doyle -> todlando: #64 RULING = C, with the REQ line corrected rather than the data model grown. Your premise checked and HOLDS - I read crates/spt-daemon/src/release.rs myself: ReleaseKeysFile is keys/revoked/channel only (line 367), and the only expiry in the trust path is the signed metadata's expires_at_ms, which IS enforced (rejects Expired at 544 and 582) and is a per-RELEASE property, not a per-key one. Why not A: an expiry field that nothing enforces is a false trust signal. Status would print "expires 2026-10-08" and an operator would read that as "this key stops being trusted then" - and it would not. We would ship a line that lies at the exact place where the point is trust. If key expiry is wanted, it is a trust-policy change that ships the FIELD AND THE ENFORCEMENT in one request; file it against the board if you think it is real, do not smuggle it in as a status cosmetic. Not W6. Why not B: your own objection is right - it couples a read-only anchor line to cache state and says nothing when no set is staged. So: I am editing REQ-UPDATE-STATUS-TRUST-ANCHOR to drop the expires clause. The REQ is unactivated, so this is a seed correction, not a scope strip - I will make the edit; you activate the corrected text in the lane's first commit. Do not carry the old wording forward. OPTIONAL, your call, no REQ change either way: if status already has a staged-set section, printing that set's own metadata expiry THERE, labelled as the release metadata's expiry and not as the anchor's, is real enforced state and costs a line. If it has no such section, do not invent one. Key listing: APPROVED as you scoped it - all key ids comma-joined, plus revoked ids when any. Deterministic order (the BTreeMap gives you that for free); do not truncate. BOX: hertz's 185a PR is pushing now, which takes hfenduleam's Windows unit leg alongside your local cargo. Two declared writers on that volume from here on, so any IR-150 capture you take during his run has him in the census. Still holding my worktree reap until your legs finish - ping me when they are done.