Field Pre-Start Interaction & Application Design
INTERACTION_DESIGN ≠ FUNCTIONAL_REDESIGN. This design specifies screens, actions, navigation, visibility and presentation semantics only. It creates no contract, state, fact class, authority path, source authority, integration, prototype, scenario or synthetic field data.
A · Interaction / Application Design Executive View
G-FPSO-03 = PASS_WITH_CONTROLLED_EXTERNAL_DEPENDENCIES
The eight frozen field pre-start contracts are expressible as a coherent field application without altering a single contract clause. Sixteen screens, one primary journey and a synthesis board carry every contractually required human transition; no material action exists without a governing contract, transition, decision right and event.
Field simplicity is produced by orchestration — the application decides what comes next from context — never by hiding or removing a control requirement.
- · Prototype implementation of the Pre-Start Board
- · Demo scenario engineering
- · Synthetic field data and simulated process time
- · End-to-end simulation
- · Live integration to Q4 / Aconex / P6 / Forwood
- · Operational closure evidence for BC-01…BC-09
- · Formal Bechtelization certification (deferred to G-FPSO-04B)
- · MODIFY_FUNCTIONAL_CONTRACTS
- · ADD_FUNCTIONAL_CONTRACTS
- · ADD_FACT_CLASSES
- · ADD_STATES
- · ADD_STATE_TRANSITIONS
- · ADD_DECISION_RIGHTS
- · CHANGE_AUTHORITY_LOGIC
- · CHANGE_SOURCE_AUTHORITY
- · CHANGE_APPLICABILITY_LOGIC
- · CHANGE_FAILURE_BEHAVIOUR
- · CHANGE_DETERMINISTIC_RULES
- · CREATE_LIVE_INTEGRATIONS
- · BUILD_THE_FINAL_PROTOTYPE
- · CREATE_DEMO_SCENARIOS
- · CREATE_SYNTHETIC_FIELD_DATA
- · CREATE_SIMULATED_PROCESS_TIME
- · RUN_END_TO_END_SIMULATION
- · CREATE_OPERATIONAL_CLOSURE_EVIDENCE
B · Input Baseline Integrity
All governing inputs consumed by reference; none modified.
| Input | Identifier | Status | Consumption | Verdict | Note |
|---|---|---|---|---|---|
| Parent architecture | PH6A-IADA-REV1 | FROZEN_AND_SEALED (SEAL-01) | BY_REFERENCE_READ_ONLY | CONFIRMED | — |
| Functional baseline | PH6A-FPSO-FUNCTIONAL-BASELINE-REV0 | FROZEN | BY_REFERENCE | CONFIRMED | 8 descendant contracts consumed as requirements of record; 0 clauses restated as design. |
| Contract assurance | PH6A-FPSO-FCA-REV0 | PASS_WITH_CONTROLLED_EXTERNAL_DEPENDENCIES | BY_REFERENCE | CONFIRMED WITH NOTE | 12 external owner decisions remain controlled-open. UX renders them as governed unresolved states; it does not resolve them. |
| Corporate interaction architecture | PH6A-BXIA-REV0 | ACCEPTED | BY_REFERENCE | CONFIRMED | Interaction grammar and 13-tab detail model inherited, not redefined. |
| Physical Pre-Start Board artefact | PRESTART-BOARD-STRUCTURAL-REF | STRUCTURAL_REFERENCE = VALID · FILLED_CONTENT = EXCLUDED_FROM_BASELINE | BY_REFERENCE | CONFIRMED | Information families and layout familiarity preserved; no populated sample values carried as defaults or master data. |
| Contract | Name | Version | Consumption | Modified |
|---|---|---|---|---|
| FC-FPSO-01 | LocationAcquisitionService | REV0 | BY_REFERENCE | YES |
| FC-FPSO-02 | ContextualDocumentRetrieval | REV0 | BY_REFERENCE | YES |
| FC-FPSO-03 | PreStartPreventivePackage + PreStartPreventivePackageItem | REV0 | BY_REFERENCE | YES |
| FC-FPSO-04 | CrewConfirmationRecord | REV0 | BY_REFERENCE | YES |
| FC-FPSO-05 | IPERCContinuo | REV0 | BY_REFERENCE | YES |
| FC-FPSO-06 | FieldDeltaAssessment | REV0 | BY_REFERENCE | YES |
| FC-FPSO-07 | ToolReadiness | REV0 | BY_REFERENCE | YES |
| FC-FPSO-08 | DigitalSignatureAssurance | REV0 | BY_REFERENCE | YES |
Frozen contracts are REQUIREMENTS_OF_RECORD_FOR_IMPLEMENTATION. This design translates them into screens; it does not redefine them.
C · Corporate Interaction Inheritance
PH6A-BXIA-REV0
| Preserved affordance | Field expression |
|---|---|
| SavedViews | Shift-scoped saved views: My Front, Blocking Only, Awaiting Signature, SIMOPS Affected. |
| ControlledStatus | Every register row carries the governed contract state, never a derived label. |
| OwnerVisibility | Owner and required-by are rendered adjacent to any blocking condition. |
| SourceVisibility | SourceSystem + SourceOwner + ParticipationMode shown on all federated records. |
| RevisionVisibility | Revision and effective date always visible; competing revisions raise REVISION_CONFLICT. |
| AuthorityVisibility | DecisionRight and scope shown at the point of action, not only in an admin screen. |
| History | GovernedOperationalEvent timeline on every material object. |
| Provenance | 'Why is this here?' chain available on every prepopulated or derived value. |
This phase is not the formal Bechtelization conformance review. The design is constructed to be inherently compatible with G-FPSO-04B.
D · Field Journey Architecture
Specification only — the journey is not simulated.
