# Source register

Accessed September 21, 2026.

| ID | Source | URL | Material use | Limitation |
| --- | --- | --- | --- | --- |
| SPI-SRC-001 | Open Contracting Data Standard, *Identifiers* | https://standard.open-contracting.org/latest/en/schema/identifiers/ | Supports the scheme-plus-identifier pattern and separation of legal name from durable organization identifier | Public contracting-data guidance, not a private vendor-master requirement, entity verification service or authorization rule. |
| SPI-SRC-002 | Global Legal Entity Identifier Foundation, *The Legal Entity Identifier* | https://www.gleif.org/en/organizational-identity/introducing-the-legal-entity-identifier-lei | Supports the bounded description of an LEI as a unique identifier linked to legal-entity reference data | Many providers have no LEI. An LEI does not prove contract, remittance, access, tax, insurance, ownership or performance facts. |
| SPI-SRC-003 | National Institute of Standards and Technology, *NIST Cybersecurity Framework 2.0: Quick-Start Guide for Cybersecurity Supply Chain Risk Management*, SP 1305 | https://csrc.nist.gov/pubs/sp/1305/final | Supports supplier lifecycle, requirements, roles, monitoring and termination concepts | Technology cybersecurity supply-chain guidance, not a universal facility-vendor identity standard or procurement conclusion. |

All three official sources were re-read as current public pages on September 21, 2026. The authored bridge is a self-storage operating method; no source endorses it or validates any fictional row.
