Skip to content

Production Checklist

Before production quote/settle traffic hits Cleared. Forward with Disclosure Boundary.

Maturity: Applies to Early Access Live environments. Contract-preview envs use the same checklist for dress rehearsal.

Auth and secrets

  • clr_ keys only in server-side secret store
  • Separate keys per environment (sandbox vs Early Access prod)
  • Revocation / rotation runbook tested
  • Scopes limited to need (gate vs onboard split recommended)

Gate

  • Gate invoked before every gated business action
  • allowed: false, 403/422, timeout, and 5xx all map to deny
  • No “last known allow” cache past expires_at
  • Stratum-only degrade understood: Stratum miss = deny; outsider-prove-only miss ≠ deny if Stratum pass live
  • p95 / error budgets monitored against issued SLO

Onboard and seal

  • Idempotency-Key on create and seal (case_id + policy_version for seal)
  • Vault wall: no PII on logs from Cleared responses; no vault via pack
  • Fail/refer paths never produce a quote-allowing seal
  • Material change = new event (append-only), not overwrite

Observability

  • Emit / verify: eligibility checked, seal acked, gate denied, pack exported (names per your stack)
  • request_id from error bodies retained for support
  • Alert on gate error-rate spikes (fail-closed load)

Trust

  • Security/legal reviewed Disclosure Boundary
  • Assessor pack path exercised once in the target environment
  • Integration Surfaces maturity matches what you claim to customers
  • Kill / disable switch for venue adapter documented (seals remain append-only)

Was this page clear?