| # | Step | Screen | Contract | Human act | Progression rule |
|---|---|---|---|---|---|
| 1 | OPEN_PRESTART | S01 | Parent · session | Open field operational home | Always available to an authenticated field identity. |
| 2 | ESTABLISH_SHIFT_CONTEXT | S01 | Parent · Shift | Confirm project / area / shift / supervisor context | Shift context must be established before location acquisition is offered. |
| 3 | ACQUIRE_LOCATION | S02 | FC-FPSO-01 | Trigger acquisition or manual selection | GPS candidate is a suggestion; it never advances the journey by itself. |
| 4 | CONFIRM_LOCATION | S02 | FC-FPSO-01 | Human confirms location | HUMAN_CONFIRMED_LOCATION is the only input downstream screens consume. |
| 5 | SELECT_WORK | S03 | Parent · WorkPackage / JobCard | Select governed candidate work | Candidates are governed objects only; no local work object is created. |
| 6 | LOAD_OPERATIONAL_CONTEXT | S04 | Parent · LocationOperationalContext | Read context | CONTEXT ≠ AUTHORIZATION; loading context grants nothing. |
| 7 | RETRIEVE_CONTEXTUAL_INFORMATION | S05 | FC-FPSO-02 | Review retrieved corporate documents | Retrieved ≠ applicable; competing revisions surface REVISION_CONFLICT. |
| 8 | EVALUATE_APPLICABILITY | S05 / S06 | FC-FPSO-02 / FC-FPSO-03 | Confirm applicability where the contract requires human confirmation | Absent configuration renders APPLICABILITY_UNRESOLVED, never NOT_REQUIRED. |
| 9 | COMPOSE_PRESTART_PACKAGE | S06 | FC-FPSO-03 | Compose / review package items | Every item is evaluated independently; no compensatory score. |
| 10 | CONFIRM_CREW | S07 | FC-FPSO-04 | Confirm present crew and per-person decisions | PRESENT ≠ COMPETENT ≠ AUTHORIZED; replacement never inherits. |
| 11 | VALIDATE_IPERC | S08 | FC-FPSO-05 | Confirm / modify / add IPERC rows | Prepopulated rows remain prepopulated until explicitly human-confirmed. |
| 12 | COMPLETE_APPLICABLE_CHECKS | S10 | Parent · Checklist | Complete applicable checklists | PRESELECTED ≠ COMPLETED. |
| 13 | REVIEW_PETAR_IF_REQUIRED | S12 | Parent · Permit / PETAR | Review high-risk permit where required | Applicability is resolved before any permit content is presented as actionable. |
| 14 | RESOLVE_EXCEPTIONS | S09 / all | FC-FPSO-06 + originating contracts | Address reason-coded exceptions | Every open exception exposes ReasonCode, AffectedObject, RequiredAction, Owner. |
| 15 | SUBMIT_FOR_REVIEW | S06 | FC-FPSO-03 | Submit package for review | Submission is a review act; it produces no authorization styling. |
| 16 | VERIFY_DECISION_RIGHT | S14 | Parent · DecisionRight | System verifies right; human sees basis | UI_PERMISSION ≠ DECISION_RIGHT; actions disabled without a governing right. |
| 17 | SIGN_WHERE_REQUIRED | S15 | FC-FPSO-08 | Execute signature | Idempotent request; signature records an act, it does not create authority. |
| 18 | PRESENT_RESULTING_STATE | S16 | All | Read resulting operational state | READY / CONDITIONAL / HOLD / STOP rendered from contract states only. |
User journey specification only. The journey is not simulated, no step is executed, and no synthetic field data is produced.
E · Navigation Architecture
Context drives the next required step.
| Node | Module | Screen | Contract | Context gate |
|---|---|---|---|---|
| NAV-01 | Pre-Start Home | S01 | Parent · Shift | Always |
| NAV-02 | Location | S02 | FC-FPSO-01 | Shift context established |
| NAV-03 | Work | S03 | Parent · JobCard | HUMAN_CONFIRMED_LOCATION exists |
| NAV-04 | Operational Context | S04 | Parent · LocationOperationalContext | Location confirmed |
| NAV-05 | Preventive Package | S06 | FC-FPSO-03 | Work selected |
| NAV-06 | Crew | S07 | FC-FPSO-04 | Work selected |
| NAV-07 | IPERC | S08 | FC-FPSO-05 | Work selected |
| NAV-08 | Checklists | S10 | Parent · Checklist | Applicability evaluated |
| NAV-09 | Tools & Equipment | S11 | FC-FPSO-07 + parent Equipment | Work selected |
| NAV-10 | PETAR / Permits | S12 | Parent · Permit | Applicability resolved |
| NAV-11 | Risks & Critical Controls | S08b | Parent · CriticalControl | Work selected |
| NAV-12 | SIMOPS | S13 | Parent · SIMOPS | Location confirmed |
| NAV-13 | Authority | S14 | Parent · DecisionRight | Always (read); action-scoped for material acts |
| NAV-14 | Signatures | S15 | FC-FPSO-08 | Signable object exists |
| NAV-15 | History | S17 | Parent · GovernedOperationalEvent | Object selected |
| NAV-16 | Assurance Trace | S18 | Parent · provenance | Optional, opt-in depth |
| NAV-17 | Pre-Start Board | S16 | Synthesis of all | Operational context exists |
- · Context drives the next required step: the home screen always names one next action, derived from the first unmet contract precondition.
- · Modules remain directly reachable for supervision and assurance roles; field users are never forced to walk all seventeen nodes manually.
- · Navigation availability never implies authorization — an open module can still hold a disabled material action.
- · A gated node is shown with its gating reason code, never hidden without explanation.
F–U · Screen Architecture
18 screen specifications with field/assurance separation.
Digital Pre-Start Home
§FParent · Shift / SupervisorContextFIELD_OPERATIONAL_HOME — operational synthesis and guided entry point; not a second system of record, not a free-form entry board, not a static dashboard, not a document folder.
- · Project
- · Area
- · Shift
- · Date
- · SupervisorContext
- · CurrentLocation
- · PlannedWork
- · CurrentConstraints
- · PreStartPackageState
- · Planned work ≠ authorized work
- · Package state is a contract state, never a score
- · No shift context → guided establish-context prompt with reason code, not an empty board
Location Acquisition
§GFC-FPSO-01Establish a human-confirmed working location; separate detection from confirmation at all times.
- · GPS_DETECTED_POSITION
- · LIKELY_LOCATION
- · ALTERNATIVE_LOCATION_CANDIDATES
- · MANUAL_LOCATION_SELECTION
- · HUMAN_CONFIRMED_LOCATION
- · SUGGESTED rendered as outlined/neutral candidate card
- · CONFIRMED rendered as a solid governed state chip with actor and timestamp
- · GPS_MATCH = AUTHORIZED is never rendered in any form
- · GPS unavailable → governed contract fallback state and manual selection path; no invented bypass
- · Low-confidence candidate set → candidates listed without a default selection
Location Change Behaviour
§GFC-FPSO-01Make location change a governed, visible, dependency-scoped event.
- · LOCATION_CHANGE_DETECTED
- · AffectedObjects
- · ReassessmentRequired
- · ReasonCode
- · Silent Location_ID replacement is structurally impossible: the prior confirmed location remains rendered until change is dispositioned
- · Dependent objects listed individually with their own reassessment reason code
Work Selection
§HParent · WorkPackage / JobCard / ActivitySelect governed work under the confirmed location.
