Skip to harness content
Open technical reference map

Production domain 10

Caching & Content Delivery

3 capabilities and 3 controls define the canonical obligation set for this domain.

Domain 10Dependencies: Security & Data Protection, Observability
Canonical pathcontrols/production-layers.v2.jsonRevision69bab1cInspect source

Applicability and claim boundary

This domain defines obligations. It does not prove that a specific repository or run satisfies them.

Applicability
Assess this domain when the authorized workload can affect its capabilities. Resolve every control as required, potentially affected, or not applicable before completion.
Proof level
The accepted formats below identify possible evidence inputs. A format alone does not establish semantic or authoritative assurance; provenance and the commissioned proof contract set the supported level.
Claim boundary
Static controls are requirements, not execution evidence, provider attestation, or proof of production readiness.

Capabilities

cache-key-design

Cache Key Design

Include identity, permission, version, and variation boundaries in cache identity.

cache-lifecycle

Cache Lifecycle

Control freshness, invalidation, purge, and propagation behavior.

cache-isolation

Cache Isolation

Prevent personal and tenant data from crossing cache boundaries.

Controls

CACHE-KEY-001Cache Key Design

Cache keys include every identity, permission, version, and variation boundary.

Accepted evidence format: Command output
CACHE-INVALIDATION-001Cache Lifecycle

Invalidation, freshness, and purge propagation are tested.

Accepted evidence format: Command output
CACHE-ISOLATION-001Cache Isolation

Personal or tenant data cannot cross cache boundaries.

Accepted evidence format: Command output

Conditional dependencies

Data & Storage