diff --git a/docs/CURRENT-STATE.md b/docs/CURRENT-STATE.md index fba52aa..bc9967b 100644 --- a/docs/CURRENT-STATE.md +++ b/docs/CURRENT-STATE.md @@ -49,12 +49,12 @@ > Check #3 (VR0 cloud internals) is an operator accept-or-run choice (VR0 is tailnet-only, > unreachable from the authorized vantage). Captured in the open-items review below. > **OPEN-ITEMS REVIEW (D/SEC/DOCFIX/BUNDLEFIX vs the hardened end goal), 2026-08-09:** two-pass -> (self + fable advisor) decision package -- NOT a ruling, mutates no status. Conclusion: the +> (self + advisor) decision package -- NOT a ruling, mutates no status. Conclusion: the > backlog is overwhelmingly correctly-deferred; the re-IP GA-R5 ruling (would be D-143) is the > only item gating the end goal; R7 teardown-credential-revocation + R16 10.13 naming-DOCFIX are > the two re-IP-coupled gaps to build. `docs/audit/open-items-review-20260809.md`; sweep: > `docs/audit/queued-findings-20260809-open-items-review.txt`. -> **ROOSEVELT/FUTURE-HELD DECISIONS REVIEW, 2026-08-09** (two-pass self + fable advisor; NOT a +> **ROOSEVELT/FUTURE-HELD DECISIONS REVIEW, 2026-08-09** (two-pass self + advisor; NOT a > ruling): reevaluated all ~24 future-deployment-held decisions against current state. Key frame: > "next deployment" = Roosevelt bare-metal, NOT the re-IP redeploy. Honest yield = ~4 build-process > pull-forwards the redeploy makes actionable (D-137 revocation, D-142 vault-QoL, D-136 v6-octet, diff --git a/docs/audit/open-items-review-20260809.md b/docs/audit/open-items-review-20260809.md index aa07fa6..2d01019 100644 --- a/docs/audit/open-items-review-20260809.md +++ b/docs/audit/open-items-review-20260809.md @@ -478,7 +478,14 @@ --- -## 8. Fable advisor review + consensus (two-pass, corrections visible) +## 8. Advisor review + consensus (two-pass, corrections visible) + +*(Terminology note, corrected 2026-08-09 on operator instruction: this review used the +`advisor()` tool -- a stronger reviewer model that sees the full transcript. Its backing +model identity is NOT exposed by the tool; earlier drafts called it "the fable advisor" +following this repo's inherited memory convention, which is unverified. Corrected here to +"the advisor" -- a specific-but-unverified model name is exactly the fabricated-value class +the repo posture forbids.)* The review ran two adversarial advisor passes over the same items. The value of the structure is that the corrections are RECORDED, not that the final list looks clean. diff --git a/docs/audit/queued-findings-20260809-open-items-review.txt b/docs/audit/queued-findings-20260809-open-items-review.txt index 35ae691..7a2c877 100644 --- a/docs/audit/queued-findings-20260809-open-items-review.txt +++ b/docs/audit/queued-findings-20260809-open-items-review.txt @@ -114,7 +114,8 @@ OW1. Ran the HOST-DEPENDENT P5 gate (creds-matrix --tier2) on VCLOUD and framed the result as "P5 silently grew to 12, you now face 12" -- a manufactured decision. Authoritative host is voffice1 (11 findings); the count grew 101->121 BY DESIGN (SEC-027/028/029). Framing - inverted. Caught by the fable advisor, not self-review. => instrument-currency memory #25. + inverted. Caught by the advisor (advisor() tool, stronger reviewer model; the earlier + "fable advisor" label was unverified -- corrected 2026-08-09). => instrument-currency memory #25. OW2. Claimed SEC-021(a)'s creds-matrix E1 was "now CLEAN / effectively resolved" from the RECORD without measuring; live run showed S2 still RED (manifest regen owed). Corrected same pass. diff --git a/docs/audit/roosevelt-held-decisions-review-20260809.md b/docs/audit/roosevelt-held-decisions-review-20260809.md index 1c6d4f1..3090750 100644 --- a/docs/audit/roosevelt-held-decisions-review-20260809.md +++ b/docs/audit/roosevelt-held-decisions-review-20260809.md @@ -216,7 +216,12 @@ --- -## 8. Fable advisor review + consensus (corrections visible) +## 8. Advisor review + consensus (corrections visible) + +*(Terminology note, corrected 2026-08-09 on operator instruction: "the advisor" = the +`advisor()` tool, a stronger reviewer model whose backing identity the tool does not expose. +Earlier drafts said "fable advisor" per this repo's inherited memory convention, which is +unverified -- corrected to avoid asserting a specific model name I cannot confirm.)