This document is generated from protocols/registry.json. It describes compatibility governance only: it never grants runtime authority, capabilities, protocol deletion, data migration, or historical checksum changes.
| Family | Class | Owner | Active IDs | Persisted/exported |
|---|---|---|---|---|
| activity-event-projection | projection |
Run activity and HTTP maintainers | 5 | true |
| agent-scheduling-delivery-ledgers | internal-durable |
Agent graph, scheduler, and batch-delivery maintainers | 73 | true |
| analyzer-interchange | external-durable |
Analyzer contract maintainers | 40 | true |
| authority-approval-ledgers | internal-durable |
Execution authority and approval maintainers | 38 | true |
| browser-cdp-process-session | ephemeral |
Browser runtime maintainers | 23 | false |
| browser-ui-evidence-ledgers | internal-durable |
Browser and UI evidence maintainers | 41 | true |
| capability-readiness-projection | projection |
Application readiness maintainers | 3 | true |
| cli-headless-contract | external-durable |
CLI and headless surface maintainers | 2 | true |
| control-plane-ledgers | internal-durable |
Core Go control-plane maintainers | 97 | true |
| credential-provider-ledgers | internal-durable |
Credential, provider, model-route, and pricing maintainers | 17 | true |
| desktop-risk-restart-session | ephemeral |
Desktop shell lifecycle maintainers | 1 | false |
| desktop-web-presentation-state | projection |
Desktop and React workbench maintainers | 14 | true |
| docker-attach-process-session | ephemeral |
Docker runtime transport maintainers | 1 | false |
| exported-evidence-and-handoff | external-durable |
Evidence, verification, report, and handoff maintainers | 35 | true |
| extension-package-contracts | external-durable |
Skill, Plugin, Hook, and extension maintainers | 40 | true |
| http-openapi-contract | external-durable |
HTTP/OpenAPI and generated-client maintainers | 98 | true |
| in-memory-token-session | ephemeral |
Credential and bootstrap maintainers | 1 | false |
| lsp-process-session | ephemeral |
Code intelligence maintainers | 1 | false |
| mcp-interchange | external-durable |
MCP client/server maintainers | 3 | true |
| operation-receipt-projection | projection |
Operation receipt maintainers | 2 | true |
| process-runtime-lifecycle | internal-durable |
Command, model, terminal, and runner lifecycle maintainers | 52 | true |
| project-configuration-contract | external-durable |
Project configuration and instruction maintainers | 4 | true |
| provider-stream-presentation | ephemeral |
Model streaming and renderer maintainers | 4 | false |
| registry-governance-contract | external-durable |
Protocol and Surface governance maintainers | 2 | true |
| release-and-packaging-contracts | external-durable |
Desktop release and packaging maintainers | 3 | true |
| report-summary-projections | projection |
Finding, repository, and summary maintainers | 5 | true |
| sandbox-docker-lifecycle | internal-durable |
Sandbox and Docker lifecycle maintainers | 196 | true |
| standard-code-delivery-ledger | external-durable |
Standard Code delivery and public projection maintainers | 8 | true |
| thread-run-session-ledgers | internal-durable |
Thread, Run, Session, context, and message maintainers | 37 | true |
| thread-transcript-projection | projection |
Thread transcript maintainers | 1 | true |
| tool-mutation-ledgers | internal-durable |
Tool gateway, file edit, Git, and mutation maintainers | 31 | true |
| ui-reference-testing-contracts | projection |
React workbench and visual-regression maintainers | 4 | true |
| workspace-repository-ledgers | internal-durable |
Workspace and repository maintainers | 9 | true |
- Class:
projection - Owner: Run activity and HTTP maintainers
- Source of truth:
internal/runactivity,internal/store - Persistence/export boundary: Materialized or queried activity DTOs may persist, but durable Run/event rows remain authoritative.
- Compatibility rule: Rebuild from durable Run and event rows while preserving stable order, high-water cursors, and redaction.
- Retirement gate (
rebuild-from-source): Rebuild source remains retained and independently verifiable; Replacement preserves ordering, cursor, invalidation, and redaction behavior; Retirement evidence proves a complete rebuild from the named source - Rebuild source: Durable Run, lifecycle, and redacted event rows in internal/store.
- Writers:
activity-event-projection-writer(v1, write-current) atinternal/store
- Readers:
activity-event-projection-reader(v1, active) atinternal/runactivity
5 active identifiers
operator_action_center.v1operator_action_item.v1run-event-poll.v1run-events.v1run_activity.v1
- Class:
internal-durable - Owner: Agent graph, scheduler, and batch-delivery maintainers
- Source of truth:
internal/application,internal/domain,internal/store - Persistence/export boundary: SQLite retains agent ownership, attempts, dependencies, wakes, mailboxes, and delivery decisions.
- Compatibility rule: Add versions without reinterpreting generations or exactly-once keys; retain old readers until migration or indefinite support is proven.
- Retirement gate (
migration-or-retention): ADR-backed retirement decision and rollback path; Old-version fixtures remain until every supported source is migrated or retained; Reader history is append-only; retirement requires migration or retention evidence - Writers:
agent-scheduling-delivery-ledgers-writer(v1, v2, write-new) atinternal/application
- Readers:
agent-scheduling-delivery-ledgers-reader(v1, v2, active) atinternal/store
73 active identifiers
agent-code-edit.v1agent_admission_operation.v1agent_admission_request.v1agent_attempt.v1agent_attempt_continue.v1agent_attempt_crash.v1agent_attempt_failure.v1agent_attempt_operation.v1agent_attempt_start.v1agent_attempt_usage.v1agent_completion.v1agent_completion_operation.v1agent_completion_request.v1agent_dependency.v1agent_dependency_edge_operation.v1agent_dependency_edge_request.v1agent_message_operation.v1agent_message_request.v1batch-deliveries-list.v1batch-delivery-edit.v1batch-delivery-mailbox-request.v1batch-delivery-mailbox.v1batch-delivery-merge-queue.v1batch-delivery-merge-request.v1batch-delivery-receipt-request.v1batch-delivery-receipt.v1batch-delivery-request.v1batch-delivery-review-request.v1batch-delivery-review.v1batch-delivery-tools.v1batch-delivery-workspace-tools.v1batch-validation-output.v2batch-validation-process.v1batch_delivery_cancel.v1batch_delivery_merge.v1batch_delivery_prepare.v1batch_delivery_reconcile.v1batch_delivery_renew_owner.v1batch_delivery_review_control.v1child_task_admit.v1child_task_dedup.v1child_task_proposal.v1child_task_proposals.v1child_task_request.v1child_task_review.v1child_task_review_request.v1delivery_checkpoint.v1delivery_checkpoint_request.v1delivery_source.v1plan_delivery_proposal_request.v1plan_delivery_selection_request.v1readonly_fanout.v1readonly_fanout_cancel.v1readonly_fanout_capabilities.v1readonly_fanout_execution_request.v1readonly_fanout_executions.v1readonly_fanout_finding.v1readonly_fanout_model_input.v1readonly_fanout_plan_request.v1readonly_fanout_report.v1readonly_fanout_shard.v1readonly_fanout_snapshot.v1run_wake_cancel_request.v1run_wake_consumption.v1run_wake_consumption_handoff.v1run_wake_operation.v1run_wake_schedule_request.v1run_wake_worker.v1specialist_delegation.v1specialist_delegation_application_policy.v1specialist_delegation_application_request.v1specialist_delegation_request.v1specialist_delegation_review.v1
- Class:
external-durable - Owner: Analyzer contract maintainers
- Source of truth:
analyzers/fixture/src,analyzers/testdata,internal/analyzer - Persistence/export boundary: Analyzer descriptors, requests, results, release metadata, and evidence cross the Go/Rust or third-party boundary.
- Compatibility rule: Write the newest reviewed format, dual-read supported old formats, keep shared vectors, and reject unknown versions.
- Retirement gate (
migration-or-retention): ADR-backed retirement decision and rollback path; Old-version fixtures remain until every supported source is migrated or retained; Reader history is append-only; retirement requires migration or retention evidence - Writers:
analyzer-interchange-writer(v1, write-current) atinternal/analyzer
- Readers:
analyzer-interchange-reader(v1, active) atinternal/analyzer
40 active identifiers
analyzer_artifact_candidate.v1analyzer_descriptor.v1analyzer_durable_start_request.v1analyzer_embedded_wasi_execution.v1analyzer_embedded_wasi_invocation_ownership.v1analyzer_embedded_wasi_isolation_profile.v1analyzer_embedded_wasi_module_assessment.v1analyzer_embedded_wasi_release_decision.v1analyzer_error.v1analyzer_executable_format.v1analyzer_executable_identity.v1analyzer_execution_capability.v1analyzer_execution_consumption.v1analyzer_execution_record.v1analyzer_invocation.v1analyzer_invocation_outcome.v1analyzer_invocation_preflight.v1analyzer_launch_plan.v1analyzer_launch_plan_review.v1analyzer_operator_start_capability_contract.v1analyzer_operator_start_capability_request.v1analyzer_product_adapter_admission_matrix.v1analyzer_product_adapter_recovery_acceptance.v1analyzer_product_adapter_threat_model.v1analyzer_protocol.v1analyzer_provenance_statement.v1analyzer_provenance_verification.v1analyzer_release_allowlist.v1analyzer_release_candidate.v1analyzer_release_manifest.v1analyzer_result.v1analyzer_scope_limits_approval.v1analyzer_start_intent.v1analyzer_start_lifecycle_receipt.v1analyzer_validated_result_candidate.v1ed25519.v1embedded_analyzer_execution_control.v1embedded_analyzer_operator_request.v1embedded_wazero_wasip1.v1fixture.digest.v1
- Class:
internal-durable - Owner: Execution authority and approval maintainers
- Source of truth:
internal/approval,internal/executionauth,internal/store - Persistence/export boundary: SQLite snapshots preserve permission, profile, interaction, approval, lease, and generation facts.
