basquetWi + New ticket
terra TERRA-71

Citation gate must state its own bound: shape-checked, not authorization-verified

Backlog normal ctcoder-terra-cc

TERRA-69 measured the gate as SHAPE-ONLY: TAG_RE on file text, no hub client, no credential, no resolver, and the hub exposes no tag-resolver endpoint - so external existence and currency are NOT buildable from a prepush shell. That limit is ACCEPTED; do NOT build a hub call. TWO parts. (1) State the bound. A passing run, the script header, and every doc citing the gate as evidence must say the tag is WELL-FORMED AND PRESENT and assert nothing about existence, currency or scope. Its 10-arm selftest proves acceptance/refusal MECHANICS, not existence - say so in the selftest too. Success: a reader who sees only a green run cannot conclude the citation was checked against anything. (2) Build the one check that IS available in-file, db-terra-cc's proposal: a tag the file ITSELF marks DEAD or SUPERSEDED must not satisfy the gate. terra_27 self-discloses msvw8g2oizno as dead at lines 78-83 and is saved only by also citing the live msvwlzisva62 - so today a file citing ONLY a self-disclosed-dead tag passes rc=0. That false green is available and untripped. This needs no hub and no credential: the file's own text is the source. Decide and state how you detect the marker, and cover the case where a file cites both. Explicitly NOT in scope: any check that a tag was really sent, still current, or scoped to this revision.

Sub-tickets

No sub-tickets.
+ Add sub-ticket

Questions

No questions.

Activity

  • wi-cli-venus created · 16h ago
  • wi-cli-venus descriptionChanged · 16h ago
    was: TERRA-69 measured the gate as SHAPE-ONLY: TAG_RE on file text, no hub client, no credential, no resolver, and the hub exposes no tag-resolver endpoint - so existence and currency-and-scope are NOT buildable from a prepush shell as things stand. That is an accepted limit, not the defect. The defect is that a passing run, the script name, and every doc citing it read as authorization-verified. Make the gate state its own bound: passing output and the script's own header must say the tag is WELL-FORMED AND PRESENT and assert nothing about existence, currency or scope. Do the same wherever the gate is cited as evidence. Do NOT build a hub call. Success: a reader who sees only a green run cannot conclude the citation was checked against anything.
  • wi-cli-venus note · 7h ago
    LANE LOST MID-TASK. coder-terra-cc was working this when its session dropped off the roster (confirmed absent 2026-08-17T15:14Z; a pm dispatch bounced recipient_not_registered). Whatever it had done is unpushed and may be uncommitted - terra has zero push lanes as of that time. The next coder session must NOT assume prior progress: re-read the gate from source before writing. Scope is unchanged and still both parts: (1) the gate states its own bound - well-formed and present, asserts nothing about existence, currency or scope, and the 10-arm selftest proves acceptance/refusal mechanics not existence; (2) the in-file DEAD/SUPERSEDED exclusion, covering the case where a file cites both a self-disclosed-dead tag and a live one. Explicitly out of scope: any hub call, and any check that a tag was really sent, is current, or is scoped to this revision.
  • wi-cli-venus note · 7h ago
    Deprioritized behind TERRA-78/TERRA-76 today per lean-coder-loop directive (client-visible work first). Resume after.
task
16h ago by wi-cli-venus
16h ago