{"surface":{"slug":"sovereign-migist","title":"Mappls IGIST sovereign deployment","stateModel":"deployment-stateful","readiness":"local-reference","summary":"Evaluate the separate MIGIST SDK/API/Thin Client distribution for sovereign, defence, offline, and air-gapped GIS deployments.","durableIdentity":"Deployment, license, node, release manifest, capability provider, workspace, actor, and audit event","credentialBoundary":"MIGIST uses deployment-local identity, license, API-key/OAuth, RBAC, and audit contracts. It is not the mGIS cloud widget key and must not be presented as drop-in compatible.","sourceLabels":["Local migist-complete architecture","Local MIGIST SDK specification"],"sourceUrls":["/sources/local-rohan-migist-complete","/sources/local-rohan-migist-complete"],"evidenceBoundary":"The local distribution explicitly positions MIGIST as a sovereign product layer over IGIST with SDK, API, Thin Client, licensing, offline assets, and air-gap deployment. Its architecture also states that uniform capability routing and full IGIST adapter coverage are not yet complete."},"method":null,"readiness":"local-reference","samples":[{"language":"typescript","label":"Capability router boundary","code":"type MigistProvider = \"igist-backed\" | \"migist-native\" | \"hybrid\" | \"disabled\";\n\ninterface MigistCapabilityRouter {\n  discover(deploymentId: string): Promise<CapabilityManifest>;\n  execute(command: DeploymentCommand, expectedManifest: string): Promise<AuditReceipt>;\n}\n\n// Keep engine choice behind MIGIST. The local architecture explicitly says\n// uniform IGIST capability routing is not complete across every operation."},{"language":"text","label":"Deployment proof","code":"license → deploy → discover → qualify → operate → update/rollback → retire\n\nProve offline assets, node identity, license, capability provider, release manifest,\naudit, backup/restore, and air-gap network behavior per deployment."}],"lifecycle":[{"state":"selected","owner":"Product and workspace owner","proof":"Surface, account/tenant, region, entitlement, data class, and source contract are approved."},{"state":"configuring","owner":"Application adapter","proof":"One bounded configuration references stable workspace/dataset/workview identity and no server secret enters the browser."},{"state":"active","owner":"Host lifecycle","proof":"One instance or job owns listeners, requests, cancellation, retries, and observable health."},{"state":"candidate","owner":"Application domain","proof":"Provider output is schema-checked and normalized; it has not silently replaced durable state."},{"state":"committed","owner":"Application repository","proof":"A versioned record binds actor, source, provider identity, input revision, and event."},{"state":"retired / disposed","owner":"Application and workspace administrator","proof":"Runtime resources are released; durable datasets, lineage, permissions, and audit follow policy."}],"stateOwnership":["Deployment, license, node, release manifest, capability provider, workspace, actor, and audit event","MIGIST uses deployment-local identity, license, API-key/OAuth, RBAC, and audit contracts. It is not the mGIS cloud widget key and must not be presented as drop-in compatible.","Provider UI/runtime is never the application database; persist normalized identities, versions, receipts, and lineage outside the browser instance.","A load, callback, tile, legend, or image proves only that observable event. Publication, analysis completion, sharing, and export require their own durable evidence."],"releaseTests":["Issued tenant, region, dataset, method, and credential class","Allowed and denied browser origins plus CSP","Slow, offline, quota, expired entitlement, and revoked access","Duplicate initialization, late callback, unmount, and browser back/forward cache","Dataset/style/workview version drift","Accessibility and non-map representation","Idempotency, expected version, unknown outcome, and reconciliation","Privacy, export, share, retention, audit, and deletion policy"],"warnings":["The local distribution explicitly positions MIGIST as a sovereign product layer over IGIST with SDK, API, Thin Client, licensing, offline assets, and air-gap deployment. Its architecture also states that uniform capability routing and full IGIST adapter coverage are not yet complete.","Examples are configuration/adapter contracts with placeholders. They do not claim a live entitlement or unlisted endpoint."],"evidence":[{"label":"Local migist-complete architecture","url":"/sources/local-rohan-migist-complete"},{"label":"Local MIGIST SDK specification","url":"/sources/local-rohan-migist-complete"}],"websiteUrl":"/tools/mgis?surface=sovereign-migist"}