C.30.ASV:4.8 - Worked slices
Runtime degradation. A team says, “The architecture is fine, but incidents happen when failover starts.” The first architecture move is to recover runtime interaction, control relation, failover relation, placement, and evidence-assurance structures before turning a dashboard or deployment diagram into proof:
Runtime degradation slice:
selected structure kinds:
RuntimeInteractionStructure
ControlStructure
InformationDataStructure
PlacementDeploymentStructure
EvidenceAssuranceStructure
first architecture move:
recover runtime interaction topology, control relation or failover relation,
state custody, placement relation, locality relation, evidence relation, and observability relation
nonAdmissibleUse:
deployment diagram as runtime proof,
observability dashboard as evidence sufficiency,
green indicator value as gate authority or release authority
Use C.24 when a fixed action or option needs budgeted tool-call planning or replanning. Use A.15.1 for actual Work and identify any call-graph structure under its applicable pattern. Keep those claims and uses separate from the architecture structural-view claim.
CPS or plant architecture. A plant drawing, P&ID-like publication form, LCA sketch, or safety-case view is not the plant architecture by itself. First recovery can require:
CPS and plant architecture first recovery:
MaterialSpatialStructure:
physical separation, adjacency, energy path or material path
ControlStructure:
controller, plant, observer, supervisor, control rate
InformationDataStructure:
sensor data semantics, provenance, custody, source return
PlacementDeploymentStructure:
locality, environment, jurisdiction, safety separation
EvidenceAssuranceStructure:
evidence reuse boundary and affected structures
first architecture move:
relate physical separation, sensor data semantics, control rate,
placement boundary, and evidence reuse
correspondenceOrLossLine:
record which separation, data, control-rate, placement, or evidence-reuse
relation is preserved by the slice and which structure is hidden or lossy
stop condition:
no P&ID, LCA diagram, or safety case is treated as the architecture
Chiplet or device architecture. A packaging diagram or interconnect sketch may involve several structure kinds:
Chiplet and device architecture first recovery:
MaterialSpatialStructure:
packaging, adjacency, thermal path, energy path
TransformationFlowStructure:
interconnect topology, data flow path, energy flow path, or signal flow path
ModuleInterfaceStructure:
interface specification, protocol, conformance boundary
PlacementDeploymentStructure:
physical locality, substrate, host environment
first architecture move:
separate interconnect topology, packaging path, thermal path, or energy path,
interface specification, and evidence boundary and conformance boundary
correspondenceOrLossLine:
record the preserved relation among interconnect, physical package,
interface, and placement, plus any benchmark or packaging-view loss
stop condition:
no packaging diagram or benchmark becomes performance, safety,
evidence, or gate proof by appearance
Organization or operating-model architecture. An org chart or Work-Method diagram can be architecture-relevant only after Systems, local system-role kinds, separate System-classification judgments, assignments, enactor relations, complete actual-Work bases, direct responsibility relations, concern or affected-party relations, information, and evidence are separated:
Organization and operating-model architecture first recovery:
AllocationResponsibilityStructure:
direct responsibility relation occurrences and enactor-allocation boundary;
if the responsibility predicate is unavailable, exact missing-governor
WorkMethodStructure:
repeatable work method and exception-handling relation
InformationDataStructure:
information custody, state residence, provenance
EvidenceAssuranceStructure:
evidence reuse, approval, audit trail, source return
first architecture move:
relate the exact responsibility and enactor-allocation relations, work repeatability,
information custody, and evidence reuse
correspondenceOrLossLine:
preserve the direct responsibility relation and its actual participants;
record separately any local system-role kind and any System-classification judgment,
assignment, enactor relation, complete actual-Work basis, concern or affected-party relation,
information, and evidence structures,
plus any org-chart or work-method-diagram loss
stop condition:
no org chart or work-method diagram is treated as the architecture, decision,
evidence sufficiency, or assurance verdict
Evidence reuse across product variants. A certification or test package reused across module variants may be architecture-relevant as an evidence-and-assurance structure view, but it is not an assurance verdict:
Evidence reuse across product variants:
structureKindRef: EvidenceAssuranceStructure
structuralFeature:
