Thursday, September 10, 2026

Consider This... AI is the Killer App of IP

Origins and Applications of Synallagi Intellectual Property

Several events during the 1990s convinced me that the Information Technology industry’s treatment of Intellectual Property had reached a low point. Software companies—organizations whose revenues, profitability, and enterprise value depended almost entirely upon their Intellectual Property—routinely behaved as though “what’s yours is mine.”

The contradiction was unmistakable. How could a software company expect others to respect its Intellectual Property while refusing to recognize theirs? More importantly, why would customers, suppliers, or business partners choose to work with a company that did not respect their ownership rights?

Over the decades that followed, the industry gradually began to recognize this paradox. Intellectual Property has since become one of the defining assets of the modern economy.

Near the end of the twentieth century, I began asking a simple question:

What asset class would become the most valuable in the twenty-first century?

The answer became increasingly apparent. Every productive asset connected to a revenue stream would eventually be managed, at least in part, through software. Unless society intended to abandon computing and return to the abacus, software would become the operational layer governing commercial assets, consumer assets, Business Operations, and commerce itself.

That prediction has largely become reality.

Ownership of an oil & gas property, for example, is no longer sufficient to create a sustainable competitive advantage. Performance increasingly depends upon access to the software, business models, data structures, processes, and Intellectual Property that enable the property to be operated profitably.

Once that conclusion became apparent, there was no turning back.

Intellectual Property as a Competitive Advantage

The collapse of the dot-com bubble delayed our ambitions. After two unsuccessful attempts to develop oil & gas Enterprise Resource Planning systems during the 1990s, People, Ideas & Objects was re-established in May 2004.

This time, the strategy was fundamentally different. Synallagi would be built upon Intellectual Property as one of its three principal competitive advantages.

Looking back over the past two decades, that decision has proven sound. Although organizations now recognize the importance of Intellectual Property, its full value remains difficult to measure because it’s never truly complete. It evolves continuously through research, development, innovation, and practical experience.

People, Ideas & Objects has now published almost five million words. Synallagi itself is approaching half a million words and is being refined architecturally and technically in preparation for its handoff to our user community. Once that handoff occurs, the needs and experience of North American oil & gas producers will expand its detail substantially.

The present documentation is not intended to prescribe every future development. Its purpose is to establish a coherent vision and architectural foundation upon which our user community can build.

Collectively, that community will extend Synallagi far beyond anything one individual or organization could accomplish. At the same time, it must preserve our objective of providing North American oil & gas producers with the most dynamic, innovative, accountable, and profitable means of oil & gas operations.

In doing so, a culture of reserves preservation, performance, and profitability can replace today’s culture of “muddling through.”

Why Unified Ownership Is Necessary

For this vision to succeed, the Intellectual Property of Synallagi must remain under unified ownership. That ownership can then support comprehensive licensing through which every member of our user community receives access to Synallagi, the authority to prepare derivative works, and the opportunity to establish service provider organizations that combine their tacit knowledge with the explicit knowledge captured in the software.

At first glance, unified ownership might appear self-serving.

It is not. It is an organizational necessity.

If ownership of the architecture became fragmented among hundreds or thousands of individuals, organizations, and competing commercial interests, the result would be architectural inconsistency, incompatible implementations, recurring ownership disputes, and potentially the destruction of the product itself.

Most importantly, fragmentation would leave unresolved the underlying problems confronting unprofitable North American oil & gas producers.

A comprehensive industry Enterprise Resource Planning system cannot be developed through fragmented ownership of its foundational architecture. Unified ownership, combined with comprehensive licensing, solves that problem.

Every member of our user community receives licensed access to the entire body of Synallagi Intellectual Property. Contributors therefore work within a common architectural framework instead of negotiating separate rights to individual components owned by multiple parties. Their authorship and contributions are documented and attributed through established development processes, while ownership of the resulting Intellectual Property is governed by the applicable licensing and contribution agreements.

Our user community is exclusively licensed to prepare derivative works of Synallagi Intellectual Property. Initially, those derivative works must remain consistent with Synallagi’s established business models and architecture. Once the commercial platform has matured, those foundations can evolve through controlled iteration.

This discipline is essential. Premature architectural divergence in one area would create unforeseen consequences elsewhere throughout the system.

Central Ownership and Decentralized Innovation

The Intellectual Property generated through authorized derivative works is acquired by People, Ideas & Objects. Members of our user community are compensated for their knowledge, effort, and innovation. The resulting Intellectual Property is then incorporated into the central body of Synallagi and made available to every licensed member of our user community.

That creates a powerful network effect.

Suppose a member of our user community develops an innovative analytical process that requires information drawn from numerous database structures throughout Synallagi. Under our licensing model, that individual can use the complete architecture without negotiating separate commercial agreements with multiple Intellectual Property owners, software vendors, or proprietary data-model providers.

Conventional software-development documentation records the contribution, its authorship, and its relationship to the broader architecture. Innovation can proceed without unnecessary legal or commercial barriers.

Under many competing development models, developers must license proprietary data models, purchase access to software frameworks, and pay ongoing fees for particular information structures. Such an environment would make the collaborative development of Synallagi commercially impractical and time consuming. 

Our approach eliminates those obstacles.

Aggregating Intellectual Property within a unified ownership structure removes unnecessary disputes over who owns each component of the system. Individual contributions are identified, reviewed, attributed, and governed before being incorporated into the specification.

Over time, contributors will naturally develop expertise in particular business domains reflecting their experience, professional relationships, and interests. Those specializations provide an objective basis for recognizing their contributions while maintaining the integrity of the overall architecture.

This balance between centralized ownership and decentralized innovation lies at the heart of the Synallagi Intellectual Property model. It preserves a unified architectural vision while enabling thousands of individuals to develop collectively a system that no single organization could realistically build alone.

An Intellectual Property Model for Continuous Improvement

Synallagi’s ownership and licensing model is intended to maximize the value of its Intellectual Property for every participant. Producers, the service industry, our user community, and their service provider organizations all benefit from a single, coherent body of Intellectual Property that evolves continuously instead of fragmenting into competing versions and incompatible architectures.

One of the model’s greatest advantages is its ability to support the continual refinement of business processes as industry practices evolve and new opportunities emerge.

Conventional Enterprise Resource Planning systems frequently preserve existing business practices in software. Synallagi is intended to do something fundamentally different. It is designed as an adaptive platform that continually incorporates knowledge, innovation, and operational improvements from across the North American oil & gas industry.

This capability is particularly important to rebuilding investor confidence. Investors increasingly demand accountability, transparency, and sound governance from producer firms. Meeting those expectations requires more than improved reporting. It requires an evolving foundation of Intellectual Property that strengthens the financial, administrative, and operational integrity of the industry.

People, Ideas & Objects does not purchase an ownership interest in, or assume control over, the independent businesses operated by members of our user community. It licenses valuable Synallagi Intellectual Property to them for this defined commercial purpose.

Each licensee remains an independently owned and operated business. It controls its own operations and finances and assumes its own commercial risks. In exchange for access to Synallagi Intellectual Property, however, the licensee agrees that the licensed Intellectual Property, authorized derivative works, confidential information, and Synallagi-specific capabilities will not be used to develop or support competing products or services except as expressly permitted by the applicable license.

That expectation extends throughout our user community and its service provider organizations. Their responsibility is to continually improve the administrative, accounting, and operational capabilities of North American oil & gas while advancing Synallagi as the industry’s leading Enterprise Resource Planning architecture.

People, Ideas & Objects considers that responsibility to be an endless and unlimited frontier.

Authority Belongs to Our User Community

People, Ideas & Objects places its greatest emphasis on our user community because that community represents one of Synallagi three principal competitive advantages.

Through the licensing model, our user community receives the authority, tools, and organizational structure necessary to become the leading source of oil & gas accounting and administrative expertise.

Over time, we expect our user community to do more than respond to changes in the industry. We expect it to anticipate and lead them.

Its responsibility is to identify emerging business requirements, evaluate their implications, and evolve Synallagi before those requirements become critical. This represents a fundamental departure from conventional Enterprise Resource Planning systems, which have traditionally been used to preserve established business practices rather than improve them.

Our user community charter establishes three principles providing members with the authority necessary to fulfill this responsibility:

Our user community is exclusively licensed to prepare derivative works of Synallagi Intellectual Property. Anyone seeking a correction, enhancement, or new capability need only contact our user community.

Software developers are licensed to obtain business requirements and functional direction exclusively from our user community. They accept direction from no other source.

Our user community controls its own budgets and establishes its own development priorities.

Together, these principles enable our user community to engage directly with the broader North American oil & gas industry. Producers, Joint Operating Committees, service providers, engineers and geologists, accountants and administrators, employees, auditors and accounting firms, compliance, governance, security and legal advisers, investors, financial and marketplace participants, technology providers and software developers, Artificial Intelligence specialists, cybersecurity specialists, Oracle Services specialists, other secondary- and tertiary-industry participants and relevant disciplines ideas, identify emerging requirements, and propose improvements. These individuals will know precisely whom to contact when they identify an issue or opportunity, while Synallagi retains a coherent architectural vision and unified body of Intellectual Property.

Our user community evaluates those contributions, reconciles them with the overall architecture, and, where appropriate, incorporates them into Synallagi as new software capabilities and professional services.

