From 33f4d77af2e7460c9d86fa9719ab1e914f1cc55e Mon Sep 17 00:00:00 2001 From: Abiorh001 Date: Tue, 11 Aug 2026 20:23:20 +0100 Subject: [PATCH] docs(loop): reconcile initiative state --- .agent-loop/CURRENT_STATE.md | 5 +- .../CHUNK_MAP.md | 4 +- .../STATUS.md | 3 +- .../STATUS.md | 2 +- .../CHUNK_MAP.md | 66 +--- .../STATUS.md | 336 +++--------------- .../WS-CI-003-atomic-chunk-state/STATUS.md | 5 +- .../STATUS.md | 8 +- .../CHUNK_MAP.md | 2 +- .../WS-DB-001-v01-schema-baseline/STATUS.md | 18 +- .../CHUNK_MAP.md | 22 +- .../STATUS.md | 72 +--- .../CHUNK_MAP.md | 2 +- .../STATUS.md | 5 +- 14 files changed, 112 insertions(+), 438 deletions(-) diff --git a/.agent-loop/CURRENT_STATE.md b/.agent-loop/CURRENT_STATE.md index e90a98461..985bbdd9e 100644 --- a/.agent-loop/CURRENT_STATE.md +++ b/.agent-loop/CURRENT_STATE.md @@ -28,14 +28,14 @@ authority; these records do not grant or withhold it. | Initiative | Durable state on `main` | Remaining boundary | |---|---|---| -| [WS-ARCH-001](initiatives/WS-ARCH-001-modular-monolith-boundaries/STATUS.md) | Boundary foundation and the TASK/PROJECT public facts are merged through PRs #310, #314, and #315; no product behavior was activated | Implement only `02C`, the CHECKERS effective pre-submit public API, before ART preparation work resumes | +| [WS-ARCH-001](initiatives/WS-ARCH-001-modular-monolith-boundaries/STATUS.md) | Boundary foundation and the TASK/PROJECT public facts are merged through PRs #310, #314, and #315; no product behavior was activated | `02C` remains the next CHECKERS public-API boundary until merged; check open PRs for transient ownership | | [WS-ART-001](initiatives/WS-ART-001-immutable-artifact-storage/STATUS.md) | Active delivery initiative; verified ready-admission publication and hidden preparation are merged through `04C2` | Replace the non-executable 05-wave XINT/ART contracts with WS-ARCH-001 split public-API contracts before activation, Submission consumption, or live cutover | | [WS-AUTH-001](initiatives/WS-AUTH-001-workstream-authorization-service/STATUS.md) | Active delivery initiative; project-policy authority and unified compilation authorization are merged through `12I` | POL-03B consumes 12I next; remaining AUTH activation chunks wait for their exact hidden owner behavior | | [WS-CON-001](initiatives/WS-CON-001-contribution-compensation-boundary/STATUS.md) | Active delivery initiative; policy persistence and shared lifecycle audit are merged | Complete hidden services, contribution records, conditional awards, fulfillment, and reconciliation after named AUTH and REV gates | | [WS-AUTH-003](initiatives/WS-AUTH-003-module-boundary-recovery/STATUS.md) | AUTH boundary foundation and first public-capability proof through POL-03A are merged | Repair each touched AUTH capability through `authorization.api` and shrink the canonical AUTH ledger | | [WS-POL-003](initiatives/WS-POL-003-unified-project-guide-compilation/STATUS.md) | Active delivery initiative; hidden compilation custody and AUTH-12I activation are merged | Implement POL-03B authorized compilation persistence, then continue the reviewed dependency order | | [WS-REV-001](initiatives/WS-REV-001-review-revision-lifecycle/STATUS.md) | Active delivery initiative; queue admission and reviewer-lease persistence are merged through `03A2` | Continue packet, review, decision, revision, recovery, and release chunks after named ART, AUTH, and CON gates | -| [WS-QUAL-002](initiatives/WS-QUAL-002-behavior-ownership-catalogue/STATUS.md) | Active quality initiative; catalogue foundation `01` is merged | Add context evidence, then populate subsystem ownership before considering a changed-line-aware mutation gate | +| [WS-QUAL-002](initiatives/WS-QUAL-002-behavior-ownership-catalogue/STATUS.md) | Catalogue foundation `01` and local context evidence `02` are merged through PRs #297 and #303 | Populate subsystem ownership through `03A`-`03D` before completeness or changed-line-aware mutation work | | [WS-XINT-002](initiatives/WS-XINT-002-art-auth-end-to-end/STATUS.md) | Guide and pre-submit materialization activation is merged | Continue only remaining ART and AUTH activation edges required by the artifact delivery path | | [WS-XINT-003](initiatives/WS-XINT-003-rev-auth-end-to-end/STATUS.md) | REV authorization readiness through `02D` is merged | Later activation waves resume only against exact merged REV behavior | | [WS-POL-002](initiatives/WS-POL-002-post-submit-checker-foundation/STATUS.md) | Earlier post-submit foundations are merged; future guide inference is superseded by WS-POL-003 | Reframe remaining executor work against WS-POL-003; do not revive the old inference path | @@ -44,6 +44,7 @@ authority; these records do not grant or withhold it. | [WS-CI-001](initiatives/WS-CI-001-backend-ci-acceleration/STATUS.md) | Semantic distributed backend lanes complete | Treat further CI optimization as a fresh measured bounded change | | [WS-CI-002](initiatives/WS-CI-002-deterministic-agent-gates/STATUS.md) | `WS-CI-002-01` complete through PR #311; Agent Gates is deterministic per PR head | Preserve protected-branch review as the independent approval authority | | [WS-CI-003](initiatives/WS-CI-003-atomic-chunk-state/STATUS.md) | `WS-CI-003-01` complete | Require every chunk PR to land its final contract and initiative state atomically | +| [WS-DB-001](initiatives/WS-DB-001-v01-schema-baseline/STATUS.md) | v0.1 schema baseline complete through PRs #316 and #317 | Extend `0001_v01_baseline` only through future bounded migrations | | [WS-DOCS-001](initiatives/WS-DOCS-001-current-v01-documentation/STATUS.md) | Current v0.1 entry documentation complete | Keep current pages synchronized with merged capability changes | | [WS-DOCS-002](initiatives/WS-DOCS-002-workstream-definition/STATUS.md) | Canonical Workstream definition complete | Preserve terminology across current documentation and generated artifacts | | [WS-XINT-001](initiatives/WS-XINT-001-lifecycle-boundary-reconciliation/STATUS.md) | Planning reconciliation complete and closed | Owner initiatives implement the resulting boundaries | diff --git a/.agent-loop/initiatives/WS-ARCH-001-modular-monolith-boundaries/CHUNK_MAP.md b/.agent-loop/initiatives/WS-ARCH-001-modular-monolith-boundaries/CHUNK_MAP.md index bcecff1e7..e83c7b330 100644 --- a/.agent-loop/initiatives/WS-ARCH-001-modular-monolith-boundaries/CHUNK_MAP.md +++ b/.agent-loop/initiatives/WS-ARCH-001-modular-monolith-boundaries/CHUNK_MAP.md @@ -3,11 +3,11 @@ | Chunk | Goal | Risk | State | |---|---|---:|---| | `WS-ARCH-001-01` | Canonical module map, exact general edge ledger, public-API validator, and CI foundation | L1 | Complete | -| `WS-ARCH-001-HK1` | Post-02B durable-state and local-worktree housekeeping | L2 | In review; documentation and local operations only | +| `WS-ARCH-001-HK1` | Post-02B durable-state and local-worktree housekeeping | L2 | Merged PR #318; documentation and local operations only | | `WS-ARCH-001-02` | Coordination record for the split submission