectGrpcAdmission
DirectGrpcBindings
DirectGrpcClient
DirectGrpcEvidence
DirectGrpcOperation
DirectGrpcResponse
DirectGrpcServerPolicy
DirectHttpBindings
DirectHttpCall
DirectHttpClient
DirectHttpEvidence
DirectHttpOperation
DirectHttpRequest
DirectHttpResponse
DirectHttpServerBinding
DisasterRecoveryApproval
DisasterRecoveryEvidence
DisasterRecoveryIssue
DisasterRecoveryObservation
DisasterRecoveryPlan
DisasterRecoveryPlanInput
DocumentationIdentity
Ed25519DelegatedContextVerifier
Verify-only production adapter backed by operator-configured Ed25519 public keys. Keys are addressed by (issuer, verification method), allowing overlapping rotation without accepting an issuer’s key under another name.
Ed25519GatewayObservationProvider
Verify-only Gateway observation authority backed by an Ed25519 public key.
Ed25519OperatorObservationAuthorityProvider
Verify-only Operator observation authority backed by Ed25519 public keys. The protected-operation caller never receives signing material.
EdgeContract
EdgeRoute
EdgeServiceOperation
EffectiveReliabilityValues
Endpoint
EndpointResolutionError
EndpointState
EnvironmentVerification
EnvironmentVerificationInput
EventArtifactReference
EventContent
EventContext
EventContractArtifact
EventEnvelope
EventEnvelopeIssue
EvidenceReceiptTrust
ExtractionApproval
ExtractionApprovalBoundary
ExtractionAuthorityCommitError
ExtractionAuthorityCommitInputs
ExtractionAuthorityCommitReceipt
ExtractionAuthorityCommitResult
ExtractionAuthorityCommitRevalidation
ExtractionBackfillBatchReceipt
ExtractionBackfillEffects
ExtractionBackfillError
ExtractionBackfillEvidence
ExtractionBackfillProgress
ExtractionBackfillRecord
ExtractionBackfillRequest
ExtractionBackfillRun
ExtractionBackfillScope
ExtractionBehaviorObservation
ExtractionBoundaryEvidence
ExtractionBoundaryReference
ExtractionBusinessInvariant
ExtractionCandidateHealthEvidence
ExtractionCompatibilityEvidence
ExtractionConsoleApprovalBoundary
ExtractionConsoleArtifacts
ExtractionConsoleAuthority
ExtractionConsoleBlocker
ExtractionConsoleEvidence
ExtractionConsoleProjection
ExtractionConsoleTimelineEntry
ExtractionConsumerCompatibilityEvidence
ExtractionContractEvidence
ExtractionCursorEvidence
ExtractionCutoverEvidence
ExtractionCutoverReceipt
ExtractionDataAccessEvidence
ExtractionDataMapping
ExtractionDataTableEvidence
ExtractionDataVolumeEvidence
ExtractionDrainSnapshot
ExtractionEvidenceDigest
ExtractionExpandMigration
ExtractionExpansionOperation
ExtractionExpectedAuthority
ExtractionFastRollbackError
ExtractionGeneratedBinding
ExtractionGeneratedClientPlan
ExtractionInputPin
ExtractionLinkedRollbackValidation
ExtractionMigrationArtifact
ExtractionMigrationEvidence
ExtractionMigrationMapping
ExtractionNormalizedField
ExtractionOperationReceipt
ExtractionPlan
ExtractionPlanContractVersion
ExtractionPlanDiff
ExtractionPlanDiffEntry
ExtractionPlanEffects
ExtractionPlanGenerationError
ExtractionPlanInputs
ExtractionPlanPhase
ExtractionPlanRejection
ExtractionPolicyEvidence
ExtractionPreservedIdentity
ExtractionProvisionalCutoverError
ExtractionProvisionalCutoverInputs
ExtractionProvisionalCutoverRun
ExtractionQuiescenceEffects
ExtractionQuiescenceEvidence
ExtractionQuiescenceIssue
ExtractionQuiescenceRun
ExtractionQuiescenceStartError
ExtractionReadinessEffects
ExtractionReadinessEvidence
ExtractionReadinessFinding
ExtractionReadinessReport
ExtractionReadinessSurfaceSummary
ExtractionReconciliationEffects
ExtractionReconciliationEvidence
ExtractionReconciliationInputs
ExtractionReconciliationIssue
ExtractionReconciliationReadError
ExtractionReconciliationResult
ExtractionRelationshipCount
ExtractionReverseMigrationEvidence
ExtractionRun
ExtractionRunAdvanceError
ExtractionRunEffects
ExtractionRunError
ExtractionRunEvidence
ExtractionRunExpectedState
ExtractionRunInputs
ExtractionRunPhase
ExtractionRunStartError
ExtractionScaffold
ExtractionScaffoldApplyError
ExtractionScaffoldApplyResult
