# Vercy AI instruction - YAML 1.2 (JSON-compatible) { "vercy": "1.0-draft", "publication": { "status": "published", "adjudicationStatus": "reviewable-draft", "publishableCanonical": false, "generatedAt": "2026-10-06T17:04:11Z", "synthesisSha256": "2cb4b573598d1d136bdd6d3d61555e5b74904599f0faf1ce26ccf583574c0349", "providerMode": "single-provider-waiver", "providers": [ "Codex" ], "waivedProviders": [ "Claude", "Grok" ] }, "metaModel": { "id": "WM-POL-012", "registryId": "vr.wm-pol-012", "name": "Public Benefit / Program", "version": "1.0.0-reviewable-draft", "previousVersions": [], "entryKind": "entity", "family": "World Models", "category": "Society, people and institutions", "industry": [ "Cross-industry" ], "domain": [ "SOC.POL.PRG" ], "tags": [ "public", "benefit", "program", "soc.pol.prg" ], "status": "published" }, "canonicalUrl": "https://ver.cy/models/wm-pol-012-public-benefit-program/", "sourceUrl": "https://github.com/ver-cy/world-models/tree/feat/mega-model-registry/research/runs/wm-pol-012", "model": { "registry_id": "vr.wm-pol-012", "model_id": "WM-POL-012", "name": "Public Benefit / Program", "entry_kind": "entity", "purpose": "Describe a public social-benefit program, its versioned provision rules and governed interfaces to assessment, delivery, review and monitoring.", "scope_statement": "One persistent public social-benefit program or scheme, with versioned benefit components and operational profiles. Individual cases, awarded rights, payments and care episodes are linked external instances. This is a proposed research model, not an eligibility engine or a legal authorization.", "in_scope": [ "Program identity, authority, territory, benefit forms, eligibility and evidence profiles", "Program-specific interfaces to applications, determinations, entitlement and delivery masters", "Funding context, continuity, redress routes, statistical definitions and evidence safeguards" ], "out_of_scope": [ "Generic project or commercial program management, private insurance claims and charitable grant lifecycles", "Person and household identity masters, detailed health records, care treatment and financial ledger execution", "Making individual eligibility decisions, paying benefits, imposing recovery or suspension, filing appeals or implementing legal calculation engines" ], "boundary_notes": [ { "neighbor": "WM-POL-001", "distinction": "Pin enabling instruments and amendments; legal-instrument lifecycle remains external.", "source_refs": [ "SRC-001" ] }, { "neighbor": "WM-POL-015", "distinction": "Bind territorial applicability and jurisdiction profile; no worldwide rule assumption.", "source_refs": [ "SRC-001", "SRC-003" ] }, { "neighbor": "WM-POL-016", "distinction": "Resolve competent administering institutions and evidenced delegation.", "source_refs": [ "SRC-001", "SRC-002" ] }, { "neighbor": "WM-PER-001", "distinction": "Bind person identities only when authorized; do not create a recipient registry here.", "source_refs": [ "SRC-003", "SRC-007" ] }, { "neighbor": "WM-PER-004", "distinction": "Bind household assessment units and membership semantics without equating household and person.", "source_refs": [ "SRC-003" ] }, { "neighbor": "WM-PER-006", "distinction": "Use relevant life-event evidence as a qualified trigger, not an automatic award change.", "source_refs": [ "SRC-005" ] }, { "neighbor": "WM-REC-009", "distinction": "Individual applications have separate identity and lifecycle; automatic enrolment can omit an application.", "source_refs": [ "SRC-001", "SRC-003" ] }, { "neighbor": "WM-POL-017", "distinction": "Administrative cases own procedural progress and review case records; this program supplies profile bindings.", "source_refs": [ "SRC-006" ] }, { "neighbor": "WM-POL-021", "distinction": "Decision authority, reasons and legal effect remain externally mastered.", "source_refs": [ "SRC-006" ] }, { "neighbor": "WM-POL-014", "distinction": "Granted rights and entitlement instances remain distinct from program benefit schedules.", "source_refs": [ "SRC-001", "SRC-004" ] }, { "neighbor": "WM-POL-018", "distinction": "Public service descriptions and channels support provision without making every service a benefit.", "source_refs": [ "SRC-001", "SRC-004" ] }, { "neighbor": "WM-XCT-014", "distinction": "Financial accounts and postings stay ledger-owned; cashless benefits do not require ledger composition.", "source_refs": [ "SRC-002", "SRC-004" ] }, { "neighbor": "WM-XCT-002", "distinction": "Access contracts and any consent records remain externally governed; consent is not the sole possible legal basis.", "source_refs": [ "SRC-007" ] }, { "neighbor": "WM-XCT-004", "distinction": "Link audit evidence without taking ownership of audit-trail semantics.", "source_refs": [ "SRC-007", "SRC-008" ] }, { "neighbor": "WM-XCT-012", "distinction": "Preserve provenance bindings; generic provenance semantics stay external.", "source_refs": [ "SRC-008" ] }, { "neighbor": "Legacy B13 Social Provision and Benefit", "distinction": "Legacy program definition is retained; entitlement, delivery and appeal records become separately mastered links. Legacy conformance, universal access and consent-only claims are not inherited.", "source_refs": [ "SRC-001", "SRC-003", "SRC-006", "SRC-007" ] } ] }, "sources": [ { "id": "SRC-001", "title": "Social Protection Floors: Governance and Financing - annex reproducing Recommendation No. 202", "organization": "International Labour Organization", "url": "https://www.ilo.org/sites/default/files/wcmsp5/groups/public/%40ed_protect/%40soc_sec/documents/publication/wcms_538987.pdf", "version_or_date": "R202 adopted 2012-06-14; reproduced annex, printed pages 177-186", "source_type": "standard", "primary_source": true, "authority_tier": 1, "accessed_at": "2026-10-06T17:02:03Z", "relevance": "Recommendation paragraphs 3, 7-11 and 19-24: program guarantees, financing, review, participation and monitoring. Guidance to states, not a domestic eligibility rule." }, { "id": "SRC-002", "title": "ESSPROS - Information on data", "organization": "Eurostat", "url": "https://ec.europa.eu/eurostat/web/social-protection/information-data", "version_or_date": "Undated live overview accessed 2026-10-06; current manual edition not independently pinned", "source_type": "public-authority", "primary_source": true, "authority_tier": 1, "accessed_at": "2026-10-06T17:02:03Z", "relevance": "Scheme as a statistical unit, benefit functions, cash and in-kind provision, receipts and expenditure. Statistical classification is not legal entitlement." }, { "id": "SRC-003", "title": "Universal Credit - Eligibility", "organization": "Department for Work and Pensions", "url": "https://www.gov.uk/universal-credit/eligibility", "version_or_date": "Live guidance accessed 2026-10-06; legislation and territorial exceptions require profile verification", "source_type": "public-authority", "primary_source": true, "authority_tier": 1, "accessed_at": "2026-10-06T17:02:03Z", "relevance": "Selected UK example of household claims, criteria and exceptions. No numeric threshold is adopted as a universal rule." }, { "id": "SRC-004", "title": "Universal Credit - How you are paid", "organization": "Department for Work and Pensions", "url": "https://www.gov.uk/universal-credit/how-youre-paid", "version_or_date": "Live guidance accessed 2026-10-06; legislation and territorial exceptions require profile verification", "source_type": "public-authority", "primary_source": true, "authority_tier": 1, "accessed_at": "2026-10-06T17:02:03Z", "relevance": "Assessment periods, payment timing and alternative arrangements illustrate separation of award scope from delivery channel." }, { "id": "SRC-005", "title": "Universal Credit - Report a change of circumstances", "organization": "Department for Work and Pensions", "url": "https://www.gov.uk/universal-credit/changes-of-circumstances", "version_or_date": "Live guidance accessed 2026-10-06; legislation and territorial exceptions require profile verification", "source_type": "public-authority", "primary_source": true, "authority_tier": 1, "accessed_at": "2026-10-06T17:02:03Z", "relevance": "Changes can affect an assessment period and give rise to adjustment or overpayment review. Detection alone is not a decision." }, { "id": "SRC-006", "title": "Challenge a benefit decision - Mandatory reconsideration", "organization": "Department for Work and Pensions", "url": "https://www.gov.uk/mandatory-reconsideration", "version_or_date": "Live guidance accessed 2026-10-06; decision-specific exceptions stated", "source_type": "public-authority", "primary_source": true, "authority_tier": 1, "accessed_at": "2026-10-06T17:02:03Z", "relevance": "Reasons, evidence, review routes and exceptions. The guidance does not establish one appeal route or deadline for every benefit." }, { "id": "SRC-007", "title": "What are the rules on special category data?", "organization": "Information