FICTIONAL TRAINING / REFERENCE ARTIFACT — NOT A U.S. NAVY SYSTEM, PROGRAM, ARCHITECTURE, AUTHORIZATION, OR ENDORSEMENT. No government information was used to construct this specimen.

Cloud Waypoint Reference Laboratory

Public learning specimen — read-only projection

What an authorization really is — shown, not just told

An is a person's decision to accept risk, on the record. Everything around it — the , the , the , the monitoring — is a package that supports that decision. This laboratory shows how a governed model assembles the package, and exactly where it stops so a human can decide.

This is not an authorization package or automatic ATO engine. Following this specimen does not guarantee authorization, acceptance, inheritance, or mission suitability.

Specimen
GULF-INSTANCE-FICTIONAL-V1A named, fictional example — nothing here is real.
Completeness
REPRESENTATIVE_INCOMPLETE_SLICEA deliberate slice of a package, not a whole system.
Runtime snapshot
SNAP-L2-1E885EA554DAB47FB87BThe exact frozen state every fact on this page refers to.
Runtime state
VALID_WITH_BLOCKED_GAPSHealthy — and honest about what's missing.

The decision is a person.

An accepts risk on the record. No tool grants an ATO — and this one refuses to pretend.

The package is evidence.

Boundary, controls, proof, findings, monitoring. Assembling evidence is work a platform can genuinely speed up.

Silence is not a yes.

When the model lacks a mapped source or a recorded judgment, it — and shows the exact human act that would change the answer.


Package journey — illustrative sequence

How the package comes together

Press play, or drag the month line. Two illustrative paths run against the same calendar — a typical 18-month effort and a 9-month accelerator. Watch what enters the package at each stage, and where the model stops so a human can decide.

Month 0 of 18

Typical path 18 months to decision

Accelerator path 9 months to decision, then continuous monitoring

Typical path now

Boundary engineering

Accelerator path now

Connect and establish the boundary

Information moving now

What moves: evidence, configuration, documentation, and monitoring outputs. Mission suitability, control applicability, risk acceptance, assessment judgment, and authorization do not transfer to a platform or service provider — and a blocked phase advances only when its governed inputs and required human judgments exist, never by animation.

What each flow carries

Client → accelerator, mission and workload context

System purpose, data, boundary applicability, customer implementations, evidence owners, policies, and approvals.

Cloud → accelerator, provider evidence and telemetry

Eligible service authorization evidence, native configuration, logs, and provider responsibility statements.

Accelerator → package, boundary, services, and documentation

Configured environment, integrated security capabilities, documentation accelerators, evidence, and continuous-monitoring operations.

Package → human authority, assessment and decision

Findings, residual risk, authorization, and continuous-authorization posture remain human decisions.

The point of comparison: at month 18 on the calendar, the typical path is just reaching its authorization decision — the accelerator path reached its decision at month 9 and has nine months of behind it.

Both timelines are planning illustrations. Actual duration depends on scope, evidence quality, assessment findings, remediation, and authorizing-official decisions; an accelerator does not guarantee authorization. Continuous monitoring begins after authorization and continues thereafter. Phase boundaries shown are illustrative placements, not published durations.

01

Orient

GULF-00 + GULF-01

A named snapshot, package manifest, resolver receipt, and surviving provenance.

PREVIEW

02

Source and context

GULF-02 + GULF-03

03

Categorize and bound

GULF-04 + GULF-05

04

Describe the system

GULF-06 + GULF-07

05

Connect controls to evidence

GULF-08 + GULF-09

06

Plan and assess

GULF-10 + GULF-11

07

Respond and monitor

GULF-12 + GULF-13

08

Brief and decide

GULF-14 + GULF-15

The guided path reads the sixteen package documents two at a time. It is an orientation through the governed catalog, not an automated authorization workflow.


Executable governed model

Ask the model what it knows

These are the questions everyone actually asks. Click one and watch the model answer honestly — with its real state, its real refusal codes, and the exact human act that would change the answer. The refusals are the demonstration.

Is this system authorized?