This establishes a continuous cycle of innovation in which the industry participates directly in the evolution of its Enterprise Resource Planning platform. The specification is ecosystem-informed, user-community-led, service-provider-enabled and technologically supported.

Converting Individual Knowledge into Organizational Capability

The license granted to members of our user community includes the right to establish service provider organizations and sublicense them to implement, manage, and operate the processes those members are responsible for defining, designing, and developing.

This structure combines two forms of knowledge:

The explicit knowledge embodied in Synallagi architecture, software, business models, and documentation.

The tacit knowledge accumulated by service provider organizations through specialization, implementation, experience, and continuing interaction with the industry.

Together, these forms of knowledge can be delivered directly to North American oil & gas producers.

In this way, individual members of our user community can extend and leverage their knowledge, skills, experience, expertise, ideas and innovative capabilities through specialized organizations capable of serving the industry at scale.

The phrase “knowledge begets capability, capability begets action” captures the core philosophy of researchers Carliss Y. Baldwin and Kim B. Clark regarding how organizations transform abstract design theory into competitive market value. In their seminal work Design Rules: The Power of Modularity, they outline how understanding technical systems drives practical corporate execution.

The service provider sublicense is distinct from the license granted to a member of our user community. Service provider organizations do not independently receive the authority to prepare derivative works of Synallagi Intellectual Property. That authority remains exclusively with the applicable user community member, the principal of their organization.

When development or modification of a process is required, the user community member may delegate aspects of that work to the service provider organization while retaining the licensed authority and responsibility governing the resulting derivative work.

Service provider organizations nevertheless receive substantially broader rights and capabilities than those available under the End User License Agreement. Rights and capabilities necessary to leverage their knowledge, skills, experience, expertise, ideas and innovation to enable action.

The distinction is intentional.

End users are licensed to use Synallagi in conducting their oil & gas operations. Service providers are licensed to implement, operate, support, specialize in, and improve the delivery of defined Synallagi processes under the authority of the applicable member of our user community.

The result is a structured hierarchy of Intellectual Property rights and responsibilities:

People, Ideas & Objects maintains unified ownership of Synallagi Intellectual Property.

Our user community receives the exclusive licensed authority to prepare derivative works.

Service provider organizations receive sublicensed authority to commercialize and deliver specialized Synallagi processes under the authority of the applicable user community member.

Industry participants receive the rights necessary to use Synallagi through the End User License Agreement.

This structure preserves the integrity of Synallagi Intellectual Property while enabling specialization and the division of labor to develop and operate at scale.

It allows the knowledge of an individual user community member to become an enduring organizational capability. Synallagi’s explicit knowledge is combined with the service provider’s accumulating tacit knowledge, skills, experience, expertise, ideas and innovative capabilities.

Rather than constraining innovation, Synallagi Intellectual Property and licensing architecture establishes the framework through which innovation can be enabled, developed, protected, commercialized, and distributed throughout North American oil & gas.

That is one of the purposes of unified Intellectual Property ownership: not to limit participation, but to enable collaboration. The second is a recent development of equal consequence.

Wednesday, September 09, 2026

An Announcement, We Have Deadlines!

Publishing our deadlines gives prospective participants a clearer understanding of where Synallagi stands, what remains to be done, and the commitment required to reach its initial commercial release. Some will consider the schedule ambitious; others will regard it as too comfortable. Both perspectives have merit. The task ahead is enormous, and the pace depends first on securing the resources to undertake it.

Producers have provided none of the financial resources necessary to advance development. We are therefore at a standstill and will remain there until development funding is secured.

Our user community and its service provider organizations will represent the largest share of the people involved in building and operating Synallagi. They will not be asked to assume the financial and career risks of joining an unfunded initiative. Today, even publicly identifying as a prospective member could expose someone to ostracism and accusations of “betrayal” from producers. Before anyone commits to a career change, they must know that the financial resources required to complete development are available.

If producers cannot provide the resources necessary to support their recovery from the circumstances they have created, then either our hypothesis is wrong or their officers and directors are too conflicted to act. In either case, prospective members of our user community should not bear the consequences through lost income or damaged careers.

Once funding is secured, participation will carry performance expectations. Our user community’s compensation model is heavily incentivized. A participant who cannot perform the work may earn only the subsistence component of that compensation. That expectation must be understood before anyone commits.

People, Ideas & Objects’ schedule establishes a nine-year stewardship horizon, from September 2026 through September 2035. The four principal phases are sequential, with some minor overlap anticipated:

  • September 2026–September 2028 — Resource Mobilization: Assemble the financial resources required to complete development.
  • September 2028–September 2030 — Establish Our User Community: Recruit and establish the permanent community that will develop, support, and continuously improve Synallagi.
  • September 2030–March 2034 — Product Development: Convert the specification into an operational product.
  • March 2034–September 2035 — Commercial Release and Implementation: Release Synallagi, implement it, and stabilize the code base.
  • After September 2035 — Continuous Development: Advance Synallagi through ongoing, iterative development by our user community.

The clearest opportunity to shorten this schedule lies in Resource Mobilization. That timing rests with producers’ officers and directors, who hold the authority, responsibility, accountability, and resources necessary to act.

This September 2026 announcement begins a two-year period during which we expect industry to assemble the resources required to develop Synallagi. The information needed to make an informed decision is available in our published materials. Producers who are dissatisfied with the offering are free to pursue other options. If those options include Enterprise Resource Planning solutions, they must proceed without using the Intellectual Property associated with this initiative.

If we fail to secure funding by the end of the Resource Mobilization phase, we will proceed on the basis that our hypothesis was incorrect. Producers would then have no reason to use the Intellectual Property developed to implement it. People, Ideas & Objects will cease pursuing operational software development and shift to an Intellectual Property litigation strategy.

Oil & gas producers taught me an important lesson about systems sales in the 1990s: do not do it. I intend to maintain my “no herding of cats” policy. A succession of conditional promises, contradictory commitments, and “let’s make a deal” negotiations will not deliver the resources or institutional commitment this undertaking requires.

I offer Synallagi as the solution to the industry’s accounting and administrative difficulties. If producers do not believe those difficulties apply to them, or do not accept the proposed solution, we have no business to conduct.

Producers may find a firm deadline difficult to accept. Yet the vision behind this initiative anticipated their present circumstances when the work began in 1991. There is also a practical limit to how long this commitment can remain open-ended: I will be 70 at the conclusion of the Resource Mobilization phase.

By then, I will have devoted 37 years to addressing what I regard as the greatest administrative difficulties the industry has faced—difficulties it has continued to ignore. Producers should consider what that commitment represents and what its limits mean for the opportunity before them. Perhaps it establishes a standard of persistence for others, within and beyond Enterprise Resource Planning.

These dates give prospective participants, contributors, investors, bankers, and resource providers a realistic basis for assessing the commitment involved. Synallagi requires substantial institutional, community, business, and technical development, supported by sustained participation over several years. Even with a nine-year horizon, our delivery expectations may prove highly optimistic.

Our September 2026 announcement opens the Resource Mobilization phase. Securing the funding will make it possible to assemble the technical, organizational, and human resources required to bring Synallagi into commercial operation.

Tuesday, September 08, 2026

Consider This... AI is the "Killer App" of IP

 Today we have another paper in the “Consider This…” series of relatively short discussions on topics of interest. This one raises several points that people in oil & gas may wish to debate. I’ve opened the blog to comments and welcome that discussion, although I encourage participants to protect their identities. We continue to attract the wrong kind of attention from producer officers and directors, and even participating in a debate could carry career consequences. Please exercise care.

I’ve been preaching the gospel of Intellectual Property as one of the primary competitive advantages of People, Ideas & Objects’ Synallagi, including its licensing through our user community and their service provider organizations. In this paper, I compare the challenge of explaining its value to the arrival of the personal computer in the 1980s.

People would ask, “What will you use it for?” Unless you were buying $1,000 databases and compilers, the answer was often “storing recipes.” We had acquired some remarkably expensive paperweights.

Then came applications such as Lotus 1-2-3, which gave businesses a compelling reason to put personal computers on their desks. The spreadsheet became a defining example of the “killer app”—an application whose usefulness made the underlying technology indispensable. Naturally, everyone also needed a computer at home to keep track of what those recipes were costing.

Many more “killer apps” followed. Our paper applies that familiar idea to Intellectual Property.

Artificial Intelligence Agents rummaging through corporate data, processes, and procedures may not seem like an immediate concern to everyone. As their reach and ability to act expand, however, the question becomes unavoidable: what defines the limits of their authority?

“Consider This…” proposes that Artificial Intelligence is the “killer app” of Intellectual Property. The business definitions, rules, and institutional arrangements embodied in that Intellectual Property provide the basis for constraining an Agent’s authority, scope, and scale of action. Those constraints must then be implemented and enforced in the software. This is particularly consequential in Enterprise Resource Planning, and central to the development we are undertaking.

We extend this argument to Autonomous Asynchronous Transaction Orchestration in Synallagi. Orchestration is the part that deserves closer attention. A transaction requires more than the ability to interpret information. Who is involved? Who may access the data? What authority does each participant hold? Who can approve the transaction? What must happen before it proceeds?

