)]}'
{"id":"openstack%2Fcyborg-specs~991932","triplet_id":"openstack%2Fcyborg-specs~master~Idb877015dd5f9d3738851d13857f1940c4abc7dc","project":"openstack/cyborg-specs","branch":"master","topic":"bp/consistent-and-secure-rbac","attention_set":{},"removed_from_attention_set":{"34452":{"account":{"_account_id":34452,"name":"Joan Gilabert","display_name":"jgilaber","email":"jgilaber@redhat.com","username":"jgilaber"},"last_update":"2026-06-23 13:37:04.000000000","reason":"Change was submitted"},"11604":{"account":{"_account_id":11604,"name":"sean mooney","email":"smooney@redhat.com","username":"sean-k-mooney"},"last_update":"2026-06-23 13:17:17.000000000","reason":"\u003cGERRIT_ACCOUNT_11604\u003e replied on the change","reason_account":{"_account_id":11604,"name":"sean mooney","email":"smooney@redhat.com","username":"sean-k-mooney"}},"12393":{"account":{"_account_id":12393,"name":"chandan kumar","display_name":"Chandan Kumar","email":"chkumar@redhat.com","username":"chkumar246"},"last_update":"2026-06-23 13:37:04.000000000","reason":"Change was submitted"}},"hashtags":[],"change_id":"Idb877015dd5f9d3738851d13857f1940c4abc7dc","subject":"Add consistent and secure RBAC spec for Cyborg","status":"MERGED","created":"2026-06-05 19:12:24.000000000","updated":"2026-06-23 13:48:20.000000000","submitted":"2026-06-23 13:37:04.000000000","submitter":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"total_comment_count":10,"unresolved_comment_count":1,"has_review_started":true,"submission_id":"991932-bp/consistent-and-secure-rbac","meta_rev_id":"68516a064def9ef8296723e841a72962bdd87532","_number":991932,"virtual_id_number":991932,"owner":{"_account_id":11604,"name":"sean mooney","email":"smooney@redhat.com","username":"sean-k-mooney"},"actions":{},"labels":{"Verified":{"approved":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"all":[{"value":0,"_account_id":11604,"name":"sean mooney","email":"smooney@redhat.com","username":"sean-k-mooney"},{"value":0,"_account_id":34452,"name":"Joan Gilabert","display_name":"jgilaber","email":"jgilaber@redhat.com","username":"jgilaber"},{"value":0,"_account_id":12393,"name":"chandan kumar","display_name":"Chandan Kumar","email":"chkumar@redhat.com","username":"chkumar246"},{"tag":"autogenerated:zuul:gate","value":2,"date":"2026-06-23 13:37:04.000000000","permitted_voting_range":{"min":2,"max":2},"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]}],"values":{"-2":"Fails","-1":"Doesn\u0027t seem to work"," 0":"No score","+1":"Works for me","+2":"Verified"},"description":"","default_value":0,"optional":true},"Code-Review":{"approved":{"_account_id":11604,"name":"sean mooney","email":"smooney@redhat.com","username":"sean-k-mooney"},"all":[{"value":2,"date":"2026-06-23 13:17:17.000000000","permitted_voting_range":{"min":2,"max":2},"_account_id":11604,"name":"sean mooney","email":"smooney@redhat.com","username":"sean-k-mooney"},{"value":0,"_account_id":34452,"name":"Joan Gilabert","display_name":"jgilaber","email":"jgilaber@redhat.com","username":"jgilaber"},{"value":0,"_account_id":12393,"name":"chandan kumar","display_name":"Chandan Kumar","email":"chkumar@redhat.com","username":"chkumar246"},{"value":0,"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]}],"values":{"-2":"Do not merge","-1":"This patch needs further work before it can be merged"," 0":"No score","+1":"Looks good to me, but someone else must approve","+2":"Looks good to me (core