Security & Access Control - Target Architecture Brief
Target Architecture Brief
Date: 2026-08-12
The original Security and Access Control specification describes the business objective and vision for the module. The following companion architecture expands that vision into the trust, authority, accountability, cybersecurity, market, artificial intelligence, blockchain, stablecoin, wallet, and implementation concepts required to support Synallagi.
Introduction
Synallagi coordinates the activities of producer firms, Joint Operating Committees, service providers, suppliers, specialists, marketplaces, financial participants, technology providers, and other secondary tertiary industry participants in the North American oil & gas industry. These participants remain members of independently governed organizations while collaborating through common information, processes, transactions, markets, infrastructure, and operating objectives.
The specification is ecosystem-informed, user community-led, service provider-enabled, and technologically supported. Producers are participants but are not the exclusive or dominant source of operating knowledge. Engineers, geologists, accountants, administrators, contractors, service-industry firms, financial participants, technology providers, artificial intelligence specialists, cybersecurity specialists, and other disciplines contribute to the institutional and technical design.
Security and Access Control provides the trust, authority, cybersecurity, and accountability framework for that collaboration. Its purpose is to ensure that the right person or authorized system can perform the right action, on the right information or process, for the right organization, Joint Operating Committee, market, asset, transaction, or wallet context, within the right authority, at the right time, under acceptable conditions, with complete evidence.
This module is not limited to protecting screens or information. Within Synallagi, access is connected to the authority to act, responsibility to perform, and accountability for outcomes. The module implements the security aspects of Industrial Command and Control while preserving the legal, commercial, operational, market, cybersecurity, and information boundaries of every participating organization.
Security objectives
Synallagi shall:
- establish reliable identities for people, organizations, services, integrations, devices, wallets, and automated agents;
- distinguish authentication from Joint Operating Committee membership, organizational representation, system access, business authority, market authority, and wallet authority;
- enforce least privilege across functions, information, transactions, authority, markets, wallets, and time;
- support secure collaboration among independently administered organizations;
- protect producer-private, partnership, Joint Operating Committee, marketplace, regulated, personal, intellectual property, cybersecurity-sensitive, and public information according to ownership and classification;
- prevent or detect incompatible access and actions;
- provide timely provisioning, change, review, suspension, and revocation of access;
- preserve evidence sufficient to reconstruct consequential security and business decisions;
- maintain human accountability when automation or artificial intelligence is used;
- support blockchain, stablecoin, and crypto-based asset participation only under explicit policy and evidence; and
- fail safely when identity, policy, representation, information scope, cybersecurity condition, or authority cannot be established.
Synallagi operating model
Industrial Command and Control defines how authority, responsibility, coordination, and accountability are organized within producer firms, Joint Operating Committees, working groups, service relationships, markets, and other Synallagi constructs. It enables dispersed specialists to contribute under an explicit operating structure without requiring every producer to duplicate the same capabilities internally.
Hyper-specialization may produce roles narrower than today's generic engineering, geological, accounting, or administrative positions. A specialist may serve many producers and Joint Operating Committees because no single organization generates sufficient demand for that capability. Security policy shall permit this cross-industry work while restricting every specialist to the current assignment, process, information, authority, and evidence requirements.
Security and Access Control enforces that structure but does not define command solely through technical roles. A person may be responsible for work without holding approval authority. A person may have authority to approve a decision without receiving unrestricted access to all related information. A person may be able to operate an application function without possessing the commercial authority to bind a producer, Joint Operating Committee, market participant, or asset holder.
Synallagi shall therefore represent business role, duty, system privilege, information entitlement, authority, responsibility, and accountability as related but distinct concepts.
Organizational constructs
Synallagi Organizational Constructs define, support, and constrain the relationships and actions recognized by the application.
The nine organizational constructs currently identified are:
1. Joint Operating Committee.
2. Endogenous Technical Change and sharing of infrastructure.
3. Hyper-specialization and division of labor.
4. Markets.
5. Innovation.
6. Intellectual Property.
7. Information Technology.
8. Trust. (Draft as of August 2026)
9. Transactions. (Draft as of August 2026)
The Joint Operating Committee is the primary Organizational Construct and the governed context in which working-interest participants coordinate property operations. Pooling, specialization, and the division of labor replace the traditional operator and non-operator allocation as Synallagi's organizing model. Traditional operator terminology may still be received from agreements, regulations, historical records, and external systems, but it does not determine how Synallagi assigns work.
Identities and represented parties
Every human and non-human actor shall have a unique identity. The identity is the persistent subject to which authentication, organizational relationships, assignments, actions, and accountability are attached. It remains stable while employment, representation, Joint Operating Committee membership, market participation, duties, wallet authority, and business authority change.
An identity may be associated with one or more organizations through employment, directorship, contract, professional engagement, partnership representation, regulatory appointment, audit engagement, market participation, or another governed relationship. The existence of an identity or organizational relationship does not automatically grant access to a Joint Operating Committee, market, wallet, or Synallagi resource.
For every consequential action, Synallagi shall identify:
- the acting identity;
- whether the actor is human or automated;
- the organization represented by the actor;
- the applicable Joint Operating Committee, property, agreement, marketplace, wallet, transaction, or other operating context;
- the duty and authority under which the action is performed; and
- the policy decision that permitted or denied the action.
Where a person is entitled to represent more than one organization, Synallagi shall require an explicit representation context. A person shall not silently change represented parties within a transaction. Conflicting representation shall be prohibited or governed through an approved exception and mitigating control.
Identity proofing and authentication
The strength of identity proofing and authentication shall correspond to the risk of the available actions and information. Synallagi shall define assurance requirements for employees, partner representatives, contractors, service-provider personnel, auditors, administrators, marketplace participants, services, integrations, wallets, and automated agents.
Strong authentication shall be required for privileged administration, wallet-related actions, marketplace commitments, and material business actions. Synallagi shall support step-up authentication where transaction value, information sensitivity, changed circumstances, session risk, cybersecurity risk, or authority level requires greater assurance.
Authentication establishes control of an identity credential. It does not establish organizational representation, Joint Operating Committee membership, access to information, authority to commit a party, or authority over a wallet.
Federated identity
Synallagi shall support identity federation so participating organizations can authenticate their personnel through approved identity providers. Each federation relationship shall define the trusted organization, accepted technical method, required identity assertions, minimum assurance, attribute ownership, provisioning signals, incident notification, review, suspension, termination, and fallback procedures.
Federation establishes controlled trust in authentication assertions. Synallagi retains authority over Joint Operating Committee admission, representation, role, information scope, duties, market participation, wallet authority, and business authority.
Joint Operating Committee membership
Joint Operating Committee membership shall be a governed relationship among an identity, a represented organization, and a Joint Operating Committee. It shall identify the sponsor, basis of membership, effective dates, status, approved roles, duties, information scope, authority, and applicable agreements.
Membership shall be reviewed or revoked when relevant circumstances change, including termination or suspension of the person's organizational relationship, expiry or termination of a contract, change in pooling assignment, acquisition or disposition of a working interest, withdrawal or suspension of a partner, change in agreement or decision rules, change in assigned duties or professional qualifications, or a security incident affecting the person or represented organization.
Removing one Joint Operating Committee assignment shall not unnecessarily remove unrelated assignments held by the same identity. Conversely, continued employment shall not preserve access derived from an expired Joint Operating Committee assignment.
Roles, duties, privileges, and information entitlements
A business role identifies a recognized position such as working-interest representative, production engineer, controller, auditor, formation specialist, transaction designer, wallet administrator, marketplace participant, or Material Balance Report reconciliation specialist.
A duty identifies a coherent responsibility such as preparing an Authorization for Expenditure, reviewing a voucher, approving a work order, reconciling production, administering security, certifying access, qualifying a market participant, or reviewing settlement evidence.
A privilege permits a defined application or application programming interface action. An information entitlement limits that privilege to specific records and resources. Synallagi application programming interfaces are private and directly available only to licensed developers, approved user-community participants, service providers, and authenticated runtime integrations. Public users receive only the compiled or runtime application functions intentionally exposed to them.
Synallagi shall grant access through governed assignments rather than direct, undocumented grants to individuals. Stable duties should be reusable across organizations and Joint Operating Committees. Dynamic context such as Joint Operating Committee, property, well, agreement, working interest, market, wallet, authority amount, and assignment period shall not be hidden inside an uncontrolled proliferation of static role names.
Data classification and information boundaries
The existing distinction between producer information and partnership information remains important but is not sufficient for the full Synallagi environment. Information shall be classified according to ownership, contractual rights, sensitivity, regulatory obligations, operational impact, cybersecurity risk, market impact, intellectual property status, and permitted disclosure.
The classification model shall address at least:
- producer-private information;
- Joint Operating Committee and partnership information;
- pooled Joint Operating Committee and externally administered information;
- property, well, production, and technical information;
- agreements and working-interest information;
- accounting, voucher, Authorization for Expenditure, order, payment, revenue, and settlement information;
- service-provider and supplier information;
- research, knowledge, and intellectual property;
- marketplace-confidential information;
- wallet, blockchain, stablecoin, and crypto-asset participation information;
- personal information;
- regulated or legally restricted information;
- cybersecurity-sensitive information; and
- information approved for public release.
Access to one classification shall not imply access to another. Participation in a Joint Operating Committee shall not provide access to a producer's unrelated properties, strategy, private analysis, correspondence, or other confidential information. Similarly, information available within a Joint Operating Committee shall not be published or used in a marketplace without separate disclosure authority.
Business authority
The technical ability to operate a function shall not be treated as authority to make a business commitment. Synallagi shall represent authority independently and may constrain it by represented organization, Joint Operating Committee, agreement, transaction type, property, well, project, market, wallet, settlement instrument, monetary amount, working-interest threshold, voting requirement, professional discipline, transaction stage, effective period, and normal or emergency conditions.
Material actions shall be denied when authority is absent, expired, insufficient, ambiguous, inconsistent with the represented party, or inconsistent with the required accountability.
Delegation
Delegation enables continuity during absences, workload changes, emergencies, and temporary assignments. Every delegation shall identify the delegator, delegate, represented organization, operating context, delegated duties, delegated authority, excluded duties, limits, reason, start and end time, approving authority, conflict assessment, notification recipients, and revocation status.
A delegation shall not exceed the delegator's authority, bypass an applicable conflict rule, transfer unrelated privileges, or conceal accountability. Delegated access shall expire automatically and remain fully auditable.
Segregation of duties and conflicts
Synallagi shall prevent, detect, and manage assignment conflicts, transaction conflicts, and representation conflicts.
Examples include preparing and finally approving the same material transaction; requesting and provisioning one's own access; administering security and independently certifying the resulting access; acting for multiple parties in the same negotiation without an approved arrangement; controlling a wallet and approving a related settlement without independent review; or designing a market transaction and independently certifying its disclosure.
Where a conflict may be accepted, the exception shall identify its owner, rationale, duration, affected duties, risk, compensating control, reviewer, and expiry.
Access request and provisioning
An access request shall state the business purpose, requested role or duty, represented organization, Joint Operating Committee, information scope, authority, duration, sponsor, and required approvers. Synallagi shall evaluate the request against existing access, conflicts, sensitive privileges, qualifications, contracts, cybersecurity conditions, and policy.
Approved access shall be provisioned through controlled integration with Oracle and other required services. Synallagi shall reconcile approved access against actual access and investigate discrepancies.