These questions lead to many more as we account for the unique requirements of oil & gas and implement them in Synallagi. Intellectual Property defines. Artificial Intelligence interprets. Orchestration acts.

Orchestration is the traffic cop, the lights at intersections, the paved roads, and the speed limits that keep us somewhat civilized. It coordinates how a transaction proceeds through the participants, permissions, approvals, and other requirements that give it business meaning.

The paper is available here. Over the next few days, I’ll also publish its sections as individual blog posts, adding to the pile of recipes I’ve been accumulating here for some time.

A podcast will follow—if I can teach Artificial Intelligence to pronounce Synallagi. At this stage, it is almost comical: a different pronunciation every time, and never the right one. I’ve tried explaining that it rhymes with “technology” or “philosophy.” Apparently, we may need to begin with what “rhymes” means.

Friday, September 04, 2026

Security & Access Control - Target Architecture Brief

Target Architecture Brief

Date: 2026-08-12

The original Security and Access Control specification describes the business objective and vision for the module. The following companion architecture expands that vision into the trust, authority, accountability, cybersecurity, market, artificial intelligence, blockchain, stablecoin, wallet, and implementation concepts required to support Synallagi.

Introduction

Synallagi coordinates the activities of producer firms, Joint Operating Committees, service providers, suppliers, specialists, marketplaces, financial participants, technology providers, and other secondary tertiary industry participants in the North American oil & gas industry. These participants remain members of independently governed organizations while collaborating through common information, processes, transactions, markets, infrastructure, and operating objectives.

The specification is ecosystem-informed, user community-led, service provider-enabled, and technologically supported. Producers are participants but are not the exclusive or dominant source of operating knowledge. Engineers, geologists, accountants, administrators, contractors, service-industry firms, financial participants, technology providers, artificial intelligence specialists, cybersecurity specialists, and other disciplines contribute to the institutional and technical design.

Security and Access Control provides the trust, authority, cybersecurity, and accountability framework for that collaboration. Its purpose is to ensure that the right person or authorized system can perform the right action, on the right information or process, for the right organization, Joint Operating Committee, market, asset, transaction, or wallet context, within the right authority, at the right time, under acceptable conditions, with complete evidence.

This module is not limited to protecting screens or information. Within Synallagi, access is connected to the authority to act, responsibility to perform, and accountability for outcomes. The module implements the security aspects of Industrial Command and Control while preserving the legal, commercial, operational, market, cybersecurity, and information boundaries of every participating organization.

Security objectives

Synallagi shall:

  • establish reliable identities for people, organizations, services, integrations, devices, wallets, and automated agents;
  • distinguish authentication from Joint Operating Committee membership, organizational representation, system access, business authority, market authority, and wallet authority;
  • enforce least privilege across functions, information, transactions, authority, markets, wallets, and time;
  • support secure collaboration among independently administered organizations;
  • protect producer-private, partnership, Joint Operating Committee, marketplace, regulated, personal, intellectual property, cybersecurity-sensitive, and public information according to ownership and classification;
  • prevent or detect incompatible access and actions;
  • provide timely provisioning, change, review, suspension, and revocation of access;
  • preserve evidence sufficient to reconstruct consequential security and business decisions;
  • maintain human accountability when automation or artificial intelligence is used;
  • support blockchain, stablecoin, and crypto-based asset participation only under explicit policy and evidence; and
  • fail safely when identity, policy, representation, information scope, cybersecurity condition, or authority cannot be established.

Synallagi operating model

Industrial Command and Control defines how authority, responsibility, coordination, and accountability are organized within producer firms, Joint Operating Committees, working groups, service relationships, markets, and other Synallagi constructs. It enables dispersed specialists to contribute under an explicit operating structure without requiring every producer to duplicate the same capabilities internally.

Hyper-specialization may produce roles narrower than today's generic engineering, geological, accounting, or administrative positions. A specialist may serve many producers and Joint Operating Committees because no single organization generates sufficient demand for that capability. Security policy shall permit this cross-industry work while restricting every specialist to the current assignment, process, information, authority, and evidence requirements.

Security and Access Control enforces that structure but does not define command solely through technical roles. A person may be responsible for work without holding approval authority. A person may have authority to approve a decision without receiving unrestricted access to all related information. A person may be able to operate an application function without possessing the commercial authority to bind a producer, Joint Operating Committee, market participant, or asset holder.

Synallagi shall therefore represent business role, duty, system privilege, information entitlement, authority, responsibility, and accountability as related but distinct concepts.

Organizational constructs

Synallagi Organizational Constructs define, support, and constrain the relationships and actions recognized by the application.

The nine organizational constructs currently identified are:

1. Joint Operating Committee.

2. Endogenous Technical Change and sharing of infrastructure.

3. Hyper-specialization and division of labor.

4. Markets.

5. Innovation.

6. Intellectual Property.

7. Information Technology.

8. Trust. (Draft as of August 2026)

9. Transactions. (Draft as of August 2026)

The Joint Operating Committee is the primary Organizational Construct and the governed context in which working-interest participants coordinate property operations. Pooling, specialization, and the division of labor replace the traditional operator and non-operator allocation as Synallagi's organizing model. Traditional operator terminology may still be received from agreements, regulations, historical records, and external systems, but it does not determine how Synallagi assigns work.

Identities and represented parties

Every human and non-human actor shall have a unique identity. The identity is the persistent subject to which authentication, organizational relationships, assignments, actions, and accountability are attached. It remains stable while employment, representation, Joint Operating Committee membership, market participation, duties, wallet authority, and business authority change.

An identity may be associated with one or more organizations through employment, directorship, contract, professional engagement, partnership representation, regulatory appointment, audit engagement, market participation, or another governed relationship. The existence of an identity or organizational relationship does not automatically grant access to a Joint Operating Committee, market, wallet, or Synallagi resource.

For every consequential action, Synallagi shall identify:

  • the acting identity;
  • whether the actor is human or automated;
  • the organization represented by the actor;
  • the applicable Joint Operating Committee, property, agreement, marketplace, wallet, transaction, or other operating context;
  • the duty and authority under which the action is performed; and
  • the policy decision that permitted or denied the action.

Where a person is entitled to represent more than one organization, Synallagi shall require an explicit representation context. A person shall not silently change represented parties within a transaction. Conflicting representation shall be prohibited or governed through an approved exception and mitigating control.

Identity proofing and authentication

The strength of identity proofing and authentication shall correspond to the risk of the available actions and information. Synallagi shall define assurance requirements for employees, partner representatives, contractors, service-provider personnel, auditors, administrators, marketplace participants, services, integrations, wallets, and automated agents.

Strong authentication shall be required for privileged administration, wallet-related actions, marketplace commitments, and material business actions. Synallagi shall support step-up authentication where transaction value, information sensitivity, changed circumstances, session risk, cybersecurity risk, or authority level requires greater assurance.

Authentication establishes control of an identity credential. It does not establish organizational representation, Joint Operating Committee membership, access to information, authority to commit a party, or authority over a wallet.

Federated identity

Synallagi shall support identity federation so participating organizations can authenticate their personnel through approved identity providers. Each federation relationship shall define the trusted organization, accepted technical method, required identity assertions, minimum assurance, attribute ownership, provisioning signals, incident notification, review, suspension, termination, and fallback procedures.

Federation establishes controlled trust in authentication assertions. Synallagi retains authority over Joint Operating Committee admission, representation, role, information scope, duties, market participation, wallet authority, and business authority.

Joint Operating Committee membership

Joint Operating Committee membership shall be a governed relationship among an identity, a represented organization, and a Joint Operating Committee. It shall identify the sponsor, basis of membership, effective dates, status, approved roles, duties, information scope, authority, and applicable agreements.

Membership shall be reviewed or revoked when relevant circumstances change, including termination or suspension of the person's organizational relationship, expiry or termination of a contract, change in pooling assignment, acquisition or disposition of a working interest, withdrawal or suspension of a partner, change in agreement or decision rules, change in assigned duties or professional qualifications, or a security incident affecting the person or represented organization.

Removing one Joint Operating Committee assignment shall not unnecessarily remove unrelated assignments held by the same identity. Conversely, continued employment shall not preserve access derived from an expired Joint Operating Committee assignment.

Roles, duties, privileges, and information entitlements

A business role identifies a recognized position such as working-interest representative, production engineer, controller, auditor, formation specialist, transaction designer, wallet administrator, marketplace participant, or Material Balance Report reconciliation specialist.

A duty identifies a coherent responsibility such as preparing an Authorization for Expenditure, reviewing a voucher, approving a work order, reconciling production, administering security, certifying access, qualifying a market participant, or reviewing settlement evidence.

A privilege permits a defined application or application programming interface action. An information entitlement limits that privilege to specific records and resources. Synallagi application programming interfaces are private and directly available only to licensed developers, approved user-community participants, service providers, and authenticated runtime integrations. Public users receive only the compiled or runtime application functions intentionally exposed to them.

Synallagi shall grant access through governed assignments rather than direct, undocumented grants to individuals. Stable duties should be reusable across organizations and Joint Operating Committees. Dynamic context such as Joint Operating Committee, property, well, agreement, working interest, market, wallet, authority amount, and assignment period shall not be hidden inside an uncontrolled proliferation of static role names.

