Governance
Data-classification labels and lineage interfaces without implied enforcement.
Data descriptors
DataAsset carries an ID and optional classification. DataOperationRecord carries source/target data, transformation type, actor and timestamp. DataGovernanceManager provides classification/protection and lineage methods for integrations.
The current ProductionDataGovernanceManager returns the supplied classification or internal, plus the fixed text minimized+encrypted. It does not inspect, minimize, encrypt or persist the referenced data. track_data_lineage returns a clone of the supplied record; it does not establish a durable lineage graph.
Use the interfaces to connect actual policy, storage and cryptographic implementations. Treat returned labels as metadata unless the corresponding operation has separately produced verifiable evidence. A DataAsset containing PII is not itself an access-control rule.
Source reference
Exact declarations and source provenance · Package features and manifest.