Skip to main content

Architecture source register

Status: Implemented documentation control. Last verified: 10 August 2026. Use source plus approved decisions to update a claim. Do not change a status from a slide, issue title, or repository name alone.

Precedence

  1. The current request and reviewed cdpg-docs target architecture define the documentation outcome.
  2. Approved Architecture Decision Records (ADRs) define responsibility and contract decisions.
  3. Current source/tests establish implemented behavior.
  4. GitOps and orchestration establish deployment/local integration.
  5. Roadmaps/handover establish status and open work, but do not turn planned behavior into an API.

When sources conflict, record the gap. Do not silently select the most convenient version.

Canonical design sources

SubjectSource
Full platform architectureCDPG architecture site
Shared SDK architecturePLATFORM-ARCHITECTURE.md
Authorization targetAUTHORIZATION-PLATFORM-TARGET-DESIGN.md
Go service rulesGO-SERVICE-STANDARDS.md and ENGINEERING-PLAYBOOK.md
API, persistence, messagingAPI-STANDARDS.md, DATABASE.md, MESSAGING-AND-WORKERS.md
SecuritySECURITY-REVIEW.md
Agentic PlaneAGENT-PLANE.md
Deployment/testing/portsGITOPS.md, TESTING.md, PORTS.md
Active implementation statusPLATFORM-IMPLEMENTATION-HANDOFF.md and roadmap

Key ADRs

Implementation evidence

The module guide was checked against dx-common-go. Integration claims were checked against dx-gateway-go, dx-authz-go, dx-acl-go, dx-user-go, dx-catalogue-go, dx-registry-go, dx-audit-go, dx-notification-go, dx-files-connect-api-go, dx-dataplane-rs-go, dx-dataplane-ogc-go, dx-agent-registry-go, dx-mcp-gateway-go, dx-agent-runtime-go, orchestration, and dx-gitops on their current development branches.

Decisions still needed

  • Reconcile the OPA target with the conflicting evaluator ADR direction; approve policy/bundle/runtime governance.
  • Approve composite authorization and carried-decision wire contracts, revisions, expiry, attestation, revocation, and typed-obligation schema.
  • Approve request-bound represented-subject serialization/binding.
  • Normalize ACL item/access values, gateway mappings, OpenFGA types/relations, and agent relation validation.
  • Complete internal gRPC adoption and streaming interception decisions.
  • Define projection watermark/revision and reconciliation contracts.

Until these are resolved, the safe interim behavior on the relevant page applies, normally default deny.