reviewer)"},"description":"","default_value":0,"optional":true},"Workflow":{"approved":{"_account_id":11604,"name":"sean mooney","email":"smooney@redhat.com","username":"sean-k-mooney"},"all":[{"value":1,"date":"2026-06-23 13:17:17.000000000","permitted_voting_range":{"min":1,"max":1},"_account_id":11604,"name":"sean mooney","email":"smooney@redhat.com","username":"sean-k-mooney"},{"value":0,"_account_id":34452,"name":"Joan Gilabert","display_name":"jgilaber","email":"jgilaber@redhat.com","username":"jgilaber"},{"value":0,"_account_id":12393,"name":"chandan kumar","display_name":"Chandan Kumar","email":"chkumar@redhat.com","username":"chkumar246"},{"value":0,"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]}],"values":{"-1":"Work in progress"," 0":"Ready for reviews","+1":"Approved"},"description":"","default_value":0,"optional":true}},"removable_reviewers":[],"reviewers":{"REVIEWER":[{"_account_id":11604,"name":"sean mooney","email":"smooney@redhat.com","username":"sean-k-mooney"},{"_account_id":12393,"name":"chandan kumar","display_name":"Chandan Kumar","email":"chkumar@redhat.com","username":"chkumar246"},{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},{"_account_id":34452,"name":"Joan Gilabert","display_name":"jgilaber","email":"jgilaber@redhat.com","username":"jgilaber"}],"CC":[{"_account_id":28006,"name":"teim-ci","display_name":"teim-ci","email":"ci@seanmooney.info","username":"ci-sean-mooney","status":"this is a third-party ci account run by sean-k-mooney on irc\nhosted at zuul.teim.app"}]},"pending_reviewers":{},"reviewer_updates":[{"updated":"2026-06-05 19:21:00.000000000","updated_by":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"reviewer":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"state":"REVIEWER"},{"updated":"2026-06-16 09:55:21.000000000","updated_by":{"_account_id":12393,"name":"chandan kumar","display_name":"Chandan Kumar","email":"chkumar@redhat.com","username":"chkumar246"},"reviewer":{"_account_id":12393,"name":"chandan kumar","display_name":"Chandan Kumar","email":"chkumar@redhat.com","username":"chkumar246"},"state":"REVIEWER"},{"updated":"2026-06-17 16:18:04.000000000","updated_by":{"_account_id":34452,"name":"Joan Gilabert","display_name":"jgilaber","email":"jgilaber@redhat.com","username":"jgilaber"},"reviewer":{"_account_id":34452,"name":"Joan Gilabert","display_name":"jgilaber","email":"jgilaber@redhat.com","username":"jgilaber"},"state":"REVIEWER"},{"updated":"2026-06-23 13:17:13.000000000","updated_by":{"_account_id":28006,"name":"teim-ci","display_name":"teim-ci","email":"ci@seanmooney.info","username":"ci-sean-mooney","status":"this is a third-party ci account run by sean-k-mooney on irc\nhosted at zuul.teim.app"},"reviewer":{"_account_id":28006,"name":"teim-ci","display_name":"teim-ci","email":"ci@seanmooney.info","username":"ci-sean-mooney","status":"this is a third-party ci account run by sean-k-mooney on irc\nhosted at zuul.teim.app"},"state":"CC"}],"messages":[{"id":"509c0ffa87f8ec01b93c9e918a6d4acf89737097","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":11604,"name":"sean mooney","email":"smooney@redhat.com","username":"sean-k-mooney"},"date":"2026-06-05 19:12:24.000000000","message":"Uploaded patch set 1.","accounts_in_message":[],"_revision_number":1},{"id":"99a620e0775af1e1f086a769fd3cd47912546746","tag":"autogenerated:zuul:check","author":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"date":"2026-06-05 19:21:00.000000000","message":"Patch Set 1: Verified+1\n\nBuild succeeded (check pipeline).