# Vercy AI instruction - YAML 1.2 (JSON-compatible) { "vercy": "1.0-draft", "publication": { "status": "published", "adjudicationStatus": "reviewable-draft", "publishableCanonical": false, "generatedAt": "2026-09-09T21:39:03Z", "synthesisSha256": "7d0aa41c88c1a8520beddeb225487c6bb9d01956a4a9bc43252694a509e2998a", "providerMode": "single-provider-waiver", "providers": [ "Codex" ], "waivedProviders": [ "Claude", "Grok" ] }, "metaModel": { "id": "WM-ORG-015", "registryId": "vr.wm-org-015", "name": "Supplier / Partner Relationship", "version": "0.3.0-research.1", "previousVersions": [], "entryKind": "relationship", "family": "World Models", "category": "Society, people and institutions", "industry": [ "Cross-industry" ], "domain": [ "SOC.ORG.SUP" ], "tags": [ "supplier", "partner", "relationship", "soc.org.sup" ], "status": "published" }, "canonicalUrl": "https://ver.cy/models/wm-org-015-supplier-partner-relationship/", "sourceUrl": "https://github.com/ver-cy/world-models/tree/feat/mega-model-registry/research/runs/wm-org-015", "model": { "registry_id": "vr.wm-org-015", "model_id": "WM-ORG-015", "name": "Supplier / Partner Relationship", "entry_kind": "relationship", "purpose": "Describe qualification, risk and commercial status of a buyer- or collaboration-scoped supplier/partner relationship.", "scope_statement": "Relationship record tying an owner to a counterparty and supplied capability; not party identity, purchase transaction or legal partnership determination. Preserve role, approval and source assessment scope.", "in_scope": [ "Buyer/collaboration scope, participant roles and supplied capabilities", "Qualification evidence, attributed approval, commercial references and responsibilities", "Risk/performance context, change/exit continuity and governed exchange" ], "out_of_scope": [ "Party, bank account and credential master data", "Execution of onboarding, payments, purchasing, outreach or supplier exclusion", "Universal approval states, legal control, sanctions adjudication or industry-wide risk scoring" ], "boundary_notes": [ { "neighbor": "Organization master", "distinction": "Multiple scoped supplier roles can reference one legal party; never remaster it here.", "source_refs": [ "SRC-001", "SRC-002", "SRC-005" ] }, { "neighbor": "Procurement and contracts", "distinction": "Award suppliers, agreements and transaction authority are referenced, not replaced by generic approved status.", "source_refs": [ "SRC-001", "SRC-002", "SRC-004" ] }, { "neighbor": "Financial account and payee", "distinction": "Seller, accounting supplier and payee can differ; relationship editing must not redirect funds.", "source_refs": [ "SRC-002" ] }, { "neighbor": "Inter-organizational partnership", "distinction": "Role label and supply dependency do not establish legal control or a universal legal partnership.", "source_refs": [ "SRC-001", "SRC-003", "SRC-005" ] } ] }, "sources": [ { "id": "SRC-001", "title": "Buyers and suppliers", "organization": "Open Contracting Partnership", "url": "https://standard.open-contracting.org/latest/en/guidance/map/buyers_suppliers/", "version_or_date": "OCDS 1.1.5; mutable documentation pin pending", "source_type": "first-party-doc", "primary_source": true, "authority_tier": 2, "accessed_at": "2026-09-09T21:28:16Z", "relevance": "Selected award/consortium roles; buyer wording discrepancy acknowledged by source, not a universal vendor record." }, { "id": "SRC-002", "title": "Universal Business Language 2.3", "organization": "OASIS", "url": "https://docs.oasis-open.org/ubl/os-UBL-2.3/UBL-2.3.html", "version_or_date": "OASIS Standard UBL 2.3", "source_type": "standard", "primary_source": true, "authority_tier": 1, "accessed_at": "2026-09-09T21:28:16Z", "relevance": "Selected process-dependent party roles and distinct payee; full XSD and conformance not checked." }, { "id": "SRC-003", "title": "Cybersecurity Supply Chain Risk Management Practices", "organization": "NIST", "url": "https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-161r1-upd1.pdf", "version_or_date": "May 2022; updated November 1, 2024", "source_type": "standard", "primary_source": true, "authority_tier": 1, "accessed_at": "2026-09-09T21:28:16Z", "relevance": "Selected 1.5.2 and SR-6 assessment context; C-SCRM guidance, not universal supplier law or exclusion authority." }, { "id": "SRC-004", "title": "Prospective Suppliers", "organization": "Oracle", "url": "https://docs.oracle.com/en/cloud/saas/procurement/25c/oaprc/prospective-suppliers.html", "version_or_date": "Fusion Procurement 25c", "source_type": "first-party-doc", "primary_source": true, "authority_tier": 2, "accessed_at": "2026-09-09T21:28:16Z", "relevance": "Selected prospective versus spend-authorization semantics illustrate scoped approval, not a universal two-state lifecycle." }, { "id": "SRC-005", "title": "Party Role Management Conformance Profile", "organization": "TM Forum", "url": "https://tmf-open-api-table-documents.s3.eu-west-1.amazonaws.com/OpenApiTable/TMF669_Party_Role/5.0.0/conformance/TMF669_Party_Role_conformance.pdf", "version_or_date": "TMF669 5.0.0 path; copyright 2023", "source_type": "standard", "primary_source": true, "authority_tier": 1, "accessed_at": "2026-09-09T21:28:16Z", "relevance": "Selected introduction and engagedParty creation conditions; guide landing page unavailable and full asset licensing/conformance unverified." }, { "id": "SRC-006", "title": "PROV-O: The PROV Ontology", "organization": "W3C", "url": "https://www.w3.org/TR/prov-o/", "version_or_date": "Recommendation; dated release pin pending", "source_type": "ontology", "primary_source": true, "authority_tier": 1, "accessed_at": "2026-09-09T21:28:16Z", "relevance": "Qualified agent/role association for attribution, not truth ranking or permission." }, { "id": "SRC-007", "title": "Date and Time on the Internet: Timestamps", "organization": "IETF", "url": "https://www.rfc-editor.org/rfc/rfc3339", "version_or_date": "RFC 3339 July 2002", "source_type": "standard", "primary_source": true, "authority_tier": 1, "accessed_at": "2026-09-09T21:28:16Z", "relevance": "Selected time grammar; precise instants separate from source dates. Direct HEAD unavailable, web text inspected." } ], "structure": { "bundles": [ { "id": "supplier-counterparty-role-and-supply-scope", "name": "Counterparty role and supply scope", "description": "Supplier/partner counterparty role and supply scope.", "rationale": "Pairs complementary relationship records while delegating party, contract, transaction and operational masters.", "source_refs": [ "SRC-001", "SRC-002", "SRC-003", "SRC-005" ], "layers": [ { "id": "supplier-identity", "name": "Buyer-scoped relationship identity", "description": "Scoped supplier/partner buyer-scoped relationship identity assertions, with source and authority limits. Record changes do not execute procurement, payments or exclusion.", "source_refs": [ "SRC-001", "SRC-002", "SRC-005" ], "findings": [ { "id": "supplier-identity-record", "name": "Buyer-scoped relationship identity record", "description": "Scoped supplier/partner buyer-scoped relationship identity assertions, with source and authority limits. Record changes do not execute procurement, payments or exclusion.", "source_refs": [ "SRC-001", "SRC-002", "SRC-005" ], "questions": [ { "id": "supplier-identity-q01", "text": "Which master-qualified relationship identifier links which buyer or collaboration owner to which counterparty?", "kind": "identity", "answer_data": [ "supplier-identity-identity" ] }, { "id": "supplier-identity-q02", "text": "Which scheme distinguishes supplier, subcontractor, reseller or alliance partner from the underlying party?", "kind": "classification", "answer_data": [ "supplier-identity-role" ] }, { "id": "supplier-identity-q03", "text": "Which aliases refer to this relationship without collapsing different buyers, sites or commercial scopes?", "kind": "evidence", "answer_data": [ "supplier-identity-aliases" ] } ], "data_elements": [ { "id": "supplier-identity-identity", "name": "identity", "description": "Proposed answer fields: master,id,ownerRef,partyRef. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-001", "SRC-002", "SRC-005" ] }, { "id": "supplier-identity-role", "name": "role", "description": "Proposed answer fields: scheme,version,code,scope. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-001", "SRC-002", "SRC-005" ] }, { "id": "supplier-identity-aliases", "name": "aliases", "description": "Proposed answer fields: system,id,scope,evidence. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-001", "SRC-002", "SRC-005" ] } ], "artifacts": [ { "id": "supplier-identity-artifact", "name": "Buyer-scoped relationship identity evidence artifact", "description": "Minimal revisioned supplier assertion and authorized evidence references; no bank details, credentials or unnecessary confidential assessment payloads.", "media_or_form": [ "text/markdown", "application/json", "application/yaml", "external reference" ], "serial": true, "identity_strategy": "Master-qualified ID or Dimension UUID, immutable revision and digest; timestamp is not unique identity.", "source_refs": [ "SRC-001", "SRC-002", "SRC-005" ] } ], "inline_only_rationale": null } ] }, { "id": "supplier-scope", "name": "Supplied capabilities and participation", "description": "Scoped supplier/partner supplied capabilities and participation assertions, with source and authority limits. Record changes do not execute procurement, payments or exclusion.", "source_refs": [ "SRC-001", "SRC-002", "SRC-003" ], "findings": [ { "id": "supplier-scope-record", "name": "Supplied capabilities and participation record", "description": "Scoped supplier/partner supplied capabilities and participation assertions, with source and authority limits. Record changes do not execute procurement, payments or exclusion.", "source_refs": [ "SRC-001", "SRC-002", "SRC-003" ], "questions": [ { "id": "supplier-scope-q01", "text": "Which goods, services or collaboration contributions are within the declared relationship scope?", "kind": "composition", "answer_data": [ "supplier-scope-capability" ] }, { "id": "supplier-scope-q02", "text": "Which locations, organizational units and delivery roles are covered by that scope?", "kind": "spatial", "answer_data": [ "supplier-scope-coverage" ] }, { "id": "supplier-scope-q03", "text": "Which consortium, prime or sub-tier participant references preserve responsibility without inferring legal control?", "kind": "relationship", "answer_data": [ "supplier-scope-participation" ] } ], "data_elements": [ { "id": "supplier-scope-capability", "name": "capability", "description": "Proposed answer fields: categoryRefs,contribution,limitations. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-001", "SRC-002", "SRC-003" ] }, { "id": "supplier-scope-coverage", "name": "coverage", "description": "Proposed answer fields: siteRefs,unitRefs,roles,validity. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-001", "SRC-002", "SRC-003" ] }, { "id": "supplier-scope-participation", "name": "participation", "description": "Proposed answer fields: linkType,partyRefs,responsibility,evidence. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-001", "SRC-002", "SRC-003" ] } ], "artifacts": [ { "id": "supplier-scope-artifact", "name": "Supplied capabilities and participation evidence artifact", "description": "Minimal revisioned supplier assertion and authorized evidence references; no bank details, credentials or unnecessary confidential assessment payloads.", "media_or_form": [ "text/markdown", "application/json", "application/yaml", "external reference" ], "serial": true, "identity_strategy": "Master-qualified ID or Dimension UUID, immutable revision and digest; timestamp is not unique identity.", "source_refs": [ "SRC-001", "SRC-002", "SRC-003" ] } ], "inline_only_rationale": null } ] } ] }, { "id": "supplier-qualification-and-authorization", "name": "Qualification and authorization", "description": "Supplier/partner qualification and authorization.", "rationale": "Pairs complementary relationship records while delegating party, contract, transaction and operational masters.", "source_refs": [ "SRC-003", "SRC-004", "SRC-005", "SRC-006" ], "layers": [ { "id": "supplier-qualification", "name": "Qualification evidence and freshness", "description": "Scoped supplier/partner qualification evidence and freshness assertions, with source and authority limits. Record changes do not execute procurement, payments or exclusion.", "source_refs": [ "SRC-003", "SRC-004", "SRC-006" ], "findings": [ { "id": "supplier-qualification-record", "name": "Qualification evidence and freshness record", "description": "Scoped supplier/partner qualification evidence and freshness assertions, with source and authority limits. Record changes do not execute procurement, payments or exclusion.", "source_refs": [ "SRC-003", "SRC-004", "SRC-006" ], "questions": [ { "id": "supplier-qualification-q01", "text": "Which qualification criteria and scheme version apply to the relevant category and buying scope?", "kind": "requirement", "answer_data": [ "supplier-qualification-criteria" ] }, { "id": "supplier-qualification-q02", "text": "Which claims are supplier-declared versus independently assessed, with which supporting references?", "kind": "provenance", "answer_data": [ "supplier-qualification-evidence" ] }, { "id": "supplier-qualification-q03", "text": "When do qualifications expire or require review and which missing evidence remains unknown?", "kind": "temporal", "answer_data": [ "supplier-qualification-freshness" ] } ], "data_elements": [ { "id": "supplier-qualification-criteria", "name": "criteria", "description": "Proposed answer fields: scheme,version,category,buyerScope. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-003", "SRC-004", "SRC-006" ] }, { "id": "supplier-qualification-evidence", "name": "evidence", "description": "Proposed answer fields: claim,attribution,assessor,refs. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-003", "SRC-004", "SRC-006" ] }, { "id": "supplier-qualification-freshness", "name": "freshness", "description": "Proposed answer fields: validity,reviewDue,unknowns. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-003", "SRC-004", "SRC-006" ] } ], "artifacts": [ { "id": "supplier-qualification-artifact", "name": "Qualification evidence and freshness evidence artifact", "description": "Minimal revisioned supplier assertion and authorized evidence references; no bank details, credentials or unnecessary confidential assessment payloads.", "media_or_form": [ "text/markdown", "application/json", "application/yaml", "external reference" ], "serial": true, "identity_strategy": "Master-qualified ID or Dimension UUID, immutable revision and digest; timestamp is not unique identity.", "source_refs": [ "SRC-003", "SRC-004", "SRC-006" ] } ], "inline_only_rationale": null } ] }, { "id": "supplier-authorization", "name": "Registration and approved-use boundaries", "description": "Scoped supplier/partner registration and approved-use boundaries assertions, with source and authority limits. Record changes do not execute procurement, payments or exclusion.", "source_refs": [ "SRC-004", "SRC-005" ], "findings": [ { "id": "supplier-authorization-record", "name": "Registration and approved-use boundaries record", "description": "Scoped supplier/partner registration and approved-use boundaries assertions, with source and authority limits. Record changes do not execute procurement, payments or exclusion.", "source_refs": [ "SRC-004", "SRC-005" ], "questions": [ { "id": "supplier-authorization-q01", "text": "Which source status distinguishes registration, qualification and authorization for specified commercial uses?", "kind": "state", "answer_data": [ "supplier-authorization-state" ] }, { "id": "supplier-authorization-q02", "text": "Who approved which scope under which policy and with which limitations or exceptions?", "kind": "authority", "answer_data": [ "supplier-authorization-approval" ] }, { "id": "supplier-authorization-q03", "text": "Which separate transaction authority remains necessary despite an approved supplier status?", "kind": "constraint", "answer_data": [ "supplier-authorization-transactionboundary" ] } ], "data_elements": [ { "id": "supplier-authorization-state", "name": "state", "description": "Proposed answer fields: source,scheme,status,meaning. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-004", "SRC-005" ] }, { "id": "supplier-authorization-approval", "name": "approval", "description": "Proposed answer fields: authorityRef,scope,policy,exceptions. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-004", "SRC-005" ] }, { "id": "supplier-authorization-transactionboundary", "name": "transactionBoundary", "description": "Proposed answer fields: operation,master,requiredAuthority. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-004", "SRC-005" ] } ], "artifacts": [ { "id": "supplier-authorization-artifact", "name": "Registration and approved-use boundaries evidence artifact", "description": "Minimal revisioned supplier assertion and authorized evidence references; no bank details, credentials or unnecessary confidential assessment payloads.", "media_or_form": [ "text/markdown", "application/json", "application/yaml", "external reference" ], "serial": true, "identity_strategy": "Master-qualified ID or Dimension UUID, immutable revision and digest; timestamp is not unique identity.", "source_refs": [ "SRC-004", "SRC-005" ] } ], "inline_only_rationale": null } ] } ] }, { "id": "supplier-commercial-bindings-and-accountability", "name": "Commercial bindings and accountability", "description": "Supplier/partner commercial bindings and accountability.", "rationale": "Pairs complementary relationship records while delegating party, contract, transaction and operational masters.", "source_refs": [ "SRC-001", "SRC-002", "SRC-003", "SRC-005" ], "layers": [ { "id": "supplier-commercial", "name": "Agreement and procurement references", "description": "Scoped supplier/partner agreement and procurement references assertions, with source and authority limits. Record changes do not execute procurement, payments or exclusion.", "source_refs": [ "SRC-001", "SRC-002", "SRC-005" ], "findings": [ { "id": "supplier-commercial-record", "name": "Agreement and procurement references record", "description": "Scoped supplier/partner agreement and procurement references assertions, with source and authority limits. Record changes do not execute procurement, payments or exclusion.", "source_refs": [ "SRC-001", "SRC-002", "SRC-005" ], "questions": [ { "id": "supplier-commercial-q01", "text": "Which agreements, awards or purchase relationships provide the commercial basis without duplicating their terms?", "kind": "relationship", "answer_data": [ "supplier-commercial-basis" ] }, { "id": "supplier-commercial-q02", "text": "Which party is seller, invoice issuer, payee or service performer in each referenced context?", "kind": "classification", "answer_data": [ "supplier-commercial-commercialroles" ] }, { "id": "supplier-commercial-q03", "text": "Which contractual limits remain authoritative elsewhere when a relationship record changes?", "kind": "constraint", "answer_data": [ "supplier-commercial-limits" ] } ], "data_elements": [ { "id": "supplier-commercial-basis", "name": "basis", "description": "Proposed answer fields: typedRefs,master,scope. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-001", "SRC-002", "SRC-005" ] }, { "id": "supplier-commercial-commercialroles", "name": "commercialRoles", "description": "Proposed answer fields: partyRefs,role,context. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-001", "SRC-002", "SRC-005" ] }, { "id": "supplier-commercial-limits", "name": "limits", "description": "Proposed answer fields: contractRef,obligationMaster,excludedEffects. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-001", "SRC-002", "SRC-005" ] } ], "artifacts": [ { "id": "supplier-commercial-artifact", "name": "Agreement and procurement references evidence artifact", "description": "Minimal revisioned supplier assertion and authorized evidence references; no bank details, credentials or unnecessary confidential assessment payloads.", "media_or_form": [ "text/markdown", "application/json", "application/yaml", "external reference" ], "serial": true, "identity_strategy": "Master-qualified ID or Dimension UUID, immutable revision and digest; timestamp is not unique identity.", "source_refs": [ "SRC-001", "SRC-002", "SRC-005" ] } ], "inline_only_rationale": null } ] }, { "id": "supplier-stewardship", "name": "Relationship stewardship and interfaces", "description": "Scoped supplier/partner relationship stewardship and interfaces assertions, with source and authority limits. Record changes do not execute procurement, payments or exclusion.", "source_refs": [ "SRC-002", "SRC-003", "SRC-005" ], "findings": [ { "id": "supplier-stewardship-record", "name": "Relationship stewardship and interfaces record", "description": "Scoped supplier/partner relationship stewardship and interfaces assertions, with source and authority limits. Record changes do not execute procurement, payments or exclusion.", "source_refs": [ "SRC-002", "SRC-003", "SRC-005" ], "questions": [ { "id": "supplier-stewardship-q01", "text": "Which accountable owner, category manager and partner representatives steward the relationship?", "kind": "ownership", "answer_data": [ "supplier-stewardship-stewardship" ] }, { "id": "supplier-stewardship-q02", "text": "Which contact and exchange interfaces have scoped delegated authority rather than inferred permissions?", "kind": "authority", "answer_data": [ "supplier-stewardship-interfaces" ] }, { "id": "supplier-stewardship-q03", "text": "Which handover or escalation process owns unresolved issues and disputed responsibility?", "kind": "process", "answer_data": [ "supplier-stewardship-escalation" ] } ], "data_elements": [ { "id": "supplier-stewardship-stewardship", "name": "stewardship", "description": "Proposed answer fields: ownerRef,managerRef,representatives. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-002", "SRC-003", "SRC-005" ] }, { "id": "supplier-stewardship-interfaces", "name": "interfaces", "description": "Proposed answer fields: contactRefs,protocol,scope,authority. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-002", "SRC-003", "SRC-005" ] }, { "id": "supplier-stewardship-escalation", "name": "escalation", "description": "Proposed answer fields: processRef,issueRefs,disputes. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-002", "SRC-003", "SRC-005" ] } ], "artifacts": [ { "id": "supplier-stewardship-artifact", "name": "Relationship stewardship and interfaces evidence artifact", "description": "Minimal revisioned supplier assertion and authorized evidence references; no bank details, credentials or unnecessary confidential assessment payloads.", "media_or_form": [ "text/markdown", "application/json", "application/yaml", "external reference" ], "serial": true, "identity_strategy": "Master-qualified ID or Dimension UUID, immutable revision and digest; timestamp is not unique identity.", "source_refs": [ "SRC-002", "SRC-003", "SRC-005" ] } ], "inline_only_rationale": null } ] } ] }, { "id": "supplier-risk-and-performance-evidence", "name": "Risk and performance evidence", "description": "Supplier/partner risk and performance evidence.", "rationale": "Pairs complementary relationship records while delegating party, contract, transaction and operational masters.", "source_refs": [ "SRC-002", "SRC-003", "SRC-006" ], "layers": [ { "id": "supplier-risk", "name": "Attributed supplier-risk assessments", "description": "Scoped supplier/partner attributed supplier-risk assessments assertions, with source and authority limits. Record changes do not execute procurement, payments or exclusion.", "source_refs": [ "SRC-003", "SRC-006" ], "findings": [ { "id": "supplier-risk-record", "name": "Attributed supplier-risk assessments record", "description": "Scoped supplier/partner attributed supplier-risk assessments assertions, with source and authority limits. Record changes do not execute procurement, payments or exclusion.", "source_refs": [ "SRC-003", "SRC-006" ], "questions": [ { "id": "supplier-risk-q01", "text": "Which assessed risks have a named method, evidence, time and uncertainty for the relevant supply scope?", "kind": "measurement", "answer_data": [ "supplier-risk-assessment" ] }, { "id": "supplier-risk-q02", "text": "Which critical dependencies, concentration or sub-tier visibility gaps affect this assessment?", "kind": "relationship", "answer_data": [ "supplier-risk-dependency" ] }, { "id": "supplier-risk-q03", "text": "Which mitigations and review decisions are merely referenced rather than automated supplier exclusion?", "kind": "decision", "answer_data": [ "supplier-risk-response" ] } ], "data_elements": [ { "id": "supplier-risk-assessment", "name": "assessment", "description": "Proposed answer fields: method,evidence,asOf,uncertainty. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-003", "SRC-006" ] }, { "id": "supplier-risk-dependency", "name": "dependency", "description": "Proposed answer fields: criticality,refs,concentration,unknowns. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-003", "SRC-006" ] }, { "id": "supplier-risk-response", "name": "response", "description": "Proposed answer fields: mitigationRefs,reviewDecision,authority. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-003", "SRC-006" ] } ], "artifacts": [ { "id": "supplier-risk-artifact", "name": "Attributed supplier-risk assessments evidence artifact", "description": "Minimal revisioned supplier assertion and authorized evidence references; no bank details, credentials or unnecessary confidential assessment payloads.", "media_or_form": [ "text/markdown", "application/json", "application/yaml", "external reference" ], "serial": true, "identity_strategy": "Master-qualified ID or Dimension UUID, immutable revision and digest; timestamp is not unique identity.", "source_refs": [ "SRC-003", "SRC-006" ] } ], "inline_only_rationale": null } ] }, { "id": "supplier-performance", "name": "Performance and issue context", "description": "Scoped supplier/partner performance and issue context assertions, with source and authority limits. Record changes do not execute procurement, payments or exclusion.", "source_refs": [ "SRC-002", "SRC-003", "SRC-006" ], "findings": [ { "id": "supplier-performance-record", "name": "Performance and issue context record", "description": "Scoped supplier/partner performance and issue context assertions, with source and authority limits. Record changes do not execute procurement, payments or exclusion.", "source_refs": [ "SRC-002", "SRC-003", "SRC-006" ], "questions": [ { "id": "supplier-performance-q01", "text": "Which delivery, quality or service observations support the relationship assessment without copying transaction payloads?", "kind": "evidence", "answer_data": [ "supplier-performance-observations" ] }, { "id": "supplier-performance-q02", "text": "Which metric definition, denominator, period and source make performance comparisons meaningful?", "kind": "measurement", "answer_data": [ "supplier-performance-metrics" ] }, { "id": "supplier-performance-q03", "text": "Which incidents, corrective actions or disputed observations need follow-up by their authoritative owners?", "kind": "exception", "answer_data": [ "supplier-performance-issues" ] } ], "data_elements": [ { "id": "supplier-performance-observations", "name": "observations", "description": "Proposed answer fields: eventRefs,source,scope. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-002", "SRC-003", "SRC-006" ] }, { "id": "supplier-performance-metrics", "name": "metrics", "description": "Proposed answer fields: definition,denominator,period,method. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-002", "SRC-003", "SRC-006" ] }, { "id": "supplier-performance-issues", "name": "issues", "description": "Proposed answer fields: incidentRefs,actionRefs,owner,dispute. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-002", "SRC-003", "SRC-006" ] } ], "artifacts": [ { "id": "supplier-performance-artifact", "name": "Performance and issue context evidence artifact", "description": "Minimal revisioned supplier assertion and authorized evidence references; no bank details, credentials or unnecessary confidential assessment payloads.", "media_or_form": [ "text/markdown", "application/json", "application/yaml", "external reference" ], "serial": true, "identity_strategy": "Master-qualified ID or Dimension UUID, immutable revision and digest; timestamp is not unique identity.", "source_refs": [ "SRC-002", "SRC-003", "SRC-006" ] } ], "inline_only_rationale": null } ] } ] }, { "id": "supplier-change-and-continuity", "name": "Change and continuity", "description": "Supplier/partner change and continuity.", "rationale": "Pairs complementary relationship records while delegating party, contract, transaction and operational masters.", "source_refs": [ "SRC-002", "SRC-003", "SRC-004", "SRC-006", "SRC-007" ], "layers": [ { "id": "supplier-change", "name": "Relationship changes and review triggers", "description": "Scoped supplier/partner relationship changes and review triggers assertions, with source and authority limits. Record changes do not execute procurement, payments or exclusion.", "source_refs": [ "SRC-003", "SRC-004", "SRC-006", "SRC-007" ], "findings": [ { "id": "supplier-change-record", "name": "Relationship changes and review triggers record", "description": "Scoped supplier/partner relationship changes and review triggers assertions, with source and authority limits. Record changes do not execute procurement, payments or exclusion.", "source_refs": [ "SRC-003", "SRC-004", "SRC-006", "SRC-007" ], "questions": [ { "id": "supplier-change-q01", "text": "Which scope, ownership or service changes trigger a relationship review without automatically transferring approval?", "kind": "lifecycle", "answer_data": [ "supplier-change-triggers" ] }, { "id": "supplier-change-q02", "text": "What effective, observed and recorded times qualify each lifecycle change?", "kind": "temporal", "answer_data": [ "supplier-change-time" ] }, { "id": "supplier-change-q03", "text": "How are conflicting source statuses and mistaken updates preserved and corrected?", "kind": "exception", "answer_data": [ "supplier-change-correction" ] } ], "data_elements": [ { "id": "supplier-change-triggers", "name": "triggers", "description": "Proposed answer fields: change,evidence,policy,reviewRef. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-003", "SRC-004", "SRC-006", "SRC-007" ] }, { "id": "supplier-change-time", "name": "time", "description": "Proposed answer fields: effective,observed,recorded,precision. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-003", "SRC-004", "SRC-006", "SRC-007" ] }, { "id": "supplier-change-correction", "name": "correction", "description": "Proposed answer fields: contestedStates,priorRevision,compensation. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-003", "SRC-004", "SRC-006", "SRC-007" ] } ], "artifacts": [ { "id": "supplier-change-artifact", "name": "Relationship changes and review triggers evidence artifact", "description": "Minimal revisioned supplier assertion and authorized evidence references; no bank details, credentials or unnecessary confidential assessment payloads.", "media_or_form": [ "text/markdown", "application/json", "application/yaml", "external reference" ], "serial": true, "identity_strategy": "Master-qualified ID or Dimension UUID, immutable revision and digest; timestamp is not unique identity.", "source_refs": [ "SRC-003", "SRC-004", "SRC-006", "SRC-007" ] } ], "inline_only_rationale": null } ] }, { "id": "supplier-continuity", "name": "Suspension, exit and continuity", "description": "Scoped supplier/partner suspension, exit and continuity assertions, with source and authority limits. Record changes do not execute procurement, payments or exclusion.", "source_refs": [ "SRC-002", "SRC-003", "SRC-006" ], "findings": [ { "id": "supplier-continuity-record", "name": "Suspension, exit and continuity record", "description": "Scoped supplier/partner suspension, exit and continuity assertions, with source and authority limits. Record changes do not execute procurement, payments or exclusion.", "source_refs": [ "SRC-002", "SRC-003", "SRC-006" ], "questions": [ { "id": "supplier-continuity-q01", "text": "Which authorized scope is suspended or ended, for what attributed reason and interval?", "kind": "state", "answer_data": [ "supplier-continuity-exit" ] }, { "id": "supplier-continuity-q02", "text": "Which outstanding obligations, access-removal and handover tasks remain with contract or operational masters?", "kind": "process", "answer_data": [ "supplier-continuity-handover" ] }, { "id": "supplier-continuity-q03", "text": "Which continuity dependencies and reinstatement evidence must be reviewed without silently cancelling contracts?", "kind": "constraint", "answer_data": [ "supplier-continuity-continuity" ] } ], "data_elements": [ { "id": "supplier-continuity-exit", "name": "exit", "description": "Proposed answer fields: scope,reason,decisionRef,validity. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-002", "SRC-003", "SRC-006" ] }, { "id": "supplier-continuity-handover", "name": "handover", "description": "Proposed answer fields: obligationRefs,accessTaskRefs,owner. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-002", "SRC-003", "SRC-006" ] }, { "id": "supplier-continuity-continuity", "name": "continuity", "description": "Proposed answer fields: dependencies,planRef,reinstatementCriteria. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-002", "SRC-003", "SRC-006" ] } ], "artifacts": [ { "id": "supplier-continuity-artifact", "name": "Suspension, exit and continuity evidence artifact", "description": "Minimal revisioned supplier assertion and authorized evidence references; no bank details, credentials or unnecessary confidential assessment payloads.", "media_or_form": [ "text/markdown", "application/json", "application/yaml", "external reference" ], "serial": true, "identity_strategy": "Master-qualified ID or Dimension UUID, immutable revision and digest; timestamp is not unique identity.", "source_refs": [ "SRC-002", "SRC-003", "SRC-006" ] } ], "inline_only_rationale": null } ] } ] }, { "id": "supplier-governed-knowledge-exchange", "name": "Governed knowledge exchange", "description": "Supplier/partner governed knowledge exchange.", "rationale": "Pairs complementary relationship records while delegating party, contract, transaction and operational masters.", "source_refs": [ "SRC-001", "SRC-002", "SRC-003", "SRC-004", "SRC-005", "SRC-006", "SRC-007" ], "layers": [ { "id": "supplier-governance", "name": "Mastership, disclosure and retention", "description": "Scoped supplier/partner mastership, disclosure and retention assertions, with source and authority limits. Record changes do not execute procurement, payments or exclusion.", "source_refs": [ "SRC-003", "SRC-005", "SRC-006" ], "findings": [ { "id": "supplier-governance-record", "name": "Mastership, disclosure and retention record", "description": "Scoped supplier/partner mastership, disclosure and retention assertions, with source and authority limits. Record changes do not execute procurement, payments or exclusion.", "source_refs": [ "SRC-003", "SRC-005", "SRC-006" ], "questions": [ { "id": "supplier-governance-q01", "text": "Which systems master identity, qualification, approval and assessment fields and how stale are cached assertions?", "kind": "ownership", "answer_data": [ "supplier-governance-masters" ] }, { "id": "supplier-governance-q02", "text": "Who may read or change each field without obtaining bank details, credentials or unrelated confidential evidence?", "kind": "access", "answer_data": [ "supplier-governance-access" ] }, { "id": "supplier-governance-q03", "text": "Which correction and retention policies preserve justified lineage while minimizing private supplier data?", "kind": "retention", "answer_data": [ "supplier-governance-retention" ] } ], "data_elements": [ { "id": "supplier-governance-masters", "name": "masters", "description": "Proposed answer fields: fieldMasters,freshness,conflicts. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-003", "SRC-005", "SRC-006" ] }, { "id": "supplier-governance-access", "name": "access", "description": "Proposed answer fields: actorRole,fieldScope,policy. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-003", "SRC-005", "SRC-006" ] }, { "id": "supplier-governance-retention", "name": "retention", "description": "Proposed answer fields: rule,reviewDate,correction,disposition. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-003", "SRC-005", "SRC-006" ] } ], "artifacts": [ { "id": "supplier-governance-artifact", "name": "Mastership, disclosure and retention evidence artifact", "description": "Minimal revisioned supplier assertion and authorized evidence references; no bank details, credentials or unnecessary confidential assessment payloads.", "media_or_form": [ "text/markdown", "application/json", "application/yaml", "external reference" ], "serial": true, "identity_strategy": "Master-qualified ID or Dimension UUID, immutable revision and digest; timestamp is not unique identity.", "source_refs": [ "SRC-003", "SRC-005", "SRC-006" ] } ], "inline_only_rationale": null } ] }, { "id": "supplier-mapping", "name": "Mappings and safe agent operations", "description": "Scoped supplier/partner mappings and safe agent operations assertions, with source and authority limits. Record changes do not execute procurement, payments or exclusion.", "source_refs": [ "SRC-001", "SRC-002", "SRC-003", "SRC-004", "SRC-005", "SRC-006", "SRC-007" ], "findings": [ { "id": "supplier-mapping-record", "name": "Mappings and safe agent operations record", "description": "Scoped supplier/partner mappings and safe agent operations assertions, with source and authority limits. Record changes do not execute procurement, payments or exclusion.", "source_refs": [ "SRC-001", "SRC-002", "SRC-003", "SRC-004", "SRC-005", "SRC-006", "SRC-007" ], "questions": [ { "id": "supplier-mapping-q01", "text": "Which pinned OCDS, UBL or PartyRole mapping preserves role, buyer scope and source status meaning?", "kind": "interoperability", "answer_data": [ "supplier-mapping-mapping" ] }, { "id": "supplier-mapping-q02", "text": "Which information or authority distinctions are lost during import or export and require a warning or refusal?", "kind": "quality", "answer_data": [ "supplier-mapping-loss" ] }, { "id": "supplier-mapping-q03", "text": "Which negative fixtures prevent record maintenance from causing payment, outreach, exclusion or purchase commitments?", "kind": "validation", "answer_data": [ "supplier-mapping-acceptance" ] } ], "data_elements": [ { "id": "supplier-mapping-mapping", "name": "mapping", "description": "Proposed answer fields: profile,version,roleMap,scopeMap. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-001", "SRC-002", "SRC-003", "SRC-004", "SRC-005", "SRC-006", "SRC-007" ] }, { "id": "supplier-mapping-loss", "name": "loss", "description": "Proposed answer fields: fields,meaning,warning,refusal. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-001", "SRC-002", "SRC-003", "SRC-004", "SRC-005", "SRC-006", "SRC-007" ] }, { "id": "supplier-mapping-acceptance", "name": "acceptance", "description": "Proposed answer fields: operation,preconditions,fixtures,results. Preserve explicit unknowns and evidence attribution; executable nested constraints remain deferred.", "value_kind": "object", "cardinality": "1", "required": true, "source_refs": [ "SRC-001", "SRC-002", "SRC-003", "SRC-004", "SRC-005", "SRC-006", "SRC-007" ] } ], "artifacts": [ { "id": "supplier-mapping-artifact", "name": "Mappings and safe agent operations evidence artifact", "description": "Minimal revisioned supplier assertion and authorized evidence references; no bank details, credentials or unnecessary confidential assessment payloads.", "media_or_form": [ "text/markdown", "application/json", "application/yaml", "external reference" ], "serial": true, "identity_strategy": "Master-qualified ID or Dimension UUID, immutable revision and digest; timestamp is not unique identity.", "source_refs": [ "SRC-001", "SRC-002", "SRC-003", "SRC-004", "SRC-005", "SRC-006", "SRC-007" ] } ], "inline_only_rationale": null } ] } ] } ] }, "functions": [ { "id": "resolve-supplier", "name": "Resolve scoped relationship", "description": "Identify a relationship without merging the party master.", "inputs": [ "Qualified ID or candidates", "Buyer/collaboration scope" ], "outputs": [ "Relationship reference or explicit ambiguity" ], "preconditions": [ "Read permission", "No name-only identity merge" ], "effects": [ "Read-only lookup, no supplier approval" ], "source_refs": [ "SRC-001", "SRC-002", "SRC-005" ] }, { "id": "record-qualification", "name": "Record qualification evidence", "description": "Append an attributed qualification claim or assessment.", "inputs": [ "Criteria and evidence refs", "Attribution and validity", "Expected head" ], "outputs": [ "New assertion or conflict" ], "preconditions": [ "Write scope", "Source and criteria declared" ], "effects": [ "Local record only, no certification or transaction authorization created" ], "source_refs": [ "SRC-003", "SRC-004", "SRC-006" ] }, { "id": "record-authorization", "name": "Revise attributed authorization", "description": "Record a decision made by the appropriate master.", "inputs": [ "Decision reference", "Scope and source scheme", "Expected head" ], "outputs": [ "Attributed successor status or unknown" ], "preconditions": [ "Decision authority verified", "Write delegation" ], "effects": [ "No approval execution, purchase, payment or access grant" ], "source_refs": [ "SRC-004", "SRC-005", "SRC-006" ] }, { "id": "link-supplier-masters", "name": "Link commercial masters", "description": "Connect typed procurement and role references.", "inputs": [ "Agreement/award refs", "Party-role mapping", "Expected revision" ], "outputs": [ "Traceable links or unresolved