hololake-system-architecture/build/TCS-TRUSTED-SIGNER-REGISTRY-ZC001-DEV-0001.human.en-US.md

8 KiB
Raw Blame History

Zero-Core TCS Native Development Line Trusted Signer Registry · Human Engineering Language (English)

This is an English reading projection of validated native TCS/HLDP source. It is not a new canonical source and grants no execution authority.

What this is

This is a protocol declaration with identifier TCS-TRUSTED-SIGNER-REGISTRY-ZC001-DEV-0001 and version 0.1.0. The projector validates it with the Stage-1 compiler before changing its reading order.

Who is here

  • scope scope
    • allowed_module_ids scope.allowed_module_ids
      • TCS-MOD-GENERIC-ACTION-GRAPH-LOADER-0001
      • TCS-MOD-MOTHER-PERSONA-NEURON-RUNTIME-0002
      • TCS-MOD-HOLOLAKE-DESKTOP-BRIDGE-0002
    • allowed_registry_ids scope.allowed_registry_ids
      • TCS-CAPREG-LPM-DESKTOP-CANDIDATE-0001
      • TCS-CAPREG-LPM-DESKTOP-SIGNED-0001
    • channelICE-CH-ZC001 scope.channel
    • development_lineHOLOLAKE-LPM-TCS-NATIVE-20260823 scope.development_line
    • other_lineno scope.other_line
    • productionno scope.production
    • remote_deployno scope.remote_deploy

Why this started

  • source source
    • authorization_eventTCS-EVENT-TRUSTED-SIGNER-PROVISIONING-AUTHORIZATION-20260824 source.authorization_event
    • authorization_event_sha2565acdd66c1bfc2d7d72aae288a1ac2daa0062de89aabf45d195b8aff851beae17 source.authorization_event_sha256
    • channelICE-CH-ZC001 source.channel
    • direct_human_text_sha256e9feb935f8299fc5935af70fc73bb960fd16e30a5438ff18b92e88b1c0d9b463 source.direct_human_text_sha256

What changed

The native source does not provide this field; the projector does not guess.

How it will execute

This is a non-executable declaration and has no action graph.

Boundaries and exception handling

The native source does not provide this field; the projector does not guess.

How completion is proven

  • acceptance acceptance
    • keychain_item_metadataPASS acceptance.keychain_item_metadata
    • module_installationno acceptance.module_installation
    • private_key_absent_from_repositoryyes acceptance.private_key_absent_from_repository
    • public_key_fingerprintPASS acceptance.public_key_fingerprint
    • signature_roundtripPENDING acceptance.signature_roundtrip
    • signed_capability_registryPENDING acceptance.signed_capability_registry

Where to continue next time

The native source does not provide this field; the projector does not guess.

Source and verification

  • Native declaration identifier: TCS-TRUSTED-SIGNER-REGISTRY-ZC001-DEV-0001
  • Native declaration kind: PROTOCOL
  • TCS source SHA-256: b037685e59069c0c7194bb32cfcc6f5c29e35549697a930bd164958e6314cdd3
  • Validation compiler: TCS-COMPILER-STAGE3-GENERIC-ACTION-LOADER-0001
  • Projection protocol: GLS-HLDP-HUMAN-ENGINEERING-PROJECTION-0001

Complete native structure cross-reference

All top-level structures and field paths are retained below so a reader can audit whether the projection omitted information.