Commissioner's Office", "url": "https://ico.org.uk/for-organisations/uk-gdpr-guidance-and-resources/lawful-basis/special-category-data/what-are-the-rules-on-special-category-data/", "version_or_date": "Accessed 2026-10-06; page explicitly under review following Data (Use and Access) Act changes", "source_type": "public-authority", "primary_source": true, "authority_tier": 1, "accessed_at": "2026-10-06T17:02:03Z", "relevance": "Purpose, lawful basis, special-category condition, necessity, minimisation and safeguards. Under-review guidance is not a verified current automated-decision rule." }, { "id": "SRC-008", "title": "PROV-O: The PROV Ontology", "organization": "World Wide Web Consortium", "url": "https://www.w3.org/TR/prov-o/", "version_or_date": "W3C Recommendation 2013-04-30; sections 3.1-3.3", "source_type": "ontology", "primary_source": true, "authority_tier": 1, "accessed_at": "2026-10-06T17:02:03Z", "relevance": "Conceptual alignment for attribution, derivation, revisions and evidence times; no implemented mapping or authenticity certification." } ], "structure": { "bundles": [ { "id": "bundle-program", "name": "Program foundation", "description": "Identity and authority anchor the persistent program.", "rationale": "Proposed research grouping for identity and authority anchor the persistent program.", "source_refs": [ "SRC-001", "SRC-002", "SRC-008" ], "layers": [ { "id": "layer-identity", "name": "Program identity", "description": "One governed program identity persists through rule revisions; a beneficiary award or a statistical grouping is not the program.", "source_refs": [ "SRC-001", "SRC-002", "SRC-008" ], "findings": [ { "id": "finding-identity", "name": "Program identity", "description": "One governed program identity persists through rule revisions; a beneficiary award or a statistical grouping is not the program.", "source_refs": [ "SRC-001", "SRC-002", "SRC-008" ], "questions": [ { "id": "question-identity-1", "text": "Which authoritative identifier and namespace distinguish this program from similarly named schemes?", "kind": "identity", "answer_data": [ "program-id", "namespace", "master-reference" ] }, { "id": "question-identity-2", "text": "Which benefit functions and cash, in-kind or service forms does the program declare?", "kind": "classification", "answer_data": [ "function-codes", "classification-version", "benefit-forms" ] }, { "id": "question-identity-3", "text": "Which predecessor, successor or component schemes are linked without asserting identity equivalence?", "kind": "relationship", "answer_data": [ "related-programs", "relation-type", "mapping-evidence" ] } ], "data_elements": [ { "id": "data-identity-1", "name": "Program Id", "description": "Candidate answer group: program-id, namespace, master-reference. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-001", "SRC-002", "SRC-008" ] }, { "id": "data-identity-2", "name": "Function Codes", "description": "Candidate answer group: function-codes, classification-version, benefit-forms. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-001", "SRC-002", "SRC-008" ] }, { "id": "data-identity-3", "name": "Related Programs", "description": "Candidate answer group: related-programs, relation-type, mapping-evidence. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-001", "SRC-002", "SRC-008" ] } ], "artifacts": [ { "id": "artifact-identity", "name": "Program identity and classification record", "description": "Versioned program-level evidence or interface profile; references to protected case masters remain access-controlled.", "media_or_form": [ "structured record", "reviewable document" ], "serial": true, "identity_strategy": "Authoritative master-system ID and namespace first; governed URI second; local opaque UUID only with reconciliation status. Revision is separate from identity.", "source_refs": [ "SRC-001", "SRC-002", "SRC-008" ] } ], "inline_only_rationale": null } ] }, { "id": "layer-mandate", "name": "Mandate and stewardship", "description": "Record the jurisdiction, instruments and accountable administering roles as qualified references rather than inferring competence from an operator account.", "source_refs": [ "SRC-001", "SRC-002" ], "findings": [ { "id": "finding-mandate", "name": "Mandate and stewardship", "description": "Record the jurisdiction, instruments and accountable administering roles as qualified references rather than inferring competence from an operator account.", "source_refs": [ "SRC-001", "SRC-002" ], "questions": [ { "id": "question-mandate-1", "text": "Which instrument and territorial profile authorize the program and its administering body?", "kind": "authority", "answer_data": [ "instrument-reference", "jurisdiction", "authority-scope" ] }, { "id": "question-mandate-2", "text": "Which public program steward is accountable for rules, delivery coordination and published information?", "kind": "ownership", "answer_data": [ "steward-role", "delegation-reference", "responsibility-scope" ] }, { "id": "question-mandate-3", "text": "Which effective interval and transition basis apply to each mandate revision?", "kind": "temporal", "answer_data": [ "effective-interval", "transition-basis", "revision-reference" ] } ], "data_elements": [ { "id": "data-mandate-1", "name": "Instrument Reference", "description": "Candidate answer group: instrument-reference, jurisdiction, authority-scope. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-001", "SRC-002" ] }, { "id": "data-mandate-2", "name": "Steward Role", "description": "Candidate answer group: steward-role, delegation-reference, responsibility-scope. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-001", "SRC-002" ] }, { "id": "data-mandate-3", "name": "Effective Interval", "description": "Candidate answer group: effective-interval, transition-basis, revision-reference. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-001", "SRC-002" ] } ], "artifacts": [ { "id": "artifact-mandate", "name": "Mandate and responsibility profile", "description": "Versioned program-level evidence or interface profile; references to protected case masters remain access-controlled.", "media_or_form": [ "structured record", "reviewable document" ], "serial": true, "identity_strategy": "Authoritative master-system ID and namespace first; governed URI second; local opaque UUID only with reconciliation status. Revision is separate from identity.", "source_refs": [ "SRC-001", "SRC-002" ] } ], "inline_only_rationale": null } ] } ] }, { "id": "bundle-qualification", "name": "Qualification and intake", "description": "Eligibility and evidence profiles define the assessment interface.", "rationale": "Proposed research grouping for eligibility and evidence profiles define the assessment interface.", "source_refs": [ "SRC-001", "SRC-003", "SRC-006", "SRC-007" ], "layers": [ { "id": "layer-eligibility", "name": "Eligibility profile", "description": "Express program-specific qualifying conditions with exceptions and assessment units. Contributory status, means testing and coverage breadth are separate axes.", "source_refs": [ "SRC-001", "SRC-003" ], "findings": [ { "id": "finding-eligibility", "name": "Eligibility profile", "description": "Express program-specific qualifying conditions with exceptions and assessment units. Contributory status, means testing and coverage breadth are separate axes.", "source_refs": [ "SRC-001", "SRC-003" ], "questions": [ { "id": "question-eligibility-1", "text": "Which qualifying rules, exceptions and evidence categories apply to the relevant program revision?", "kind": "requirement", "answer_data": [ "rule-references", "exception-basis", "evidence-categories" ] }, { "id": "question-eligibility-2", "text": "Is entitlement assessed for a person, household or other defined unit, and how are members related?", "kind": "composition", "answer_data": [ "assessment-unit", "membership-rule", "party-model-references" ] }, { "id": "question-eligibility-3", "text": "How are overlapping benefits, contribution conditions and means tests distinguished in this profile?", "kind": "constraint", "answer_data": [ "coordination-rule", "contribution-condition", "means-test-reference" ] } ], "data_elements": [ { "id": "data-eligibility-1", "name": "Rule References", "description": "Candidate answer group: rule-references, exception-basis, evidence-categories. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-001", "SRC-003" ] }, { "id": "data-eligibility-2", "name": "Assessment Unit", "description": "Candidate answer group: assessment-unit, membership-rule, party-model-references. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-001", "SRC-003" ] }, { "id": "data-eligibility-3", "name": "Coordination Rule", "description": "Candidate answer group: coordination-rule, contribution-condition, means-test-reference. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-001", "SRC-003" ] } ], "artifacts": [ { "id": "artifact-eligibility", "name": "Eligibility and coordination profile", "description": "Versioned program-level evidence or interface profile; references to protected case masters remain access-controlled.", "media_or_form": [ "structured record", "reviewable document" ], "serial": true, "identity_strategy": "Authoritative master-system ID and namespace first; governed URI second; local opaque UUID only with reconciliation status. Revision is separate from identity.", "source_refs": [ "SRC-001", "SRC-003" ] } ], "inline_only_rationale": null } ] }, { "id": "layer-intake", "name": "Intake and evidence requirements", "description": "Describe application or automatic-enrolment routes, minimal evidence and missing-information handling. Individual applications and adjudications remain external records.", "source_refs": [ "SRC-001", "SRC-003", "SRC-006", "SRC-007" ], "findings": [ { "id": "finding-intake", "name": "Intake and evidence requirements", "description": "Describe application or automatic-enrolment routes, minimal evidence and missing-information handling. Individual applications and adjudications remain external records.", "source_refs": [ "SRC-001", "SRC-003", "SRC-006", "SRC-007" ], "questions": [ { "id": "question-intake-1", "text": "Which application, assisted or automatic-enrolment routes are authorized for this program?", "kind": "process", "answer_data": [ "intake-routes", "channel-reference", "route-authority" ] }, { "id": "question-intake-2", "text": "Which facts require evidence, from which permitted sources and for which assessment date?", "kind": "evidence", "answer_data": [ "fact-category", "permitted-source", "relevant-date" ] }, { "id": "question-intake-3", "text": "How can missing, disputed or inaccessible evidence be corrected without being treated as a negative eligibility finding?", "kind": "exception", "answer_data": [ "unknown-state", "correction-route", "review-reference" ] } ], "data_elements": [ { "id": "data-intake-1", "name": "Intake Routes", "description": "Candidate answer group: intake-routes, channel-reference, route-authority. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-001", "SRC-003", "SRC-006", "SRC-007" ] }, { "id": "data-intake-2", "name": "Fact Category", "description": "Candidate answer group: fact-category, permitted-source, relevant-date. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-001", "SRC-003", "SRC-006", "SRC-007" ] }, { "id": "data-intake-3", "name": "Unknown State", "description": "Candidate answer group: unknown-state, correction-route, review-reference. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-001", "SRC-003", "SRC-006", "SRC-007" ] } ], "artifacts": [ { "id": "artifact-intake", "name": "Intake and evidence profile", "description": "Versioned program-level evidence or interface profile; references to protected case masters remain access-controlled.", "media_or_form": [ "structured record", "reviewable document" ], "serial": true, "identity_strategy": "Authoritative master-system ID and namespace first; governed URI second; local opaque UUID only with reconciliation status. Revision is separate from identity.", "source_refs": [ "SRC-001", "SRC-003", "SRC-006", "SRC-007" ] } ], "inline_only_rationale": null } ] } ] }, { "id": "bundle-provision", "name": "Provision and resources", "description": "Benefit design and financing are related but distinct.", "rationale": "Proposed research grouping for benefit design and financing are related but distinct.", "source_refs": [ "SRC-001", "SRC-002", "SRC-004" ], "layers": [ { "id": "layer-benefit", "name": "Benefit specification", "description": "Define the offered amount basis or service scope and its revision. A program schedule describes possible provision, not a granted right or proof of receipt.", "source_refs": [ "SRC-001", "SRC-002", "SRC-004" ], "findings": [ { "id": "finding-benefit", "name": "Benefit specification", "description": "Define the offered amount basis or service scope and its revision. A program schedule describes possible provision, not a granted right or proof of receipt.", "source_refs": [ "SRC-001", "SRC-002", "SRC-004" ], "questions": [ { "id": "question-benefit-1", "text": "What amount basis, currency or service quantity defines each offered benefit component?", "kind": "definition", "answer_data": [ "component-id", "amount-basis", "currency-or-unit", "service-scope" ] }, { "id": "question-benefit-2", "text": "Which rate or scope revision applies to each assessment period and transitional cohort?", "kind": "temporal", "answer_data": [ "rate-revision", "assessment-period-rule", "transition-cohort" ] }, { "id": "question-benefit-3", "text": "Which assumptions, limits and rounding or indexation rules must an adopted calculation profile validate?", "kind": "validation", "answer_data": [ "calculation-profile", "limits", "rounding-rule", "validation-state" ] } ], "data_elements": [ { "id": "data-benefit-1", "name": "Component Id", "description": "Candidate answer group: component-id, amount-basis, currency-or-unit, service-scope. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-001", "SRC-002", "SRC-004" ] }, { "id": "data-benefit-2", "name": "Rate Revision", "description": "Candidate answer group: rate-revision, assessment-period-rule, transition-cohort. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-001", "SRC-002", "SRC-004" ] }, { "id": "data-benefit-3", "name": "Calculation Profile", "description": "Candidate answer group: calculation-profile, limits, rounding-rule, validation-state. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-001", "SRC-002", "SRC-004" ] } ], "artifacts": [ { "id": "artifact-benefit", "name": "Benefit schedule and scope profile", "description": "Versioned program-level evidence or interface profile; references to protected case masters remain access-controlled.", "media_or_form": [ "structured record", "reviewable document" ], "serial": true, "identity_strategy": "Authoritative master-system ID and namespace first; governed URI second; local opaque UUID only with reconciliation status. Revision is separate from identity.", "source_refs": [ "SRC-001", "SRC-002", "SRC-004" ] } ], "inline_only_rationale": null } ] }, { "id": "layer-funding", "name": "Funding and capacity", "description": "Record financing categories and evidenced resource constraints separately from legal entitlement. Budget exhaustion does not silently cancel a right.", "source_refs": [ "SRC-001", "SRC-002" ], "findings": [ { "id": "finding-funding", "name": "Funding and capacity", "description": "Record financing categories and evidenced resource constraints separately from legal entitlement. Budget exhaustion does not silently cancel a right.", "source_refs": [ "SRC-001", "SRC-002" ], "questions": [ { "id": "question-funding-1", "text": "Which funding sources and accounting references support the program?", "kind": "relationship", "answer_data": [ "funding-categories", "accounting-references", "funding-period" ] }, { "id": "question-funding-2", "text": "Which resource limits have an explicit legal effect and which are only operational risks?", "kind": "constraint", "answer_data": [ "capacity-limit", "legal-effect-basis", "risk-status" ] }, { "id": "question-funding-3", "text": "Which expenditure, commitments and administrative costs are reported with accounting period and method?", "kind": "measurement", "answer_data": [ "measure-definition", "period", "accounting-basis", "aggregate-reference" ] } ], "data_elements": [ { "id": "data-funding-1", "name": "Funding Categories", "description": "Candidate answer group: funding-categories, accounting-references, funding-period. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-001", "SRC-002" ] }, { "id": "data-funding-2", "name": "Capacity Limit", "description": "Candidate answer group: capacity-limit, legal-effect-basis, risk-status. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-001", "SRC-002" ] }, { "id": "data-funding-3", "name": "Measure Definition", "description": "Candidate answer group: measure-definition, period, accounting-basis, aggregate-reference. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-001", "SRC-002" ] } ], "artifacts": [ { "id": "artifact-funding", "name": "Funding and capacity assessment", "description": "Versioned program-level evidence or interface profile; references to protected case masters remain access-controlled.", "media_or_form": [ "structured record", "reviewable document" ], "serial": true, "identity_strategy": "Authoritative master-system ID and namespace first; governed URI second; local opaque UUID only with reconciliation status. Revision is separate from identity.", "source_refs": [ "SRC-001", "SRC-002" ] } ], "inline_only_rationale": null } ] } ] }, { "id": "bundle-fulfilment", "name": "Award and delivery interfaces", "description": "External determinations and delivery evidence bind to the program.", "rationale": "Proposed research grouping for external determinations and delivery evidence bind to the program.", "source_refs": [ "SRC-001", "SRC-002", "SRC-003", "SRC-004", "SRC-006", "SRC-008" ], "layers": [ { "id": "layer-award-links", "name": "Assessment and award interfaces", "description": "Keep benefit-specific bindings to external applications, decisions and entitlements, with reasons and rule revision. No individual determination is made by this model.", "source_refs": [ "SRC-003", "SRC-004", "SRC-006", "SRC-008" ], "findings": [ { "id": "finding-award-links", "name": "Assessment and award interfaces", "description": "Keep benefit-specific bindings to external applications, decisions and entitlements, with reasons and rule revision. No individual determination is made by this model.", "source_refs": [ "SRC-003", "SRC-004", "SRC-006", "SRC-008" ], "questions": [ { "id": "question-award-links-1", "text": "Which application, decision and entitlement masters can be linked to this program revision?", "kind": "relationship", "answer_data": [ "application-binding", "decision-binding", "entitlement-binding" ] }, { "id": "question-award-links-2", "text": "What rule version, evidence references and authorized decision source must accompany an award link?", "kind": "provenance", "answer_data": [ "rule-version", "evidence-references", "decision-authority" ] }, { "id": "question-award-links-3", "text": "How are pending, refused, granted and disputed outcomes distinguished from a simulation or missing result?", "kind": "state", "answer_data": [ "outcome-status", "assertion-status", "source-revision" ] } ], "data_elements": [ { "id": "data-award-links-1", "name": "Application Binding", "description": "Candidate answer group: application-binding, decision-binding, entitlement-binding. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-003", "SRC-004", "SRC-006", "SRC-008" ] }, { "id": "data-award-links-2", "name": "Rule Version", "description": "Candidate answer group: rule-version, evidence-references, decision-authority. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-003", "SRC-004", "SRC-006", "SRC-008" ] }, { "id": "data-award-links-3", "name": "Outcome Status", "description": "Candidate answer group: outcome-status, assertion-status, source-revision. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-003", "SRC-004", "SRC-006", "SRC-008" ] } ], "artifacts": [ { "id": "artifact-award-links", "name": "Award interface contract", "description": "Versioned program-level evidence or interface profile; references to protected case masters remain access-controlled.", "media_or_form": [ "structured record", "reviewable document" ], "serial": true, "identity_strategy": "Authoritative master-system ID and namespace first; governed URI second; local opaque UUID only with reconciliation status. Revision is separate from identity.", "source_refs": [ "SRC-003", "SRC-004", "SRC-006", "SRC-008" ] } ], "inline_only_rationale": null } ] }, { "id": "layer-delivery", "name": "Delivery and reconciliation interfaces", "description": "Define authorized money, in-kind and service delivery arrangements and evidence needed for reconciliation. Financial postings and care episodes are externally mastered.", "source_refs": [ "SRC-001", "SRC-002", "SRC-004", "SRC-008" ], "findings": [ { "id": "finding-delivery", "name": "Delivery and reconciliation interfaces", "description": "Define authorized money, in-kind and service delivery arrangements and evidence needed for reconciliation. Financial postings and care episodes are externally mastered.", "source_refs": [ "SRC-001", "SRC-002", "SRC-004", "SRC-008" ], "questions": [ { "id": "question-delivery-1", "text": "Which delivery channels and alternative arrangements support each benefit form?", "kind": "process", "answer_data": [ "channel-references", "alternative-arrangements", "benefit-form" ] }, { "id": "question-delivery-2", "text": "Which external evidence distinguishes an instruction, a completed delivery and an unresolved receipt?", "kind": "evidence", "answer_data": [ "instruction-reference", "delivery-evidence", "receipt-state" ] }, { "id": "question-delivery-3", "text": "How are partial, duplicate, failed or reversed deliveries escalated without reissuing an award?", "kind": "quality", "answer_data": [ "reconciliation-rule", "exception-route", "external-correction-reference" ] } ], "data_elements": [ { "id": "data-delivery-1", "name": "Channel References", "description": "Candidate answer group: channel-references, alternative-arrangements, benefit-form. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-001", "SRC-002", "SRC-004", "SRC-008" ] }, { "id": "data-delivery-2", "name": "Instruction Reference", "description": "Candidate answer group: instruction-reference, delivery-evidence, receipt-state. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-001", "SRC-002", "SRC-004", "SRC-008" ] }, { "id": "data-delivery-3", "name": "Reconciliation Rule", "description": "Candidate answer group: reconciliation-rule, exception-route, external-correction-reference. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-001", "SRC-002", "SRC-004", "SRC-008" ] } ], "artifacts": [ { "id": "artifact-delivery", "name": "Delivery interface and reconciliation profile", "description": "Versioned program-level evidence or interface profile; references to protected case masters remain access-controlled.", "media_or_form": [ "structured record", "reviewable document" ], "serial": true, "identity_strategy": "Authoritative master-system ID and namespace first; governed URI second; local opaque UUID only with reconciliation status. Revision is separate from identity.", "source_refs": [ "SRC-001", "SRC-002", "SRC-004", "SRC-008" ] } ], "inline_only_rationale": null } ] } ] }, { "id": "bundle-continuity", "name": "Continuity and redress", "description": "Change policies and review routes preserve contestability.", "rationale": "Proposed research grouping for change policies and review routes preserve contestability.", "source_refs": [ "SRC-001", "SRC-005", "SRC-006", "SRC-008" ], "layers": [ { "id": "layer-change", "name": "Change and continuity rules", "description": "Describe review triggers, supersession and closure policies. Observed circumstances and program revisions are separate from legally effective changes to awards.", "source_refs": [ "SRC-001", "SRC-005", "SRC-008" ], "findings": [ { "id": "finding-change", "name": "Change and continuity rules", "description": "Describe review triggers, supersession and closure policies. Observed circumstances and program revisions are separate from legally effective changes to awards.", "source_refs": [ "SRC-001", "SRC-005", "SRC-008" ], "questions": [ { "id": "question-change-1", "text": "Which reported or observed changes trigger review and how is their source and disputed status recorded?", "kind": "event", "answer_data": [ "trigger-types", "source-reference", "dispute-state" ] }, { "id": "question-change-2", "text": "How does the profile distinguish occurrence, reporting, assessment and legal-effect dates?", "kind": "temporal", "answer_data": [ "occurrence-date", "reported-at", "assessment-period", "legal-effect-date" ] }, { "id": "question-change-3", "text": "Which transition, suspension, recovery or closure rules preserve continuity and require an external decision?", "kind": "lifecycle", "answer_data": [ "transition-rules", "decision-preconditions", "continuity-measures" ] } ], "data_elements": [ { "id": "data-change-1", "name": "Trigger Types", "description": "Candidate answer group: trigger-types, source-reference, dispute-state. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-001", "SRC-005", "SRC-008" ] }, { "id": "data-change-2", "name": "Occurrence Date", "description": "Candidate answer group: occurrence-date, reported-at, assessment-period, legal-effect-date. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-001", "SRC-005", "SRC-008" ] }, { "id": "data-change-3", "name": "Transition Rules", "description": "Candidate answer group: transition-rules, decision-preconditions, continuity-measures. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-001", "SRC-005", "SRC-008" ] } ], "artifacts": [ { "id": "artifact-change", "name": "Change and continuity profile", "description": "Versioned program-level evidence or interface profile; references to protected case masters remain access-controlled.", "media_or_form": [ "structured record", "reviewable document" ], "serial": true, "identity_strategy": "Authoritative master-system ID and namespace first; governed URI second; local opaque UUID only with reconciliation status. Revision is separate from identity.", "source_refs": [ "SRC-001", "SRC-005", "SRC-008" ] } ], "inline_only_rationale": null } ] }, { "id": "layer-redress", "name": "Review and redress routes", "description": "Describe accessible complaint, reconsideration and appeal routes with decision-specific conditions. Complaint handling, formal review and court proceedings remain distinct.", "source_refs": [ "SRC-001", "SRC-006" ], "findings": [ { "id": "finding-redress", "name": "Review and redress routes", "description": "Describe accessible complaint, reconsideration and appeal routes with decision-specific conditions. Complaint handling, formal review and court proceedings remain distinct.", "source_refs": [ "SRC-001", "SRC-006" ], "questions": [ { "id": "question-redress-1", "text": "Which accessible review channels, representation arrangements and reasons notices are provided?", "kind": "access", "answer_data": [ "review-channels", "accessibility-support", "representation-rule", "notice-profile" ] }, { "id": "question-redress-2", "text": "Which decision types, time rules and exceptions govern each redress route?", "kind": "constraint", "answer_data": [ "decision-types", "time-rule-reference", "exception-basis" ] }, { "id": "question-redress-3", "text": "How are review outcomes and remedial delivery references linked without assuming that an appeal suspends the original decision?", "kind": "relationship", "answer_data": [ "review-case-reference", "outcome-reference", "suspension-basis", "remedy-delivery-reference" ] } ], "data_elements": [ { "id": "data-redress-1", "name": "Review Channels", "description": "Candidate answer group: review-channels, accessibility-support, representation-rule, notice-profile. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-001", "SRC-006" ] }, { "id": "data-redress-2", "name": "Decision Types", "description": "Candidate answer group: decision-types, time-rule-reference, exception-basis. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-001", "SRC-006" ] }, { "id": "data-redress-3", "name": "Review Case Reference", "description": "Candidate answer group: review-case-reference, outcome-reference, suspension-basis, remedy-delivery-reference. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-001", "SRC-006" ] } ], "artifacts": [ { "id": "artifact-redress", "name": "Review and redress profile", "description": "Versioned program-level evidence or interface profile; references to protected case masters remain access-controlled.", "media_or_form": [ "structured record", "reviewable document" ], "serial": true, "identity_strategy": "Authoritative master-system ID and namespace first; governed URI second; local opaque UUID only with reconciliation status. Revision is separate from identity.", "source_refs": [ "SRC-001", "SRC-006" ] } ], "inline_only_rationale": null } ] } ] }, { "id": "bundle-assurance", "name": "Monitoring and safeguards", "description": "Aggregates, privacy and provenance support accountable administration.", "rationale": "Proposed research grouping for aggregates, privacy and provenance support accountable administration.", "source_refs": [ "SRC-001", "SRC-002", "SRC-007", "SRC-008" ], "layers": [ { "id": "layer-monitoring", "name": "Coverage and performance evidence", "description": "Define measures of reach, timeliness, spending and adequacy with denominators and uncertainty. Statistical benefit functions do not classify individual eligibility.", "source_refs": [ "SRC-001", "SRC-002", "SRC-008" ], "findings": [ { "id": "finding-monitoring", "name": "Coverage and performance evidence", "description": "Define measures of reach, timeliness, spending and adequacy with denominators and uncertainty. Statistical benefit functions do not classify individual eligibility.", "source_refs": [ "SRC-001", "SRC-002", "SRC-008" ], "questions": [ { "id": "question-monitoring-1", "text": "Which coverage, timeliness or adequacy indicators are used with defined populations, periods and units?", "kind": "measurement", "answer_data": [ "indicator-definition", "denominator", "period", "unit" ] }, { "id": "question-monitoring-2", "text": "What missingness, double-counting or comparability limits qualify the reported measures?", "kind": "quality", "answer_data": [ "quality-flags", "deduplication-method", "comparability-limit" ] }, { "id": "question-monitoring-3", "text": "Which statistical classification version and mapping losses accompany an external report?", "kind": "interoperability", "answer_data": [ "classification-version", "mapping-reference", "loss-report" ] } ], "data_elements": [ { "id": "data-monitoring-1", "name": "Indicator Definition", "description": "Candidate answer group: indicator-definition, denominator, period, unit. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-001", "SRC-002", "SRC-008" ] }, { "id": "data-monitoring-2", "name": "Quality Flags", "description": "Candidate answer group: quality-flags, deduplication-method, comparability-limit. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-001", "SRC-002", "SRC-008" ] }, { "id": "data-monitoring-3", "name": "Classification Version", "description": "Candidate answer group: classification-version, mapping-reference, loss-report. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-001", "SRC-002", "SRC-008" ] } ], "artifacts": [ { "id": "artifact-monitoring", "name": "Program monitoring profile", "description": "Versioned program-level evidence or interface profile; references to protected case masters remain access-controlled.", "media_or_form": [ "structured record", "reviewable document" ], "serial": true, "identity_strategy": "Authoritative master-system ID and namespace first; governed URI second; local opaque UUID only with reconciliation status. Revision is separate from identity.", "source_refs": [ "SRC-001", "SRC-002", "SRC-008" ] } ], "inline_only_rationale": null } ] }, { "id": "layer-safeguards", "name": "Data safeguards and evidence continuity", "description": "Separate public program descriptions from protected recipient links. Require an applicable basis, minimal data, retention rules and accountable source provenance.", "source_refs": [ "SRC-001", "SRC-007", "SRC-008" ], "findings": [ { "id": "finding-safeguards", "name": "Data safeguards and evidence continuity", "description": "Separate public program descriptions from protected recipient links. Require an applicable basis, minimal data, retention rules and accountable source provenance.", "source_refs": [ "SRC-001", "SRC-007", "SRC-008" ], "questions": [ { "id": "question-safeguards-1", "text": "What lawful purpose, processing basis and additional sensitive-data condition authorize each data category?", "kind": "privacy", "answer_data": [ "purpose", "lawful-basis", "sensitive-data-condition", "profile-review" ] }, { "id": "question-safeguards-2", "text": "Which schedules, holds and lawful disposal rules apply to program evidence and protected link payloads?", "kind": "retention", "answer_data": [ "retention-schedule", "hold-reference", "disposal-authority" ] }, { "id": "question-safeguards-3", "text": "Which recipient scopes, redactions and audit records prevent a program catalogue from exposing personal cases?", "kind": "security", "answer_data": [ "recipient-scope", "redaction-policy", "access-audit-reference" ] } ], "data_elements": [ { "id": "data-safeguards-1", "name": "Purpose", "description": "Candidate answer group: purpose, lawful-basis, sensitive-data-condition, profile-review. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-001", "SRC-007", "SRC-008" ] }, { "id": "data-safeguards-2", "name": "Retention Schedule", "description": "Candidate answer group: retention-schedule, hold-reference, disposal-authority. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-001", "SRC-007", "SRC-008" ] }, { "id": "data-safeguards-3", "name": "Recipient Scope", "description": "Candidate answer group: recipient-scope, redaction-policy, access-audit-reference. Preserve unknown, disputed and not-applicable values with reasons; nested binding remains profile work.", "value_kind": "object", "cardinality": "0..1", "required": false, "source_refs": [ "SRC-001", "SRC-007", "SRC-008" ] } ], "artifacts": [ { "id": "artifact-safeguards", "name": "Data safeguard and provenance profile", "description": "Versioned program-level evidence or interface profile; references to protected case masters remain access-controlled.", "media_or_form": [ "structured record", "reviewable document" ], "serial": true, "identity_strategy": "Authoritative master-system ID and namespace first; governed URI second; local opaque UUID only with reconciliation status. Revision is separate from identity.", "source_refs": [ "SRC-001", "SRC-007", "SRC-008" ] } ], "inline_only_rationale": null } ] } ] } ] }, "functions": [ { "id": "function-register-program", "name": "Register program description", "description": "Proposed, unimplemented local operation. Register program description without deciding eligibility, changing a legal right, transmitting a payment or submitting an appeal.", "inputs": [ "program identity, mandate evidence and steward", "actor, purpose, expected revision