preparation/consumption capability sequence | L1 | Split; non-executable parent | | `WS-ARCH-001-02A` | TASKS task/assignment/predecessor and Submission public facts/ports | L1 | Merged PR #314 | | `WS-ARCH-001-02B` | PROJECTS locked guide and submission-policy public facts/ports | L1 | Merged PR #315 | -| `WS-ARCH-001-02C` | CHECKERS effective pre-submit plan and bounded execution-result public facts/ports | L1 | Next executable chunk; entry gate satisfied | +| `WS-ARCH-001-02C` | CHECKERS effective pre-submit plan and bounded execution-result public facts/ports | L1 | Next durable boundary until merged; open PRs show transient ownership | | `WS-ARCH-001-02D` | ART hidden preparation public API and private-edge migration | L1 | Proposed after 02A-02C | | `WS-ARCH-001-02E` | ART ready-admission consumption and binding public capability | L1 | Proposed after 02D | | `WS-ARCH-001-02F` | TASK-owned immutable Submission command and hidden composed transaction | L1 | Proposed after 02E | diff --git a/.agent-loop/initiatives/WS-ARCH-001-modular-monolith-boundaries/STATUS.md b/.agent-loop/initiatives/WS-ARCH-001-modular-monolith-boundaries/STATUS.md index 8bc9e12a2..f66ce9eeb 100644 --- a/.agent-loop/initiatives/WS-ARCH-001-modular-monolith-boundaries/STATUS.md +++ b/.agent-loop/initiatives/WS-ARCH-001-modular-monolith-boundaries/STATUS.md @@ -15,7 +15,8 @@ PROJECTS, CHECKERS, ART, AUTH, composition, and the final API clean cut. - Completed capability foundations: TASKS `02A` merged through PR #314 and PROJECTS `02B` merged through PR #315. -- Next implementation boundary: WS-ARCH-001-02C only. It exposes CHECKER-owned +- Current implementation boundary: WS-ARCH-001-02C only until it is merged. + Open pull requests show transient ownership. The chunk exposes CHECKER-owned effective-plan and bounded execution-result contracts without activating the contributor preparation route. - Repository housekeeping after PR #315 found no competing clean-up diff --git a/.agent-loop/initiatives/WS-ART-001-immutable-artifact-storage/STATUS.md b/.agent-loop/initiatives/WS-ART-001-immutable-artifact-storage/STATUS.md index a078e7048..29c043269 100644 --- a/.agent-loop/initiatives/WS-ART-001-immutable-artifact-storage/STATUS.md +++ b/.agent-loop/initiatives/WS-ART-001-immutable-artifact-storage/STATUS.md @@ -1,6 +1,6 @@ # Status: WS-ART-001 Immutable Artifact Storage -## Audited Durable State At 2026-08-02 +## Durable state on `main` ART-03A and every split ART-03B chunk through 03B4 are merged. The complete verified guide binding, materialization, classification, extraction, and hidden diff --git a/.agent-loop/initiatives/WS-AUTH-001-workstream-authorization-service/CHUNK_MAP.md b/.agent-loop/initiatives/WS-AUTH-001-workstream-authorization-service/CHUNK_MAP.md index 24e004d43..1d26d4454 100644 --- a/.agent-loop/initiatives/WS-AUTH-001-workstream-authorization-service/CHUNK_MAP.md +++ b/.agent-loop/initiatives/WS-AUTH-001-workstream-authorization-service/CHUNK_MAP.md @@ -9,12 +9,11 @@ The complete ART-facing catalogue and runtime dependency is now planned in entries in this file remain baseline identifiers only until that planning amendment is approved and its first reconciliation chunk merges. -## Rule +## Current use -Only one chunk may be active at a time. Do not start the next chunk until the -current chunk is implemented, verified, internally reviewed, externally -reviewed, merged by explicit human approval, followed by a memory update, and -stopped. +This map preserves merged outcomes and dependency order. It is not an active +queue or authorization source. Distinct initiatives and non-overlapping chunks +may proceed concurrently; open pull requests show transient ownership. ## Chunks @@ -85,7 +84,7 @@ stopped. These identifiers are exact future gates, not executable chunk contracts or automatic successors. AUTH materializes each contract only after its immutable -feature manifest exists, then requires a separate explicit start. +feature manifest exists and then uses the ordinary bounded contribution loop. | Chunk | Title | Risk | Status | |---|---|---:|---| @@ -234,53 +233,12 @@ WS-AUTH-001-PLAN merged has its matching AUTH activation and every unimplemented registered action still denies as planned. It does not backfill missing audit or idempotency evidence. -- `WS-POL-002-03` merged separately through PR #90 as `a7aa474`. This initiative - does not own it; post-merge memory completed through PR #94. `WS-POL-002-04` - remains inactive until the relevant project authorization cutover is complete - and the user explicitly starts it. +- `WS-POL-002-03` merged separately through PR #90 as `a7aa474`. Future guide + inference belongs to WS-POL-003; any remaining POL-002 executor work requires + a fresh bounded contract against current `main`. -## Stop condition +## Current boundary -AUTH-03 post-merge memory merged through PR #110 as `1864867`. The user -explicitly started parent AUTH-04. Required plan review split it before runtime -implementation. AUTH-04A merged through PR #111 as `90c9a28`, and its -post-merge memory merged through PR #112 as `7749f54`. The user explicitly -started AUTH-04B. Its repaired contract passed at `b5dceb1`; bounded -implementation and all required internal review tracks passed, and PR #113 -merged as `05a63c8` after Backend, Agent Gates, CodeRabbit, and explicit human -approval passed. AUTH-04B post-merge memory then merged through PR #114 as -`97cd0f5`, and the user explicitly started AUTH-05. Required plan review -rejected the combined contract before runtime edits and required 05A/05B. -The first 05A implementation review proved the original numeric ceiling -incompatible with readable typed/database privacy parity. Repaired 05A contract -review passed at `7cc6058`; the user subsequently replaced the line cap with -the semantic AUTH-05A boundary. Required reviews and checks passed, and explicit -human approval merged PR #115 as `8e1cde6` on 2026-07-14, followed by merged -post-merge memory. `WS-AUTH-001-CAT` then merged through PR #117 as `4c5d4fc` -after Backend, Agent Gates, CodeRabbit, and explicit human approval passed. The -CAT post-merge memory merged through PR #118 as `eba7e2b`; AUTH-05B then merged -through PR #119 as `ad71c7e`. AUTH-06 merged through PR #124 as `f599551`, its -signed automated memory completed, and the user explicitly started AUTH-07. -Required L1 review rejected the combined contract before runtime edits and -required 07A/07B. AUTH-07B merged through PR #130 as `90eca12`; AUTH-08 merged -through PR #131 as `aa0fdcd`. Parent AUTH-09 was split before implementation. -PR #140 merged the required XINT planning reconciliation as `d541521`. PR #132 -then merged seven identities, eleven static matrix memberships, eight planned -actions, and migration `0023` as `299363a`; signed memory stopped. The user -explicitly started AUTH-09B. PR #143 merged it as `053242b`; signed memory -stopped, and the user explicitly started AUTH-09C. PR #146 merged it