The record format for every disposition the engine produces. Records carry hash-chain fields so integrity can be verified independently, and reference the version of the controls in force at decision time, so past decisions can be reconstructed exactly.

[TODO: link the draft schema once the spec repository is public.]