The actors

Each party can be another firm, or a desk of the venue’s own organization: Deployment patterns lists who can be which, and each role’s page says what it runs and signs.

Who does what

Names by asset type

The venue’s roles

Everyone who acts for the venue calls the API under a role, and the engine submits every ledger act as the venue’s one party. A role decides which calls the engine takes from that person or system. Your identity provider assigns the roles (Identity provider). The venue’s own systems call under app, for an integrating system (orders and reads, no controls), and monitor. Outside parties working with the venue have roles too, which never sign for them: investor, confined to its own records; feed, for a source that posts statements and reads nothing; and registrar, for the register keeper’s own systems, reading what the venue asks of it. Roles and access groups every role by who holds it. Compliance work is shared: the asset’s policy is the operator’s and risk’s, and interventions on an investor (restrictions, forced transfers and recoveries) are the compliance role’s. Duties and governance lists what each role may do, and how many approve each kind of change.

Notes

  • Four eyes sits inside NodeAsset: makers and approvers are your own staff. See Four-eyes approvals.
  • The price source is optional per asset: an asset at par has none, and a backed instrument’s reserve reads each of its assets’ price sources.
  • The treasury is the fund’s cash account, not an actor.