[Privacy] Add governed IDM DSAR coverage #13

Closed
opened 2026-08-21 01:27:09 +02:00 by zemion · 1 comment
Owner

Parent umbrella: GovOPlaN/govoplan#47

Outcome

IDM participates in Core data-subject requests across identity-to-function assignments, typed relationships, governed assignment changes, and lifecycle events, with tenant isolation and third-party minimization.

Acceptance criteria

  • Publish privacy.dsar.idm through the manifest.
  • Corroborate account/identity selectors and namespaced IDM references; fail closed on conflicts.
  • Return capped, deterministic, exact-tenant assignment, relationship, group-context, change, and event records.
  • Minimize third-party identities/actors and exclude settings, properties, provenance, external source references, policy decisions, workflow internals, idempotency keys, request digests, metadata, evidence arrays, and event details.
  • Route active assignment/relationship changes through authorized manual review and retain governed change/event evidence with explicit reasons.
  • Publish no silent automatic deletion of institutional function or relationship facts.
  • Document coverage, exclusions, Organizations/Identity/Access boundaries, and operational consequences.
  • Tests cover selector conflicts, tenant and third-party isolation, opaque-data exclusion, dispositions, foreign actions, and Core active/inactive coverage.
  • IDM, manifest, and focused checks pass.
Parent umbrella: GovOPlaN/govoplan#47 ## Outcome IDM participates in Core data-subject requests across identity-to-function assignments, typed relationships, governed assignment changes, and lifecycle events, with tenant isolation and third-party minimization. ## Acceptance criteria - [x] Publish `privacy.dsar.idm` through the manifest. - [x] Corroborate account/identity selectors and namespaced IDM references; fail closed on conflicts. - [x] Return capped, deterministic, exact-tenant assignment, relationship, group-context, change, and event records. - [x] Minimize third-party identities/actors and exclude settings, properties, provenance, external source references, policy decisions, workflow internals, idempotency keys, request digests, metadata, evidence arrays, and event details. - [x] Route active assignment/relationship changes through authorized manual review and retain governed change/event evidence with explicit reasons. - [x] Publish no silent automatic deletion of institutional function or relationship facts. - [x] Document coverage, exclusions, Organizations/Identity/Access boundaries, and operational consequences. - [x] Tests cover selector conflicts, tenant and third-party isolation, opaque-data exclusion, dispositions, foreign actions, and Core active/inactive coverage. - [x] IDM, manifest, and focused checks pass.
Author
Owner

IDM module coverage is implemented and pushed in 65ff14a. The module suite is green (39 tests), the 68-manifest shape/architecture/governance check passes, and the complete focused workspace gate passes, including all 59 WebUI module permutations and 7 browser conformance checks. Closing as complete.

IDM module coverage is implemented and pushed in `65ff14a`. The module suite is green (39 tests), the 68-manifest shape/architecture/governance check passes, and the complete focused workspace gate passes, including all 59 WebUI module permutations and 7 browser conformance checks. Closing as complete.
Sign in to join this conversation.
No labels
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: GovOPlaN/govoplan-idm#13