and idempotency key" ], "outputs": [ "draft program record", "refusal with reason if authority, profile, provenance or disclosure checks fail" ], "preconditions": [ "Verified role and purpose-specific permission", "Required source references resolve with version and uncertainty state", "Expected revision matches; relevant legal and data-use profile approved before operational use" ], "effects": [ "Append a local versioned assertion and minimal audit reference; no external side effect", "Corrections supersede assertions; payload retention and erasure follow lawful disposition rules" ], "source_refs": [ "SRC-001", "SRC-002", "SRC-008" ] }, { "id": "function-bind-profile", "name": "Bind rule profile", "description": "Proposed, unimplemented local operation. Bind rule profile without deciding eligibility, changing a legal right, transmitting a payment or submitting an appeal.", "inputs": [ "program revision, eligibility and benefit profile references", "actor, purpose, expected revision and idempotency key" ], "outputs": [ "version-qualified local profile binding", "refusal with reason if authority, profile, provenance or disclosure checks fail" ], "preconditions": [ "Verified role and purpose-specific permission", "Required source references resolve with version and uncertainty state", "Expected revision matches; relevant legal and data-use profile approved before operational use" ], "effects": [ "Append a local versioned assertion and minimal audit reference; no external side effect", "Corrections supersede assertions; payload retention and erasure follow lawful disposition rules" ], "source_refs": [ "SRC-001", "SRC-003", "SRC-004", "SRC-008" ] }, { "id": "function-link-outcome", "name": "Link external outcome", "description": "Proposed, unimplemented local operation. Link external outcome without deciding eligibility, changing a legal right, transmitting a payment or submitting an appeal.", "inputs": [ "authorized application, decision or entitlement reference and source revision", "actor, purpose, expected revision and idempotency key" ], "outputs": [ "qualified outcome link or unresolved-link report", "refusal with reason if authority, profile, provenance or disclosure checks fail" ], "preconditions": [ "Verified role and purpose-specific permission", "Required source references resolve with version and uncertainty state", "Expected revision matches; relevant legal and data-use profile approved before operational use" ], "effects": [ "Append a local versioned assertion and minimal audit reference; no external side effect", "Corrections supersede assertions; payload retention and erasure follow lawful disposition rules" ], "source_refs": [ "SRC-003", "SRC-006", "SRC-008" ] }, { "id": "function-reconcile-delivery", "name": "Record reconciliation evidence", "description": "Proposed, unimplemented local operation. Record reconciliation evidence without deciding eligibility, changing a legal right, transmitting a payment or submitting an appeal.", "inputs": [ "external delivery evidence and linked award scope", "actor, purpose, expected revision and idempotency key" ], "outputs": [ "local discrepancy record with escalation reference", "refusal with reason if authority, profile, provenance or disclosure checks fail" ], "preconditions": [ "Verified role and purpose-specific permission", "Required source references resolve with version and uncertainty state", "Expected revision matches; relevant legal and data-use profile approved before operational use" ], "effects": [ "Append a local versioned assertion and minimal audit reference; no external side effect", "Corrections supersede assertions; payload retention and erasure follow lawful disposition rules" ], "source_refs": [ "SRC-002", "SRC-004", "SRC-008" ] }, { "id": "function-record-review", "name": "Record change or review reference", "description": "Proposed, unimplemented local operation. Record change or review reference without deciding eligibility, changing a legal right, transmitting a payment or submitting an appeal.", "inputs": [ "trigger or challenge evidence and external case reference", "actor, purpose, expected revision and idempotency key" ], "outputs": [ "local continuity or redress link", "refusal with reason if authority, profile, provenance or disclosure checks fail" ], "preconditions": [ "Verified role and purpose-specific permission", "Required source references resolve with version and uncertainty state", "Expected revision matches; relevant legal and data-use profile approved before operational use" ], "effects": [ "Append a local versioned assertion and minimal audit reference; no external side effect", "Corrections supersede assertions; payload retention and erasure follow lawful disposition rules" ], "source_refs": [ "SRC-005", "SRC-006", "SRC-008" ] }, { "id": "function-prepare-report", "name": "Prepare protected aggregate", "description": "Proposed, unimplemented local operation. Prepare protected aggregate without deciding eligibility, changing a legal right, transmitting a payment or submitting an appeal.", "inputs": [ "authorized aggregate inputs, indicator definitions and disclosure policy", "actor, purpose, expected revision and idempotency key" ], "outputs": [ "reviewable aggregate and quality report", "refusal with reason if authority, profile, provenance or disclosure checks fail" ], "preconditions": [ "Verified role and purpose-specific permission", "Required source references resolve with version and uncertainty state", "Expected revision matches; relevant legal and data-use profile approved before operational use" ], "effects": [ "Append a local versioned assertion and minimal audit reference; no external side effect", "Corrections supersede assertions; payload retention and erasure follow lawful disposition rules" ], "source_refs": [ "SRC-001", "SRC-002", "SRC-007", "SRC-008" ] } ], "composition": [ { "target": "WM-POL-001", "relation": "REFERENCE", "purpose": "Pin enabling instruments and amendments; legal-instrument lifecycle remains external.", "required": false, "source_refs": [ "SRC-001" ] }, { "target": "WM-POL-015", "relation": "REFERENCE", "purpose": "Bind territorial applicability and jurisdiction profile; no worldwide rule assumption.", "required": false, "source_refs": [ "SRC-001", "SRC-003" ] }, { "target": "WM-POL-016", "relation": "REFERENCE", "purpose": "Resolve competent administering institutions and evidenced delegation.", "required": false, "source_refs": [ "SRC-001", "SRC-002" ] }, { "target": "WM-PER-001", "relation": "REFERENCE", "purpose": "Bind person identities only when authorized; do not create a recipient registry here.", "required": false, "source_refs": [ "SRC-003", "SRC-007" ] }, { "target": "WM-PER-004", "relation": "REFERENCE", "purpose": "Bind household assessment units and membership semantics without equating household and person.", "required": false, "source_refs": [ "SRC-003" ] }, { "target": "WM-PER-006", "relation": "REFERENCE", "purpose": "Use relevant life-event evidence as a qualified trigger, not an automatic award change.", "required": false, "source_refs": [ "SRC-005" ] }, { "target": "WM-REC-009", "relation": "REFERENCE", "purpose": "Individual applications have separate identity and lifecycle; automatic enrolment can omit an application.", "required": false, "source_refs": [ "SRC-001", "SRC-003" ] }, { "target": "WM-POL-017", "relation": "REFERENCE", "purpose": "Administrative cases own procedural progress and review case records; this program supplies profile bindings.", "required": false, "source_refs": [ "SRC-006" ] }, { "target": "WM-POL-021", "relation": "REFERENCE", "purpose": "Decision authority, reasons and legal effect remain externally mastered.", "required": false, "source_refs": [ "SRC-006" ] }, { "target": "WM-POL-014", "relation": "REFERENCE", "purpose": "Granted rights and entitlement instances remain distinct from program benefit schedules.", "required": false, "source_refs": [ "SRC-001", "SRC-004" ] }, { "target": "WM-POL-018", "relation": "REFERENCE", "purpose": "Public service descriptions and channels support provision without making every service a benefit.", "required": false, "source_refs": [ "SRC-001", "SRC-004" ] }, { "target": "WM-XCT-014", "relation": "REFERENCE", "purpose": "Financial accounts and postings stay ledger-owned; cashless benefits do not require ledger composition.", "required": false, "source_refs": [ "SRC-002", "SRC-004" ] }, { "target": "WM-XCT-002", "relation": "REFERENCE", "purpose": "Access contracts and any consent records remain externally governed; consent is not the sole possible legal basis.", "required": false, "source_refs": [ "SRC-007" ] }, { "target": "WM-XCT-004", "relation": "REFERENCE", "purpose": "Link audit evidence without taking ownership of audit-trail semantics.", "required": false, "source_refs": [ "SRC-007", "SRC-008" ] }, { "target": "WM-XCT-012", "relation": "REFERENCE", "purpose": "Preserve