docs(O0): freeze Normie custody funnel contract (Thinking, reviewed → pass O0-r3)
Promote Track O from draft seed to stamped freeze; queue O1 product-contracts Auto build. Stage 3 kit upgrade ceremony deferred to O2. Spec-only — no product UI or live init.
sha256:a72c6667fc67addc2f1997db11f180ffd1b015319b8c624a7818729c08952ff9
sha
+3344
~168
−7
symbols
sha256:3ae2e13451ef299984b391b3e5a1008a134089266ef23fa27ed8c096b30db9cf
snapshot
+3344
symbols added
~168
symbols modified
−7
symbols removed
0
dead code introduced
Semantic Changes
3519 symbols
+
desktop/
+
cli/ok
+
cursor/ on init/sync
section Cursor fragments — vendored into consumer .cursor/ on init/sync L1–23
~
desktop/src-tauri/resources/kit/cursor/skills/build-verification-review/SKILL.md
.md
19 symbols added
+
Verification checklist (every item needs evidence)
section Verification checklist (every item needs evidence) L49–89
+
Loop (execute in one agent session — do not stop after one round)
section Loop (execute in one agent session — do not stop after one round) L43–78
~
desktop/src-tauri/resources/kit/templates/CROSS-REPO-COORDINATION.template.md
.md
18 symbols added
+
Handover regeneration rules (SD-3, SD-17)
section Handover regeneration rules (SD-3, SD-17) L86–96
+
Templates — token-parameterized governance doc skeletons
section Templates — token-parameterized governance doc skeletons L1–37
+
Public branding (locked at KH1 close-out)
section Public branding (locked at KH1 close-out) L29–37
~
desktop/src-tauri/resources/kit/tools/freeze_reviewer/providers/api_client.py
.py
34 symbols added
~
desktop/src-tauri/resources/kit/tools/freeze_reviewer/providers/api_prompt.py
.py
10 symbols added
~
desktop/src-tauri/resources/kit/tools/freeze_reviewer/providers/api_response.py
.py
11 symbols added
+
Phase Track O / O0 — Freeze Normie custody funnel (Thinking freeze)
section Phase Track O / O0 — Freeze Normie custody funnel (Thinking freeze) L1–346
+
10 — Definition of Done (Thinking) + close-out
section §O0.10 — Definition of Done (Thinking) + close-out L312–334
+
1 — Allowed regime transitions (frozen)
section §O0.3.1 — Allowed regime transitions (frozen) L153–167
+
2 — Dev / operator path (informative, not replaced)
section §O0.3.2 — Dev / operator path (informative, not replaced) L167–173
+
3 — Stage 3 kit upgrade ceremony (frozen — deferred)
section §O0.3.3 — Stage 3 kit upgrade ceremony (frozen — deferred) L173–188
+
7 — O1 Auto deliverables (product contracts only)
section §O0.7 — O1 Auto deliverables (product contracts only) L248–277
+
8 — Seven-tier test matrix (O1 Auto build must satisfy)
section §O0.8 — Seven-tier test matrix (O1 Auto build must satisfy) L277–295
+
9 — Hard stops + tier linkage (frozen)
section §O0.9 — Hard stops + tier linkage (frozen) L295–312
+
Phase Track P / P-evidence — Verification evidence capture (Thinking freeze)
section Phase Track P / P-evidence — Verification evidence capture (Thinking freeze) L1–564
+
10 — Seven-tier test matrix (P-evidence Auto build must satisfy)
section §PE.10 — Seven-tier test matrix (P-evidence Auto build must satisfy) L516–533
+
11 — Shared-contract note (informative)
section §PE.11 — Shared-contract note (informative) L533–547
+
12 — Definition of Done (Thinking freeze)
section §PE.12 — Definition of Done (Thinking freeze) L547–556
+
13 — Definition of Done (Auto build — for the next session)
section §PE.13 — Definition of Done (Auto build — for the next session) L556–564
+
2 — What exists now (verified, do not redesign)
section §PE.2 — What exists now (verified, do not redesign) L138–159
+
3 — Ledger kind verification_evidence (frozen schema)
section §PE.3 — Ledger kind verification_evidence (frozen schema) L159–234
+
5 — Ledger CLI surface (frozen, additive)
section §PE.5 — Ledger CLI surface (frozen, additive) L269–294
+
require_verification_evidence (frozen)
section §PE.6 — Config: honesty.require_verification_evidence (frozen) L294–417
+
2 — honesty-status invocation modes (frozen)
section §PE.6.2 — honesty-status invocation modes (frozen) L336–370
+
3 — Mode B JSON + error token (frozen)
section §PE.6.3 — Mode B JSON + error token (frozen) L370–417
+
7 — Build-verification skill delta (frozen, normative)
section §PE.7 — Build-verification skill delta (frozen, normative) L417–461
+
9 — Boundary & capability table (frozen)
section §PE.9 — Boundary & capability table (frozen) L485–516
+
Phase Track Q / Q0 — Freeze Overseer App (Thinking freeze)
section Phase Track Q / Q0 — Freeze Overseer App (Thinking freeze) L1–511
+
10 — Process exit codes + HTTP mapping (frozen)
section §Q0.10 — Process exit codes + HTTP mapping (frozen) L415–449
+
11 — Boundary & capability table (frozen)
section §Q0.11 — Boundary & capability table (frozen) L449–469
+
12 — Seven-tier test matrix (Q1 Auto build must satisfy)
section §Q0.12 — Seven-tier test matrix (Q1 Auto build must satisfy) L469–485
+
13 — Q2 packaging note (informative, not Q1 work)
section §Q0.13 — Q2 packaging note (informative, not Q1 work) L485–495
+
14 — Definition of Done (Thinking freeze)
section §Q0.14 — Definition of Done (Thinking freeze) L495–504
+
15 — Definition of Done (Auto build — Track Q / Q1)
section §Q0.15 — Definition of Done (Auto build — Track Q / Q1) L504–511
+
2 — What exists now (verified, do not redesign)
section §Q0.2 — What exists now (verified, do not redesign) L122–141
+
6 — Request / response field contracts (frozen)
section §Q0.7.6 — Request / response field contracts (frozen) L313–384
+
9 — Server + UI tech constraints (frozen for Q1)
section §Q0.9 — Server + UI tech constraints (frozen for Q1) L401–415
+
Phase Track Q / Q2a — Freeze OK CLI entrypoint (Thinking freeze)
section Phase Track Q / Q2a — Freeze OK CLI entrypoint (Thinking freeze) L1–327
+
10 — Seven-tier test matrix for Q2b (frozen)
section §Q2A.10 — Seven-tier test matrix for Q2b (frozen) L276–295
+
12 — Thinking-phase Definition of Done (this phase)
section §Q2A.12 — Thinking-phase Definition of Done (this phase) L309–319
+
4 — Compatibility shim cli/overseer (frozen)
section §Q2A.4 — Compatibility shim cli/overseer (frozen) L151–178
+
5 — Argparse prog and help surface (frozen)
section §Q2A.5 — Argparse prog and help surface (frozen) L178–195
+
6 — Operator docs, templates, and CI (frozen)
section §Q2A.6 — Operator docs, templates, and CI (frozen) L195–217
+
7 — Amendment to prior frozen contracts (frozen)
section §Q2A.7 — Amendment to prior frozen contracts (frozen) L217–232
+
Path A — Non-developer / any chatbot (no desktop required)
section Path A — Non-developer / any chatbot (no desktop required) L27–49
+
Path B — Developer: local web UI (ok app)
section Path B — Developer: local web UI (ok app) L49–67
+
Relation to Knowtation / MuseHub / normies
section Relation to Knowtation / MuseHub / normies L100–109
+
test_disabled_cost_awareness_status_unchanged
function
function test_disabled_cost_awareness_status_unchanged L56–73
+
test_enabling_cost_awareness_does_not_mutate_files
function
function test_enabling_cost_awareness_does_not_mutate_files L36–53
+
test_append_does_not_embed_file_bytes
function
function test_append_does_not_embed_file_bytes L30–49
+
test_path_escape_append_file_refused
function
function test_path_escape_append_file_refused L52–60
+
test_tampered_artifact_sha256_breaks_verify
function
function test_tampered_artifact_sha256_breaks_verify L15–27
