K11 · state, custody, decision, and release evidence
Facility Workbook Decision Ledger
Direct answer
K11 preserves six ordered facility decisions, three signer generations, three custody receipts, and an unresolved N-way merge conflict without exposing protected site data or silently selecting an owner decision.
Claim-level evidence boundary
VERIFIED PROJECT IMPLEMENTATION
Decision conflicts and revocations propagate visibly
K11 preserves N-way workbook conflicts, signer rotation, revoked decisions, and protected-reference custody without silently selecting an owner decision or publishing protected values.
Reference merge and custody tooling are not a production facility record system or authority decision.
Schema, branch, and custody model
| Signer | Generation | State | Effective from | Effective until |
|---|---|---|---|---|
| FWSIGN-K11-A | 1 | REVOKED | 2026-08-16T00:00:00Z | 2026-08-16T02:00:00Z |
| FWSIGN-K11-B | 2 | CURRENT_REFERENCE | 2026-08-16T02:00:01Z | open |
| FWSIGN-K11-C | 2 | INDEPENDENT_REFERENCE | 2026-08-16T02:00:01Z | open |
Decision ledger
| Sequence | Decision | Field | State | Signer | Previous |
|---|---|---|---|---|---|
| 1 | FDL-K11-001 | authority.owner | REVOKED | FWSIGN-K11-A | — |
| 2 | FDL-K11-002 | authority.owner | CURRENT | FWSIGN-K11-B | FDL-K11-001 |
| 3 | FDL-K11-003 | mission.protectedFunctions | CURRENT | FWSIGN-K11-B | FDL-K11-002 |
| 4 | FDL-K11-004 | evidence.minimumFreshnessHours | CURRENT | FWSIGN-K11-C | FDL-K11-003 |
| 5 | FDL-K11-005 | release.publicProjection | CURRENT | FWSIGN-K11-B | FDL-K11-004 |
| 6 | FDL-K11-006 | merge.conflictPolicy | CURRENT | FWSIGN-K11-C | FDL-K11-005 |
Public redaction boundary
Always removed from the public projection
- credential
- privateKey
- password
- token
- coordinate
- ipAddress
- networkTopology
- firewallRule
- sensorLocation
- exactThreshold
- targetPackage
- exploit
N-way merge exposes unresolved owner conflicts; it does not choose a winner. Revoked decisions remain historically visible while their current authority is denied. Protected references are represented by custody identifiers, never by protected values.