\nhttps://zuul.opendev.org/t/openstack/buildset/d4ee346167b7447fa269a17b32d4a1b2\n\n- openstack-tox-docs https://zuul.opendev.org/t/openstack/build/337b1cfb05fc4c2594bf951d3eba6058 : SUCCESS in 4m 29s\n- openstack-tox-pep8 https://zuul.opendev.org/t/openstack/build/9a21260ef99746439dcbf61493fb14df : SUCCESS in 2m 55s","accounts_in_message":[],"_revision_number":1},{"id":"f253e2dab1b326ca3b85d79e5f3df8a2cf0ff19f","tag":"autogenerated:gerrit:setTopic","author":{"_account_id":11604,"name":"sean mooney","email":"smooney@redhat.com","username":"sean-k-mooney"},"date":"2026-06-08 17:59:29.000000000","message":"Topic set to bp/consistent-and-secure-rbac","accounts_in_message":[],"_revision_number":1},{"id":"7c10864215115f45dad8d9f88d9ed9e3bb895ae1","author":{"_account_id":12393,"name":"chandan kumar","display_name":"Chandan Kumar","email":"chkumar@redhat.com","username":"chkumar246"},"date":"2026-06-16 09:55:21.000000000","message":"Patch Set 1: Code-Review+1\n\n(5 comments)","accounts_in_message":[],"_revision_number":1},{"id":"48f17207f4ad125c8a5b1dc1f16c88a0a479a17e","author":{"_account_id":11604,"name":"sean mooney","email":"smooney@redhat.com","username":"sean-k-mooney"},"date":"2026-06-16 10:51:15.000000000","message":"Patch Set 1: Code-Review+2\n\n(2 comments)","accounts_in_message":[],"_revision_number":1},{"id":"b2ea6fa0289353802b0394577399536489fc0b7f","author":{"_account_id":34452,"name":"Joan Gilabert","display_name":"jgilaber","email":"jgilaber@redhat.com","username":"jgilaber"},"date":"2026-06-17 16:18:04.000000000","message":"Patch Set 1: Code-Review+1\n\n(2 comments)","accounts_in_message":[],"_revision_number":1},{"id":"4207c933f9365a01ff57953f26aade3edffa95ad","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":11604,"name":"sean mooney","email":"smooney@redhat.com","username":"sean-k-mooney"},"date":"2026-06-23 13:17:06.000000000","message":"Patch Set 2: Published edit on patch set 1.\n\nOutdated Votes:\n* Code-Review+1, Code-Review+2 (copy condition: \"changekind:TRIVIAL_REBASE OR is:MIN\")\n* Verified+1 (copy condition: \"NEVER\")\n","accounts_in_message":[],"_revision_number":2},{"id":"cb1a8e32c7a89b0768059be0711dc6bd30b4b21c","tag":"autogenerated:zuul:automatic-ci","author":{"_account_id":28006,"name":"teim-ci","display_name":"teim-ci","email":"ci@seanmooney.info","username":"ci-sean-mooney","status":"this is a third-party ci account run by sean-k-mooney on irc\nhosted at zuul.teim.app"},"date":"2026-06-23 13:17:13.000000000","message":"Patch Set 2:\n\nStarting automatic-ci jobs.","accounts_in_message":[],"_revision_number":2},{"id":"43b5f3342b82498dc48490b66b04eb204c36423e","author":{"_account_id":11604,"name":"sean mooney","email":"smooney@redhat.com","username":"sean-k-mooney"},"date":"2026-06-23 13:17:17.000000000","message":"Patch Set 2: Code-Review+2 Workflow+1\n\n(1 comment)","accounts_in_message":[],"_revision_number":2},{"id":"40796c8a5a6939d5f8e9b68c55f6d1f2006ad9f2","tag":"autogenerated:zuul:check","author":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"date":"2026-06-23 13:28:52.000000000","message":"Patch Set 2: Verified+1\n\nBuild succeeded (check pipeline).