+
test_validation_failure_no_partial_write
function
function test_validation_failure_no_partial_write L63–72
+
test_governance_sync_dry_run_idempotent
function
function test_governance_sync_dry_run_idempotent L24–44
+
test_session_credential_not_written_to_repo
function
function test_session_credential_not_written_to_repo L47–62
+
test_shims_are_not_footprint_members
function
function test_shims_are_not_footprint_members L26–30
+
test_version_lock_never_lists_shim_paths
function
function test_version_lock_never_lists_shim_paths L33–40
+
test_bundle_script_produces_complete_kit_tree
function
function test_bundle_script_produces_complete_kit_tree L31–56
+
test_launch_stop_twice_yields_same_health_shape
function
function test_launch_stop_twice_yields_same_health_shape L15–28
+
test_manifest_still_valid_after_bundle
function
function test_manifest_still_valid_after_bundle L59–61
+
test_e2e_git_only_and_muse_regime_identical
function
function test_e2e_git_only_and_muse_regime_identical L125–149
+
test_e2e_thinking_freeze_slice_paid_high
function
function test_e2e_thinking_freeze_slice_paid_high L21–40
+
test_e2e_append_show_and_mode_b_match
function
function test_e2e_append_show_and_mode_b_match L32–61
+
test_e2e_git_only_and_muse_regime_unsigned
function
function test_e2e_git_only_and_muse_regime_unsigned L107–130
+
test_e2e_last_wins_findings_then_pass
function
function test_e2e_last_wins_findings_then_pass L64–94
+
test_skill_normative_pass_body_includes_test_output
function
function test_skill_normative_pass_body_includes_test_output L97–104
+
test_ok_shim_fail_closed_remediation_then_status_and_review_dry_run
function
function test_ok_shim_fail_closed_remediation_then_status_and_review_dry_run L11–54
+
test_desktop_operator_flow_matches_q1_surface
function
function test_desktop_operator_flow_matches_q1_surface L11–43
+
Paste-ready prompt — Demo Thinking freeze
section Paste-ready prompt — Demo Thinking freeze L11–22
+
test_route_malformed_cost_class_exit_32
class
function test_route_malformed_cost_class_exit_32 L59–74
+
test_route_resolution_unchanged_with_cost_fields
function
function test_route_resolution_unchanged_with_cost_fields L44–56
+
test_status_disabled_byte_identical_no_cost_key
function
function test_status_disabled_byte_identical_no_cost_key L77–89
+
test_status_enabled_emits_cost_surface
function
function test_status_enabled_emits_cost_surface L92–106
+
test_status_invalid_cost_metadata_warning_only
function
function test_status_invalid_cost_metadata_warning_only L129–153
+
test_append_verification_evidence_writes_chain
function
function test_append_verification_evidence_writes_chain L25–29
+
test_honesty_disabled_mode_b_exit_4
function
function test_honesty_disabled_mode_b_exit_4 L127–146
+
test_mode_a_unchanged_without_mode_b
function
function test_mode_a_unchanged_without_mode_b L114–124
+
test_mode_b_warn_missing_exit_0_with_warning
function
function test_mode_b_warn_missing_exit_0_with_warning L70–82
+
test_ok_and_overseer_shims_emit_equivalent_status_json
function
function test_ok_and_overseer_shims_emit_equivalent_status_json L11–26
+
test_auth_bootstrap_script_is_non_persisting
function
function test_auth_bootstrap_script_is_non_persisting L45–59
+
test_desktop_launcher_starts_ok_app_and_serves_ui
function
function test_desktop_launcher_starts_ok_app_and_serves_ui L14–36
+
test_desktop_launcher_stop_is_idempotent
function
function test_desktop_launcher_stop_is_idempotent L62–66
+
test_launch_argv_matches_canonical_shim
function
function test_launch_argv_matches_canonical_shim L39–42
+
test_match_scan_linear_no_filesystem_walk
function