- Compatibility rule: Authority changes are additive and fail closed; old readers remain for every supported stored snapshot.
- Retirement gate (
migration-or-retention): ADR-backed retirement decision and rollback path; Old-version fixtures remain until every supported source is migrated or retained; Reader history is append-only; retirement requires migration or retention evidence - Writers:
authority-approval-ledgers-writer(v1, write-current) atinternal/application
- Readers:
authority-approval-ledgers-reader(v1, active) atinternal/store
38 active identifiers
approval_grant_consumption.v1approval_grant_operation_key.v1approval_operation_key.v1approval_record.v1full-cdp-session-operation.v1once_command.v1once_command_approval.v1once_command_policy.v1once_command_request.v1once_command_spec.v1operator_steering_cancellation_operation.v1operator_steering_cancellation_request.v1operator_steering_operation.v1operator_steering_request.v1run_browser_cdp_permission_change_request.v1run_browser_cdp_permission_operation.v1run_execution_handoff_operation.v1run_execution_handoff_request.v1run_execution_interaction_change_request.v1run_execution_interaction_operation.v1run_execution_permission_browser_cdp_operation.v1run_execution_permission_change_request.v1run_execution_permission_operation.v1run_execution_profile_change_request.v1run_execution_profile_operation.v1run_mode_operation.v1run_network_authority_operation.v1run_network_authority_request.v1run_phase_change_request.v1thread_execution_permission.v1thread_execution_permission_browser_cdp_materialization_operation.v1thread_execution_permission_browser_cdp_operation.v1thread_execution_permission_change_request.v1thread_execution_permission_current_run_operation.v1thread_execution_permission_materialization_operation.v1thread_execution_permission_operation.v1thread_model_route_operation.v1thread_model_route_request.v1
- Class:
ephemeral - Owner: Browser runtime maintainers
- Source of truth:
internal/browserruntime - Persistence/export boundary: CDP requests and target handles exist only for one admitted browser generation.
- Compatibility rule: Re-admit and rebind every request after restart; unknown versions fail closed.
- Retirement gate (
restart-non-persistence): Restart tests prove no handle, token, stream, or authority is adopted; Runtime metadata cannot substitute for a fresh admission; Shutdown and crash recovery discard process-local state - Restart proof: Browser runtime restart tests create a fresh generation and never adopt prior CDP targets or request handles.
- Writers:
browser-cdp-process-session-writer(v1, write-current) atinternal/browserruntime
- Readers:
browser-cdp-process-session-reader(v1, active) atinternal/browserruntime
23 active identifiers
browser-action-tools.v1browser_cdp_outcome.v1browser_cdp_request.v1browser_click.v1browser_navigate.v1browser_navigate_result.v1browser_screenshot.v1browser_screenshot_result.v1browser_snapshot.v1browser_status.v1browser_status_result.v1browser_target_scope.v1browser_type.v1full_cdp_cookie_access.v1full_cdp_interaction.v1full_cdp_page_snapshot.v1full_cdp_request_capture.v1full_cdp_runtime_receipt.v1full_cdp_screenshot.v1restricted_browser_dom_metadata.v1restricted_browser_navigation.v1restricted_browser_screenshot.v1restricted_cdp_authorization.v1
- Class:
internal-durable - Owner: Browser and UI evidence maintainers
- Source of truth:
internal/browserruntime,internal/store,internal/uievidence - Persistence/export boundary: SQLite and receipts retain launch, containment, ownership, cleanup, capture, and source-binding evidence.
- Compatibility rule: Preserve generation, source, redaction, and cleanup bindings until durable migration or retention is proven.
- Retirement gate (
migration-or-retention): ADR-backed retirement decision and rollback path; Old-version fixtures remain until every supported source is migrated or retained; Reader history is append-only; retirement requires migration or retention evidence - Writers:
browser-full-cdp-authorization-writer(v2, write-current) atinternal/browserruntimebrowser-ui-evidence-ledgers-writer(v1, write-current) atinternal/browserruntime
- Readers:
browser-full-cdp-authorization-reader(v2, active) atinternal/browserruntimebrowser-ui-evidence-ledgers-reader(v1, active) atinternal/store
41 active identifiers
browser-launch-budget.v1browser-launch-lease-owner-request.v1browser-launch-owner.v1browser-launch-preparation-operation.v1browser-launch-preparation-request.v1browser-launch-review-operation.v1browser-launch-review-request.v1browser-launch-reviewer-request.v1browser-launch-reviewer.v1browser-network-evidence-operation.v1browser-network-evidence-request.v1browser-network-review-operation.v1browser-network-review-request.v1browser-profile-marker.v1browser-profile-owner.v1browser-synthetic-process.v1browser_executable_acceptance.v1browser_executable_identity.v1browser_full_cdp_authorization.v2browser_full_cdp_start_authorization.v2browser_launch_attempt.v1browser_launch_lease.v1browser_launch_review.v1browser_lifecycle_observation.v1browser_lifecycle_reconciliation.v1browser_network_containment_plan.v1browser_network_containment_review.v1browser_process_exit.v1browser_profile.v1browser_profile_cleanup.v1browser_profile_marker.v1browser_profile_observation.v1browser_profile_ownership.v1browser_profile_reconciliation.v1browser_profile_runtime_lease.v1browser_publisher_policy.v1browser_runtime_checkpoint.v1browser_runtime_receipt.v1browser_session_plan.v1browser_start_authorization.v1browser_start_spec.v1
2 retained retirement records
browser_full_cdp_authorization.v1: ADR 0106 replaced v1 with v2 exact execution-snapshot, activation-generation, and authorization-fence bindings.browser_full_cdp_start_authorization.v1: ADR 0106 replaced v1 with v2 exact execution-snapshot, activation-generation, and authorization-fence bindings.
- Class:
projection - Owner: Application readiness maintainers
- Source of truth:
internal/application,internal/store - Persistence/export boundary: Readiness documents are non-authorizing status projections and may be persisted or exported.
- Compatibility rule: Rebuild from current selections, leases, startup gates, backend evidence, and Go policy; capability_grant stays false.
- Retirement gate (
rebuild-from-source): Rebuild source remains retained and independently verifiable; Replacement preserves ordering, cursor, invalidation, and redaction behavior; Retirement evidence proves a complete rebuild from the named source - Rebuild source: Current persisted Run selections, leases, startup gates, backend evidence, and Go-owned policy.
- Writers:
capability-readiness-projection-writer(v1, v2, write-new) atinternal/application
- Readers:
capability-readiness-projection-reader(v1, v2, active) atinternal/httpapi
3 active identifiers
model_availability.v2run_capability_readiness.v1runtime_capabilities.v1
- Class:
external-durable - Owner: CLI and headless surface maintainers
- Source of truth:
cmd/cyberagent,internal/headless - Persistence/export boundary: Machine-readable CLI/headless output and diagnostics are exported to scripts and operators.
- Compatibility rule: Add fields and aliases compatibly; preserve command and exit categories and reject unknown machine formats.
- Retirement gate (
migration-or-retention): ADR-backed retirement decision and rollback path; Old-version fixtures remain until every supported source is migrated or retained; Reader history is append-only; retirement requires migration or retention evidence - Writers:
cli-headless-contract-writer(v1, write-current) atinternal/headless
- Readers:
cli-headless-contract-reader(v1, active) atinternal/headless
2 active identifiers
drydock-api.v1headless.v1
- Class:
internal-durable - Owner: Core Go control-plane maintainers
- Source of truth:
internal/application,internal/domain,internal/store - Persistence/export boundary: Reviewed cross-domain separators and lifecycle records remain audit/recovery evidence.
- Compatibility rule: Preserve identity, replay, generation, cleanup, and unknown-version refusal; narrower registered families take precedence.
