PUBLIC PRODUCT TRUTH LEDGER
Inspect the claim before you believe it.
CAPELLA AFEP V0.7 exposes public-safe release truth, authority, evidence, limitations and verification boundaries. It is a transparency surface, not a marketing page.
CURRENT RELEASE
CAPELLA AFEP 0.7.4 / RELEASED
Released product commit d9c02ef163c5ff0cfd2e7efcfdd20daa82dbfa57 and current engineering main reviewed 5626baa41a9abcc3207c1691cf36fb0fca4940a8 are deliberately separate.
Claim → authority → evidence → limitation → verification
Major claims carry proof and invalidation conditions.
Unknown evidence remains unknown; no claim is promoted by code presence alone.
VERIFIEDCAPELLA AFEP 0.7.4 is RELEASED.Verify
- Authority
- Release provenance and website truth reconciliation
- Source / provenance
- d9c02ef163c5ff0cfd2e7efcfdd20daa82dbfa57
- What proves this
- The public product boundary is release 0.7.4 at tag v0.7.4.
- What this does not prove
- Post-release engineering main changes are not automatically 0.7.4 release features.
- Release boundary
- RELEASED_PRODUCT
- What would make this false?
- release commit changed; tag provenance changed; post-release main were presented as original release
DECISIONERCC_CONTRACT_HASH is not the executable mutation/config hash.Verify
- Authority
- CAPELLA authority model
- Source / provenance
- /architecture?focus=ercc
- What proves this
- ERCC owns the reasoning contract and bounded projection only.
- What this does not prove
- ERCC authorization, SAP execution or a runtime outcome.
- Release boundary
- CURRENT_MAIN_REVIEWED
- What would make this false?
- ERCC contract were used as execution authorization; GOVERN did not bind the executable configuration
VERIFIEDGOVERN binds approval to the exact executable configuration.Verify
- Authority
- GOVERN
- Source / provenance
- /architecture?focus=govern
- What proves this
- Qualified output cannot silently become a different authorized write.
- What this does not prove
- SAP will accept, activate or run the deployed artifact.
- Release boundary
- CURRENT_MAIN_REVIEWED
- What would make this false?
- bound execution contract changed; authorization expired; authorization was consumed; authorization provenance were stale
VERIFIEDRAP-04 runtime remained PLATFORM_BLOCKED and not runtime verified.Verify
- Authority
- SAP/runtime evidence classification
- Source / provenance
- CAPELLA_AFEP_0_7_4_RAP04
- What proves this
- Backend and deployment evidence can be verified while runtime verification remains false.
- What this does not prove
- End-user runtime execution.
- Release boundary
- CURRENT_GENERATION_CASE
- What would make this false?
- only deployment existence were observed; only AppIndex registration existed; runtime was platform blocked but shown as verified; execution proof was unavailable
Evidence lineage graph
ERCC contract hash is not the executable mutation/config hash.
The lineage shows how intent becomes evidence without collapsing reasoning, qualification, authorization, execution, SAP truth and claim publication into one authority.
01IntentCAPELLA
- Input
- Engineering request
- Output
- Bounded mission intent
- Claim class
- DEMONSTRATED
- Evidence
- Mission state and context boundary
- Boundary
- Intent is not authorization.
- Next authority
- ERCC reasoning contract
02ERCC reasoning contractERCC
- Input
- Intent + verified context
- Output
- ERCC_CONTRACT_HASH
- Claim class
- DECISION
- Evidence
- Frozen Engineering Task Contract
- Boundary
- Not executable mutation authority.
- Next authority
- SFC qualification
03SFC qualificationSFC 0.13.1
- Input
- Bounded SFC projection
- Output
- Qualified candidate
- Claim class
- VERIFIED
- Evidence
- Qualification and diagnostics
- Boundary
- Qualification is not approval.
- Next authority
- Executable mutation manifest
04Executable mutation manifestCAPELLA/SFC handoff
- Input
- Qualified candidate
- Output
- EXECUTION_CONFIG_OR_MUTATION_HASH
- Claim class
- VERIFIED
- Evidence
- Canonical physical artifact identity
- Boundary
- Different from ERCC_CONTRACT_HASH.
- Next authority
- GOVERN authorization
05GOVERN authorizationGOVERN
- Input
- Exact executable configuration
- Output
- Bound authorization state
- Claim class
- VERIFIED
- Evidence
- Approval provenance
- Boundary
- Stale or changed config blocks execution.
