Fact 213
Alex Valdez rejected Product Engineering’s combined-payload candidate because it copied the metrics-router operating limit and estimated cost into a Lantern-owned payload and added an owner-map mutation endpoint, which would make Lantern a second authority for Cardinality Guardrails data and give Lantern a write path into published responsibility.
Source evidence (1)
003491Aug 18, 2026 / 14:18 UTC-04:00
The 1:00–2:00 PM staff-only rehearsal is done. Product Engineering’s combined-payload candidate copied the metrics-router operating limit and estimated cost into a Lantern-owned payload and attached an owner-map mutation endpoint. I blocked it because that would make Lantern a second authority for Cardinality Guardrails data and give it a write path into published responsibility. Cyrus confirmed that cost semantics must remain in Cardinality Guardrails, and Iris confirmed that Lantern can explain and navigate to authoritative detail without presenting copied values as its own. We replaced that candidate with a reference-only contract containing exactly `tenant_id`, `canonical_service_id`, `authority_type`, `authority_record_id`, and `source_timestamp`. It may contain neither authority payload values nor mutation capability. The Harbor Health and Mosaic Commerce customer paths remain unchanged, and neither account’s authorization expands. The design decision is complete, but Product Engineering still needs to implement the corrected reference-only model and produce executable rehearsal evidence for the existing authorization, tenant-isolation, source-timestamp, stale-or-missing authority, conflicting-alias, and customer-path-isolation cases. Update “Lantern platform-reference rehearsal — contract and failure-mode questions” with the August 18 rejection, the selected five-field contract and boundaries, the unchanged customer paths, and a clear handoff separating the completed design decision from the pending corrected implementation and rehearsal evidence.
Message 003491 in history