Ratified / implemented at contract level for global-working-memory.
This page records the normalized Slice 2 implementation after reconciliation with the canonical STONE Source Manifest and existing MASON/Observatory roles.
SOURCE ≠ AUTHORITY ≠ CONFIDENCE ≠ ACCESS.
The Context Provenance Envelope is a portable per-object metadata layer. It does not replace the STONE Source Manifest, does not create a new authority store, and does not bypass STONE → MASON.
object_id is distinct from immutable envelope_id and source-native source_id.authority_domain, authority_owner, authority_state, optional authority_resolution_ref.derived_from, copied_from, migrated_from, revision_of, supersedes, extracted_from, merged_from, and generated_from.execution_id, retrieval/Observatory trace IDs, span IDs, and MASON receipt IDs.STONE remains responsible for source-object resolution, reproducible payload boundary, requested transformation, scope, retained/rejected receipts, unresolved conflicts, provenance classes, integrity/replay fields, and its completion gate. Envelope references may be attached as evidence pointers but may not widen a locked STONE boundary.
MASON consumes locked STONE manifests plus referenced envelopes. Governed durable writes/promotions must preserve lineage and record MASON execution receipt IDs. Original provenance classes and unresolved authority conflicts are never silently rewritten.