Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
13 changes: 9 additions & 4 deletions .agent-loop/CURRENT_STATE.md
Original file line number Diff line number Diff line change
Expand Up @@ -28,10 +28,10 @@ authority; these records do not grant or withhold it.

| Initiative | Durable state on `main` | Remaining boundary |
|---|---|---|
| [WS-ARCH-001](initiatives/WS-ARCH-001-modular-monolith-boundaries/STATUS.md) | Complete through `WS-ARCH-001-02H`; CP01A-CP02 establish unavailable authority facts and hidden CON adapter-binding behavior; PLAN4 planned incremental debt retirement | Expand and review CP03 before activating the exact adapter-binding actions; PLAN4 keeps debt retirement delivery-coupled without blocking features on unrelated frozen debt; the wider PLAN2 path still targets durable `allow_review`, and `02I` remains later |
| [WS-ARCH-001](initiatives/WS-ARCH-001-modular-monolith-boundaries/STATUS.md) | Complete through `WS-ARCH-001-02H`; CP01A-CP02 establish unavailable authority facts and hidden CON adapter-binding behavior; CP03 is split with executable CP03A/CP03B contracts complete on merge; PLAN4 planned incremental debt retirement | Implement CP03A owner identity/eligibility, then CP03B exact Finance Authority activation; PLAN4 keeps debt retirement delivery-coupled without blocking features on unrelated frozen debt; the wider PLAN2 path still targets durable `allow_review`, and `02I` remains later |
| [WS-ART-001](initiatives/WS-ART-001-immutable-artifact-storage/STATUS.md) | Active delivery initiative; verified ready-admission publication, hidden preparation, consumption and binding are merged through ARCH-02H | Implement exact post-submit materialization only after the unified guide/checker and PLAN2 public contracts are executable; live cutover remains later |
| [WS-AUTH-001](initiatives/WS-AUTH-001-workstream-authorization-service/STATUS.md) | Active delivery initiative; project-policy authority and unified compilation authorization are merged through `12I` | POL-03B consumes 12I next; remaining AUTH activation chunks wait for their exact hidden owner behavior |
| [WS-CON-001](initiatives/WS-CON-001-contribution-compensation-boundary/STATUS.md) | Active delivery initiative; CP02 is complete on merge with hidden adapter-binding lifecycle behavior; ContributionPolicy persistence, shared lifecycle audit, and unavailable AUTH registrations are merged | Expand and review CP03 before exact adapter-binding activation; later complete guide-activation validation/persistence before task readiness, preserving immutable attempt lineage through Submission and ReviewLease |
| [WS-CON-001](initiatives/WS-CON-001-contribution-compensation-boundary/STATUS.md) | Active delivery initiative; CP02 is merged with hidden adapter-binding lifecycle behavior; CP03 is split with executable CP03A/CP03B contracts complete on merge; ContributionPolicy persistence, shared lifecycle audit, and unavailable AUTH registrations are merged | Implement CP03A target identity/owner eligibility, then CP03B exact Finance Authority activation; later complete guide-activation validation/persistence before task readiness, preserving immutable attempt lineage through Submission and ReviewLease |
| [WS-AUTH-003](initiatives/WS-AUTH-003-module-boundary-recovery/STATUS.md) | AUTH boundary foundation and first public-capability proof through POL-03A are merged | Repair each touched AUTH capability through `authorization.api` and shrink the canonical AUTH ledger |
| [WS-POL-003](initiatives/WS-POL-003-unified-project-guide-compilation/STATUS.md) | Active delivery initiative; hidden compilation custody and AUTH-12I activation are merged | Implement POL-03B authorized compilation persistence, then continue the reviewed dependency order |
| [WS-REV-001](initiatives/WS-REV-001-review-revision-lifecycle/STATUS.md) | Independent foundations through queue admission and reviewer-lease persistence are merged through `03A2`; schema/packet foundations may continue behind their own gates | Live admission/claim requires canonical 04E `allow_review`; ReviewLease copies the admitted Submission's immutable attempt policy version, and the first Review commit requires CON-03C/07 atomic contribution/award behavior |
Expand Down Expand Up @@ -99,7 +99,8 @@ Do not start historical CON-05A directly. The CP01-CP09 sequence owns
AUTH unavailable registration, hidden CON binding/policy behavior, exact AUTH
activations, CON validation, PROJECT guide binding, TASK attempt lineage, and
clean v0.1 legacy economic-path removal in that order. CP02 is complete on
merge while all four actions remain unavailable; later children remain
merge while all four actions remain unavailable. CP03 is split with executable
CP03A/CP03B contracts complete on merge; later CP04-CP09 children remain
non-executable until their current-main contracts are expanded.

