feat(dataflow): add governed DSAR coverage
This commit is contained in:
@@ -19,6 +19,21 @@ without storing the previewed row contents.
|
||||
- **Risk Compliance:** sanctions matching policy, review, dispositions, and
|
||||
legal evidence.
|
||||
|
||||
## Data-subject requests
|
||||
|
||||
Dataflow publishes `privacy.dsar.dataflow` for exact pipeline, revision,
|
||||
reconciliation, run, deployment, trigger, and delivery references and for
|
||||
minimized operator or automation-authority attribution. It never exports
|
||||
graphs, SQL, request/event payloads, reconciliation corrections, authorization
|
||||
snapshots, provenance bodies, errors, source details, hashes, credentials, or
|
||||
output rows. Authoritative input modules locate and correct subject facts;
|
||||
Dataflow does not guess identity by scanning arbitrary transformations.
|
||||
|
||||
Exact terminal run and delivery detail can be minimized idempotently, and
|
||||
subject-linked automation authority can be disabled and revoked. Definitions,
|
||||
active work, decisions, deployments, broad pipeline packages, published
|
||||
Datasource outputs, and institutional attribution require review or retention.
|
||||
|
||||
## Node Library
|
||||
|
||||
The canonical backend catalogue is exposed to the WebUI and groups executable
|
||||
|
||||
Reference in New Issue
Block a user