\nhttps://zuul.opendev.org/t/openstack/buildset/b880179283ff4cc39efe7f48c011116b\n\n- openstack-tox-docs https://zuul.opendev.org/t/openstack/build/6ea17daf32e84c2aab8eb4736a5f49ef : SUCCESS in 3m 31s\n- openstack-tox-pep8 https://zuul.opendev.org/t/openstack/build/5d9f424d2d7f4d13a3a77c1371bf1c46 : SUCCESS in 2m 54s","accounts_in_message":[],"_revision_number":2},{"id":"c6a965ea7246ddf35e366388f15811899e5ba8a5","tag":"autogenerated:zuul:gate","author":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"date":"2026-06-23 13:29:05.000000000","message":"Patch Set 2: -Verified\n\nStarting gate jobs.","accounts_in_message":[],"_revision_number":2},{"id":"a463f3ca17f39764a864c9090ec0e5a7e1bb71c2","tag":"autogenerated:zuul:gate","author":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"date":"2026-06-23 13:37:04.000000000","message":"Patch Set 2: Verified+2\n\nBuild succeeded (gate pipeline).\nhttps://zuul.opendev.org/t/openstack/buildset/18d15e2bb9434e5fa3236517425dbd2e\n\n- openstack-tox-docs https://zuul.opendev.org/t/openstack/build/feb4eabdef56471aad427942e26ab586 : SUCCESS in 4m 10s\n- openstack-tox-pep8 https://zuul.opendev.org/t/openstack/build/27e2afb00e48469eb357aa01026895a1 : SUCCESS in 3m 00s","accounts_in_message":[],"_revision_number":2},{"id":"d096814602d220ab7db882888f4962af743a576d","tag":"autogenerated:gerrit:merged","author":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"date":"2026-06-23 13:37:04.000000000","message":"Change has been successfully merged","accounts_in_message":[],"_revision_number":2},{"id":"f9e9454a8b01813592b2d768f5f9b473d7a5941c","tag":"autogenerated:zuul:promote","author":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"date":"2026-06-23 13:38:31.000000000","message":"Patch Set 2:\n\nBuild succeeded (promote pipeline).\nhttps://zuul.opendev.org/t/openstack/buildset/d6418386f8524c92a8d1aece0d24b747\n\n- promote-openstack-specs https://zuul.opendev.org/t/openstack/build/49bdcdbb0f984fc080655215f4404b8d : SUCCESS in 57s","accounts_in_message":[],"_revision_number":2},{"id":"68516a064def9ef8296723e841a72962bdd87532","tag":"autogenerated:zuul:automatic-ci","author":{"_account_id":28006,"name":"teim-ci","display_name":"teim-ci","email":"ci@seanmooney.info","username":"ci-sean-mooney","status":"this is a third-party ci account run by sean-k-mooney on irc\nhosted at zuul.teim.app"},"date":"2026-06-23 13:48:20.000000000","message":"Patch Set 2:\n\nBuild failed (automatic-ci pipeline). To rerun just this ci comment\n\"teim-ci: auto\". To rerun other ci jobs comment \"recheck\".\nNote this ci does run on \"recheck\".\n\nhttps://zuul.teim.app/t/main/buildset/555f81f651154ad7a6d2adaf7c36f699\n\n- teim-code-review https://zuul.teim.app/t/main/build/343266a0def1430fa46c9663db22d397 : TIMED_OUT in 30m 58s","accounts_in_message":[],"_revision_number":2}],"current_revision_number":2,"current_revision":"698849077be887809c15f8231bb4aa03fbd3ecf6","revisions":{"54ce2e7b5253cedf73d55c026854229df04f870d":{"kind":"REWORK","_number":1,"created":"2026-06-05 19:12:24.000000000","uploader":{"_account_id":11604,"name":"sean mooney","email":"smooney@redhat.com","username":"sean-k-mooney"},"ref":"refs/changes/32/991932/1","fetch":{"anonymous http":{"url":"https://review.opendev.org/openstack/cyborg-specs","ref":"refs/changes/32/991932/1","commands":{"Checkout":"git fetch https://review.opendev.org/openstack/cyborg-specs refs/changes/32/991932/1 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch https://review.opendev.org/openstack/cyborg-specs refs/changes/32/991932/1 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch https://review.opendev.org/openstack/cyborg-specs refs/changes/32/991932/1 