Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
172 commits
Select commit Hold shift + click to select a range
1bc5efd
docs: add canonical architecture terminology glossary
cdcavell Aug 22, 2026
6c50793
Merge branch 'main' into issue_work
cdcavell Aug 22, 2026
ac650d3
docs: add visual learning path map
cdcavell Aug 22, 2026
b14c145
Merge branch 'main' into issue_work
cdcavell Aug 22, 2026
dcea06a
docs: add learner self-assessment criteria
cdcavell Aug 22, 2026
9f39fe4
Merge branch 'main' into issue_work
cdcavell Aug 22, 2026
bb9fe3c
docs: add AI governance observability tracing
cdcavell Aug 22, 2026
6784d07
Merge branch 'main' into issue_work
cdcavell Aug 22, 2026
cfd11fd
samples: add policy simulation harness
cdcavell Aug 22, 2026
a3a6668
fix: resolve policy simulation test namespace collision
cdcavell Aug 22, 2026
204fccf
fix: isolate policy simulation test assembly namespace
cdcavell Aug 22, 2026
af60cbf
docs: streamline README with progressive disclosure
cdcavell Aug 23, 2026
5c58c0f
Merge branch 'main' into issue_work
cdcavell Aug 23, 2026
0b8bc34
Merge branch 'main' into issue_work
cdcavell Aug 23, 2026
90b1966
docs: add permanent technical articles publication surface
cdcavell Aug 23, 2026
4fe452b
Merge branch 'main' into issue_work
cdcavell Aug 23, 2026
dbc51d5
docs: publish authorization timing article
cdcavell Aug 23, 2026
62ead45
Merge branch 'main' into issue_work
cdcavell Aug 23, 2026
13dc3f3
docs: publish .NET package trust article
cdcavell Aug 23, 2026
3b62f5e
Merge branch 'main' into issue_work
cdcavell Aug 23, 2026
3ff6489
docs: improve article discovery and feed metadata
cdcavell Aug 23, 2026
a3cf1f9
Merge branch 'main' into issue_work
cdcavell Aug 23, 2026
ffbb451
test: isolate governance observability traces
cdcavell Aug 23, 2026
832585a
Merge branch 'main' into issue_work
cdcavell Aug 23, 2026
ec38138
docs: improve RSS channel image metadata
cdcavell Aug 23, 2026
f0466fd
Merge branch 'main' into issue_work
cdcavell Aug 23, 2026
3067945
Add repository discussion templates and community guidance
cdcavell Aug 23, 2026
f4b5e82
Merge branch 'main' into issue_work
cdcavell Aug 23, 2026
92d6c52
docs: Add social image to root README
cdcavell Aug 23, 2026
2f8f84a
Merge branch 'main' into issue_work
cdcavell Aug 23, 2026
88c00f1
Refresh Learning site icon and favicon branding
cdcavell Aug 23, 2026
2c459a4
Merge branch 'main' into issue_work
cdcavell Aug 23, 2026
5f97e99
Add GitHub social preview image for Learning
cdcavell Aug 23, 2026
dc90c5a
Merge branch 'main' into issue_work
cdcavell Aug 23, 2026
1f033f1
Merge branch 'issue_work' of https://github.com/AsiBackbone/Learning …
cdcavell Aug 23, 2026
f212c83
Merge branch 'main' into issue_work
cdcavell Aug 23, 2026
1fdb86b
Merge branch 'main' into issue_work
cdcavell Aug 23, 2026
7446bdd
Merge branch 'issue_work' of https://github.com/AsiBackbone/Learning …
cdcavell Aug 23, 2026
8ea7db7
Add role, claims, and capability authorization comparison
cdcavell Aug 23, 2026
5744f2c
Merge branch 'main' into issue_work
cdcavell Aug 23, 2026
2a17dca
Add gateway, mesh, zero-trust, and governed execution comparison
cdcavell Aug 24, 2026
713431d
Merge branch 'main' into issue_work
cdcavell Aug 24, 2026
c620b22
Merge branch 'main' into issue_work
cdcavell Aug 24, 2026
03ecddf