Data classification and information boundaries

The existing distinction between producer information and partnership information remains important but is not sufficient for the full Synallagi environment. Information shall be classified according to ownership, contractual rights, sensitivity, regulatory obligations, operational impact, cybersecurity risk, market impact, intellectual property status, and permitted disclosure.

The classification model shall address at least:

  • producer-private information;
  • Joint Operating Committee and partnership information;
  • pooled Joint Operating Committee and externally administered information;
  • property, well, production, and technical information;
  • agreements and working-interest information;
  • accounting, voucher, Authorization for Expenditure, order, payment, revenue, and settlement information;
  • service-provider and supplier information;
  • research, knowledge, and intellectual property;
  • marketplace-confidential information;
  • wallet, blockchain, stablecoin, and crypto-asset participation information;
  • personal information;
  • regulated or legally restricted information;
  • cybersecurity-sensitive information; and
  • information approved for public release.

Access to one classification shall not imply access to another. Participation in a Joint Operating Committee shall not provide access to a producer's unrelated properties, strategy, private analysis, correspondence, or other confidential information. Similarly, information available within a Joint Operating Committee shall not be published or used in a marketplace without separate disclosure authority.

Business authority

The technical ability to operate a function shall not be treated as authority to make a business commitment. Synallagi shall represent authority independently and may constrain it by represented organization, Joint Operating Committee, agreement, transaction type, property, well, project, market, wallet, settlement instrument, monetary amount, working-interest threshold, voting requirement, professional discipline, transaction stage, effective period, and normal or emergency conditions.

Material actions shall be denied when authority is absent, expired, insufficient, ambiguous, inconsistent with the represented party, or inconsistent with the required accountability.

Delegation

Delegation enables continuity during absences, workload changes, emergencies, and temporary assignments. Every delegation shall identify the delegator, delegate, represented organization, operating context, delegated duties, delegated authority, excluded duties, limits, reason, start and end time, approving authority, conflict assessment, notification recipients, and revocation status.

A delegation shall not exceed the delegator's authority, bypass an applicable conflict rule, transfer unrelated privileges, or conceal accountability. Delegated access shall expire automatically and remain fully auditable.

Segregation of duties and conflicts

Synallagi shall prevent, detect, and manage assignment conflicts, transaction conflicts, and representation conflicts.

Examples include preparing and finally approving the same material transaction; requesting and provisioning one's own access; administering security and independently certifying the resulting access; acting for multiple parties in the same negotiation without an approved arrangement; controlling a wallet and approving a related settlement without independent review; or designing a market transaction and independently certifying its disclosure.

Where a conflict may be accepted, the exception shall identify its owner, rationale, duration, affected duties, risk, compensating control, reviewer, and expiry.

Access request and provisioning

An access request shall state the business purpose, requested role or duty, represented organization, Joint Operating Committee, information scope, authority, duration, sponsor, and required approvers. Synallagi shall evaluate the request against existing access, conflicts, sensitive privileges, qualifications, contracts, cybersecurity conditions, and policy.

Approved access shall be provisioned through controlled integration with Oracle and other required services. Synallagi shall reconcile approved access against actual access and investigate discrepancies.

Access lifecycle and revocation

Access shall remain valid only while all of its supporting relationships remain valid. Synallagi shall process joiner, mover, and leaver events and domain events such as assignment, novation, farmout, farmin, subsequent joint venture, Joint Operating Committee restructuring, pooling change, working-interest transfer, contract expiry, loss of qualification, market removal, wallet compromise, and security incident.

Revocation shall address roles, information grants, authority, delegations, sessions, credentials, pending approvals, owned work items, integration access, emergency assignments, wallet authority, and automated-agent access.

Access review and certification

Access shall be reviewed periodically and after material events. Reviews shall include identity and organizational relationship, Joint Operating Committee membership and representation, roles, duties, privileges, information entitlements, monetary and other authority, delegations, privileged access, emergency access, market access, wallet authority, service access, integration access, automated-agent access, conflicts, inactive access, unused access, and orphaned access.

Reviewers shall be sufficiently independent and knowledgeable to judge the access. Rejected access shall be removed within a defined period and verified.

Transaction and workflow controls

Authorization shall consider transaction state. Holding a duty does not permit an actor to perform an action at every stage of a process.

Recurring transaction designs shall be represented as governed templates. A template persists the generic roles, duties, workflow, information, controls, authority patterns, and audit evidence for a transaction type. Each use of the template supplies the participants, represented organizations, Joint Operating Committees, properties, values, dates, wallets, markets, and other context unique to that transaction.

For Authorizations for Expenditure, vouchers, Work Orders, purchase orders, job orders, production decisions, payments, marketplace transactions, stablecoin settlements, blockchain records, and other material processes, the specification shall define permitted initiators, required reviewers, authority thresholds, partner or voting requirements, incompatible actions, amendment rights, emergency procedures, required evidence, and final accountability.

Marketplace and external-party access

Each Synallagi marketplace shall define participant qualification, onboarding, disclosure rights, bidding or offering authority, conflict rules, commitment authority, signing, settlement, suspension, and removal.

Marketplace participation shall not provide implicit access to a participant's producer-private or Joint Operating Committee-confidential information. Information may cross from an operating context to a marketplace only under an explicit disclosure policy and attributable authority.

Service-provider and supplier access shall be bound to the employing organization, contract, Joint Operating Committee, work order, property, duty, qualification, and time period. Expiry of any required relationship shall trigger reevaluation or revocation.

Blockchain, stablecoins, wallets, and crypto-based asset participation

Synallagi may support blockchain records, stablecoin settlement, digital wallets, and crypto-based participation in oil & gas assets. These capabilities extend the Security and Access Control module because they affect identity, authority, ownership, financial reporting, settlement, disclosure, custody, and investor communication.

The system shall distinguish wallet control from beneficial ownership, market participation, voting rights, settlement authority, disclosure entitlement, and authority to receive Joint Operating Committee-level financial statements.

Where assets are securitized or represented through crypto-based instruments, Synallagi shall define:

  • participant qualification;
  • identity and wallet verification;
  • beneficial ownership evidence;
  • asset rights and restrictions;
  • disclosure entitlements;

Joint Operating Committee-level reporting obligations;

  • financial statement publication rules;
  • settlement authority;
  • stablecoin acceptance and reconciliation;
  • custody and transfer restrictions;
  • incident response for compromised wallets or keys;
  • audit evidence; and
  • regulatory or contractual constraints.

These capabilities should be developed in focused background pages before they are treated as final module requirements.

Privileged and emergency access

Security administration, role administration, policy administration, audit administration, wallet administration, market administration, and other privileged duties shall be separated from ordinary business activity and from independent review.

Emergency access shall be exceptional, strongly authenticated, narrowly scoped, time-limited, monitored, and reviewed promptly after use. Synallagi shall notify designated owners when emergency access is activated and shall retain the reason, actions, and resulting changes.

Services, integrations, and private application interfaces

Every service, integration, device, and automated process shall use a managed identity with a defined owner, purpose, privileges, information scope, credential lifecycle, and monitoring requirements. Credentials shall not be embedded in code or shared across unrelated integrations.

Application programming interface authorization shall enforce the same business and information policies as interactive use. An integration shall not acquire greater access merely because it operates outside the user interface.

Synallagi application programming interfaces are private. Direct access shall be limited to licensed developers, approved user-community participants, service providers, and authenticated runtime services. Compiled applications and user interfaces expose only the functions intentionally made available to their users.

Artificial Intelligence and automated agents

Artificial intelligence systems shall operate under identifiable workload identities and approved information scopes. Synallagi shall distinguish activity that is advisory, preparatory, submitted for approval, or autonomously executed.

An artificial intelligence system shall not infer organizational representation, commercial authority, wallet authority, market disclosure authority, or permission to disclose information. Material decisions and commitments shall remain subject to the same authority, conflict, authentication, and evidence requirements as human actions.

People, Ideas & Objects' intellectual property and Targeting Framework shall supply objectives and constraints for agentic activity. These guardrails must be translated into enforceable permissions, prohibited actions, escalation rules, monitored behaviour, and audit evidence. Prompt instructions alone are not sufficient control.

Cybersecurity, monitoring, and investigation

Synallagi shall treat cybersecurity as a core part of Security and Access Control. Monitoring shall detect suspicious authentication, anomalous access, excessive privilege, conflict violations, unexpected disclosure, compromised identities, privileged misuse, policy failures, unusual transaction activity, market manipulation signals, wallet compromise, integration abuse, and artificial intelligence misuse.

Synallagi shall record security and material business events sufficient to answer who or what acted, which organization is represented, in which Joint Operating Committee or operating context, what action is requested and performed, which resource and information were affected, which policy and authority applied, what changed, and how related events can be correlated.

Investigation access shall itself be controlled and audited.

Security incidents and recovery

Synallagi shall define procedures for compromised identities, unauthorized access, information disclosure, malicious or mistaken administrative changes, failed identity federation, unavailable authorization services, corrupted policy or audit information, compromised wallets, unauthorized market activity, artificial intelligence misuse, and integration abuse.

Response shall include containment, suspension or revocation, preservation of evidence, impact assessment, notification, recovery, restoration of trusted configuration, and post-incident improvement.

Privacy, retention, and information lifecycle

Personal and sensitive information shall be collected and used only for defined purposes and made available only to authorized parties. The specification shall identify ownership, stewardship, location or residency constraints, permitted disclosure, retention, legal hold, archival, and disposal requirements.

Security controls shall apply to exports, reports, analytics, attachments, integration copies, test environments, backups, artificial intelligence processing, blockchain records, marketplace records, and downstream systems.

Security administration and governance

Synallagi shall define accountable owners for identities, roles, duties, information, policies, Joint Operating Committees, authority templates, access certifications, conflicts, exceptions, audit, cybersecurity, markets, wallets, artificial intelligence guardrails, and security operations.

Changes to roles and policies shall be versioned and subject to impact analysis, conflict simulation, approval, testing, controlled deployment, reconciliation, and rollback. Delivered Oracle roles should be preserved where practical. Custom roles and policies shall follow governed naming, ownership, documentation, and review standards.

Oracle Cloud Enterprise Resource Planning

Oracle Cloud Enterprise Resource Planning provides standard capabilities for application privileges, job and duty roles, data roles and security contexts, security administration, access requests, access controls, access certification, and audit reporting. Synallagi shall use these capabilities where they accurately implement the required policy.

Synallagi may develop and deploy Java components within supported Oracle application-server environments where this forms part of the approved Synallagi architecture. Such components shall be maintained through controlled source, build, testing and deployment processes. Within the Security & Access Control module, extensions shall use or integrate with the authoritative Oracle and Synallagi identity, authorization, audit and security services. They shall not bypass those controls or depend upon undocumented Oracle product internals. Extensions to Oracle Fusion Cloud Applications shall use the extension and integration mechanisms supported for that service.

Synallagi-specific concepts including Joint Operating Committee membership, represented organization, pooling relationships, agreement scope, working interest, hyper-specialized duties, domain authority, delegation, marketplace participation, wallet authority, crypto-based asset rights, cybersecurity policy, and cross-organizational conflicts shall remain explicit domain concepts.

Standardized Security Components and Contextual User Assignments

Standardized and objective accounting information is fundamental to Synallagi. It allows each producer to trust that the potential unprofitability of its production is evaluated on the same basis as that of every other producer. The same principle shall apply to Security & Access Control.

Synallagi shall establish standardized security configuration components consisting of defined combinations of business roles, duties, privileges, data entitlements, authority limits and control requirements. Each component shall clearly identify the functions it permits, the information it exposes, the authority it conveys, the conflicts it creates, and its requirements for approval, delegation, certification and revocation. Producers and Joint Operating Committees may assign the appropriate combination of these components to an individual without independently redesigning that individual’s access. They will therefore understand the security, access-control and accountability consequences of every component assigned.

Synallagi shall not require a separate user identity for every producer, Joint Operating Committee, property, client or assignment in which an individual participates. Each person shall have one persistent Synallagi identity to which multiple, separately approved relationships and assignments may be attached. An engineer or geologist may therefore hold authorizations for several clients and Joint Operating Committees and may be authorized to initiate, review, recommend or approve specified classes of Authorizations for Expenditure within each assignment.

The standardized security component is reusable; the authority granted through it remains contextual. Qualification for a role, or assignment of that role in one organization, shall not automatically confer authority in another. Every authorization shall remain limited to the represented organization, Joint Operating Committee, property, agreement, transaction class, monetary threshold, effective period and other conditions under which it is granted. Synallagi shall evaluate the active context before permitting an action and shall prevent information or authority belonging to one assignment from carrying into another.

Measures and assurance

Security performance shall be measured. Measures should include time to provision and revoke access, expired access, orphaned access, excessive privilege, unused privilege, overdue certification decisions, unresolved conflicts, privileged access use, emergency access use, failed identity federation, anomalous access, denied access, audit coverage failures, wallet incidents, market access exceptions, artificial intelligence policy violations, and incident response time.

Requirements shall be verified through policy tests, role and information-access inspection, conflict simulation, lifecycle exercises, access-certification evidence, audit reconstruction, cybersecurity testing, failure testing, and periodic control assessment.

Open design decisions

The following topics should be developed through smaller background pages during subsequent detailed design and before the affected capabilities are approved for implementation:

  • complete role and duty catalogue;
  • market participation model;
  • blockchain and stablecoin settlement model;
  • wallet authority and beneficial ownership model;
  • crypto-based asset securitization;
  • Joint Operating Committee-level financial statement publication;
  • cybersecurity incident taxonomy;
  • artificial intelligence execution boundaries;
  • Targeting Framework access rules;
  • private application interface licensing controls;
  • revocation timing by event type; and
  • accounting firm participation in audit and assurance workflows.

Development Environment — Code Repository

Synallagi shall initially use Oracle Cloud Infrastructure DevOps Code Repositories as its canonical repository for approved specifications, scripts, source code and related development artifacts. Google Workspace shall remain the controlled collaborative environment. Approved supporting services may include Chrome Enterprise Premium, Gemini Enterprise and Google Voice, subject to applicable information-classification, access-control, licensing and security requirements. Working groups and confidential subject matter shall be separated according to information classification and authorized membership. Discussions and sensitive working material shall not automatically be committed to the code repository. A self-managed GitLab or another standards-based Git platform may be adopted later where documented requirements demonstrate that Oracle Cloud Infrastructure DevOps is insufficient.

Recommended information structure

  • Information class
  • Primary location
  • Access model
  • Published specification
  • Google Sites and OCI repository
  • Public or broadly readable
  • General user-community work
  • Dedicated Google Shared Drive
  • Entire approved community
  • Restricted working-group material
  • Separate Shared Drive for each group
  • Named group members only
  • Approved technical specifications and code
  • OCI DevOps repository
  • Repository-specific OCI IAM groups
  • Highly confidential strategy
  • Separately administered encrypted workspace
  • Minimum named individuals only
  • Informal discussions and meeting records
  • Appropriate Google Workspace location
  • Retained only where necessary

Technical Specification Conclusion

Synallagi organizational model depends on collaboration without surrendering the independence, information rights, authority limits, cybersecurity requirements, or accountability of participating organizations. Security and Access Control enables that model by connecting trustworthy identities to explicit representation, hyper-specialized duties, information, authority, markets, wallets, transactions, evidence, and accountability.

Industrial Command and Control supplies the business structure. Oracle Cloud Enterprise Resource Planning supplies important standard security capabilities. Synallagi supplies the Joint Operating Committee-aware, market-aware, transaction-aware, and asset-aware policy model that joins them.

Closing Section - Security and Access Control Target Architecture Brief

Implementation note for potential users

The complexity described in this module is not accidental. It reflects the level of control required for Synallagi to support Joint Operating Committees, working-interest participants, markets, service providers, cybersecurity, artificial intelligence, blockchain-supported transactions, stablecoin settlement, wallets, and crypto-based participation in oil & gas assets.

For potential users, the first response to this complexity should not be discouragement. The first response should be recognition that this is the nature of the problem being solved. Synallagi is not attempting to add an access-control layer to a conventional enterprise system. It is defining the trust, authority, accountability, and evidence model required for a new form of oil & gas administration.

Several factors make this practical.

Oracle Database and Oracle Cloud Enterprise Resource Planning are designed to manage large-scale, highly controlled, security-sensitive enterprise conditions. Synallagi expects to rely on Oracle technologies where they are the appropriate foundation for identity, data security, role administration, access certification, audit, transaction processing, and integration.

Oracle Services may be engaged to confirm product fit, subscription requirements, supported integration patterns, security responsibilities and implementation design. Their involvement should reduce the burden on our user community to translate every requirement into technical implementation detail.

Artificial intelligence will be relied upon heavily in the analysis, development, testing, verification, and implementation of these requirements. This changes the nature of our user community's work. Users and service providers no longer need to carry the full burden of technical decomposition in the way they might have had to do in prior generations of software development.

Their work remains essential, but it changes shape. Our user community and service providers must ensure that the user's interfaces are usable, that complex requirements can be presented and processed in understandable ways, and that the systems and procedures exist to verify that specified requirements have been completed as required.

Much of this work is not yet fully written or defined. Synallagi will create new positions, new service opportunities, and new combinations of human and artificial intelligence activity. The most effective division of labor among users, service providers, artificial intelligence systems, Oracle Services, and People, Ideas & Objects will have to be discovered, tested, refined, and governed over time. This work should begin now in the minds of our user community and service-provider community.

The complexity of the Synallagi specification establishes an important boundary. Agentic Artificial Intelligence tools, used casually by individual producer firms to automate selected organizational actions, cannot responsibly substitute for the architecture described in this module. Security and Access Control cannot be reduced to scattered Artificial Intelligence agents performing "some" actions inside an organization without the required identity, representation, authority, accountability, cybersecurity, audit, revocation, and governance structures.

Any producer proposing to solve these issues through isolated agentic automation should first be directed to this module. The appropriate and responsible approach is not to bypass institutional design, but to build the security, access, trust, and accountability framework that allows advanced automation to be used safely.

Synallagi's position is therefore clear: artificial intelligence is essential to the future of the system, but it must operate inside governed architecture. The purpose of this module is to define that architecture.

Conclusion

The complexity of the People, Ideas & Objects Synallagi Security & Access Control module is formidable. Much of that complexity becomes understandable, however, when considered against the demands of the oil & gas industry and the relationships conducted through Joint Operating Committees, markets and the service industry. These relationships provide the business purpose behind the module’s processes, authorities and controls.

What is new is the maturation of Information Technologies and the transition from an Internet of data to an Internet of Value. Digital assets, including stablecoins, are moving toward a material role in the financial system because they can provide greater convenience, faster settlement and new forms of programmable financial control. Their adoption will introduce substantial requirements for security, authority, custody, verification and accountability.

Expecting every producer to develop the systems needed to participate safely in this environment is unrealistic. Assume, for a moment, that one producer commits the time and resources required to implement the necessary infrastructure. Who in the oil & gas industry will it transact with? To use a familiar analogy: to whom will it fax a document when it is the only firm with a fax machine?

Would that producer restrict its business to organizations claiming to have implemented equivalent systems? How would it determine whether those organizations had identified and corrected the same critical cybersecurity vulnerabilities? How could it know that their controls, identities, authorities and transactions could be trusted?

Beyond the handful of producers potentially capable of reaching this level of security independently, what common Intellectual Property, architecture and operating standards would be available to everyone else? Would other firms implement the requirements completely, or would their systems introduce vulnerabilities, malicious software and unauthorized access routes into the shared operating environment? What happens when the inadequately protected organization is a major trading partner, Joint Operator or service provider?

This is the Security & Access Control module: essentially the doors, windows and controlled entrances to the house. Ten other Synallagi modules must be developed and implemented, and comparable questions can be raised about each of them. What would the fixed cost be if every producer attempted to develop these capabilities independently? Under such a fragmented development model, could the industry realistically obtain the savings and benefits defined by Synallagi—including the price maker strategy and the dramatic reduction of overhead costs?

Synallagi offers the industry a unique value proposition: a common level of security, reliability and accountability that individual implementations cannot provide across the North American oil & gas producer and service-industry population.

Oil & gas defines itself through partnerships. Producers pool lands into spacing units, share the financial burden of exploration and development, and conduct operations through Joint Operating Committees. Properties are rarely owned entirely by one producer. Even where they are, royalty holders remain, and most substantial field activities are performed by the secondary service industry. The isolated producer is not one of the industry’s successful operating models. Its information systems cannot reasonably be designed as though it were.

Financial integrity, trust and accountability should therefore be among the producer’s primary concerns. Unless the industry is rebuilt upon an uncompromising level of accountability, it will not regain the confidence of investors and lenders or obtain the full benefit of their participation.

People, Ideas & Objects followed a longitudinal sample of North American oil & gas producers for almost a decade. The original sample of approximately 23 producers is reduced through consolidation to 11. Throughout this period, substantial amounts of producer cash have been directed toward dividends, share buybacks and debt reduction rather than the reconstruction of the industry’s organizational and productive capabilities. Individual debt repayments may result from lender requirements, scheduled maturities, refinancing decisions, commodity-driven cash flow or voluntary balance-sheet management. The broader pattern nevertheless demonstrates that investors and lenders continue to demand financial discipline and the return or protection of their capital. Producers have largely responded by muddling through within their existing organizational structures instead of undertaking the reconstruction required to restore sustained profitability, performance and accountability.

Security & Access Control is therefore more than one module within the Synallagi ERP application. Like every Synallagi module, it represents the only reasonable, effective and economically valuable way to address the industry’s persistent inability to operate profitably and accountably.

Synallagi creates a cost-effective development environment in which one comprehensive application-development cost can be amortized across every barrel of oil equivalent of productive capacity in North America. The alternative is for the industry to fumble independently through another decade while Artificial-Intelligence agents rip and tear at organizations that were never adequately designed for the environment in which they now operate.

The industry can instead take control of reserve preservation, organizational performance and producer profitability by implementing this New Discipline. It is the practical means by which Organizational Latency can be reduced throughout North American oil & gas.

Thursday, September 03, 2026

Security & Access Control - People, Ideas & Objects and Oracle Corporation

Date: 2026-08-11

Purpose

Synallagi is based on Oracle Cloud Enterprise Resource Planning and the related capabilities of Oracle Cloud Infrastructure. This provides People, Ideas & Objects with a current, secure and extensible foundation for financial management, procurement, projects, identity, access governance, integration, data protection and cloud operations.

The purpose of this relationship is not to assemble every Oracle security product within Synallagi. It is to use Oracle capabilities where they satisfy the requirements of the application, extend them where Synallagi introduces a distinctive oil & gas operating requirement, and preserve a clear division of responsibility between the Oracle platform and the Synallagi business model.

Oracle provides many of the foundational controls needed to identify users, authenticate them, manage roles, govern access, protect data, monitor activity and maintain cloud services. Synallagi must determine how those controls apply to producers, Joint Operating Committees, service providers, suppliers, temporary working groups, properties, Work Orders, Industrial Command & Control and the other relationships through which the industry conducts its work.

This distinction is essential. Oracle can establish that a person is who they claim to be and provide the mechanisms through which access is granted or denied. Synallagi must establish what authority that person holds, within which organization and Joint Operating Committee, for which property and purpose, during what period, and subject to which business, financial, contractual and operational constraints.

A Capability-Led Architecture

The original People, Ideas & Objects specification is based substantially on the Oracle products available in August 2026. Many of the underlying requirements remain valid, but Oracle's product structure and the delivery of enterprise applications have changed materially.

Synallagi will therefore specify required capabilities before selecting individual Oracle products. A product or service will be included only where its function is required by the target architecture and is not already provided appropriately by Oracle Fusion Cloud Applications or Oracle Cloud Infrastructure.

The architecture will apply the following order of preference:

  • Use the security and business controls delivered with Oracle Fusion Cloud Applications.
  • Use Oracle Cloud Infrastructure identity, governance, integration and security services for Synallagi extensions and connected services.
  • Use Oracle database security and recovery capabilities for databases controlled by People, Ideas & Objects.
  • Introduce Oracle Fusion Middleware identity products only where an on-premises, hybrid or legacy integration requirement makes them necessary.
  • Implement a Synallagi capability where the requirement is specific to the oil & gas operating model and is not the responsibility of the Oracle platform.

This approach reduces duplication, avoids unnecessary product dependencies and allows Synallagi to benefit from Oracle's continuing cloud development without binding its business design to a historical product catalogue.

Identity Across Organizational Boundaries

Synallagi operates across organizational boundaries. Its users include employees and representatives of producers, members of Joint Operating Committees, service providers, suppliers, contractors, professional advisers and participants in temporary research or operating groups. A person may represent more than one organization or exercise different responsibilities in different circumstances.

Oracle Cloud Infrastructure Identity and Access Management identity domains provide the current foundation for authentication, identity lifecycle management, federation, single sign-on and secure application access across Oracle and non-Oracle services. Oracle Fusion Cloud Applications environments are provisioned with an identity domain that is integrated with Fusion Applications and can support authorized extensions and integrations. Oracle identifies a custom partner application connected to Fusion Applications as an appropriate extension use case.

Synallagi will use identity federation so that participating organizations can authenticate their people through trusted organizational identity providers where appropriate. Federation reduces duplicate credentials and allows an organization to remain responsible for the primary employment or affiliation status of its people. It does not, however, automatically grant access to Synallagi or membership in a Joint Operating Committee.

Admission to Synallagi requires a governed relationship among:

  • the person;
  • the organization represented by the person;
  • the trusted source of the person's identity;
  • the person's approved Synallagi participation;
  • any Joint Operating Committee or service-provider relationship;
  • the effective period of that relationship; and
  • the sponsor, approver or agreement under which participation is established.

Separate identity domains may be appropriate for distinct user populations, particularly non-employees and industry participants requiring separate administration, terms of use, profile management or consent. The final identity-domain design will be based on population, trust, administration, privacy, scale, subscription and operational requirements and will be confirmed with Oracle during implementation.

Identity Is Not the Industry Business Directory

An identity service should contain the information required to authenticate a person, associate that person with trusted identifiers and administer access. It should not become the master repository for every supplier profile, professional capability, calendar, commercial relationship or industry contact.

Synallagi will separate identity information from business-party information.

Oracle Fusion Cloud Procurement and Oracle Supplier Portal provide current capabilities for supplier registration, supplier-maintained profiles, contacts, products and services, user provisioning and controlled supplier access. The Resource Marketplace and other Synallagi capabilities will add the industry-specific descriptions, qualifications, availability, performance evidence and relationships needed by producers and Joint Operating Committees.

This separation allows a supplier or service provider to maintain relevant business information without being permitted to alter the security decisions of a producer or Joint Operating Committee. It supports data minimization: identity systems retain the minimum information needed for trust and access, while authoritative business applications retain the richer information needed for transactions and operating relationships.

One User Experience Without Repeated Authentication

Users should be able to move among authorized Oracle Fusion Cloud Applications, Synallagi extensions and connected services without repeatedly entering credentials. Current identity domains, federation and token-based authentication replace the former dependence on desktop-oriented enterprise single sign-on products.

The experience must remain secure and convenient. Sign-on policies, multi factor authentication, adaptive security, device and network conditions, session controls and stronger verification for sensitive actions will be applied according to risk. A routine inquiry and a material change to financial authority should not necessarily require the same level of assurance.

Authentication establishes confidence in identity. Synallagi must still evaluate authorization for every material request. A successful sign-on must never be treated as authority to view every record or perform every function available through the application.

The Oracle Fusion Cloud Application Security Foundation

Oracle Fusion Cloud Applications provide the first layer of application security. The Security Console supports user and role administration, role analysis, role hierarchies, role assignments, privileges, data security policies and related security management. Oracle Cloud Enterprise Resource Planning applies a relationship among the user, the role and the applicable data context. Oracle summarizes this as who can do what on which data.

Synallagi will use delivered Oracle roles, privileges and data-security mechanisms where they correspond to the required business responsibility. Custom roles will be created only where the delivered design does not meet the requirement, and they will grant the minimum privileges necessary.

Oracle's delivered data contexts include structures such as business units, ledgers, data access sets, asset books, legal entities, intercompany organizations, project organizations and other enterprise structures. These controls will be used wherever they align with Synallagi's financial, procurement, project and organizational requirements.

A Joint Operating Committee and its property context introduce additional relationships that cannot be assumed to exist in every delivered Oracle security structure. Synallagi must therefore supplement Oracle application security with its own governed context. The two layers must operate together:

Oracle security determines whether the user may perform the underlying application function and access the applicable Oracle business data.

Synallagi determines whether the user may perform that function for the selected Joint Operating Committee, property, role, purpose, Work Order, command assignment and effective period.

Neither decision is sufficient by itself when an action crosses both layers.

Joint Operating Committee Context and Authority

The Joint Operating Committee is a central authority boundary within Synallagi. When a user enters a Joint Operating Committee workspace, the system must establish a signed and time-bounded operating context containing the selected property, participating organization, active role, command assignment, governing agreement, ownership version, information classifications and allowed capabilities.

Every material request must be evaluated against that context. The evaluation may include:

  • authenticated identity and current identity assurance;
  • organization and representation relationship;

Joint Operating Committee membership;

  • selected property and applicable agreement;
  • active role and command assignment;
  • delegated decision authority;
  • technical, operational and financial authority;
  • Work Order or other authorization;
  • record ownership and relationship;
  • information classification and Intellectual Property permission;
  • purpose of access;
  • effective date and time;
  • segregation-of-duties restrictions;
  • location, device or session risk where applicable; and
  • emergency or exceptional authority.

Changes to any of these conditions must be reflected promptly in access. If a person leaves an organization, a producer withdraws from a property, a command assignment ends, a Work Order closes or delegated authority is revoked, the related access must expire without depending on a manual review of every application screen.

This dynamic evaluation is the modern expression of the objective originally assigned to Oracle Entitlements Server. Oracle roles and Oracle Access Governance provide important parts of the solution. The complete decision remains a combination of Oracle controls and Synallagi's business context.

Industrial Command & Control

Industrial Command & Control establishes operational roles, reporting relationships, delegation, escalation and effective assignments among the people and organizations participating in work. Security & Access Control ensures that those assignments are reflected in access to information, decisions and application functions.

  • The two capabilities are related but must not be confused.
  • Identity confirms the person.
  • Industrial Command & Control establishes operational position and direction.
  • Joint Operating Committee governance establishes decision rights.
  • A Work Order authorizes participation, scope, funding and charging.
  • Security & Access Control permits the information and system actions required to exercise valid authority.

Availability of a person or capability does not grant operational authority. Operational authority does not automatically grant authority to spend. Permission to view a record does not grant authority to approve it. One person may hold several roles, but Synallagi evaluates the role being exercised for the particular action.

Oracle's identity and governance services reduce the technical effort required to administer users and access. They do not replace the research, user-community design and application development required to model effective command and collaboration across independent organizations.

Temporary Working Groups and Work Orders

For innovation to be dispersed broadly throughout the industry and become a major focus of scientific development, substantially more collaborative research is required. Producers must be able to contribute to working groups formed through ad hoc relationships that are temporary and have a defined short-term purpose.

These working groups are not Joint Operating Committees. They are not organized around the governance and operation of a jointly owned property, and an Authorization for Expenditure is generally inappropriate. Participants may instead contribute assets, facilities, data, Intellectual Property, specialist talent, services or cash. Those contributions may need to be valued to establish each participant's entitlement to the resulting research, knowledge, Intellectual Property or other output.

Synallagi must therefore recognize the working group as a distinct organizational construct. It must establish its purpose, participants, contributions, decision rights, confidentiality, authority, duration, output ownership, permitted use, accounting treatment and completion conditions without forcing the relationship into a Joint Operating Committee or conventional capital-project model.

In the assessment of People, Ideas & Objects, these working groups have largely ceased to exist. A principal cause is the accounting burden placed upon contributors and originators. Their unusual and temporary relationships produce repeated questions about how contributions are authorized, valued, recorded, shared, recovered and reported. The administrative burden can become so great that the initiative is no longer worth pursuing.

One of the two principal purposes of the Synallagi Work Order is intended to resolve this problem. The Work Order may govern a temporary research or innovation collaboration, or authorize work undertaken for a property or Joint Operating Committee. For a working group, it establishes the common record through which participation, contributions, valuation methods, budgets, cost sourcing, charging, rights to output, approvals and closure are defined.

Federated identities and supplier or capability profiles provide trusted information about prospective participants. The Work Order establishes the business basis for their participation, including scope, funding, contribution, cost sourcing, charging and effective period. Industrial Command & Control assigns the operational structure. Security & Access Control grants the minimum access required for each participant's work.

Temporary access must therefore be:

  • sponsored and approved;
  • linked to a specific purpose and organizational relationship;
  • limited to any relevant project, working group, Joint Operating Committee, property, records or functions;
  • effective for a defined period;
  • reviewed when the assignment changes;
  • automatically removed when the assignment or Work Order ends; and
  • retained in the audit evidence after the access itself expires.

Emergency access may be permitted where delay would create unacceptable operational, safety, environmental or financial risk. It must be time-limited, conspicuous, fully recorded and subject to prompt review and confirmation by the appropriate authority.

Identity Lifecycle and Delegated Administration

Access must follow the lifecycle of the person and the business relationship. Synallagi requires controlled processes for registration, sponsorship, verification, approval, provisioning, modification, suspension, recertification and removal.

Oracle Access Governance provides a current cloud-native foundation for identity orchestration, access requests, policy-based access, access reviews, access certification and remediation across cloud and on-premises systems. It integrates with Oracle Fusion Cloud Applications and can manage application accounts and role assignments.

Delegated administration is necessary because People, Ideas & Objects cannot maintain every participant's information centrally. Producers, suppliers and service providers should be able to maintain approved portions of their organizational and contact information and request access for their people. The receiving producer, Joint Operating Committee or People, Ideas & Objects authority retains control over what access is granted.

Delegation itself must be governed. A supplier administrator may manage eligible people from that supplier but must not assign internal producer roles, expand access beyond the supplier's permitted scope or approve the supplier's own exceptional privileges without independent control.

Access Requests, Reviews and Segregation of Duties

Oracle Access Governance and Oracle Fusion Cloud Risk Management provide current capabilities for access requests, access certification, sensitive-access analysis and segregation-of-duties controls. Preventive analysis can identify conflicting access before a requested role is provisioned. Periodic, event-based and targeted reviews can determine whether existing access remains necessary.

Synallagi will apply these capabilities to both conventional corporate responsibilities and the smaller, cross-company organizations formed through Joint Operating Committees.

Small organizations create a particular challenge because a limited number of people may perform several functions. Synallagi must identify material conflicts, prevent combinations that cannot be accepted and document compensating controls where complete separation is impractical. Compensating controls may include an independent approval, lower transaction limit, additional evidence, retrospective review, restricted duration or participation by another producer.

Oracle products can support internal control and provide compliance evidence, but their use does not make an organization compliant by itself. Compliance depends upon the complete design and operation of policies, responsibilities, controls, evidence, review and remediation.

Understanding Who, What, Why and How

The Security & Access Control strategy must explain more than whether access is technically allowed. Synallagi must preserve enough evidence to determine:

  • who performed or attempted the action;
  • which organization the person represented;
  • which role and authority were exercised;
  • which Joint Operating Committee and property were active;
  • what information, function or transaction is involved;
  • when and from what session the activity occurred;
  • why access is required;
  • which agreement, assignment, Work Order, decision or approval supported it;
  • what policy decision is made;
  • what result or change followed; and
  • whether an exception, conflict or override occurred.

Raw technical logs cannot establish all of this meaning. Oracle services can record authentication, role, application and database activity. Synallagi must connect those records to its business context, authority records and transaction history.

Audit evidence must be protected from inappropriate alteration and retained according to legal, regulatory, contractual and business requirements. Amendments correct or supersede prior information without erasing the record that was effective when the original action occurred.

Access analytics should identify excessive privileges, unusual activity, dormant accounts, repeated denials, conflicting roles, inappropriate administrator activity and access that no longer corresponds to a valid business relationship. Analytics and artificial intelligence may assist reviewers, but material access and remediation decisions remain governed, explainable and reviewable.

Information Classification and Confidentiality

Synallagi will protect information according to its ownership, business relationship, sensitivity and permitted purpose. Relevant classes include producer-private information, Joint Operating Committee information, service-provider working information, market-disclosure information, confidential technical and reserve information, financial information, personal information, strategy and Intellectual Property.

