spec: mature-first BytePort recovery, scope reconciliation and deployment oracles - #427
KooshaPari wants to merge 87 commits into
Conversation
…contradictions Record the open source denominator without replacing existing canonical specifications. tx-agent: chatgpt-mature-recovery tx-validated: mounted-source-inspection; native-suites-not-run
…dates Preserve the recovered Git-to-cloud and portfolio horizon pending authority reconciliation. Distinguish selected application deployment from placeholder sandbox success. tx-agent: chatgpt-mature-recovery tx-validated: handler-and-persistence-source-trace; native-suites-not-run
|
Important Draft PR not reviewedDraft PRs are not automatically reviewed by default.
To automatically review draft PRs, update your CodeRabbit configuration: reviews:
auto_review:
drafts: trueThanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. Comment |
First-cycle receiptRegistry dossier/paired review: KooshaPari/PhenoRegistry#592 Compared analyzed source Evidence reviewed includes the mounted router, deploy/terminate handlers, Project persistence hooks and DB helper. The latter two do not rewrite project identity to the separately returned provider ID. This strengthens the source finding but is not a native runtime test. Next bounded proof: actual selected-application marker/digest, deliberately distinct product/provider IDs, and restart after remote acceptance before local persistence. Resolve the original-prompt/local-only scope conflict in parallel. No native application, desktop or paid/cloud deployment was executed in this pass. Specification/design remains INCOMPLETE / BLOCKED, with open source denominator and no completion percentage. No merge recommendation. |
Add a native handler-level negative control with deliberately different IDs. No production remediation is included. tx-agent: chatgpt-mature-recovery tx-validated: source-derived expected-failure fixture
…ty oracle Use accepted ADR/charter/PRD/journey evidence to constrain the local-first interpretation. tx-agent: chatgpt-mature-recovery tx-validated: authority-source-and-handler-oracle-review
Pass 2 receipt — authority reconciliation + provider-ID oracleNew branch head: Authority recovery materially strengthened: frozen-source Added Pass-2 source record: Selected-artifact native test is deliberately deferred until SourceSnapshot→ManifestRevision→BuildArtifact semantics are selected; inventing an image naming convention would manufacture a contract. Scope authority is narrowed but not fully closed; architecture/completion gates remain blocked. |
…idence Separate September UI/docs evolution from mature mission authority. tx-agent: chatgpt-mature-recovery tx-validated: commit-metadata-lineage-review
Pass 2B correction — desktop docs are not mission authorityDirect commit archaeology falsified a key ambiguity. The September README rewrite that introduced “only open-source desktop deployment app” is commit New source record: This substantially strengthens the provisional model: deployment+portfolio remains the mature horizon; desktop/local-first is surface/placement evolution unless contrary authority is recovered. CLI-first vs desktop-first remains a projection-priority question. The canonical registry intent file is not rewritten yet because raw chats/PR authority and independent falsification remain open. |
📊 Tier-2 Coverage Gate Results
|
Quarantine agent-generated transport architecture pending accepted-product trace. tx-agent: chatgpt-mature-recovery tx-validated: commit-lineage-review
Pass 3 receipt — lineage partition + exact native rerunBranch head: New lineage partition prevents current-tree breadth from becoming scope by accident. June commit Current journey mapping also confirms J3 portfolio paths named in The exact provider-ID adversarial test commit is Shared PhenoInfra dependency is frozen at exact |
|
Legacy Tooling Scan Report
No violations detected. This is a WARN-mode scan. Fix before strict enforcement begins. |
📊 Tier-2 Coverage Gate Results
|
Bind BP-F03 to exact candidate, workflow job, fixture and failure output. tx-agent: chatgpt-mature-recovery tx-validated: exact-job-log-review
Bind state to exact Go handler failure without closing architecture risk. tx-agent: chatgpt-mature-recovery tx-validated: exact-job-receipt-state-update
Promote project/source/artifact/operation/provider identities before fixing BP-F03. tx-agent: chatgpt-mature-recovery tx-validated: native-evidence-backed-ontology-slice
Separate mutable source reference from snapshot manifest artifact operation and provider resource. tx-agent: chatgpt-mature-recovery tx-validated: recovered-contract-plus-mounted-path-review
📊 Tier-2 Coverage Gate Results
|
|
