Skip to content
Closed
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
57 commits
Select commit Hold shift + click to select a range
84d9a37
test(docs): require canonical documentation graph
seonghobae Aug 9, 2026
0565a8e
docs: establish canonical product architecture
seonghobae Aug 9, 2026
0616dfe
docs: correct runtime evidence and source licensing
seonghobae Aug 9, 2026
e732497
docs: correct trace and runtime control claims
seonghobae Aug 9, 2026
9ae34ff
test(docs): parse supported Mermaid syntax
seonghobae Aug 9, 2026
343edac
merge: stack canonical docs on accepted security head
seonghobae Aug 9, 2026
31cbf25
docs: preserve agent authority boundaries
seonghobae Aug 9, 2026
fde04d3
test(docs): require changelog traceability
seonghobae Aug 9, 2026
f5b9acc
docs: record canonical product documentation graph
seonghobae Aug 9, 2026
c78aa35
docs: refresh live traceability evidence
seonghobae Aug 11, 2026
bee7a0c
docs: define traceability snapshot boundary
seonghobae Aug 11, 2026
33906b1
docs: add canonical release operations guide
seonghobae Aug 11, 2026
3744016
docs: record release guide in changelog
seonghobae Aug 11, 2026
d13b597
docs: refresh commercial readiness traceability
seonghobae Aug 11, 2026
d0a6ac8
docs: refresh package identity traceability
seonghobae Aug 11, 2026
3418993
docs: align README with product identity
seonghobae Aug 11, 2026
12e868b
docs: clarify independent product provenance
seonghobae Aug 11, 2026
7630125
docs: remove remaining lab qualifier
seonghobae Aug 11, 2026
8ce282d
docs: qualify enterprise auth boundary
seonghobae Aug 11, 2026
12b6570
docs: align library adoption status
seonghobae Aug 11, 2026
828ca54
docs: align agent dependency guidance
seonghobae Aug 11, 2026
62a4983
docs: status-qualify runtime guides
seonghobae Aug 11, 2026
163dcda
test(docs): require review-aligned authority contracts
seonghobae Aug 11, 2026
14487f4
docs: align canonical contracts with review
seonghobae Aug 11, 2026
1ec8337
test(docs): normalize semantic contract whitespace
seonghobae Aug 11, 2026
7254fa9
test(docs): require PR 109 in audited inventory
seonghobae Aug 11, 2026
c348c7c
docs(traceability): audit PR 109
seonghobae Aug 11, 2026
94a43c5
test(docs): require fail-closed aggregate review evidence
seonghobae Aug 11, 2026
46c92ba
docs(adr): fail closed aggregate review evidence
seonghobae Aug 11, 2026
c8ab1c2
test(docs): prove review evidence clauses fail closed
seonghobae Aug 11, 2026
66ccb67
test(docs): enforce full fail-closed review semantics
seonghobae Aug 11, 2026
97e2f13
test(docs): reject canonical trailing whitespace
seonghobae Aug 11, 2026
310ded2
docs: remove diff-check whitespace from ARCHITECTURE.md
seonghobae Aug 11, 2026
9712faa
docs: remove diff-check whitespace from docs/PRD.md
seonghobae Aug 11, 2026
2457009
docs: remove diff-check whitespace from docs/TRD.md
seonghobae Aug 11, 2026
c679de2
docs: remove diff-check whitespace from docs/TRACEABILITY.md
seonghobae Aug 11, 2026
4570cde
docs: remove diff-check whitespace from docs/THREAT_MODEL.md
seonghobae Aug 11, 2026
cf5414a
test(docs): reject canonical final blank lines
seonghobae Aug 11, 2026
4a91606
docs: remove final blank line from ADR index
seonghobae Aug 11, 2026
21dba99
docs: trace active local MLX provider slice
seonghobae Aug 11, 2026
952c21f
docs: separate volatile evidence from traceability
seonghobae Aug 12, 2026
f07ab38
test(docs): require the live open-PR snapshot
seonghobae Aug 12, 2026
3fce9bb
docs(evidence): reconcile the live open-PR ledger
seonghobae Aug 12, 2026
5543d1b
docs(evidence): reconcile draft inventory aggregate
seonghobae Aug 12, 2026
5e1505d
docs(evidence): add continuation audit ledger
seonghobae Aug 12, 2026
b62cc16
docs: mark evidence snapshot identity
seonghobae Aug 12, 2026
32ca453
docs(security): define coordinated disclosure lifecycle (#104)
seonghobae Aug 12, 2026
9179304
merge: refresh canonical docs onto accepted security head
seonghobae Aug 12, 2026
9e26f89
test(docs): reject stale stack and KV authority claims
seonghobae Aug 12, 2026
9583b8a
docs: reconcile live stack and KV authority
seonghobae Aug 12, 2026
75079a6
test(docs): reject closed trace-hardening PR as active
seonghobae Aug 12, 2026
5cd3774
docs: retire incomplete request-boundary slice
seonghobae Aug 12, 2026
7fdb02f
test(docs): distinguish reopened superseded scaffold
seonghobae Aug 12, 2026
8931039
docs: record reopened NIM scaffold without active authority
seonghobae Aug 12, 2026
63bcad6
test(docs): require live partial and duplicate-stack truth
seonghobae Aug 12, 2026
2d93ee3
docs: reconcile live partial and duplicate stack authority
seonghobae Aug 12, 2026
85cdcae
fix(docs): stop pairing PR #115 with #90's closed-unmerged phrasing
seonghobae Aug 12, 2026
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
66 changes: 54 additions & 12 deletions AGENTS.md
Original file line number Diff line number Diff line change
Expand Up @@ -38,6 +38,26 @@ push or open a PR.
code-scanning tools can't converge on one PR ref. Gating happens via the
Security **job results**; do not add tools to the `code_scanning` rule.