as -`0ffdabf`; signed memory at `eeb3dc2` stopped. The user explicitly started -AUTH-09D. Required preimplementation review rejected the combined lifecycle -contract before runtime edits, so it was split into 09D-A and 09D-B. PR #148 -merged 09D-A as `99ae4c9`; signed memory `cf8a3e8` stopped and named 09D-B. The -user explicitly started 09D-B; exact contract `9ec6390b` passed required L1 -review. PR #152 merged it as `93dd392`; signed memory `912a6254` passed and -stopped. The user explicitly started the contributor foundation. Its first L1 -review rejected the underspecified contract before runtime edits; PR #153 later -merged its repaired implementation as `8d5eb15`. PR #157 merged AUTH-09E as -`42a89b2d`, and PR #158 merged the availability-neutral ART custody transfer as -`be2a79a2`, PR #160 merged the availability-neutral REV custody transfer as -`fe0e4492`, and PR #162 merged AUTH-PREP as `c559d556`; WS-XINT-002-01 later -reconciles the historical 25 ART rows to 22 planned ART actions, while all 19 -REV actions remain planned and inactive, and PREP adds no feature consumer. -POL-002-04 remains inactive pending its own gate and explicit start. +AUTH-12I is merged. POL-03B is its next product consumer. Later AUTH activation +chunks wait for the exact hidden owner behavior named above; no static row in +this map starts work automatically. diff --git a/.agent-loop/initiatives/WS-AUTH-001-workstream-authorization-service/STATUS.md b/.agent-loop/initiatives/WS-AUTH-001-workstream-authorization-service/STATUS.md index ae9956892..65cbb4783 100644 --- a/.agent-loop/initiatives/WS-AUTH-001-workstream-authorization-service/STATUS.md +++ b/.agent-loop/initiatives/WS-AUTH-001-workstream-authorization-service/STATUS.md @@ -1,287 +1,49 @@ -# Status: WS-AUTH-001 - Workstream Authorization Service - -WS-XINT-003-01 reconciles future REV activation custody and policy-writer -ownership. It changes no catalogue/runtime state: all registered REV actions -remain planned and four lifecycle actions remain unregistered. - -## Current status - -Planning merged through PR #91 as -`ad6d6444e497b76d7cb925f3b0999ed4b74a3dac` after required internal reviews, -Agent Gates, and Backend passed. CodeRabbit produced a walkthrough with no -actionable findings, then its final check was cancelled when the PR closed. -D4-D10 were explicitly approved and WS-AUTH-001-01 was started by the user on -2026-07-11. The final branch head `b5217e1` passed required internal reviews, -Agent Gates, Backend, and CodeRabbit, then merged through PR #93 as `772af1d` on -2026-07-11. The user separately started `WS-AUTH-001-02` on 2026-07-11. Its -preimplementation plan review passed, and the user explicitly approved D12's -exact production dependency changes. After a coverage-priority pause, the user -explicitly resumed AUTH in its separate worktree on 2026-07-12. Bounded runtime -implementation and repair review are complete on reviewed code SHA `47dd5a7`; -all required internal tracks passed and PR #107 merged as `060b780` on -2026-07-13. The user then explicitly started `WS-AUTH-001-03`. Its L1 -preimplementation plan review passed with conditions. Bounded implementation, -repair, and all required internal reviewer tracks now pass on reviewed code SHA -`8c5334c`, including external repair implementation `4923b67`. PR #108 merged -to `main` as `5c47aba`; that main revision is integrated into AUTH, whose prior -lifecycle reconciliation was reviewed at `a70b89c`. Backend, Agent Gates, and -CodeRabbit passed on final branch head `43ffbfe`, then explicit human approval -merged PR #109 to `main` as `f06532e` on 2026-07-13. AUTH-03 post-merge memory -merged through PR #110 as `1864867`. The user then explicitly started AUTH-04. -Required L1 plan review rejected the combined request/error/rate-control scope -before runtime edits and required a split. AUTH-04A's final repaired contract -passed both required preimplementation reviews at `f98bbfc`. Implementation -candidate `2a129f4` then entered required internal review. Valid OpenAPI, -logging, behavior-proof, and lifecycle-evidence findings were repaired; all -required tracks pass on production SHA `cdcaf77`, and final test-only head -`4fd6db9` passed exact-head confirmation for the additive scalar-context and -logging-state behavior-test repairs plus lifecycle evidence. -Backend, Agent Gates, and CodeRabbit passed on final branch head `36c4aa5`, then -explicit human approval merged PR #111 to `main` as `90c9a28` on 2026-07-13. -AUTH-04A post-merge memory merged through PR #112 as `7749f54`. The user then -explicitly started AUTH-04B; its required L1 preimplementation review rejected -the first activated contract before runtime edits. The second -repaired contract passed all required tracks at `b5dceb1`; bounded runtime -implementation and deterministic evidence are complete, and the candidate is -internally approved at final SHA `922778b`; reviewed production SHA is -`67484b5`. The Backend CI isolation repair passed exact review at `4fb846c`. -Final branch head `94fb2fe` passed Backend, Agent Gates, and CodeRabbit, then -explicit human approval merged PR #113 to `main` as `05a63c8` on 2026-07-14. -AUTH-04B post-merge memory merged through PR #114 as `97cd0f5`. The user then -explicitly started AUTH-05. Required L1 plan review rejected the combined -audit/idempotency contract before runtime edits and required children 05A and -05B. The first repaired AUTH-05A contract passed at `7a9023b`, but exact-SHA -implementation review demonstrated that closed privacy registries and readable -typed/SQL parity require a larger readable contract. The repaired contract -passed at `7cc6058`, but numeric hard stops repeatedly interrupted the atomic -typed/database parity boundary. The human replaced the line cap with AUTH-05A's -semantic scope, acceptance criteria, behavior evidence, and review gates; -runtime repair, deterministic evidence, and required reviews then completed. -Backend passed 949 tests at 82.77 percent global coverage, Agent Gates and -CodeRabbit passed, and explicit human approval merged PR #115 as `8e1cde6` on -2026-07-14. AUTH-05A post-merge memory then merged through PR #116 as `ab49b73`. -The user requested action/resource catalogue reconciliation before AUTH-05B. -That docs-only work passed required internal reviews, Backend, Agent Gates, and -CodeRabbit; explicit human approval merged PR #117 as `4c5d4fc` on 2026-07-14. -Its post-merge memory merged through PR #118 as `eba7e2b`. AUTH-05B's repaired -L1 plan, implementation, repair, focused evidence, and required review tracks -passed before explicit human approval merged PR #119 as `ad71c7e`. -AUTH-06 then established canonical actor profiles and identity links. Its -runtime, migration, compatibility, privacy, and API evidence passed required -internal and external checks; explicit human approval merged PR #124 as -`f599551` on 2026-07-15. Signed automated memory stopped with AUTH-07 requiring -a separate start. The user