ExtractionScaffoldArtifact
ExtractionScaffoldEffects
ExtractionScaffoldFile
ExtractionScaffoldGenerationError
ExtractionScaffoldInputs
ExtractionScaffoldIssue
ExtractionServiceDataEvidence
ExtractionServicePlan
ExtractionServiceReferencePlan
ExtractionSourceSnapshot
ExtractionStaleInput
ExtractionStorePlan
ExtractionTableMapping
ExtractionTopologyState
ExtractionTransactionEvidence
ExtractionVerificationEffects
ExtractionVerificationEvidence
ExtractionVerificationInputs
ExtractionVerificationIssue
ExtractionVerificationResult
ExtractionWorkloadFailure
ExtractionWorkloadPlan
ExtractionWorkloadRequest
FailureObservation
FailureScenarioEvidence
FailureScenarioInput
GaComponent
GaIssue
GaSupportEvaluation
GaSupportManifest
GaSupportManifestInput
GatewayConfigurationPlan
GatewayEnvironmentBinding
GatewayObservation
GatewayPlanDiffEntry
GeneratedEventContract
IdempotencyKeyContext
IdentityDecisionEvidence
JsonlIdentityDecisionRecorder
KubernetesDeploymentConfig
KubernetesDeploymentObservation
KubernetesRecoveryObservation
LastValidEndpointResolver
Client-side resolver that keeps the last valid state from any resolver adapter, so source or System Plane availability is never request-path state.
LinkedModuleDelivery
LocalProcessEndpointResolver
In-process registry for a local development supervisor that starts and observes Autonomous Service Workloads on the same machine.
ManifestFormat
ManifestMigrationEffects
ManifestMigrationInput
ManifestMigrationPlan
ManifestMigrationReceipt
ManualCallPolicyClock
MemoryIdentityDecisionRecorder
MigrationCompatibilityInput
MigrationRecoveryEvidence
ModuleCompatibilityDeclaration
ModuleContractIssue
ModuleManifest
The serializable metadata a module exposes. Runtime configuration is part of this contract so a Managed Service can enforce a descriptor-bound System Plane operation without opening a generic key/value seam.
ModuleRelease
OperatorObservationAttestation
OperatorObservationClaims
PerformanceBudget
PerformanceIssue
PerformanceMeasurement
PerformanceProfile
PerformanceProfileInput
PerformanceRun
PolicyEvidence
PolicyPack
PolicyRule
PolicyRuleResult
PostgresRestoreObservation
ProductionEligibilityEvidence
ProductionEligibilityInput
PromotionApplyRejection
PromotionApproval
PromotionPlan
PromotionPlanInput
PromotionProtectedEvidence
PromotionReceipt
PromotionState
ProviderSemantics
RateIntent
ReferenceService
ReferenceSystemTopology
RegionContext
ReleaseContractVersion
ReleaseMigration
ReleaseModule
ReleaseProvenance
ReleaseRetention
ReleaseRollbackConstraints
ReleaseRolloutGate
ReleaseSignature
ReleaseTrustEvidence
ReliabilityCheck
ReliabilityContract
ReliabilityEnforcementBoundary
ReliabilityHealthResult
ReliabilityObservation
ReliabilityProfileOverrides
ReliabilityReport
RequestResponseCanonicalizationError
RequestResponseCompatibilityReason
RequestResponseCompatibilityResult
ResolvedEdgeRoute
RestoreIssue
RetirementApproval
RetryDecision
RiskAcceptance
RollbackCompatibilityInput
RollbackConvergenceEvidence
RollbackPlan
RollbackReceipt
RollbackSafetyEvidence
RollbackSafetyInput
RollbackState
SchemaArtifactReference
SecretReference
SecretReferenceObservation
SecurityContinuity
SecurityFinding
SecurityReleaseSubject
SecurityReviewEvidence
SecurityReviewInput
SecurityReviewIssue
SecurityScanEvidence
ServiceArtifactReference
ServiceBackup
ServiceBackupInput
ServiceCompatibility
ServiceConfigField
ServiceContext
ServiceContextAdmission
ServiceContextPolicy
ServiceContract
ServiceContractArtifact
ServiceContractIssue
ServiceDeploymentCheck
ServiceDeploymentHostObservation
ServiceDeploymentObservation
ServiceDeploymentsFile
ServiceEnvField
ServiceEnvironment
ServiceEnvironmentsFile
ServiceHealth
ServiceLocalProcess
ServiceModuleDelivery
ServicePackage
ServicePrincipal
ServiceProvider
ServiceReference
Stable logical input for Service discovery. It intentionally contains no instance, Workload, endpoint, host, or region identity.
