K06 assurance and procurement architecture

Range Evidence Schemas

Direct answer

K06 records authority, abstract behavior, safety envelope, stop authority, telemetry, control response, timing, recovery, defects, artifacts, and cleanup while excluding exploit chains, payloads, credentials, real topology, engagement procedures, and destructive commands.

Authority and evidence boundary. K06 publishes reference architecture, source review, machine-checkable dependencies, procurement scope, and test-evidence formats. These records do not certify a facility, award a contract, authorize an operation, prove deployment, establish current operation, or transfer regulatory or command authority.

Bounded red-team evidence schema

Required record fields

  • exerciseId
  • authorityRecordId
  • rangeId
  • scenarioId
  • objective
  • threatBehaviorClass
  • initialStateHash
  • toolManifestHash
  • safetyEnvelope
  • stopAuthority
  • startTime
  • endTime
  • observations
  • controlResponses
  • evidenceArtifacts
  • defects
  • cleanupReceipt
  • reviewers

Permitted public detail

  • abstract behavior class
  • tested control objective
  • timing and state-transition results
  • defect category
  • evidence hash
  • remediation status

Prohibited public detail

  • exploit chain
  • payload
  • credential material
  • persistence or evasion method
  • real target topology
  • weapon or engagement procedure
  • destructive command

Failure conditions

  • missing authority
  • production target
  • effects escape range
  • unremoved artifact
  • unverifiable tool manifest
  • suppressed negative result

Cyber-physical fault-injection evidence schema

Required record fields

  • injectionId
  • authorityRecordId
  • rangeId
  • scenarioId
  • faultClass
  • abstractInjection
  • preconditions
  • protectedFunctions
  • expectedSafeState
  • independentStop
  • telemetrySources
  • observedTransitions
  • timingResults
  • recoveryResult
  • artifactHashes
  • defects
  • cleanupReceipt

Allowed fault classes

  • communications loss
  • timing degradation
  • sensor disagreement
  • identity revocation
  • management-plane isolation
  • power transient model
  • cooling telemetry anomaly
  • model-confidence collapse
  • evidence-ledger unavailability

Prohibited public detail

  • production command sequence
  • specific vulnerability
  • physical sabotage procedure
  • real relay or PLC addresses
  • weapon effects
  • bypass instructions

Failure conditions

  • unsafe state outside envelope
  • unbounded propagation
  • missing independent stop
  • irreversible range damage
  • incomplete reset
  • unavailable evidence

Machine records

Red-team schema · Fault-injection schema