function test_match_scan_linear_no_filesystem_walk L40–63
+
test_realistic_evidence_append_verify_within_bound
function
function test_realistic_evidence_append_verify_within_bound L16–37
+
test_ok_shim_status_json_within_existing_budget
function
function test_ok_shim_status_json_within_existing_budget L11–20
+
test_desktop_launcher_startup_within_budget
function
function test_desktop_launcher_startup_within_budget L13–21
+
test_cost_modules_do_not_import_network_clients
function
function test_cost_modules_do_not_import_network_clients L93–103
+
test_cost_output_has_no_currency_or_price_markers
function
function test_cost_output_has_no_currency_or_price_markers L46–57
+
test_cost_paths_make_no_network_connections
function
function test_cost_paths_make_no_network_connections L34–43
+
test_cost_surface_reminder_only_never_blocks_success
function
function test_cost_surface_reminder_only_never_blocks_success L79–90
+
test_injection_shaped_cost_class_fail_closed
class
function test_injection_shaped_cost_class_fail_closed L60–76
+
test_exit_33_not_waived_when_require_configured
function
function test_exit_33_not_waived_when_require_configured L77–88
+
test_ledger_lines_hashes_only_no_raw_payload
function
function test_ledger_lines_hashes_only_no_raw_payload L57–74
+
test_no_network_imports_on_append_verify_match_paths
function
function test_no_network_imports_on_append_verify_match_paths L34–43
+
test_producer_cannot_append_verification_evidence
function
function test_producer_cannot_append_verification_evidence L46–54
+
test_url_like_ref_treated_as_opaque_string
function
function test_url_like_ref_treated_as_opaque_string L16–31
+
test_static_ui_has_no_local_storage_persistence
function
function test_static_ui_has_no_local_storage_persistence L79–85
+
test_deprecation_line_has_no_absolute_paths_or_secrets
function
function test_deprecation_line_has_no_absolute_paths_or_secrets L11–16
+
test_overseer_json_stdout_is_single_object_deprecation_on_stderr
function
function test_overseer_json_stdout_is_single_object_deprecation_on_stderr L19–27
+
test_shims_forward_args_without_shell_expansion
function
function test_shims_forward_args_without_shell_expansion L30–38
+
test_desktop_launcher_does_not_write_secrets_to_repo
function
function test_desktop_launcher_does_not_write_secrets_to_repo L31–43
+
test_init_script_does_not_persist_credentials
function
function test_init_script_does_not_persist_credentials L24–28
+
test_launch_argv_rejects_shell_metacharacters_in_paths
function
function test_launch_argv_rejects_shell_metacharacters_in_paths L14–21
+
test_manifest_has_no_absolute_home_paths
function
function test_manifest_has_no_absolute_home_paths L55–60
+
test_tauri_lib_keeps_loopback_only_defaults
function
function test_tauri_lib_keeps_loopback_only_defaults L46–52
+
test_active_slice_surface_order_stable
function
function test_active_slice_surface_order_stable L44–56
+
test_many_active_slices_resolve_within_bound
function
function test_many_active_slices_resolve_within_bound L28–41
+
test_artifact_order_affects_canonical_hash
function
function test_artifact_order_affects_canonical_hash L48–54
+
test_large_artifacts_append_and_verify
function
function test_large_artifacts_append_and_verify L11–29
+
test_many_evidence_entries_chain_verify
function
function test_many_evidence_entries_chain_verify L32–45
+
test_overseer_shim_deprecation_is_one_line_per_process
function
function test_overseer_shim_deprecation_is_one_line_per_process L10–20
+
test_repeated_launch_stop_cycles_leave_no_tmp_artifacts
function
function test_repeated_launch_stop_cycles_leave_no_tmp_artifacts L12–28
+
test_cost_awareness_config_defaults
function
