| Request and requirements | What the change has to prove is written down before anyone starts. | Figuring out the requirements afterward, from whatever the work produced. |
| Plan admission | The plan is checked against intent, authority and what it is allowed to affect. The credential issued is narrowed to this task. | A broad standing credential treated as permission for this particular job. |
| Source change and demonstration | The failing test and the passing test are both recorded, separately, against a fixed definition of what was being tested. | A suite result standing in for the individual attempts inside it. |
| Local commit | The change is recorded with its identity, in local custody. | A commit treated as if it had been published. |
| Publication | Something other than the pusher confirms the shared branch now names this change. | A push command returning zero, read as the bytes having reached the remote. |
| Integration | CI ran against the exact published artifact, in a recorded environment. | A local run credited as an integration result. |
| Artifact and provenance | The artifact, its inputs, and its security and provenance evidence are bound together. | An artifact that exists, read as the artifact for this change. |
| Deployment | The platform accepted the deployment and the running system was observed at the expected version. | A deployment exit code read as a healthy running system. |
| Runtime observation | The effect is observed by something that can measure it, with a stated validity window. | Not-observed quietly turned into did-not-happen. |
| Release | Every blocking check fails closed, and the release conditions were met rather than reported met. | An assessment that logs a failure while the release proceeds anyway. |
| Downstream reliance | The claim is licensed to named parties, with a strength ceiling and an expiry. | A claim still being relied on after the evidence behind it lapsed. |