Legacy Tooling Scan Report
No violations detected. This is a WARN-mode scan. Fix before strict enforcement begins. |
Pass 4 — BP-F03 native reproduction confirmedExact Go job Evidence receipt: I did not patch termination yet. The new Current state machine record now carries the native result explicitly; completion remains blocked/null. |
…neage Preserve portfolio outcome while treating unavailable Slickport as an adapter/history lead. tx-agent: chatgpt-mature-recovery tx-validated: registry-and-repository-availability-review
Source/artifact + portfolio boundary advanced
Slickport archaeology also clarifies the portfolio boundary. BytePort's charter and historical README treat Slickport as a portfolio backend/example, while PhenoRegistry inventories No third product program was started. |
Add a native evidence probe for the deploy/persist crash window without selecting the final recovery architecture. tx-agent: chatgpt-mature-recovery tx-validated: observational-risk-probe
Pass 4 execution receiptBP-F03 is now NATIVE_COUNTEREXAMPLE_REPRODUCED on exact candidate The branch now contains an evidence receipt plus ontology/source-artifact contracts. Identity chain: A second native observational probe ( Registry/NanoVMS boundary evidence further narrows architecture: NanoVMS is a sandbox/VMM runtime boundary, not high-level source/build orchestration. Provider-owned source build is unsupported by current evidence. BytePort-owned orchestration plus delegated established build engine is now the stronger bootstrap candidate, pending direct prototype/API falsification. |
📊 Tier-2 Coverage Gate Results
|
|
Legacy Tooling Scan Report
No violations detected. This is a WARN-mode scan. Fix before strict enforcement begins. |
📊 Tier-2 Coverage Gate Results
|
Bind each source/build/runtime/auth/network/publication criterion to mounted implementation or explicit gap. tx-agent: chatgpt-mature-recovery
Selected-app vertical-slice contract receiptCurrent Added Traceability slice 02 maps each criterion to current implementation or explicit gap. Current recovery/auth workflow is queued; no pending result is promoted. |
…tation Retain semantic authority while quarantining stale paths and unqualified numeric targets. tx-agent: chatgpt-mature-recovery
ADR authority + selected-app storage receiptAccepted ADR-001 corroborates CLI-primary, Git ref deployment, manifest/multi-service and portfolio service boundaries, but its named package tree is not current implementation evidence. Historical numeric targets (<100ms CLI, <500ms manifest, <135s deploy, <200MB backend, 5+ deployments) are quarantined until benchmark contracts requalify them. Conversation recovery did not find direct user authority making ADR-001's AWS-primary/provider-specific choices immutable. Provider strategy therefore remains adapter-based; AWS can be supported without becoming BytePort identity. Current Project storage cannot represent the selected-app mature identities, so additive migration with |
Sequence additive identities/persistence/application adapters before receipt-gated lifecycle/build/network/publication integration. tx-agent: chatgpt-mature-recovery
Grade source/artifact/operation/provider/auth/publication identities with hard anti-gaming controls. tx-agent: chatgpt-mature-recovery
Developer-package/autograder receiptAdded Added No production schema or route behavior changed. |
Encode additive Tier-A work and evidence-gated Tier-B integration for agent execution. tx-agent: chatgpt-mature-recovery
…ure stages Keep source artifact operation generation and provider identities stable from the first selected-app slice. tx-agent: chatgpt-mature-recovery
Separate transport/planner/placeholders/historical provider architecture from accepted mature obligations. tx-agent: chatgpt-mature-recovery
Machine-executable handoff + stage projection receiptAdded CVP now explicitly requires the mature SourceSnapshot/ManifestRevision/BuildArtifact/RuntimeOperation/Generation/ProviderResource spine even with one source/build/runtime adapter. ProjectID-as-runtime, mutable refs/tags as final evidence, and disposable operation schemas are forbidden transition debt. Transport/hex focus work, plan-only Tauri deploy, alpine placeholder, AWS-specific old package design and legacy DeploymentsJSON are explicitly classified rather than counted as mature scope. Current-head recovery workflow remains pending; no result claimed. |
Make developer handoff structure machine-checkable. tx-agent: chatgpt-mature-recovery
Reject invalid IDs gates dependencies duplicates and cycles before agent execution. tx-agent: chatgpt-mature-recovery
Validate the machine-readable handoff before spec changes can claim usable package state. tx-agent: chatgpt-mature-recovery