The model says
In plain terms
What would change it
Reference inputs
3 mapped — 19 withheld
CORE admission
0 admitted — 9 refused
EXTENDED admission
0 admitted — 14 refused
Open gaps
25 every one enumerated in the record
Active refusals
25 every one enumerated in the record
Authority created
No the model cannot create it

Fail-closed result: most source claims have no explicit Reference-registry mapping, so dependent CORE and Extended claims remain blocked. Public silence is not converted into a negative conclusion.


One governed source

Who gets to say what

Every fact on this page resolves through one ordered sequence, and each layer has a job it cannot exceed. A lower layer cannot silently override a higher-authority rule, and remain outputs — never independent authorities.

  1. 1Core masterThe non-negotiable rules of the framework itself.
  2. 2Validated extended profilesReusable implementation patterns — candidates, never assumptions.
  3. 3Validated instance factsWhat this particular system actually chose and configured.
  4. 4Recorded human judgmentA person's decision, on the record. The may carry it — it can never write it.
  5. 5Resolved authorization modelEverything above, joined into one consistent picture.
  6. 6Document projections — outputs onlyThe papers the picture can print. Paper carries authority; it never creates it.
AUTHORITATIVE SOURCE

A published document the model is allowed to believe.

A fact from an explicitly mapped, governed public source record.

EXTENDED REUSABLE PROFILE

A pattern on offer — nothing more until validated.

A candidate implementation pattern; never inherited or accepted by implication.

GULF FICTIONAL IMPLEMENTATION

Made up, on purpose, for teaching.

Synthetic instance data created only for this training specimen.

HUMAN JUDGMENT

A person decided this. The machine only remembers it.

A recorded fictional professional decision that the resolver may carry but cannot manufacture.

CLOUD WAYPOINT INTERPRETATION

Our explanation of what connects to what — and its limits.

A bounded explanation of relationships, limitations, and propagation behavior.


The governed record

The complete machine record — state vector, gaps, refusals — exactly as the runtime holds it. Plain-language columns are added; nothing is removed.

Nine questions the runtime keeps separate

The model never lets one good answer imply another. Written down is not deployed; deployed is not assessed; assessed is not accepted. Each question stands alone in the L2 snapshot.

In plain termsMachine questionStateLimitation
Did someone write it down?documentedESTABLISHEDThe record is documented; no downstream state is implied.
Does the service exist where we need it?availableUNKNOWNAvailability requires exact instance, service, feature, and region evidence.
Does the provider's authorization cover our exact use?providerAuthorizedInScopeUNKNOWNProvider publication or availability never establishes exact authorization scope.
Can we ride on the provider's homework?inheritedUNKNOWNNo exact provider responsibility and instance-applicability evidence establishes inheritance.
Is it set up?configuredESTABLISHEDSynthetic configuration only.
Does the record hold together?mechanicallyValidatedESTABLISHEDMechanical validation covers shape and declared fictional inputs only.
Has an independent assessor tested it?assessedNOT_ESTABLISHEDThe resolver does not manufacture an assessment conclusion.
Has someone with authority accepted the risk?acceptedNOT_ESTABLISHEDNo authorized human acceptance or risk-response judgment exists.
Is it right for this mission?missionSuitableUNKNOWNNo authorized mission-suitability judgment exists.
Runtime gaps 25 open — grouped by cause

A gap is a question the runtime cannot yet answer. Twenty wait on public evidence, four wait on a recorded human judgment, one waits on a complete instance.

