Anchor · Lifecycle

Satoshium Anchor · Lifecycle

Lifecycle defines the institutional progression of the Integrity Reference itself—from construction through active use, supersession, withdrawal, or archival preservation.

Anchor Lifecycle is independent from the lifecycle of the Source Artifact. A Source Artifact may change, be withdrawn, superseded, or disappear while the Integrity Reference remains historically valid and preserved.

Lifecycle Boundary

Source Lifecycle ≠ Anchor Lifecycle

Anchor describes the lifecycle of its own Integrity Reference, not the lifecycle state of the external Source Artifact.

Lifecycle Model

draft

active

superseded / withdrawn / archived

These states are now sufficiently supported by the architecture to serve as the initial Anchor Lifecycle State set.

Draft

The Integrity Reference is under construction and has not yet entered Anchor's active institutional record.

Lifecycle State

Active

The Integrity Reference is the current active Anchor record for the integrity subject it governs.

Lifecycle State

Superseded

A later Integrity Reference has replaced this record for current use, while the earlier record remains preserved for history and lineage.

Lifecycle State

Withdrawn

Anchor has removed the Integrity Reference from normal active use without erasing its historical identity or prior publication history.

Lifecycle State

Archived

The Integrity Reference remains preserved primarily for historical, evidentiary, or institutional continuity rather than active operational use.

Lifecycle State

Historical Persistence

Terminal or non-active states do not erase Anchor identity, prior Versions, Verification history, Corrections, relationships, or provenance.

Principle

Initial Frozen Lifecycle Values

draft
active
superseded
withdrawn
archived

These five values form the initial Anchor Lifecycle State vocabulary.

Additional values should be added only when production demonstrates a condition that cannot be represented accurately by this set.

Lifecycle vs. Publication State

Lifecycle and Publication remain separate.

Lifecycle State ≠ Publication State

An Integrity Reference may be active but not yet publicly published. A superseded record may remain publicly accessible. An archived record may remain resolvable indefinitely.

Lifecycle vs. Integrity State

Lifecycle State ≠ Integrity State

Lifecycle describes institutional use. Integrity State describes the current integrity condition.

For example, an archived Integrity Reference may still have a fully satisfactory integrity condition.

Lifecycle vs. Verification Result

Lifecycle State ≠ Verification Result

A Verification event may produce a mismatch or become unable to verify without automatically determining the lifecycle of the Integrity Reference.

Maintenance, investigation, Correction, or Governance may determine what lifecycle action follows.

Source Lifecycle Independence

The Source Artifact may have its own lifecycle states such as:

current
revised
superseded
revoked
withdrawn
archived
deleted

These Source states do not automatically become Anchor lifecycle states.

Source Withdrawal

If a Source Artifact is withdrawn, Anchor may preserve the Integrity Reference as evidence of the representation that existed at the time it was anchored.

Source withdrawn

Anchor record erased

Source Supersession

If the Source Institution issues a new Source Version, the existing Anchor record continues to govern the earlier representation.

A new Source Version may require:

no Anchor action
Reverification
new Anchor Version
new Integrity Reference

Versioning architecture will define the boundary.

Draft State

`draft` applies before the Integrity Reference enters active institutional use.

Draft records may change freely under production procedures because they are not yet part of the preserved public lineage.

The exact point at which `draft` becomes `active` should be aligned with Validation and Publication architecture.

Active State

`active` means Anchor recognizes the Integrity Reference as the current institutional record for the integrity subject it governs.

Active does not mean:

true
trusted
certified
publicly visible
permanently current

Superseded State

`superseded` applies when a later Integrity Reference replaces the earlier record for current institutional use.

Earlier Integrity Reference
↓ superseded_by
Later Integrity Reference

The earlier identifier, provenance, Verification history, and relationships remain preserved.

Withdrawn State

`withdrawn` applies when Anchor intentionally removes an Integrity Reference from normal active use without replacing it through ordinary supersession.

Potential reasons may include:

governance decision
invalid production basis
unresolved material defect
legal / policy constraint
Source authority issue
duplicate record

Exact withdrawal procedure remains to be defined.

Archived State

`archived` applies when an Integrity Reference is preserved primarily for historical, evidentiary, or institutional continuity.

Archive does not mean deletion.

Archived → preserved, resolvable, historically meaningful

Lifecycle Transitions

Initial allowed transitions should conceptually include:

draft → active
active → superseded
active → withdrawn
active → archived
superseded → archived
withdrawn → archived

Reverse transitions should not be assumed. If production later requires restoration or reactivation, that behavior should be explicitly governed rather than improvised.

No Silent Lifecycle Reversal

Once a record becomes superseded, withdrawn, or archived, Anchor should not silently return it to active use.

A reversal, if ever allowed, should require an explicit governed event and preserved history.

Lifecycle History

Lifecycle changes should preserve:

prior lifecycle state
new lifecycle state
effective time
governing reason
related Version / Correction / superseding record
responsible institutional process where required

Exact event structure remains to be finalized in Schema and Procedures.

Lifecycle and Identifiers

Lifecycle change does not change Anchor identity.

Anchor Identifier remains stable
while Lifecycle State changes

This preserves durable citation and relationship resolution.

Lifecycle and Versioning

Versioning changes the governed representation of an Integrity Reference. Lifecycle describes its institutional position.

Anchor Version ≠ Lifecycle State

A Version change does not necessarily change lifecycle. A lifecycle change does not necessarily require a new Version.

Lifecycle and Corrections

A Correction does not automatically change lifecycle.

Depending on severity, a Correction process may:

preserve active state
lead to withdrawal
lead to supersession
lead to archival

Corrections architecture will define the governing behavior.

Lifecycle and Maintenance

Maintenance may detect conditions that require lifecycle review.

repeated Verification failure
unavailable Source
deprecated method
superseding Integrity Reference
unresolved defect

Maintenance should recommend or trigger governed lifecycle action rather than silently changing state.

Lifecycle Controlled Values

This page now freezes the initial production Lifecycle State set:

draft
active
superseded
withdrawn
archived

These tokens should remain machine-stable unless later governance formally deprecates or replaces one.

Initial Enumeration Frozen

A durable record remains meaningful after active use ends.