# Compatibility Certification Policy

## Purpose
Define how darkelogix qualifies self-serve governance adapters against declared runtime, adapter, and policy versions.

## Audience
- Operators and release teams
- Enterprise buyers evaluating governed runtime support
- Security and assurance reviewers

## Certification Scope
Certification applies to a declared combination of:
- runtime version
- adapter version
- policy pack or governance pack version
- supporting evidence and reason-code contract

## Minimum Validation Requirements
- Deterministic allow, deny, and constrain behavior
- Expected fail-safe posture for high-risk actions
- Trace and reason-code verification
- Evidence structure and version-stamp verification
- Regression checks for known high-impact scenarios

## Certification States
- `CERTIFIED_ENFORCED`: enforcement claims are supported by current validation evidence
- `LOCKDOWN_ONLY`: conservative posture only; full enforced claims are not made
- `UNSUPPORTED`: no governance claims for the declared version combination

## Publication Rule
Only combinations backed by current validation evidence may be published as `CERTIFIED_ENFORCED`.

## Revalidation Triggers
Revalidation is required when runtime, adapter, policy, evidence structure, or known governance behavior changes materially.