BLOCKED · MISSING_PUBLIC_EVIDENCE — 20

  • GAP-L2-05FE3C29C8F1F2D7
  • GAP-L2-334E581ECAB9AC22
  • GAP-L2-3D87FE0F41E39DEA
  • GAP-L2-4602257AFA5E7213
  • GAP-L2-471394D1BDD6E137
  • GAP-L2-4E808AC002F55963
  • GAP-L2-5AF15ADD03D4C098
  • GAP-L2-5AF9AD0577153D4C
  • GAP-L2-785C005F595FDC32
  • GAP-L2-7C3B46369C8567AD
  • GAP-L2-84556D5CB070C447
  • GAP-L2-8F93B0492DF1B309
  • GAP-L2-934C3E142B86ACD0
  • GAP-L2-945CE5C97C9EFD1B
  • GAP-L2-9945A836A817A645
  • GAP-L2-AE320B0AE6CABDDD
  • GAP-L2-BD632C512DFB2A61
  • GAP-L2-DE980318D70A61CC
  • GAP-L2-EEEEDC732315AEA7
  • GAP-L2-F3EE8FD91FAAD7DC

UNKNOWN_NOT_PUBLIC · MISSING_HUMAN_JUDGMENT — 3

  • GAP-L2-10EF5DAC5C64B90C
  • GAP-L2-421FF2CF1D62293A
  • GAP-L2-EE85F878C8DEAC11

BLOCKED · MISSING_HUMAN_JUDGMENT — 1

  • GAP-L2-92938AB1359B522F

BLOCKED · INCOMPLETE_INSTANCE — 1

  • GAP-L2-5063CB24E303D08C
Active refusals 25 active — grouped by reason

A refusal is the model declining to conclude. Each one names its reason and stands until the missing evidence or judgment exists.

REFUSE-UNVALIDATED-EXTENDED-ADMISSION — 11

  • REFUSAL-L2-18C848FA3B176180
  • REFUSAL-L2-225D6BBCEEA304EF
  • REFUSAL-L2-29C6CBCAAA367C8B
  • REFUSAL-L2-2DD729ECD5F49448
  • REFUSAL-L2-322B1559843E11C1
  • REFUSAL-L2-50589E5A3228950F
  • REFUSAL-L2-55E1EB46556A33CB
  • REFUSAL-L2-80ABFB721DC827B8
  • REFUSAL-L2-84DFDC65110AFEBE
  • REFUSAL-L2-8BE092CC372D9344
  • REFUSAL-L2-D982D668DF631F60

REFUSE-BLOCKED-CORE-SOURCE — 9

  • REFUSAL-L2-064FB0A0095633F2
  • REFUSAL-L2-0B6932F219791A9B
  • REFUSAL-L2-2CCC30049EF0E470
  • REFUSAL-L2-307D5DED7D027EFE
  • REFUSAL-L2-42C2750779461BDB
  • REFUSAL-L2-9A61E3B5D7C7355F
  • REFUSAL-L2-DD5437A87537096F
  • REFUSAL-L2-E975DB40C6FC8070
  • REFUSAL-L2-F3EDCA14183BF332

REFUSE-INFERRED-IL5 — 3

  • REFUSAL-L2-1BADCB3E3F484FBB
  • REFUSAL-L2-5B59FDB73B32A812
  • REFUSAL-L2-88E3DB1D1CF7A1BA

REFUSE-INCOMPLETE-INSTANCE — 1

  • REFUSAL-L2-2E36FB242B78D6B8

REFUSE-MISSING-OFFICIAL-DECISION — 1

  • REFUSAL-L2-916D2DEED4E70530

One control, end to end

One rule, followed home

Take one familiar rule — accounts must be managed, NIST AC-2 — and follow it through every layer. Watch what each layer is allowed to contribute, and where the trail stops at a person.

  1. AUTHORITATIVE SOURCE

    The rule exists

    NIST publishes the requirement; the framework gives it a seat in the model.

    NIST-AC-2 is the external requirement identifier. The federal RMF-style CORE concept remains CTRL-005.

  2. EXTENDED REUSABLE PROFILE

    A way to meet it is on offer

    A reusable identity pattern — RBAC, MFA, privileged access management — waits as a candidate, nothing more.

    AZGOV-FRH.IDENTITY.ENTRA-RBAC-MFA-PIM — the bounded pattern was admitted only after applicability validation.

  3. GULF FICTIONAL IMPLEMENTATION

    The fictional system picks it

    The specimen selects the pattern and points at a synthetic piece of evidence.