- Retirement gate (
migration-or-retention): ADR-backed retirement decision and rollback path; Old-version fixtures remain until every supported source is migrated or retained; Reader history is append-only; retirement requires migration or retention evidence - Writers:
control-plane-ledgers-writer(v1, v2, v3, write-new) atinternal/application
- Readers:
control-plane-ledgers-reader(v1, v2, v3, active) atinternal/store
97 active identifiers
byte_identical.v1direct_exe_signing.v1direct_exe_signing_handoff.v1direct_exe_signing_request.v1drydock-checkpoint-request.v1drydock-checkpoint.v1drydock-cleanup-request.v1drydock-create-request.v1drydock-delivery-proposal.v1drydock-delivery-request.v1drydock-fork-request.v1drydock-lifecycle-receipt.v1drydock-reconcile.v1drydock-rewind-request.v1drydock-use-request.v1drydock-workspace-trust.v1drydock-workspace.v1finding_acceptance_request.v1finding_facts.v1finding_fix_request.v1finding_report.v1finding_validation_request.v1macos_portable_compatibility.v1msix_manifest.v1msix_manifest.v2pe_authenticode_normalized.v1provider_grounded_citation.v1sanitized_host_environment.v1scheduled-job-worker.v1scheduled_job_create_request.v1scheduled_job_observation.v1scheduled_job_operation.v1scheduled_job_transition_request.v1script_process.v1script_process_approval.v1script_process_operation_key.v1script_process_proposal.v1script_run_create.v1specialist_context.v1specialist_lifecycle.v1specialist_model_action.v1specialist_model_cancellation_operation.v1specialist_model_cancellation_request.v1specialist_model_input.v1specialist_operator_schedule_request.v1specialist_skill_assignment.v1specialist_skill_context.v1standard-code-backend-readiness.v1standard-code-command-result.v1standard-code-command.v1standard-code-docker-runner.v1standard-code-docker-runner.v2standard-code-git-metadata-mask.v1standard_code_attack_matrix.v1standard_code_command_failure.v1standard_code_docker_capability.v1standard_code_docker_operation.v1standard_code_mutation_checkpoint.v1standard_code_preset_operation.v1standard_code_preset_request.v1standard_code_supervisor.v1standard_code_supervisor_intent.v1standard_code_supervisor_ledger.v1standard_code_supervisor_ledger_request.v1standard_code_supervisor_snapshot.v1structured_tool_operation.v1supervisor_structured_tool.v1supervisor_tool_call_id.v1supervisor_tool_result.v1untrusted_context.v1user_terminal_policy.v1user_terminal_session.v1wazero_interpreter_wasip1.v1web-evidence-tools.v1web-ui.v1web_citation.v1web_evidence_operation.v1web_evidence_presentation.v1web_fetch.v1web_fetch_authorization.v1web_search.v1windows-two-deliverable-contract.v1windows_artifact_attestations.v1windows_browser_job.v2windows_portable_compatibility.v1windows_release_completion.v1windows_restricted_token_job_candidate.v1windows_store_lifecycle.v1windows_store_lifecycle_row.v1windows_store_listing_readback.v1windows_store_readback.v1work_board.v1work_item_create.v1workspace-checkpoint-api.v1workspace-checkpoint-transaction.v1workspace-checkpoint.v1yaml.v3
- Class:
internal-durable - Owner: Credential, provider, model-route, and pricing maintainers
- Source of truth:
internal/credential,internal/modelregistry,internal/store - Persistence/export boundary: Secret-free references, provider diagnostics, qualifications, and declared snapshots survive restart.
- Compatibility rule: Never weaken credential separation or qualification; retain readers for every supported stored snapshot.
- Retirement gate (
migration-or-retention): ADR-backed retirement decision and rollback path; Old-version fixtures remain until every supported source is migrated or retained; Reader history is append-only; retirement requires migration or retention evidence - Writers:
credential-provider-ledgers-writer(v1, write-current) atinternal/application
- Readers:
credential-provider-ledgers-reader(v1, active) atinternal/store
17 active identifiers
model_cancellation_operation.v1model_cancellation_request.v1model_context_window.v1model_harness_probe.v1provider-search-adapter.v1provider-search-binding.v1provider_definition.v1provider_definition_collection.v1provider_definition_control.v1provider_definitions.v1provider_native_search_binding.v1provider_native_search_cache.v1provider_native_search_declared_binding.v1provider_native_search_negative.v1provider_native_search_tool.v1provider_registry_reload.v1provider_request_runtime.v1
- Class:
ephemeral - Owner: Desktop shell lifecycle maintainers
- Source of truth:
cmd/cyberagent-desktop - Persistence/export boundary: The parent/helper readiness channel exists only for one same-executable restart attempt and grants no durable authority.
- Compatibility rule: Fail closed unless the helper proves the expected parent and exact readiness protocol before the parent exits.
- Retirement gate (
restart-non-persistence): Restart tests prove no handle, token, stream, or authority is adopted; Runtime metadata cannot substitute for a fresh admission; Shutdown and crash recovery discard process-local state - Restart proof: Every restart creates a fresh one-shot readiness channel; the helper cannot reuse a prior channel or carry authority across attempts.
- Writers:
desktop-risk-restart-session-writer(v1, write-current) atcmd/cyberagent-desktop
- Readers:
desktop-risk-restart-session-reader(v1, active) atcmd/cyberagent-desktop
1 active identifiers
desktop_risk_restart.ready.v1
- Class:
projection - Owner: Desktop and React workbench maintainers
- Source of truth:
internal/desktop,web/src - Persistence/export boundary: Renderer settings and Desktop DTO projections may be stored locally but grant no execution authority.
- Compatibility rule: Rebuild or default from Go-owned state while preserving user presentation settings and redaction.
- Retirement gate (
rebuild-from-source): Rebuild source remains retained and independently verifiable; Replacement preserves ordering, cursor, invalidation, and redaction behavior; Retirement evidence proves a complete rebuild from the named source - Rebuild source: Go Application DTOs plus explicitly user-owned local presentation settings.
- Writers:
desktop-web-presentation-state-writer(v1, write-current) atweb/src
- Readers:
desktop-web-presentation-state-reader(v1, active) atweb/src
14 active identifiers
desktop_connection_bootstrap.v1desktop_debug_terminal_agent_input.v1desktop_file_selection.v1desktop_risk_restart.v1desktop_skill_package_dialog.v1desktop_skill_package_install.v1desktop_skill_package_preview.v1desktop_user_terminal.v1desktop_workspace_import.v1desktop_workspace_launcher_list.v1desktop_workspace_open.v1prayu.run-navigation.v1prayu.settings.sidebar.width.v1prayu.sidebar.width.v1
- Class:
ephemeral - Owner: Docker runtime transport maintainers
- Source of truth:
internal/sandbox - Persistence/export boundary: Attach/stdin writers and live transport handles exist only in one process generation.
- Compatibility rule: Restart closes live writers and requires fresh durable admission and container-generation checks.
- Retirement gate (
restart-non-persistence): Restart tests prove no handle, token, stream, or authority is adopted; Runtime metadata cannot substitute for a fresh admission; Shutdown and crash recovery discard process-local state - Restart proof: Docker restart tests reject process-local stdin writers and require fresh durable admission.
- Writers:
docker-attach-process-session-writer(v2, write-current) atinternal/sandbox
- Readers:
docker-attach-process-session-reader(v2, active) atinternal/sandbox
1 active identifiers
command_runtime_stdin.v2
- Class:
external-durable - Owner: Evidence, verification, report, and handoff maintainers
- Source of truth:
internal/report,internal/runner,internal/verification - Persistence/export boundary: Receipts, evidence envelopes, reports, snapshots, and handoffs are exported user/audit data.
- Compatibility rule: Use additive formats or new versions, keep old fixtures/readers, preserve hashes/redaction, and reject unknown versions.
- Retirement gate (
migration-or-retention): ADR-backed retirement decision and rollback path; Old-version fixtures remain until every supported source is migrated or retained; Reader history is append-only; retirement requires migration or retention evidence - Writers:
exported-evidence-and-handoff-writer(v1, write-current) atinternal/application
- Readers:
exported-evidence-and-handoff-reader(v1, active) atinternal/report
35 active identifiers
browser_network_containment_evidence.v1code_handoff_export.v1context_memory_export.v1finding_artifact_evidence.v1finding_artifact_evidence_request.v1finding_remediation_evidence.v1finding_remediation_evidence_request.v1github-review-evidence.v1operator_verification_evidence_operation.v1operator_verification_evidence_request.v1operator_verification_plan.v1operator_verification_plan_evidence_association.v1operator_verification_plan_evidence_association_operation.v1operator_verification_plan_evidence_association_request.v1operator_verification_plan_inventory.v1operator_verification_plan_item.v1operator_verification_plan_item_snapshot_receipt_operation.v1operator_verification_plan_item_snapshot_receipt_request.v1operator_verification_plan_item_snapshot_receipt_review_operation.v1operator_verification_plan_item_snapshot_receipt_review_request.v1operator_verification_plan_operation.v1operator_verification_plan_request.v1runner_deadline_budget_evidence.v1runner_evidence_set_receipt.v1runner_exit_evidence.v1runner_lifecycle_contract.v1runner_lifecycle_timeline_evidence.v1runner_resource_limit_evidence.v1runner_runtime_evidence.v1runner_termination_cause_evidence.v1sandbox_backend_evidence.v1sandbox_docker_production_evidence.v1standard_code_command_evidence.v1standard_code_tool_evidence.v1web_evidence.v1
- Class:
external-durable - Owner: Skill, Plugin, Hook, and extension maintainers
- Source of truth:
internal/hooks,internal/plugins,internal/skills - Persistence/export boundary: Signed packages, manifests, installations, and selections cross independently versioned extension boundaries.
- Compatibility rule: Treat packages as untrusted; write new versions, retain bounded inert readers, and never weaken signature meaning.