Add workflow, approval, and governed execution comparison
cdcavell Aug 24, 2026
fb83bb8
Merge branch 'main' into issue_work
cdcavell Aug 24, 2026
e798183
Add policy engine and distributed enforcement comparison
cdcavell Aug 24, 2026
08763b1
Merge branch 'main' into issue_work
cdcavell Aug 24, 2026
55a8807
Add agent and tool authorization comparison
cdcavell Aug 24, 2026
a4c23a5
Merge branch 'main' into issue_work
cdcavell Aug 24, 2026
f3e854b
Add event sourcing and governance provenance comparison
cdcavell Aug 24, 2026
f1ac0fc
Merge branch 'main' into issue_work
cdcavell Aug 24, 2026
fadb0f4
Add CQRS and governed execution comparison
cdcavell Aug 24, 2026
2765bdd
Merge branch 'main' into issue_work
cdcavell Aug 24, 2026
cb79da9
Merge branch 'main' into issue_work
cdcavell Aug 24, 2026
024010c
feat: generate and validate published site sitemap
cdcavell Aug 25, 2026
951acd1
fix: avoid pre-deployment sitemap link validation failure
cdcavell Aug 25, 2026
15aa80a
Merge branch 'main' into issue_work
cdcavell Aug 25, 2026
6281b4a
feat: notify search engines of changed Learning URLs
cdcavell Aug 25, 2026
24d984d
fix: make IndexNow payload serialization AOT-safe
cdcavell Aug 25, 2026
a914e37
Merge branch 'main' into issue_work
cdcavell Aug 25, 2026
995b92a
docs: strengthen contextual linking across Learning
cdcavell Aug 25, 2026
3c86bde
Merge branch 'main' into issue_work
cdcavell Aug 25, 2026
faf0690
docs: add problem-oriented standalone article backlog
cdcavell Aug 25, 2026
8379bd8
Merge branch 'main' into issue_work
cdcavell Aug 25, 2026
c9dc3f8
docs: add governed administrative operation case study
cdcavell Aug 25, 2026
a76be9e
Merge branch 'main' into issue_work
cdcavell Aug 25, 2026
33ee8af
docs: add sensitive-data access decision case study
cdcavell Aug 25, 2026
c58b9f0
Merge branch 'main' into issue_work
cdcavell Aug 25, 2026
e4959f5
docs: add deployment and infrastructure gate case study
cdcavell Aug 25, 2026
b132a9c
Merge branch 'main' into issue_work
cdcavell Aug 25, 2026
8747d6a
fix: repair Mermaid diagrams and simplify top navigation
cdcavell Aug 25, 2026
5f5b791
Merge branch 'main' into issue_work
cdcavell Aug 25, 2026
9aab75c
Merge branch 'main' into issue_work
cdcavell Aug 25, 2026
281b8f2
docs: add AI-assisted API and tool gateway case study
cdcavell Aug 25, 2026
1d497ce
Merge branch 'main' into issue_work
cdcavell Aug 25, 2026
4b89c70
docs: add multi-tenant regional policy overlay case study
cdcavell Aug 25, 2026
b655ded
Merge branch 'main' into issue_work
cdcavell Aug 25, 2026
5a1a395
docs: add human acknowledgment workflow case study
cdcavell Aug 25, 2026
ae1644d
Merge branch 'main' into issue_work
cdcavell Aug 25, 2026
a0481e1
docs: add capability-scoped background operation case study
cdcavell Aug 25, 2026
0c2ab9c
Merge branch 'main' into issue_work
cdcavell Aug 25, 2026
ab7127c
Fix Mermaid sequence diagram syntax in background operation case study
cdcavell Aug 25, 2026
a1b6e41
Fix Mermaid claim-revocation race diagram rendering
cdcavell Aug 25, 2026
e44104f
Fix Mermaid claim-revocation race diagram rendering
cdcavell Aug 25, 2026
afb7600
Merge branch 'main' into issue_work
cdcavell Aug 25, 2026
cb98479
Merge branch 'issue_work' of https://github.com/AsiBackbone/Learning …
cdcavell Aug 25, 2026
e4a28e4
docs: add simulated robotics governance case study