* **What the advisor caught on the drafted review, and what changed:** 1. **Unplaced inventory items (the same completeness class as last review's "sums to 28").** diff --git a/docs/session-ledger.md b/docs/session-ledger.md index dd5bec3..8d161bc 100644 --- a/docs/session-ledger.md +++ b/docs/session-ledger.md @@ -278,8 +278,8 @@ ## SESSION CLOSE 2026-08-09 (part 2) -- open-items review (D/SEC/DOCFIX/BUNDLEFIX) vs the hardened end goal + LIVE re-IP free-checks (bounded, GA-R4) - Branch dc-dc-stage5-preconditions; 1 commit pushed (f4aee80: the review + CURRENT-STATE pointer); this bookend uncommitted (savegame prepares, does not commit). voffice1 synced f4aee80. Scan: 4 open decisions (D-068/131/132/142), SEC 28, next-free D-143/DOCFIX-214/BUNDLEFIX-059 (NO new numbers -- analysis session). -- DELIVERABLE: `docs/audit/open-items-review-20260809.md` -- two-pass (self + fable advisor) decision package, R1-R16. Conclusion: backlog overwhelmingly correctly-deferred; the re-IP GA-R5 ruling (would be D-143) is the ONLY end-goal blocker; R7 (teardown credential-revocation checklist) + R16 (10.13 naming-collision DOCFIX) are the re-IP-coupled gaps to build. +- DELIVERABLE: `docs/audit/open-items-review-20260809.md` -- two-pass (self + advisor) decision package, R1-R16. Conclusion: backlog overwhelmingly correctly-deferred; the re-IP GA-R5 ruling (would be D-143) is the ONLY end-goal blocker; R7 (teardown credential-revocation checklist) + R16 (10.13 naming-collision DOCFIX) are the re-IP-coupled gaps to build. - LIVE (operator-authorized read-only discovery): re-IP owed check #2 (NetBox apex) PASS 10.13=0 / 10.12=149; check #1 (Headscale/tailnet) PASS no 10.13 overlap, the 10.12 collision reproduced as the positive control; check #3 (VR0 internals) NOT reachable from vcloud -> operator accept-or-run. P5 authoritative on voffice1 = 11 findings (6 accepted + 5 dc1 by-design; matrix grew 101->121 by design). dc0 checkpoint 66/162 active; DC-substrate credential residency measured. -- OWNED: ran the host-dependent P5 gate on the WRONG host (vcloud not voffice1) -> a "12 findings, gate grew" manufactured-decision framing, caught by the fable advisor (instrument-currency #25); asserted the SEC partition "sums to 28" when it summed to 24; overstated SEC-021(a) as resolved (S2 still RED); a shred-hazard on a likely-live dc1 token -> declare-only. AND: CLOBBERED `session-ledger-rotated-20260809.md` with a Write (overwrote a tracked file I had not read) -- caught in `git status`, restored from HEAD + appended correctly. +- OWNED: ran the host-dependent P5 gate on the WRONG host (vcloud not voffice1) -> a "12 findings, gate grew" manufactured-decision framing, caught by the advisor (instrument-currency #25); asserted the SEC partition "sums to 28" when it summed to 24; overstated SEC-021(a) as resolved (S2 still RED); a shred-hazard on a likely-live dc1 token -> declare-only. AND: CLOBBERED `session-ledger-rotated-20260809.md` with a Write (overwrote a tracked file I had not read) -- caught in `git status`, restored from HEAD + appended correctly. - Gates: repo-lint 0-fail (1 legacy warn); gauntlet ALL GREEN (103); ledger-scan reconciled. Ledger rotated (the two 2026-08-07 blocks -> `session-ledger-rotated-20260809.md`). Memory: instrument-currency #25 added. - NEXT: present the re-IP GA-R5 ruling (would be D-143) with the check#3 accept-or-run choice; then teardown (build R7's revocation checklist) -> redeploy on 10.13. Sweep: `docs/audit/queued-findings-20260809-open-items-review.txt`. Body: `docs/audit/open-items-review-20260809.md`. Status ONLY in CURRENT-STATE.md.