Skip to main content

Module store_commit

Module store_commit 

Source
Expand description

Signed, hash-addressed Store commit protocol objects.

Modules§

device_join_exchange
device_join_journal
The durable device-join journal model: role progress, and the status and action each recorded step derives.

Structs§

AcceptedStoreSnapshotRef
AcknowledgedStoreSnapshot
One snapshot every device active at its cut has acknowledged.
ActivatedStoreDeviceRegistration
ActivatedStoreDeviceRegistrationRef
CandidateCleanupManifest
CandidateFamilyId
Domain-separated family shared by replacements at one competition point.
CandidateObjectManifest
CircleAccessEnvelopeObjectRef
Exact recipient-visible access envelope paired with its sealed leaf.
CircleAccessLeafObjectRef
Exact recipient-sealed access-leaf object named by a Store activation.
CircleAccessObjectRef
CircleAckBody
One device’s signed acknowledgement of the exact private Circle history it currently holds, encrypted to the Circle epoch key it names. Store members outside the Circle observe only the object’s shape and timing.
CircleAckRef
CircleActivationObjects
Closed exact object graph needed to verify one Store-activated Circle control.
CircleControlRef
CircleMetadataObjectRef
Exact Circle-metadata object and the epoch key that must open it.
CirclePackageInput
CirclePackageRef
CircleSnapshotMetaBody
One device’s signed, Circle-sealed snapshot of the private Circle history it holds at an exact Store frontier. The installable payload is a CircleBootstrapRef — the same image format a member-addition bootstrap carries — so a verifier installs a snapshot with the bootstrap machinery. The metadata additionally binds the exact control, epoch, and key fingerprint the image derives from and the per-(device, Circle) snapshot stream position.
CircleSnapshotRef
Exact coordinate of one signed Circle snapshot on its author’s per-Circle snapshot stream.
CircleSnapshotSuccessorLink
The exact predecessor and create-once successor slot binding one Circle snapshot into its per-(device, Circle) stream.
CommitFrontier
Exact materialized cut across author streams.
DeviceJoinAbandonmentRef
DeviceJoinAttemptId
DeviceReadinessProofBody
The wire body of a joining device’s readiness proof. Every field here is signed.
DeviceRecoveryId
DeviceRecoveryReadiness
MembershipCausalFloor
MembershipRollupBody
Every membership object a reader needs to reach one membership frontier, carried in one object.
MembershipRollupHead
One membership head and the entry it selects, carried by value.
MembershipRollupRef
The exact coordinate of one published membership rollup.
MembershipRollupResolution
One conflict resolution the carried heads depend on.
MembershipRollupStream
One author stream’s heads, in sequence order from the stream’s anchor.
ObjectHash
OpenedRetainedMergeHistorySummary
OwnerConflictResolutionAcceptanceBody
The wire body of an owner’s acceptance of a resolved conflict. Every field here is signed.
OwnerPromotionAcceptanceBody
The wire body of a promoted member’s acceptance. Every field here is signed.
OwnerPromotionAnchors
OwnerPromotionFinalization
OwnerPromotionId
OwnerPromotionRequestActivation
OwnerPromotionRequestBody
The wire body of an owner-promotion request. Every field here is signed.
OwnerRecoveryActivationId
OwnerRecoveryCursor
OwnerRecoveryNodeBody
OwnerRecoveryNodeRef
ReferencedStoreDeviceRegistration
RegisteredStreamActivation
ReplayBaselineRetirementProof
The evidence required to retire local replay inputs behind one snapshot.
ResolvedStoreDeviceState
RetainedAcceptedStoreAnnouncement
RetainedAcknowledgementChain
A device’s acknowledgement chain, contiguous from sequence one, carried by a snapshot’s portable summary.
RetainedMergeCommitEvidence
The proof values introduced by one verified Merge commit and retained with that commit after its remote authority objects can be reclaimed.
RetainedMergeMembershipProof
RetainedReplaySnapshotAuthority
Everything a device needs to install one snapshot as its starting state and verify what arrives after it: the Store root and founder it belongs to, the signed metadata, the cut it covers, and the device state and registrations active at that cut.
RetainedStoreDeviceExclusionProposal
RetainedStoreDeviceOperations
RetainedStoreDeviceRegistrationActivations
RetainedVerifiedActivatedAck
The acknowledgement one commit activated, retained beside that commit.
RetainedVerifiedMergeHistorySummary
Signed
One signed artifact: the protocol version it was written under, the body, and the signature over both.
SnapshotImageRef
SnapshotMetaBody
SnapshotSuccessorLink
StandingStoreAck
The acknowledgement a device currently stands behind: what it asserted, and the commit that carried it.
StoreAckAssertion
What a Store acknowledgement asserts, apart from the bookkeeping every acknowledgement carries fresh: its sequence, the wall clock it was written at, and its links to the neighbours in the device’s acknowledgement chain.
StoreAckBody
StoreAckExclusionState
StoreAckRef
StoreBatchCommitBody
StoreBatchCommitDeletionTarget
Exact stored candidate commit retained as cleanup authority after abandonment.
StoreBatchCommitRef
Exact identity of one signed Store commit candidate.
StoreCommitCoord
Closed coordinate of one Store commit in its author stream.
StoreCommitOperations
StoreCommitOperationsInput
StoreCommitOrder
Predecessor and dependency order authenticated by one Store commit.
StoreControl
StoreCreationDescriptor
StoreCreationId
StoreCurrentPublicationRecordBody
StoreDeviceExclusionBody
The wire body of a device’s exclusion. Every field here is signed.
StoreDeviceExclusionCancellationBody
The wire body of an owner’s withdrawal of an exclusion proposal. Every field here is signed.
StoreDeviceExclusionCancellationRef
StoreDeviceExclusionProof
StoreDeviceExclusionProposalBody
The wire body of a device-exclusion proposal. Every field here is signed.
StoreDeviceExclusionProposalId
StoreDeviceExclusionProposalRef
StoreDeviceExclusionRef
StoreDeviceHeadBody
The wire body of one device’s Store head. Every field here is signed.
StoreDeviceHeadRef
StoreDeviceId
The stable identity of one device in a Store, derived from the Store root and the device’s registration origin. It names a device across the protocol — in membership, commit authorship, and epoch-close participation — and is what Circles::exclude_close_device and Circles::close_status address.
StoreDeviceProposalAck
StoreDeviceRecord
StoreDeviceRegistrationBody
StoreDeviceRegistrationRef
StoreDeviceStateRef
StoreHistoryCut
Exact Store history cut across author streams.
StoreOperationMembershipAuthority
StorePackageInput
StorePackageRef
StoreProtocolRootBody
The wire body of a Store’s protocol root. Every field here is signed.
StorePublicationEntryBody
StorePublicationPosition
StorePublicationRef
StoreRootRef
StoreSnapshotLocator
StoreSnapshotRef
StoreSnapshotState
The exact membership and device state represented by one Store snapshot.
StreamActivationId
SuccessorLink
VerifiedDeviceExclusionOutcome
VerifiedDeviceExclusionProposal
VerifiedStoreDeviceOperations