- WS-ARCH-001-PLAN3 is planned; its planning merge changed no runtime behavior.
Expand All @@ -112,7 +113,11 @@ non-executable until their current-main contracts are expanded.
adapter-binding identity and lifecycle-version facts.
- WS-ARCH-001-CP02 is complete on merge with hidden, route-unreachable behavior,
exact lifecycle history, and deny-default production composition.
- WS-ARCH-001-CP03 is proposed and non-executable.
- WS-ARCH-001-CP03 is a planned split/non-executable parent. CP03A and CP03B have executable
contracts complete on merge and are the next ordered bounded boundaries.
- WS-ARCH-001-CP03A is planned with an executable implementation contract.
- WS-ARCH-001-CP03B is planned with an executable implementation contract after
merged CP03A.
- WS-ARCH-001-CP04 is proposed and non-executable.
- WS-ARCH-001-CP05 is proposed and non-executable.
- WS-ARCH-001-CP06 is proposed and non-executable.
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -22,8 +22,10 @@
| `WS-ARCH-001-CP01B` | AUTH ContributionPolicy unavailable registration | L1 | Complete on merge; five actions remain planned/unavailable |
| `WS-ARCH-001-CP01C` | AUTH adapter-binding fact correction | L1 | Complete on merge; corrects unavailable facts before CON behavior |
| `WS-ARCH-001-CP02` | CON hidden adapter-binding behavior | L1 | Complete on merge; route-unreachable and deny-default while actions remain unavailable |
| `WS-ARCH-001-CP03` | AUTH exact adapter-binding activation | L1 | Next proposed skeleton; requires a current-main executable contract |
| `WS-ARCH-001-CP04` | CON hidden ContributionPolicy behavior | L1 | Proposed skeleton after CP03 |
| `WS-ARCH-001-CP03` | Adapter-binding activation coordination parent | L1 | Planned split into CP03A/CP03B; non-executable |
| `WS-ARCH-001-CP03A` | Closed adapter target identity and PROJECTS/ACTORS owner eligibility | L1 | Planned executable contract; implementation next |
| `WS-ARCH-001-CP03B` | AUTH exact Finance Authority adapter-binding activation | L1 | Planned executable contract; follows merged CP03A |
| `WS-ARCH-001-CP04` | CON hidden ContributionPolicy behavior | L1 | Proposed skeleton after merged CP03B evidence |
| `WS-ARCH-001-CP05` | AUTH exact ContributionPolicy activation | L1 | Proposed skeleton after CP04 evidence |
| `WS-ARCH-001-CP06` | CON guide-activation/revision policy-validation port | L1 | Proposed skeleton after CP05 |
| `WS-ARCH-001-CP07` | PROJECT guide-bound ContributionPolicyVersion persistence | L1 | Proposed skeleton after CP06 |
Expand All @@ -50,11 +52,13 @@ feature contract crosses more than one reviewable mutation boundary. The
02A-02I sequence is the executable split of parent 02, subject to plan review
and human approval.

CP03-CP09 and chunks 03A-04F are non-executable planning skeletons. Before implementation,
CP04-CP09 and chunks 03A-04F are non-executable planning skeletons. Before implementation,
each must be replaced with a current-main contract that names exact allowed and
not-allowed files, migration head, runnable commands, reviewers, and the public
types it extends. Their sequencing is approved here; their current text does
not authorize code changes.
not authorize code changes. CP03 is split/non-executable; CP03A and CP03B are
the current-main executable exceptions and authorize only their ordered exact
implementations after these contracts merge.

PLAN4 does not insert a new prerequisite into the product sequence. Each
current or future delivery chunk applies its no-new-debt and touched-debt rules
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -155,5 +155,6 @@ canonical row locking, and immutable created/suspended/resumed lifecycle
events. AUTH owns Finance Authority, action availability, opaque PREP handles,
authorization decisions, and decision evidence. Read uses request-scoped
authorization; create/suspend/resume use one domain-specific opaque
prepare/consume/close port backed by AUTH only in CP03. CON never imports AUTH
internals or translates the CON-owned `instrument_type` value.
prepare/consume/close port backed by AUTH only in CP03B. CP03A owns the exact
adapter target identity and PROJECTS/ACTORS eligibility prerequisite. CON never
imports AUTH internals or translates the CON-owned `instrument_type` value.
Original file line number Diff line number Diff line change
Expand Up @@ -350,7 +350,8 @@ CP01A AUTH adapter-binding unavailable registration
-> CP01B AUTH ContributionPolicy unavailable registration
-> CP01C AUTH adapter-binding fact correction
-> CP02 CON hidden adapter-binding behavior
-> CP03 AUTH adapter-binding activation
-> CP03A adapter target identity and owner eligibility
-> CP03B AUTH Finance Authority adapter-binding activation
-> CP04 CON hidden ContributionPolicy behavior
-> CP05 AUTH ContributionPolicy activation
-> CP06 CON validation port
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -24,14 +24,14 @@
| Live assignment or review claim loses the one task-governing ContributionPolicyVersion | Critical | Enforce immutable guide -> task -> assignment -> Submission/allow_review -> ReviewLease lineage; missing, cross-project, stale or mismatched facts deny before claim effects, and neither claim performs CON policy lookup |
| Review decision commits without mandatory contribution consequences | Critical | Stable REV schema precedes CON-03C/07; every decision atomically creates reviewer ContributionRecord/awards and accept additionally creates FinalAcceptance plus submitter record/awards |
| Composition root absorbs domain decisions | High | Composition opens the unit of work and wires transaction-bound ports only; TASK command owns Submission sequencing and each target port enforces its own invariants |
| Policy behavior starts before exact AUTH registration | Critical | CP01A and CP01B register their separate typed unavailable authority before CP02/CP04 behavior; CP03/CP05 activate only after hidden proof |
| Binding management inherits retirement, fulfillment, callback, or delivery authority | Critical | CP01A through CP03 exclude retirement actions plus fulfillment, callback, and delivery action IDs, permissions, identities, routes, evaluators, and service-matrix rows entirely |
| Policy behavior starts before exact AUTH registration | Critical | CP01A and CP01B register their separate typed unavailable authority before CP02/CP04 behavior; CP03B/CP05 activate only after their hidden proof and exact prerequisites |
| Binding management inherits retirement, fulfillment, callback, or delivery authority | Critical | CP01A through CP03 exclude all action-bearing identities and authority for retirement, fulfillment, callback, and delivery; CP03A adds only the closed target-only `workstream.compensation.adapter` identity with no action, permission, route, evaluator, or service-matrix row |
| CON writes PROJECT or TASK aggregates | Critical | CP06 returns immutable validation facts only; CP07 and CP08 own their respective writes |
| Consolidated v0.1 schema gains fake compatibility debt | High | CP09 performs a clean current-baseline cut and forbids aliases, dual paths, and invented backfills |
| Legacy debt becomes a blanket blocker for v0.1 delivery | High | Block new debt and require directly touched debt to shrink; never require unrelated frozen debt in a bounded feature PR |
| Debt repayment expands a feature beyond a reviewable safety boundary | High | Record exact stranded debt, prove no growth, and create a later owner-sized closure contract rather than mixing product boundaries |
| Mechanical quotas reward noisy or cosmetic cleanup | Medium | Use exact edge/finding deltas and behavior ownership; prohibit arbitrary per-PR percentages and cosmetic test splitting |
| Overlapping ledgers are added together and misstate debt | Medium | Report general, AUTH, structural, and behavior-ownership measurements separately under their existing owners |
