diff --git a/README.md b/README.md index 47d84e3..abe5fc2 100644 --- a/README.md +++ b/README.md @@ -143,6 +143,7 @@ or a sandbox. - [Process authority and isolation](docs/integrations/authority-isolation.md) - [Artifact binding contract](docs/integrations/artifact-bindings.md) - [Scenario fixture contract](docs/integrations/scenario-fixtures.md) +- [Hermetic provider kit](docs/integrations/hermetic-provider-kit.md) - [Versioned contracts](contracts/README.md) - [Roadmap](ROADMAP.md) @@ -152,17 +153,18 @@ skills, agents, templates, and validators used to maintain these documents. ## Status Flow is in the **executable contract seam** phase. Issues #23, #26, #28, #36, -#38, and #40 are merged through PRs #24, #27, #35, #37, #39, and #41. Issue -#42 / PR #43 adds the final bounded parent-#25 slice: real -`trusted-unconfined` direct launch and supervision through the existing -subject, authority, and transcript gates. Issue #44 begins the parent-#29 -hermetic provider kit with an immutable package and deterministic accepted -inspection artifact. Issue #45 adds its bounded selection, lifecycle, and -protocol outcome matrix; #46 retains physical artifact adversaries, graph -fixtures, and the final parent evidence matrix. The process seam still does not -implement authenticity verification, operating-system sandbox enforcement, -authenticated host evidence, descriptor-bound launch, or process-tree -containment, and the scenario contract is not an executor. +#38, #40, #42, #44, and #45 are merged through PRs #24, #27, #35, #37, #39, +#41, #43, #47, and #48. PR #60 consolidates #46's four sequential checkpoints: +physical and evidence adversaries, deterministic single- and two-provider +compositions, exact package/executable content-identity correlation, a closed +behavior catalog, and the parent #29 evidence matrix. After that PR merges and +default-branch CI is green, #46 and #29 can close and #30 becomes the next +conformance-matrix checkpoint. +The synthetic providers are not the two real adapters required to finish +FLO-Q03. The process seam still does not implement authenticity verification, +operating-system sandbox enforcement, authenticated host evidence, +descriptor-bound launch, or process-tree containment, and the scenario contract +is not an executor. Current descriptions of Aniflow, Optiflow, and Renderflow are grounded in their default branches as inspected on 2026-08-13. The holons remain independently released repositories; real provider adapters and the restore-and-assess workflow remain diff --git a/ROADMAP.md b/ROADMAP.md index 78c0606..4093c16 100644 --- a/ROADMAP.md +++ b/ROADMAP.md @@ -3,12 +3,12 @@ schema: aether.architecture-document/v1 id: flow-roadmap title: Flow Roadmap kind: architecture-document -version: 1.0.0 +version: 1.3.0 status: draft owners: - egohygiene created: 2026-08-13 -updated: 2026-09-22 +updated: 2026-09-24 governed_by: - architecture-roadmap depends_on: @@ -30,29 +30,31 @@ repository: egohygiene/flow visibility: public publication: central route: /roadmap/flow/ -updated: 2026-09-22 +updated: 2026-09-24 --> -## 2026-09-21 execution snapshot +## 2026-09-24 execution snapshot > [!IMPORTANT] -> **2026-09-22 live-sweep checkpoint** +> **2026-09-24 hermetic-kit closeout checkpoint** > -> The current suite state and strict next-up queue are preserved in -> [the 2026-09-22 live-sweep checkpoint](docs/roadmaps/flow-suite-live-sweep-2026-09-22.md). -> It supersedes stale active-checkpoint and open-count claims in this snapshot while preserving -> the evidence below as history. Flow draft PR #47 is ready for maintainer review; stacked draft -> PR #48 follows it. The immediate Optiflow lane is #88 → #89 → #90 → #91 → #92 → #96 → #93, -> followed by #94 → #95 for lossless PNG replacement. +> Flow #42, #44, and #45 are merged. Draft PR #60 consolidates #46's four +> sequential checkpoints (#56–#59), including the final hermetic-kit package +> layout/finalization, behavior, and requirement evidence. Merge #60, require +> green default-branch CI, then close #46 and #29 and hand the executable +> conformance matrix to #30. +> [The 2026-09-22 live-sweep checkpoint](docs/roadmaps/flow-suite-live-sweep-2026-09-22.md) +> remains the historical suite-wide queue; this checkpoint supersedes only its +> older Flow PR state. > This evidence-reconciled snapshot is the issue-generation and visual-roadmap handoff. The longer-horizon strategy below remains canonical context; generated HTML, JSON, progress, issue plans, and commit lists are projections. **Lifecycle:** executable contract prototype -**Current gate:** Complete Flow #42, the final bounded child of Flow #25: launch -one exact authorized `trusted-unconfined` provider, enforce bounded transport -and direct-child lifecycle control, and preserve the existing subject, -authority, transcript, and artifact boundaries. +**Current gate:** Review and merge Flow PR #60, then require green +default-branch CI before closing #46 and #29. Flow #30 is the exact next +checkpoint for the broader executable compatibility, artifact, provider, +diagnostic, and privacy scenario matrix. **North-star outcome:** Federated orchestration across holons with stable provider seams, resumable work, and explicit evidence. @@ -62,8 +64,8 @@ authority, transcript, and artifact boundaries. **Route:** `/roadmap/flow/` **Current publication evidence:** Architecture, contract source, merged Flow #23 / PR #24, #26 / PR #27, #28 / PR #35, #36 / PR #37, #38 / PR #39, #40 / -PR #41, and the candidate #42 / PR #43; no executable release or Pages -publication observed. +PR #41, #42 / PR #43, #44 / PR #47, and #45 / PR #48, plus candidate #46 / +PR #60; no executable release or Pages publication observed. Publish the public-safe projection through egohygiene.io at /roadmap/flow/. This repository owns intent and acceptance evidence; it does not add a second site deployment. @@ -138,7 +140,7 @@ same acceptance gate validates a deterministic external-process transcript. id: FLO-Q03 status: active depends_on: [FLO-Q02] -issues: [13, 25, 28, 36, 38, 40, 42] +issues: [13, 25, 28, 29, 30, 36, 38, 40, 42] --> #### FLO-Q03 — Freeze conformance fixtures and implement provider adapters @@ -178,9 +180,20 @@ behavior through stable error and evidence contracts. - Flow #40 / merged PR #41 supplies exact authority/isolation preflight with green default-branch CI at `5f411da6e7040e3494cbd275729de9a2ed8c67a3`. -- Flow #25 remains the active owner of process enforcement. Flow #42 / PR #43 - is its final bounded child and adds direct launch/supervision without - pre-empting later sandbox, durable-state, or real-adapter work. +- Flow #25 is complete through #42 / merged PR #43, which adds bounded direct + launch and supervision without claiming sandbox, durable-state, or + real-adapter behavior. +- Flow #44 / merged PR #47 establishes the immutable hermetic package and + accepted success path. Flow #45 / merged PR #48 adds its closed lifecycle and + protocol matrix. +- Flow #46 / candidate PR #60 carries the evidence intended to complete the + remaining artifact adversaries, fixed single-provider and two-provider + compositions, exact package and executable-digest correlation and tamper + rejection, the closed behavior catalog, and every parent #29 requirement + mapping. Its evidence is indexed in + [the hermetic provider kit](docs/integrations/hermetic-provider-kit.md). +- The synthetic providers are conformance infrastructure, not real adapters. + FLO-Q03 remains active for #30 and the later released-provider adapter work.