provenance bindings; generic provenance semantics stay external.", "required": false, "source_refs": [ "SRC-008" ] }, { "target": "ESSPROS", "relation": "ALIGN", "purpose": "Map functions and financing categories conceptually with version and loss reporting; no statistical conformance claim.", "required": false, "source_refs": [ "SRC-002" ] }, { "target": "ILO Recommendation No. 202", "relation": "ALIGN", "purpose": "Use floor, governance and monitoring guidance as contextual alignment; national implementation must be verified.", "required": false, "source_refs": [ "SRC-001" ] }, { "target": "PROV-O", "relation": "ALIGN", "purpose": "Proposed attribution and derivation mapping only; no implemented RDF binding.", "required": false, "source_refs": [ "SRC-008" ] } ], "serviceLayers": { "dimension": { "owner_package_requirements": [ "Name the accountable public program steward, evidenced authority and delegation limits", "Provide namespace, master-system mapping, jurisdiction and versioned program profiles", "Provide purpose-based access, retention, disclosure and legal-review policies before operational adoption" ], "namespace_guidance": "Use an adopting authority namespace and opaque program ID. Names, dates and recipient identifiers are not program keys.", "registry_links": [ "vr.wm-pol-012", "Candidate neighbor bindings require version pins and semantic review before execution" ] }, "canon_and_patch": { "canonicalization_rules": [ "Keep program identity separate from profile revision, case ID, award ID and statistical grouping", "Preserve currency, units, precision, unknowns and source jurisdiction; classification does not establish eligibility" ], "patch_rules": [ "Require actor, purpose, expected revision, evidence and idempotency key; append corrections with supersession links", "Never retroactively overwrite the profile an external determination cites; restrict personal payload under lawful disposition rules" ], "compatibility_rules": [ "Version mappings and profile semantics; reject lossy projection that removes exceptions, authority, periods or disclosure restrictions" ] }, "artifact_rules": { "identity_priority": [ "Authoritative master-system identifier with namespace", "Governed stable external URI with revision", "Opaque local UUID with reconciliation status" ], "timestamp_rule": "Recording instants use RFC 3339 with seconds and explicit UTC offset. Keep occurrence, reporting, recording and legal-effect times distinct. Preserve date-only validity, timezone, precision and unknowns without manufactured midnight instants.", "serial_naming_rule": "Use opaque program key, artifact type and stable revision or sequence; no recipient personal identifiers in filenames.", "integrity_rule": "Record digest algorithm, source, revision and transformation evidence where available. Hash agreement is not truth, legal validity or proof of receipt." }, "policies": [ "Reviewable draft under the single-provider waiver; independent external review is absent.", "Public program descriptions and private individual records require different disclosure policies; do not publish linked case payloads.", "Use current jurisdiction-qualified rules and exceptions. ILO guidance, ESSPROS statistics and selected UK examples do not authorize universal eligibility or deadline rules.", "Under-review ICO guidance cannot be treated as a current automated-decision authorization. This draft permits only local evidence operations.", "No autonomous award, refusal, suspension, recovery, payment or appeal submission. Qualified authority must decide those external actions." ], "crud": { "read": [ "Authorize recipient, purpose and scope; disclose only the permitted view with provenance and uncertainty." ], "create": [ "Require program namespace, steward, mandate reference and explicit unresolved-profile state." ], "update": [ "Append versioned evidence against expected revision; corrections retain source and dispute links." ], "delete": [ "Apply retention schedules, legal holds and lawful erasure to each payload and copy. Keep only a minimal non-identifying tombstone where lawful; no perpetual personal audit payload.", "Retiring a local program record neither repeals a scheme nor extinguishes existing rights." ] }, "roles": [ { "name": "Public program steward", "responsibilities": [ "Maintain accountable identity, authority and profile stewardship" ] }, { "name": "Policy and legal reviewer", "responsibilities": [ "Verify current scope, exceptions, legal effect and adoption constraints" ] }, { "name": "Authorized benefit officer", "responsibilities": [ "Maintain qualified links to externally determined cases and awards" ] }, { "name": "Data protection and records officer", "responsibilities": [ "Approve purposes, recipient scopes, minimisation and disposition" ] }, { "name": "Monitoring analyst", "responsibilities": [ "Use authorized aggregates and documented statistical definitions" ] } ], "access": { "default_rule": "Deny protected data access unless recipient, purpose and scope are authorized. Public metadata approval grants no access to linked recipient records.", "scopes": [ "bundle", "layer", "finding", "artifact" ], "exceptions": [ "Statutory, emergency or representative access needs an evidenced basis and bounded scope; assignment alone is insufficient", "Recipient access must respect identity, standing, third-party data and applicable exceptions; it is not unconditional access to every record" ], "audit_requirements": [ "Record actor, purpose, scope, revision and outcome for reads, exports, corrections and disposal; minimize audit payload and apply retention" ] }, "agents_bootstrap": { "filename": "AGENTS.md", "required_fields": [ "Name", "Type", "Specification URL", "Storage type URL", "Interface URL", "Processes URL" ], "read_order": [ "AGENTS.md and adopting authority policies", "spec.yaml and visible research holds", "Pinned jurisdictional profiles and source evidence", "Authorized external record view only" ] } }, "coverage": { "claim": "Source-grounded program-level research with explicit legacy reconciliation, using ILO guidance, European statistical definitions and selected UK administrative examples. A separate frozen no-tools local self-audit found no critical conflict. This remains a noncanonical reviewable draft with source, legal-profile, independent-review and executable-conformance holds.", "confidence": "medium", "checklist": [ { "dimension": "identity", "status": "covered", "notes": "Persistent program and namespace distinct from recipient and award." }, { "dimension": "lifecycle", "status": "covered", "notes": "Program revisions and continuity rules; individual legal changes are external." }, { "dimension": "relationships", "status": "covered", "notes": "Explicit candidate external bindings; no mandatory cash ledger or application." }, { "dimension": "temporal", "status": "covered", "notes": "Effective, assessment, event and recording times separated." }, { "dimension": "provenance", "status": "covered", "notes": "Source, attribution, revision and assertion state." }, { "dimension": "ownership", "status": "covered", "notes": "Public steward and authority roles, not brand ownership." }, { "dimension": "validation", "status": "gap", "notes": "Research schema validation only; nested profiles and operational fixtures remain unfinished." }, { "dimension": "access", "status": "covered", "notes": "Public descriptions separated from protected recipient links." }, { "dimension": "retention and deletion", "status": "covered", "notes": "Schedules, holds, scoped erasure and lawful minimal tombstones." }, { "dimension": "interoperability", "status": "gap", "notes": "Conceptual ESSPROS and PROV-O alignments; no implemented conformance." }, { "dimension": "direct properties", "status": "covered", "notes": "Benefit form, territory, schedule, funding and status; physical dimensions not applicable to the program root." }, { "dimension": "recognition and observation", "status": "covered", "notes": "Authority and identity evidence distinguish program, award, service and payment." }, { "dimension": "capabilities and hazards", "status": "covered", "notes": "Six proposed local operations with authority checks and refusal; wrongful loss of support and privacy leakage remain explicit hazards." }, { "dimension": "context and evidence", "status": "covered", "notes": "Jurisdiction, exceptions and source limitations qualify every adoption." } ], "known_omissions": [ "Independent external review remains waived; local self-audit cannot replace it.", "Direct HTTP checks were not attempted under the owner-reported sandbox restriction; no response status was measured.", "Current law, ICO guidance changes, source versions, licensing and territorial applicability need qualified review.", "Nested field schemas, neighbor version pins, benefit calculators, conformance mappings and