Skip to harness content
Open technical reference map

Production domain 12

Observability

3 capabilities and 3 controls define the canonical obligation set for this domain.

Domain 12Dependencies: Security & Data Protection
Canonical pathcontrols/production-layers.v2.jsonRevision69bab1cInspect source

Applicability and claim boundary

This domain defines obligations. It does not prove that a specific repository or run satisfies them.

Applicability
Assess this domain when the authorized workload can affect its capabilities. Resolve every control as required, potentially affected, or not applicable before completion.
Proof level
The accepted formats below identify possible evidence inputs. A format alone does not establish semantic or authoritative assurance; provenance and the commissioned proof contract set the supported level.
Claim boundary
Static controls are requirements, not execution evidence, provider attestation, or proof of production readiness.

Capabilities

telemetry-correlation

Telemetry Correlation

Correlate logs, metrics, and traces across critical flows.

service-level-management

Service-Level Management

Operate owned SLIs, SLOs, alerts, windows, and error budgets.

telemetry-data-protection

Telemetry Data Protection

Exclude sensitive data while preserving audit integrity.

Controls

OBS-TELEMETRY-001Telemetry Correlation

Critical flows have correlated logs, metrics, and traces.

Accepted evidence format: Artifact, Provider report
OBS-SLO-001Service-Level Management

SLIs, SLOs, windows, alerts, and error budgets have named owners.

Accepted evidence format: Metric
OBS-REDACTION-001Telemetry Data Protection

Telemetry excludes secrets and sensitive data and preserves audit integrity.

Accepted evidence format: Artifact, Provider report