    INST-IDENTITY-001 selects the pattern and EVID-FIX-IDENTITY-001 supplies a synthetic evidence pointer.

  4. HUMAN JUDGMENT

    A person says it applies

    Someone — fictional here, real in practice — records the applicability call. The machine only remembers it.

    JUDG-APPL-IDENTITY-001 records APPLICABLE_TO_FICTIONAL_EXERCISE. The resolver did not create that judgment.

  5. CLOUD WAYPOINT INTERPRETATION

    Resolved — and no further

    The model can now carry the approved applicability. Tested and accepted remain open, because no one has tested or accepted anything.

    RES-IDENTITY-001 carries the approved fictional applicability. Assessed and accepted remain not established.

Independent state questions for the resolved control
In plain termsMachine questionStateLimitation
Did someone write it down?documentedESTABLISHEDPublic reference-pattern documentation only
Does the service exist where we need it?availableUNKNOWNNo real region or subscription is in scope
Does the provider's authorization cover our exact use?providerAuthorizedInScopeUNKNOWNExact service, feature, and region scope not established
Can we ride on the provider's homework?inheritedUNKNOWNNo provider control-responsibility evidence admitted
Is it set up?configuredESTABLISHEDSynthetic configuration only
Does the record hold together?mechanicallyValidatedESTABLISHEDReference integrity and synthetic fixture checks only
Has an independent assessor tested it?assessedNOT_ESTABLISHEDNo assessment procedure or result is admitted
Has someone with authority accepted the risk?acceptedNOT_ESTABLISHEDNo authorized acceptance judgment exists
Is it right for this mission?missionSuitableUNKNOWNNo mission-suitability judgment exists

One piece of evidence, up close

EVID-FIX-IDENTITY-001

Evidence is a pointer with an integrity fingerprint — if the thing it points at changes, it stops counting.

Type
SYNTHETIC
Integrity pointer
FICTIONAL-EVIDENCE-DIGEST-IDENTITY-001
No government information
Yes
Invalidated by
CHG-EVIDENCE

One finding, up close

RES-FINDING-001

The representative fictional external-connection inventory is incomplete. A person recorded the problem — and only a person may decide how bad it is.

Severity
NOT_DETERMINED
Authorization consequence
NOT_DETERMINED
Boundary evidence complete
No

The finding was recorded by fictional human judgment. Severity, acceptance, and authorization consequence were not generated.

Where each fact came from

CORE

  • CTRL-005
  • CORE-008

EXTENDED

  • AZGOV-FRH.IDENTITY.ENTRA-RBAC-MFA-PIM

INSTANCE

  • INST-IDENTITY-001
  • EVID-FIX-IDENTITY-001

VALIDATION

  • APPL-AZGOV-IDENTITY-001

JUDGMENT

  • JUDG-APPL-IDENTITY-001

RESOLVER RULES

  • RULE-APPLICABILITY
  • RULE-JUDGMENT-AUTHORITY
  • RULE-STATE-SEPARATION

Change a fictional assumption

Pull one thread

Assumption: the fictional identity selection or its synthetic evidence changes. One small change — and the honest cost is visible: 65 dependency paths re-checked, 6 people who must look again, 15 documents stale until they do. Invalidate the resolved value and re-run applicability and human-review gates before regenerating affected projections. Nothing regenerates itself past a human gate.

Invalidation triggers

The kinds of change that pull this thread.

CHG-IDENTITYCHG-CONTROL CHG-CONFIGURATIONCHG-EVIDENCE

Affected projections

The documents that immediately stop being trustworthy.

PROJ-GULF-01-PREVIEWPROJ-GULF-07-REFUSED

Computed fixed-point receipt — GULF-IMPACT-CLOSURE-V1

Paths retained
65
Required human reviews
6 outcomes unresolved
Affected packages
15 blocked or invalidated
REV-ARCHITECTREV-ASSESSORREV-AUTHORIZING-OFFICIAL REV-CONTROL-OWNERREV-REFERENCE-CURATORREV-RISK-AUTHORITY
GULF-00GULF-01GULF-02 GULF-04GULF-05GULF-06 GULF-07GULF-08GULF-09 GULF-10GULF-11GULF-12 GULF-13GULF-14GULF-15

Receipt 68de8d49b42932b16028b4cdd3558ca054a2e5c343781d0203e88e269e8e9ee3

The receipt enumerates effects only. It creates no new snapshot, projection, professional judgment, or authorization decision.