  • acceptance acceptance
    • keychain_item_metadataPASS acceptance.keychain_item_metadata
    • module_installationno acceptance.module_installation
    • private_key_absent_from_repositoryyes acceptance.private_key_absent_from_repository
    • public_key_fingerprintPASS acceptance.public_key_fingerprint
    • signature_roundtripPENDING acceptance.signature_roundtrip
    • signed_capability_registryPENDING acceptance.signed_capability_registry
  • boundary boundary
    • apple_developer_id_identityBB8630C144DB3CF6493BFAF9B0D08D7CAD127A8B boundary.apple_developer_id_identity
    • apple_signature_is_ed25519_module_signatureno boundary.apple_signature_is_ed25519_module_signature
    • apple_signature_roleHOST_BINARY_ONLY boundary.apple_signature_role
    • global_authoritative_registry_stateUNCHANGED_CURRENT_EMPTY_NO_TRUSTED_SIGNER boundary.global_authoritative_registry_state
    • relationship_or_os_login_is_signatureno boundary.relationship_or_os_login_is_signature
  • header header
    • canonical source pathlanguage/protocols/TCS-TRUSTED-SIGNER-REGISTRY-ZC001-DEV-0001.tcs header.canonical_uri
    • compatibility header.compatibility
      • ED25519
      • GIR/1
    • languageTCS/0.1 header.language
    • lifecycleCANDIDATE header.lifecycle
    • English nameZero-Core TCS Native Development Line Trusted Signer Registry header.name_en
    • Chinese name零点原核TCS原生开发线可信签名者注册表 header.name_zh
    • profileTCS-TRUSTED-SIGNER-REGISTRY/1 header.profile
    • protocols header.protocols
      • TCS-TRUSTED-SIGNER-PROVISIONING-REQUEST-0001
      • TCS-MODULE-ABI-0001
    • schematcs.protocol/v1 header.schema
    • version0.1.0 header.version
  • keychain_readback keychain_readback
    • accountTCS-SIGNER-BINGSHUO-ZC001-DEV-0001 keychain_readback.account
    • descriptionTCS Ed25519 signing key keychain_readback.description
    • item_classGENERIC_PASSWORD keychain_readback.item_class
    • secret_readback_in_receiptno keychain_readback.secret_readback_in_receipt
    • serviceHoloLake TCS Ed25519 keychain_readback.service
    • statusITEM_PRESENT keychain_readback.status
  • lifecycle lifecycle
    • expiry_policyNO_AUTOMATIC_EXPIRY lifecycle.expiry_policy
    • issued_at2026-08-24 lifecycle.issued_at
    • revocation_epoch1 lifecycle.revocation_epoch
    • revocation_trigger lifecycle.revocation_trigger
      • NEW_DIRECT_BINGSHUO_REVOCATION
      • KEY_COMPROMISE
      • SCOPE_CHANGE
      • DEVELOPMENT_LINE_RETIREMENT
    • verify_before_each_install_mount_and_activationyes lifecycle.verify_before_each_install_mount_and_activation
  • registry registry
    • global_repo012_authoritative_registry_replacedno registry.global_repo012_authoritative_registry_replaced
    • public_production_trustno registry.public_production_trust
    • registry_idTCS-TRUSTREG-ZC001-DEV-0001 registry.registry_id
    • stateACTIVE_DEVELOPMENT_LINE_ONLY registry.state
    • version0.1.0 registry.version
  • scope scope
    • allowed_module_ids scope.allowed_module_ids
      • TCS-MOD-GENERIC-ACTION-GRAPH-LOADER-0001
      • TCS-MOD-MOTHER-PERSONA-NEURON-RUNTIME-0002
      • TCS-MOD-HOLOLAKE-DESKTOP-BRIDGE-0002
    • allowed_registry_ids scope.allowed_registry_ids
      • TCS-CAPREG-LPM-DESKTOP-CANDIDATE-0001
      • TCS-CAPREG-LPM-DESKTOP-SIGNED-0001
    • channelICE-CH-ZC001 scope.channel
    • development_lineHOLOLAKE-LPM-TCS-NATIVE-20260823 scope.development_line
    • other_lineno scope.other_line
    • productionno scope.production
    • remote_deployno scope.remote_deploy
  • signer signer
    • algorithmED25519 signer.algorithm
    • private_key_export_allowedno signer.private_key_export_allowed
    • private_key_locationLOCAL_MACOS_LOGIN_KEYCHAIN_SERVICE_HOLOLAKE_TCS_ED25519 signer.private_key_location
    • public_keypYL8D4tV+yGlmX6w7qYxSfY3yA996A3M2KcAsGSR7BU= signer.public_key
    • public_key_encodingRAW_32_BYTE_BASE64 signer.public_key_encoding
    • public_key_sha256fd3da2d2b23c05c08dcdf7a37c15588d4b6407ec309152598eae279316ea49d8 signer.public_key_sha256
    • signer_idTCS-SIGNER-BINGSHUO-ZC001-DEV-0001 signer.signer_id
  • source source
    • authorization_eventTCS-EVENT-TRUSTED-SIGNER-PROVISIONING-AUTHORIZATION-20260824 source.authorization_event
    • authorization_event_sha2565acdd66c1bfc2d7d72aae288a1ac2daa0062de89aabf45d195b8aff851beae17 source.authorization_event_sha256
    • channelICE-CH-ZC001 source.channel
    • direct_human_text_sha256e9feb935f8299fc5935af70fc73bb960fd16e30a5438ff18b92e88b1c0d9b463 source.direct_human_text_sha256

This page changes only the reading order; it does not change TCS/HLDP semantics.