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull https://review.opendev.org/openstack/cyborg-specs refs/changes/32/991932/1"}}},"commit":{"parents":[{"commit":"981405a8938ed786feaaf63ea1955aa7174a367b","subject":"Add VFIO variant driver managed mode spec","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/cyborg-specs/commit/981405a8938ed786feaaf63ea1955aa7174a367b"}]}],"author":{"name":"Sean Mooney","email":"work@seanmooney.info","date":"2026-06-05 18:30:50.000000000","tz":60},"committer":{"name":"Sean Mooney","email":"work@seanmooney.info","date":"2026-06-05 19:09:53.000000000","tz":60},"subject":"Add consistent and secure RBAC spec for Cyborg","message":"Add consistent and secure RBAC spec for Cyborg\n\nCyborg\u0027s REST API authorization still relies on legacy RuleDefault\npolicies that lack persona-based defaults and deprecated-rule bridges.\nAlthough critical authorization bypasses have been fixed (LP#2143263,\nLP#2144056), the policy definitions have not been migrated to\nDocumentedRuleDefault. This prevents operators from opting into the\nnew RBAC defaults via enforce_new_defaults.\n\nThis spec completes the OpenStack TC\u0027s Consistent and Secure RBAC\ncommunity goal for Cyborg in the 2026.2 cycle. It delivers all three\nphases of the goal: project personas (admin, member, reader), service\nrole targeting for machine-to-machine ARQ operations via a new\nproject_member_or_service composite rule, and the project-manager\npersona for hardware inventory reads.\n\nThe transition timeline spans three cycles: new defaults available\nin 2026.2 with enforce_new_defaults\u003dFalse, enforced by default in\n2027.1 with the legacy rules deprecated, and legacy rules removed\nin 2027.2.\n\nBlueprint: consistent-and-secure-rbac\nAssisted-By: pi opus 4.6\nChange-Id: Idb877015dd5f9d3738851d13857f1940c4abc7dc\nSigned-off-by: Sean Mooney \u003cwork@seanmooney.info\u003e\n","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/cyborg-specs/commit/54ce2e7b5253cedf73d55c026854229df04f870d"}],"resolve_conflicts_web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/cyborg-specs/commit/54ce2e7b5253cedf73d55c026854229df04f870d"}]},"branch":"refs/heads/master"},"698849077be887809c15f8231bb4aa03fbd3ecf6":{"kind":"REWORK","_number":2,"created":"2026-06-23 13:17:06.000000000","uploader":{"_account_id":11604,"name":"sean mooney","email":"smooney@redhat.com","username":"sean-k-mooney"},"ref":"refs/changes/32/991932/2","fetch":{"anonymous http":{"url":"https://review.opendev.org/openstack/cyborg-specs","ref":"refs/changes/32/991932/2","commands":{"Checkout":"git fetch https://review.opendev.org/openstack/cyborg-specs refs/changes/32/991932/2 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch https://review.opendev.org/openstack/cyborg-specs refs/changes/32/991932/2 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch https://review.opendev.org/openstack/cyborg-specs refs/changes/32/991932/2 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull https://review.opendev.org/openstack/cyborg-specs refs/changes/32/991932/2"}}},"commit":{"parents":[{"commit":"981405a8938ed786feaaf63ea1955aa7174a367b","subject":"Add VFIO variant driver managed mode spec","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/cyborg-specs/commit/981405a8938ed786feaaf63ea1955aa7174a367b"}]}],"author":{"name":"Sean Mooney","email":"work@seanmooney.info","date":"2026-06-05 18:30:50.000000000","tz":60},"committer":{"name":"sean mooney","email":"work@seanmooney.info","date":"2026-06-23 13:17:06.000000000","tz":0},"subject":"Add consistent and secure RBAC spec for Cyborg","message":"Add consistent and secure RBAC spec for Cyborg\n\nCyborg\u0027s REST API authorization still relies on legacy RuleDefault\npolicies that lack persona-based defaults and deprecated-rule bridges.