docs: harden pinned execution briefs

This commit is contained in:
Amruth Pillai
2026-09-05 23:38:40 +02:00
parent 18d49376ce
commit c87aae562e
11 changed files with 45 additions and 30 deletions
@@ -24,13 +24,17 @@ state changes are outside scope.
after reference research and concrete visual proposal until explicit visual approval.
- Worker reports separate verified facts from uncertainty and include reproduction, first failing boundary, exact commit,
tests run, skipped gates, risks, issue coverage, and PR state.
- Audit disposition mapping: ready, documentation-only, or a split with an executable unit maps to `pending` until dispatch;
active execution maps to `implementing`; diagnostic-only maps to `diagnosing` while evidence work runs and `blocked` when
only external evidence remains; already fixed maps to `no-change`; blocked maps to `blocked`; declined maps to `declined`.
For split outcomes, record executable and blocked portions separately in validity/evidence fields.
## Units
| Unit | Issues | Status / current validity | Owner | Worktree / branch | Base → head | Dependencies | Evidence | Tests | PR | Next action | Blockers |
| --- | --- | --- | --- | --- | --- | --- | --- | --- | --- | --- | --- |
| 01 account login/recovery | #3166, #3164, #3078, #3046, #2897, #2837 | blocked | audit `task_855fbee0a803` | `codex-audit-backend-01-06` | `7a98f6662` → no source change | none | zero drift; live issues remain split; #3046/#3078 have merged #3095 candidate only | auth 42, email 6, focused/full API/server suites and affected typechecks/boundaries passed in audit | — | select exact auth/mail/API boundary only after current sanitized trace | current cloud digest, provider/account method, request/status trace, controlled mailbox |
| 02 hosted v4 recovery | #3181, #2760 | implementing partial source unit | `task_bae016c4d1f2` / `ctx_303f5d1f1031` | `issue-3181-recovery-procedure`; target `codex/issue-3181-recovery-procedure` | `7a98f6662` → pending | #2760 identity branch depends on 01 evidence | zero drift; synthetic non-networked runbook/tool ready; real recovery and #2760 cause unproved | implementation verification pending | — | build pure compare tool and safeguards docs; independently review | actual recovery needs verified owner, available snapshot, reviewed legacy format, authorized private delivery |
| 02 hosted v4 recovery | #3181, #2760 | implementing | `task_bae016c4d1f2` / `ctx_303f5d1f1031` | `issue-3181-recovery-procedure`; target `codex/issue-3181-recovery-procedure` | `7a98f6662` → pending | #2760 identity branch depends on 01 evidence | partial source unit: zero drift; synthetic non-networked runbook/tool ready; real recovery and #2760 cause unproved | implementation verification pending | — | build pure compare tool and safeguards docs; independently review | actual recovery needs verified owner, available snapshot, reviewed legacy format, authorized private delivery |
| 03 MCP registration | #3398, #3153 | no-change | audit `task_855fbee0a803` | `codex-audit-backend-01-06` | `7a98f6662` → no source change | coordinate DB/startup with 05 | merged #3421 (`fe9b59e`) present on main; current schema/startup/auth contracts match plan | #3421 hosted checks successful; audit auth/server/API/DB tests, typechecks, boundaries passed | #3421 merged before run | deployment verification only | deployed digest/log correlation and exact Codex/Claude DCR/consent/PKCE/MCP retest unavailable |
| 04 AI provider compatibility | #2732, #2766, #2723, #2708 | blocked | audit `task_855fbee0a803` | `codex-audit-backend-01-06` | `7a98f6662` → no source change | serialize edits to AI service | zero drift; historical #2708 Responses path and #2766 structured Test path absent; remaining tuples differ | focused API 96 and full API suites/typecheck/boundaries passed in audit | — | select wire/state/import/base-path unit only after exact current tuple fails | provider/model/base URL/path/version/action/error tuple and allowed endpoint unavailable |
| 05 AI provider migrations | #3152 | blocked | audit `task_855fbee0a803` | `codex-audit-backend-01-06` | `7a98f6662` → no source change | coordinate DB/startup with 03 | zero drift; table schema, migration, startup ordering, Docker copy path coherent; `42P01` historical cause unresolved | audit API/server/DB tests, typechecks, boundaries passed; no real PostgreSQL migration fixture | — | choose config/packaging/startup/migration repair only after disposable reproduction | affected image layout/digest, working directory, DB schema/search path/journal, fresh+upgrade DB fixture |
@@ -2,8 +2,8 @@
Read first:
1. Entire approved plan:
`/Users/amruth/orca/workspaces/reactive-resume/planning-pr-3455/plans/02-hosted-v4-account-recovery.md`.
