FlowDrop Workflow Specification 1.0-draft

The editor metadata doors are read-only and gated before the handler

Neither door has a handler-side check to fall back on, so what the surface declares is the whole access contract.

The rule

Normative: this is the rule
  1. The category door and the workflow schema door accept GET and no other method, and each requires a named authorization decided before the handler runs: neither carries a handler-side check as a backstop.
  2. The set of methods and the named authorization are part of the contract (widening either is a visible change), and a named authorization the implementation does not define is a defect, not a locked door.
Rule identifiers are permanent and are never renumbered. Each implementation publishes its own standing against these rules; this specification does not.spec 1.0-draft · META-9 · changed in spec 1.0