Stage trusted lineage persistence and semantic publication - #995
Conversation
|
CI at One same-Codex correction is authorized, bounded at480seconds/8MiB with unchanged configured settings and containment. Only the owning artifact test may replace python-mbuild with python-mpip wheel --no-deps --wheel-dir against the local candidate. The real isolated build, one-wheel installation, candidate-origin checks, fixture rows, product/core and all guards remain intact. No CI/dependency changes or automatic retry. After source delivery, broker checks and a fresh frozen-head qualification are required; this draft remains unaccepted. |
|
CI at One same-Codex correction is authorized for the two existing owning test files, capped at 480 seconds / 16 MiB with unchanged settings and containment. It will commit a finite literal baseline independently verified from accepted commit All business fixtures, real isolated wheel execution, origin checks, product/core and guards remain unchanged. No skips, runtime baseline fetch, CI/dependency changes or automatic retry are allowed. Before any further full-suite or review qualification, the broker must test the delivered candidate in a depth-one checkout where the accepted base object is proven absent. The draft remains unaccepted. |
Embed the complete independently approved accepted baseline. Compare exact source-line hashes, including decorators and ordered live statements, and unchanged-file hashes without reading a base object at test runtime. Preserve real candidate builds, isolated execution, and every business row. Refs #991 Refs #963 Builder-Provider: codex Builder-Executor: codex_cli
Claude audit (merge-authority lane)Head SHA: Claude Audit: PASS Summary: Independent Claude review of the Codex-authored staged lineage producer APIs at exact head d88c7dc. The complete 110,988-byte diff and 371,698 bytes of owning source context were supplied and reviewed, covering trusted persistence, verified exit evidence, publication/readback effect ordering, bounded history, transport attribution and isolated package artifacts. No P0/P1/P2 findings; two nonblocking P3 notes below. Author exclusion is satisfied. Static review; tests and CI are tracked separately. Automatic consumer and maintained-runner activation remains deferred to #992. Findings:
|
Adds staged APIs for persisting verified builder handoffs and same-writer continuations, preserving transport attribution, and checking complete authenticated publication readback before reconciling the active builder label. The producer workflow and runner are packaged separately; coordinated adoption by existing consumers belongs to #992.
Artifact tests build a local wheel with pip, install it in an isolated target, and execute the rendered workflow and runner against the installed producer API. An embedded accepted-base baseline verifies existing code and asset parity without requiring Git history, including depth-one CI checkouts. Normal-init import isolation is covered separately.
Validation: owning, affected and core unittest suites; full unittest discovery; isolated wheel and shallow-checkout rehearsals; Ruff, privacy, workflow, manifest and release-readiness checks. Independent exact-head Claude review passed with no P0/P1/P2 findings.
Authored by Codex through Code Mower; independently reviewed by Claude.
Closes #991
Refs #963