DUNIN7 · LOOMWORKS · RECORD
record.dunin7.com
Status Archived (read-only)
Path standing-notes/archive/CC_READINESS_DIRECTION-v0_1.md

Common Criteria Readiness — Direction, Requirements, and Sequence

Version. v0.1 Date. 2026-08-11 Status. Direction document — governs CC-readiness work across OVA and GRANTHA. Authored by Claude.ai with the Operator; grounding actions assigned to CC. Scope. Both products. OVA (spec exists, V3.2 live) and GRANTHA (pre-record, no spec yet). Posture. CC-ready, not CC-certified. No lab engagement, no certification claim, until a named buyer or partner puts certification in a deal.


1. Direction (the settled decisions)

These were settled in the originating session and are restated here as the standing frame:

  1. Category: Access Control Devices and Systems — for both products. The data protection track is wrong for OVA (it collides with the seed's fence: OVA must not carry, store, protect, or release a data object). If a data-protection-track certification is ever wanted, it belongs to the future separate data-object-protection mechanism, not OVA.
  2. Target assurance frame: EAL4+ augmented (candidate augmentations: AVA_VAN.5, ADV_SPM), claimed as design target only. Not EAL6 — the formal verification work is claimed as augmentation evidence, not as a bid for high-assurance evaluation.
  3. Certification is a post-v1.0 activity against a frozen TOE. Readiness work now; evaluation only on commercial trigger.
  4. Partner-sponsor is the preferred funding shape when the trigger comes. The readiness evidence pack is what makes that conversation cheap.
  5. Claim discipline (standing rule). Permitted language: "designed to Common Criteria EAL4 assurance requirements," "evaluation-ready." Never "certified," "validated," "CC compliant," or any wording implying a certificate exists. Applies to website, seeds, specs, and sales material.

2. Requirements (what CC-readiness obligates, per product)

2.1 Both products

2.2 OVA-specific

2.3 GRANTHA-specific

3. Sequence

| Step | What | Owner | Gate / trigger | |---|---|---|---| | CC-0 | Ground CC:2022 status, exact Part 2 component wording for FDP / FCS / FPR / FMT / FIA / FPT / FAU / FTP candidates, current CC-portal category definitions, and current NIAP PP catalog for access-control-adjacent PPs. Clear all [CC-GROUND] flags in both ST documents. | CC (web retrieval) + Claude.ai (judgment) | Immediate. Blocks nothing but flag-clearing. | | CC-1 | OVA: re-ground the REQ→SFR mapping against live V3.2; resolve the flagged stale-risk rows; record the TOE boundary decision as a decision record in protocols/ova/design/. | CC grounds; Claude.ai authors v0.2 | Immediate, after CC-0. | | CC-2 | GRANTHA: deliver the handoff into the GRANTHA project; CC posture governs Discovery→spec transition and all REQ authoring. | Operator delivers; GRANTHA project executes | Immediate. | | CC-3 | GRANTHA ST frame gains a real REQ→SFR mapping as GRANTHA REQ rows come into existence. | GRANTHA project | As spec is authored. | | CC-4 | ALC_FLR / ALC_DEL procedure templates. | Claude.ai | When operational docs are first authored; not before. | | CC-5 | ST skeletons maintained on spec change; FPR-weakening check (R-CC-9) on every OVA amendment. | Standing | Continuous. | | CC-6 | Dormant. No lab, no consultant retainer, no certification spend. | — | Trigger: a named buyer or named partner puts certification in a deal. On trigger: freeze TOE version, select lab, enter evaluation with the evidence pack. |

4. Standing risks


DUNIN7 · Done In Seven LLC · Miami, Florida CC Readiness — Direction, Requirements, and Sequence — v0.1 — 2026-08-11