- Next authority
- Execution
06ExecutionA4Layer
- Input
- Approved configuration
- Output
- Execution result
- Claim class
- DEMONSTRATED
- Evidence
- Carrier result and operation record
- Boundary
- Provider capability is not SAP authority.
- Next authority
- SAP realization
07SAP realizationSAP
- Input
- Bounded execution
- Output
- Target-system state
- Claim class
- VERIFIED
- Evidence
- Readback, ATC, service/AppIndex evidence
- Boundary
- SAP remains final authority.
- Next authority
- Runtime classification
08Runtime classificationSAP/runtime
- Input
- Runtime access attempt
- Output
- VERIFIED / FAILED / PLATFORM_BLOCKED / UNVERIFIED
- Claim class
- VERIFIED
- Evidence
- Runtime observation vocabulary
- Boundary
- Deployment verified does not mean runtime verified.
- Next authority
- Evidence claim
09Evidence claimObservatory
- Input
- Observed proof
- Output
- Public claim + limitation
- Claim class
- VERIFIED
- Evidence
- Claim evidence record
- Boundary
- Unknown evidence stays unknown.
- Next authority
- Human review
Authority microscope
Seven authority layers. No hidden eighth layer.
Verified engineering cases
Current and historical evidence stay separate.
Managed RAP Creation
A validated managed RAP mission moved through SFC 0.13.1 qualification, explicit human authorization, A4Layer 1.0.0 execution, SAP realization, SAP readback and ATC with 0 findings.
CAPELLA_MULTI_OBJECT_NAMING_CORRECTED_LIVE_REALIZATION_R1Governed FullStack deployment with platform-limited runtime
RAP-04 records a current-generation FullStack case where backend delivery and deployed content were verified, while runtime execution remained platform-blocked and was not represented as runtime-verified.
CAPELLA_AFEP_0_7_4_RAP04Capability ledger
Public states avoid binary marketing checkmarks.
Current Context and ERCC
VERIFIEDAuthoritative context, assumptions, unknowns and ERCC Engineering Task Contract projection are inspectable before SFC.
Typed field projection
VERIFIEDTyped field fidelity and grounded projection checks prevent silent widening before qualification.
SFC qualification and SAP preflight
VERIFIEDSFC 0.13.1 qualifies candidates while SAP preflight and canonical artifact identity remain separate gates.
Canonical physical artifact identity
VERIFIEDThe executable mutation manifest and physical artifact identity are frozen before governed execution.
Bound SAP-write authorization
VERIFIEDHuman approval remains explicit, single-use and bound to the exact execution configuration.
Fiori deployment authorization
DEMONSTRATEDFiori deployment authorization is distinct from SAP-write authorization and does not silently inherit it.
Backend realization
VERIFIEDGoverned carrier execution, SAP generation, activation, ATC, backend readback, service publication and OData validation are represented as separate proof points.
Fiori delivery
VERIFIEDUI5 validation/build, BSP deployment, deployment reconciliation and deployed-content verification are exposed without equating deployment with runtime execution.
Runtime verification
DEMONSTRATEDRuntime registration and execution verification are classified as VERIFIED, FAILED, PLATFORM_BLOCKED or UNVERIFIED.
Evidence and recovery
VERIFIEDOperator truth, backend truth, safe resume, evidence timeline and post-realization correction keep machine activity separate from verified delivery.
Generic existing RAP modification
NOT SUPPORTEDGeneric modification of arbitrary existing RAP applications remains outside current source-proven support.
Multi-environment qualification
NOT SUPPORTEDBroader target-environment qualification remains roadmap until evidence supports it.
Known limitations
What CAPELLA refuses to overstate.
Claim classes are fixed: VERIFIED, DEMONSTRATED, EXPERIMENTAL, ROADMAP, DECISION. Evidence gaps do not become claims.
- 01RUNTIME_VERIFIED remains false when runtime evidence is PLATFORM_BLOCKED.
- 02Deployment verification does not equal runtime verification.
- 03SAP registration or AppIndex evidence alone does not prove runtime execution.
- 04Historical verified evidence is not silently promoted into a current-release SAP outcome.
- 05Post-release engineering main is reviewed separately from the released 0.7.4 product boundary.
- 06Effectiveness telemetry for agent/skill/MCP outcome influence is not yet measured.
Role lens
Same evidence, different emphasis.
No personal role profile is stored. The lens only changes the recommended path.
