The keycloak project ended with four open questions that design could not
settle. A two-VM lab was built to answer them by measurement, and this is
that material: 26 experiments, 125 raw command outputs, 22 browser captures.
Follows the import procedure in README.md.
source/ the originating repository verbatim — 78 documents, 28 SVGs,
8 manifests, plus .source-revision recording the commit
final/ the SSOT
document.md 729 lines written from the 29 experiment documents, not
concatenated: what was predicted, what was measured, and
where the measurement itself was wrong
evidence/raw 125 outputs, flattened to <experiment>__<file> because
the originals collided (01-baseline.txt appeared three
times) and the audit only globs the top level
evidence/meta one per raw file; command and exitCode are null and the
README says why rather than inventing them
evidence/browser 22 captures
assets/ three diagrams through techviz
.techviz/ their VizSpecs
A separate project rather than an addition to keycloak: the B-layer answers
that project's four questions, but the A, C and D layers are about cluster
failure, SSO and operations, and one document.md should hold one subject.
The four question records there can point here through 관계.
Recorded rather than papered over: only three of the 28 diagrams were
remade. The repository forbids hand-drawn SVG and forbids titles inside the
canvas; all 28 originals carry both, so converting them is redrawing, not
reformatting. They stay in source/ and the gap is written into the document.
verify-pipeline.py passes. audit-records.py reports no issues.
Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
15 lines
1.9 KiB
JSON
15 lines
1.9 KiB
JSON
{
|
|
"assetKey": "a05-f013-specificationpolicy-specification-unrestricted",
|
|
"kind": "terminal",
|
|
"command": "S=adapter/outbound/persistence-jpa/src/main/java/dev/caskeleton/adapter/outbound/persistence/springdata/SpecificationPolicy.java\nP=adapter/outbound/persistence-jpa/src/main/java/dev/caskeleton/adapter/outbound/persistence/querydsl/PredicatePolicy.java\n\necho '# 문서가 무엇을 막겠다고 하는가 — 두 가지다'\ngrep -n '' \"$S\" | sed -n '7,17p'\necho '# 실제 검사'\ngrep -n '' \"$S\" | sed -n '31,51p'\n\necho\necho '# 이 타입을 언급하는 곳 (레포 전체, 언어 무관)'\ngrep -rInw 'SpecificationPolicy' --exclude-dir=.git --exclude-dir=build --exclude-dir=.gradle .. | sed 's|^\\.\\./||' | cut -c1-150\necho -n '# 두 검사 메서드를 부르는 코드 (정적 임포트 포함, 레포 전체): '\ngrep -rIn -e 'SpecificationPolicy\\.require' -e 'import static .*SpecificationPolicy\\.' \\\n --exclude-dir=.git --exclude-dir=build --exclude-dir=.gradle .. | wc -l\n\necho\necho '# 같은 리프의 형제 정책. 같은 토큰을 쓰고 같은 널 비교를 한다.'\ngrep -n 'ALLOW_UNBOUNDED_TOKEN =' \"$S\" \"$P\"\ngrep -n '' \"$P\" | sed -n '29,36p'\necho '# 형제 쪽 호출처와 그것을 부르는 테스트'\ngrep -rn 'PredicatePolicy\\.requireBounded' --include=*.java --exclude-dir=build . | sed 's|^\\./||' ",
|
|
"cwd": "/shared/codebase/clean-architecture-backend-template/src",
|
|
"exitCode": 0,
|
|
"executedAt": "2026-09-02T03:59:51+00:00",
|
|
"sourceRevision": "21234e38cdb9a926cbc92bb97a2aee2e4a7d2916",
|
|
"raw": "evidence/raw/a05-f013-specificationpolicy-specification-unrestricted.txt",
|
|
"svg": "evidence/rendered/a05-f013-specificationpolicy-specification-unrestricted.svg",
|
|
"rawSha256": "51a49f0cb7c9700127834ce3a8be409de511d50912c733754ee43b9ed7073d40",
|
|
"lines": 61,
|
|
"redaction": "none — 출력에 자격증명이 없다"
|
|
}
|