feat(dataflow): add governed DSAR coverage

This commit is contained in:
2026-08-21 03:26:42 +02:00
parent d12e0bce7d
commit 6767905cbb
5 changed files with 1464 additions and 13 deletions
+15
View File
@@ -19,6 +19,21 @@ without storing the previewed row contents.
- **Risk Compliance:** sanctions matching policy, review, dispositions, and
legal evidence.
## Data-subject requests
Dataflow publishes `privacy.dsar.dataflow` for exact pipeline, revision,
reconciliation, run, deployment, trigger, and delivery references and for
minimized operator or automation-authority attribution. It never exports
graphs, SQL, request/event payloads, reconciliation corrections, authorization
snapshots, provenance bodies, errors, source details, hashes, credentials, or
output rows. Authoritative input modules locate and correct subject facts;
Dataflow does not guess identity by scanning arbitrary transformations.
Exact terminal run and delivery detail can be minimized idempotently, and
subject-linked automation authority can be disabled and revoked. Definitions,
active work, decisions, deployments, broad pipeline packages, published
Datasource outputs, and institutional attribution require review or retention.
## Node Library
The canonical backend catalogue is exposed to the WebUI and groups executable