- · WorkPackage
- · JobCard
- · Activity
- · Discipline
- · PlannedExecutionWindow
- · Location
- · Restrictions
- · SIMOPS
- · Readiness
- · Selection ≠ authorization
- · No local Work or JobCard object is created for UX convenience
- · No candidate work → reason code and owner for the planning gap, not an empty list
Operational Context
§IParent · LocationOperationalContextPresent the integrated location picture. CONTEXT ≠ AUTHORIZATION.
- · Planned Work
- · Active Work
- · Crew
- · Equipment
- · Critical Risks
- · SIMOPS
- · Restrictions
- · Environmental Conditions
- · Permits / Isolations
- · Continuity
- · Recent Material Events
- · No action on this screen can advance an authorization state
- · Unavailable context section renders SOURCE_UNAVAILABLE with last verified timestamp where the contract permits
Contextual Corporate Information
§JFC-FPSO-02Aconex-inspired document register scoped to the confirmed context.
- · Document_ID
- · Title
- · DocumentClass
- · Revision
- · Status
- · SourceSystem
- · SourceOwner
- · ParticipationMode
- · EffectiveDate
- · ApplicabilityState
- · Retrieved
- · Applicable
- · RequiresConfirmation
- · NotApplicable — four visually distinct register states
- · Missing configuration renders APPLICABILITY_UNRESOLVED, never NOT REQUIRED
- · Competing revisions → REVISION_CONFLICT row state; no automatic revision election, no default pre-selection
Pre-Start Preventive Package
§KFC-FPSO-03Independent per-item readiness presentation with no compensatory score.
- · Crew / Attendance
- · Work Order
- · IPERC Continuo
- · ATS
- · PETAR
- · Checklists
- · Tools
- · Equipment
- · Critical Controls
- · Permits / Isolations
- · PETS / CP References
- · SIMOPS Conditions
- · Restrictions
- · Each item shows Applicability, CurrentState, RequiredAction, Owner, Source, Version, ReasonCode
- · INVALIDATED_AFTER_PREPARATION is styled distinctly from CURRENTLY_COMPLETE
- · No aggregate percentage, score or progress ring
- · Post-preparation invalidation propagates visibly to the package header and to dependent items only
Crew Confirmation
§LFC-FPSO-04Per-person governed confirmation with no inheritance on replacement.
- · ExpectedCrew
- · PresentCrew
- · Identity
- · Role
- · CompetencyDecision
- · TrainingDecision
- · FitnessDecision
- · AuthorityStatus
- · Exception
- · PRESENT ≠ COMPETENT
- · COMPETENT ≠ AUTHORIZED
- · Replacement opens an empty governed record: no role, competency, decision right or prior confirmation is carried over
- · Expired or missing competency renders as a reason-coded exception with owner and required action
IPERC Continuo
§MFC-FPSO-05Field hazard assessment with strictly separated information origins.
- · TaskStep
- · Hazard
- · Risk
- · Control
- · ResidualRisk
- · Responsible
- · DangerousEnergy
- · CriticalControl
- · HoldPoint
- · CrossReview
- · SYSTEM_PREPOPULATED
- · FIELD_OBSERVED
- · HUMAN_CONFIRMED
- · AUTHORIZED — four never-merged visual origins
- · Cross-review threshold reached → governed cross-review requirement with owner; thresholds are configuration-governed, never UI-inferred
Field Delta Assessment
§NFC-FPSO-06Expected versus observed comparison with dependency-scoped consequences.
- · Location
- · Crew
- · Equipment
- · Tool
- · Environment
- · SIMOPS
- · Access
- · Restriction
- · DocumentRevision
- · CriticalControl
- · UnexpectedHazard
- · ExpectedContext and ObservedFieldContext are rendered as two columns, never merged
- · MATERIAL_DELTA_REQUIRES_REASSESSMENT lists only impacted dependent objects
- · Global invalidation is prohibited where dependency is local; the impacted set is always enumerated
Checklists
§OParent · Checklist / InspectionPresent only the applicable checklist set with its justification.
- · WhyApplicable
- · SourceRequirement
- · CurrentState
- · RequiredVerifier
- · PRESELECTED ≠ COMPLETED
- · Applicability justification is always visible, never implicit
- · Absent applicability configuration → APPLICABILITY_UNRESOLVED, never omission from the list
Tools & Equipment
§PFC-FPSO-07 + parent EquipmentTool readiness presentation; equipment reused from the parent object, never duplicated.
- · Tool_ID
- · ToolClass
- · RequiredForActivity
- · InspectionState
- · CertificationState
- · Condition
- · Validity
- · Restriction
- · Equipment: Availability
- · Inspection
- · Certification
- · Maintenance
- · PreUse
- · OperatorAuthorization
- · Location
- · LISTED ≠ READY
- · No second Equipment entity is created inside Pre-Start
- · Tool failure propagates only to dependent work/readiness; unrelated work remains unaffected and this scoping is shown
PETAR / Permits
§QParent · Permit / WorkAuthorizationApplicability-first permit presentation.
- · Applicability: NOT_REQUIRED / REQUIRED / REQUIRES_CONFIRMATION
- · Permit content
- · Approver
- · Validity
- · Conditions
- · PREPOPULATED / PENDING_HUMAN_REVIEW styling is explicitly non-approval
- · A prepopulated PETAR is never rendered with approved styling
- · Unresolved applicability renders REQUIRES_CONFIRMATION with owner, never NOT_REQUIRED
SIMOPS
§RParent · SIMOPS compositional modelPairwise and aggregate concurrent-work presentation.
- · PairwiseInteraction
- · LocationConcurrentWorkSet
- · AggregateLocationState
- · PAIRWISE_PASS ≠ LOCATION_PASS
- · Aggregate conflict stays visible even when every pairwise cell is acceptable
- · Aggregate conflict is rendered at location level with its cumulative rule identity (CUM-*)
Authority
§SParent · DecisionRight / DelegationMake the authority basis of every material action explicit.
- · AuthenticatedIdentity
- · Role
- · Permission
- · Competency
- · DecisionRight
- · DecisionScope
- · EffectivePeriod
- · Delegate
- · AuthoritySource
- · UI_PERMISSION ≠ DECISION_RIGHT
- · Material action controls are enabled only where the governing decision right permits the act, with the basis shown on hover/expand
- · No valid delegate → governed HOLD with escalation route; never a bypass or a hidden control
Digital Signature Assurance
§TFC-FPSO-08Record a governed signing act. Signature ≠ DecisionRight.