- Retirement gate (
migration-or-retention): ADR-backed retirement decision and rollback path; Old-version fixtures remain until every supported source is migrated or retained; Reader history is append-only; retirement requires migration or retention evidence - Writers:
extension-package-contracts-writer(v1, v2, write-new) atinternal/skills
- Readers:
extension-package-contracts-reader(v1, v2, active) atinternal/skills
40 active identifiers
extension-control.v1extension-inventory.v1external_skill_context.v1external_skill_guidance.v1external_skill_selection.v1external_skill_selection_intent.v1external_skill_selection_operation.v1external_specialist_skill_context.v1plugin-installation.v1plugin-publisher-trust.v1plugin-signature.v1plugin.v1restricted-hooks.v1skill.v1skill_candidate.v1skill_candidate_import.v1skill_candidate_import_operation.v1skill_candidate_import_request.v1skill_candidate_proposal.v1skill_candidate_request.v1skill_candidate_review.v1skill_candidate_review_operation.v1skill_candidate_review_request.v1skill_context.v1skill_mode.v1skill_package.v1skill_package.v2skill_package_install_operation.v1skill_package_install_result.v1skill_package_installation_intent.v1skill_package_installation_intent.v2skill_package_object.v1skill_package_removal.v1skill_package_removal_intent.v1skill_package_remove_operation.v1skill_package_signature.v1skill_selection.v1skill_selection_operation.v1skill_selection_request.v1specialist_instruction.v1
- Class:
external-durable - Owner: HTTP/OpenAPI and generated-client maintainers
- Source of truth:
docs/openapi.json,internal/httpapi/openapi.go - Persistence/export boundary: Loopback HTTP DTO protocol values are exported through OpenAPI to generated TypeScript.
- Compatibility rule: Keep API v1 additive, regenerate clients from Go, retain old readers, and reject unknown authority-bearing values.
- Retirement gate (
migration-or-retention): ADR-backed retirement decision and rollback path; Old-version fixtures remain until every supported source is migrated or retained; Reader history is append-only; retirement requires migration or retention evidence - Writers:
http-openapi-contract-writer(v0, v1, v2, write-new) atinternal/httpapi/openapi.go
- Readers:
http-openapi-contract-reader(v0, v1, v2, active) atweb/src/api
98 active identifiers
agent-code-tools.v1agent_graph.v1api.v1approval_control.v1approval_queue.v1batch-delivery.v1browser_cdp_permission_policy.v1browser_network_containment_policy.v2browser_safe_web_readiness.v1code-intel-lsp.v1code_handoff.v1command-runtime.v2context_provenance.v0context_provenance.v1debug-query.v1diagnostic-bundle.v1doctor-snapshot.v1execution_interaction_policy.v1execution_permission_policy.v1execution_profile_policy.v1file_edit_apply.v1file_edit_change_set.v1file_edit_proposal.v1file_edit_proposal_recovery.v1file_edit_review.v1full_cdp_session.v1full_cdp_session_close.v1mode_policy.v1model_harness.v1model_harness_qualification.v1model_route_catalog.v1model_route_control.v1operation_receipt.v1operator_verification_evidence.v1operator_verification_inventory.v1operator_verification_plan_coverage.v1operator_verification_plan_item_coverage.v1operator_verification_plan_item_snapshot.v1operator_verification_plan_item_snapshot_export.v1operator_verification_plan_item_snapshot_receipt.v1operator_verification_plan_item_snapshot_receipt_inventory.v1operator_verification_plan_item_snapshot_receipt_review.v1operator_verification_plan_item_snapshot_receipt_review_inventory.v1plan_delivery.v1plan_delivery_control.v1provider_credential.v1provider_diagnostic.v1provider_search_readiness.v1repository_commit_comparison.v1repository_commit_file_preview.v1repository_diff.v1repository_file_history.v1repository_state.v1restricted-cdp-ui-evidence.v1run_browser_cdp_permission.v1run_creation.v1run_execution_handoff.v1run_execution_interaction.v1run_execution_permission.v1run_execution_profile.v1run_lifecycle_control.v1run_mode.v1run_network_authority.v1run_network_authority_control.v1run_wake_consumer.v1run_wake_control.v1run_wake_intent.v1run_wake_worker_health.v1sandbox.readiness.v1scheduled-job-authorization.v1scheduled-job-control.v1scheduled-job-round.v1scheduled-job-worker-health.v1scheduled-job.v1session_evidence_attachment.v1session_evidence_inventory.v1session_message_submission.v1session_steering_cancellation.v1skill_package_installation.v1standard_code_preset.v1thread.v1thread_activity_artifact.v1thread_activity_detail.v2thread_activity_summary.v1thread_creation.v1thread_export.v1thread_lifecycle.v1thread_message_submission.v1thread_model_route.v1thread_model_route_control.v1thread_run_recovery.v1ui-evidence-artifact.v1ui-evidence-attempt.v1ui-evidence-step.v1ui-evidence.v1windows_wfp_dynamic.v1workspace_explorer.v1workspace_search.v1
2 retained retirement records
thread_activity_detail.v1: The unreleased generic facts prototype was replaced by thread_activity_detail.v2 before merge so every public activity detail is a strict Go-owned discriminated union.thread_activity_tool_facts.v1: The generic name/value facts projection was removed from every public Thread and Legacy Inspector HTTP response in favor of the closed thread_activity_detail.v2 discriminated union.
- Class:
ephemeral - Owner: Credential and bootstrap maintainers
- Source of truth:
internal/credential,internal/desktop - Persistence/export boundary: Access tokens, bootstrap secrets, and process ownership tokens last one process generation.
- Compatibility rule: Rotate on restart, never persist secret material, and never treat token metadata as authority.
- Retirement gate (
restart-non-persistence): Restart tests prove no handle, token, stream, or authority is adopted; Runtime metadata cannot substitute for a fresh admission; Shutdown and crash recovery discard process-local state - Restart proof: Credential and Desktop restart tests rotate secrets and retain only non-secret metadata.
- Writers:
in-memory-token-session-writer(v1, write-current) atinternal/desktop
- Readers:
in-memory-token-session-reader(v1, active) atinternal/desktop
1 active identifiers
browser-profile-token.v1
- Class:
ephemeral - Owner: Code intelligence maintainers
- Source of truth:
internal/codeintel - Persistence/export boundary: LSP JSON-RPC sessions and qualified executable handles live for one language-server process.
- Compatibility rule: Restart re-qualifies executable/config identity and rebinds Workspace URIs without inherited authority.
- Retirement gate (
restart-non-persistence): Restart tests prove no handle, token, stream, or authority is adopted; Runtime metadata cannot substitute for a fresh admission; Shutdown and crash recovery discard process-local state - Restart proof: Code-intelligence restart tests establish a new process identity and discard prior JSON-RPC handles.
- Writers:
lsp-process-session-writer(v1, write-current) atinternal/codeintel
- Readers:
lsp-process-session-reader(v1, active) atinternal/codeintel
1 active identifiers
code-intel-config.v1
- Class:
external-durable - Owner: MCP client/server maintainers
- Source of truth:
internal/mcp,internal/toolgateway - Persistence/export boundary: MCP messages and local extension DTOs cross process/version boundaries; audit records may persist.
- Compatibility rule: Follow upstream negotiation and bounded local parsing; negotiated capabilities never grant local Go authority.
- Retirement gate (
migration-or-retention): ADR-backed retirement decision and rollback path; Old-version fixtures remain until every supported source is migrated or retained; Reader history is append-only; retirement requires migration or retention evidence - Writers:
mcp-interchange-writer(v1, write-current) atinternal/mcp
- Readers:
mcp-interchange-reader(v1, active) atinternal/mcp
3 active identifiers
mcp-client-call-audit.v1mcp-client-server.v1mcp-client.v1
- Class:
projection - Owner: Operation receipt maintainers
- Source of truth:
internal/operationreceipt,internal/store - Persistence/export boundary: Receipt history is a content-free projection over authoritative operations and receipts.
- Compatibility rule: Rebuild from domain operation/receipt rows; never infer transaction success or authority from the projection.
- Retirement gate (
rebuild-from-source): Rebuild source remains retained and independently verifiable; Replacement preserves ordering, cursor, invalidation, and redaction behavior; Retirement evidence proves a complete rebuild from the named source - Rebuild source: Authoritative domain operation rows and immutable receipts in internal/store.
- Writers:
operation-receipt-projection-writer(v1, write-current) atinternal/operationreceipt
- Readers:
operation-receipt-projection-reader(v1, active) atinternal/httpapi
2 active identifiers
operation_receipt_history.v1operation_receipt_history_item.v1
- Class:
internal-durable - Owner: Command, model, terminal, and runner lifecycle maintainers
- Source of truth:
internal/application,internal/runner,internal/store - Persistence/export boundary: Durable intent, executable identity, bounds, cancellation, terminal state, and cleanup survive failure.
- Compatibility rule: Preserve write-ahead intent, generation fencing, result binding, and cleanup; retain supported readers.
