Skip to main content

Module store_commit

Module store_commit 

Source
Expand description

Signed, hash-addressed Store commit protocol objects.

Modules§

device_join_exchange
device_join_journal
The durable device-join journal model: role progress, and the status and action each recorded step derives.

Structs§

AcceptedStoreCommitPublication
AcceptedStorePublicationEntry
AcceptedStoreSnapshotRef
ActivatedStoreDeviceRegistration
ActivatedStoreDeviceRegistrationRef
CandidateCleanupManifest
CandidateFamilyId
Domain-separated family shared by replacements at one competition point.
CandidateObjectManifest
CircleAccessEnvelopeObjectRef
Exact recipient-visible access envelope paired with its sealed leaf.
CircleAccessLeafObjectRef
Exact recipient-sealed access-leaf object named by a Store activation.
CircleAccessObjectRef
CircleAckBody
One device’s signed acknowledgement of the exact private Circle history it currently holds, encrypted to the Circle epoch key it names. Store members outside the Circle observe only the object’s shape and timing.
CircleAckRef
CircleActivationObjects
Closed exact object graph needed to verify one Store-activated Circle control.
CircleControlRef
CircleMetadataObjectRef
Exact Circle-metadata object and the epoch key that must open it.
CirclePackageInput
CirclePackageRef
CircleSnapshotMetaBody
One device’s signed, Circle-sealed snapshot of the private Circle history it holds at an exact Store frontier. The installable payload is a CircleBootstrapRef — the same image format a member-addition bootstrap carries — so a verifier installs a snapshot with the bootstrap machinery. The metadata additionally binds the exact control, epoch, and key fingerprint the image derives from and the per-(device, Circle) snapshot stream position.
CircleSnapshotRef
Exact coordinate of one signed Circle snapshot on its author’s per-Circle snapshot stream.
CircleSnapshotSuccessorLink
The exact predecessor and create-once successor slot binding one Circle snapshot into its per-(device, Circle) stream.
CommitFrontier
Exact materialized cut across author streams.
DeviceJoinAbandonmentRef
DeviceJoinAttemptId
DeviceReadinessProofBody
The wire body of a joining device’s readiness proof. Every field here is signed.
DeviceRecoveryId
DeviceRecoveryReadiness
MembershipCausalFloor
MembershipRollupBody
Every membership object a reader needs to reach one membership frontier, carried in one object.
MembershipRollupHead
One membership head and the entry it selects, carried by value.
MembershipRollupRef
The exact coordinate of one published membership rollup.
MembershipRollupStream
One author stream’s heads, in sequence order from the stream’s anchor.
ObjectHash
OpenedRetainedMergeHistorySummary
OwnerPromotionAcceptanceBody
The wire body of a promoted member’s acceptance. Every field here is signed.
OwnerPromotionAnchors
OwnerPromotionFinalization
OwnerPromotionId
OwnerPromotionRequestActivation
OwnerPromotionRequestBody
The wire body of an owner-promotion request. Every field here is signed.
OwnerRecoveryActivationId
OwnerRecoveryCursor
OwnerRecoveryNodeBody
OwnerRecoveryNodeRef
ReferencedStoreDeviceRegistration
RegisteredStreamActivation
ResolvedStoreDeviceState
RetainedAcknowledgementChain
A device’s acknowledgement chain, contiguous from sequence one, carried by a snapshot’s portable summary.
RetainedMergeCommitEvidence
The proof values introduced by one verified Merge commit and retained with that commit after its remote authority objects can be reclaimed.
RetainedMergeMembershipProof
RetainedOwnerPromotionRequest
Continuing authority for one request whose target may still accept it. The request’s result supplies exact acceptance; its original predecessor state remains owned only while that request can consume it.
RetainedOwnerPromotionRequestPublication
Exact publication result retained by a request’s continuing operation.
RetainedPackageActivation
Exact package provenance retained while the remote package still exists. Snapshot authentication carries this fact after its commit is retired.
RetainedReclaimAuthorization
RetainedReclaimState
Reclamation’s live objects and unfinished accepted authorizations. Receipts release their exact facts; ordinary covered commits are not retained.
RetainedReplaySnapshotAuthority
Everything a device needs to install one snapshot as its starting state and verify what arrives after it: the Store root and founder it belongs to, the signed metadata, the cut it covers, and the device state and registrations active at that cut.
RetainedStoreDeviceExclusionProposal
RetainedStoreDeviceOperations
RetainedStoreDeviceRegistrationActivations
RetainedStoreSnapshotOwnership
Exact artifacts of a superseded accepted snapshot awaiting physical retirement.
RetainedVerifiedActivatedAck
The acknowledgement one commit activated, together with any uploaded predecessors whose activation candidates this operation retired. Previously activated acknowledgements remain owned by their own retained commits.
RetainedVerifiedMergeHistorySummary
Signed
One signed artifact: the protocol version it was written under, the body, and the signature over both.
SnapshotImageRef
SnapshotMetaBody
StandingStoreAck
The acknowledgement a device currently stands behind: what it asserted, and the commit that carried it.
StoreAckAssertion
What a Store acknowledgement asserts, apart from the bookkeeping every acknowledgement carries fresh: its sequence, the wall clock it was written at, and its links to the neighbours in the device’s acknowledgement chain.
StoreAckBody
StoreAckRef
StoreBatchCommitBody
StoreBatchCommitDeletionTarget
Exact stored candidate commit retained as cleanup authority after abandonment.
StoreBatchCommitRef
Exact identity of one signed Store commit candidate.
StoreCommitCoord
Closed coordinate of one Store commit in its author stream.
StoreCommitOperations
StoreCommitOperationsInput
StoreCommitOrder
Predecessor and dependency order authenticated by one Store commit.
StoreCommitPublication
StoreControl
StoreCreationDescriptor
StoreCreationId
StoreCurrentPublicationRecordBody
StoreDeviceExclusionBody
The wire body of a device’s exclusion. Every field here is signed.
StoreDeviceExclusionCancellationBody
The wire body of an owner’s withdrawal of an exclusion proposal. Every field here is signed.
StoreDeviceExclusionCancellationRef
StoreDeviceExclusionProposalBody
The wire body of a device-exclusion proposal. Every field here is signed.
StoreDeviceExclusionProposalId
StoreDeviceExclusionProposalRef
StoreDeviceExclusionRef
StoreDeviceId
The stable identity of one device in a Store, derived from the Store root and the device’s registration origin. It names a device across the protocol — in membership, commit authorship, and epoch-close participation — and is what Circles::exclude_close_device and Circles::close_status address.
StoreDeviceRecord
StoreDeviceRegistrationBody
StoreDeviceRegistrationRef
StoreDeviceStateRef
StoreHistoryCut
Exact Store history cut across author streams.
StorePackageInput
StorePackageRef
StoreProtocolRootBody
The wire body of a Store’s protocol root. Every field here is signed.
StorePublicationEntryBody
StorePublicationIntervalEntry
StorePublicationPosition
StorePublicationRef
StoreRootRef
StoreSnapshotRef
StoreSnapshotState
The exact membership and device state represented by one Store snapshot.
StreamActivationId
SuccessorLink
VerifiedDeviceExclusionOutcome
VerifiedDeviceExclusionProposal
VerifiedStoreDeviceOperations
VerifiedStorePublicationInterval