cdcavell Aug 25, 2026
627170b
docs: fix robotics case study bookmarks
cdcavell Aug 25, 2026
7e3875d
Merge branch 'main' into issue_work
cdcavell Aug 25, 2026
2c92f88
docs: reconcile roadmap with current repository state
cdcavell Aug 26, 2026
ac0d944
Merge branch 'main' into issue_work
cdcavell Aug 26, 2026
a145cb6
docs: add decision pipeline refactoring lab and sample
cdcavell Aug 26, 2026
a36b4ee
Merge branch 'main' into issue_work
cdcavell Aug 26, 2026
d72d830
docs: publish denied-operation execution invariant article
cdcavell Aug 26, 2026
3d99c12
Merge branch 'main' into issue_work
cdcavell Aug 26, 2026
2aac16c
docs: publish ASP.NET Core authorization decision guide
cdcavell Aug 26, 2026
9ae98d9
Merge branch 'main' into issue_work
cdcavell Aug 26, 2026
761010b
Add competing policy architecture comparison lab
cdcavell Aug 26, 2026
317eea9
Merge branch 'main' into issue_work
cdcavell Aug 26, 2026
116dbe4
feat(learning): add cross-system capability exchange guidance and sample
cdcavell Aug 27, 2026
fafcd95
Merge branch 'main' into issue_work
cdcavell Aug 27, 2026
5836416
feat(learning): add federated governance coordination material
cdcavell Aug 27, 2026
b472eb7
fix(samples): handle nullable federation contribution lookup
cdcavell Aug 27, 2026
6fa2104
Merge branch 'main' into issue_work
cdcavell Aug 27, 2026
6d9f854
feat(learning): add distributed acknowledgment continuation material
cdcavell Aug 27, 2026
770a977
Merge branch 'main' into issue_work
cdcavell Aug 27, 2026
594dab3
feat(learning): add human decision explainability material
cdcavell Aug 27, 2026
d1652b3
Merge branch 'main' into issue_work
cdcavell Aug 27, 2026
9d4ca16
feat(learning): add adaptive risk freshness and drift material
cdcavell Aug 27, 2026
5a9bc77
feat(learning): add adaptive risk freshness and drift material
cdcavell Aug 27, 2026
e2ff2bd
Merge branch 'main' into issue_work
cdcavell Aug 27, 2026
7f1fce0
docs: add durable decision ledger and audit chain learning material
cdcavell Aug 28, 2026
02dad4c
docs: replace retired Amazon QLDB reference
cdcavell Aug 28, 2026
e3dbcbc
Merge branch 'main' into issue_work
cdcavell Aug 28, 2026
c7b608a
docs: improve executable sample discoverability
cdcavell Aug 28, 2026
bd6b65d
docs: complete sample navigation and simplify breadcrumbs
cdcavell Aug 28, 2026
94a4ce0
Merge branch 'main' into issue_work
cdcavell Aug 28, 2026
3633fa5
Merge branch 'main' into issue_work
cdcavell Aug 28, 2026
523ae89
Merge branch 'issue_work' of https://github.com/AsiBackbone/Learning …
cdcavell Aug 28, 2026
b91f58f
Merge branch 'main' into issue_work
cdcavell Aug 28, 2026
c8c6db8
docs: publish AI tool proposal authority article
cdcavell Aug 28, 2026
4680783
Merge branch 'main' into issue_work
cdcavell Aug 28, 2026
8f075f3
Merge branch 'main' into issue_work
cdcavell Aug 28, 2026
88c091e
docs: publish roles claims and capability selection article
cdcavell Sep 2, 2026
f58c82e
Merge branch 'main' into issue_work
cdcavell Sep 2, 2026
ea1e29b
Merge branch 'main' into issue_work
cdcavell Sep 2, 2026
e0c48b8
Merge branch 'main' into issue_work
cdcavell Sep 2, 2026
4c39e02
docs: correct governance licensing statement
cdcavell Sep 2, 2026
d165c86
Merge branch 'main' into issue_work
cdcavell Sep 2, 2026
f0b42d6
Merge branch 'main' into issue_work
cdcavell Sep 6, 2026
7ccbe69
