Skip to content

platform-admin re-anchor (L5 removal half): delete the legacy grant-row read — one minor after L4's landing #13515

Description

@os-steve

The removal half of L5 of the accepted #11663 platform-admin re-anchor design, filed at L4's landing exactly as #11975 and the design prescribe (design document = #11663 comment 5394453215, §5 step 6 and §6 row L5: "the dual read is deleted, one minor after step 4. Card filed at step 4's landing, not later"; maintainer acceptance = #11663 comment 5404675670, 2026-08-25, verbatim 「接受你的建议,继续」). Filed by the L4 dev at PR #13514's creation, per the L4 card's own definition of done. #11975 remains open and carries the window's discipline; this card is the window's EXIT.

Blocked-by: #11975

Timing constraint (the minor boundary): lands one minor after the release that carries L4 (PR #13514, @objectstack/plugin-security walled bootstrap stops minting the grant row + deprecation pointer live). The exit PR's body must name the minor boundary it honours (#11975's acceptance criterion).

Content — delete the legacy path, as its own reviewed change (never a rider on another leg):

Acceptance criterion: on a walled rig, a seeded legacy org-less admin_full_access grant confers NOTHING (posture resolves without PLATFORM_ADMIN unless the config anchor matches); the exit is a reviewed change on origin/main whose PR body names the minor boundary; single-posture first-user standing is unchanged unless #11979 landed first.


Generated by Claude Code

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions