-
Notifications
You must be signed in to change notification settings - Fork 0
docs: authorize bounded P1 v8 retry #299
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Changes from all commits
File filter
Filter by extension
Conversations
Jump to
Diff view
Diff view
There are no files selected for viewing
| Original file line number | Diff line number | Diff line change |
|---|---|---|
|
|
@@ -2,7 +2,8 @@ | |
|
|
||
| _Drafted: 2026-08-09 KST; amended with explicit auth reuse, stopped-root | ||
| checkpoints, the exact 264-identity v6 ceiling approval on 2026-08-10 KST, | ||
| and the exact 307-identity v7 ceiling approval on 2026-08-11 KST_ | ||
| and the exact 307-identity v7 and 388-identity v8 ceiling approvals on | ||
| 2026-08-11 KST_ | ||
|
|
||
| This packet is the controlling scope for the authorization recorded on | ||
| 2026-08-09. Approved actions are repository-scoped GitHub activity, candidate- | ||
|
|
@@ -107,6 +108,23 @@ this packet. | |
| explicit cumulative ceiling of at least 388. Provider-free attempt-v4 TDD | ||
| repairs the bounded-failure classification for a future reviewed candidate, | ||
| but does not alter, migrate, resume, or reinterpret the v7 P1-X record. | ||
| - On 2026-08-11 the user approved one fresh v8 root under the unchanged finite | ||
| study shape below, raising the cumulative consumed/reserved ceiling from 307 | ||
| to exactly 388. The grant retains all 170 terminal identities and authorizes | ||
| at most 218 new identities: two discarded canaries, 108 initials, and up to | ||
| 108 policy-valid retries. The model remains `sonnet`, every process remains | ||
| capped at `$0.75`, and the fresh-root arithmetic maximum remains `$163.50`. | ||
| Old-root reuse, replay, repair, migration, optional stopping, npm publication, | ||
| and active P2-P6 work before P1-F remain forbidden. Integrity, privacy, | ||
| ambiguity, or spend failure must immediately close the root to provider work | ||
| and produce the canonical claim-disabled P1-X. | ||
| - PR #298 merged the provider-free P2-P6 evaluator as `d4b6302...`; candidate | ||
| run `31457488674` passed for that exact merge and its downloaded manifest and | ||
| tarballs passed paired smoke and attestation verification. Because this | ||
| authorization amendment changes the selected source revision, that earlier | ||
| candidate is delivery evidence only and cannot be reused for v8. A new | ||
| reviewed merge, retained ref, and exact candidate are required before live | ||
| `prepare`. | ||
|
Comment on lines
+111
to
+127
There was a problem hiding this comment. Choose a reason for hiding this commentThe reason will be displayed to describe this comment to others. Learn more. 🗄️ Data Integrity & Integration | 🟠 Major | 🏗️ Heavy lift 🧩 Analysis chain🏁 Script executed: #!/bin/bash
set -euo pipefail
ast-grep outline context-guard-kit/benchmark_runner.py \
--match '_benchmark_study_v2_invalid_canary_decision' \
--view expanded
rg -n -C 8 \
'MERGED_SHA|git ls-remote|manifest|checksums|SRI|provenance|clean install|prepare' \
--glob '*.py' --glob '*.yml' --glob '*.yaml' .Repository: ictechgy/context-guard Length of output: 50379 🏁 Script executed: #!/bin/bash
set -euo pipefail
printf '%s\n' '--- benchmark study symbols ---'
rg -n \
'def (_benchmark_study_v2_invalid_canary_decision|.*prepare.*|prepare)|study-v2-action|candidate|MERGED_SHA|git ls-remote|provenance|SRI|checksum|clean install' \
context-guard-kit/benchmark_runner.py \
context-guard-kit \
scripts \
tests \
--glob '*.py' --glob '*.yml' --glob '*.yaml' \
| head -n 500
printf '%s\n' '--- candidate-related files ---'
git ls-files | rg -i 'benchmark|study|candidate|manifest|provenance|attestation|install'
printf '%s\n' '--- relevant function outlines ---'
ast-grep outline context-guard-kit/benchmark_runner.py | rg -i 'study_v2|prepare|candidate|manifest|provenance|install|canary'Repository: ictechgy/context-guard Length of output: 50378 🏁 Script executed: #!/bin/bash
set -euo pipefail
printf '%s\n' '--- candidate verification and prepare ---'
sed -n '12040,12655p' context-guard-kit/benchmark_runner.py
printf '%s\n' '--- prepared-manifest revalidation and provider boundary ---'
sed -n '12760,12810p' context-guard-kit/benchmark_runner.py
sed -n '13745,13945p' context-guard-kit/benchmark_runner.py
printf '%s\n' '--- command dispatch ---'
sed -n '14260,14375p' context-guard-kit/benchmark_runner.py
printf '%s\n' '--- candidate fixture and prepare tests ---'
sed -n '930,1100p' scripts/rehearse_measurement_study.py
rg -n -C 6 \
'prepare_benchmark_study_v2_executable|candidate binding drift|candidate checksum|SRI mismatch|offline npm install|provider' \
tests/test_benchmark_study_v2.pyRepository: ictechgy/context-guard Length of output: 50378 🏁 Script executed: #!/bin/bash
set -euo pipefail