explicitly started AUTH-07 on 2026-07-15; discovery -and required L1 plan review are complete. The repaired AUTH-07A contract passed -all required tracks at `beb85ac`; implementation, repair, deterministic -evidence, and required internal review pass at `478a819`. The canonical -review/revision amendment then passed exact-head review at `160af8a`, with 74 -PermissionIds and 50 planned ActionIds. -That review rejected the combined AUTH-07 contract before runtime edits because -grant-backed/project APIs preceded their authority sources and the audit/API -ownership files were incomplete. Parent AUTH-07 is now split into 07A catalogue -and audit parity, followed by 07B kernel and actor self-action cutover. AUTH-07A -merged through PR #126 as `e9d72a1`; signed schema-v2 state verified that merge, -and the user explicitly started AUTH-07B. Its required L1 preimplementation -review passed with conditions. Implementation, deterministic evidence, review -repair, and all required internal reviewer tracks passed, then PR #130 merged -as `90eca12`. Signed schema-v2 memory verified that merge and stopped at -AUTH-08. The user explicitly started AUTH-08. Its inherited L1 contract failed -initial security/architecture, QA/product, and senior/CI/docs review before -runtime edits. The repaired contract passed all required preimplementation -tracks at `cbe7c6c`; bounded AUTH-08 implementation later merged through PR #131 -as `aa0fdcd`. AUTH-09 was split before runtime implementation. PR #140 merged -the authoritative AUTH XINT reconciliation as `d541521`; PR #132 then merged -AUTH-09A as `299363a`. Signed memory stopped, and the user explicitly started -AUTH-09B from that trusted head. Its bounded implementation, external-review -repair, coverage repair, and required checks passed before PR #143 merged as -`053242b`. Signed memory stopped, and the user explicitly started AUTH-09C. -Its bounded implementation and external repair passed before PR #146 merged as -`0ffdabf`; signed schema-v2 memory at `eeb3dc2` recorded completion and stopped. -The user explicitly started AUTH-09D. Required L1 preimplementation review -rejected the combined lifecycle contract before runtime edits, so the parent was -split into 09D-A and 09D-B. After bounded external repair and exact-head review, -PR #148 merged AUTH-09D-A as `99ae4c9`; signed schema-v2 memory `cf8a3e8` -recorded the stopped gate and named 09D-B. The user explicitly started 09D-B -from that trusted head. Exact contract `9ec6390b` passed required L1 -preimplementation review. Implementation, deterministic proof, required -internal review, and external checks passed before PR #152 merged as -`93dd392`; signed memory `912a6254` stopped and named the contributor -foundation. The user explicitly started that chunk; exact contract `2a21166d` -passed required L1 review. Initial exact-SHA implementation review found -diagnostic-privacy and proof gaps; bounded repair and deterministic evidence are -complete, and exact code SHA `4d1fc507` passed all nine internal tracks. PR #153 -merged the contributor foundation as `8d5eb15` on 2026-07-19. No service caller -or consumer feature action is active. - -## Current planning boundary - -`WS-AUTH-001-12` planning is merged. Required L1 preimplementation review -rejected the inherited combined runtime contract before application-code edits. -The repaired planning parent records 12A through 12H, 12B2, and the later 12I -unified compilation gate. The former 12D2 path is superseded by merged -WS-XINT-003-02A/02B. All nine exact-plan reviewer tracks passed after -action-custody, canonical-lineage reuse, and fixed-service setup-run binding -findings were repaired. - -## Current implementation state - -No AUTH implementation chunk is declared active in durable memory. PR #298 -merged the unified `WS-POL-003` dependency reconciliation, and PR #299 merged -its first contract chunk. Remaining AUTH runtime chunks follow their exact -merged POL, ART, XINT, REV, and downstream dependencies. -The concise new 12I/12B2/12F4/12G/12H records are dependency skeletons, not -implementation authority; each requires a then-current executable contract -with explicit path scope, commands, and named reviewers before human start. - -Open pull requests, not this file, are the transient review view. - -## Chunk status - -| Chunk | Status | Branch | PR | Notes | -|---|---|---|---:|---| -| `WS-AUTH-001-PLAN` | Merged | `authorization-service` | #91 | Merged as `ad6d644`; D4-D10 later approved. | -| `WS-AUTH-001-01` | Merged | `codex/ws-auth-001-01-adopt-authorization-baseline` | #93 | Authorization baseline, Contributor terminology boundary, scanner, and repository contracts; merged as `772af1d`. | -| `WS-AUTH-001-02` | Merged | `codex/ws-auth-001-02-verified-issuer-token` | #107 | Merged as `060b780`; reviewed code SHA `47dd5a7`. | -| `WS-AUTH-001-03` | Merged | `codex/ws-auth-001-03-legacy-actor-classification` | #109 | Merged as `f06532e`; reviewed code `8c5334c`; final branch head `43ffbfe`. | -| `WS-AUTH-001-04` | Split | `codex/ws-auth-001-04-request-api-controls` | - | Parent split before runtime implementation. | -| `WS-AUTH-001-04A` | Merged | `codex/ws-auth-001-04-request-api-controls` | #111 | Merged as `90c9a28`; production review `cdcaf77`; final branch head `36c4aa5`. | -| `WS-AUTH-001-04B` | Merged | `codex/ws-auth-001-04b-postgres-rate-controls` | #113 | Merged as `05a63c8`; production review `67484b5`; final branch head `94fb2fe`. | -| `WS-AUTH-001-05` | Split | `codex/ws-auth-001-05-authority-evidence` | - | Parent split before implementation into 05A and 05B. | -| `WS-AUTH-001-05A` | Merged | `codex/ws-auth-001-05-authority-evidence` | #115 | Merged as `8e1cde6`; reviewed code `ea16fd8`; final branch head `d023952`. | -| `WS-AUTH-001-CAT` | Merged | `codex/ws-auth-001-action-catalogue-reconciliation` | #117 | Merged as `4c5d4fc`; final branch head `5b4ec96`. | -| `WS-AUTH-001-05B` | Merged | `codex/ws-auth-001-05b-idempotency-invalidation` | #119 | Merged as `ad71c7e`; reviewed runtime SHA `e083890`. | -| `WS-AUTH-001-06` | Merged | `codex/ws-auth-001-06-canonical-actor-profile` | #124 | Merged as `f599551`; final PR head `4a2193f`. | -| `WS-AUTH-001-07` | Split | `codex/ws-auth-001-07-authorization-kernel` | - | Required L1 review rejected the combined contract before runtime edits. | -| `WS-AUTH-001-07A` | Merged | `codex/ws-auth-001-07-authorization-kernel` | #126 | Merged as `e9d72a1`; 74 permissions, 50 planned actions, and action-aware audit parity only. | -| `WS-AUTH-001-07B` | Merged | `codex/ws-auth-001-07b-deny-default-kernel` | #130 | Merged as `90eca12`; signed memory passed. | -| `WS-AUTH-001-08` | Merged | `codex/ws-auth-001-08-bootstrap-admin-grants` | #131 | Merged as `aa0fdcd`; signed memory passed. | -| `WS-AUTH-001-XINT` | Merged | `codex/ws-auth-001-xint-reconciliation` | #140 | Merged as `d541521`; signed schema-v2 memory passed. | -| `WS-AUTH-001-09` | Split | - | - | Split into 09A through 09E before runtime