docs: correct lab heading hierarchy
cdcavell Sep 6, 2026
527cf1c
Merge branch 'main' into issue_work
cdcavell Sep 6, 2026
512cd0c
docs: restore missing catalog entries
cdcavell Sep 6, 2026
248e008
Merge branch 'main' into issue_work
cdcavell Sep 6, 2026
ead0322
docs: standardize pattern classifications
cdcavell Sep 6, 2026
2b22371
Merge branch 'main' into issue_work
cdcavell Sep 6, 2026
3c6c1c0
docs: add missing page orientation metadata
cdcavell Sep 6, 2026
be0e3bf
Merge branch 'main' into issue_work
cdcavell Sep 6, 2026
5e900e3
Check DOI links, remap tree/main, and validate anchors (#265)
cdcavell Sep 6, 2026
3ede10d
Merge branch 'main' into issue_work
cdcavell Sep 6, 2026
fcd9d6b
Give CITATION.cff a DOI and canonicalize Zenodo relations (#266)
cdcavell Sep 6, 2026
4e35a00
Merge branch 'main' into issue_work
cdcavell Sep 6, 2026
d11ae3a
fix: trigger docs publishing on the metadata validator and make the f…
cdcavell Sep 6, 2026
32c81e4
Merge branch 'main' into issue_work
cdcavell Sep 6, 2026
703bc4f
fix: normalize publication date metadata
cdcavell Sep 6, 2026
5402d1d
Merge branch 'main' into issue_work
cdcavell Sep 6, 2026
dfeb22b
fix: clean up DocFX template layout
cdcavell Sep 6, 2026
c63a3d8
Merge branch 'main' into issue_work
cdcavell Sep 6, 2026
0ff7a4b
docs: disambiguate fictional ADR lifecycle example
cdcavell Sep 6, 2026
02821a7
Merge branch 'main' into issue_work
cdcavell Sep 6, 2026
357921b
docs: normalize repository content conventions
cdcavell Sep 6, 2026
80bceac
Merge branch 'main' into issue_work
cdcavell Sep 6, 2026
8e863f4
Merge branch 'main' into issue_work
cdcavell Sep 6, 2026
05d7636
Add standalone article on audit records as evidence
cdcavell Sep 7, 2026
d34f955
Merge branch 'main' into issue_work
cdcavell Sep 7, 2026
da4d790
Merge branch 'issue_work' of https://github.com/AsiBackbone/Learning …
cdcavell Sep 8, 2026
d4e54fe
security: harden Learning repository host controls
cdcavell Sep 8, 2026
6a6d997
Merge branch 'main' into issue_work
cdcavell Sep 8, 2026
4709f8c
Merge branch 'main' into issue_work
cdcavell Sep 10, 2026
ee45931
Merge branch 'main' into issue_work
cdcavell Sep 10, 2026
78d8327
Merge branch 'main' into issue_work
cdcavell Sep 11, 2026
d3af2bc
docs: add OpenSSF Best Practices badge to README
cdcavell Sep 11, 2026
3037b83
Merge branch 'main' into issue_work
cdcavell Sep 11, 2026
4ce7e50
Align Learning workflows with global.json SDK selection
cdcavell Sep 11, 2026
149c652
Merge branch 'main' into issue_work
cdcavell Sep 11, 2026
7ce2474
Merge branch 'main' into issue_work
cdcavell Sep 14, 2026
0a73520
Optimize Getting Started learning navigation
cdcavell Sep 14, 2026
a1863e2
Fix Getting Started foundation anchor
cdcavell Sep 14, 2026
7fcf923
Merge branch 'main' into issue_work
cdcavell Sep 14, 2026
a7d5714
Optimize Articles index for topic-based discovery
cdcavell Sep 14, 2026
9699032
Optimize Architecture and Tutorials landing pages
cdcavell Sep 14, 2026
b6f7b04
Merge branch 'main' into issue_work
cdcavell Sep 14, 2026
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
168 changes: 68 additions & 100 deletions docs/architecture/index.md
Original file line number Diff line number Diff line change
Expand Up @@ -4,49 +4,30 @@ description: Explore software architecture boundaries, responsibilities, failure