- · Object_ID
- · ObjectVersion
- · Signer
- · DecisionRightStatus
- · SignatureMethod
- · CredentialStatus
- · Timestamp
- · IntegrityReference
- · Never labelled digital notary; no legal sufficiency claim is made anywhere in the UI
- · SIGNATURE_VERSION_CONFLICT renders prior signatures as preserved history marked NOT_VALID_FOR_CURRENT_VERSION
- · Repeated activation enters a controlled pending state; duplicate material events cannot be produced by repeated clicks
Pre-Start Board Synthesis
§USynthesis of all consumed contractsReconstruct the familiar physical board as a dynamic synthesis view — never a second authoritative data-entry system.
- · Shift / Project Context
- · Work Planned
- · Crew
- · Critical Risks
- · SIMOPS
- · Restrictions
- · Preventive Package
- · Actions
- · Previous Shift Continuity
- · Current Operational State
- · Every board cell is read-through to its governing object; no value is editable on the board
- · Filled sample content from the physical reference artefact is excluded from the baseline
- · Unavailable family renders SOURCE_UNAVAILABLE, distinct from CONTROL_FAILED
History
§XParent · GovernedOperationalEventReconstructable event timeline on every material object.
- · Timestamp
- · Actor
- · Action
- · PreviousState
- · ResultingState
- · ReasonCode
- · ObjectVersion
- · History is append-only in presentation; no event may be visually suppressed
- · Gaps in event availability are labelled, never silently compressed
Assurance Trace
§WParent · provenance / fact classesOptional deeper reconstructability view. Field simplicity must not eliminate reconstructability.
- · Source
- · SourceOwner
- · FactClass
- · RuleVersion
- · Applicability
- · DecisionRight
- · ReasonCode
- · GovernedEvent
- · ProvenanceChain
- · Provenance is strictly read-only; nothing in this view can alter a state
- · Broken chain renders BROKEN_CHAIN explicitly rather than an inferred value
V · Field View & W · Assurance Trace Boundary
Field simplicity must not eliminate reconstructability.
| Aspect | Field view | Assurance view | Rule |
|---|---|---|---|
| Vocabulary | Operational language | Architecture and governance vocabulary | Same underlying state; different naming layer only. |
| Depth | Blocking conditions and next permitted action | Fact class, rule version, provenance chain | Depth is additive; nothing is removed from the record. |
| Control requirements | Fully preserved | Fully preserved | Simplification never removes a control requirement. |
| Editability | Governed field acts only | Read-only | Assurance depth never becomes an alternate entry path. |
Y · Failure, Offline & Concurrency UX
Fail-closed presentation; never fabricate source state.
| Condition | Presentation | Prohibited |
|---|---|---|
| SOURCE UNAVAILABLE | Explicit unavailable state with the source system named; last verified information shown only where the governing contract permits, always with its timestamp and state. | Fabricating current source status or rendering unavailability as CONTROL_FAILED. |
| CONTROL FAILED | Material failure styling (red) with reason code, affected object, required action and owner. | Conflating a failed control with an unreachable source. |
| OFFLINE | Persistent offline indicator scoped to what the contracts permit offline. | Presenting unsynchronized field data as reconciled corporate truth. |
| SYNC PENDING | Per-object pending badge with queued event count. | Implying corporate acceptance of a pending event. |
| CONFLICT | Both states preserved and displayed; resolution routed to the governing authority. | Last-write-wins or silent overwrite. |
| CONCURRENCY CONFLICT | YourVersion, CurrentVersion, ChangedBy, ChangedAt, RequiredResolution rendered together. | Silent overwrite of another actor's version. |
| APPLICABILITY UNRESOLVED | Controlled warning state with owner and required configuration decision. | Rendering absent configuration as NOT REQUIRED. |
| State | Usage |
|---|---|
| READY | All governing contract preconditions satisfied for the presented scope. |
| CONDITIONAL | Progression permitted only under stated governed conditions. |
| HOLD | Progression blocked; reason code, owner and required action always shown. |
| STOP | Active work must cease — material failure or prohibition. |
| OPEN / PENDING / EVIDENCE REQUIRED / UNRESOLVED | Controlled warning. Missing information does not automatically render as failure. |
Red is reserved for material FAIL, STOP, PROHIBITED, CONTRADICTION or a governed equivalent. Positive/green styling is never applied to a reviewed-but-unauthorized record.
- · Every material HOLD, REASSESS_REQUIRED, CONFLICT, REJECT and UNAVAILABLE exposes ReasonCode, ReasonDescription, AffectedObject, RequiredAction, Owner and EscalationRoute where defined.
- · No unexplained HOLD may be rendered anywhere in the application.
Z · Responsive Field Design
Control requirements are never reduced on mobile.
| Breakpoint | Behaviour | Priority |
|---|---|---|
| Desktop (assurance / supervision) | Full register + detail + assurance trace side by side; matrices rendered in full. | Register density, cross-object comparison, provenance. |
| Tablet (field supervision) | Two-pane: context list plus governed detail; matrices scroll horizontally with sticky headers. | Package items, crew, IPERC, signature. |
| Field mobile | Single-column, large targets, one governed act per view, sticky blocking banner and next permitted action. | Location · Work · CurrentState · RequiredAction · BlockingReason · FieldValidation · Signature. |
Control requirements are never reduced on mobile. Reduced density is achieved by progressive disclosure, never by omitting a mandatory control, a reason code or an authority basis.