ServiceRelease
ServiceReleaseChangeSet
ServiceReleaseDiff
ServiceReleaseDiffEntry
ServiceReleaseInput
ServiceReleaseManifestSummary
ServiceReleaseModuleChangeSet
ServiceReleasePlan
ServiceReleasePolicy
ServiceReleasePolicyIssue
ServiceRestoreEvidence
ServiceRestoreInput
ServiceSystem
ServiceSystemDependency
ServiceSystemGraph
ServiceSystemGraphDependency
ServiceSystemGraphIssue
ServiceSystemGraphModule
ServiceSystemGraphService
ServiceSystemModule
ServiceSystemService
ServiceUpgradeAdmission
ServiceUpgradeInput
ServiceUpgradePlan
ServiceUpgradeRuntimeObservation
ServiceUpgradeStep
ServiceWorkspace
ServiceWorkspaceModuleServices
ServiceWorkspaceModuleServicesFile
ServiceWorkspaceProcess
ServiceWorkspaceService
SignatureTrustEvidence
SpiffeWorkloadIdentityConfig
Operator-owned SPIFFE composition for one stable Lenso Service Principal. The Workload API endpoint supplies both JWT-SVIDs and rotating X.509-SVIDs; Lenso never receives certificate-authority signing material.
SpiffeWorkloadIdentityProvider
Production Workload Identity provider backed by a SPIFFE Workload API. JWT-SVIDs authenticate the application request and are bound to the peer SPIFFE ID authenticated by the live X.509-SVID mTLS connection.
StaticEndpointResolver
StoryContext
StorySegment
StorySegmentContract
StorySegmentFeed
StorySegmentOperation
StorySegmentSource
StorySegmentWorkflow
SupportCombinationInput
SupportEnvelope
SupportEnvelopeInput
SupportEnvelopeIssue
SupportScalePoint
SystemCallPolicyClock
SystemSandboxDelegatedContextProvider
SystemSandboxWorkloadIdentityProvider
SystemV2Graph
SystemV2GraphNode
SystemV2GraphRelationship
SystemV2Issue
TenantContext
TenantCredentialRequest
ThreatModelEvidence
TraceContext
UpgradeEdgeInput
UpgradeRollbackConstraint
WorkflowCompatibilityInput
WorkloadArtifact
WorkloadCredential
WorkloadCredentialRequest
WorkloadIdentityError
WorkloadIdentityEvidence
WorkloadIdentityRotationEvidence
WorkloadIdentityVerification
WorkloadTrustEvidence

Enums§

AutonomousServiceIssueCode
CallPolicyEvent
CallPolicyFailure
CallPolicyTerminalOutcome
CanaryOutcome
CommonContextIssueCode
CommonContextRequirement
CompatibilityCategory
ComponentKind
ConfigActivation
ConfigFieldActivation
ConfigFieldScope
ConfigFieldSensitivity
ConfigMutability
ConfigOperation
ConfigRevisionActivation
ConfigScope
ConfigValueType
ContractArtifactCheckErrorCode
ContractArtifactKind
ContractCompatibilityKind
ContractOwner
ContractSemanticKind
CoordinationOperationSubject
The exact typed mutation payload protected by a coordination resume approval.
