UAIF / L5 / L5-F05

Oauth Pivot Chain

Objective

Capture and validate the oauth pivot chain element within the Generative, Agentic & Control Plane layer.

UAIF requirement

The incident record should implement the canonical oauth_pivot_chain field using the defined UAIF data type, validation constraints, and conditional rules.

Business impact

Captures generative, agentic and control-plane context needed to investigate escalation and system-to-system propagation.

Validation approach

Validate oauth_pivot_chain for declared JSON type and applicable conditional rules. Then review semantic consistency against the source incident evidence and the selected conformance profile.

Expected evidence

Retain the source record or analyst input for oauth_pivot_chain, schema-validation output, transformation history, selected profile, schema version and reviewer rationale where judgement is involved.

Mapping and source

UAIF Schema Specification; UAIF Technical Specification; JSON pointer /properties/oauth_pivot_chain.

Implementation guidance

Populate oauth_pivot_chain from an identified source or documented analyst decision. Enforce the schema constraints at record creation and update, preserve the original value and provenance, and surface validation failures without silently coercing data.

Assessment considerations

Sample records across normal, boundary and invalid conditions. Confirm that oauth_pivot_chain is populated only when applicable, conditional rules are enforced, provenance is retained and downstream systems do not change its meaning or precision.

Canonical schema definition

JSON propertyoauth_pivot_chain
Required in core profileNo
Type"array"

Source: UAIF Schema Specification and UAIF Core JSON Schema.