PTI Ecosystem Governance
Portable Trust Infrastructure (PTI) is an open, vendor-neutral specification category for trust intelligence infrastructure. Ecosystem governance defines how the specification evolves, how participants collaborate, and how compatibility claims are validated.
This section covers ecosystem governance — the processes, roles, and policies that steward PTI as a public standard. It does not define operational trust governance inside a running platform (consent, retention, audit, subject rights). Those requirements live in RFC-007 Governance and the PTI Specification v1.0 Governance document.
What ecosystem governance covers
| Domain | Governed by | Examples |
|---|---|---|
| Specification evolution | PTI Working Group | RFC proposals, version releases, deprecation |
| Technical direction | Architecture Review Board | Cross-RFC coherence, breaking-change review |
| Security of the standard | Security Review Group | Threat models, disclosure coordination |
| Compatibility claims | Conformance Program | Profiles, certification, test suites |
| Community participation | Contribution process · Contributing | Issues, PRs, public review |
| Brand and trademarks | Trademark policy | Permitted use of PTI marks |
What ecosystem governance does not cover
- Product roadmaps, pricing, or commercial terms of any single vendor
- Legal compliance of a specific deployment (implementers remain responsible)
- Day-to-day operation of a trust exchange, registry, or intelligence engine
- Assignment of
pti_idvalues or registry operator selection in production networks
Governance stakeholders
Relationship to other documentation
| Document set | Scope |
|---|---|
| PTI Specification v1.0 | Normative requirements for compatible implementations |
| PTI RFCs | Modular normative documents with defined lifecycle |
| PTI Conformance | Profiles, tests, and certification |
| Build Your Own PTI | Independent implementer guide |
| RFC-007 / spec governance | In-platform trust data governance |
Current stewardship
During Phase 1 (Founder Stewardship), the PTI Working Group is convened and initially staffed by contributors from the founding steward organization. TumiTrust currently serves as the reference steward and reference implementation — not as owner of PTI. Stewardship is transitional; see The Origin of PTI, Ecosystem Roadmap and Future Foundation Model.
Normative language
Process rules in this section use RFC 2119 keywords where indicated: MUST, MUST NOT, SHOULD, SHOULD NOT, MAY, and RECOMMENDED.
Reading guide
| If you want to… | Start here |
|---|---|
| Understand why open governance matters | Why Governance Matters |
| Distinguish spec from products | Specification vs Implementation |
| Contribute an RFC or fix | Contribution Process |
| Certify an implementation | Conformance Program |
| Review public commitments | Public Governance Statement |
Document index
- Why Governance Matters
- Specification vs Implementation
- Governance Principles
- Governance Model
- Working Group
- Specification Lifecycle
- RFC Process
- Contribution Process
- Decision Making
- Version Management
- Breaking Changes Policy
- Security Disclosure
- Community Participation
- Conformance Program
- Certification Process
- Trademark and Branding
- Reference Implementation Policy
- Future Foundation Model
- Public Governance Statement
- Ecosystem Roadmap