### Repository-writer lease and dependency authority

- Enforce **one writer per repository branch**. Before every repository write,
refetch the **exact PR head and target blob SHA**. If either changed, inspect
the intervening work and reconcile once before editing; never overwrite an
independently moved branch from stale state.
- Repositories outside `ContextualWisdomLab/contextual-orchestrator`, including
the central `ContextualWisdomLab/.github` control plane and repositories with
their own dedicated maintenance loops, are **read-only dependencies** unless
the task is explicitly assigned to that repository. Do not edit their
branches, dispatch **write-capable agents**, resolve their review threads, or
merge their PRs from this repository's loop.
- Live GitHub state is authoritative. A predecessor-head, stale-head,
cancelled, absent, failed, queued, pending, skipped-required, or
synthetic-merge result is not current-head evidence and must never be reused
to approve or merge a later tree.
- Do not create one-shot, self-modifying, encoded-patch, branch-local repair, or
temporary write-capable GitHub Actions workflows. Prefer direct reviewed
changes tied to the exact current head.

### Code exploration

- This repo has **no `.codegraph/` index**, so use normal search
Expand All @@ -56,23 +76,26 @@ push or open a PR.
- The reference implementation is xtrmLLMBatchPython's pgcrypto-encrypted
Postgres credential registry (`get_credential(name)`); reuse that pattern (a
DB-backed KV is fine) unless a dedicated KV is adopted.
- **Known deviation to migrate:** this repo currently resolves provider API
keys from env — `ModelClient` reads `os.environ.get(agent.api_key_env)` in
`contextual_orchestrator/orchestrator.py` (and `CONTEXTUAL_ORCHESTRATOR_*`
tokens in `__main__.py`). Move these to KV-backed reads; keep env only as the
bootstrap path that seeds the KV.
- Protected main resolves provider keys through `get_credential`; the legacy
`api_key_env` field is only a credential-name compatibility alias. Do not
reintroduce request-time environment fallback. Process/bind configuration
may still use explicit `CONTEXTUAL_ORCHESTRATOR_*` bootstrap inputs.

### This repo: the org LLM gateway

- `contextual-orchestrator` is the org's **LLM-communication hub** — the
OpenAI-compatible front door consumed by **gyeot** and **scopeweave**.
- **Direction:** grow it toward a **LiteLLM-class multi-provider gateway**. The
org is open to a **Rust/Python hybrid** to cut overhead.
- Its `ModelClient` currently reads `os.environ.get(agent.api_key_env)` — this
is the KV-principle deviation above. Resolve the API key (including the org
`OPENAI_API_KEY`) from the **KV / credential registry**, not env.
- The **OpenCode review pipeline is separate** and stays on **GitHub Models** —
do not change it.
- Its `ModelClient` resolves the credential name through the **KV / credential
registry**, including `OPENAI_API_KEY`; do not add ambient environment
fallback at request time.
- The **OpenCode review pipeline is separate and centrally governed** by
`ContextualWisdomLab/.github`. Do not hard-code or replace its provider pool,
reviewer identities, or credential chain from this repository. For live model
tests and autonomous development work owned by this repository, use
`NVIDIA_NIM_API_KEY`; never repurpose `COPILOT_GITHUB_TOKEN` as a model or
development-agent credential.

### This repo's role in the ecosystem

Expand All @@ -83,15 +106,15 @@ push or open a PR.
email/PIM that DOM-decomposes emails/files into a persisted knowledge graph).
Each component below is a **standalone program that must ALSO work as a git
submodule**, grown separately and together:
- **waf-ids-ai-soc** — WAF / IDS / AI SOC / LB / APIM.
- **wardnet** — WAF / IDS / AI SOC / LB / APIM.
- **clearfolio** — document viewer.
- **pg-erd-cloud** — ERD tool.
- **contextual-orchestrator** — this repo: LLM cost/perf/upstream-LB gateway
(beyond LiteLLM).
- **codec-carver** — STT / omni-modal speech-video codec.
- **fast-mlsirm** — LLM-as-a-Judge calibration + evaluation-item quality
(uses aFIPC FIPC + kaefa item-fit).
- **feelanet-adfs** — passwordless SSO (OIDC/SCIM/ADFS/LDAP/FIDO2/OAuth2.1,
- **keyverse** — passwordless SSO (OIDC/SCIM/ADFS/LDAP/FIDO2/OAuth2.1,
eliminate passwords).
- **newsdom-api** — PDF→DOM sidecar.
- **semantic-data-portal** — upper ontology / catalog / governance plane with
Expand All @@ -109,3 +132,22 @@ push or open a PR.
scheduling (e.g. LLM-cascade / model-routing and queueing/load-balancing
papers).
<!-- END cwl-agent-guidance -->

## Canonical product documentation

Start at [`docs/README.md`](docs/README.md). Root `ARCHITECTURE.md`, PRD, TRD,
ERD, UML, ADRs, threat model, test strategy, operability, incident response,
traceability, and references are one status-qualified graph. Behavior changes
must update the affected authority and documentation contract test.

## Execution continuity

- Treat prompt edits, audits, status summaries, and documentation assessments
as intermediate work when the request also authorizes repository changes.
- Continue the safe chain: verify live target state, repair the smallest
coherent authority set, run focused and full evidence, publish a reviewable
branch/PR, inspect its exact-head state, then take the next non-conflicting
authorized task while a control-plane check is pending.
- Stop only for a real authority choice, destructive ambiguity, permission
boundary, or external dependency that blocks every safe continuation. Never
turn queued, absent, stale, synthetic, or status-only evidence into success.
Loading
Loading