A boundary you can state
One system and one storage contract mean the boundary is describable rather than assembled from components.
- SQL
Data that stays inside the boundary you define.
Some systems are defined by where they are not allowed to be. That is a design constraint, and it has to be respected before it is promised.
The same layer, with hard boundaries drawn around operation, residency and exit.
The registers, cases and transactions the service depends on. It is the first of 4 workloads running in Sovereign Infrastructure.
One system and one storage contract mean the boundary is describable rather than assembled from components.
Sovereign Infrastructure data moves through 4 stages — Boundary → Operate → Control → Exit. The shapes in play are SQL, JSON / documents, Time series, Objects, and answering one question means reading across all of them.
Sovereignty is a set of properties, not a deployment diagram. These are the ones the layer carries today.
A sovereign deployment is the same data layer with hard boundaries around operation, residency and exit. PLOMID is one system with one storage contract, which is what makes those boundaries describable at all, and the deployment fabric is the part of the platform that carries them.
Inside a boundary you control, operated by people you can name, with an exit you can describe.
Deployment, residency and controlWalk the path the data takes, from the environment that produces it to the questions it answers. Select a station, or a shape, to read each step.
The same layer, with hard boundaries drawn around operation, residency and exit.
The boundary
Where the system is allowed to run, decided before anything is deployed.
SQL
4 workload families over one set of shapes. Choose one to see what it moves and where it lands.
The registers, cases and transactions the service depends on.
Events and measurements that record what happened and when.
Documents whose location and access are part of the requirement.
Reporting over data that never leaves the boundary.
Each one is answered where the environment allows, from the same layer rather than a copy that drifted.
One system and one storage contract mean the boundary is describable rather than assembled from components.
Who runs the system, and where, is a named property rather than an inference.
Portability follows from the storage contract rather than from an export tool added later.
Fewer systems means fewer places a copy can exist, which is the whole point of the constraint.
4 shapes carry this domain. Choose a stage to read the operation, or a shape to see every stage that handles it.
Boundary
Where the system is allowed to run
SQL
The environments set what the architecture may do — then the work, the shapes and the path a request takes.
What runs against this data.
The shapes those workloads read and write.
One path from a request to the data it names.
How the work reaches the layer.