Documentation
Nine pages, four readers. Each group answers one person’s questions end to end, including the parts that cost them something.
Adopt — for a maintainer
Section titled “Adopt — for a maintainer”- Adoption guide — prerequisites, the inbound-licence gate, the one file, notice preservation, the fork question, claiming, weight class, the badge.
- Leaving (quit) — the same act reversed, at the same depth: vesting consequences, what the registry shows afterwards, and why there is no penalty.
- PURPOSE.yml reference — the optional manifest, field by field, and
the rule that keeps it safe: informational mirrors only, the
LICENSEfile governs.
Contribute — for a contributor
Section titled “Contribute — for a contributor”- Contributors — the copyright position, the sign-off and its bounded delegation, Impact Shares, the materiality gate, the shadow-mode vote, certificates, and the list of things a contributor never receives.
Comply — for a company or a programme office
Section titled “Comply — for a company or a programme office”- Companies: buying and complying — lanes, bands, self-certification, usage declarations, renewal and vesting, waivers, the direct-donation lane, the compliance export, and the SBOM note.
- OSPO and legal pack — classification, identifier and scanner guidance, term certainty, the evidence artifacts with their shapes, the procurement pack, and the permitted claim wording.
- Waivers — public and gratis always, who may grant one, the cooling window, revocation, and how to ask.
Verify — for anyone checking a claim
Section titled “Verify — for anyone checking a claim”- Verify a certificate offline — the three checks, with WebCrypto and OpenSSL, transparency-log inclusion, and the exhaustive verdict matrix.
- Public API reference — the v0 routes, cache behaviour, the error envelope, rate limits, the propagation bound, and the sandbox.
What is documented here, and what is not
Section titled “What is documented here, and what is not”Everything on these pages reads published artifacts. There is no authenticated API, no account system, and no dashboard at this phase — those arrive later and are not described here as though they existed.
Governance, the money mechanics, the keys, and the never-reopen clauses are not documentation — they are the Trust Center, and the statutes are at /constitution.