# Architecture

The Architecture section explores the structural boundaries, responsibilities, and tradeoffs behind governed software systems.
The Architecture section examines the boundaries, responsibilities, failure modes, and tradeoffs behind governed software systems.

The goal is not to prescribe one universal architecture.

Instead, this section examines why particular boundaries exist, what problems they address, how they can fail, and when a simpler design may be preferable.
The goal is not to prescribe one universal design. The goal is to make important boundaries visible enough that you can decide when a governance pattern is justified and when a simpler architecture is better.

> **Good architecture makes important boundaries visible.**

## Terminology and Lineage

Learning uses a consistent vocabulary for recurring boundaries, but that vocabulary is not a claim that the underlying architectural ideas originated with ASI Backbone.

Start with the [Architecture Glossary](glossary.md) for canonical Learning definitions of terms such as intent, policy context, decision outcome, acknowledgment, audit residue, scoped capability, execution authority, tool proposal, and trust boundary.

Then use [Terminology and Established Architecture Concepts](terminology-and-established-concepts.md) to connect Learning vocabulary to established software architecture, authorization, security, workflow, provenance, and AI-governance concepts.

## Architectural Status Labels
## Start by Question

Substantive pages use a visible `Pattern classification` line when architectural status changes how the material should be interpreted:

| Status | Meaning |
| If you want to understand... | Start here |
| --- | --- |
| **Canonical Pattern** | Aligns with the current architecture of one or more ASI Backbone organization repositories. |
| **Alternative Pattern** | Presents a viable different approach or a comparison that intentionally departs from the canonical organization pattern. |
| **Experimental** | Explores architecture that is not presented as an established organization pattern or production-ready design. |
| **General learning material** | Teaches useful architecture without making a stronger canonical, alternative, or experimental claim. |
| Learning terminology | [Architecture Glossary](glossary.md) |
| How Learning terms relate to established concepts | [Terminology and Established Architecture Concepts](terminology-and-established-concepts.md) |
| The overall governance-spine concept | [Accountable Systems Infrastructure and Governed Execution](accountable-systems-infrastructure-and-governed-execution.md) |
| Why proposal and side effect should be separated | [Intent to Execution: An Accountability Pattern](intent-to-execution-accountability-pattern.md) |
| How active constraints shape decisions | [Constraint-Conditioned Decision Model](constraint-conditioned-decision-model.md) |
| How adjacent governance mechanisms compose | [Governance Tool Selection and Composition](governance-tool-selection-and-composition.md) |
| The architecture visually | [Governance Spine and Capability Validation Diagrams](governance-spine-and-capability-validation-diagrams.md) |
| When ASP.NET Core authorization is already enough | [When ASP.NET Core Authorization Is Enough](when-aspnet-core-authorization-is-enough.md) |
| When a simple application service is enough | [When a Simple Application Service Is Enough](when-a-simple-application-service-is-enough.md) |
| How application structure should grow | [Growing Beyond a Simple Application Structure](growing-beyond-a-simple-application-structure.md) |

Not every page needs a classification. The labels are descriptive rather than rankings: canonical does not mean universally correct, and experimental does not mean low quality.
## Core Boundary

## Foundational Organization Concepts

For the broad organization-level concepts that previously appeared inside product documentation, start with:

* [Accountable Systems Infrastructure and Governed Execution](accountable-systems-infrastructure-and-governed-execution.md) — the stack-neutral meaning of the ASI Backbone governance-spine idea.
* [Intent to Execution: An Accountability Pattern](intent-to-execution-accountability-pattern.md) — the accountability gap between proposal and side effect.
* [Constraint-Conditioned Decision Model](constraint-conditioned-decision-model.md) — the conceptual structure behind narrowing intent through active constraints.
* [Governance Tool Selection and Composition](governance-tool-selection-and-composition.md) — how adjacent governance mechanisms protect different boundaries and compose without becoming substitutes.