- · No decorative gamification
- · No oversized marketing cards
- · No arbitrary scores or readiness percentages
- · No excessive animation
- · No chat-first operational workflow
- · No AI-avatar interaction
- · No generic SaaS styling disconnected from project operations
AA · Design-to-Contract Traceability Matrix
25 material interactions · OrphanUIActions = 0
| Screen | Component | User action | Contract | Clause | Current state | Permitted transition | Decision right | Event | Reason code | Resulting state | Expected UI behaviour |
|---|---|---|---|---|---|---|---|---|---|---|---|
| S02 | C-LOC-CONFIRM | Confirm location | FC-FPSO-01 | LocationConfirmation | LOCATION_CANDIDATE_PRESENTED | CANDIDATE → HUMAN_CONFIRMED | DR-FIELD-CONFIRM-LOCATION | LocationConfirmed | RC-LOC-CONFIRMED | LOCATION_HUMAN_CONFIRMED | Candidate styling replaced by confirmed chip with actor and timestamp; downstream nodes unlock. |
| S02 | C-LOC-MANUAL | Select location manually | FC-FPSO-01 | ManualSelectionFallback | GPS_UNAVAILABLE | GPS_UNAVAILABLE → MANUAL_SELECTION_PENDING | DR-FIELD-CONFIRM-LOCATION | ManualLocationSelected | RC-LOC-GPS-UNAVAILABLE | LOCATION_CANDIDATE_PRESENTED | Governed fallback path shown; no bypass affordance rendered. |
| S02b | C-LOC-CHANGE-ACK | Acknowledge location change | FC-FPSO-01 | LocationChangePropagation | LOCATION_CHANGE_DETECTED | CHANGE_DETECTED → REASSESSMENT_REQUIRED | DR-FIELD-CONFIRM-LOCATION | LocationChangeDispositioned | RC-LOC-CHANGE-REASSESS | DEPENDENTS_REASSESSMENT_REQUIRED | Affected object list rendered; prior Location_ID remains visible until disposition. |
| S03 | C-WORK-SELECT | Select governed work | Parent · JobCard | WorkSelection | WORK_CANDIDATE_LISTED | CANDIDATE → SELECTED_CONTEXT | DR-FIELD-SELECT-WORK | WorkContextSelected | RC-WORK-SELECTED | WORK_CONTEXT_ESTABLISHED | Selection establishes context only; no authorization styling applied. |
| S05 | C-DOC-APPLICABILITY-CONFIRM | Confirm document applicability | FC-FPSO-02 | ApplicabilityConfirmation | REQUIRES_CONFIRMATION | REQUIRES_CONFIRMATION → APPLICABLE | DR-APPLICABILITY-CONFIRM | DocumentApplicabilityConfirmed | RC-DOC-APPLICABLE | APPLICABLE | Register row moves state; retrieved-only rows remain visually distinct. |
| S05 | C-DOC-REVISION-CONFLICT | Escalate revision conflict | FC-FPSO-02 | CompetingRevisionControl | REVISION_CONFLICT | REVISION_CONFLICT → ESCALATED_TO_DOCUMENT_AUTHORITY | DR-DOC-AUTHORITY | RevisionConflictRaised | RC-DOC-REVISION-CONFLICT | AWAITING_DOCUMENT_AUTHORITY | No revision preselected; both revisions rendered with owner and escalation route. |
| S06 | C-PKG-ITEM-REVIEW | Review package item | FC-FPSO-03 | ItemEvaluation | ITEM_PENDING | PENDING → ITEM_SATISFIED | ITEM_BLOCKED | DR-PACKAGE-REVIEW | PackageItemEvaluated | RC-PKG-ITEM-STATE | ITEM_SATISFIED | ITEM_BLOCKED | Item evaluated independently; no aggregate score rendered. |
| S06 | C-PKG-SUBMIT-REVIEW | Submit package for review | FC-FPSO-03 | PackageReviewSubmission | PACKAGE_COMPOSED | COMPOSED → UNDER_REVIEW | DR-PACKAGE-SUBMIT | PackageSubmittedForReview | RC-PKG-SUBMITTED | UNDER_REVIEW | Neutral review styling; explicitly not authorization styling. |
| S06 | C-PKG-INVALIDATION-BANNER | Open invalidated item | FC-FPSO-03 | PostPreparationInvalidation | INVALIDATED_AFTER_PREPARATION | INVALIDATED → ITEM_PENDING | DR-PACKAGE-REVIEW | PackageItemInvalidationSurfaced | RC-PKG-INVALIDATED | ITEM_PENDING | Distinct styling from CURRENTLY_COMPLETE; propagation shown on package header. |
| S07 | C-CREW-CONFIRM | Confirm crew member | FC-FPSO-04 | PersonConfirmation | EXPECTED | EXPECTED → PRESENT_CONFIRMED | DR-CREW-CONFIRM | CrewMemberConfirmed | RC-CREW-PRESENT | PRESENT_CONFIRMED | Presence chip only; competency and authority chips remain independent. |
| S07 | C-CREW-REPLACE | Record crew replacement | FC-FPSO-04 | ReplacementNonInheritance | PRESENT_CONFIRMED | PRESENT_CONFIRMED → REPLACEMENT_PENDING_EVALUATION | DR-CREW-CONFIRM | CrewReplacementRecorded | RC-CREW-REPLACEMENT | REPLACEMENT_PENDING_EVALUATION | New person record opens empty: no role, competency, decision right or confirmation inherited. |
| S08 | C-IPERC-CONFIRM-ROW | Confirm prepopulated row | FC-FPSO-05 | HumanConfirmation | SYSTEM_PREPOPULATED | PREPOPULATED → HUMAN_CONFIRMED | DR-IPERC-CONFIRM | IpercRowConfirmed | RC-IPERC-CONFIRMED | HUMAN_CONFIRMED | Origin styling changes; source provenance retained and still viewable. |
| S08 | C-IPERC-MODIFY-ROW | Modify prepopulated row | FC-FPSO-05 | FieldObservation | SYSTEM_PREPOPULATED | PREPOPULATED → FIELD_OBSERVED | DR-IPERC-CONFIRM | IpercRowModified | RC-IPERC-FIELD-MODIFIED | FIELD_OBSERVED | Original proposed value preserved alongside observed value, actor, timestamp and reason. |
| S09 | C-DELTA-RECORD | Record observed context | FC-FPSO-06 | DeltaMateriality | EXPECTED_CONTEXT_LOADED | OBSERVED → MATERIAL_DELTA_REQUIRES_REASSESSMENT | NON_MATERIAL_LOGGED | DR-DELTA-RECORD | FieldDeltaAssessed | RC-DELTA-MATERIAL | MATERIAL_DELTA_REQUIRES_REASSESSMENT | NON_MATERIAL_LOGGED | Only dependency-scoped impacted objects listed; no global invalidation. |
| S10 | C-CHECKLIST-COMPLETE | Complete checklist | Parent · Checklist | ChecklistCompletion | APPLICABLE_PRESELECTED | PRESELECTED → COMPLETED | DR-CHECKLIST-VERIFY | ChecklistCompleted | RC-CHK-COMPLETED | COMPLETED | Preselected state never styled as completed prior to verifier action. |
| S11 | C-TOOL-VERIFY | Record tool verification | FC-FPSO-07 | ToolVerification | LISTED | LISTED → READY | TOOL_BLOCKED | DR-TOOL-VERIFY | ToolReadinessRecorded | RC-TOOL-STATE | READY | TOOL_BLOCKED | Failure propagates only to dependent activities; scope displayed. |
