{"record":{"id":"0e3e8d84582189dd","repo":"hyperledger/fabric","slug":"invalid-member-org-policy-for-collection-s","errorCode":null,"errorMessage":"invalid member org policy for collection '%s'","messagePattern":"invalid member org policy for collection '(.+?)'","errorType":"validation","errorClass":null,"httpStatus":null,"severity":"error","filePath":"core/chaincode/lifecycle/scc.go","lineNumber":843,"sourceCode":"\t\t}\n\t}\n\treturn nil\n}\n\n// validateCollectionConfigMemberOrgsPolicy checks whether the supplied collection configuration\n// complies to the given msp configuration\nfunc validateCollectionConfigMemberOrgsPolicy(coll *pb.StaticCollectionConfig, mspMgr msp.MSPManager) error {\n\tif coll.MemberOrgsPolicy == nil {\n\t\treturn errors.Errorf(\"collection member policy is not set for collection '%s'\", coll.Name)\n\t}\n\tif coll.MemberOrgsPolicy.GetSignaturePolicy() == nil {\n\t\treturn errors.Errorf(\"collection member org policy is empty for collection '%s'\", coll.Name)\n\t}\n\n\t// calling this constructor ensures extra semantic validation for the policy\n\tpp := &cauthdsl.EnvelopeBasedPolicyProvider{Deserializer: mspMgr}\n\tif _, err := pp.NewPolicy(coll.MemberOrgsPolicy.GetSignaturePolicy()); err != nil {\n\t\treturn errors.WithMessagef(err, \"invalid member org policy for collection '%s'\", coll.Name)\n\t}\n\n\t// make sure that the signature policy is meaningful (only consists of ORs)\n\tif err := validateSpOrConcat(coll.MemberOrgsPolicy.GetSignaturePolicy().Rule); err != nil {\n\t\treturn errors.WithMessagef(err, \"collection-name: %s -- error in member org policy\", coll.Name)\n\t}\n\n\tmsps, err := mspMgr.GetMSPs()\n\tif err != nil {\n\t\treturn errors.Wrapf(err, \"could not get MSPs\")\n\t}\n\n\t// make sure that the orgs listed are actually part of the channel\n\t// check all principals in the signature policy\n\tfor _, principal := range coll.MemberOrgsPolicy.GetSignaturePolicy().Identities {\n\t\tvar orgID string\n\t\t// the member org policy only supports certain principal types\n\t\tswitch principal.PrincipalClassification {","sourceCodeStart":825,"sourceCodeEnd":861,"githubUrl":"https://github.com/hyperledger/fabric/blob/2736b63f8fd5932511d56fe68b7039d15977f7f6/core/chaincode/lifecycle/scc.go#L825-L861","documentation":"Wrapped EnvelopeBasedPolicyProvider.NewPolicy failure while compiling a collection's member org policy: the signature policy envelope is semantically invalid (e.g. bad version or principal) — the wrapped error has details.","triggerScenarios":"Thrown at core/chaincode/lifecycle/scc.go:843 when the library encounters an invalid state.","commonSituations":"See trigger scenarios.","solutions":["Fix the collection's signature policy per the wrapped error","Use OR-joined OR('OrgMSP.member', ...) style policies for collection members"],"exampleFix":null,"handlingStrategy":"validation","validationCode":null,"typeGuard":null,"tryCatchPattern":null,"preventionTips":[],"tags":[],"backgroundTag":null,"analyzedSha":"2736b63f8fd5932511d56fe68b7039d15977f7f6","analyzedAt":"2026-09-04T08:52:36.465Z","contentChangedAt":"2026-09-04T08:52:36.465Z","schemaVersion":2},"datasetVersion":"2026-09-08T10:18:20.063Z"}