Skip to content
Open
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
23 commits
Select commit Hold shift + click to select a range
3ef8f5d
docs: M3 org visibility & access proposal for architecture call
mlehotskylf Sep 10, 2026
b9b4535
docs: update M3 org visibility doc with architecture-call outcome
mlehotskylf Sep 10, 2026
2d94920
docs: correct M3 gap numbers against the B2B Salesforce org
mlehotskylf Sep 10, 2026
caa9cfc
docs(review): address PR #5210 review feedback
mlehotskylf Sep 11, 2026
788159a
docs: reconcile M3 doc with Eric's published B2B ingest proposal
mlehotskylf Sep 11, 2026
922d5d1
docs: correct M3 org visibility data and move to architecture folder
mlehotskylf Sep 11, 2026
8dbd8ef
docs: remove broken spec 044 link
mlehotskylf Sep 11, 2026
928e40e
docs: cite Luis's CLA-service plan and correct spec 044 claims
mlehotskylf Sep 11, 2026
77e69ac
docs(review): address PR #5210 review feedback
mlehotskylf Sep 11, 2026
ad96da1
docs: correct the membership gate and record the entry-point question
mlehotskylf Sep 11, 2026
f4f34d0
docs: fix stale cross-references and the membership-gate count
mlehotskylf Sep 11, 2026
a6dcfd8
docs: propose minimal M3 FGA model (one org-level cla_admin relation)
mlehotskylf Sep 17, 2026
370afe2
docs(review): address PR #5210 review feedback
mlehotskylf Sep 17, 2026
285859b
docs: record sales-ops meeting outcome for the B2B ingest
mlehotskylf Sep 17, 2026
c569b03
docs: record v4's two-tier CLA enforcement and the M3 parity decision
mlehotskylf Sep 17, 2026
eac728d
docs: record the product decision on cross-project CLA visibility
mlehotskylf Sep 18, 2026
f2e17fb
docs: record sfid_b2b crosswalk findings and the B2B import confirmat…
mlehotskylf Sep 19, 2026
a52884d
docs(review): address PR #5210 review feedback from Luis and Copilot
mlehotskylf Sep 19, 2026
bbe921b
docs(review): address PR #5210 review feedback (round 2)
mlehotskylf Sep 19, 2026
60c9931
docs(review): address PR #5210 review feedback (round 3)
mlehotskylf Sep 19, 2026
ff65f61
docs(review): record the M5 read-model tension raised in re-audit
mlehotskylf Sep 21, 2026
79cbe4a
docs(review): close the signed->unsigned projector gap
mlehotskylf Sep 21, 2026
df41e3a
docs(review): correct the FGA/ACS parity failure mode
mlehotskylf Sep 21, 2026
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
9 changes: 5 additions & 4 deletions docs/easycla-ss-migration/README.md
Original file line number Diff line number Diff line change
Expand Up @@ -5,9 +5,10 @@ SPDX-License-Identifier: CC-BY-4.0 -->

Self-contained materials for the architecture review of the EasyCLA-to-Self-Serve migration. Reading order:

1. **[ARCHITECTURE.md](../../ARCHITECTURE.md)** — start here for the **current** target architecture (M1–M3): cross-component contracts, authorization, and external dependencies, as a roll-up. The two documents below are the reviewed decision record behind it.
2. **[architecture-proposal.md](architecture-proposal.md)** — the reviewed proposal (Eric Searcy, 2026-07-20). Current state, milestones, what leadership already settled, the proposed architecture (P1–P10, including the audit and trusted-caller designs), top risks, and what the review should challenge.
3. **[role-mapping-feasibility.md](role-mapping-feasibility.md)** — the supporting deep analysis for the roles/permissions bridge (P2/P3): how EasyCLA v4 authorization actually works, token paths, read paths, options assessment, and the spike list. All claims cite `file:line`.
4. **[Slide deck (Google Slides)](https://docs.google.com/presentation/d/1FQJOpiETIO_H10c6_eP2Zu-LM7qlvG_t7blhRm--2KA/edit)** — presentation for the review session.
1. **[architecture-proposal.md](architecture-proposal.md)** — the reviewed proposal (Eric Searcy, 2026-07-20). Current state, milestones, what leadership already settled, the proposed architecture (P1–P10, including the audit and trusted-caller designs), top risks, and what the review should challenge.
2. **[role-mapping-feasibility.md](role-mapping-feasibility.md)** — the supporting deep analysis for the roles/permissions bridge (P2/P3): how EasyCLA v4 authorization actually works, token paths, read paths, options assessment, and the spike list. All claims cite `file:line`.
3. **[m3-org-visibility.md](m3-org-visibility.md)** — why most EasyCLA companies are invisible in the Org Lens and what makes them visible (2026-09-10 call outcome, with prod data). **Reverses P2's "no CLA object types in OpenFGA before M5"** — read it against item 1.
4. **[m3-fga-model.md](m3-fga-model.md)** — the proposed M3 slice of that model: one org-level `cla_admin` relation, gating the UI only, with ACS still authorizing every API call. Simplifies item 3's §4.2 — read it against that section.
5. **[Slide deck (Google Slides)](https://docs.google.com/presentation/d/1FQJOpiETIO_H10c6_eP2Zu-LM7qlvG_t7blhRm--2KA/edit)** — presentation for the review session.

Implementation-level specifications (milestone scopes, acceptance criteria, per-milestone plans — used by the Spec Kit workflow) live separately in [specs/001-easycla-ss-integration-fable/](../../specs/001-easycla-ss-integration-fable/spec.md). This folder is for evaluating the architecture; that folder is for building it.
Loading
Loading