K09 · bounded executable evidence infrastructure
Continuous-Assurance Scheduler Exports
Direct answer
K09 generates 6 inspectable schedule exports but operates no public scheduler or monitor.
External schedule definitions
EXPORT ONLY; NOT RUNNING IN PUBLIC STATIC SITE
Official-source currentness observation
Cron: 0 4 * * 1
Freshness: 192h · exception expiry: 336h
EXPORT ONLY; NOT RUNNING IN PUBLIC STATIC SITE
Assurance evidence freshness review
Cron: 0 */12 * * *
Freshness: 24h · exception expiry: 48h
EXPORT ONLY; NOT RUNNING IN PUBLIC STATIC SITE
Certificate and key inventory review
Cron: 15 3 * * *
Freshness: 36h · exception expiry: 72h
EXPORT ONLY; NOT RUNNING IN PUBLIC STATIC SITE
Supplier support-state review
Cron: 30 5 1 * *
Freshness: 840h · exception expiry: 1080h
EXPORT ONLY; NOT RUNNING IN PUBLIC STATIC SITE
Facility exception-expiry review
Cron: 0 2 * * *
Freshness: 24h · exception expiry: 48h
EXPORT ONLY; NOT RUNNING IN PUBLIC STATIC SITE
Protocol conformance regression
Cron: 0 1 * * 0
Freshness: 192h · exception expiry: 336h
State transition example
Each schedule defines a freshness window, missed-observation state, exception expiry, degraded claim state, repair, and retest. An external owner-operated observer must produce a signed evidence bundle; the static site never runs the schedule or accepts an observation automatically.
Export formats
Each record has a machine JSON export, a cron line, a systemd service template, and a systemd timer template under /exports/k09/. Templates contain no credentials and are not installed by this release.