implementation. | -| `WS-AUTH-001-09A` | Merged | `codex/ws-auth-001-09-actor-state-service-actors` | #132 | Merged as `299363a`; signed memory passed. | -| `WS-AUTH-001-09B` | Merged | `codex/ws-auth-001-09b-controlled-service-provisioning` | #143 | Merged as `053242b`; signed memory passed. | -| `WS-AUTH-001-09C` | Merged | `codex/ws-auth-001-09c-actor-identity-admin-reads` | #146 | Merged as `0ffdabf`; signed memory `eeb3dc2` passed and stopped. | -| `WS-AUTH-001-09D` | Split | `codex/ws-auth-001-09d-actor-identity-lifecycle` | - | Required L1 review rejected the combined contract before runtime edits. | -| `WS-AUTH-001-09D-A` | Merged | `codex/ws-auth-001-09d-actor-identity-lifecycle` | #148 | Merged as `99ae4c9`; signed memory `cf8a3e8` passed and stopped. | -| `WS-AUTH-001-09D-B` | Merged | `codex/ws-auth-001-09d-b-identity-link-lifecycle` | #152 | Merged as `93dd392`; signed memory `912a6254` passed and stopped. | -| `WS-AUTH-001-CONTRIBUTOR-FOUNDATION` | Merged | `codex/ws-auth-001-contributor-foundation` | #153 | Merged as `8d5eb15b`; signed memory `66ab58d` passed and stopped. | -| `WS-AUTH-001-09E` | Merged | `codex/ws-auth-001-09e-fixed-service-runtime-admission` | #157 | Merged as `42a89b2d` on 2026-07-20. | -| `WS-AUTH-001-ART-CUSTODY` | Merged | `codex/ws-auth-001-art-custody` | #158 | Merged as `be2a79a2` on 2026-07-20; all 25 ART actions remain planned. | -| `WS-AUTH-001-REV-CUSTODY` | Merged | `codex/ws-auth-001-rev-custody` | #160 | Merged as `fe0e4492` on 2026-07-20; all 19 REV actions remain planned. | -| `WS-AUTH-001-PREP` | Merged | `codex/ws-auth-001-prep` | #162 | Merged as `c559d556` on 2026-07-21; adds no feature consumer or activation. | -| `WS-AUTH-001-10` | Completed through children | `codex/ws-auth-001-10-project-role-grants` | #168 | Planning split merged; 10A, 10B1, 10B2, and 10C later merged through PRs #170, #175, #178, and #194. | -| `WS-AUTH-001-11` | Planning split merged | `codex/ws-auth-001-11-project-read-cutover` | #201 | Exact hard-cutover inventory split into 11A, 11B, 11C1, and 11C2. | -| `WS-AUTH-001-11A` | Merged | `codex/ws-auth-001-11a-project-read-catalogue` | #208 | Registered the project-read catalogue and migration `0035`; no activation. | -| `WS-AUTH-001-11B` | Merged | `codex/ws-auth-001-11b-project-identity-context` | #214 | Project identity and self authorization-context hard cutover; merged as `033654ac`. | -| `WS-AUTH-001-11C1` | Merged | `codex/ws-auth-001-11c1-setup-diagnostic-reads` | #216 | Setup-diagnostic read hard cutover merged as `2965a9f9` on 2026-07-28. | -| `WS-AUTH-001-11C2` | Merged | `codex/ws-auth-001-11c2-effective-policy-active-guide-reads` | #221 | Effective-policy and active-guide read cutover merged as `3fc323d7` on 2026-07-29. | -| `WS-AUTH-001-12` | Planning split merged | `codex/ws-auth-001-12-project-mutation-cutover` | #224 | Combined runtime contract rejected; planning parent split into 12A-12H plus 12B2/12D2 before code. | -| `WS-AUTH-001-12A` | Merged | `codex/ws-auth-001-12a-project-mutation-catalogue` | #226 | Exact 18-action planned catalogue, typed resource/PREP scope, and migration `0041`; merged as `64dd9c98` with zero activation. | -| `WS-AUTH-001-12B` | Merged | `codex/ws-auth-001-12b-project-setup-service` | #227 | Fixed project-setup service identity and planned matrix only; zero activation and no actor/link seed. | -| `WS-AUTH-001-12B2` | Proposed | - | - | Setup-ledger activation after hidden POL-04A; POL-04B owns the live setup-service cutover. | -| `WS-AUTH-001-12C` | Merged | `codex/ws-auth-001-12c-project-create` | #229 | System-scoped project creation cutover merged as `67f2c14b`. | -| `WS-AUTH-001-12D` | Merged | `codex/ws-auth-001-12d-guide-draft-source` | #232 | Draft guide and source metadata mutation cutover merged as `99dc0b34`. | -| `WS-AUTH-001-12D2` | Superseded | - | #248 | XINT-003-02A/02B own immutable review/revision policy lineage and the sole authorized mutation path; 02B merged as `25fc27c4`. | -| `WS-AUTH-001-12E` | Merged; transitional | `codex/ws-auth-001-12e-guide-sufficiency` | #263 | Merged as `b510bc4f`; projection custody remains reusable, but the standalone inference entry point becomes unreachable at POL-04B and is deleted at POL-08. | -| `WS-AUTH-001-12F` | Planning split merged | `codex/ws-auth-001-12f-submission-artifact-policy` | #283 | Combined contract failed required L1 preimplementation review; parent activates nothing and delegates to 12F1-12F4. | -| `WS-AUTH-001-12F1` | Merged | `codex/ws-auth-001-12f1-submission-policy-foundation` | #286 | Submission-policy PREP, replay, provenance, and audit custody foundation merged as `5a4186cc`; zero activation. | -| `WS-AUTH-001-12F2` | Merged | `codex/ws-auth-001-12f2-manual-submission-policy` | #292 | Governed Project Manager append-only manual-draft create/update cutover merged as `81f281bd`. | -| `WS-AUTH-001-12F3` | Merged; transitional | `codex/ws-auth-001-12f3-service-derivation` | #295 | Merged as `99c0aaf0`; authority/provenance is reused, while its separate inference entry point is removed at POL-04B. | -| `WS-AUTH-001-12I` | Merged | `codex/ws-auth-001-12i-unified-compilation-activation` | #312 | Exact Project Manager request/recovery and fixed project-setup execution activation merged as `98eae13e`; POL remains hidden until 03B. | -| `WS-AUTH-001-12F4` | Proposed | - | - | Activates approval of the stored unified pre-submit component; no inference. | -| `WS-AUTH-001-12G` | Proposed | - | - | Activates deterministic stored post-submit projection; zero model calls. | -| `WS-AUTH-001-12H` | Proposed | - | - | Activates only a complete approved unified guide lineage. | -| `WS-AUTH-001-13` | Proposed | - | - | Task management and assignment cutover. | -| `WS-AUTH-001-14` | Proposed | - | - | Submission/checker/audit visibility cutover. | -| `WS-AUTH-001-15` | Proposed | - | - | Remaining internal service and obsolete authority removal. | -| `WS-AUTH-001-16` | Proposed | - | - | Conformance and live proof. | - -Feature-gated registration and activation chunks are enumerated in -`CHUNK_MAP.md` and `ACTIVATION_CUSTODY.md`. Actions remain inactive until their -bounded implementation and required evidence are reviewed and human-merged; -planning artifacts do not activate or lock work. - -## Blockers - -AUTH-09C has no remaining blocker. PR #146 merged as `0ffdabf`; PR #148 merged -AUTH-09D-A as `99ae4c9`; and PR #152 merged AUTH-09D-B as `93dd392`. Signed -memory `912a6254` passed and stopped. The user explicitly started the -contributor foundation. Its first L1 review rejected an underspecified -identity-link race, migration diagnostic, resource-lock, clean-cut, and CI -contract before runtime edits. Exact repaired contract `2a21166d` passed every -required L1 track. Initial implementation candidate `e41c33c0` failed privacy, -proof, docs, and evidence review. Bounded repair and deterministic evidence are -complete; exact code SHA `4d1fc507` passed all nine internal tracks. PR/external -checks are current