P4-REQ-21-10-009

Build artifacts SHALL remain distinguishable from governed source artifacts and generated artifacts.

Part 4, Section 21.10: Repository and Build Artifact Requirements.

Build outputs may be intermediate, compiled, packaged, reported, or otherwise produced during generation and build activity. They do not necessarily have the same governance status as source or governed generated files.

Keeping build artifacts distinct prevents temporary or derived outputs from being mistaken for authoritative source definitions or controlled generated artifacts.

This requirement applies to:

  • intermediate build outputs;
  • compiled artifacts;
  • packaged outputs;
  • generated reports and manifests;
  • governed source artifacts; and
  • generated artifacts.

Verification SHALL confirm that build artifacts remain distinguishable from governed source artifacts and generated artifacts.

Verification activities should include review checks confirming that:

  • build-output locations are identifiable;
  • temporary build outputs are excluded from governed source locations;
  • governed generated artifacts remain separately identifiable where retained; and
  • build outputs do not become authoritative source artifacts.

This requirement preserves the distinction among source, generated, and build artifact categories in the Phase 0 repository model.

Related requirement identifiers:

Related source section:

Draft


© 2026 Dido Solutions, Inc. and Jackrabbit Consulting, Inc.

  • dido/99_annexes/annex-d-requirements/part-04/p4-req-21-10-009.txt
  • Last modified: 2026/08/07 14:14
  • by owen