Access lifecycle and revocation
Access shall remain valid only while all of its supporting relationships remain valid. Synallagi shall process joiner, mover, and leaver events and domain events such as assignment, novation, farmout, farmin, subsequent joint venture, Joint Operating Committee restructuring, pooling change, working-interest transfer, contract expiry, loss of qualification, market removal, wallet compromise, and security incident.
Revocation shall address roles, information grants, authority, delegations, sessions, credentials, pending approvals, owned work items, integration access, emergency assignments, wallet authority, and automated-agent access.
Access review and certification
Access shall be reviewed periodically and after material events. Reviews shall include identity and organizational relationship, Joint Operating Committee membership and representation, roles, duties, privileges, information entitlements, monetary and other authority, delegations, privileged access, emergency access, market access, wallet authority, service access, integration access, automated-agent access, conflicts, inactive access, unused access, and orphaned access.
Reviewers shall be sufficiently independent and knowledgeable to judge the access. Rejected access shall be removed within a defined period and verified.
Transaction and workflow controls
Authorization shall consider transaction state. Holding a duty does not permit an actor to perform an action at every stage of a process.
Recurring transaction designs shall be represented as governed templates. A template persists the generic roles, duties, workflow, information, controls, authority patterns, and audit evidence for a transaction type. Each use of the template supplies the participants, represented organizations, Joint Operating Committees, properties, values, dates, wallets, markets, and other context unique to that transaction.
For Authorizations for Expenditure, vouchers, Work Orders, purchase orders, job orders, production decisions, payments, marketplace transactions, stablecoin settlements, blockchain records, and other material processes, the specification shall define permitted initiators, required reviewers, authority thresholds, partner or voting requirements, incompatible actions, amendment rights, emergency procedures, required evidence, and final accountability.
Marketplace and external-party access
Each Synallagi marketplace shall define participant qualification, onboarding, disclosure rights, bidding or offering authority, conflict rules, commitment authority, signing, settlement, suspension, and removal.
Marketplace participation shall not provide implicit access to a participant's producer-private or Joint Operating Committee-confidential information. Information may cross from an operating context to a marketplace only under an explicit disclosure policy and attributable authority.
Service-provider and supplier access shall be bound to the employing organization, contract, Joint Operating Committee, work order, property, duty, qualification, and time period. Expiry of any required relationship shall trigger reevaluation or revocation.
Blockchain, stablecoins, wallets, and crypto-based asset participation
Synallagi may support blockchain records, stablecoin settlement, digital wallets, and crypto-based participation in oil & gas assets. These capabilities extend the Security and Access Control module because they affect identity, authority, ownership, financial reporting, settlement, disclosure, custody, and investor communication.
The system shall distinguish wallet control from beneficial ownership, market participation, voting rights, settlement authority, disclosure entitlement, and authority to receive Joint Operating Committee-level financial statements.
Where assets are securitized or represented through crypto-based instruments, Synallagi shall define:
- participant qualification;
- identity and wallet verification;
- beneficial ownership evidence;
- asset rights and restrictions;
- disclosure entitlements;
Joint Operating Committee-level reporting obligations;
- financial statement publication rules;
- settlement authority;
- stablecoin acceptance and reconciliation;
- custody and transfer restrictions;
- incident response for compromised wallets or keys;
- audit evidence; and
- regulatory or contractual constraints.
These capabilities should be developed in focused background pages before they are treated as final module requirements.
Privileged and emergency access
Security administration, role administration, policy administration, audit administration, wallet administration, market administration, and other privileged duties shall be separated from ordinary business activity and from independent review.
Emergency access shall be exceptional, strongly authenticated, narrowly scoped, time-limited, monitored, and reviewed promptly after use. Synallagi shall notify designated owners when emergency access is activated and shall retain the reason, actions, and resulting changes.
