Skip to content

feat: list synthetic workflow admissions on a public ledger - #34

Merged
abrichr merged 1 commit into
mainfrom
agent/public-workflow-admission-ledger
Sep 3, 2026
Merged

feat: list synthetic workflow admissions on a public ledger#34
abrichr merged 1 commit into
mainfrom
agent/public-workflow-admission-ledger

Conversation

@abrichr

@abrichr abrichr commented Sep 3, 2026

Copy link
Copy Markdown
Member

The reviewer is whoever gates OpenAdaptAI/.github. This PR lists the existing synthetic workflow admissions so a consumer can see them without treating a product release admission as a qualified workflow.

production-lifecycle-admissions.json stays qualification-release-only. The seven Flow/object-reference rows are unchanged, including the Flow 1.34.0 row at registry revision 2 / 6e28818a. New file: production-workflow-admissions.json. Seven qualification-admission object references. First row is the Flow synthetic tutorial bundle sha256:dcdb32a762aca87fbb1a7c9df5d346403b167ec5850d35fe47fd64d942684a04 (DSSE sha256:1773f9dd2b0c3a78bf2454cfba5d038151925f4b7c5aa1a2d7ed46b5f9315c32). The other six bind registry revision 3 the same way the remaining-six release rows do.

The validator still prints 7 active release admissions. It now also fails closed unless at least one listed workflow admission is active, remote-safe-synthetic, bundle 0.0.0-synthetic, expires_at JSON null. Campaign counts stay 1x3 with reconciliation_required_count=3 on uncertain delivery. evals_production_acceptance is still false. This is not a MockMed production_acceptance flip.

The GitHub issuer issue-qualification-admission.yml stays activation_state: inactive. Offline-issued objects are enough to list. Don't flip that workflow until Flow/web pin the exact verifier. Signer remains qa-ed25519-9cf4bca214c01d79 / outer oa-public-trust-ed25519-9cf4bca214c01d79. No new App keys.

Please check: python3 scripts/validate_production_lifecycle.py prints the 7 release admissions; history-only vs current origin/main is append-only on the release ledger and empty-to-seven on the workflow ledger.

Opened by an agent session, not the founder.

Add production-workflow-admissions.json as an append-only ledger of
qualification-admission object references. The release ledger stays
qualification-release-only. The validator still prints 7 active
release admissions and now requires at least one active synthetic
tutorial workflow admission.

The GitHub issuer stays inactive. This is not a MockMed
production_acceptance flip.
@abrichr
abrichr merged commit 3420737 into main Sep 3, 2026
3 checks passed
@abrichr
abrichr deleted the agent/public-workflow-admission-ledger branch September 3, 2026 01:44
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant