@inventarch/compliance
v1.2.0
Published
Pure checks over compiled IA records and graph views. validateSchema supports bootstrap; validateGraphSchema uses admitted active graph relationships. Schema/system admission, fragments, declared coverage, selectors, exact variant ambiguity, check declara
Readme
@inventarch/compliance
Pure checks over compiled IA records and graph views. validateSchema supports bootstrap; validateGraphSchema uses admitted active graph relationships. Schema/system admission, fragments, declared coverage, selectors, exact variant ambiguity, check declarations and structural adoption feed evaluate(graph, options), which returns a stable immutable revision report.
Supply source diagnostics, discovered system folders and matching-revision kernel/fixture evidence explicitly. Missing observations or adoption clause evaluators produce not-evaluated. Case declarations establish coverage, not execution. Only supplied clause evaluators can establish adoption results. No filesystem I/O, model loop or capability execution occurs here.
An optional trusted evaluator catalog (createEvaluatorCatalog, SPEC C25–C29) lets a host register namespaced evaluators for a check's evaluator id (check.implementation, else check.runs), resolve adopted obligations (including the strict-typing-v1 profile), validate evidence receipts and decide whether a transition may be admitted. These are pure functions. The host supplies implementations, codecs, predicates, facts, receipts, the minimum receipt trust, a service-receipt verifier and the current time. It owns execution, scheduling and persistence. Calls without a catalog behave exactly as before. The exported Finding code union now also includes EVIDENCE_CODES; those codes are outside the repository fixture gate (SPEC C29).
SPEC.md owns interfaces, refusal codes and delivery evidence. The package depends on @inventarch/language and @inventarch/graph. Run pnpm compliance:check at the workspace root to verify the real native corpus, kernel, conformance pairs and refusal-code boundaries. --json emits the report; the command prints unavailable checks and exits unsuccessfully on failed checks.