1. Entire approved plan from local planning checkout only when its HEAD equals
`a2557b2ad40e06e1e63eb655f286e6a78fe6bf0d`; otherwise use pinned `git show` fallback below.
2. Audit evidence: `/Users/amruth/orca/workspaces/reactive-resume/codex-audit-backend-01-06/.orchestration/revalidate-backend-01-06.md`, plan 02 section.
3. Current worktree `AGENTS.md`, referenced issue/domain instructions, relevant ADRs, `/Users/amruth/.codex/RTK.md`.
4. `/Users/amruth/.agents/skills/test-driven-development/SKILL.md`, its `writing-good-tests.md` reference,
+3 -2
View File
@@ -2,12 +2,13 @@
Read first, in order:
1. `/Users/amruth/orca/workspaces/reactive-resume/planning-pr-3455/plans/07-aio-deployment.md` — entire file; exact requirements.
1. Entire plan 07 from local planning checkout only when its HEAD equals
`a2557b2ad40e06e1e63eb655f286e6a78fe6bf0d`; otherwise use pinned `git show` fallback below.
2. Current worktree `AGENTS.md`, `/Users/amruth/.codex/RTK.md`, issue/domain instructions, and relevant ADRs.
3. `/Users/amruth/.agents/skills/documentation-writer/SKILL.md`. Plan already supplies document type, novice/homelab
audience, goal, scope, and approved structure; do not pause for routine outline approval.
Portable fallback: if planning checkout path is absent, fetch PR #3455 and read plan 07 from exact planning head
Portable fallback: if planning checkout is absent or has another HEAD, fetch PR #3455 and read plan 07 from exact head
`a2557b2ad40e06e1e63eb655f286e6a78fe6bf0d` with `git show <head>:plans/07-aio-deployment.md`. Do not read it from
current `main` while PR #3455 remains unmerged.
+2 -2
View File
@@ -1,7 +1,7 @@
# Implement plan 09: user-controlled Git backup documentation
Read entire approved plan first:
`/Users/amruth/orca/workspaces/reactive-resume/planning-pr-3455/plans/09-external-version-backup.md`. Also read current
Read entire approved plan first from local planning checkout only when its HEAD equals
`a2557b2ad40e06e1e63eb655f286e6a78fe6bf0d`; otherwise use pinned `git show` fallback below. Then read current
worktree `AGENTS.md`, referenced domain/issue instructions, relevant ADRs, `/Users/amruth/.codex/RTK.md`, and
`/Users/amruth/.agents/skills/documentation-writer/SKILL.md`. Plan supplies document type, audience, goal, scope, and approved
structure; do not pause for routine outline approval. Portable fallback: fetch PR #3455 and use
+2 -2
View File
@@ -1,7 +1,7 @@
# Implement plan 11: JSearch removal and tailoring documentation
Read entire approved plan first:
`/Users/amruth/orca/workspaces/reactive-resume/planning-pr-3455/plans/11-job-search-policy.md`. Also read current worktree
Read entire approved plan first from local planning checkout only when its HEAD equals
`a2557b2ad40e06e1e63eb655f286e6a78fe6bf0d`; otherwise use pinned `git show` fallback below. Then read current worktree
`AGENTS.md`, referenced issue/domain instructions, relevant ADRs, `/Users/amruth/.codex/RTK.md`, and
`/Users/amruth/.agents/skills/documentation-writer/SKILL.md`. Plan supplies document type, audience, goal, scope, and approved
structure; do not pause for routine outline approval. Portable fallback: fetch PR #3455 and use
+3 -3
View File
@@ -1,13 +1,13 @@
# Implement plan 15A: opt-in picture cover/contain
Read entire approved plan first from
`/Users/amruth/orca/workspaces/reactive-resume/planning-pr-3455/plans/15-picture-fitting-and-style.md`; portable fallback:
Read entire approved plan from local planning checkout only when its HEAD equals
`a2557b2ad40e06e1e63eb655f286e6a78fe6bf0d`; otherwise use pinned portable fallback:
`git show a2557b2ad40e06e1e63eb655f286e6a78fe6bf0d:plans/15-picture-fitting-and-style.md`. Read current `AGENTS.md`,
RTK, issue/domain instructions, ADRs, and applicable skills. Run root Intent inventory and load matching local skill before
source edits. Do not spawn subagents. Do not touch ledger, mutate issues, merge, push, or create PR.