and aggregate coverage remains mandatory in Backend. -The user explicitly started AUTH-09E after contributor foundation PR #153 and -signed memory completed. Its first preimplementation review rejected missing -verification commands and an overbroad feature-resource revalidation claim. -The refreshed contract limits this chunk to AUTH-owned service authority -resolution/revalidation, defers feature-row recomposition to later activation -chunks, and passed all nine required L1 tracks. Runtime implementation is -merged through PR #157 as `42a89b2d`; all feature actions remain planned. - -The four proposed REV lifecycle actions and review-evidence binding action are -blocked on complete feature-owned typed manifests. REV fixed services are also -blocked on exact identity-to-ActionId contracts. These are deliberate -registration gates, not reasons to weaken AUTH or invent catch-all authority. - -AUTH-10 through AUTH-15 require exact action enumeration before each starts. -AUTH-10 additionally owns the clean cut across the typed `ProjectRole`, audit, -and idempotency contracts plus the current PostgreSQL validators recreated by -migration `0022`, removing obsolete `ProjectRole.BOTH` and replacement evidence. -AUTH-09B owns migration `0024` for service-link verification timestamp -semantics, ART owns `0025` for the ArtifactStore v2 clean cut, and AUTH-09D-A -owns `0026` for lifecycle evidence and profile reactivation provenance repair. -The contributor foundation allocates the then-current next migration after -09D-B merges. AUTH-10 through AUTH-15 no longer reserve fixed migration numbers; -each allocates from trusted `main` when its contract becomes executable. - -AUTH-05A and CAT post-merge memory have no remaining blocker and are merged. -The combined AUTH-05 contract -was rejected before runtime changes because shared audit evidence and -idempotency/invalidation were not reviewable as one L1 change. AUTH-05A owns -migration `0018`; merged AUTH-05B owns migration `0019`. Non-test -operators must later supply explicit classification evidence rather than -inferred kinds before the owning canonical actor migration. - -The proposed external catalogue cannot be adopted as a normative handoff: it -conflicts with `/api/v1`, AUTH-05A's merged 49-identifier persisted audit base, -current project and artifact models, and staged domain ownership. All 74 -permission identifiers are approved, including -`operations.task.start_override`, `operations.submission_gate.repair`, and -`operations.checker.retry`; AUTH-07A gives those recovery identifiers exact -typed/PostgreSQL parity while AUTH-13/14 retain action activation and feature -behavior ownership. `WS-AUTH-001-CAT` retains only safe registry/conformance -rules. This is a scope decision, not an AUTH-05B runtime -blocker. PR #118, AUTH-05B PR #119, and AUTH-06 PR #124 are merged. AUTH-07 has -an explicit user start. Required review split it before runtime implementation; -the repaired 07A contract passed all required tracks at `beb85ac`; implementation -and repair passed at `478a819`, and the review/revision amendment passed at -`160af8a`. AUTH-07A then merged through PR #126. AUTH-07B has an explicit user -start and no prerequisite blocker; POL-002-04 remains inactive pending its own -authorization prerequisites and explicit start. - -AUTH-04B review evidence and its PR trust bundle are recorded at -`reviews/WS-AUTH-001-04B-internal-review-evidence.md` and -`reviews/WS-AUTH-001-04B-pr-trust-bundle.md`. - -AUTH-04A review evidence and its PR trust bundle are recorded at -`reviews/WS-AUTH-001-04A-internal-review-evidence.md` and -`reviews/WS-AUTH-001-04A-pr-trust-bundle.md`. - -AUTH-03 review evidence and its PR trust bundle are recorded at -`reviews/WS-AUTH-001-03-internal-review-evidence.md` and -`reviews/WS-AUTH-001-03-pr-trust-bundle.md`. Prior AUTH-02 evidence remains at -`reviews/WS-AUTH-001-02-internal-review-evidence.md` and -`reviews/WS-AUTH-001-02-pr-trust-bundle.md`. - -Production issuer configuration and legacy non-test actor classification are -future implementation/live-proof inputs and are tracked explicitly in -`DISCOVERY.md` and chunk stop conditions. - -The user accepted D13 on 2026-07-13: the target provider-neutral boundary is -`IdentityIssuerVerifier`, extending the shared `ExternalServiceAdapter` -convention and using its typed factory. The current verifier/configuration -names remain functional migration inputs. The atomic AUTH adoption requires -its own reviewed chunk after `WS-ART-001-02A1` installs the shared foundation; -it is not part of the size-capped AUTH-04A request/error implementation. +# Status: WS-AUTH-001 Workstream Authorization Service + +## Durable state on `main` + +AUTH provides the central deny-by-default authorization boundary for Workstream. +Merged behavior includes external Flow-token verification, canonical actors and +identity links, request context and rate controls, authority audit and +idempotency, closed permission/action catalogues, project-scoped grants, +bootstrap administration, fixed-service identities and runtime admission, +controlled provisioning, actor/identity administration, and the implemented +project read and mutation cutovers. + +Project Guide compilation request/recovery and fixed project-setup execution +authority merged through `WS-AUTH-001-12I` in PR #312. That activation exposes +authority for the hidden POL compilation path; it does not make the remaining +POL, ART, REV, CON, TASK, or checker lifecycle behavior live. + +All completed and superseded AUTH chunks remain enumerated in `CHUNK_MAP.md`. +Their contracts, reviews, and Git history are historical exact-change evidence, +not current start requirements. + +## Remaining boundaries + +- `WS-POL-003-03B` consumes merged AUTH-12I before the next unified setup + orchestration boundary. +- AUTH-12B2 follows hidden POL-04A and activates only setup-ledger authority. +- AUTH-12F4 follows hidden POL-05A and activates approval of stored unified + pre-submit policy; it performs no inference. +- AUTH-12G follows hidden POL-06A and activates deterministic stored + post-submit projection authority. +- AUTH-12H follows the complete POL-06B/07 and required CON clean cut, and + activates only a complete approved unified guide lineage. +- AUTH-13 through AUTH-16 remain future task, submission/checker, cleanup, and + conformance boundaries. Each must be split against then-current product + behavior before implementation. +- ART, REV, and CON feature actions remain unavailable until their exact hidden + owner behavior and typed manifests are merged. Their activation order lives + in the matching XINT and feature-owner records. + +Open pull requests are the transient-work view. This status page does not name +an active branch or authorize implementation. GitHub permissions, a bounded +contract or PR-stated scope, tests, review, and human merge govern each change. + +## Historical evidence + +The former signed-start, single-active-chunk, and