Services, integrations, and private application interfaces
Every service, integration, device, and automated process shall use a managed identity with a defined owner, purpose, privileges, information scope, credential lifecycle, and monitoring requirements. Credentials shall not be embedded in code or shared across unrelated integrations.
Application programming interface authorization shall enforce the same business and information policies as interactive use. An integration shall not acquire greater access merely because it operates outside the user interface.
Synallagi application programming interfaces are private. Direct access shall be limited to licensed developers, approved user-community participants, service providers, and authenticated runtime services. Compiled applications and user interfaces expose only the functions intentionally made available to their users.
Artificial Intelligence and automated agents
Artificial intelligence systems shall operate under identifiable workload identities and approved information scopes. Synallagi shall distinguish activity that is advisory, preparatory, submitted for approval, or autonomously executed.
An artificial intelligence system shall not infer organizational representation, commercial authority, wallet authority, market disclosure authority, or permission to disclose information. Material decisions and commitments shall remain subject to the same authority, conflict, authentication, and evidence requirements as human actions.
People, Ideas & Objects' intellectual property and Targeting Framework shall supply objectives and constraints for agentic activity. These guardrails must be translated into enforceable permissions, prohibited actions, escalation rules, monitored behaviour, and audit evidence. Prompt instructions alone are not sufficient control.
Cybersecurity, monitoring, and investigation
Synallagi shall treat cybersecurity as a core part of Security and Access Control. Monitoring shall detect suspicious authentication, anomalous access, excessive privilege, conflict violations, unexpected disclosure, compromised identities, privileged misuse, policy failures, unusual transaction activity, market manipulation signals, wallet compromise, integration abuse, and artificial intelligence misuse.
Synallagi shall record security and material business events sufficient to answer who or what acted, which organization is represented, in which Joint Operating Committee or operating context, what action is requested and performed, which resource and information were affected, which policy and authority applied, what changed, and how related events can be correlated.
Investigation access shall itself be controlled and audited.
Security incidents and recovery
Synallagi shall define procedures for compromised identities, unauthorized access, information disclosure, malicious or mistaken administrative changes, failed identity federation, unavailable authorization services, corrupted policy or audit information, compromised wallets, unauthorized market activity, artificial intelligence misuse, and integration abuse.
Response shall include containment, suspension or revocation, preservation of evidence, impact assessment, notification, recovery, restoration of trusted configuration, and post-incident improvement.
Privacy, retention, and information lifecycle
Personal and sensitive information shall be collected and used only for defined purposes and made available only to authorized parties. The specification shall identify ownership, stewardship, location or residency constraints, permitted disclosure, retention, legal hold, archival, and disposal requirements.
Security controls shall apply to exports, reports, analytics, attachments, integration copies, test environments, backups, artificial intelligence processing, blockchain records, marketplace records, and downstream systems.
Security administration and governance
Synallagi shall define accountable owners for identities, roles, duties, information, policies, Joint Operating Committees, authority templates, access certifications, conflicts, exceptions, audit, cybersecurity, markets, wallets, artificial intelligence guardrails, and security operations.
Changes to roles and policies shall be versioned and subject to impact analysis, conflict simulation, approval, testing, controlled deployment, reconciliation, and rollback. Delivered Oracle roles should be preserved where practical. Custom roles and policies shall follow governed naming, ownership, documentation, and review standards.
Oracle Cloud Enterprise Resource Planning
Oracle Cloud Enterprise Resource Planning provides standard capabilities for application privileges, job and duty roles, data roles and security contexts, security administration, access requests, access controls, access certification, and audit reporting. Synallagi shall use these capabilities where they accurately implement the required policy.
Synallagi may develop and deploy Java components within supported Oracle application-server environments where this forms part of the approved Synallagi architecture. Such components shall be maintained through controlled source, build, testing and deployment processes. Within the Security & Access Control module, extensions shall use or integrate with the authoritative Oracle and Synallagi identity, authorization, audit and security services. They shall not bypass those controls or depend upon undocumented Oracle product internals. Extensions to Oracle Fusion Cloud Applications shall use the extension and integration mechanisms supported for that service.
