Add falsification-first control loop and evidence-bound Guardian patch sessions - #1
Question86 wants to merge 20 commits into
Conversation
|
Guardian update: this branch now includes an opt-in deterministic pre-mutation gate for the normal Workshop checkout path. With |
|
Guardian v2 remediation is now on the branch. Architecture changes are recorded in Current CI on head
The v3 final-seal census has therefore been updated to 148 + 34 + 31 = 213 tests. Remaining explicit boundary: Guardian v2 closes the supported application-level Workshop/KAIROS source-escalation paths. It is not an OS sandbox. A process with unrestricted filesystem/database write rights can still bypass Python-level enforcement; that remains owned by |
This branch contains the falsification-first Werkfaden operating method and the deterministic Guardian v2 implementation that enforces the supported investigation-to-mutation path.
Core loop:
Human problem -> hypothesis -> Falsifier 1 -> Falsifier 2 -> map -> counterprobe -> exact source -> prove -> patch session (TX1..TXn) -> verified heartbeat -> fresh run -> return to topArchitecture changes:
START_HERE_AGENT, the Memory verification protocol, the hypothesis-to-patch contract, and the AXIOM semantic Runtime atlas;guard-enter <STATE>returns exact state-relevant canonical Memory passages before the state action; completion consumes the same state ticket;TX1..TXn, with rolling package identity and available/consumed scope;WorkshopEnginelease/state boundary, covering direct supported Python mutation calls;POSTCHECK_VERIFIEDtransactions and the exact verified Workshop heartbeat;quarantine/as non-supported audit history rather than deleting them.Audit/remediation rationale is recorded in
workshop/GUARDIAN_AUDIT_REMEDIATION.md.Important boundary: Guardian v2 closes the supported application-level mutation/source-escalation paths. It is not an OS sandbox. A process with unrestricted filesystem/database write rights can still bypass application code; that remains owned by the Workshop ACL/service-identity boundary and a later native-tool hook.
No FTS ranking/scoring changes are introduced. Graph resolves structure, search resolves governed questions, and source-search resolves exact bytes.
Validation on current head:
The v3 final-seal regression census is updated to 213 (= 148 + 34 + 31).