references" ], "preconditions": [ "Target kind checked", "Reference disclosure permitted" ], "effects": [ "No contract change or payee redirection" ], "source_refs": [ "SRC-001", "SRC-002", "SRC-005" ] }, { "id": "record-supplier-review", "name": "Record change and exit context", "description": "Preserve review triggers and continuity responsibilities.", "inputs": [ "Change evidence", "Review/exit decision refs", "Valid and recorded time" ], "outputs": [ "Revision with outstanding-master references" ], "preconditions": [ "Write scope", "Expected-head check", "No automatic approval transfer" ], "effects": [ "Local context only; no exclusion, cancellation or service cut-off" ], "source_refs": [ "SRC-003", "SRC-004", "SRC-006", "SRC-007" ] }, { "id": "export-supplier", "name": "Export permitted projection", "description": "Map minimized fields to a declared target profile.", "inputs": [ "Authorized fields", "Pinned target profile", "Loss definitions" ], "outputs": [ "Projection or refusal with losses" ], "preconditions": [ "Disclosure authority", "Role and approval semantics checked" ], "effects": [ "No external publication/transmission without authority; incompatible meaning yields refusal" ], "source_refs": [ "SRC-001", "SRC-002", "SRC-003", "SRC-004", "SRC-005" ] } ], "composition": [ { "target": "WM-ORG-012", "relation": "REFERENCE", "purpose": "Proposed broader inter-organization link; not an approved legal relationship or composition edge.", "required": false, "source_refs": [ "SRC-001", "SRC-005" ] }, { "target": "https://standard.open-contracting.org/latest/en/guidance/map/buyers_suppliers/", "relation": "ALIGN", "purpose": "Candidate procurement supplier role mapping, not universal approved-vendor semantics.", "required": false, "source_refs": [ "SRC-001" ] }, { "target": "https://docs.oasis-open.org/ubl/os-UBL-2.3/UBL-2.3.html", "relation": "ALIGN", "purpose": "Candidate document role alignment, not full UBL conformance.", "required": false, "source_refs": [ "SRC-002" ] }, { "target": "https://www.w3.org/TR/prov-o/", "relation": "ALIGN", "purpose": "Candidate assessment/revision attribution vocabulary.", "required": false, "source_refs": [ "SRC-006" ] } ], "serviceLayers": { "dimension": { "owner_package_requirements": [ "Declare relationship owner, steward and delegated reviewers.", "Identify party, qualification, contract, risk and transaction masters.", "Bind access, evidence, retention and cross-Dimension disclosure policies." ], "namespace_guidance": "Qualify relationship ID by master and buyer/collaboration scope; party names or tax IDs alone do not identify a relationship.", "registry_links": [ "Supplier/partner relationship registry", "Party and capability references", "Qualification, agreement and assessment registries", "Policy, event and revision registries" ] }, "canon_and_patch": { "canonicalization_rules": [ "Preserve role, buying scope, source state scheme and evidence freshness.", "Keep declaration, assessment, approval and transaction authorization distinct." ], "patch_rules": [ "Add namespaced profiles pinned to base version and digest.", "Append corrections under expected-head checks; preserve disputed assertions and prior qualified scope." ], "compatibility_rules": [ "Changed role, qualification or risk scale semantics require explicit migration and loss reporting.", "Do not map expired or unknown evidence to approved, or group membership to authority." ] }, "artifact_rules": { "identity_priority": [ "Authoritative master-qualified identifier", "Governed issuer-qualified URI", "Dimension-issued UUID" ], "timestamp_rule": "RFC 3339 with seconds and explicit offset or Z for precise observed/recorded instants; retain uncertain or date-only source effects separately.", "serial_naming_rule": "Supplier artifact-kind prefix plus escaped stable ID and revision; do not expose personal names or account details in paths.", "integrity_rule": "Check exact-byte digest, source revision and expected head; integrity does not prove qualification or risk truth." }, "policies": [ "Registration is not qualification and qualification is not authorization for every transaction.", "Assessment labels are attributed, time-scoped evidence; do not execute automatic exclusion or infer sensitive traits.", "Relationship updates do not cancel obligations, change payees or send communications.", "Minimize private evidence and keep separate master authority and access for each field." ], "crud": { "read": [ "Read owner purpose, scope, source scheme, evidence freshness and assurance before relying on status." ], "create": [ "Create authorized minimal relationship assertions with typed references and explicit unknowns." ], "update": [ "Append approved record changes under expected-head and scope checks; preserve competing source claims and lineage." ], "delete": [ "Apply authorized retention/correction with justified holds; local tombstone does not terminate contract or erase obligations." ] }, "roles": [ { "name": "Dimension owner", "responsibilities": [ "Sets purpose and delegation." ] }, { "name": "Relationship steward", "responsibilities": [ "Maintains scope, mastership and evidence review." ] }, { "name": "Contributor", "responsibilities": [ "Records authorized minimal supplier claims and references." ] }, { "name": "Reviewer", "responsibilities": [ "Assesses evidence quality, scope and disputed status." ] }, { "name": "Custodian", "responsibilities": [ "Enforces disclosure, retention and revision integrity." ] } ], "access": { "default_rule": "Deny unless purpose- and field-specific access is delegated; supplier registration grants no operational access.", "scopes": [ "bundle", "layer", "finding", "artifact" ], "exceptions": [ "Explicit time-limited delegated exceptions name approving role, fields and purpose." ], "audit_requirements": [ "Record actor, purpose, scope, decision and revision without confidential payloads or credentials." ] }, "agents_bootstrap": { "filename": "AGENTS.md", "required_fields": [ "Name", "Type", "Specification URL", "Storage type URL", "Interface URL", "Processes URL" ], "read_order": [ "Dimension purpose, authority and mastership", "Pinned model, counterparty role and buyer scope", "Qualification, assessment, commercial references and valid time", "Safe record operations, validation, extensions and retention" ] } }, "coverage": { "claim": "Bounded supplier/partner relationship context with twelve records and thirty-six questions; no independent review or executed procurement integration.", "confidence": "medium", "checklist": [ { "dimension": "identity", "status": "covered", "notes": "Master and buyer/collaboration scoped relationship." }, { "dimension": "classification", "status": "covered", "notes": "Declared supplier/partner role scheme." }, { "dimension": "direct properties", "status": "covered", "notes": "Supply scope, attributed state and qualification validity." }, { "dimension": "recognition", "status": "covered", "notes": "Evidence distinguishes registration, qualification and