Synallagi-specific concepts including Joint Operating Committee membership, represented organization, pooling relationships, agreement scope, working interest, hyper-specialized duties, domain authority, delegation, marketplace participation, wallet authority, crypto-based asset rights, cybersecurity policy, and cross-organizational conflicts shall remain explicit domain concepts.
Standardized Security Components and Contextual User Assignments
Standardized and objective accounting information is fundamental to Synallagi. It allows each producer to trust that the potential unprofitability of its production is evaluated on the same basis as that of every other producer. The same principle shall apply to Security & Access Control.
Synallagi shall establish standardized security configuration components consisting of defined combinations of business roles, duties, privileges, data entitlements, authority limits and control requirements. Each component shall clearly identify the functions it permits, the information it exposes, the authority it conveys, the conflicts it creates, and its requirements for approval, delegation, certification and revocation. Producers and Joint Operating Committees may assign the appropriate combination of these components to an individual without independently redesigning that individual’s access. They will therefore understand the security, access-control and accountability consequences of every component assigned.
Synallagi shall not require a separate user identity for every producer, Joint Operating Committee, property, client or assignment in which an individual participates. Each person shall have one persistent Synallagi identity to which multiple, separately approved relationships and assignments may be attached. An engineer or geologist may therefore hold authorizations for several clients and Joint Operating Committees and may be authorized to initiate, review, recommend or approve specified classes of Authorizations for Expenditure within each assignment.
The standardized security component is reusable; the authority granted through it remains contextual. Qualification for a role, or assignment of that role in one organization, shall not automatically confer authority in another. Every authorization shall remain limited to the represented organization, Joint Operating Committee, property, agreement, transaction class, monetary threshold, effective period and other conditions under which it is granted. Synallagi shall evaluate the active context before permitting an action and shall prevent information or authority belonging to one assignment from carrying into another.
Measures and assurance
Security performance shall be measured. Measures should include time to provision and revoke access, expired access, orphaned access, excessive privilege, unused privilege, overdue certification decisions, unresolved conflicts, privileged access use, emergency access use, failed identity federation, anomalous access, denied access, audit coverage failures, wallet incidents, market access exceptions, artificial intelligence policy violations, and incident response time.
Requirements shall be verified through policy tests, role and information-access inspection, conflict simulation, lifecycle exercises, access-certification evidence, audit reconstruction, cybersecurity testing, failure testing, and periodic control assessment.
Open design decisions
The following topics should be developed through smaller background pages during subsequent detailed design and before the affected capabilities are approved for implementation:
- complete role and duty catalogue;
- market participation model;
- blockchain and stablecoin settlement model;
- wallet authority and beneficial ownership model;
- crypto-based asset securitization;
- Joint Operating Committee-level financial statement publication;
- cybersecurity incident taxonomy;
- artificial intelligence execution boundaries;
- Targeting Framework access rules;
- private application interface licensing controls;
- revocation timing by event type; and
- accounting firm participation in audit and assurance workflows.
Development Environment — Code Repository
Synallagi shall initially use Oracle Cloud Infrastructure DevOps Code Repositories as its canonical repository for approved specifications, scripts, source code and related development artifacts. Google Workspace shall remain the controlled collaborative environment. Approved supporting services may include Chrome Enterprise Premium, Gemini Enterprise and Google Voice, subject to applicable information-classification, access-control, licensing and security requirements. Working groups and confidential subject matter shall be separated according to information classification and authorized membership. Discussions and sensitive working material shall not automatically be committed to the code repository. A self-managed GitLab or another standards-based Git platform may be adopted later where documented requirements demonstrate that Oracle Cloud Infrastructure DevOps is insufficient.