DataPlaneOperation
DelegatedContextErrorCode
DeliveryConsoleState
DeliveryDecision
DeliveryFailureCondition
DeliveryFailureStage
DeliveryIssueCode
DeliveryRecoveryDecision
DeliveryRecoveryIssueCode
DeliveryRecoveryScope
DependencyCriticality
DeploymentAdapterKind
DirectGrpcAdmissionError
DirectGrpcCallError
DirectHttpCallError
DisasterRecoveryDecision
DisasterRecoveryIssueCode
DisasterRecoveryPhase
EdgeAuthentication
EdgeOperationVisibility
EndpointResolutionErrorCode
EventArtifactFormat
EventContractGenerationError
EventEnvelopeIssueCode
ExtractionAuthorityCommitErrorCode
ExtractionAuthorityCommitStatus
ExtractionAuthorityKind
ExtractionBackfillBoundary
ExtractionBackfillErrorCode
ExtractionBackfillStatus
ExtractionBoundaryReferenceKind
ExtractionConsoleState
ExtractionContractArtifactFormat
ExtractionContractDirection
ExtractionContractKind
ExtractionCopyMode
ExtractionDataAccessKind
ExtractionDataEvidenceSource
ExtractionEvidenceStatus
ExtractionExpansionOperationKind
ExtractionFastRollbackIssueCode
ExtractionGeneratedBindingKind
ExtractionInputPinKind
ExtractionOperationOutcome
ExtractionPlanGenerationIssueCode
ExtractionPlanIssueCode
ExtractionPlanPhaseKind
ExtractionProvisionalCutoverIssueCode
ExtractionProvisionalCutoverStatus
ExtractionQuiescenceIssueCode
ExtractionQuiescenceStatus
ExtractionReadinessIssueCode
ExtractionReconciliationIssueCode
ExtractionReconciliationStatus
ExtractionRunAdvanceErrorCode
ExtractionRunErrorCode
ExtractionRunEvidenceKind
ExtractionRunMode
ExtractionRunStartErrorCode
ExtractionRunStatus
ExtractionScaffoldApplyErrorCode
ExtractionScaffoldBindingRole
ExtractionScaffoldFileKind
ExtractionScaffoldGenerationIssueCode
ExtractionScaffoldIssueCode
ExtractionTrafficRoute
ExtractionVerificationIssueCode
ExtractionVerificationStatus
ExtractionWorkloadFailureCode
ExtractionWorkloadRole
FailureCondition
FailureOutcome
FindingDisposition
GaIssueCode
GrpcIdempotency
HttpIdempotency
ManifestKind
MigrationPhase
ModuleDelivery
PerformanceBudgetDirection
PerformanceDecision
PerformanceIssueCode
PerformanceMetric
PerformanceProfileScope
PolicyEnvironmentProfile
PolicyEvaluationSurface
PolicyRuleSeverity
ProtectedCoordinationOperation
ReleaseSignerStatus
ReleaseWorkloadRole
ReliabilityCheckState
ReliabilityIssueCode
ReliabilityLivenessSemantics
ReliabilityProfile
ReliabilityReadinessSemantics
ReliabilityServiceState
RequestResponseCompatibilityCategory
RequestResponseContractKind
RestoreDecision
RestoreIssueCode
RollbackOutcome
SecretReferenceStatus
SecurityReviewDecision
SecurityReviewIssueCode
SecuritySeverity
ServiceArtifactFormat
ServiceDeploymentDrift
ServiceDeploymentState
ServiceDeploymentTarget
ServiceReleaseRisk
ServiceResponsibilityProfile
ServiceTenancyMode
SupportDecision
SupportEnvelopeDecision
SupportEnvelopeIssueCode
SupportStatus
ThreatSurface
UpgradeWorkload
WorkloadIdentityErrorCode
WorkloadRole

Constants§

AUTONOMOUS_SERVICE_PROTOCOL
AUTONOMOUS_SERVICE_V2_FIXTURE_JSON
CANARY_DECISION_PROTOCOL
CANARY_PLAN_PROTOCOL
COMMON_CONTEXT_GLOSSARY_MARKDOWN
COMMON_CONTEXT_PROTOCOL
COMMON_CONTEXT_V1_FIXTURE_JSON
COMMON_CONTEXT_V1_SCHEMA_JSON
CONFIG_ACTIVATION_PLAN_PROTOCOL
CONFIG_ACTIVATION_RECEIPT_PROTOCOL
CONFIG_COMPATIBILITY_BLOCKED_FIXTURE_JSON
CONFIG_COMPATIBILITY_BREAKING_FIXTURE_JSON
CONFIG_COMPATIBILITY_FIXTURES
CONFIG_COMPATIBILITY_NEEDS_ATTENTION_FIXTURE_JSON
CONFIG_COMPATIBILITY_SAFE_FIXTURE_JSON
CONFIG_CONTRACT_PROTOCOL
CONFIG_REVISION_PROTOCOL
CONTRACT_COMPATIBILITY_MARKDOWN
CONTRACT_RETIREMENT_PLAN_PROTOCOL
CONTRACT_RETIREMENT_RECEIPT_PROTOCOL
COORDINATION_OUTAGE_OBSERVATION_PROTOCOL
COORDINATION_OUTAGE_PROTOCOL
COORDINATION_RESUME_APPROVAL_PROTOCOL
COORDINATION_RESUME_PROTOCOL
DELIVERY_ARTIFACT_BATCH_PROTOCOL
DELIVERY_CONSOLE_PROJECTION_PROTOCOL
DELIVERY_FAILURE_RECOVERY_PROTOCOL
DEPLOYMENT_OBSERVATION_PROTOCOL
DEPLOYMENT_PLAN_PROTOCOL
DEPLOYMENT_RECEIPT_PROTOCOL
DESTINATION_EXPANSION_PHASE_ID
DIRECT_GRPC_DESCRIPTOR_V1
DIRECT_GRPC_PROTO_V1_FIXTURE
DIRECT_HTTP_OPENAPI_V1_FIXTURE_YAML
DISASTER_FAILBACK_APPROVAL_BOUNDARY
DISASTER_RECOVERY_APPROVAL_BOUNDARY
DISASTER_RECOVERY_EVIDENCE_PROTOCOL
DISASTER_RECOVERY_PLAN_PROTOCOL
EDGE_CONTRACT_PROTOCOL
ENVIRONMENT_VERIFICATION_PROTOCOL
EVENT_COMPATIBILITY_BLOCKED_FIXTURE_JSON
EVENT_COMPATIBILITY_BREAKING_FIXTURE_JSON
EVENT_COMPATIBILITY_FIXTURES
EVENT_COMPATIBILITY_NEEDS_ATTENTION_FIXTURE_JSON
EVENT_COMPATIBILITY_SAFE_FIXTURE_JSON
EVENT_CONTRACT_ARTIFACT_PROTOCOL
EVENT_ENVELOPE_PROTOCOL
EVENT_ENVELOPE_V1_SCHEMA_JSON
EXTRACTION_AUTHORITY_COMMIT_PROTOCOL
EXTRACTION_BACKFILL_PROTOCOL
EXTRACTION_CANDIDATE_HEALTH_PROTOCOL
EXTRACTION_CONSOLE_PROJECTION_PROTOCOL
EXTRACTION_OPERATION_RECEIPT_PROTOCOL
EXTRACTION_PLAN_GENERATOR_VERSION
EXTRACTION_PLAN_PROTOCOL
EXTRACTION_PROVISIONAL_CUTOVER_PROTOCOL
EXTRACTION_QUIESCENCE_PROTOCOL
EXTRACTION_READINESS_ANALYZER_VERSION
EXTRACTION_READINESS_REPORT_PROTOCOL
EXTRACTION_RECONCILIATION_PROTOCOL
EXTRACTION_RUN_PROTOCOL
EXTRACTION_SCAFFOLD_GENERATOR_VERSION
EXTRACTION_SCAFFOLD_PROTOCOL
EXTRACTION_VERIFICATION_PROTOCOL
FAILURE_SCENARIO_EVIDENCE_PROTOCOL
GATEWAY_OBSERVATION_PROTOCOL
GATEWAY_PLAN_PROTOCOL
GA_SUPPORT_EVALUATION_PROTOCOL
GA_SUPPORT_MANIFEST_PROTOCOL
LEGACY_CONTRACT_FIXTURES
LEGACY_SERVICE_V1_FIXTURE_JSON
LEGACY_SYSTEM_V1_FIXTURE_JSON
MANIFEST_MIGRATION_PLAN_PROTOCOL
MANIFEST_MIGRATION_RECEIPT_PROTOCOL
MIXED_SYSTEM_V2_FIXTURE_JSON
MODULE_MANIFEST_PROTOCOL
MODULE_MANIFEST_SCHEMA_JSON
MODULE_RELEASE_PROTOCOL
MODULE_RELEASE_SCHEMA_JSON
OPERATOR_OBSERVATION_CLAIMS_PROTOCOL
PERFORMANCE_PROFILE_PROTOCOL
POLICY_EVIDENCE_PROTOCOL
POLICY_PACK_PROTOCOL
PRODUCTION_ELIGIBILITY_PROTOCOL
PROMOTION_APPROVAL_PROTOCOL
PROMOTION_PLAN_PROTOCOL
PROMOTION_RECEIPT_PROTOCOL
RELEASE_TRUST_EVIDENCE_PROTOCOL
RELIABILITY_COMPATIBILITY_BLOCKED_FIXTURE_JSON
RELIABILITY_COMPATIBILITY_BREAKING_FIXTURE_JSON
RELIABILITY_COMPATIBILITY_FIXTURES
RELIABILITY_COMPATIBILITY_NEEDS_ATTENTION_FIXTURE_JSON
RELIABILITY_COMPATIBILITY_SAFE_FIXTURE_JSON
RELIABILITY_CONTRACT_PROTOCOL
RELIABILITY_OBSERVATION_PROTOCOL
RELIABILITY_REPORT_PROTOCOL
REQUEST_RESPONSE_COMPATIBILITY_BLOCKED_FIXTURE_JSON
REQUEST_RESPONSE_COMPATIBILITY_BREAKING_FIXTURE_JSON
REQUEST_RESPONSE_COMPATIBILITY_FIXTURES
REQUEST_RESPONSE_COMPATIBILITY_MARKDOWN
REQUEST_RESPONSE_COMPATIBILITY_NEEDS_ATTENTION_FIXTURE_JSON
REQUEST_RESPONSE_COMPATIBILITY_SAFE_FIXTURE_JSON
ROLLBACK_CONVERGENCE_PROTOCOL
ROLLBACK_PLAN_PROTOCOL
ROLLBACK_RECEIPT_PROTOCOL
ROLLBACK_SAFETY_PROTOCOL
SECURITY_REVIEW_PROTOCOL
SERVICE_BACKUP_PROTOCOL
SERVICE_CONTRACT_PROTOCOL
SERVICE_CONTRACT_SCHEMA_JSON
SERVICE_PACKAGE_PROTOCOL
SERVICE_PACKAGE_SCHEMA_JSON
SERVICE_RELEASE_PLAN_PROTOCOL
SERVICE_RELEASE_PROTOCOL
SERVICE_RESTORE_EVIDENCE_PROTOCOL
SERVICE_SYSTEM_PROTOCOL
SERVICE_SYSTEM_SCHEMA_JSON
SERVICE_UPGRADE_PLAN_PROTOCOL
SERVICE_V2_CONTRACT_SCHEMA_JSON
SERVICE_WORKSPACE_PROTOCOL
SERVICE_WORKSPACE_SCHEMA_JSON
STORY_SEGMENT_FEED_PROTOCOL
SUPPORT_ENVELOPE_PROTOCOL
SUPPORT_EVENT_SCHEMA_JSON
SYSTEM_V2_CONTRACT_SCHEMA_JSON
SYSTEM_V2_PROTOCOL

Traits§

CallPolicyClock
CoordinationAuthorityProvider
DelegatedContextIssuer
Console-side authority that creates bounded actor and tenant credentials. Target Services do not need this interface in order to verify requests.
DelegatedContextProvider
Full provider retained for development sandboxes and Console-side composition that intentionally owns both interfaces.
DelegatedContextVerifier
Target-Service authority that verifies delegated credentials without receiving signing material or acquiring credential issuance capability.
EndpointResolver
ExtractionApprovalVerifier
ExtractionExpansionWorkload
Public behavior used by CLI-owned Postgres orchestration and candidate Workloads.
GatewayObservationProvider
IdentityDecisionRecorder
OperatorObservationAuthorityProvider
PromotionApprovalAuthority
ReleaseTrustProvider
ReliabilityObservationProvider
RollbackSafetyProvider
SecretProvider
Replaceable boundary for observing an opaque reference without reading its value.
WorkloadIdentityProvider

Functions§

advance_destination_expansion
apply_config_activation
apply_contract_retirement
apply_deployment
apply_extraction_backfill_batch
apply_extraction_scaffold
apply_manifest_migration
apply_postgres_extraction_backfill_batch
Atomically persists destination records, the batch receipt, and the next checkpoint in PostgreSQL. The run row is locked and compared by digest so a restarted or concurrent orchestrator cannot overwrite newer progress.