printf '%s\n' '--- candidate manifest production ---'
rg -n -C 10 \
'commit_sha|candidate_manifest|provenance|attestation|MERGED_SHA|git ls-remote|remote' \
scripts/build_npm_candidates.py \
tests/test_npm_candidates.py \
research/p1-live-authorization-packet.md
printf '%s\n' '--- v2 prepare and candidate-binding tests ---'
rg -n \
'def test_.*(prepare|candidate|manifest|checksum|integrity|provenance)|prepare_benchmark_study_v2_executable|candidate_manifest_sha256|commit_sha|candidate binding' \
tests/test_benchmark_study_v2.py \
tests/test_npm_candidates.py \
| head -n 300
printf '%s\n' '--- full candidate revalidation tail ---'
sed -n '12700,12805p' context-guard-kit/benchmark_runner.py
sed -n '14335,14380p' context-guard-kit/benchmark_runner.pyRepository: ictechgy/context-guard Length of output: 40937 Bind
🤖 Prompt for AI Agents |
||
|
|
||
| ## Frozen study shape | ||
|
|
||
|
|
@@ -140,12 +158,12 @@ estimate or a request to spend that amount. The user may authorize a smaller | |
| amount only by approving a new frozen plan; silently truncating this plan would | ||
| make the complete population unreachable and keep P1 failed. | ||
|
|
||
| The approved cumulative ceiling is exactly 307 identities. One hundred seventy | ||
| identities are already terminally consumed/reserved, leaving 137, which is not | ||
| enough for another fresh maximum-size root. No further provider process is | ||
| authorized under this packet. No identity beyond the ceiling is authorized, and | ||
| the implementation must stop immediately on the frozen integrity, privacy, | ||
| ambiguity, or spend conditions rather than trying to consume the ceiling. | ||
| The approved cumulative ceiling is exactly 388 identities. One hundred seventy | ||
| identities are already terminally consumed/reserved, leaving exactly 218 for | ||
| one fresh maximum-size root. No identity beyond the ceiling and no second fresh | ||
| root are authorized. The implementation must stop immediately on the frozen | ||
| integrity, privacy, ambiguity, or spend conditions rather than trying to | ||
| consume the ceiling. | ||
|
|
||
| ## Frozen Claude executable identity | ||
|
|
||
|
|
@@ -258,17 +276,17 @@ decision. | |
| - [x] GitHub network use for fetch/push/PR/CI, limited to | ||
| `ictechgy/context-guard`. | ||
| - [x] Claude live study authority: executable above, `sonnet`, cumulative | ||
| ceiling exactly 307 consumed/reserved identities, `$0.75` per-process | ||
| ceiling exactly 388 consumed/reserved identities, `$0.75` per-process | ||
| CLI caps, and explicit exact-CLI internal reuse of the bound existing | ||
| first-party login under the prompt/data boundary and stop rules above. | ||
| One hundred seventy identities are terminally accounted; only 137 remain, | ||
| so this packet authorizes no new root or further provider process. | ||
| One hundred seventy identities are terminally accounted; exactly 218 | ||
| remain for one fresh v8 root under the frozen shape and stop rules. | ||
| - [x] npm candidate workflow for the exact approved commit. | ||
| - [ ] npm publication of the exact pair to `next`. | ||
| - [ ] npm promotion of that exact reviewed pair to `latest`. | ||
|
|
||
| The original approvals were recorded on 2026-08-09; auth reuse and the v6 | ||
| ceiling were recorded on 2026-08-10; the exact v7 ceiling was recorded on | ||
| 2026-08-11. `next` and `latest` remain blocked. No credential value may be shown | ||
| ceiling were recorded on 2026-08-10; the exact v7 and v8 ceilings were recorded | ||
| on 2026-08-11. `next` and `latest` remain blocked. No credential value may be shown | ||
| to or inspected by Codex; the exact CLI consumes the existing login internally | ||
| without exposing values. | ||
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
🗄️ Data Integrity & Integration | 🟠 Major | 🏗️ Heavy lift
🧩 Analysis chain
🏁 Script executed:
Repository: ictechgy/context-guard
Length of output: 50379
🏁 Script executed:
Repository: ictechgy/context-guard
Length of output: 50378
🏁 Script executed:
Repository: ictechgy/context-guard
Length of output: 50378
🏁 Script executed:
Repository: ictechgy/context-guard
Length of output: 50379
🏁 Script executed:
Repository: ictechgy/context-guard
Length of output: 21537
🏁 Script executed:
Repository: ictechgy/context-guard
Length of output: 7387
🏁 Script executed:
Repository: ictechgy/context-guard
Length of output: 7387
Route every v8 stop path through persisted P1-X.
study-invalid-decision.jsonis written only byanalyze. Canary failures and run/resume integrity or ambiguity failures raise without writing P1-X.error_max_budget_usdis classified asvalid_task_failure_v1, so retries and later provider calls continue. Persist claim-disabled P1-X before returning from every stop path, and block further provider calls after spend failure.🤖 Prompt for AI Agents