post-merge-memory process is +retired. References to it in old contracts and review evidence describe how +those exact historical changes were produced and must not be executed as +current workflow instructions. diff --git a/.agent-loop/initiatives/WS-CI-003-atomic-chunk-state/STATUS.md b/.agent-loop/initiatives/WS-CI-003-atomic-chunk-state/STATUS.md index 7adcadfed..5e8433db9 100644 --- a/.agent-loop/initiatives/WS-CI-003-atomic-chunk-state/STATUS.md +++ b/.agent-loop/initiatives/WS-CI-003-atomic-chunk-state/STATUS.md @@ -1,9 +1,8 @@ # Status: WS-CI-003 Atomic Chunk State -- Initiative state: active -- Current chunk: `WS-CI-003-01` +- Initiative state: complete through PR #319 +- Completed chunk: `WS-CI-003-01` - Outcome on merge: `WS-CI-003-01` is complete and Agent Gates requires every chunk PR to carry its contract, chunk-map, initiative-status, and current-state outcome atomically. - Product behavior changed: no - diff --git a/.agent-loop/initiatives/WS-CON-001-contribution-compensation-boundary/STATUS.md b/.agent-loop/initiatives/WS-CON-001-contribution-compensation-boundary/STATUS.md index 3f42c54eb..0a9c2679e 100644 --- a/.agent-loop/initiatives/WS-CON-001-contribution-compensation-boundary/STATUS.md +++ b/.agent-loop/initiatives/WS-CON-001-contribution-compensation-boundary/STATUS.md @@ -1,9 +1,9 @@ # Status: WS-CON-001 Contribution And Compensation -## Current baseline +## Durable state on `main` -- Reconciled main: `9865456b3fb1f6048f4c7b7aef4dac71fbf3323e`. -- Alembic head on main: `0056_review_lease_preference`. +- The active Alembic graph begins at `0001_v01_baseline`; historical migration + identifiers below describe the original merge sequence, not the current root. - CON-01, CON-02A, and CON-03A are merged; 03A merged in PR #267. - PLAN5 is merged in PR #270 and preserves the human-confirmed complete-context `needs_revision` rebase rule. @@ -11,8 +11,6 @@ compensation binding foundation, contribution-policy persistence, and the 02C shared lifecycle-audit participant merged through PR #277. Contribution-record, dispatcher, fulfillment, operations, and CON API behavior remain absent. -- The pre-existing local deletion of the archival reference PDF is user-owned - and excluded from this runtime change. ## Current external work inspected diff --git a/.agent-loop/initiatives/WS-DB-001-v01-schema-baseline/CHUNK_MAP.md b/.agent-loop/initiatives/WS-DB-001-v01-schema-baseline/CHUNK_MAP.md index b3cbf2ca4..aa9368458 100644 --- a/.agent-loop/initiatives/WS-DB-001-v01-schema-baseline/CHUNK_MAP.md +++ b/.agent-loop/initiatives/WS-DB-001-v01-schema-baseline/CHUNK_MAP.md @@ -2,7 +2,7 @@ | Chunk | Purpose | Dependency | State | |---|---|---|---| -| `WS-DB-001-01` | Replace the development migration chain with one exact v0.1 baseline and prove end-to-end parity | Planning approval and current `main` frozen as source head | Proposed | +| `WS-DB-001-01` | Replace the development migration chain with one exact v0.1 baseline and prove end-to-end parity | Planning approval and frozen source head | Merged PR #317 | The implementation is intentionally one atomic PR. Splitting deletion from baseline installation would leave either two schema paths or no installable diff --git a/.agent-loop/initiatives/WS-DB-001-v01-schema-baseline/STATUS.md b/.agent-loop/initiatives/WS-DB-001-v01-schema-baseline/STATUS.md index 6b8a76846..ec32e2cff 100644 --- a/.agent-loop/initiatives/WS-DB-001-v01-schema-baseline/STATUS.md +++ b/.agent-loop/initiatives/WS-DB-001-v01-schema-baseline/STATUS.md @@ -1,10 +1,10 @@ -# Status +# Status: WS-DB-001 v0.1 Schema Baseline -- Initiative: `WS-DB-001-v01-schema-baseline` -- State: `WS-DB-001-01` local implementation and internal review complete; - hosted CI pending -- Source head: `1ad50f4f` -- Current Alembic head: `0001_v01_baseline` -- Next action: publish the single PR and complete hosted Backend and Agent Gates -- Product work remains paused until the baseline reset is merged and a clean - database passes the full hosted backend gate. +- Initiative state: complete +- Planning merged through PR #316. +- `WS-DB-001-01` merged through PR #317 as `64f28bcf`. +- The active Alembic graph starts at the single `0001_v01_baseline` root. +- Hosted Backend passed on the merge commit and product work is not paused by + this initiative. +- Any future migration extends the baseline through an ordinary bounded change; + this initiative has no remaining chunk. diff --git a/.agent-loop/initiatives/WS-POL-002-post-submit-checker-foundation/CHUNK_MAP.md b/.agent-loop/initiatives/WS-POL-002-post-submit-checker-foundation/CHUNK_MAP.md index f912eeb21..82903607c 100644 --- a/.agent-loop/initiatives/WS-POL-002-post-submit-checker-foundation/CHUNK_MAP.md +++ b/.agent-loop/initiatives/WS-POL-002-post-submit-checker-foundation/CHUNK_MAP.md @@ -1,10 +1,9 @@ # Chunk Map: WS-POL-002 - Post-Submit Checker Foundation -## Rule +## Current use -Only one chunk may be active at a time. Do not start the next chunk until the -current chunk is implemented, verified, internally reviewed, externally -reviewed, merged by explicit human approval, and followed by a memory update. +This map records historical outcomes. It is not an active queue. Future work +must use the current WS-POL-003 and checker boundaries. ## Chunks @@ -13,8 +12,8 @@ reviewed, merged by explicit human approval, and followed by a memory update. | `WS-POL-002-01` | Post-Submit Compiler Contract | L1 | Merged | | `WS-POL-002-02` | Post-Submit Derivation Agent And Resumable Setup Integration | L1 | Merged | | `WS-POL-002-03` | Server-Owned Policy Approval And Visibility APIs | L1 | Merged through PR #90 as `a7aa474` | -| `WS-POL-002-04` | Locked Runtime Execution And Routing Hardening | L1 | Inactive pending auth proof and explicit start | -| `WS-POL-002-05` | Unified Post-Submit Live Proof | L1 | Non-executable planning skeleton pending then-current contract expansion | +| `WS-POL-002-04` | Locked Runtime Execution And Routing Hardening | L1 | Superseded as written; executor-only replacement requires a fresh current-main contract | +| `WS-POL-002-05` | Unified Post-Submit Live Proof | L1 | Superseded by WS-POL-003 unified compilation and later end-to-end proof | ## Dependency Order @@ -26,12 +25,7 @@ WS-POL-002-01 -> WS-POL-002-05 ``` -## Stop Condition +## Remaining boundary -After each implementation chunk is reviewed, externally checked, and merged by -explicit human approval, perform the memory update before starting the next -chunk. - -`WS-POL-002-03` merged through PR #90 as `a7aa474` on 2026-07-11. Do not start -`WS-POL-002-04` automatically; post-merge memory is complete through PR #94, -but authorization proof and a separate explicit user start are still required. +Any remaining executor concern may re-enter only through a new bounded contract +against current `main`; this historical map does not start it. diff --git a/.agent-loop/initiatives/WS-POL-002-post-submit-checker-foundation/STATUS.md