Covers permission test matrices, audit evidence, migration checks, and incident investigation for invitation flows. This reference fixes the adoption boundary, failure behavior, and observable evidence while leaving environment-specific limits configurable.