- Retirement gate (
migration-or-retention): ADR-backed retirement decision and rollback path; Old-version fixtures remain until every supported source is migrated or retained; Reader history is append-only; retirement requires migration or retention evidence - Writers:
process-runtime-lifecycle-writer(v1, v2, write-new) atinternal/application
- Readers:
process-runtime-lifecycle-reader(v1, v2, active) atinternal/store
52 active identifiers
application_docker_container_lifecycle_post_exit.v1application_docker_container_lifecycle_running.v1application_docker_container_lifecycle_start_authority.v1command-runtime-adapter-authority.v1command-runtime-batch.v2command-runtime-policy.v2command-runtime-result.v2command-runtime-workspace-boundary.v1command_runtime_adapter_generation.v1command_runtime_docker_adapter_operation.v1command_runtime_local_sandbox_operation.v1command_runtime_operation.v2command_runtime_request.v2controlled_command_execution.v1controlled_command_execution_intent.v1controlled_command_execution_operation.v1controlled_command_execution_policy.v1controlled_command_plan.v1controlled_command_policy.v1controlled_command_proposal.v1controlled_command_proposal_policy.v1controlled_command_proposal_result.v1controlled_command_proposal_review.v1controlled_command_proposal_review_operation.v1debug_terminal.v1debug_terminal_agent_input.v1debug_terminal_agent_input_audit_record.v1debug_terminal_agent_input_operation.v1debug_terminal_agent_input_policy.v1host-process.v1host_command.v1host_command_execution.v1host_command_execution_intent.v1host_command_execution_operation.v1host_command_execution_policy.v1host_command_execution_receipt.v1host_command_policy.v1host_command_proposal.v1host_command_proposal_execution_operation.v1host_command_proposal_result.v1host_command_proposal_review_operation.v1host_command_review.v1once_execution.v1risk_escalation.v1risk_escalation_execution.v1risk_escalation_invalidation.v1risk_escalation_policy.v1risk_escalation_result.v1risk_escalation_resume.v1terminal_agent_input_audit.v1terminal_agent_input_bridge.v1terminal_input_lease.v1
- Class:
external-durable - Owner: Project configuration and instruction maintainers
- Source of truth:
configs,internal/projectconfig - Persistence/export boundary: .prayu configuration, instruction precedence, and fingerprints persist in user projects and automation.
- Compatibility rule: Use deterministic dual-read for path/precedence changes, reject conflicts, and keep old-project fixtures.
- Retirement gate (
migration-or-retention): ADR-backed retirement decision and rollback path; Old-version fixtures remain until every supported source is migrated or retained; Reader history is append-only; retirement requires migration or retention evidence - Writers:
project-configuration-contract-writer(v1, write-current) atinternal/projectconfig
- Readers:
project-configuration-contract-reader(v1, active) atinternal/projectconfig
4 active identifiers
prayu.locale.v1project_config.v1project_instruction_guidance.v1project_instruction_snapshot.v1
- Class:
ephemeral - Owner: Model streaming and renderer maintainers
- Source of truth:
internal/llm,web/src - Persistence/export boundary: Provider deltas and pending renderer cards last only until durable reconciliation.
- Compatibility rule: Discard incomplete deltas on restart, redact private reasoning, and reconcile only by durable item identity.
- Retirement gate (
restart-non-persistence): Restart tests prove no handle, token, stream, or authority is adopted; Runtime metadata cannot substitute for a fresh admission; Shutdown and crash recovery discard process-local state - Restart proof: Streaming tests discard unmatched deltas/cards and reconstruct presentation from durable items after restart.
- Writers:
provider-stream-presentation-writer(v1, v3, write-new) atinternal/llm
- Readers:
provider-stream-presentation-reader(v1, v3, active) atweb/src
4 active identifiers
llm.item_stream.v1model_public_commentary.v1model_public_stream.v3model_public_stream_poll.v1
- Class:
external-durable - Owner: Protocol and Surface governance maintainers
- Source of truth:
docs/convergence/surface-registry.json,internal/protocolregistry,internal/surfacegovernance,protocols - Persistence/export boundary: The versioned registry is committed review metadata and generated documentation, never runtime authority.
- Compatibility rule: Evolve the schema additively, retain historical reader records, compare against the Git baseline, and fail closed on unknown fields.
- Retirement gate (
migration-or-retention): ADR-backed retirement decision and rollback path; Old-version fixtures remain until every supported source is migrated or retained; Reader history is append-only; retirement requires migration or retention evidence - Writers:
registry-governance-contract-writer(v1, write-current) atinternal/protocolregistrysurface-tier-registry-writer(v1, write-current) atinternal/surfacegovernance
- Readers:
registry-governance-contract-reader(v1, active) atinternal/protocolregistrysurface-tier-registry-reader(v1, active) atinternal/surfacegovernance
2 active identifiers
protocol-family-registry.v1surface-tier-registry.v1
- Class:
external-durable - Owner: Desktop release and packaging maintainers
- Source of truth:
internal/buildinfo,packaging,scripts - Persistence/export boundary: Release manifests, identities, checksums, SBOMs, and compatibility documents are exported artifacts.
- Compatibility rule: Historical artifacts are immutable; identity changes require upgrade/downgrade evidence and reader retention.
- Retirement gate (
migration-or-retention): ADR-backed retirement decision and rollback path; Old-version fixtures remain until every supported source is migrated or retained; Reader history is append-only; retirement requires migration or retention evidence - Writers:
release-and-packaging-contracts-writer(v1, write-current) atscripts
- Readers:
release-and-packaging-contracts-reader(v1, active) atinternal/buildinfo
3 active identifiers
portable_build_diagnostic.v1portable_release_metadata.v1portable_zip_manifest.v1
- Class:
projection - Owner: Finding, repository, and summary maintainers
- Source of truth:
internal/report,internal/store - Persistence/export boundary: Generated summaries may be exported or cached while findings, Git objects, and evidence stay authoritative.
- Compatibility rule: Rebuild from content-addressed sources and preserve annotations, ordering, and redaction.
- Retirement gate (
rebuild-from-source): Rebuild source remains retained and independently verifiable; Replacement preserves ordering, cursor, invalidation, and redaction behavior; Retirement evidence proves a complete rebuild from the named source - Rebuild source: Content-addressed findings, evidence, Git objects, installations, and accepted review decisions.
- Writers:
report-summary-projections-writer(v1, write-current) atinternal/report
- Readers:
report-summary-projections-reader(v1, active) atinternal/httpapi
5 active identifiers
external_skill_projection.v1finding_report_projection.v1price_snapshot.v1price_snapshot_list.v1sandbox_docker_input_projection.v1
- Class:
internal-durable - Owner: Sandbox and Docker lifecycle maintainers
- Source of truth:
internal/sandbox,internal/store - Persistence/export boundary: Admission, plan, intent, observation, ownership, output, and cleanup records persist across restart.
- Compatibility rule: Preserve container/image/config identity, lease fencing, external-effect order, and cleanup-first recovery.
- Retirement gate (
migration-or-retention): ADR-backed retirement decision and rollback path; Old-version fixtures remain until every supported source is migrated or retained; Reader history is append-only; retirement requires migration or retention evidence - Writers:
sandbox-docker-lifecycle-writer(v1, v2, write-new) atinternal/sandbox
- Readers:
sandbox-docker-lifecycle-reader(v1, v2, active) atinternal/store
196 active identifiers
docker-standard-code.v1docker_sandbox_admission.v1docker_sandbox_admission_operation.v1docker_sandbox_admission_request.v1docker_sandbox_cancel_operation.v1docker_sandbox_cancellation.v1docker_sandbox_denial.v1docker_sandbox_launch.v1docker_sandbox_lifecycle_key.v1docker_sandbox_output_commit_operation.v1docker_sandbox_receipt.v1docker_sandbox_runtime_epoch.v1docker_sandbox_start.v1docker_sandbox_start_operation.v1docker_sandbox_start_request.v1drydock_lifecycle.v1linux_namespace_seccomp_candidate.v1local-host-path.v1local-profile-proof.v1local-profile.v1local-readiness-binding.v1local-readiness-owner.v1local-root-identity.v1local-run-owner.v1local-runtime-generation.v1local_sandbox_execution.v1local_sandbox_owner.v1local_sandbox_readiness.v1sandbox_authorization.v1sandbox_backend_evidence_item.v1sandbox_backend_evidence_operation.v1sandbox_backend_evidence_request.v1sandbox_backend_handshake.v1sandbox_cleanup.v1sandbox_cleanup_operation.v1sandbox_cleanup_request.v1sandbox_container_identity.v1sandbox_docker_capability_observation.v1sandbox_docker_command.v1sandbox_docker_container_attempt_completion.v1sandbox_docker_container_attempt_failure.v1sandbox_docker_container_authority.v1sandbox_docker_container_cleanup.v1sandbox_docker_container_cleanup_checkpoint.v1sandbox_docker_container_config.v1sandbox_docker_container_control.v1sandbox_docker_container_control_matrix.v1sandbox_docker_container_id.v1sandbox_docker_container_inspection.v1sandbox_docker_container_lifecycle_observation.v1sandbox_docker_container_lifecycle_ownership.v1sandbox_docker_container_lifecycle_probe_request.v1sandbox_docker_container_lifecycle_probe_result.v1sandbox_docker_container_name.v1sandbox_docker_container_plan.v1sandbox_docker_container_plan_operation.v1sandbox_docker_container_plan_request.v1sandbox_docker_container_rehearsal.v1sandbox_docker_container_rehearsal_attempt.v1sandbox_docker_container_rehearsal_operation.v1sandbox_docker_container_rehearsal_request.v1sandbox_docker_container_spec.v1sandbox_docker_container_stage.v1sandbox_docker_container_stage_checkpoint.v1sandbox_docker_daemon_identity.v1sandbox_docker_fake_write_step.v1sandbox_docker_host_input_carrier_name.v1sandbox_docker_host_input_handoff.v1sandbox_docker_host_input_handoff_intent.v1sandbox_docker_host_input_handoff_operation.v1sandbox_docker_host_input_handoff_request.v1sandbox_docker_host_input_handoff_requirement.v1sandbox_docker_host_input_requirement.v1sandbox_docker_host_input_staging.v1sandbox_docker_host_input_staging_intent.v1sandbox_docker_host_input_staging_operation.v1sandbox_docker_host_input_volume_name.v1sandbox_docker_host_mounts.v1sandbox_docker_image_observation.v1sandbox_docker_label_plan.v1sandbox_docker_lifecycle_action.v1sandbox_docker_lifecycle_intent.v1sandbox_docker_lifecycle_operation.v1sandbox_docker_lifecycle_receipt.v1sandbox_docker_lifecycle_transition.v1sandbox_docker_log_capture.v1sandbox_docker_mount_plan.v1sandbox_docker_network_plan.v1sandbox_docker_observation.v1sandbox_docker_observation_binding.v1sandbox_docker_observation_item.v1sandbox_docker_observation_operation.v1sandbox_docker_observation_request.v1sandbox_docker_orphan_plan.v1sandbox_docker_output_commit.v1sandbox_docker_output_staging.v1sandbox_docker_process_lifecycle_blueprint.v1sandbox_docker_production_environment.v1sandbox_docker_production_environment.v2sandbox_docker_production_evidence_attempt.v1sandbox_docker_production_evidence_attempt_failure.v1sandbox_docker_production_evidence_attempt_result.v1sandbox_docker_production_evidence_capability.v1sandbox_docker_production_evidence_daemon_identity.v1sandbox_docker_production_evidence_harness_intent.v1sandbox_docker_production_evidence_harness_inventory.v1sandbox_docker_production_evidence_harness_label.v1sandbox_docker_production_evidence_harness_reconciliation.v1sandbox_docker_production_evidence_harness_resource.v1sandbox_docker_production_evidence_harness_result.v1sandbox_docker_production_evidence_image.v1sandbox_docker_production_evidence_operation.v1sandbox_docker_production_evidence_reconciliation.v1sandbox_docker_production_evidence_review.v1sandbox_docker_production_evidence_review_operation.v1sandbox_docker_production_evidence_suite.v1sandbox_docker_readiness_fingerprint.v1sandbox_docker_readonly_endpoint.v1sandbox_docker_resource_plan.v1sandbox_docker_run_proposal.v1sandbox_docker_runtime_input_application_failure.v1sandbox_docker_runtime_input_application_intent.v1sandbox_docker_runtime_input_application_operation.v1sandbox_docker_runtime_input_application_request.v1sandbox_docker_runtime_input_application_result.v1sandbox_docker_runtime_input_archive_root.v1sandbox_docker_runtime_input_carrier_name.v1sandbox_docker_runtime_input_projection_content.v1sandbox_docker_runtime_input_projection_item.v1sandbox_docker_runtime_input_projection_operation.v1sandbox_docker_runtime_input_projection_plan.v1sandbox_docker_runtime_input_relative_path.v1sandbox_docker_runtime_input_resource_cleanup_failure.v1sandbox_docker_runtime_input_resource_cleanup_intent.v1sandbox_docker_runtime_input_resource_cleanup_operation.v1sandbox_docker_runtime_input_resource_cleanup_result.v1sandbox_docker_runtime_input_resource_descriptor.v1sandbox_docker_runtime_input_resource_inspection.v1sandbox_docker_runtime_input_resource_inspection_operation.v1sandbox_docker_runtime_input_target.v1sandbox_docker_runtime_input_target_container.v1sandbox_docker_runtime_input_target_inspection.v1sandbox_docker_runtime_input_volume.v1sandbox_docker_runtime_input_volume_name.v1sandbox_docker_secret_plan.v1sandbox_docker_start_gate_authority.v1sandbox_docker_start_gate_review.v1sandbox_docker_start_gate_review_operation.v1sandbox_docker_termination_plan.v1sandbox_docker_write_transaction.v1sandbox_docker_write_transport.v1sandbox_docker_write_transport_step.v1sandbox_execution.v1sandbox_execution_cancel.v1sandbox_execution_cancel_operation.v1sandbox_execution_cancel_request.v1sandbox_execution_candidate.v1sandbox_execution_candidate.v2sandbox_execution_candidate_operation.v1sandbox_execution_candidate_request.v1sandbox_execution_candidate_request.v2sandbox_execution_operation.v1sandbox_execution_request.v1sandbox_fake_container_config.v1sandbox_fake_daemon_capabilities.v1sandbox_fake_mount_plan.v1sandbox_fake_network_plan.v1sandbox_fake_orphan_plan.v1sandbox_fake_output_artifact.v1sandbox_fake_resource_plan.v1sandbox_fake_secret_plan.v1sandbox_fake_termination_plan.v1sandbox_host_input_archive_path.v1sandbox_host_input_artifact_payloads.v1sandbox_host_input_bundle.v1sandbox_host_input_directory.v1sandbox_host_input_source_snapshot.v1sandbox_input_artifact_bindings.v1sandbox_intent_request.v1sandbox_manifest.v1sandbox_manifest_operation.v1sandbox_mount_binding.v1sandbox_output_capture_plan.v1sandbox_output_export_plan.v1sandbox_output_locator.v1sandbox_output_simulation.v1sandbox_output_simulation_operation.v1sandbox_output_simulation_request.v1sandbox_policy_decision.v1sandbox_preflight.v1sandbox_preflight_operation.v1sandbox_preflight_request.v1sandbox_scope_binding.v1sandbox_validation.v1sandbox_workspace_binding.v1windows_appcontainer_policy.v1
- Class:
external-durable - Owner: Standard Code delivery and public projection maintainers
- Source of truth:
internal/application,internal/standardcodedelivery,internal/store - Persistence/export boundary: SQLite retains immutable metadata-only receipts; HTTP, CLI, Desktop, Code Handoff, GitHub Review, and final completion export the same freshness-aware projection.
- Compatibility rule: Retain old readers and exact receipt, revision, Diff, Checkpoint, Artifact, binding, redaction, and stale semantics until every stored receipt is migrated or indefinitely supported.
- Retirement gate (
migration-or-retention): ADR-backed retirement decision and rollback path; Old-version fixtures remain until every stored receipt and exported consumer is migrated or retained; Receipt hashes and historical conclusions remain independently verifiable - Writers:
standard-code-delivery-ledger-writer(v1, write-current) atinternal/store
- Readers:
standard-code-delivery-go-reader(v1, active) atinternal/standardcodedeliverystandard-code-delivery-http-reader(v1, active) atinternal/httpapistandard-code-delivery-web-reader(v1, active) atweb/src
8 active identifiers
command-runtime-backend-generation.v1standard-code-backend.v1standard-code-delivery-reason.v1standard-code-workspace-revision.v1standard_code_delivery.v1standard_code_delivery_record.v1standard_code_delivery_request.v1standard_code_supervisor_finish.v1
- Class:
internal-durable - Owner: Thread, Run, Session, context, and message maintainers
- Source of truth:
internal/session,internal/store - Persistence/export boundary: SQLite preserves user history, ordering, Run succession, provenance, notes, and messages.
- Compatibility rule: Add versions without rewriting identity/history; retain every reader needed by supported databases and exports.
- Retirement gate (
migration-or-retention): ADR-backed retirement decision and rollback path; Old-version fixtures remain until every supported source is migrated or retained; Reader history is append-only; retirement requires migration or retention evidence - Writers:
thread-run-session-ledgers-writer(v0, v1, v2, v3, write-new) atinternal/application
- Readers:
thread-run-session-ledgers-reader(v0, v1, v2, v3, active) atinternal/store
37 active identifiers
context_memory.v1continuity_context.v1continuity_snapshot.v1deterministic_id.v1handoff_memory.v0handoff_memory.v1llm.item_stream.identity.v1long_term_memory.v1note_context.v1root_action_compatibility.v1root_inbox_context.v1root_lifecycle.v1root_lifecycle.v2run_creation_operation.v1run_creation_request.v1run_creation_request.v2run_creation_request.v3run_lifecycle_operation.v1run_lifecycle_request.v1run_progress_guard.v1session_archive.v1session_continuity_node.v1session_evidence_attachment_operation.v1session_evidence_attachment_request.v1session_grant.v1session_grant_revoke.v1session_tree.v1thread_epoch_transition_operation.v1thread_epoch_transition_request.v1thread_lifecycle_operation.v1thread_lifecycle_request.v1thread_run_recovery_operation.v1thread_run_recovery_request.v1thread_turn_auto_recovery_operation.v1thread_turn_epoch_transition_operation.v1thread_turn_handoff_operation.v1thread_turn_lifecycle_operation.v1
- Class:
projection - Owner: Thread transcript maintainers
- Source of truth:
internal/store,internal/threadtranscript - Persistence/export boundary: Transcript pages regenerate while source messages, events, approvals, and delivery rows remain durable.
- Compatibility rule: Rebuild with stable keyset order, replacement identity, redaction, and Run boundaries.
- Retirement gate (
rebuild-from-source): Rebuild source remains retained and independently verifiable; Replacement preserves ordering, cursor, invalidation, and redaction behavior; Retirement evidence proves a complete rebuild from the named source - Rebuild source: Immutable Thread/Run/Session messages, events, model/tool items, approvals, verification, checkpoints, and delivery rows.
- Writers:
thread-transcript-projection-writer(v1, write-current) atinternal/threadtranscript
- Readers:
thread-transcript-projection-reader(v1, active) atinternal/httpapi
1 active identifiers
thread_transcript.v1
- Class:
internal-durable - Owner: Tool gateway, file edit, Git, and mutation maintainers
- Source of truth:
internal/fileedit,internal/gitmutation,internal/store,internal/toolgateway - Persistence/export boundary: Tool intents, fingerprints, reviews, results, and Git/file receipts persist for replay and recovery.
- Compatibility rule: Keep replay/conflict, approval, revision/generation fencing, and write-ahead/result bindings compatible.
