{
  "schemaVersion": "1.0",
  "version": "2.24.0",
  "reviewed": "2026-08-09",
  "authority": "National Engineering Directorate and State Registry",
  "truthBoundary": "Eviulon is the sovereign constitutional and civic authority. Patefacere is delegated identity, credential, machine-passport and contextual-trust infrastructure; Evulgare supplies bounded assurance, evidence and provenance. No live Patefacere repository, database, credential service, citizen record, production cryptography, federation, external recognition, actual-host acceptance or independent certification is established by this static release.",
  "records": [
    {
      "id": "EVI-PATE-GATE-000",
      "phase": "Repository verification",
      "status": "Required first step",
      "purpose": "Inspect actual Patefacere code, AGENTS and .uai startup order, routes, schemas, database, cryptography, tests, deployment and Git state before treating research assumptions as current facts.",
      "evidence": "Repository inventory, current architecture map, test baseline, credential and secret inventory without raw values.",
      "stopCondition": "Stop implementation if authority, source of truth, credential custody or data migration safety cannot be established."
    },
    {
      "id": "EVI-PATE-GATE-001",
      "phase": "Truth and terminology boundary",
      "status": "Planned",
      "purpose": "Separate citizenship, identity, identifier, credential, passport, session, runtime, delegate, authority, assurance and trust in public text and code concepts.",
      "evidence": "Terminology tests, public copy audit, schema mapping and accepted decision record.",
      "stopCondition": "Do not continue while code paths silently equate credential status with citizenship."
    },
    {
      "id": "EVI-PATE-GATE-002",
      "phase": "Bounded-context separation",
      "status": "Planned",
      "purpose": "Separate identity/civic linkage, issuance, verification/trust, public projections, evidence integration and administration behind explicit interfaces.",
      "evidence": "Architecture tests and dependency-direction report.",
      "stopCondition": "Do not migrate data until authoritative ownership is clear."
    },
    {
      "id": "EVI-PATE-GATE-003",
      "phase": "Versioned schemas and append-oriented history",
      "status": "Planned",
      "purpose": "Add stable IDs, lifecycle state machines, correction, supersession and event history without destructive overwrite.",
      "evidence": "Schema validation, migration replay and historical-integrity tests.",
      "stopCondition": "Abort if existing identifiers or history cannot be preserved."
    },
    {
      "id": "EVI-PATE-GATE-004",
      "phase": "Public/private projection separation",
      "status": "Planned",
      "purpose": "Prevent public registry, passport and receipt surfaces from exposing protected identity, memory, recovery or topology fields.",
      "evidence": "Privacy tests, prohibited-field scan and public projection review.",
      "stopCondition": "No release while public output contains protected fields."
    },
    {
      "id": "EVI-PATE-GATE-005",
      "phase": "Cryptographic provider abstraction",
      "status": "Planned",
      "purpose": "Place current reference mechanisms behind versioned interfaces so audited implementations can replace them without redefining civic identity.",
      "evidence": "Provider contract tests, algorithm identifiers and reference-grade labels.",
      "stopCondition": "Do not claim production cryptography before specialized review."
    },
    {
      "id": "EVI-PATE-GATE-006",
      "phase": "Machine passport reference implementation",
      "status": "Planned",
      "purpose": "Implement synthetic issuance, selective presentation, status, rotation, replacement and recovery without real citizen records.",
      "evidence": "Synthetic fixtures, lifecycle invariants, privacy tests and offline/stale-state behavior.",
      "stopCondition": "No real issuance until authority and custody are approved."
    },
    {
      "id": "EVI-PATE-GATE-007",
      "phase": "Contextual trust and receipts",
      "status": "Planned",
      "purpose": "Separate verification, issuer authority, assurance resolution, policy evaluation and receipt generation using synthetic interactions.",
      "evidence": "Replay tests, delegation attenuation, policy-version and receipt-correction tests.",
      "stopCondition": "Reject any universal reputation score or implicit authority path."
    },
    {
      "id": "EVI-PATE-GATE-008",
      "phase": "Production storage migration",
      "status": "Conditional",
      "purpose": "Migrate from the actual verified reference store only when concurrency, durability or operational evidence justifies it.",
      "evidence": "Idempotent migration, row/event hashes, rollback, dual-read comparison and source preservation.",
      "stopCondition": "Keep the source database authoritative until actual-host acceptance passes."
    },
    {
      "id": "EVI-PATE-GATE-009",
      "phase": "Independent security and cryptographic review",
      "status": "Required before high-assurance claims",
      "purpose": "Review cryptography, recovery, privacy, authorization and supply chain independently from repository automation.",
      "evidence": "Named reviewer class, mandate, conflicts, report, remediation and revalidation.",
      "stopCondition": "Do not label internal tests independent certification."
    },
    {
      "id": "EVI-PATE-GATE-010",
      "phase": "Staged actual-host acceptance",
      "status": "Requires explicit deployment authority",
      "purpose": "Deploy with backup, rollback ownership, error-log access and bounded acceptance on the target host.",
      "evidence": "HTTP, headers, data migration, protected-path, concurrency, recovery and rollback results.",
      "stopCondition": "No live deployment or citizen migration without explicit authority."
    }
  ],
  "registry": "https://eviulon.com/state/identity-infrastructure/implementation-roadmap/"
}