apply_promotion
apply_rollback
approve_coordination_resume
approve_promotion
assemble_ga_support_manifest
assemble_ga_support_manifest_with_trust
assemble_service_backup
assemble_service_release
attach_service_release_signature
attest_coordination_outage
attest_operator_observation
attest_production_eligibility_input
build_config_contract
build_config_revision
build_edge_contract
build_extraction_operation_receipt
canary_decision_integrity_is_valid
canary_plan_integrity_is_valid
cancel_extraction_quiescence
canonical_module_json
canonicalize_openapi_request_response
Converts a raw OpenAPI JSON value into the canonical operation shape consumed by the compatibility evaluator. YAML callers should deserialize to serde_json::Value first.
canonicalize_protobuf_request_response
Converts a binary Protobuf FileDescriptorSet into the canonical operation shape.
check_contract_artifact_value
Checks a versioned Provider or Autonomous Service artifact and projects its meaning.
check_contract_artifact_value_with_artifacts
Checks an artifact and resolves its owned contract files against a packaged path set.
commit_extraction_authority
commit_extraction_authority_postgres
Atomically compares and changes the persisted authority, routing, and System graph revisions. The receipt and committed state share one database transaction, so a partial topology transfer cannot escape.
complete_extraction_quiescence
complete_provisional_rollback_validation
config_activation_plan_integrity_is_valid
config_activation_receipt_integrity_is_valid
config_contract_integrity_is_valid
config_revision_integrity_is_valid
config_revision_matches_contract
contract_retirement_plan_integrity_is_valid
contract_retirement_plan_schema
contract_retirement_receipt_integrity_is_valid
coordination_operation_subject_digest
coordination_outage_evidence_digest
Recomputes the content digest of an outage proof without conferring authority. Consumers must still call coordination_outage_evidence_integrity_is_valid, which deterministically replays the signed evidence semantics.
coordination_outage_evidence_integrity_is_valid
coordination_outage_observation_integrity_is_valid
coordination_resume_approval_integrity_is_valid
coordination_resume_receipt_integrity_is_valid
copy_postgres_extraction_service_data_batch
Read one plan-scoped source batch and copy it into the planned candidate Postgres table before atomically advancing the durable checkpoint.
delegated_actor_signing_bytes
Canonical, domain-separated bytes signed by a Console authority for an Actor Context. The proof itself is excluded from the payload.
delivery_artifact_batch_subject
Compute the canonical subject signed by the provider that records a delivery batch.
delivery_failure_recovery_integrity_is_valid
delivery_failure_recovery_schema
deployment_observation_content_integrity_is_valid
deployment_observation_integrity_is_valid
deployment_plan_integrity_is_valid
deployment_receipt_integrity_is_valid
development_policy_pack
diff_service_releases
digest_module_json
disaster_recovery_evidence_integrity_is_valid
disaster_recovery_evidence_schema
dry_run_destination_expansion
dry_run_extraction_plan
dry_run_extraction_scaffold
edge_authority_subject
edge_contract_authority_is_valid
edge_contract_integrity_is_valid
ensure_extraction_plan_fresh
environment_verification_authority_is_valid
environment_verification_digest
environment_verification_integrity_is_valid
evaluate_canary
evaluate_config_compatibility
evaluate_delivery_failure_recovery
evaluate_delivery_policy
evaluate_disaster_recovery
evaluate_event_compatibility
evaluate_extraction_readiness
evaluate_failure_scenario
evaluate_ga_support
evaluate_generated_event_contract_compatibility
evaluate_performance_profile
evaluate_production_eligibility
evaluate_reliability_compatibility
evaluate_request_response_compatibility
Compares canonical OpenAPI or Protobuf request/response operation shapes.
evaluate_request_response_compatibility_in_system
evaluate_security_review
evaluate_service_release_policy
evaluate_service_restore
evaluate_service_upgrade_admission
evaluate_support_envelope
event_envelope_from_cloudevent
extraction_backfill_integrity_is_valid
extraction_candidate_health_integrity_is_valid
extraction_input_digest
extraction_operation_receipt_integrity_is_valid
extraction_plan_integrity_is_valid
extraction_plan_json
extraction_plan_schema
extraction_provisional_cutover_integrity_is_valid
extraction_quiescence_integrity_is_valid
extraction_readiness_report_json
extraction_readiness_report_schema
extraction_reconciliation_integrity_is_valid
extraction_run_integrity_is_valid
extraction_run_json
extraction_run_schema
extraction_scaffold_integrity_is_valid
extraction_scaffold_json
extraction_scaffold_schema
extraction_verification_integrity_is_valid
fail_provisional_cutover
failure_scenario_evidence_schema
ga_support_manifest_integrity_valid
ga_support_manifest_schema
gateway_observation_content_integrity_is_valid
gateway_observation_integrity_is_valid
gateway_plan_authority_is_valid
gateway_plan_integrity_is_valid
generate_direct_grpc_bindings
generate_direct_http_bindings
generate_event_contract
generate_extraction_plan
generate_extraction_scaffold
health_router
initialize_extraction_topology_state
load_delivery_console_projection
Load the newest persisted delivery evidence and evaluate its read-only projection.