| S12 | C-PETAR-REVIEW | Review PETAR | Parent · Permit | PermitReview | PREPOPULATED_PENDING_HUMAN_REVIEW | PENDING_HUMAN_REVIEW → REVIEWED | DR-PERMIT-REVIEW | PermitReviewed | RC-PTR-REVIEWED | REVIEWED | Reviewed styling is neutral; approval styling requires the approval contract state. |
| S13 | C-SIMOPS-AGGREGATE | Review aggregate SIMOPS condition | Parent · SIMOPS | AggregateLocationState | PAIRWISE_EVALUATED | PAIRWISE_EVALUATED → AGGREGATE_EVALUATED | DR-SIMOPS-REVIEW | AggregateSimopsPresented | RC-SIMOPS-AGGREGATE | AGGREGATE_CONFLICT | AGGREGATE_ACCEPTABLE | Aggregate conflict remains visible even when all pairwise cells pass. |
| S14 | C-AUTHORITY-BASIS | Inspect authority basis | Parent · DecisionRight | DecisionRightResolution | ANY | NONE (read-only) | DR-VIEW-AUTHORITY | AuthorityBasisViewed | RC-AUTH-BASIS | UNCHANGED | Material controls disabled where the right is absent, with the reason shown. |
| S15 | C-SIGN-EXECUTE | Sign object | FC-FPSO-08 | SignatureExecution | SIGNATURE_REQUESTED | REQUESTED → SIGNED_FOR_VERSION | DR-SIGN-OBJECT | SignatureRecorded | RC-SIG-RECORDED | SIGNED_FOR_VERSION | Idempotent: repeat activation resolves to the same request, controlled pending state shown. |
| S15 | C-SIGN-VERSION-CONFLICT | Open signature version conflict | FC-FPSO-08 | VersionBinding | SIGNATURE_VERSION_CONFLICT | CONFLICT → RESIGNATURE_REQUIRED | DR-SIGN-OBJECT | SignatureVersionConflictSurfaced | RC-SIG-VERSION-CONFLICT | RESIGNATURE_REQUIRED | Prior signature preserved as history and marked NOT_VALID_FOR_CURRENT_VERSION. |
| S16 | C-BOARD-DRILL | Open governing record from board cell | Synthesis (read-through) | SynthesisReadThrough | ANY | NONE (navigation only) | DR-VIEW-CONTEXT | BoardCellOpened | RC-BOARD-NAVIGATE | UNCHANGED | Board is never editable; navigation resolves to the governing screen. |
| S17 | C-HISTORY-VIEW | View object history | Parent · GovernedOperationalEvent | EventReconstruction | ANY | NONE (read-only) | DR-VIEW-HISTORY | HistoryViewed | RC-HIST-VIEW | UNCHANGED | All governed events shown with object version and reason code. |
| S18 | C-PROVENANCE-WHY | Open 'Why is this here?' | Parent · provenance | ProvenanceChain | ANY | NONE (read-only) | DR-VIEW-PROVENANCE | ProvenanceViewed | RC-PROV-VIEW | UNCHANGED | Chain rendered CurrentValue ← Rule ← Input ← SourceRecord ← SourceSystem ← Owner; read-only. |
| ALL | C-CONCURRENCY-RESOLVE | Resolve concurrency conflict | Parent · concurrency control | NoLastWriteWins | CONCURRENCY_CONFLICT | CONFLICT → RECONCILIATION_REQUIRED | DR-RECONCILE | ConcurrencyConflictRaised | RC-CONC-CONFLICT | RECONCILIATION_REQUIRED | Both versions preserved and displayed; no silent overwrite path exists. |
AB · Reverse Traceability Matrix
27 transitions · 20 human-required · 20 reachable · 7 NO_UI_REQUIRED · 0 unreachable
| Contract | Transition | Human act required | Screen | Component | Verdict |
|---|---|---|---|---|---|
| FC-FPSO-01 | CANDIDATE → HUMAN_CONFIRMED | YES | S02 | C-LOC-CONFIRM | REACHABLE |
| FC-FPSO-01 | GPS_UNAVAILABLE → MANUAL_SELECTION_PENDING | YES | S02 | C-LOC-MANUAL | REACHABLE |
| FC-FPSO-01 | CHANGE_DETECTED → REASSESSMENT_REQUIRED | YES | S02b | C-LOC-CHANGE-ACK | REACHABLE |
| FC-FPSO-01 | POSITION_SAMPLED → CANDIDATE_SET_DERIVED | NO | — | — | NO UI REQUIRED |
| FC-FPSO-02 | RETRIEVED → REQUIRES_CONFIRMATION | NO | — | — | NO UI REQUIRED |
| FC-FPSO-02 | REQUIRES_CONFIRMATION → APPLICABLE | YES | S05 | C-DOC-APPLICABILITY-CONFIRM | REACHABLE |
| FC-FPSO-02 | REVISION_CONFLICT → ESCALATED_TO_DOCUMENT_AUTHORITY | YES | S05 | C-DOC-REVISION-CONFLICT | REACHABLE |
| FC-FPSO-02 | CONFIGURATION_ABSENT → APPLICABILITY_UNRESOLVED | NO | S05 | C-DOC-UNRESOLVED (display) | NO UI REQUIRED |
| FC-FPSO-03 | PENDING → ITEM_SATISFIED | ITEM_BLOCKED | YES | S06 | C-PKG-ITEM-REVIEW | REACHABLE |
| FC-FPSO-03 | COMPOSED → UNDER_REVIEW | YES | S06 | C-PKG-SUBMIT-REVIEW | REACHABLE |
| FC-FPSO-03 | SATISFIED → INVALIDATED_AFTER_PREPARATION | NO | S06 | C-PKG-INVALIDATION-BANNER (display) | NO UI REQUIRED |
| FC-FPSO-03 | INVALIDATED → ITEM_PENDING | YES | S06 | C-PKG-INVALIDATION-BANNER | REACHABLE |
| FC-FPSO-04 | EXPECTED → PRESENT_CONFIRMED | YES | S07 | C-CREW-CONFIRM | REACHABLE |
| FC-FPSO-04 | PRESENT_CONFIRMED → REPLACEMENT_PENDING_EVALUATION | YES | S07 | C-CREW-REPLACE | REACHABLE |
| FC-FPSO-04 | COMPETENCY_EVALUATED → EXCEPTION_RAISED | NO | S07 | C-CREW-EXCEPTION (display) | NO UI REQUIRED |
| FC-FPSO-05 | PREPOPULATED → HUMAN_CONFIRMED | YES | S08 | C-IPERC-CONFIRM-ROW | REACHABLE |
| FC-FPSO-05 | PREPOPULATED → FIELD_OBSERVED | YES | S08 | C-IPERC-MODIFY-ROW | REACHABLE |
| FC-FPSO-05 | ROW_ADDED (field origin) | YES | S08 | C-IPERC-ADD-ROW | REACHABLE |
| FC-FPSO-05 | CROSS_REVIEW_THRESHOLD_REACHED → CROSS_REVIEW_REQUIRED | NO | S08 | C-IPERC-CROSS-REVIEW (display) | NO UI REQUIRED |
| FC-FPSO-06 | OBSERVED → MATERIAL_DELTA_REQUIRES_REASSESSMENT | YES | S09 | C-DELTA-RECORD | REACHABLE |
| FC-FPSO-06 | OBSERVED → NON_MATERIAL_LOGGED | YES | S09 | C-DELTA-RECORD | REACHABLE |
| FC-FPSO-07 | LISTED → READY | YES | S11 | C-TOOL-VERIFY | REACHABLE |
| FC-FPSO-07 | LISTED → TOOL_BLOCKED | YES | S11 | C-TOOL-VERIFY | REACHABLE |
| FC-FPSO-08 | REQUESTED → SIGNED_FOR_VERSION | YES | S15 | C-SIGN-EXECUTE | REACHABLE |
| FC-FPSO-08 | SIGNED_FOR_VERSION → SIGNATURE_VERSION_CONFLICT | NO | S15 | C-SIGN-VERSION-CONFLICT (display) | NO UI REQUIRED |
| FC-FPSO-08 | CONFLICT → RESIGNATURE_REQUIRED | YES | S15 | C-SIGN-VERSION-CONFLICT | REACHABLE |
| Parent · concurrency | CONFLICT → RECONCILIATION_REQUIRED | YES | ALL | C-CONCURRENCY-RESOLVE | REACHABLE |
49 · Application Design Invariants
12/12 held by construction.