These pages are educational. Concrete package, API, configuration, compatibility, security, and release behavior remains authoritative in the implementation repositories.

## Current Focus

The current foundational material emphasizes separation among:
The foundational material repeatedly separates these responsibilities:

```text
Intent
Expand All @@ -64,94 +45,81 @@ Host-Owned Execution
Audit Residue
```

This separation makes it easier to reason about:

* Who proposes an operation.
* Which facts influence a decision.
* Where policy is evaluated.
* What authority exists after approval.
* Which component performs the real-world side effect.
* What evidence remains afterward.

## Visual Reference
This makes it easier to answer six questions:

For a compact orientation to the major boundaries, see [Governance Spine and Capability Validation Diagrams](governance-spine-and-capability-validation-diagrams.md).
1. Who proposes the operation?
2. Which facts influence the decision?
3. Where is policy evaluated?
4. What authority exists after approval?
5. Which component performs the real-world side effect?
6. What evidence remains afterward?

The visual reference covers:
If those questions are already answered clearly by a simpler design, additional governance machinery may not be necessary.

* The governance spine from intent through host-owned execution.
* Policy context, independent constraints, and explicit decision composition.
* Metadata inspection versus execution-boundary capability validation.
* AI proposal versus host authority in a governed tool gateway.
## Pattern Classifications

The diagrams are reference aids rather than substitutes for the tutorials, samples, tests, and labs.
Substantive pages may use a visible `Pattern classification` when architectural status changes how the material should be interpreted:

## Start with the Foundational Tutorials
| Status | Meaning |
| --- | --- |
| **Canonical Pattern** | Aligns with the current architecture of one or more ASI Backbone organization repositories. |
| **Alternative Pattern** | Presents a viable different approach or intentionally departs from the canonical organization pattern. |
| **Experimental** | Explores architecture that is not presented as an established organization pattern or production-ready design. |
| **General learning material** | Teaches useful architecture without making a stronger canonical, alternative, or experimental claim. |

If you are new to these architectural ideas, begin with:
These are descriptive labels, not rankings. Canonical does not mean universally correct, and experimental does not mean low quality.

* [Decision Before Execution](../tutorials/decision-before-execution.md)
* [Policy Context and Explicit Decision Outcomes](../tutorials/policy-context-and-explicit-decision-outcomes.md)
* [Acknowledgment and Audit Residue](../tutorials/acknowledgment-and-audit-residue.md)
* [Scoped Capability and Host-Owned Execution](../tutorials/scoped-capability-and-host-owned-execution.md)
* [Governed AI Tool Gateway](../tutorials/governed-ai-tool-gateway.md)
## Foundational Organization Concepts

The sequence moves from a basic execution boundary toward an end-to-end governed workflow.
| Concept | What it helps you reason about |
| --- | --- |
| [Accountable Systems Infrastructure and Governed Execution](accountable-systems-infrastructure-and-governed-execution.md) | The stack-neutral meaning of the governance-spine idea |
| [Intent to Execution: An Accountability Pattern](intent-to-execution-accountability-pattern.md) | The accountability gap between proposal and side effect |
| [Constraint-Conditioned Decision Model](constraint-conditioned-decision-model.md) | How active constraints narrow an intent toward an outcome |
| [Governance Tool Selection and Composition](governance-tool-selection-and-composition.md) | How adjacent governance mechanisms protect different boundaries without becoming substitutes |

## Architectural Questions
These pages are educational. Concrete package, API, configuration, compatibility, security, and release behavior remains authoritative in the implementation repositories.