Start from refreshed `origin/main`, require clean worktree, rename branch `codex/issue-2782-picture-fit`, revalidate live
# 2782 and all open implementation PRs, and run plan drift check. Stop on overlapping implementation or contradicted picture
issue 2782 and all open implementation PRs, and run plan drift check. Stop on overlapping implementation or contradicted picture
contract. Historical #3168/#3088/#2794 causes remain outside this implementation and must not be claimed fixed.
Strict TDD and bounded scope:
+3 -3
View File
@@ -1,13 +1,13 @@
# Implement plan 16: editable imported rich-text tables
Read entire approved plan first from
`/Users/amruth/orca/workspaces/reactive-resume/planning-pr-3455/plans/16-imported-table-borders.md`; portable fallback:
Read entire approved plan from local planning checkout only when its HEAD equals
`a2557b2ad40e06e1e63eb655f286e6a78fe6bf0d`; otherwise use pinned portable fallback:
`git show a2557b2ad40e06e1e63eb655f286e6a78fe6bf0d:plans/16-imported-table-borders.md`. Read current `AGENTS.md`, RTK,
issue/domain instructions, ADRs, and applicable skills, including test-driven-development. Run root Intent inventory and load
matching local skill before source edits. Do not spawn subagents. Do not touch ledger, mutate issues, merge, push, or open PR.
Start from refreshed `origin/main`, require clean worktree, rename branch `codex/issue-3196-editable-tables`, revalidate live
# 3196 and open PRs, and run exact drift check. Preserve merged #3438. Historical screenshot equivalence remains unverified
issue 3196 and open PRs, and run exact drift check. Preserve merged #3438. Historical screenshot equivalence remains unverified
without source, but Q11 independently approves supported table editing.
Implement one atomic TDD unit across editor/HTML/PDF:
@@ -7,9 +7,10 @@ Read first:
- Entire plan files 01 through 06 in that checkout
- Current worktree `AGENTS.md`, referenced issue/domain instructions, relevant context/ADRs, and package scripts
Portable fallback: if that checkout path is absent, fetch PR #3455 and read exact planning head
`a2557b2ad40e06e1e63eb655f286e6a78fe6bf0d` with `git show <head>:plans/<file>` for every required file. Do not read
planning files from current `main` while PR #3455 remains unmerged.
Before reading local planning files, require its `git rev-parse HEAD` to equal
`a2557b2ad40e06e1e63eb655f286e6a78fe6bf0d`. If absent or different, fetch PR #3455 and use
`git show a2557b2ad40e06e1e63eb655f286e6a78fe6bf0d:plans/<file>` for every required file. Never read planning files from
stale checkout or current `main`. Fetch `origin/main`, resolve one exact implementation-source SHA, and record it.
Audit only. Do not edit source, commit, push, create PRs, mutate GitHub issues, or touch coordinator ledger. Do not spawn subagents.
Use CodeGraph before grep/read when `.codegraph/` exists. Fetch every assigned issue body and comments with `gh`; inspect live
@@ -23,6 +24,9 @@ For each plan and each issue, report:
4. Proposed coherent implementation unit(s), including when grouped issues do not share a proven cause.
5. Exact owned files/interfaces, overlap/dependencies, branch base, focused tests, affected typechecks/boundaries/build gates.
6. Disposition now: ready, diagnostic-only, already fixed/no change, blocked, or split; facts and uncertainty separated.
7. Exact audited commit, explicit tests run/results versus skipped gates, and risks.
Use ledger's shared audit-disposition mapping; do not invent status values.
Write full report to `.orchestration/revalidate-backend-01-06.md` in your worktree. Final response: report path, concise
unit-ready summary, blockers, and no more than ten lines.
@@ -7,9 +7,10 @@ Read first:
- Entire plan files 07 through 11 and 35 in that checkout
- Current worktree `AGENTS.md`, referenced issue/domain instructions, relevant context/ADRs, and package scripts
Portable fallback: if that checkout path is absent, fetch PR #3455 and read exact planning head
`a2557b2ad40e06e1e63eb655f286e6a78fe6bf0d` with `git show <head>:plans/<file>` for every required file. Do not read
planning files from current `main` while PR #3455 remains unmerged.