Classification must apply consistently to transaction processing, search, reporting, analytics, notifications, documents, exports, caches, training data and generated content. Moving information into a report, analytical model or artificial intelligence process must not weaken its original restrictions.

Oracle Fusion Cloud application security and data contexts will protect information held in delivered applications. Synallagi-controlled databases may additionally use Oracle Database security capabilities. Transparent Data Encryption protects information stored in database files and backups. Oracle Database Vault can restrict inappropriate privileged-administrator access. Data Redaction or application controls may be used where particular displayed values require protection.

Encryption at rest and in transit is a baseline requirement, but encryption alone does not determine who may see information after it is legitimately decrypted. Identity, authorization, context, classification, auditing and key management remain necessary.

Database Security, Monitoring and Configuration

Oracle Data Safe provides a current cloud service for database security assessment, user assessment, sensitive-data discovery, masking, activity auditing, alerts, security policies and centralized management of Oracle Database firewall controls for structured query language activity. It will be evaluated as the principal security-management service for Synallagi-controlled Oracle databases.

Oracle Audit Vault and Database Firewall may be appropriate where Synallagi requires centralized audit collection and database activity monitoring across on-premises, hybrid, Oracle and non-Oracle databases. It is not automatically required for Oracle Fusion Cloud Applications, where the underlying database is operated as part of Oracle's cloud service.

Database firewall controls operate through configured or learned policies. They should not be described as automatically knowing every statement that is valid for every user and application. Their effectiveness depends upon deployment architecture, policy quality, monitoring, exception handling and continued maintenance.

Configuration security will be based on approved baselines, controlled changes, environment separation, automated deployment where appropriate, security assessment, drift detection, remediation and evidence. A configuration-management service should not be assumed to reverse every incorrect change automatically. Oracle Data Safe, Oracle Cloud Infrastructure services and Oracle Enterprise Manager may each contribute depending upon which party operates the database or platform.

Backup, Recovery and Historical Information

Backup and recovery are business-continuity capabilities, not simply storage functions. The Synallagi recovery architecture must establish:

  • which information and services must be recoverable;
  • acceptable data loss and restoration time;
  • backup frequency and retention;
  • encryption and key availability;
  • administrative separation;
  • protection against deletion, compromise and ransomware;
  • regional and service-failure scenarios;
  • long-term retention requirements;
  • restoration testing; and
  • evidence that recovery objectives are being met.

For Oracle Cloud databases, Oracle Database Autonomous Recovery Service provides a current managed backup and recovery capability with enforced backup encryption and isolation of backup infrastructure. The final service selection will reflect the databases used by Synallagi and the applicable subscription and recovery requirements.

Historical query is separate from backup. Oracle Flashback Data Archive can preserve database changes for authorized historical access where it is appropriate to the data model. It does not replace backup, an application transaction history, immutable audit evidence or formal records management.

Extending Oracle Fusion Cloud Applications

The Synallagi requirements that are not delivered directly by Oracle Fusion Cloud Applications will be implemented through supported cloud configuration, extension and integration methods.

Oracle Visual Builder Studio supports application extensions and additional application interfaces within the Fusion Applications ecosystem. Oracle Integration and secured application programming interfaces support controlled information exchange and process coordination. These capabilities provide the technical means to develop Joint Operating Committee workspaces, Industrial Command & Control, Resource Marketplace interactions, Work Order relationships and other Synallagi functions while continuing to use Oracle applications as authoritative sources for the business information they own.

Extensions must not duplicate or bypass Oracle controls. They must preserve:

  • the authenticated user and active identity domain;
  • Oracle application roles and data access;
  • the selected Joint Operating Committee and property context;
  • source-system ownership of records;
  • transaction and approval controls;
  • information classification;
  • traceability across interfaces; and
  • the security effects of changes in either Oracle or Synallagi authority.

Configuration and extension designs must accommodate Oracle's cloud update lifecycle. Security-critical workflows and integrations will be tested against scheduled Oracle updates before production adoption.

Conditional Use of Oracle Fusion Middleware

Oracle continues to provide Oracle Identity and Access Management products for on-premises and hybrid environments. These products remain relevant where Synallagi must integrate legacy applications, locally operated directories or customer-controlled infrastructure. They are not the default foundation for a cloud-first Synallagi implementation.

Where such requirements exist:

  • Oracle Access Management may protect on-premises web applications.
  • Oracle Identity Governance may support provisioning and governance across locally operated systems.
  • Oracle Internet Directory or Oracle Unified Directory may provide directory services.
  • Oracle Unified Directory virtualization may present controlled views across existing directories.
  • Oracle Advanced Authentication and Oracle Adaptive Risk Management replace the former Oracle Adaptive Access Manager direction.
  • identity federation is provided as an integrated capability rather than requiring the former standalone Oracle Identity Federation architecture.

The former Oracle Enterprise Single Sign-On Suite, Oracle Identity Analytics and Oracle Total Recall names should not be used as target-architecture products. Their required capabilities are now met through current identity domains, Oracle Access Governance, Oracle Fusion Cloud Risk Management, current database services and Oracle Flashback technology.

Every middleware addition creates licensing, operation, patching, availability, integration and specialist-support obligations. Its inclusion must therefore be justified by an explicit requirement and confirmed with Oracle.

Development With Oracle and the User Community

Oracle's current platform substantially reduces the amount of foundational security technology that People, Ideas & Objects must develop. It does not remove the need for sustained design and research.

The most difficult questions concern how independent organizations should work together: how authority originates, how it is delegated, how temporary groups form, how costs and obligations are accepted, how operational direction is exercised, how trust is established and how accountability is preserved. Those questions must be resolved with producers, engineers, geologists, service providers, security specialists, auditors, legal advisers and Oracle Services specialists.

People, Ideas & Objects will use our user community to test these requirements through representative operating scenarios. Development costs can then be amortized across the producer community while each participating producer receives the benefit of the common architecture and accumulated industry learning.

Implementation Principles

The following principles govern the relationship between Synallagi and the Oracle platform:

  • Business authority is explicit and cannot be inferred solely from identity or organizational membership.
  • Every material action is evaluated in the correct Joint Operating Committee, property, organizational and temporal context.
  • Oracle-delivered controls are used before equivalent custom controls are developed.
  • Synallagi extensions preserve rather than bypass Oracle application security.
  • Identity information is separated from supplier, capability, contact and transaction information.
  • Access is limited to the minimum information and functions required for an approved purpose.
  • Temporary and delegated access has an owner, reason, effective period and automatic end condition.
  • Authority to view, decide, direct, perform, approve and spend remains distinguishable.
  • Segregation of duties and compensating controls are evaluated in the complete cross-company process.
  • Audit evidence connects technical activity with business purpose, authority and result.
  • Encryption, backup, recovery and historical access are designed as separate but coordinated controls.
  • Analytics and artificial intelligence do not weaken confidentiality, authority or accountability.
  • On-premises middleware is introduced only for a demonstrated hybrid or legacy requirement.

- Commercial availability, licensing and supported configurations are confirmed with Oracle before implementation commitment. 

- People, Ideas & Objects Intellectual Property ownership and permitted use are explicit, controlled, auditable and enforceable.

- The architecture is reviewed continuously as Oracle services and Synallagi requirements develop.

Current Oracle Direction

The Oracle product direction in this section is validated against Oracle documentation available in August 2026. At that time, the principal Oracle capabilities applicable to this architecture were:

  • Oracle Cloud ERP
  • Oracle Fusion Cloud Applications Security Console, application roles and data security;
  • Oracle Fusion Cloud Applications identity domains and Oracle Cloud Infrastructure Identity and Access Management;
  • Oracle Access Governance;
  • Oracle Fusion Cloud Risk Management, including access requests, access certifications and advanced access controls;
  • Oracle Fusion Cloud Procurement and Oracle Supplier Portal;
  • Oracle Visual Builder Studio and Oracle Integration;
  • Oracle Database encryption, Database Vault and Oracle Data Safe;
  • Oracle Audit Vault and Database Firewall where hybrid monitoring is required;
  • Oracle Database Autonomous Recovery Service; and
  • current Oracle Identity and Access Management middleware for justified on-premises or hybrid requirements.
  • Oracle's services will continue to change. Synallagi therefore treats these products as the present means of satisfying durable requirements, not as permanent substitutes for those requirements.
  • Oracle Reference Material
  • Oracle Fusion Cloud Applications Security Console
  • Oracle Fusion Cloud Applications data access
  • Oracle Fusion Cloud Applications identity domain for extensions
  • Oracle Cloud Infrastructure Identity and Access Management identity domains
  • Oracle identity-domain types
  • Oracle Access Governance
  • Oracle Access Governance integration with Fusion Cloud Applications
  • Oracle Fusion Cloud Risk Management advanced controls
  • Oracle Supplier Portal user provisioning
  • Oracle Visual Builder Studio
  • Oracle Integration
  • Oracle Data Safe
  • Oracle Data Safe activity auditing
  • Oracle Transparent Data Encryption
  • Oracle Data Redaction
  • Oracle Database Vault
  • Oracle Audit Vault and Database Firewall
  • Oracle Database Autonomous Recovery Service
  • Oracle Database Flashback technology