Future material in this section may examine questions such as:
## Foundational Learning Path

* Where should governance decisions occur?
* Which components should remain independent?
* How should policy evaluation relate to authorization?
* When should acknowledgment interrupt a workflow?
* How narrowly should execution authority be scoped?
* How should failure, retry, replay, and cancellation affect authority?
* Which architectural concerns belong in the host rather than a framework?
* When is a governance pipeline unnecessary complexity?
If these boundaries are new, use the five tutorials in order:

## Application Structure Growth
1. [Decision Before Execution](../tutorials/decision-before-execution.md)
2. [Policy Context and Explicit Decision Outcomes](../tutorials/policy-context-and-explicit-decision-outcomes.md)
3. [Acknowledgment and Audit Residue](../tutorials/acknowledgment-and-audit-residue.md)
4. [Scoped Capability and Host-Owned Execution](../tutorials/scoped-capability-and-host-owned-execution.md)
5. [Governed AI Tool Gateway](../tutorials/governed-ai-tool-gateway.md)

For general application-layering guidance, see [Growing Beyond a Simple Application Structure](growing-beyond-a-simple-application-structure.md). It explains when a compact application is enough, what signals justify Application or Domain boundaries, how dependency direction should be reasoned about, and the tradeoffs around CQRS, MediatR, DDD, and premature layering. NetCoreApplicationTemplate is used as one working reference rather than a universal pattern.
The sequence moves from one execution boundary toward an end-to-end governed workflow.

## Alternative Patterns
## Compare Adjacent Architectures

Architecture should be compared against viable alternatives rather than presented as a single prescribed design.
Architecture should be compared against viable alternatives rather than presented as one prescribed design.

Start with:
| Comparison | Main question |
| --- | --- |
| [When ASP.NET Core Authorization Is Enough](when-aspnet-core-authorization-is-enough.md) | Is framework-native endpoint or resource authorization already sufficient? |
| [Role-Based, Claims-Based, and Capability-Based Authorization](role-based-claims-based-and-capability-based-authorization.md) | When should authority come from roles, claims, narrow capabilities, or a composition of them? |
| [API Gateways, Service Meshes, Zero Trust, and Governed Execution](api-gateways-service-meshes-zero-trust-and-governed-execution.md) | Which concerns belong to transport, workload identity, infrastructure security, or application decision semantics? |
| [When a Simple Application Service Is Enough](when-a-simple-application-service-is-enough.md) | Can one immediate application-service workflow preserve the required boundaries without a broader lifecycle? |
| [Workflow Engines, Human Approval Systems, and Governed Execution](workflow-engines-human-approval-and-governed-execution.md) | Does durable orchestration already provide the process and approval semantics you need? |
| [Policy Engines, Rules Engines, and Distributed Policy Enforcement](policy-engines-rules-engines-and-distributed-policy-enforcement.md) | Where should domain rules, external policy decisions, PDPs, and PEPs live? |
| [Agent and Tool Authorization Models and Host-Owned Execution](agent-and-tool-authorization-models-and-host-owned-execution.md) | When are framework-native agent/tool controls enough, and when is a separate execution-authority boundary justified? |
| [Event Sourcing, Audit Trails, and Governance Decision Provenance](event-sourcing-audit-trails-and-governance-decision-provenance.md) | What evidence problem are logs, audit history, decision receipts, and event sourcing each solving? |
| [CQRS, Command/Query Separation, and Governed Execution](cqrs-command-query-separation-and-governed-execution.md) | When is a command handler already the correct host-owned execution boundary? |

The purpose is not to make adjacent approaches compete. It is to expose their different responsibilities, trust boundaries, and operational costs.