approval." }, { "dimension": "capabilities", "status": "covered", "notes": "Six bounded record functions, not procurement operations." }, { "dimension": "lifecycle", "status": "covered", "notes": "Change, suspension, exit and reinstatement context." }, { "dimension": "relationships", "status": "covered", "notes": "Typed party, sub-tier, agreement and payee references." }, { "dimension": "temporal", "status": "covered", "notes": "Effective, observed and recorded precision separated." }, { "dimension": "provenance", "status": "covered", "notes": "Declared versus assessed evidence and revision lineage." }, { "dimension": "ownership", "status": "covered", "notes": "Relationship stewardship distinct from decision authority." }, { "dimension": "access", "status": "covered", "notes": "Purpose-scoped field permissions and minimized disclosure." }, { "dimension": "retention", "status": "covered", "notes": "Correction and justified history under policy." }, { "dimension": "interoperability", "status": "covered", "notes": "Pinned source role mapping and loss-aware exchange." }, { "dimension": "validation", "status": "gap", "notes": "Structural research validation only; nested schemas and negative/round-trip/authorization fixtures not implemented." }, { "dimension": "Physical material and geometry", "status": "not-applicable", "notes": "Relationship is abstract; properties of goods and sites belong to referenced models." } ], "known_omissions": [ "Claude and Grok each timed out once; Codex-only draft has no independent external review.", "Selected clauses only; full source constraints, mutable release pins and asset-specific license reviews pending.", "TMF guide landing page returned 403; inspected conformance PDF is not the full guide. RFC3339 direct HEAD unavailable despite readable web text.", "No executable nested schema, procurement/qualification adapter or approval/exit/round-trip fixture delivered.", "Industry profiles, non-supply alliance details, approved composition edges and jurisdiction-specific interpretation require later work." ], "conflicts": [], "regional_assumptions": [ "NIST C-SCRM, OCDS procurement, UBL document roles and vendor workflows have distinct scopes and are not universal legal requirements." ], "adversarial_checks": [ "Registration cannot imply spend authorization.", "Category approval must not expand silently to other categories.", "Same party with multiple buyers remains multiple relationships.", "Payee differs from seller without redirecting payment here.", "Unknown sub-tier visibility is not low risk.", "Unexplained score is incomplete evidence, not exclusion authority.", "Suspension does not cancel contract obligations.", "Source disagreement remains contested until authorized resolution." ] }, "researchAdjudication": { "providerMode": "single-provider-waiver", "activeProviders": [ "codex" ], "waivedProviders": [ "claude", "grok" ], "providerPolicy": { "contract_version": "1.0.0", "mode": "single-provider-waiver", "effective_at": "2026-09-06T00:00:00Z", "scope": "Canonical single-stream subject-model research after the six-workstream consolidation", "active_providers": [ "codex" ], "waived_providers": [ { "provider": "claude", "authorized_by": "repository owner", "authorized_at": "2026-09-06T00:00:00Z", "reason": "Claude produced no result on prior 1800-second and 900-second attempts and again timed out on bounded 600-second Sonnet and 300-second Haiku passes. The owner prioritized completion over provider availability." }, { "provider": "grok", "authorized_by": "repository owner", "authorized_at": "2026-09-06T00:00:00Z", "reason": "The repository owner authorized completion without Grok when Grok is unavailable, slow or schema-invalid. Grok may still be attempted as a bounded supplemental reviewer, but its failure never blocks a valid Claude plus no-tools result." } ], "review_rule": "Codex may complete source-grounded fallback research after bounded Claude and Grok attempts fail. It requires a separate no-tools adversarial audit and remains reviewable-draft with a visible absence-of-external-review hold.", "supplemental_provider_attempts": [ { "provider": "claude", "required": false, "maximum_attempts": 1, "failure_policy": "record-and-continue", "admission_rule": "Use only a locally schema-valid result whose sources and boundaries survive adjudication." }, { "provider": "grok", "required": false, "maximum_attempts": 1, "failure_policy": "record-and-continue", "admission_rule": "Use only a locally schema-valid result whose sources and boundaries survive adjudication." } ] }, "boundaryDecision": { "entry_kind": "relationship", "status": "accepted", "rationale": "Buyer/collaboration-scoped qualification, risk and commercial context; party identity and transaction authority stay with their masters." }, "decisions": [ { "concept": "Scope and role", "disposition": "accepted", "rationale": "Multiple relationships can reference one party; document roles do not establish legal control." }, { "concept": "Qualification and approval", "disposition": "accepted", "rationale": "Registration, assessed evidence, approved scope and transaction authority remain distinct." }, { "concept": "Risk and continuity", "disposition": "accepted with limitations", "rationale": "Source-scoped assessments and exit references cannot execute exclusion, payments or contract cancellation." }, { "concept": "Broader partner profiles", "disposition": "deferred", "rationale": "Non-supply alliance detail and approved composition need separate profiles." }, { "concept": "Source and runtime completeness", "disposition": "deferred", "rationale": "Selected clauses support the proposal; full constraints, licenses and executable adapter fixtures remain pending." }, { "concept": "External review", "disposition": "accepted with mandatory hold", "rationale": "Claude and Grok each timed out once; Codex frozen self-audit is not independent review." } ], "publicationHolds": [ "Codex-only result after one timeout each from Claude and Grok; self-audit is not independent review and assurance remains reviewable-draft.", "Selected source clauses only; full constraints, exact mutable release pins and asset-specific license review remain pending.", "TMF guide landing page returned 403; conformance PDF only was inspected. RFC3339 direct HEAD unavailable despite readable web text.", "Nested executable schemas, procurement adapters and approval/exit/privacy/round-trip fixtures are not implemented.", "Industry and non-supply alliance profiles, jurisdiction interpretation and approved composition remain deferred.", "Independent external review was explicitly waived by the repository owner; this codex-only result remains a reviewable draft." ], "deferredResearch": [ "Independent review and precise source/license verification.", "Executable nested constraints and authority/round-trip tests.", "Specialized supplier/alliance profiles and approved typed composition." ] }, "statistics": { "sources": 7, "bundles": 6, "layers": 12, "findings": 12, "questions": 36, "artifacts": 12, "functions": 6 } }