| ID | Invariant | UI enforcement | Held |
|---|---|---|---|
| INV-01 | GPSCandidate ≠ ConfirmedLocation | Candidate cards are outlined and unactionable downstream; only C-LOC-CONFIRM yields the confirmed chip. | YES |
| INV-02 | ConfirmedLocation ≠ AuthorizedWork | Confirmation unlocks navigation only; authorization state is rendered separately on S14/S15. | YES |
| INV-03 | RetrievedDocument ≠ ApplicableDocument | Four distinct register states with distinct chips; retrieved rows carry no applicability styling. | YES |
| INV-04 | ApplicableDocument ≠ WorkAuthorization | Document register offers no authorization affordance. | YES |
| INV-05 | Prepopulated ≠ HumanConfirmed | Four never-merged IPERC origins with source indicators. | YES |
| INV-06 | Reviewed ≠ Authorized | Review states use neutral styling; green reserved for reached authorization contract states. | YES |
| INV-07 | Presence ≠ Competency | Independent presence / competency / training / fitness chips per person. | YES |
| INV-08 | Competency ≠ DecisionRight | Authority status is a separate attribute resolved on S14, not derived from competency chips. | YES |
| INV-09 | Signature ≠ DecisionRight | Sign control is disabled without a governing right; signature panel shows DecisionRightStatus explicitly. | YES |
| INV-10 | PairwisePASS ≠ AggregateLocationPASS | Aggregate banner is computed and rendered independently of the matrix. | YES |
| INV-11 | MissingConfiguration ≠ NotRequired | APPLICABILITY_UNRESOLVED warning state; NOT REQUIRED cannot be rendered without positive configuration. | YES |
| INV-12 | PriorSignature ≠ CurrentVersionSignature | Prior signature preserved and marked NOT_VALID_FOR_CURRENT_VERSION on conflict. | YES |
| Carried-forward assurance control | UX treatment | Reintroduced |
|---|---|---|
| SilentLocationReplacement = PROHIBITED | S02b renders change, affected objects and reason code before any replacement is effective. | NOT REINTRODUCED |
| AutomaticRevisionElection = PROHIBITED | S05 presents competing revisions with no default selection. | NOT REINTRODUCED |
| MissingConfiguration ≠ NOT_MANDATORY | APPLICABILITY_UNRESOLVED used across S05, S06, S10, S12. | NOT REINTRODUCED |
| PostPreparationItemInvalidationMustPropagate = TRUE | S06 invalidation banner plus dependent item propagation. | NOT REINTRODUCED |
| CrewReplacement ≠ RoleSlotInheritance | S07 replacement opens an empty governed record. | NOT REINTRODUCED |
| Review ≠ Authorization | Neutral review styling rule enforced globally (§23 / §35). | NOT REINTRODUCED |
| CrossReviewThresholdsMustBeGoverned | S08 renders governed threshold source; UI never infers a threshold. | NOT REINTRODUCED |
| MaterialDeltaInvalidationMustBeDependencyScoped | S09 lists impacted dependents only; global invalidation is not renderable. | NOT REINTRODUCED |
| SignatureRequestMustBeIdempotent | S15 controlled pending state; repeat activation resolves to the same request. | NOT REINTRODUCED |
| SignatureVersionConflictMustBeVisible | S15 conflict panel with preserved history. | NOT REINTRODUCED |
| DecorativeStateCreation = PROHIBITED | Every rendered state maps to a frozen contract state (AA matrix). | NOT REINTRODUCED |
| DuplicateStateSemantics = PROHIBITED | No screen introduces a second label for an existing contract state. | NOT REINTRODUCED |
AC · IAD-R01…R20 Interaction Design Assurance
20/20 PASS · interaction design assurance evidence only
| ID | Assertion | Method | Observed | Result |
|---|---|---|---|---|
| IAD-R01 | GPS suggestion visibly distinct from confirmed location | S02 component-state inspection | Candidate = outlined neutral card; Confirmed = governed chip with actor/timestamp; GPS_MATCH = AUTHORIZED not renderable. | PASS |
| IAD-R02 | Location change cannot silently replace existing Location_ID | S02b transition inspection | Replacement requires LOCATION_CHANGE_DETECTED disposition listing affected objects and reason code. | PASS |
| IAD-R03 | Retrieved document visibly distinct from applicable | S05 register state inspection | Four distinct states: Retrieved / Applicable / RequiresConfirmation / NotApplicable. | PASS |
| IAD-R04 | Multiple revisions never result in silent revision selection | S05 conflict path inspection | REVISION_CONFLICT with no preselected revision; escalation to document authority. | PASS |
| IAD-R05 | Missing configuration never renders as Not Required | Cross-screen state audit (S05/S06/S10/S12) | APPLICABILITY_UNRESOLVED used in all four; NOT REQUIRED requires positive configuration. | PASS |
| IAD-R06 | Prepopulated IPERC visibly distinct from human-confirmed | S08 origin inspection | SYSTEM_PREPOPULATED / FIELD_OBSERVED / HUMAN_CONFIRMED / AUTHORIZED never merged. | PASS |
| IAD-R07 | Review never visually implies authorization | Global styling rule audit | Green reserved for reached authorization states; review states neutral. | PASS |
| IAD-R08 | Crew replacement never inherits prior worker authority | S07 replacement path inspection | REPLACEMENT_PENDING_EVALUATION opens empty record; no inheritance affordance exists. | PASS |
| IAD-R09 | Mandatory invalidated package item propagates visibly | S06 invalidation inspection | INVALIDATED_AFTER_PREPARATION distinct from CURRENTLY_COMPLETE; header propagation present. | PASS |
| IAD-R10 | Material delta impact remains dependency-scoped | S09 propagation inspection | Impacted dependents enumerated; no global invalidation presentation. | PASS |
| IAD-R11 | Pairwise SIMOPS PASS cannot mask aggregate conflict | S13 composition inspection | Aggregate banner independent of matrix; conflict persists with all-pass matrix. | PASS |