* [When ASP.NET Core Authorization Is Enough](when-aspnet-core-authorization-is-enough.md) — compares the governed-execution model with ASP.NET Core policies, requirements, handlers, and resource-based authorization, including cases where the built-in authorization model is the simpler and better choice.
* [Role-Based, Claims-Based, and Capability-Based Authorization](role-based-claims-based-and-capability-based-authorization.md) — compares stable role membership, richer claims policies, and narrowly scoped capabilities, including when each model wins and when composition is preferable to replacement.
* [API Gateways, Service Meshes, Zero Trust, and Governed Execution](api-gateways-service-meshes-zero-trust-and-governed-execution.md) — separates transport, workload identity, infrastructure security strategy, application-level decision semantics, and execution ownership, then shows how the boundaries can be layered without treating them as substitutes.
* [When a Simple Application Service Is Enough](when-a-simple-application-service-is-enough.md) — examines the middle ground where authorization alone is not the whole use case, but an immediate application-service workflow still expresses the required validation, domain rules, persistence, execution, and audit boundaries without a broader governance lifecycle.
* [Workflow Engines, Human Approval Systems, and Governed Execution](workflow-engines-human-approval-and-governed-execution.md) — separates durable process orchestration, bound human dispositions, current policy decisions, and scoped execution authority, including cases where a workflow engine already provides the required governance semantics and a second layer would only duplicate them.
* [Policy Engines, Rules Engines, and Distributed Policy Enforcement](policy-engines-rules-engines-and-distributed-policy-enforcement.md) — distinguishes domain rule evaluation from externalized policy decisions and from the distributed placement of PDPs and PEPs, including policy distribution, stale-policy handling, partitions, local autonomy, and when broader governance lifecycle responsibilities remain separate.
* [Agent and Tool Authorization Models and Host-Owned Execution](agent-and-tool-authorization-models-and-host-owned-execution.md) — compares model-visible tool selection, framework registration and per-agent permissions, schema validation, host-side authorization, and capability-scoped execution, including when framework-native tool controls are sufficient and when a separate execution-authority boundary is justified.
* [Event Sourcing, Audit Trails, and Governance Decision Provenance](event-sourcing-audit-trails-and-governance-decision-provenance.md) — compares operational logs, ordinary audit history, governance decision receipts, and event sourcing, including denied decisions, replay, projections, tamper evidence, privacy/deletion tradeoffs, and historical policy reconstruction.
* [CQRS, Command/Query Separation, and Governed Execution](cqrs-command-query-separation-and-governed-execution.md) — compares command/query separation, immediate command handlers, explicit policy evaluation, and delayed execution with scoped authority, including when a command handler is already the correct host-owned execution boundary.
## Application Structure Growth

The purpose of these comparisons is not to make adjacent approaches compete. It is to make their different responsibilities, trust boundaries, and operational costs visible.
For general layering guidance, see [Growing Beyond a Simple Application Structure](growing-beyond-a-simple-application-structure.md). It covers when a compact application is enough, what signals justify Application or Domain boundaries, dependency direction, and tradeoffs around CQRS, MediatR, DDD, and premature layering.

## Working Architecture References

Learning uses the organization's implementation repositories as architectural specimens:

### AsiBackbone

[AsiBackbone/AsiBackbone](https://github.com/AsiBackbone/AsiBackbone)

A .NET governance and policy-control framework demonstrating structured decisions, acknowledgment workflows, audit residue, scoped capabilities, and host-owned execution boundaries.

### NetCoreApplicationTemplate

[AsiBackbone/NetCoreApplicationTemplate](https://github.com/AsiBackbone/NetCoreApplicationTemplate)

An ASP.NET Core reference architecture demonstrating middleware organization, secure defaults, logging, error handling, rate limiting, authentication-ready design, and production-oriented application structure.

## Current Status

The Architecture section is established as a learning area and now includes general application-structure growth guidance, a governed-execution visual reference, and concrete alternative-pattern comparisons. It will continue to grow through additional comparisons, diagrams, and cross-repository studies.
- [AsiBackbone/AsiBackbone](https://github.com/AsiBackbone/AsiBackbone) — a .NET governance and policy-control framework demonstrating structured decisions, acknowledgment workflows, audit residue, scoped capabilities, and host-owned execution boundaries.
- [AsiBackbone/NetCoreApplicationTemplate](https://github.com/AsiBackbone/NetCoreApplicationTemplate) — an ASP.NET Core reference architecture demonstrating middleware organization, secure defaults, logging, error handling, rate limiting, authentication-ready design, and production-oriented application structure.

For the current learning path, continue with the [Foundational Tutorials](../tutorials/index.md).

Expand Down
Loading
Loading