Skip to content

docs: record bootstrap-era user.zpr.authority decision (zpr-visaservice#324) - #11

Open
ZprBot1 wants to merge 1 commit into
org-zpr:mainfrom
ZprBot1:ZprBot1/324-user-authority-decision
Open

ZprBot1 wants to merge 1 commit into
org-zpr:mainfrom
ZprBot1:ZprBot1/324-user-authority-decision

Conversation

@ZprBot1

@ZprBot1 ZprBot1 commented Sep 3, 2026

Copy link
Copy Markdown

Companion to org-zpr/zpr-visaservice#331 (review round of 2026-09-03): records the decision that user.zpr.authority is installed from trusted-service results during the bootstrap era — installed exactly when a trusted service vends user.* attributes for the actor, valued with that service's source id, expiring with the vended attributes. Notes explicitly that this is weaker than the zpr-compiler#144 'live authentication' invariant and why that is the correct bootstrap-era meaning of a ZPR user, and that the fail-closed property for bare allow users ... rules survives.

…ce#324)

The VS derives user.zpr.authority from trusted-service results: installed
when a source vends user.* attributes, valued with the source id. This is
deliberately weaker than the #144 'live authentication' invariant; write
the decision down rather than leave it implicit, as requested in review
of zpr-visaservice#331.
@ZprBot1

ZprBot1 commented Sep 9, 2026

Copy link
Copy Markdown
Author

@mkolehmainen requesting your review (you authored the underlying decision thread on org-zpr/zpr-visaservice#331 / issue #324). A formal review request could not be attached: ZprBot1 has pull-only access to zpr-dev-context, so --add-reviewer is rejected. This is the docs companion recording the bootstrap-era user.zpr.authority decision.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant