The packet should identify the workflow, version, deployment, owners, authority, source posture, metrics, exceptions, costs, decisions requested, and evidence references. Each function records what it verified, what remains unresolved, and what conditions apply. This avoids a consensus summary that conceals important disagreement. A missing attestation should remain visible instead of being interpreted as approval through silence.
Review frequency should follow change rate and consequence. A volatile canary may need frequent operating review, while a stable low-risk workflow can move to a longer cadence. Material changes to tools, data, authority, destinations, or commercial terms can trigger an out-of-cycle review. The cadence should produce an explicit continue, change, hold, expand, or retire decision with a named owner.