Enums§

CandidateExclusiveObjectRef
DeviceJoinAttemptDecisionRef
DeviceStreamAnchor
GrantStreamAnchor
OwnerPromotionStaleReason
OwnerRecoveryPosition
RetainedStoreDeviceExclusionOutcome
StoreCommitBody
StoreDeviceExclusionOutcome
StoreDeviceExclusionOutcomeRef
StoreDeviceProposalState
StoreDeviceRegistrationActivation
StoreDeviceRegistrationActivationRef
StoreDeviceRegistrationOrigin
StoreDeviceStatus
StoreKeyConfirmation
StoreProtocolError
StorePublicationBase
StorePublicationPayload
StorePublicationState
StreamActivation
StreamAnchorDomain

Constants§

STORE_PROTOCOL_ROOT_LOGICAL_KEY
STORE_PROTOCOL_VERSION

Traits§

SignedBody
A value that travels signed. The body names the domain its signature is bound to, so a signature over one artifact can never be replayed as another.

Functions§

ack_slot_prefix
circle_access_envelope_semantic_prefix
circle_access_leaf_semantic_prefix
circle_ack_slot_prefix
circle_bootstrap_image_semantic_prefix
circle_package_semantic_prefix
circle_snapshot_image_semantic_prefix
circle_snapshot_slot_prefix
circle_snapshot_stream_activation
The device-authorized activation binding one device’s per-Circle snapshot stream to its Circle. Such a stream has no first slot in the registration — like the per-Circle acknowledgement stream, it is anchored on the deterministic generation-zero slot both the author and every reader compute.
commit_semantic_prefix
device_exclusion_outcome_semantic_prefix
device_exclusion_proposal_semantic_prefix
device_join_abandonment_semantic_prefix
device_join_cleanup_receipt_semantic_prefix
founder_membership_head_semantic_prefix
founder_registration_semantic_prefix
membership_entry_semantic_prefix
membership_head_slot_prefix
membership_head_stream_prefix
Everything one author stream’s head slots share, up to the sequence number.
membership_rollup_semantic_prefix
owner_promotion_request_publication_semantic_prefix
owner_recovery_semantic_prefix
package_semantic_prefix
provider_access_grant_semantic_prefix
registration_semantic_prefix
semantic_prefix_from_exact_object
snapshot_candidate_semantic_prefix
Logical metadata prefix for one independently allocated Store snapshot candidate.
snapshot_image_semantic_prefix
store_current_publication_logical_key
store_current_publication_semantic_prefix
store_protocol_root_logical_key
store_publication_entry_semantic_prefix

Type Aliases§

CircleAck
CircleSnapshotMeta
DeviceReadinessProof
MembershipRollup
OwnerPromotionAcceptance
OwnerPromotionRequest
OwnerPromotionRequestPublication
The original promoter’s statement of the request’s winning publication. Its publisher signs this after observing the exact accepted provider position.
OwnerRecoveryNode
SnapshotMeta
StoreAck
StoreBatchCommit
StoreCurrentPublicationRecord
StoreDeviceExclusion
StoreDeviceExclusionCancellation
StoreDeviceExclusionProposal
StoreDeviceRegistration
StoreProtocolRoot
StorePublicationEntry