function test_cost_awareness_config_defaults L134–137
+
test_cost_awareness_unknown_surface_exit_2
function
function test_cost_awareness_unknown_surface_exit_2 L140–147
+
test_cost_class_recognized_key_not_unknown
class
function test_cost_class_recognized_key_not_unknown L68–79
+
test_paid_derivation_absent_band_conservative
function
function test_paid_derivation_absent_band_conservative L124–125
+
test_phase_model_label_normalization
function
function test_phase_model_label_normalization L150–154
+
test_deploy_health_missing_ref_exit_2
function
function test_deploy_health_missing_ref_exit_2 L58–61
+
test_frozen_spec_opaque_without_file_existence
function
function test_frozen_spec_opaque_without_file_existence L105–108
+
test_genesis_forbids_verification_evidence_keys
function
function test_genesis_forbids_verification_evidence_keys L98–102
+
test_honesty_error_token_includes_missing_verification_evidence
function
function test_honesty_error_token_includes_missing_verification_evidence L134–139
+
test_require_verification_evidence_config_parse
function
function test_require_verification_evidence_config_parse L111–127
+
test_require_verification_evidence_in_honesty_keys
function
function test_require_verification_evidence_in_honesty_keys L130–131
+
test_validate_accepts_minimal_verification_evidence
function
function test_validate_accepts_minimal_verification_evidence L29–32
+
test_verification_evidence_in_entry_kinds
function
function test_verification_evidence_in_entry_kinds L23–26
+
test_governance_sync_defaults_non_write
function
function test_governance_sync_defaults_non_write L73–91
+
test_occupied_default_port_reports_busy
function
function test_occupied_default_port_reports_busy L107–112
+
test_ok_shim_exists_executable_and_forwards_to_python_main
function
function test_ok_shim_exists_executable_and_forwards_to_python_main L13–20
+
test_overseer_shim_exists_executable_with_exact_deprecation_line
function
function test_overseer_shim_exists_executable_with_exact_deprecation_line L23–30
+
test_init_script_uses_json_encoded_secrets
function
function test_init_script_uses_json_encoded_secrets L83–87
+
test_parse_startup_stderr_incomplete
function
function test_parse_startup_stderr_incomplete L79–80
+
test_resolve_kit_root_prefers_explicit
function
function test_resolve_kit_root_prefers_explicit L42–43
+
test_resolve_repo_root_prefers_explicit
function
function test_resolve_repo_root_prefers_explicit L46–47
+
Overseer App (Track Q — local UI + desktop)
section Overseer App (Track Q — local UI + desktop) L162–172
~
Benefits
~
table
~
table
~
run_sync
−
NEXT SESSION — Track P / P-cost Auto build (▶ NEXT)
section NEXT SESSION — Track P / P-cost Auto build (▶ NEXT) L9–90
−
Paste-ready prompt — Track P / P-cost Auto build
section Paste-ready prompt — Track P / P-cost Auto build L48–90
−
THE ONE NEXT STEP — Model: Auto (Track P / P-cost build)
section THE ONE NEXT STEP — Model: Auto (Track P / P-cost build) L31–48
+
NEXT SESSION — Track O / O1 Normie custody product contracts (▶ NEXT)
section NEXT SESSION — Track O / O1 Normie custody product contracts (▶ NEXT) L9–75
~
table
~
table
~
table
~
to_dict
Older
docs(P-cost): freeze cost-awareness surface (Thinking, reviewed …
sha256:e9f8f7370caf41bee4b1860162ce7f80e2c60d227a48b00eb458f1473e343287
All commits
Newer
chore: track desktop/.vscode/extensions.json in Muse (align with Git)
sha256:96774a9b1246f327f2fab49703ede437f7e1f49f5e37394b5afb1a83656e2b92
0 comments
To add a comment, use the Muse CLI:
muse hub commit comment sha256:a72c6667fc67addc2f1997db11f180ffd1b015319b8c624a7818729c08952ff9 --body "your comment"
No comments yet. Be the first to start the discussion.