Build a package from the model

Sixteen documents, one honest shelf

The package is sixteen documents, GULF-00 through GULF-15. In this empty specimen, one previews and fifteen refuse to render — correctly — because rendering them would require evidence or judgment the specimen doesn't hold. Every projection, previewed or refused, carries the required fictional marking in full, exactly as it appears in the banner at the top of this page.

GULF-00Package manifest and receiptsPREVIEW_ONLY
GULF-01Resolved model and provenanceREFUSED
GULF-02Source and freshness projectionREFUSED
GULF-03System identity, roles, and contextREFUSED
GULF-04Security categorizationREFUSED
GULF-05Boundary, flows, connections, and PPSREFUSED
GULF-06Architecture and inventoriesREFUSED
GULF-07System security planREFUSED
GULF-08Control responsibility and implementation matrixREFUSED
GULF-09Evidence catalog and lineageREFUSED
GULF-10Security assessment planREFUSED
GULF-11Security assessment reportREFUSED
GULF-12POA&MREFUSED
GULF-13Continuous monitoringREFUSED
GULF-14Risk, conditions, and decision briefingREFUSED
GULF-15Existing human authorization decision viewREFUSED
Full receipts with refusal codes 16 packages
PackageProjectionStatusRefusal
GULF-00Package manifest and receiptsPREVIEW_ONLYNone — preview only
GULF-01Resolved model and provenanceREFUSEDREFUSE-AMBIGUOUS-L2-RESOLVED-VALUE-MAPPING
GULF-02Source and freshness projectionREFUSEDREFUSE-PROJECTION-NOT-DECLARED
GULF-03System identity, roles, and contextREFUSEDREFUSE-PROJECTION-NOT-DECLARED
GULF-04Security categorizationREFUSEDREFUSE-PROJECTION-NOT-DECLARED
GULF-05Boundary, flows, connections, and PPSREFUSEDREFUSE-PROJECTION-NOT-DECLARED
GULF-06Architecture and inventoriesREFUSEDREFUSE-PROJECTION-NOT-DECLARED
GULF-07System security planREFUSEDREFUSE-AMBIGUOUS-L2-RESOLVED-VALUE-MAPPING · REFUSE-CONTROLLED-IL5-EVIDENCE-GAP · REFUSE-INCOMPLETE-CONTROL-POPULATION
GULF-08Control responsibility and implementation matrixREFUSEDREFUSE-PROJECTION-NOT-DECLARED
GULF-09Evidence catalog and lineageREFUSEDREFUSE-PROJECTION-NOT-DECLARED
GULF-10Security assessment planREFUSEDREFUSE-PROJECTION-NOT-DECLARED
GULF-11Security assessment reportREFUSEDREFUSE-PROJECTION-NOT-DECLARED
GULF-12POA&MREFUSEDREFUSE-PROJECTION-NOT-DECLARED
GULF-13Continuous monitoringREFUSEDREFUSE-PROJECTION-NOT-DECLARED
GULF-14Risk, conditions, and decision briefingREFUSEDREFUSE-PROJECTION-NOT-DECLARED
GULF-15Existing human authorization decision viewREFUSEDREFUSE-AMBIGUOUS-L2-RESOLVED-VALUE-MAPPING · REFUSE-CONTROLLED-IL5-EVIDENCE-GAP · REFUSE-MISSING-OFFICIAL-DECISION

The L2 snapshot is the value authority for these receipts. A missing or ambiguous provenance join refuses instead of silently reusing the example snapshot.

REFUSE-INCOMPLETE-CONTROL-POPULATION

Eight controls is a teaching slice, not a security plan.

The eight-control-style representative slice is not a complete system security plan or control population.