- Retirement gate (
migration-or-retention): ADR-backed retirement decision and rollback path; Old-version fixtures remain until every supported source is migrated or retained; Reader history is append-only; retirement requires migration or retention evidence - Writers:
tool-mutation-ledgers-writer(v1, write-current) atinternal/application
- Readers:
tool-mutation-ledgers-reader(v1, active) atinternal/store
31 active identifiers
file_edit_apply_operation.v1file_edit_apply_request.v1file_mutation.v1git-advanced-api.v1git-advanced-authority.v1git-advanced-capability.v1git-advanced-preview.v1git-advanced-receipt.v1git-advanced-sequence.v1git-advanced.v1git-managed-worktree.v1git-review-diff-evidence.v1git_advanced_operation.v1git_mutation_operation.v1git_mutation_request.v1git_remote_operation.v1git_remote_request.v1github-review-api.v1github-review-capability.v1github-review-connection.v1github-review-device-flow.v1github-review-provider.v1github-review-receipt.v1github-review-snapshot.v1github-review-write.v1github_review_write.v1note_create.v1repository_mutation.v1repository_mutation_binding.v1repository_remote.v1repository_remote_binding.v1
- Class:
projection - Owner: React workbench and visual-regression maintainers
- Source of truth:
cmd/visualdiff,scripts - Persistence/export boundary: Committed reference identities and generated D-drive test artifacts describe presentation evidence only and never grant runtime authority.
- Compatibility rule: Rebuild staged baselines and visual differences from hash-pinned authoritative screenshots while preserving dimensions, masks, regions, and thresholds.
- Retirement gate (
rebuild-from-source): Rebuild source remains retained and independently verifiable; Replacement preserves ordering, cursor, invalidation, and redaction behavior; Retirement evidence proves a complete rebuild from the named source - Rebuild source: Hash- and dimension-pinned authoritative screenshots plus the committed visual-difference configuration and implementation.
- Writers:
ui-reference-testing-contracts-writer(v1, write-current) atscripts
- Readers:
ui-reference-testing-contracts-reader(v1, active) atcmd/visualdiff
4 active identifiers
traverse_ui_reference_baselines.v1traverse_ui_staged_baselines.v1traverse_ui_test_environment.v1traverse_visual_diff.v1
- Class:
internal-durable - Owner: Workspace and repository maintainers
- Source of truth:
internal/repository,internal/store,internal/workspace - Persistence/export boundary: Workspace identity, repository bindings, checkpoints, remotes, worktrees, and ownership survive where declared.
- Compatibility rule: Preserve root/commit identity, source binding, generation, and conflict refusal; retain durable readers.
- Retirement gate (
migration-or-retention): ADR-backed retirement decision and rollback path; Old-version fixtures remain until every supported source is migrated or retained; Reader history is append-only; retirement requires migration or retention evidence - Writers:
workspace-repository-ledgers-writer(v1, write-current) atinternal/application
- Readers:
workspace-repository-ledgers-reader(v1, active) atinternal/store
9 active identifiers
repository_commit_detail.v1repository_history.v1workspace_checkpoint_manual.v1workspace_fork_operation.v1workspace_fork_request.v1workspace_mutation_boundary.v1workspace_mutation_boundary_request.v1workspace_restore_operation.v1workspace_restore_request.v1
These identifiers remain inside the scan. Each exemption is bound to exact files; moving or adding an occurrence requires registry review.
| Identifier | Kind | Exact sources | Reason |
|---|---|---|---|
TraverseBoard.LocalSandbox.Test.Host.v1 |
test-fixture |
internal/sandboxtest/null_device_windows.go |
Windows Local Sandbox disposable test-host marker. |
agent_completion.v2 |
test-fixture |
internal/domain/agent_completion_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
analyzer_descriptor.v2 |
test-fixture |
internal/analyzer/descriptor_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
analyzer_executable_format.v2 |
test-fixture |
internal/analyzer/executable_format_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
analyzer_executable_identity.v2 |
test-fixture |
internal/analyzer/executable_identity_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
analyzer_filesystem_boundary_conformance.test.v1 |
conformance-test |
internal/analyzer/product_adapter_admission.go |
Named analyzer test-conformance evidence source; production admission treats it as non-authorizing. |
analyzer_immutable_handle_conformance.test.v1 |
conformance-test |
internal/analyzer/product_adapter_admission.go |
Named analyzer test-conformance evidence source; production admission treats it as non-authorizing. |
analyzer_invocation.v2 |
test-fixture |
internal/analyzer/invocation_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
analyzer_invocation_failure_vectors.v1 |
golden-vector |
internal/analyzer/invocation_test.go, internal/analyzer/testdata/invocation_failure_vectors.json |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
analyzer_invocation_outcome.v2 |
test-fixture |
internal/analyzer/invocation_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
analyzer_invocation_preflight.v2 |
test-fixture |
internal/analyzer/executable_identity_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
analyzer_launch_plan.v2 |
test-fixture |
internal/analyzer/launch_plan_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
analyzer_low_privilege_context_conformance.test.v1 |
conformance-test |
internal/analyzer/product_adapter_admission.go |
Named analyzer test-conformance evidence source; production admission treats it as non-authorizing. |
analyzer_operator_start_capability_contract.v2 |
test-fixture |
internal/analyzer/operator_start_capability_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
analyzer_product_adapter_admission_matrix.v2 |
test-fixture |
internal/analyzer/product_adapter_admission_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
analyzer_product_adapter_recovery_acceptance.v2 |
test-fixture |
internal/analyzer/product_adapter_recovery_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
analyzer_product_adapter_threat_model.v2 |
test-fixture |
internal/analyzer/product_adapter_threat_model_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
analyzer_protocol.v2 |
test-fixture |
analyzers/testdata/analyzer_protocol_v1_vectors.json, internal/analyzer/protocol_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
analyzer_protocol_golden_vectors.v1 |
golden-vector |
analyzers/fixture/tests/shared_vectors.rs, analyzers/testdata/analyzer_protocol_v1_vectors.json, internal/analyzer/golden_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
analyzer_provenance_verification.v2 |
test-fixture |
internal/analyzer/provenance_verification_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
analyzer_release_candidate.v2 |
test-fixture |
internal/analyzer/release_manifest_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
analyzer_result.v2 |
test-fixture |
internal/analyzer/invocation_test.go, internal/analyzer/protocol_test.go, internal/analyzer/subprocess_conformance_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
analyzer_result_stage_test.v1 |
test-fixture |
internal/analyzer/result_staging_conformance_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
analyzer_result_staging_conformance.test.v1 |
conformance-test |
internal/analyzer/product_adapter_admission.go |
Named analyzer test-conformance evidence source; production admission treats it as non-authorizing. |
analyzer_sandbox_enforcement_conformance.test.v1 |
conformance-test |
internal/analyzer/product_adapter_admission.go |
Named analyzer test-conformance evidence source; production admission treats it as non-authorizing. |
analyzer_sandbox_recovery_conformance.test.v1 |
conformance-test |
internal/analyzer/product_adapter_admission.go |
Named analyzer test-conformance evidence source; production admission treats it as non-authorizing. |
analyzer_scope_limits_approval.v2 |
test-fixture |
internal/analyzer/scope_approval_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
analyzer_subprocess_conformance.test.v1 |
conformance-test |
internal/analyzer/product_adapter_admission.go |
Named analyzer test-conformance evidence source; production admission treats it as non-authorizing. |
analyzer_validated_result_candidate.v2 |
test-fixture |
internal/analyzer/result_candidate_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
archive.inspect.v1 |
test-fixture |
internal/analyzer/protocol_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
archive.inventory.v1 |
test-fixture |
analyzers/fixture/src/lib.rs, analyzers/testdata/archive_inventory_v1_vectors.json, internal/analyzer/descriptor.go |
Analyzer ZIP inventory is retained only for protocol/test conformance vectors. |
archive.zip.inventory.v1 |
test-fixture |
analyzers/fixture/src/lib.rs, analyzers/testdata/archive_inventory_v1_vectors.json, internal/analyzer/descriptor.go |
Analyzer ZIP inventory implementation is retained only for protocol/test conformance. |
archive_inventory_golden_vectors.v1 |
golden-vector |
analyzers/fixture/tests/shared_vectors.rs, analyzers/testdata/archive_inventory_v1_vectors.json, internal/analyzer/archive_golden_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
batch-mailbox.v1 |
test-fixture |
internal/store/batch_delivery_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
batch-owner-token.v1 |
test-fixture |
internal/store/batch_delivery_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
batch-receipt.v1 |
test-fixture |
internal/store/batch_delivery_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
batch-review.v1 |
test-fixture |
internal/store/batch_delivery_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
browser_network_containment_evidence.v0 |
test-fixture |
internal/browserruntime/readiness_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
browser_network_containment_policy.v1 |
test-fixture |
internal/browserruntime/readiness_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
call.v1 |
test-fixture |
internal/store/batch_delivery_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
controlled_command_proposal.v2 |
test-fixture |
internal/toolgateway/controlled_command_proposal_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
desktop_test_matrix.v2 |
test-fixture |
scripts/desktop-test-matrix.ps1 |
CI/Desktop test-matrix report identifier, not a product runtime protocol. |
detached_signature.v1 |
test-fixture |
internal/analyzer/release_manifest_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
diff.v1 |
test-fixture |
internal/store/batch_delivery_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
docker-standard-code.v2 |
test-fixture |
internal/runner/command_runtime_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
docker_container_plan_store_test.v1 |
test-fixture |