Recommended information structure
- Information class
- Primary location
- Access model
- Published specification
- Google Sites and OCI repository
- Public or broadly readable
- General user-community work
- Dedicated Google Shared Drive
- Entire approved community
- Restricted working-group material
- Separate Shared Drive for each group
- Named group members only
- Approved technical specifications and code
- OCI DevOps repository
- Repository-specific OCI IAM groups
- Highly confidential strategy
- Separately administered encrypted workspace
- Minimum named individuals only
- Informal discussions and meeting records
- Appropriate Google Workspace location
- Retained only where necessary
Technical Specification Conclusion
Synallagi organizational model depends on collaboration without surrendering the independence, information rights, authority limits, cybersecurity requirements, or accountability of participating organizations. Security and Access Control enables that model by connecting trustworthy identities to explicit representation, hyper-specialized duties, information, authority, markets, wallets, transactions, evidence, and accountability.
Industrial Command and Control supplies the business structure. Oracle Cloud Enterprise Resource Planning supplies important standard security capabilities. Synallagi supplies the Joint Operating Committee-aware, market-aware, transaction-aware, and asset-aware policy model that joins them.
Closing Section - Security and Access Control Target Architecture Brief
Implementation note for potential users
The complexity described in this module is not accidental. It reflects the level of control required for Synallagi to support Joint Operating Committees, working-interest participants, markets, service providers, cybersecurity, artificial intelligence, blockchain-supported transactions, stablecoin settlement, wallets, and crypto-based participation in oil & gas assets.
For potential users, the first response to this complexity should not be discouragement. The first response should be recognition that this is the nature of the problem being solved. Synallagi is not attempting to add an access-control layer to a conventional enterprise system. It is defining the trust, authority, accountability, and evidence model required for a new form of oil & gas administration.
Several factors make this practical.
Oracle Database and Oracle Cloud Enterprise Resource Planning are designed to manage large-scale, highly controlled, security-sensitive enterprise conditions. Synallagi expects to rely on Oracle technologies where they are the appropriate foundation for identity, data security, role administration, access certification, audit, transaction processing, and integration.
Oracle Services may be engaged to confirm product fit, subscription requirements, supported integration patterns, security responsibilities and implementation design. Their involvement should reduce the burden on our user community to translate every requirement into technical implementation detail.
Artificial intelligence will be relied upon heavily in the analysis, development, testing, verification, and implementation of these requirements. This changes the nature of our user community's work. Users and service providers no longer need to carry the full burden of technical decomposition in the way they might have had to do in prior generations of software development.
Their work remains essential, but it changes shape. Our user community and service providers must ensure that the user's interfaces are usable, that complex requirements can be presented and processed in understandable ways, and that the systems and procedures exist to verify that specified requirements have been completed as required.
Much of this work is not yet fully written or defined. Synallagi will create new positions, new service opportunities, and new combinations of human and artificial intelligence activity. The most effective division of labor among users, service providers, artificial intelligence systems, Oracle Services, and People, Ideas & Objects will have to be discovered, tested, refined, and governed over time. This work should begin now in the minds of our user community and service-provider community.
The complexity of the Synallagi specification establishes an important boundary. Agentic Artificial Intelligence tools, used casually by individual producer firms to automate selected organizational actions, cannot responsibly substitute for the architecture described in this module. Security and Access Control cannot be reduced to scattered Artificial Intelligence agents performing "some" actions inside an organization without the required identity, representation, authority, accountability, cybersecurity, audit, revocation, and governance structures.
Any producer proposing to solve these issues through isolated agentic automation should first be directed to this module. The appropriate and responsible approach is not to bypass institutional design, but to build the security, access, trust, and accountability framework that allows advanced automation to be used safely.
Synallagi's position is therefore clear: artificial intelligence is essential to the future of the system, but it must operate inside governed architecture. The purpose of this module is to define that architecture.