b/.agent-loop/initiatives/WS-POL-002-post-submit-checker-foundation/STATUS.md index 5555e1552..e2b4f8720 100644 --- a/.agent-loop/initiatives/WS-POL-002-post-submit-checker-foundation/STATUS.md +++ b/.agent-loop/initiatives/WS-POL-002-post-submit-checker-foundation/STATUS.md @@ -1,62 +1,22 @@ -# Status: WS-POL-002 - Post-Submit Checker Foundation +# Status: WS-POL-002 Post-Submit Checker Foundation -`WS-POL-003` is authoritative for future guide inference. Remaining runtime -work consumes its stored post-submit component and performs no standalone -derivation. +## Durable state on `main` -## Current Status +WS-POL-002-01 through WS-POL-002-03 are merged. They established the trusted +post-submit compiler contract, setup-time derivation and persistence, +pre-review handoff, server-owned approval/correction history, and bounded setup +visibility. -Planning completed and merged through PR #85 as -`3fc1a688743f13476d6092078d40792592823d27`. +WS-POL-003 is authoritative for all future Project Guide inference. The old +POL-002-04 standalone inference/hardening sequence is not executable as written. +Any remaining executor behavior must be reframed as a bounded consumer of the +stored WS-POL-003 post-submit component and the current checker public API. -Chunk 03 merged through PR #90 as `a7aa474` on 2026-07-11. This authorization -worktree only reconciles that merged behavior with the active authorization -baseline. Post-merge memory merged through PR #94 as `b1270d7`. No later chunk -may start until the relevant authorization foundation exists and the user -provides a separate explicit start signal. -`WS-POL-002-01` merged through PR #87 as `ed52c21` on 2026-07-09. It -implemented the version-stamped trusted post-submit compiler contract, -default-checker snapshot validation, canonical policy hashing, and tests around -default-drift safety. +## Remaining boundary -`WS-POL-002-02` merged through PR #88 as `32af6a7` on 2026-07-11. It -implemented setup-time post-submit checker derivation, resumable setup -continuation, generated project `PostSubmitCheckerPolicy` persistence, automatic -contributor submission handoff to the pre-review gate, and repair-only -`/finalize` semantics. +No POL-002 implementation is active. A future executor-only change requires a +fresh contract against current `main`; it may not restore a second inference +path or rely on historical explicit-start and post-merge-memory instructions. -`WS-POL-002-03` merged through PR #90 as `a7aa474` on 2026-07-11. It -implemented server-owned post-submit checker policy approval and correction, -append-only correction history, exact-context replacement linkage, immutable -approval provenance, and bounded setup visibility APIs. Required internal -review, CodeRabbit, and GitHub checks passed before the explicit human merge. - -## Active Planning Chunk - -None. - -## Active Implementation Chunk - -None. `WS-POL-002-04` remains inactive until authorization proof and a separate -explicit user start. - -## Current Implementation Branch - -None for implementation. Post-merge memory is complete through PR #94. - -## Chunk Status - -| Chunk | Status | Branch | PR | Notes | -|---|---|---|---:|---| -| `WS-POL-002-PLAN` | Merged | `codex/ws-pol-002-post-submit-checker-planning` | #85 | Defines intent, discovery, design, risks, decisions, and implementation chunks. | -| `WS-POL-002-01` | Merged | `codex/ws-pol-002-01-post-submit-compiler` | #87 | Post-Submit Compiler Contract; merged as `ed52c21`. | -| `WS-POL-002-02` | Merged | `codex/ws-pol-002-02-post-submit-derivation` | #88 | Post-submit derivation agent and resumable setup integration; merged as `32af6a7`. | -| `WS-POL-002-03` | Merged | `codex/ws-pol-002-03-post-submit-approval-visibility` | #90 | Server-owned approval, correction audit history, and setup visibility APIs; merged as `a7aa474`. | -| `WS-POL-002-04` | Inactive | - | - | Runtime hardening remains gated by authorization proof and a separate user start. | -| `WS-POL-002-05` | Planning skeleton | - | - | Unified zero-model-call live proof; not executable until its full contract is expanded and reviewed. | - -## Blockers - -| Blocker | Owner | Next action | -|---|---|---| -| `WS-AUTH-001` foundation | Authorization proof must precede chunk 04 runtime hardening | Complete the relevant auth cutover, then require an explicit chunk 04 start | +Open pull requests show transient work. Historical contracts and reviews remain +evidence for their exact changes, not an active queue. diff --git a/.agent-loop/initiatives/WS-QUAL-002-behavior-ownership-catalogue/CHUNK_MAP.md b/.agent-loop/initiatives/WS-QUAL-002-behavior-ownership-catalogue/CHUNK_MAP.md index 1f103a925..ecf454890 100644 --- a/.agent-loop/initiatives/WS-QUAL-002-behavior-ownership-catalogue/CHUNK_MAP.md +++ b/.agent-loop/initiatives/WS-QUAL-002-behavior-ownership-catalogue/CHUNK_MAP.md @@ -3,7 +3,7 @@ | Chunk | Purpose | Dependency | Risk | State | |---|---|---|---|---| | `WS-QUAL-002-01` | Catalogue schema, inventory, generator, validation foundation | none | L1 | merged PR #297 | -| `WS-QUAL-002-02` | Coverage-context candidate evidence and runtime calibration | 01 | L1 | implemented; GitHub is authoritative for merge state | +| `WS-QUAL-002-02` | Coverage-context candidate evidence and runtime calibration | 01 | L1 | merged PR #303 | | `WS-QUAL-002-03A` | AUTH, actors, API controls, audit ownership | 01, 02 | L1 | pending | | `WS-QUAL-002-03B` | Artifacts, storage, extraction, external adapters ownership | 01, 02 | L1 | pending | | `WS-QUAL-002-03C` | Projects, tasks, checkers, reviews, contribution ownership | 01, 02 | L1 | pending | diff --git a/.agent-loop/initiatives/WS-QUAL-002-behavior-ownership-catalogue/STATUS.md b/.agent-loop/initiatives/WS-QUAL-002-behavior-ownership-catalogue/STATUS.md index d48e50daf..44e112b8f 100644 --- a/.agent-loop/initiatives/WS-QUAL-002-behavior-ownership-catalogue/STATUS.md +++ b/.agent-loop/initiatives/WS-QUAL-002-behavior-ownership-catalogue/STATUS.md @@ -10,7 +10,8 @@ validator, examples, focused tests, and contributor documentation. It does not reactivate mutation or change any workflow, product behavior, coverage floor, lane, skip, or deselection. -`WS-QUAL-002-02` implements local, non-authoritative coverage-context evidence +`WS-QUAL-002-02` merged through PR #303 and implements local, +non-authoritative coverage-context evidence with exact collection, completion, head, callable-line, digest, runtime, size, and privacy custody. It does not change catalogue records or hosted CI. GitHub is authoritative for its transient review and merge state. @@ -26,7 +27,7 @@ Current focused evidence: - The real local context probe completed 90 exact nodes in 18.12 seconds and emitted a 141,701-byte digest-bound artifact, below both adoption limits. - The initial catalogue is explicitly incomplete and candidate output remains - non-authoritative while subsystem population has not started. + non-authoritative while subsystem population remains pending in 03A-03D. ## Plan review