\nAlthough critical authorization bypasses have been fixed (LP#2143263,\nLP#2144056), the policy definitions have not been migrated to\nDocumentedRuleDefault. This prevents operators from opting into the\nnew RBAC defaults via enforce_new_defaults.\n\nThis spec completes the OpenStack TC\u0027s Consistent and Secure RBAC\ncommunity goal for Cyborg in the 2026.2 cycle. It delivers all three\nphases of the goal: project personas (admin, member, reader), service\nrole targeting for machine-to-machine ARQ operations via a new\nproject_member_or_service composite rule, and the project-manager\npersona for hardware inventory reads.\n\nThe transition timeline spans three cycles: new defaults available\nin 2026.2 with enforce_new_defaults\u003dFalse, enforced by default in\n2027.1 with the legacy rules deprecated, and legacy rules removed\nin 2027.2.\n\nBlueprint: consistent-and-secure-rbac\nAssisted-By: pi opus 4.6\nChange-Id: Idb877015dd5f9d3738851d13857f1940c4abc7dc\nSigned-off-by: Sean Mooney \u003cwork@seanmooney.info\u003e\n","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/cyborg-specs/commit/698849077be887809c15f8231bb4aa03fbd3ecf6"}],"resolve_conflicts_web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/cyborg-specs/commit/698849077be887809c15f8231bb4aa03fbd3ecf6"}]},"branch":"refs/heads/master"}},"requirements":[],"submit_records":[{"rule_name":"gerrit~DefaultSubmitRule","status":"CLOSED","labels":[{"label":"Verified","status":"MAY","applied_by":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]}},{"label":"Code-Review","status":"MAY","applied_by":{"_account_id":11604,"name":"sean mooney","email":"smooney@redhat.com","username":"sean-k-mooney"}},{"label":"Workflow","status":"MAY","applied_by":{"_account_id":11604,"name":"sean mooney","email":"smooney@redhat.com","username":"sean-k-mooney"}}]}],"submit_requirements":[{"name":"Verified","description":"Verified in gate by CI","status":"SATISFIED","is_legacy":false,"submittability_expression_result":{"expression":"label:Verified\u003dMAX AND -label:Verified\u003dMIN","fulfilled":true,"status":"PASS","passing_atoms":["label:Verified\u003dMAX"],"failing_atoms":["label:Verified\u003dMIN"],"atom_explanations":{"label:Verified\u003dMAX":"","label:Verified\u003dMIN":""}}},{"name":"Code-Review","description":"Code reviewed by core reviewer","status":"SATISFIED","is_legacy":false,"submittability_expression_result":{"expression":"label:Code-Review\u003dMAX AND -label:Code-Review\u003dMIN","fulfilled":true,"status":"PASS","passing_atoms":["label:Code-Review\u003dMAX"],"failing_atoms":["label:Code-Review\u003dMIN"],"atom_explanations":{"label:Code-Review\u003dMAX":"","label:Code-Review\u003dMIN":""}}},{"name":"Workflow","description":"Approved for gate by core reviewer","status":"SATISFIED","is_legacy":false,"submittability_expression_result":{"expression":"label:Workflow\u003dMAX AND -label:Workflow\u003dMIN","fulfilled":true,"status":"PASS","passing_atoms":["label:Workflow\u003dMAX"],"failing_atoms":["label:Workflow\u003dMIN"],"atom_explanations":{"label:Workflow\u003dMAX":"","label:Workflow\u003dMIN":""}}}]}