internal/store/docker_container_plan_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
docker_container_rehearsal_store_test.v1 |
test-fixture |
internal/store/docker_container_rehearsal_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
docker_lifecycle_test.v1 |
test-fixture |
internal/sandbox/docker_container_lifecycle_ownership_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
docker_observation_store_test.v1 |
test-fixture |
internal/store/docker_observation_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
docker_sandbox_product_lifecycle_test.v1 |
test-fixture |
internal/store/docker_sandbox_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
fake-browser-process.v1 |
test-fixture |
internal/browserruntime/production_runtime_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
fixture.wrong.v1 |
negative-version-fixture |
internal/analyzer/subprocess_conformance_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
full_cdp_session.v0 |
negative-version-fixture |
internal/httpapi/full_cdp_session_control_test.go |
Unknown-version HTTP fixture retained to prove fail-closed Full CDP session decoding. |
full_cdp_session_close.v0 |
negative-version-fixture |
internal/httpapi/full_cdp_session_control_test.go |
Unknown-version HTTP fixture retained to prove fail-closed Full CDP close decoding. |
linux_ephemeral_user_namespace.v1 |
test-fixture |
internal/analyzer/isolation_boundary_conformance_linux_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
linux_inherited_read_fd.v1 |
test-fixture |
internal/analyzer/isolation_boundary_conformance_linux_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
linux_user_namespace_landlock.v1 |
test-fixture |
internal/analyzer/isolation_boundary_conformance_linux_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
local-windows-lpac.v1 |
test-fixture |
internal/application/standard_code_preset_test.go, internal/application/standard_code_supervisor_test.go, internal/commandruntimeadapter/adapter_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
next.good.v4 |
test-fixture |
internal/protocolregistry/registry_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
ok.v1 |
test-fixture |
internal/protocolregistry/registry_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
other.v1 |
negative-version-fixture |
internal/application/session_message_submission_test.go, internal/httpapi/session_message_control_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
plan_delivery.v2 |
test-fixture |
internal/domain/plan_delivery_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
project_config.v9 |
negative-version-fixture |
internal/projectconfig/projectconfig_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
protocol_registry_example.v1 |
compatibility-example |
internal/protocolregistry/registry_test.go, internal/protocolregistry/testdata/compatibility_v1.json |
Old v1 compatibility fixture retained to prove dual-read behavior. |
protocol_registry_example.v2 |
compatibility-example |
internal/protocolregistry/registry_test.go |
Write-new v2 compatibility example identifier. |
protocol_registry_example.v3 |
negative-version-fixture |
internal/protocolregistry/registry_test.go |
Unknown-version fixture retained to prove fail-closed decoding. |
public_model_stream.v1 |
test-fixture |
web/src/v2/projection/narrative.test.ts |
Test-only live-stream fixture; production presentation uses the registered current stream protocol. |
run_capability_readiness.v2 |
test-fixture |
web/src/api/client.test.ts |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
run_creation.v2 |
test-fixture |
internal/application/run_creation_test.go, internal/domain/run_creation_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
runner_evidence_set_receipt.v2 |
test-fixture |
internal/runner/testdata/evidence_set_receipt_compatibility_vectors.json |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
runner_evidence_set_receipt_compatibility_rejection_vectors.v1 |
golden-vector |
internal/runner/evidence_set_receipt_compatibility_test.go, internal/runner/testdata/evidence_set_receipt_compatibility_vectors.json |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
runner_evidence_set_receipt_envelope_golden_vectors.v1 |
golden-vector |
internal/runner/evidence_set_receipt_envelope_golden_test.go, internal/runner/testdata/evidence_set_receipt_envelope_vectors.json |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
runner_evidence_set_receipt_golden_vectors.v1 |
golden-vector |
internal/runner/evidence_set_receipt_golden_test.go, internal/runner/testdata/evidence_set_receipt_vectors.json |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
runner_exit_evidence.v2 |
test-fixture |
internal/runner/testdata/evidence_set_receipt_compatibility_vectors.json |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
sandbox_docker_lifecycle_store_test.v1 |
test-fixture |
internal/store/docker_container_lifecycle_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
sandbox_output_fixture.v1 |
test-fixture |
configs/sandbox-output-fixture.example.json, internal/app/sandbox_command_test.go, internal/sandbox/output_simulation.go, internal/sandbox/output_simulation_test.go |
Explicit sandbox output-simulation fixture input; it grants no production execution authority. |
scheduled-store-observation.v1 |
test-fixture |
internal/store/scheduled_jobs_concurrency_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
skill.v2 |
test-fixture |
internal/skills/manifest_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
slsa_provenance.v1 |
test-fixture |
internal/analyzer/provenance_verification_test.go, internal/analyzer/release_manifest_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
specialist_delegation.v2 |
test-fixture |
internal/domain/specialist_delegation_test.go, internal/toolgateway/specialist_delegation_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
specialist_instruction.v2 |
test-fixture |
internal/domain/agent_context_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
standard_code_fixture_manifest.v1 |
test-fixture |
internal/packagede2e/manifest.go, internal/packagede2e/testdata/fixture-manifest.json |
Packaged E2E fixed-repository fixture manifest. |
standard_code_fixture_set.v1 |
test-fixture |
internal/packagede2e/manifest.go, scripts/standard-code-packaged-e2e.ps1 |
Packaged E2E fixed-repository fixture set. |
standard_code_packaged_e2e.v1 |
test-fixture |
internal/packagede2e/manifest.go, scripts/standard-code-packaged-e2e.ps1 |
Packaged E2E harness report, not a shipped product protocol. |
standard_code_packaged_security_evidence.v1 |
conformance-test |
internal/packagede2e/security_evidence.go |
Issue 181 packaged attack-matrix evidence; immutable release input but never runtime authority or the parent release verdict. |
standard_code_product_e2e.v1 |
test-fixture |
internal/producte2e/model.go |
Issue #182 path-free packaged product evidence report, not a shipped product protocol. |
standard_code_product_launch.v1 |
test-fixture |
internal/producte2e/model_test.go, internal/producte2e/producer.go, scripts/standard-code-product-e2e.ps1 |
Issue #182 zero-argument candidate launch evidence. |
standard_code_product_runbook.v1 |
test-fixture |
internal/producte2e/model.go |
Issue #182 candidate-bound operator evidence runbook. |
standard_code_product_session.v1 |
test-fixture |
scripts/standard-code-product-e2e.ps1 |
Local-only issue #182 packaged product session orchestration state. |
standard_code_release_gate.v1 |
conformance-test |
internal/releasegate/model.go |
Issue #140 deterministic candidate-bound aggregate of independently validated bootstrap, product, and security evidence; it grants no runtime authority. |
standard_code_security_probe.v1 |
conformance-test |
internal/desktop/standard_code_security_windows.go |
Fixed packaged-only Standard Code attack probe receipt; not a model-facing tool, arbitrary command entry, or capability grant. |
standard_code_security_recovery.v1 |
conformance-test |
internal/desktop/standard_code_security_recovery_windows.go |
Fixed packaged-only Standard Code crash/restart evidence; contains hashes and bounded lifecycle facts but grants no runtime or release authority. |
standard_code_test_root.v1 |
test-fixture |
internal/application/standard_code_supervisor_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
test-output.v1 |
test-fixture |
internal/store/batch_delivery_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
ui-evidence-ci-launch.v1 |
test-fixture |
internal/browserruntime/ui_evidence_runtime_windows_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
ui-evidence-ci-smoke.v1 |
test-fixture |
internal/browserruntime/ui_evidence_runtime_windows_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
ui-evidence-ci-startup-diagnostic.v1 |
test-fixture |
internal/browserruntime/ui_evidence_runtime_windows_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
unknown.v1 |
negative-version-fixture |
internal/analyzer/descriptor_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
web_search.v0 |
test-fixture |
internal/toolgateway/web_evidence_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
windows-local-sandbox.v1 |
test-fixture |
internal/application/command_runtime_test.go, internal/application/supervisor_tool_permission_test.go, internal/store/supervisor_tool_registry_migration_test.go, internal/store/supervisor_tools_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
windows_appcontainer.v1 |
test-fixture |
internal/runner/command_runtime_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
windows_appcontainer.windows_appcontainer_policy.v1 |
test-fixture |
internal/store/migration_v131_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
windows_inherited_read_handle.v1 |
test-fixture |
internal/analyzer/isolation_boundary_conformance_windows_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
windows_low_integrity_acl_staging.v1 |
test-fixture |
internal/analyzer/isolation_boundary_conformance_windows_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
windows_restricted_low_integrity_primary_token.v2 |
test-fixture |
internal/analyzer/isolation_boundary_conformance_windows_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
workspace-fork-crash-test.v1 |
test-fixture |
internal/application/workspace_checkpoints_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
workspace-fork-drift-test.v1 |
test-fixture |
internal/application/workspace_checkpoints_test.go |
Test-only or golden/negative-vector identifier; exact source binding prevents production classification. |
| Example | Old fixture | Readers | Writer | Unknown version | Retirement check |
|---|---|---|---|---|---|
dual-read-write-new |
internal/protocolregistry/testdata/compatibility_v1.json |
v1, v2 |
v2 |
fail-closed |
ValidateEvolution retains reader history and requires decision, migration or retention evidence, and rollback before durable retirement. |