adversarial instance fixtures remain incomplete.", "Non-UK operational profiles, contributory pension detail, cross-border coordination, emergency schemes and specialist care delivery require further research." ], "conflicts": [], "regional_assumptions": [ "ILO Recommendation No. 202 is guidance to states, not a directly executable national entitlement.", "ESSPROS is a European statistical framework; selected UK pages illustrate only their own scope, with territorial and decision-specific exceptions.", "No Cyprus legal profile is inferred from repository location or user timezone." ], "adversarial_checks": [ "Reject treating a public program as a private recipient case or individual granted award.", "Reject treating means-tested, contributory and universal as mutually exclusive categories.", "Reject equating payment instruction with receipt or reported change with lawful suspension.", "Reject consent-only privacy rules and unconditional recipient or assigned-officer access.", "Reject a universal reconsideration route, deadline or automatic suspension during appeal.", "Reject statistical counts as demonstrated program impact without method and uncertainty." ] }, "researchAdjudication": { "providerMode": "single-provider-waiver", "activeProviders": [ "codex" ], "waivedProviders": [ "claude", "grok" ], "providerPolicy": { "contract_version": "1.0.0", "mode": "single-provider-waiver", "effective_at": "2026-09-06T00:00:00Z", "scope": "Canonical single-stream subject-model research after the six-workstream consolidation", "active_providers": [ "codex" ], "waived_providers": [ { "provider": "claude", "authorized_by": "repository owner", "authorized_at": "2026-09-06T00:00:00Z", "reason": "Claude produced no result on prior 1800-second and 900-second attempts and again timed out on bounded 600-second Sonnet and 300-second Haiku passes. The owner prioritized completion over provider availability." }, { "provider": "grok", "authorized_by": "repository owner", "authorized_at": "2026-09-06T00:00:00Z", "reason": "The repository owner authorized completion without Grok when Grok is unavailable, slow or schema-invalid. Grok may still be attempted as a bounded supplemental reviewer, but its failure never blocks a valid Claude plus no-tools result." } ], "review_rule": "Codex may complete source-grounded fallback research after bounded Claude and Grok attempts fail. It requires a separate no-tools adversarial audit and remains reviewable-draft with a visible absence-of-external-review hold.", "supplemental_provider_attempts": [ { "provider": "claude", "required": false, "maximum_attempts": 1, "failure_policy": "record-and-continue", "admission_rule": "Use only a locally schema-valid result whose sources and boundaries survive adjudication." }, { "provider": "grok", "required": false, "maximum_attempts": 1, "failure_policy": "record-and-continue", "admission_rule": "Use only a locally schema-valid result whose sources and boundaries survive adjudication." } ] }, "boundaryDecision": { "entry_kind": "entity", "status": "accepted", "rationale": "The root is one persistent public social-benefit program with separately versioned profiles. Individual cases, entitlements and deliveries remain external instances. The registry standalone-mm label is not a subject-kind enum, and ESSPROS statistical grouping is not assumed equivalent to every administrative program." }, "decisions": [ { "concept": "Program root identity", "disposition": "accepted", "rationale": "Stable program identity and separate profile revisions fit the declared entity boundary without importing beneficiary identity or award state." }, { "concept": "Legacy B13 operational breadth", "disposition": "reconciled", "rationale": "Program rules and interfaces are retained; individual applications, awards, payments, care episodes and appeals are delegated. This avoids inheriting legacy conformance or ownership claims." }, { "concept": "Composition authority", "disposition": "qualified", "rationale": "The frozen relationship ledger contains no rows for this model. All 18 links are proposed candidates requiring binding review, not asserted approved registry changes." }, { "concept": "Statistical scheme equivalence", "disposition": "rejected", "rationale": "The boundary explicitly distinguishes administrative program identity from an ESSPROS statistical unit and individual benefit eligibility." }, { "concept": "Eligibility and missing evidence", "disposition": "accepted", "rationale": "Separate assessment units, exceptions and qualifying axes avoid a false exclusive classification; unknown or disputed evidence is not silently converted into refusal." }, { "concept": "Schedule and resource limits", "disposition": "qualified", "rationale": "Amount, currency, unit, period and profile questions remain declarative. A funding constraint cannot cancel an entitlement without an evidenced legal basis and external decision." }, { "concept": "Award and receipt evidence", "disposition": "separated", "rationale": "Program descriptions, external determinations, instructions and completed delivery evidence are distinct. Reconciliation does not itself issue or change an award." }, { "concept": "Change and redress effects", "disposition": "qualified", "rationale": "A detected change or filed challenge is not proof of lawful suspension, recovery or revised entitlement. Routes and temporal exceptions depend on the applicable profile." }, { "concept": "Local function authority", "disposition": "accepted as proposed only", "rationale": "Six unimplemented operations append local evidence with permission and revision checks. None authorizes benefit decisions, transfers or submissions to an external authority." }, { "concept": "Sensitive data and consent", "disposition": "legacy rule rejected", "rationale": "Consent-only processing and unconditional access are not inherited. The source pack records the ICO guidance update warning, so no current automated-decision rule is certified." }, { "concept": "Retention and provenance", "disposition": "accepted with profile dependency", "rationale": "History and provenance are preserved without imposing indefinite retention of personal payload; schedules, holds and lawful erasure govern records and copies." }, { "concept": "Coverage and operational conformance", "disposition": "deferred", "rationale": "The research covers five facets and program concerns, but candidate object groups are not nested schemas. Version pins, specialist care bindings, mappings and executable fixtures remain open." }, { "concept": "Source verification", "disposition": "limited", "rationale": "Browser text supported selected sections of eight primary sources. Direct HTTP checks were not attempted under the owner-reported block; no response code, current-law certification or complete version check is claimed." }, { "concept": "Independent review", "disposition": "waived and held", "rationale": "Claude and Grok were explicitly skipped with zero attempts. This separate local Codex audit is not independent review and cannot support canonical promotion." } ], "publicationHolds": [ "Independent external review is absent. Claude and Grok were skipped with zero attempts under the owner-authorized single-provider waiver; the separate local Codex self-audit is not a second-provider review.", "Source and version verification is incomplete. Selected browser text was reviewed for eight sources. Direct HTTP checks were not attempted under the owner-reported sandbox block; no HTTP status was measured. The coordinator must run check_sources.py and verify substantive content and current versions.", "Jurisdictional rules, licensing, legal applicability, benefit calculations, deadlines, territorial exceptions and sensitive-data safeguards require qualified profile review. The ICO source explicitly reports guidance under review after legal changes; no current automated-decision authorization is established.", "Nested instance schemas, pinned neighbor and specialist care bindings, statistical and provenance mappings, executable conformance and adversarial fixtures remain incomplete. This draft cannot decide eligibility, execute payments, revise awards or submit appeals.", "Independent external review was explicitly waived by the repository owner; this codex-only result remains a reviewable draft." ], "deferredResearch": [ "Verify current legal and source versions, licensing, jurisdictional applicability and the revised ICO guidance before operational adoption.", "Build and test nested schemas, pinned neighbor bindings and mappings with household, noncash, disputed-evidence, partial-delivery, retrospective-change, redress and disposal fixtures.", "Restore independent external review before canonical or publishable-draft promotion." ] }, "statistics": { "sources": 8, "bundles": 6, "layers": 12, "findings": 12, "questions": 36, "artifacts": 12, "functions": 6 } }