You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
This reference covers local verification commands, native execution, semantic
review and automatic repair. For the user sequence, see Workflow.
All receipts below are owner-writable local records. They establish observed
execution and revision consistency, not independent attestation, test quality or
semantic correctness.
Records offered_to_process and offered byte counts. model_use remains unknown
--profile-client ID
Selects an existing grant. Cannot grant access or change the profile
Receipt
invocation.json is pending before execution, then records hashes, policy, byte counts and outcomes
Excluded receipt data
Raw prompts, profiles and process output
Default native policy or result
Contract
Requested tools
Read,Edit,Write,Grep,Glob,Bash
Permissions
acceptEdits, no permission prompts and no blanket Bash grant. Existing native rules decide command access
Session persistence and Chrome
Disabled
Success
Supported version/help flags, matching initialization and one successful terminal result. Exit 0 alone is insufficient
Tool errors
Intermediate errors may be repaired within the run. Final errors and permission denials fail the attempt
Miner origin
Process gets MMCG_INPUT_ORIGIN=controller, receipt gets input_origin: controller_generated. Mastermind capture skips it before writing state
Other inherited hooks
Unverified
Native transport
Limit
Executor wall time / turns
1–7,200 seconds / 1–100, defaults 1,800 / 40
Input
128 KiB
Process output / protocol line
16 MiB / 1 MiB
Version/help probe output
64 KiB
Executor receipt
128 KiB
Preparation and probes have separate bounded deadlines. Executor and reviewer
share Unix process-group supervision. Windows is unsupported.
Boundary
Limit
Inherited MCP, hooks, authentication, model selection and configuration
Not independently verified
File scope
Checked after execution
Completion
Still requires the ordinary report, verification, acceptance and review gates
Lens shows delivery metadata from the recorded invocation alongside the current
context preview. Matching revisions compare declared bytes, not model attention,
task acceptance or current checkout correctness. The preview itself records no
delivery. See Profiles.
Invocation, session, repository, task revision, intake, policy and expiry
Decision log
Tool name, input hash and decision. No raw tool arguments
Successful receipt
Every observed tool call matches a durable allow decision, no denied calls, current artifacts
Failed or missing log
Unknown counts stay null, successful publication is blocked
Receipt schema
v2. Default executor and reviewer retain schema v1
Enforcement boundary
Meaning
Native command-hook failure
The client can fall back to native permissions. Missing observed mediation blocks success but cannot undo an effect
Allowed verification process
Runs with the user's normal filesystem/network access
Managed native policy
Requested isolation is recorded, managed policy is unverified
Race after a path check
No OS-level containment or atomic file-open guarantee
Coverage
Observed native tool calls, not every process or OS effect
The adapter follows the native hook failure behavior
and permission rules.
Lens reports mediation coverage and the recorded invocation separately from the
current context preview. Reconciliation does not establish model attention or
semantic correctness.
Native semantic reviewer
Invocation
Effect
review-task run
Records one review of a pending held task
run-task --auto-review
Also evaluates completion under the controller lock
Without --exec
Keeps the iteration. Runs no preflight, executor or checks
With --exec
Reviews a Held audit. A qualifying --auto-follow-up adds at most one executor retry and one fresh review
Check/criterion IDs and bound input/audit digests from the in-memory audit. No executor excerpts or suggested remediation
Freshness
Recheck full verification inputs, including assume-unchanged files
Check executable
Pin the top-level executable before the first native call and around later calls
Iteration budget
Cumulative, including prior preflights. 1–20, default 3. No unlimited budget or --force-iteration
Invocation budget
Each attempt retains its time/turn limit
Stopped loop
Records run_preflight. Ordinary resume and post-only cannot bypass it
Held audit
Ends repair and proceeds to semantic review
Retry eligibility does not identify a failure's cause or prove tests were not
weakened. Review still checks scope, assertion quality and useful completion.
Held audit, successful native executor and current checks
Semantic source
Current pinned native review and unchanged supporting files
Criteria
At least one unsatisfied criterion with a reason and evidence. No unknown criterion
Other judgments
Verification quality, scope control and proportionality all satisfied
Project history
Both context and lessons decisions are no_change
Contract
Same approved spec, scope, baseline, profile selection and executable pins
Budget
At most one semantic retry in this controller invocation, within the cumulative 1–20 iteration limit
Flags
Requires --exec --auto-review. Conflicts with --pre-only, --post-only and --force-iteration
Follow-up step
Behavior
Feedback
Cited unmet criteria and source digests, capped at 32 KiB. Reviewer reasons remain unverified data
Execution
New preflight iteration and native invocation. No invented failed-check result
Validation
Fresh checks, audit and a separate review before completion
Second negative review or changed evidence
Stop. No second semantic retry
Combined --auto-repair
Mechanical retries remain governed by their own admission rules and the same iteration budget
Knowledge or scope changes
Require explicit follow-up outside this automatic semantic step
Limits and eligibility are defined in auto_repair.rs
and run_task.rs. The deterministic gates
bind the feedback to its source. They do not verify the reviewer's interpretation.