Resume only after

  • Enumerate the declared control scope
  • Resolve required implementation, responsibility, evidence, assessment, and gap fields for every selected control

REFUSE-CONTROLLED-IL5-EVIDENCE-GAP

Public documents can't prove a controlled environment.

Public evidence cannot establish exact current service scope, instance isolation, boundary/connection acceptance, or authorization.

Resume only after

  • Admit lawfully available exact scope and system-specific evidence
  • Record authorized human assessment and acceptance judgments

REFUSE-MISSING-OFFICIAL-DECISION

No one has decided — so there is nothing to print.

No authorized human authorization-decision record exists; the resolver and projection engine cannot create one.

Resume only after

  • Record an in-scope decision by a human holding the required authority
  • Bind the decision to the exact resolved snapshot, scope, conditions, and term

OSCAL

A format that travels — and knows its place

The envelope is proven to travel: a schema-valid, lossless 1.2.3 test envelope is verified for transport only; semantic package compatibility is not established. What it may never do is impersonate an authorization — package export remains refused, because no format converts assembly into authority. The FedRAMP OSCAL 1.2.2 reference is a vendored control-catalog version, not a package consumer contract.

Transport compatibility
VERIFIED
Package export
REFUSED
Creates authorization facts
NO

Sources

What the model believes — and why so little

The model currently believes exactly three public documents — each mapped, dated, and bounded. Nineteen more claims exist, and every one stays withheld until it earns a registry mapping. Freshness is recalculated by that registry as of 2026-08-30T23:59:59Z; embedded GULF freshness is never trusted. Belief is expensive here, on purpose.

AUTHORITATIVE SOURCE

Risk Management Framework for Information Systems and Organizations

National Institute of Standards and Technology — NIST SP 800-37 Rev. 2 — verified 2026-08-24 — current

Supports: NIST SP 800-37 Rev. 2 defines the federal Risk Management Framework lifecycle and authorization-step context used by this bounded CORE.

Boundary: The publication does not authorize this fictional instance and does not make the GULF kernel universal outside a federal RMF-style context.

AUTHORITATIVE SOURCE

DoD Cloud Computing Security Requirements Guide

Defense Information Systems Agency — publisher-controlled current edition — verified 2026-08-29 — current

Supports: The public DISA cloud-computing SRG package supplies bounded DoD cloud requirements and mission-owner applicability concepts.

Boundary: The public package is not an exact current provider authorization letter, system assessment, mission authorization, or complete controlled implementation recipe.

AUTHORITATIVE SOURCE

Azure Government IL5 isolation guidance

Microsoft — continuously maintained documentation — verified 2026-08-24 — current

Supports: Microsoft publishes impact-level-5 isolation guidance for Azure Government workloads.

Boundary: Provider guidance does not establish exact current service scope, instance isolation, DoD authorization, GULF authorization, or mission suitability.

Withheld source claims 19 — no explicit registry mapping

Each identifier below has no explicit mapping to the governed public Reference source registry. Embedded GULF freshness and source text are not published.

  • SRC-NIST-SP800-18R2
  • SRC-NIST-SP800-53R5
  • SRC-NIST-SP800-53AR5
  • SRC-NIST-OSCAL-123
  • SRC-FEDRAMP-OSCAL-122
  • SRC-FEDRAMP-REV5-AGENCY-AUTH
  • SRC-MS-AZGOV-FEDRAMP
  • SRC-MS-LZ-IDENTITY
  • SRC-MS-AZURE-POLICY
  • SRC-MS-DEFENDER-CLOUD
  • SRC-MS-AZURE-MONITOR
  • SRC-MS-KEY-VAULT
  • SRC-MS-HUB-SPOKE
  • SRC-MS-NSG
  • SRC-MS-PRIVATE-ENDPOINT
  • SRC-MS-WAF-MONITOR
  • SRC-MS-STORAGE
  • SRC-MS-BACKUP
  • SRC-MS-AZGOV-AUDIT-SCOPE

Words on this page

The vocabulary, in plain terms