Prevent skipped stale wrong-candidate or unexecuted results from becoming green. tx-agent: chatgpt-mature-recovery
Exercise NOT_RUN semantics without creating product evidence. tx-agent: chatgpt-mature-recovery
Validate that unexecuted/nonqualifying evidence cannot satisfy criteria. tx-agent: chatgpt-mature-recovery
Machine-enforced contract integrity receiptAdded recovery schema/validators plus The workflow has not yet registered on the latest commit, so no CI-green claim is made. This is additive Tier-A control-plane implementation only. |
Introduce source, artifact, operation, generation, provider-resource and observation identities without changing routes or schema. tx-agent: chatgpt-mature-recovery tx-wp: BP-WP-A01
Cover round-trip, provider-managed no-artifact and typed provider-resource boundaries. tx-agent: chatgpt-mature-recovery tx-wp: BP-WP-A01
Run additive mature identity tests independently from broad product CI. tx-agent: chatgpt-mature-recovery tx-wp: BP-WP-A01
Tier-A implementation begins — BP-WP-A01Implemented additive mature domain identities in No route or database schema uses these types yet. This is A01 scaffolding only. Dedicated contract-integrity CI now includes the model tests; workflow registration is still pending, so no CI-green claim. |
|
Represent historical provider instances without fabricating source manifest or artifact verification. tx-agent: chatgpt-mature-recovery tx-wp: BP-WP-A02
Create source manifest artifact runtime and portfolio seams without migrating Gin or Tauri behavior. tx-agent: chatgpt-mature-recovery tx-wp: BP-WP-A03
Ensure old provider instances cannot acquire fabricated source manifest or artifact identity. tx-agent: chatgpt-mature-recovery tx-wp: BP-WP-A02
Exercise legacy-unverified semantics and common application identity models independently. tx-agent: chatgpt-mature-recovery
Tier-A parallel implementation receipt — A02/A03Added explicit Dedicated contract workflow run |
|
📊 Tier-2 Coverage Gate Results
|




Status and scope
INCOMPLETE / BLOCKED. BytePort is paired only with ShareCLI for this recovery program. This PR does not freeze architecture, establish a usable product stage or recommend merging.
Registry research and completion gate: KooshaPari/PhenoRegistry#592.
Paired ShareCLI specification: KooshaPari/ShareCLI#878.
Frozen analyzed source:
0232cca16fedb7963a8c6f556dc5eee5c8c1674e.Registry analyzed source:
85d7cd00cf59c379c05b740e8130a85b0d5bd31b.Specification head:
1d03b2b6235c716a819009f99075c87912954ba8.No implementation candidate has been accepted or selected for acceptance.
Additive product-local records
https://github.com/KooshaPari/BytePort/tree/spec/mature-recovery-2026-09-29/docs/specs/mature-recovery/2026-09-29
SNAPSHOT, semantic SOURCE-COVERAGE-LEDGER, RECOVERY-CONTRACT, SEMANTIC-FINDINGS, ORACLE-CONTRACT and CURRENT-STATE.
The contract draft recovers mature product identity before proposing narrow stage projections. It separates project/source/manifest/build/target/operation/provider-resource identities, first-class journeys, applicable quality overlays, transition debt and bounded work packages. Existing requirement IDs and canonical/historical documents are not replaced.
Evidence-backed findings
/deployhandler submitsalpine:latest/native rather than translating the selected source into the requested application artifact. A successful sandbox response is not selected-application acceptance./deploystores the returned provider sandbox ID in its deployment map;/terminatesends project UUID. The persistence hooks and DB helper were inspected and do not normalize those identities. A fixture with deliberately distinct IDs is required.Oracle design and verification boundary
Acceptance must independently observe selected artifact, exact actor/target/provider identity, durable recovery state and actual user-facing result. Wrong-image200, equal-ID mocks, stale evidence, missing/empty/skipped tests and candidate-controlled rubric weakening cannot be green.
No native Go/Rust/Tauri product suite, desktop run, NanoVMS deployment or paid cloud resource was executed. Source findings are not runtime remediation receipts. Full UI/CLI reachability, complete source/history coverage, accepted scope reconciliation, pinned dependency contracts, deeper current SOTA/license/health/academic review, independent grader enforcement and fresh adversarial completeness review remain outstanding.
No production code, secrets, old artifacts, releases or main branch was changed. Completion percentage remains null; all unmet gates are explicit in CURRENT-STATE. The later comparative pilot is separate and has not run.
tx-agent: chatgpt-mature-recovery