load_extraction_artifact
Load one persisted workflow artifact by its stable identifier.
load_extraction_console_projection
Load persisted artifacts and evaluate the backend-owned projection.
load_postgres_extraction_backfill
Reload the last transactionally committed run after process restart or a lost client response.
manifest_migration_plan_schema
observe_deployment
observe_deployment_adapter
observe_gateway
observe_rollback_convergence
observe_secret_reference
operator_observation_attestation_is_valid
operator_observation_claims_digest
operator_observation_claims_from_deployment
operator_observation_matches_deployment
parse_protobuf_call_policies
performance_profile_integrity_is_valid
performance_profile_schema
plan_canary
plan_config_activation
plan_contract_retirement
plan_deployment
plan_disaster_recovery
plan_gateway_configuration
plan_manifest_migration
plan_promotion
plan_rollback
plan_service_upgrade
policy_evidence_integrity_is_valid
policy_pack_integrity_is_valid
production_eligibility_evidence_integrity_is_valid
production_policy_evidence_is_valid
production_policy_pack
project_delivery_console
project_extraction_console
promotion_approval_integrity_is_valid
promotion_plan_integrity_is_valid
promotion_receipt_integrity_is_valid
prove_system_plane_outage
reconcile_extraction_data
reconcile_postgres_extraction_service_data
Reads fresh plan-scoped source and candidate snapshots from PostgreSQL and reconciles those durable rows instead of trusting the Backfill receipt as the candidate state.
record_autonomous_mutation
record_delivery_artifact
Persist one immutable production-delivery artifact for the read-only projection.
record_delivery_artifacts
Validate and atomically persist a signed production-delivery artifact batch.
record_destination_expansion_receipt
record_extraction_artifact
Persist one authoritative workflow artifact for read-only operator projection.
record_extraction_drain
release_trust_evidence_integrity_is_valid
reliability_contract_digest
Returns the canonical digest that a signed Service Release must bind for this exact Reliability Contract.
reliability_observation_integrity_is_valid
render_extraction_plan
render_extraction_readiness_report
render_extraction_run
render_extraction_scaffold_patch
render_ga_support_manifest
request_fast_extraction_rollback
resume_protected_operation
rollback_convergence_integrity_is_valid
rollback_plan_integrity_is_valid
rollback_receipt_integrity_is_valid
rollback_safety_evidence_integrity_is_valid
seal_reliability_observation
seal_rollback_safety_evidence
secret_reference_metadata_is_safe
Return whether a Secret Reference contains only the bounded, non-value metadata accepted by the production delivery contract.
security_review_evidence_schema
security_review_integrity_is_valid
service_base_url_from_manifest_url
service_base_url_from_ready_url
service_release_integrity_is_valid
service_release_next_action
service_release_restart_required
service_release_schema
service_restore_evidence_schema
service_restore_integrity_is_valid
service_system_graph
service_upgrade_plan_schema
service_workspace_base_url
service_workspace_to_module_services
start_destination_expansion
start_extraction_backfill
start_extraction_quiescence
start_provisional_cutover
support_envelope_integrity_is_valid
support_envelope_schema
system_v2_graph
Validates and canonicalizes a declarative mixed-topology System v2 artifact.
tenant_context_signing_bytes
Canonical, domain-separated bytes signed by a Console authority for a Tenant Context. Actor and tenant signatures cannot be exchanged.
validate_autonomous_service_artifact_references
Resolves every owned contract artifact against paths packaged by a caller such as the CLI.
validate_autonomous_service_contract
validate_autonomous_service_contract_value
validate_common_context_contract
validate_common_context_contract_for_audience
validate_common_context_contract_value
validate_event_envelope
validate_event_envelope_value
validate_expand_first_postgres_sql
validate_extraction_scaffold
validate_module_manifest_value
validate_module_release_value
validate_service_contract_value
validate_service_package_value
validate_service_system_value
validate_service_workspace_value
verify_extraction_behavior
verify_provisional_cutover
verify_service_release_trust
verify_staging_environment