Enums§

CandidateExclusiveObjectRef
DeviceJoinAttemptDecisionRef
DeviceStreamAnchor
GrantStreamAnchor
OwnerPromotionStaleReason
OwnerRecoveryPosition
ReplayRetirementMembershipWitness
Accepted Store history that names the exact membership used to decide which writers must acknowledge a replay cut.
RetainedStoreDeviceExclusionOutcome
StoreCommitBody
StoreDeviceExclusionOutcome
StoreDeviceExclusionOutcomeRef
StoreDeviceProposalState
StoreDeviceRegistrationActivation
StoreDeviceRegistrationActivationRef
StoreDeviceRegistrationOrigin
StoreDeviceStatus
StoreKeyConfirmation
StoreProtocolError
StorePublicationBase
StorePublicationPayload
StorePublicationState
StreamActivation
StreamAnchorDomain

Constants§

STORE_PROTOCOL_ROOT_LOGICAL_KEY
STORE_PROTOCOL_VERSION

Traits§

SignedBody
A value that travels signed. The body names the domain its signature is bound to, so a signature over one artifact can never be replayed as another.

Functions§

ack_slot_prefix
circle_access_envelope_semantic_prefix
circle_access_leaf_semantic_prefix
circle_ack_slot_prefix
circle_bootstrap_image_semantic_prefix
circle_package_semantic_prefix
circle_snapshot_image_semantic_prefix
circle_snapshot_slot_prefix
circle_snapshot_stream_activation
The device-authorized activation binding one device’s per-Circle snapshot stream to its Circle. Such a stream has no first slot in the registration — like the per-Circle acknowledgement stream, it is anchored on the deterministic generation-zero slot both the author and every reader compute.
commit_semantic_prefix
device_exclusion_outcome_semantic_prefix
device_exclusion_proposal_semantic_prefix
device_join_abandonment_semantic_prefix
device_join_cleanup_receipt_semantic_prefix
founder_membership_head_semantic_prefix
founder_registration_semantic_prefix
head_slot_prefix
membership_entry_semantic_prefix
membership_head_slot_prefix
membership_head_stream_prefix
Everything one author stream’s head slots share, up to the sequence number.
membership_resolution_semantic_prefix
membership_rollup_semantic_prefix
owner_recovery_semantic_prefix
package_semantic_prefix
provider_access_grant_semantic_prefix
registration_semantic_prefix
replay_retirement_writer_ids
semantic_prefix_from_exact_object
snapshot_image_semantic_prefix
snapshot_slot_prefix
store_current_publication_logical_key
store_current_publication_semantic_prefix
store_protocol_root_logical_key
store_publication_entry_semantic_prefix

Type Aliases§

CircleAck
CircleSnapshotMeta
DeviceReadinessProof
MembershipRollup
OwnerConflictResolutionAcceptance
OwnerPromotionAcceptance
OwnerPromotionRequest
OwnerRecoveryNode
SnapshotMeta
StoreAck
StoreBatchCommit
StoreCurrentPublicationRecord
StoreDeviceExclusion
StoreDeviceExclusionCancellation
StoreDeviceExclusionProposal
StoreDeviceHead
StoreDeviceRegistration
StoreProtocolRoot
StorePublicationEntry