Before reading local planning files, require its `git rev-parse HEAD` to equal
`a2557b2ad40e06e1e63eb655f286e6a78fe6bf0d`. If absent or different, fetch PR #3455 and use
`git show a2557b2ad40e06e1e63eb655f286e6a78fe6bf0d:plans/<file>` for every required file. Never read planning files from
stale checkout or current `main`. Fetch `origin/main`, resolve one exact implementation-source SHA, and record it.
Audit only. Do not edit source, commit, push, create PRs, mutate GitHub issues, or touch coordinator ledger. Do not spawn
subagents. Use CodeGraph before grep/read when `.codegraph/` exists. Fetch every assigned issue body/comments and inspect
@@ -18,7 +19,8 @@ live PRs/current `origin/main`. Q12 and blanket-approved scoped directions are b
For each plan and each issue, report live state/PRs, current-code validity and anchors, reproduction or documentation evidence,
coherent unit split, exact owned files, dependencies, tests/checks, blockers, and disposition. Distinguish declined AIO from
documentation improvements; avoid cosmetic fix claims. For import errors, require reproduction before parser/dialog changes.
Separate verified facts from uncertainty.
Separate verified facts from uncertainty. Record exact audited commit, first failing boundary, explicit tests run/results
versus skipped gates, and risks. Use ledger's shared audit-disposition mapping; do not invent status values.
Write full report to `.orchestration/revalidate-backend-07-11-35.md` in your worktree. Final response: report path, concise
unit-ready summary, blockers, and no more than ten lines.
@@ -7,12 +7,14 @@ Read first:
- Entire plan files 20 through 34 in that checkout
- Current worktree `AGENTS.md`, referenced domain instructions, context/ADRs, and package scripts
Portable fallback: if that checkout path is absent, fetch PR #3455 and read exact planning head
`a2557b2ad40e06e1e63eb655f286e6a78fe6bf0d` with `git show <head>:plans/<file>` for every required file. Do not read
planning files from current `main` while PR #3455 remains unmerged.
Before reading local planning files, require its `git rev-parse HEAD` to equal
`a2557b2ad40e06e1e63eb655f286e6a78fe6bf0d`. If absent or different, fetch PR #3455 and use
`git show a2557b2ad40e06e1e63eb655f286e6a78fe6bf0d:plans/<file>` for every required file. Never read planning files from
stale checkout or current `main`.
Audit only. Do not edit source, commit, push, create PRs, mutate GitHub issues, or touch coordinator ledger. Do not spawn
subagents. Use CodeGraph before grep/read. Fetch every assigned issue body/comments and inspect live PRs/current `origin/main`.
subagents. Use CodeGraph first only when `.codegraph/` exists. Otherwise inspect exact-head source with `git show`, `rg`, and
direct reads; record CodeGraph unavailability and limitation. Fetch every issue body/comments and live PRs/current main.
For each plan and issue, report live state/PRs, source validity/drift, reproduction/evidence gates, coherent cause-based unit
split, exact owned files/interfaces, overlap/dependency graph, visual/rendered assertions, focused tests/typechecks/boundaries/
@@ -7,12 +7,14 @@ Read first:
- Entire plan files 12 through 19 in that checkout
- Current worktree `AGENTS.md`, referenced domain instructions, context/ADRs, and package scripts
Portable fallback: if that checkout path is absent, fetch PR #3455 and read exact planning head
`a2557b2ad40e06e1e63eb655f286e6a78fe6bf0d` with `git show <head>:plans/<file>` for every required file. Do not read
planning files from current `main` while PR #3455 remains unmerged.
Before reading local planning files, require its `git rev-parse HEAD` to equal
`a2557b2ad40e06e1e63eb655f286e6a78fe6bf0d`. If absent or different, fetch PR #3455 and use
`git show a2557b2ad40e06e1e63eb655f286e6a78fe6bf0d:plans/<file>` for every required file. Never read planning files from
stale checkout or current `main`.
Audit only. Do not edit source, commit, push, create PRs, mutate GitHub issues, or touch coordinator ledger. Do not spawn
subagents. Use CodeGraph before grep/read. Fetch every assigned issue body/comments and inspect live PRs/current `origin/main`.
subagents. Use CodeGraph first only when `.codegraph/` exists. Otherwise inspect pinned exact-head source with `git show`,
`rg`, and direct reads; record CodeGraph unavailability and limitation. Fetch every issue body/comments and live PRs/main.
For each plan and issue, report live state/PRs, source validity/drift, exact first-boundary reproduction, available/missing
fixtures, coherent cause-based unit split, owned files/interfaces, overlap map across 12–19 and units 27/30/31, exact visual