Skip to content

v1.7.0 โ€” Local Organization Governance

Purpose: Tracks decisions, assumptions, rejected alternatives, open questions, expiry, and risk ownership. Audience: product, architecture, engineering, security, operations, documentation, release, and AI coding agents Owner: Governance and Policy Maintainers Roadmap authority: docs/strategy/FORGEVENA_VERSIONED_PRODUCT_ROADMAP.md#10-v170--local-organization-governance Lifecycle: planned Review: before implementation and at every lifecycle promotion

Required Decisions

  • Architecture and trust-boundary ADRs must be approved before implementation.
  • Every external protocol, schema, storage change, compatibility policy, and lifecycle authority requires an owner and review date.

Assumptions

  • Local principals and signatures are sufficient before v2.0.
  • Policy metadata excludes sensitive content.

Open Questions

  • How are principal keys recovered or rotated?
  • Which compliance packs remain guidance rather than certification?

Decision Expiry

Unresolved questions block affected implementation. Assumptions expire at the first release candidate unless converted into verified evidence or approved decisions.