| Capability browser | /dev-center/capabilities searches the release registry, shows lifecycle and delivery separately, and never invokes a capability. | Its API fails closed when the bundled and deployed registry identities cannot be reconciled. |
| Posted-entry reversal | An eligible immutable journal can produce a durable reversal proposal; a different named person must approve the exact plan before the compensating entry and native compensation post atomically. | The web uses the proposal-specific review route, not the generic staged-workspace flow. Production currently has only one bound identity, so the two-person path is unusable there. |
| Credit and debit adjustment notes | Migration 0068 and AdjustmentNoteProposalService require a discrepancy basis, an attributed proposal, and a distinct named approver before the note and journal post together. | The engine control is present; no public end-to-end adjustment-note workflow is claimed here. |
| Close binder | The read-only Accounting binder page requests one period-scoped package, preserves declined evidence, and downloads the exact response bytes. | Registry 1.14.1 still marks greatbook.close.binder.read experimental and blocked. |
| Master maintenance | Typed item and employee proposal, review, and approval routes call the existing domain writers and retain proposal and approval evidence. | The registry marks the master capabilities experimental and blocked; employee pay, cost allocation, and employment status are outside this boundary. |
| Analysis attribution | Accounting Analysis reads canonical journal-event detail and keeps complete, partial, missing, inconclusive, and error attribution distinct per line and dimension. | An omitted attribution object is not reinterpreted as “missing.” |
| Exact-money reads | The shared read authority rejects non-finite or binary-float money and publishes fixed-point decimal strings with an established currency basis. | A malformed successful response is unavailable, not rounded or treated as empty. |
| SOP retrieval | Clerk and operational explanations use the Git-rendered in-process SOP manifest with deterministic, scoped lookup and content hashes. | This path has no network, embedding, model, credential, or mutable remote index. Optional raw-intake text publication to Cognee is a separate lane. |
| Consolidation authority | Effective-dated group membership, immutable entity identity, server-bound read grants, and the ws_group_reader RLS boundary exist in migration 0060; the group reader withholds incomplete populations. | Group reports are gross member contributions with no eliminations and are experimental/blocked in registry 1.14.1. |
| Actions | /actions has server-filtered lanes for ready_for_review, waiting_confirmation, and all runs, and opens the exact linked workspace for a person’s decision. | It lists only staged work linked to a workflow run; directly staged record work is not covered by the collection read. |
| Books | All seven native family routes are represented, and missing source facts or a missing as-of clock remain partial, inconclusive, error, or freshness unavailable. | The UI withholds counts and all-clear claims when the response cannot support them. |