CP-14
Sovereign Routing Engine
✅ Shipped
Picks lowest-latency ACTIVE tunnel in allowed jurisdictions. Prefers preferred_tunnel_id. Checks compliance before routing. BLOCK/DIRECT fallback modes.
Enterprise v4.4
CP-15
Sovereignty Attestation
✅ Shipped
HMAC-SHA256 signed attestations. Redis 7-year TTL. Verify endpoint for audit. 10,000 cap per tenant. SOVEREIGN_ATTEST_KEY env var.
Enterprise v4.4
CP-22
Cross-Border Transfer Rules
✅ Shipped
Adequacy decisions matrix: EU↔UK, EU↔CA, EU↔JP, EU↔CH. is_transfer_allowed() checks data class + source/dest jurisdiction. Non-adequate transfers blocked.
Enterprise v4.4