| Adapter-binding resume erases suspension attribution | Critical | CP02 appends one immutable CON lifecycle event per version in the same transaction; CP03 later stages AUTH decision evidence atomically beside it |
| Unrelated internal service is bound as a compensation adapter | Critical | CP02 requires an injected exact ACTORS eligibility capability; generic service kind and existing ART/REV identities fail closed, and CP03 cannot activate without an approved compensation-adapter identity rule |
| CP02 invents a second authorization protocol or imports AUTH internals | Critical | CON defines only a domain-facing opaque prepare/consume/close port; production denies until CP03 adapts the existing AUTH PREP implementation |
| Adapter-binding resume erases suspension attribution | Critical | CP02 appends one immutable CON lifecycle event per version in the same transaction; CP03B later stages AUTH decision evidence atomically beside it |
| Unrelated internal service is bound as a compensation adapter | Critical | CP02 requires an injected exact ACTORS eligibility capability; generic service kind and existing ART/REV identities fail closed; CP03A installs the exact target identity/owner rule before CP03B activation |
| CP02 invents a second authorization protocol or imports AUTH internals | Critical | CON defines only a domain-facing opaque prepare/consume/close port; production denies until CP03B adapts the existing AUTH PREP implementation |
Original file line number Diff line number Diff line change
Expand Up @@ -54,7 +54,9 @@
non-executable split parent; CP01A is complete on merge with its four actions
registered/unavailable, CP01B is complete on merge with five policy actions
registered/unavailable. CP02 is complete on merge with hidden CON behavior
while its AUTH actions remain unavailable; CP03-CP09 remain non-executable skeletons.
while its AUTH actions remain unavailable; CP03 is split with executable
CP03A/CP03B contracts complete on merge, while CP04-CP09 remain
non-executable skeletons.
- [WS-ARCH-001-PLAN4](chunks/WS-ARCH-001-PLAN4-incremental-debt-retirement.md) is planned on merge
and changes no runtime. It makes the existing incremental strangler
operational: unrelated frozen debt cannot block delivery, new debt is
Expand All @@ -77,8 +79,14 @@
match exact binding identity and lifecycle generation without a unit alias.
- WS-ARCH-001-CP02 is complete on merge: hidden, route-unreachable
adapter-binding behavior while its AUTH actions remain unavailable.
- WS-ARCH-001-CP03 is the next proposed boundary: exact adapter-binding
activation after its current-main contract is expanded and reviewed.
- WS-ARCH-001-CP03 is a planned split/non-executable parent. CP03A's executable
contract specifies the closed compensation-adapter target identity and
PROJECTS/ACTORS owner eligibility while actions remain unavailable. CP03B's
executable contract specifies and requires proof of exact Finance Authority
activation without adding a route or adjacent compensation authority.
- WS-ARCH-001-CP03A is planned with an executable implementation contract.
- WS-ARCH-001-CP03B is planned with an executable implementation contract after
merged CP03A.
- WS-ARCH-001-CP04 is proposed: hidden ContributionPolicy behavior.
- WS-ARCH-001-CP05 is proposed: exact ContributionPolicy activation.
- WS-ARCH-001-CP06 is proposed: CON policy-validation port.
Expand Down
Original file line number Diff line number Diff line change
@@ -1,11 +1,26 @@
# Chunk Contract: WS-ARCH-001-CP03 — Adapter-Binding AUTH Activation
# Chunk Contract: WS-ARCH-001-CP03 — Adapter-Binding Activation Split Parent

Status: proposed non-executable skeleton after CP02. Risk: L1.
## Status

AUTH integrates the exact adapter-binding evaluator and activates only the
binding create/read/suspend/resume actions proven by CP02. It adds no CON
behavior, callback authority, policy activation, or generic compensation
management permission.
Split and non-executable.

## Goal

Coordinate the two independently reviewable prerequisites for safe
adapter-binding activation.

## Approved split

```text
CP02 hidden adapter-binding lifecycle behavior
-> CP03A compensation-adapter identity and owner eligibility
-> CP03B exact Finance Authority AUTH activation
-> CP04 hidden ContributionPolicy behavior
```

CP03A owns no AUTH action activation. CP03B owns no identity registration,
schema change, or owner eligibility behavior. Neither child adds a public
adapter-binding route.

## Merge state

Expand Down
Loading
Loading