SC-OES architecture and event semantics
SC-OES is SynapseCommand's draft public semantics layer for stating what kind of operational assertion a canonical event represents and what evidence, confidence and verification context travels with it.
Meaning after translation
SC-OES is applied after a source-format adapter has translated a record into the Canonical Data Model. It is an optional semantic block on the existing CDM Event, not a second event envelope and not a replacement for the source format.
It identifies the kind of assertion being made, its governed event type, confidence and verification context, applicable interval, provenance, evidence, relationships and security markings. A CDM event without an SC-OES block remains a valid CDM event.
- Canonical Data Model
- What shape does the normalised record take?
- Operational Ontology
- What does the operational term or relationship mean?
- SC-OES
- What kind of operational assertion does the event represent?
- Adapters
- How does an external format map into or out of the canonical layer?
Shape, meaning and decision logic remain distinct
This is a conceptual separation of responsibilities. A deployment does not need to exercise every adapter or semantic feature for every record.
- External layer
External systems, standards and feeds
Source formats remain authoritative for their own wire semantics.
- Public layer
Public adapters
Translate source records into the public canonical layer and, where supported, back out.
- Public layer
Canonical Data Model (CDM)
Defines the normalised record shape.
- Public layer
SC-OES + Operational Ontology
Define assertion semantics and governed operational meaning.
- Private layer
SynapseCommand decision runtime
Applies proprietary reasoning, fusion, scoring and decision support.
The public repository exposes the integration contract and semantic vocabulary. It does not publish the SynapseCommand reasoning, inference, correlation, fusion, scoring or course-of-action runtime.
Governance and conformance
Version 0.1.0 is a draft maintained within the SynapseCommand project by Decent Cybersecurity. Its public governance records how event types, ontology terms, profiles and deprecations are proposed and recorded.
SC-OES conformance reports five independent dimensions, A to E, with PASS, FAIL or SKIP verdicts and no aggregate score. SKIP means not assessed and is never presented as PASS. Existing adapters can remain CDM Conformant without being SC-OES semantic producers.
Status and limits
SC-OES is not a NATO standard. It has not been submitted to, reviewed by, ratified by or approved by NATO or any external standards body. It is not a third-party certification scheme. Publication does not expose SynapseCommand reasoning, inference, fusion, scoring or course-of-action generation.
Inspect the public material
The repository contains the normative SC-OES documents and governance processes. The rendered documentation is an orientation; the repository text and packaged registries remain the inspectable authorities.