Conclusion
The complexity of the People, Ideas & Objects Synallagi Security & Access Control module is formidable. Much of that complexity becomes understandable, however, when considered against the demands of the oil & gas industry and the relationships conducted through Joint Operating Committees, markets and the service industry. These relationships provide the business purpose behind the module’s processes, authorities and controls.
What is new is the maturation of Information Technologies and the transition from an Internet of data to an Internet of Value. Digital assets, including stablecoins, are moving toward a material role in the financial system because they can provide greater convenience, faster settlement and new forms of programmable financial control. Their adoption will introduce substantial requirements for security, authority, custody, verification and accountability.
Expecting every producer to develop the systems needed to participate safely in this environment is unrealistic. Assume, for a moment, that one producer commits the time and resources required to implement the necessary infrastructure. Who in the oil & gas industry will it transact with? To use a familiar analogy: to whom will it fax a document when it is the only firm with a fax machine?
Would that producer restrict its business to organizations claiming to have implemented equivalent systems? How would it determine whether those organizations had identified and corrected the same critical cybersecurity vulnerabilities? How could it know that their controls, identities, authorities and transactions could be trusted?
Beyond the handful of producers potentially capable of reaching this level of security independently, what common Intellectual Property, architecture and operating standards would be available to everyone else? Would other firms implement the requirements completely, or would their systems introduce vulnerabilities, malicious software and unauthorized access routes into the shared operating environment? What happens when the inadequately protected organization is a major trading partner, Joint Operator or service provider?
This is the Security & Access Control module: essentially the doors, windows and controlled entrances to the house. Ten other Synallagi modules must be developed and implemented, and comparable questions can be raised about each of them. What would the fixed cost be if every producer attempted to develop these capabilities independently? Under such a fragmented development model, could the industry realistically obtain the savings and benefits defined by Synallagi—including the price maker strategy and the dramatic reduction of overhead costs?
Synallagi offers the industry a unique value proposition: a common level of security, reliability and accountability that individual implementations cannot provide across the North American oil & gas producer and service-industry population.
Oil & gas defines itself through partnerships. Producers pool lands into spacing units, share the financial burden of exploration and development, and conduct operations through Joint Operating Committees. Properties are rarely owned entirely by one producer. Even where they are, royalty holders remain, and most substantial field activities are performed by the secondary service industry. The isolated producer is not one of the industry’s successful operating models. Its information systems cannot reasonably be designed as though it were.
Financial integrity, trust and accountability should therefore be among the producer’s primary concerns. Unless the industry is rebuilt upon an uncompromising level of accountability, it will not regain the confidence of investors and lenders or obtain the full benefit of their participation.
People, Ideas & Objects followed a longitudinal sample of North American oil & gas producers for almost a decade. The original sample of approximately 23 producers is reduced through consolidation to 11. Throughout this period, substantial amounts of producer cash have been directed toward dividends, share buybacks and debt reduction rather than the reconstruction of the industry’s organizational and productive capabilities. Individual debt repayments may result from lender requirements, scheduled maturities, refinancing decisions, commodity-driven cash flow or voluntary balance-sheet management. The broader pattern nevertheless demonstrates that investors and lenders continue to demand financial discipline and the return or protection of their capital. Producers have largely responded by muddling through within their existing organizational structures instead of undertaking the reconstruction required to restore sustained profitability, performance and accountability.
Security & Access Control is therefore more than one module within the Synallagi ERP application. Like every Synallagi module, it represents the only reasonable, effective and economically valuable way to address the industry’s persistent inability to operate profitably and accountably.
Synallagi creates a cost-effective development environment in which one comprehensive application-development cost can be amortized across every barrel of oil equivalent of productive capacity in North America. The alternative is for the industry to fumble independently through another decade while Artificial-Intelligence agents rip and tear at organizations that were never adequately designed for the environment in which they now operate.
The industry can instead take control of reserve preservation, organizational performance and producer profitability by implementing this New Discipline. It is the practical means by which Organizational Latency can be reduced throughout North American oil & gas.