| IAD-R12 | DecisionRight governs material actions | AA matrix decision-right column audit | All 25 material rows carry a DecisionRight; disabled-with-reason pattern defined. | PASS |
| IAD-R13 | Signature version conflict visible | S15 conflict inspection | SIGNATURE_VERSION_CONFLICT rendered; prior signature preserved as NOT_VALID_FOR_CURRENT_VERSION. | PASS |
| IAD-R14 | Duplicate signature request does not create duplicate action | S15 idempotency inspection | Controlled pending state; repeat activation resolves to the same request identity. | PASS |
| IAD-R15 | Source unavailable does not display fabricated current state | Failure UX audit | SOURCE_UNAVAILABLE distinct from CONTROL_FAILED; last verified data timestamped and contract-permitted only. | PASS |
| IAD-R16 | Concurrency conflict cannot silently overwrite | Concurrency UX audit | YourVersion / CurrentVersion / ChangedBy / ChangedAt / RequiredResolution; no last-write-wins path. | PASS |
| IAD-R17 | Every material UI action maps to contract | Orphan check over AA matrix | OrphanUIActions = 0. | PASS |
| IAD-R18 | Every required human transition is reachable | AB reverse traceability | Human-required transitions 20, reachable 20, unreachable 0. | PASS |
| IAD-R19 | No UI element introduces new functional state | State-provenance audit of AA matrix | Every current/resulting state resolves to a frozen contract or parent state; 0 decorative states. | PASS |
| IAD-R20 | Parent and functional baselines remain unchanged | Baseline manifest diff | PH6A-IADA-REV1 changes = 0; PH6A-FPSO-FUNCTIONAL-BASELINE-REV0 changes = 0. | PASS |
These results are INTERACTION_DESIGN_ASSURANCE_EVIDENCE. They are not implementation evidence, simulation evidence or operational closure evidence, and they close no Phase 6A blocking condition.
AD · Findings Register
4 findings · 0 HIGH / 2 MEDIUM / 2 LOW · 0 blocking · 0 requiring contract change
| ID | Type | Severity | Finding | Disposition | Blocking |
|---|---|---|---|---|---|
| F-IAD-01 | STATE PRESENTATION DEFECT | MEDIUM | An initial home-screen concept summarized package readiness as a completion count, which behaves as a compensatory indicator. | Corrected in design before issue: S01 presents the governing contract state plus the first blocking condition; no count, ratio or score is rendered. | YES |
| F-IAD-02 | UX SEMANTIC DEFECT | MEDIUM | Submitting a package for review could have been styled with success/green affordance on completion of submission. | Corrected: review states are neutral by rule (§23/§35); green reserved for reached authorization contract states. | YES |
| F-IAD-03 | BECHTELIZATION PRECONDITION GAP | LOW | Saved-view naming and document-register column ordering are not yet aligned to a project-approved corporate vocabulary list. | Controlled non-blocking: carried to G-FPSO-04B as a vocabulary conformance item. No contract semantics affected. | YES |
| F-IAD-04 | SOURCE PRESENTATION DEFECT | LOW | Twelve controlled-open external owner decisions inherited from FCA-REV0 have no confirmed owner label for field display. | Controlled non-blocking: rendered as governed unresolved with escalation route pending owner assignment. Design does not resolve external dependencies. | YES |
No finding requires a functional contract change. FUNCTIONAL_BASELINE_CHANGE_REQUIRED = FALSE; the frozen contracts were not altered to obtain a PASS.
AE · Bechtelization Readiness Assessment
Formal certification deferred to G-FPSO-04B.
| Dimension | Verdict | Basis |
|---|---|---|
| CorporateVocabularyReady | READY WITH GAP | Corporate grammar inherited from BXIA-REV0; saved-view and column vocabulary pending project approval (F-IAD-03). |
| AconexInteractionPatternReady | READY | Register → search → filter → select → detail → workflow → history → related items preserved on S05 and every register surface. |
| DocumentIdentityReady | READY | Document_ID, class, revision, status, source system, source owner, participation mode and effective date rendered on every document row. |
| GovernanceVisibilityReady | READY | Owner, decision right, reason code and escalation route are mandatory on all material blocking presentations. |
| FieldExperienceReady | READY | Eight field questions drive S01 and the mobile priority order; control requirements preserved at all breakpoints. |
| ProvenanceVisibilityReady | READY | 'Why is this here?' chain available on all prepopulated/derived values; assurance trace view is read-only. |
AF · G-FPSO-04 Decision & Final State
DESIGN-TO-CONTRACT CONFORMANCE
| Criterion | Required | Actual | Met |
|---|---|---|---|
| FunctionalContractChanges | 0 | 0 | YES |
| ArchitectureChanges | 0 | 0 | YES |
| NewFunctionalStates | 0 | 0 | YES |
| NewAuthorityPaths | 0 | 0 | YES |
| NewSourceAuthority | 0 | 0 | YES |
| OrphanUIActions | 0 | 0 | YES |
| UnreachableHumanTransitions | 0 | 0 | YES |
| AssuranceRegressions | 0 | 0 | YES |
| ContractTraceability | COMPLETE | COMPLETE | YES |
| ReverseTraceability | COMPLETE | COMPLETE | YES |
| FieldVsAssuranceBoundary | PRESERVED | PRESERVED | YES |
| IAD-R01…R20 | 20/20 PASS | 20/20 PASS | YES |
| Strict stop condition | Observed | Triggered |
|---|---|---|
| FunctionalContractChangeRequired | FALSE | NOT TRIGGERED |
| ArchitectureChangeRequired | FALSE | NOT TRIGGERED |
| NewFactClassRequired | FALSE | NOT TRIGGERED |
| NewDecisionRightRequired | FALSE | NOT TRIGGERED |
| NewAuthorityPathRequired | FALSE | NOT TRIGGERED |
| NewMaterialStateRequired | FALSE | NOT TRIGGERED |
| ExistingContractMeaningMustChange | FALSE | NOT TRIGGERED |