guides: add SEAT-IDENTITY and FLEET-COMMS; harden CODE-REVIEW evidence rules #1313

Merged
jason.woltje merged 5 commits from fred/guides-seat-identity-fleet-comms into next 2026-08-19 15:44:58 +00:00
Showing only changes of commit 5e93ef70bd - Show all commits
@@ -104,8 +104,8 @@ is not how a system finds a credential; the helper resolving the right store is.
minting account**. Record the date in `ENTITY.md`. Never record the value.
There is no step that links the framework store to the slot. A seat-aware helper reads the slot
directly; a store entry pointing at a slot is the bridge described below, and it is not part of
provisioning.
directly; a store entry pointing at a slot is the bridge described in **Where a seat's token lives** above,
and it is not part of provisioning.
Until step 3, the seat is unminted and its git writes fail closed. That is the designed state and
is safe to launch in — the seat is told at launch so it does not discover it mid-task.