evidence package shared across module variants
affectedQBundleSlot:
assurance maintainability or release readiness
architectureMove:
name affected structures, variant boundary, hidden view losses,
and source-return condition
claimPatternRefs:
A.10 for bounded source-to-use reliance, G.6 for citable provenance paths, B.3 only for a named assurance claim; the applicable result pattern for evidence sufficiency
nonAdmissibleUse:
evidence-structure view as assurance verdict
Organization service architecture. A service organization sketch that shows teams, handoffs, escalation points, and dashboards is not the organization architecture by itself. First recovery can require:
Organization service architecture first recovery:
describedHolonRef: service organization or service-delivery system
candidateStructureKindRefs:
WorkMethodStructure:
method arrangement, work-plan boundaries, exception handling, and performed-work records
AllocationResponsibilityStructure:
admitted direct responsibility relations and their participant split, enactor-allocation relations,
escalation relations, and separately any local system-role kind,
System-classification judgment, and obtaining assignment;
use missing-governor when the source says responsibility but no direct predicate is admitted
InformationDataStructure:
ticket state, customer record custody, dashboard source, and source-return condition
EvidenceAssuranceStructure:
audit trail, service-level evidence relation, assurance claim, and gate or release record only when those claims are being made
C30ASVBoundary:
ASV names selected structure and view boundary; staffing decision, work authority, evidence sufficiency, assurance, and service-quality claims use their applicable patterns
AI agent diagram. A “planner-memory-tools” diagram is not the agent’s architecture by itself. It may start first recovery as a structure-kind set, without minting an AI-domain ontology:
AI-agent architecture first recovery:
RuntimeInteractionStructure:
model-tool-memory-planner-evaluator-human topology
InformationDataStructure:
memory scopes, data custody, provenance, retention,
context-window relation and source-return relation
SecurityTrustBoundaryStructure:
untrusted content channels, prompt-injection or instruction boundary,
tool authority, secret-bearing contexts, memory custody crossing and data custody crossing,
output handling, supply-chain or update channel
ModuleInterfaceStructure:
tool specs, API specs, and interface specs and substitutability limits
EvidenceAssuranceStructure:
eval harness, human approval, evidence decay, incident feedback
admissibleArchitectureMove:
split runtime interaction, information, security boundary, module-interface, and evidence-assurance claims before relying on the diagram
correspondenceOrLossLine:
record the preserved relation among runtime topology, information custody,
security boundary, module-interface, and evidence-assurance structures,
plus any diagram or evaluation-harness loss
claimPatternRefs:
C.30.TFS-REL when an E.18 flow relation is being used,
A.6.M module-relation repair for tool, API, or interface relation claims,
A.10 for bounded source-to-use reliance, G.6 for citable provenance paths, or B.3 only for a named assurance claim,
C.24 for call planning after the action or option is fixed, E.16 for autonomy budgets and enforcement, A.20 for internal-constraint checks in transformation flow, or A.21 for gate decisions; use the defining pattern for any separate tool-call authority claim
stop condition:
ASV contains only the structural-view record; evidence sufficiency, assurance, gate, autonomy, and tool-call authority claims use their applicable patterns
Structural AI-agent security is architecture structure when these structure kinds change the next architecture move. When the claim is instead about latent representation, decoding, or effect adequacy, keep the phrase as a reduced-use source cue and use the applicable representation, decoding, or effect-adequacy pattern.
Generated code-agent relation graph. A probe JSON or code-agent architecture relation graph can be an architecture structural view publication only after observed, inferred, or unknown observation value, evidence pointers or source pointers, unexplored regions, and typed relation semantics are present. Add source-return conditions when the intended use relies on hidden distinctions. Use the applicable proof and assurance patterns for the separate belief-state and downstream-change-safety claims.
Neural-network block replacement. Replacing attention, FFN, convolution, SSM, recurrent, memory block or cache block, MoE expert-selection, pruning, distillation, or another block is an architecture move only when the changed structure kind, flow relation, module-interface claim kind, preserved and lost structure, affected characteristic, source relation, and applicable decision or evidence pattern are named.