docs: define intent verification runtime - #174
Conversation
Greptile SummaryThis PR adds the DD-078 Intent Verification Runtime design document, a dependency-closed implementation plan, a separate Larrimon consumer adoption plan, and the mechanical
Confidence Score: 5/5Documentation-only PR; no runtime behaviour changes. The mechanical test harness enforces all structural invariants and is itself covered by representative negative-drift mutations. All changed files are documentation, plans, SHA-256 fixture locks, and the test harness that validates those documents. The two previous inline findings (reversed-range error, spike section boundary) are confirmed fixed in the current HEAD with regression coverage. The digest-locking scheme correctly normalises line endings before hashing, and the CRLF round-trip test exercises that path. No logic paths introduce data mutation or security-sensitive operations. Files Needing Attention: No files require special attention.
|
| Filename | Overview |
|---|---|
| tests/dd078_plan_tests.rs | 958-line mechanical validator: parses the slice DAG table, checks cycle-freeness, owner uniqueness, module-registration creator-dependency closure, external-prerequisite ledger, release-group exhaustiveness, spike artifact-only constraints, and SHA-256 snapshot/envelope integrity over both LF and CRLF checkouts. Previous findings are fixed with regression coverage. |
| plans/dd-078-intent-verification-implementation.md | Core implementation plan locked by SHA-256 fixture; defines the full slice DAG, release groupings, external prerequisite ledger, and definition of done. |
| plans/dd-078-larrimon-adoption.md | Standalone consumer adoption plan locked by SHA-256; kept explicitly outside the core DD-078 DAG, release sequence, and definition of done. |
| design-docs/dd-078-intent-verification-runtime.md | Core design document locked by SHA-256; defines obligation truth model, evidence ledger, capability/resource model, provider model, acceptance criteria, and open questions. |
| tests/fixtures/dd078/core-plan.sha256 | SHA-256 digest fixture locking the core implementation plan against unauthorized drift. |
| design-docs/README.md | Adds dd-078 entry and updates ial_vision_v2.md status to Superseded in part. |
| design-docs/ial_vision_v2.md | Adds supersession note pointing to DD-078 for execution roadmap; historical content preserved. |
Reviews (9): Last reviewed commit: "test: lock complete DD-078 normative env..." | Re-trigger Greptile
|
Addressed the final Greptile maintenance note in |
|
Addressed Greptile’s release-coverage finding in |
|
Closed the independent adversarial-review major in |
|
Closed the second adversarial-review major in |
|
Fresh immutable cold review of |
Summary
.tntcases, fixtures, stateful HTTP, managed resources, PostgreSQL, eventual/concurrent behavior, browser verification, project/provenance checks, typed project environments, and external evidenceial_vision_v2.mdas superseded while preserving its historical term-rewriting and Studio directionKey decisions
.intentstates durable obligations but receives no execution authority.tntis the project-owned executable verification languagentnt.tomlrequests resources and capabilities; an operator launcher outside repository-controlled execution grants/clamps privileged authorityauthoring = "pure-ntnt"classifies files and executable declarations; inline workflow/package/Compose/Docker scripts, gitlinks/nested repositories, generated helpers, omissions, overlaps, and relabeled wrappers fail planningPolicyTrustedInputV1/ProtectedContractTrustedInputV1JCS envelopes over the same inherited-handle loader; each domain signs the exact raw-payload digest before parsingceadfd992d1435ac27afb054968ff5569d697ce1with canonical path/range/blob inventory digestsEffectKindmetadata never substitutes for supervisor-mintedVerificationGrantsf0132afcff984bb43305be39122d7e74a6850396is explicitly unmerged/not ancestral; dependent slices use its real PR 0A, Design spike 0B, PRs 2C–2E, and PRs 1B–1C identifiers and cannot start until exact merge commits are recordedreserve → create → finalize → exposebroker protocol; unsupported crash windows are non-verifying, and reconciliation never falls back to broad labels/prefix/PID scansntnt project envplus root-bound CAS/locks/leases replaces dev/staging scripts; OCI ingress binds listener/container/endpoint/generation and authenticates the exact target before forwarding application bytes, rather than trusting names, aliases, cached IPs, placeholder sockets, or a user lock as a daemon mutexLarrimon target
The plan maps the seven pinned Intent files and immutable replacement estate—14 shell files, 11 Python files, 2 JavaScript/MJS test programs, and 3 SQL-only test inputs totaling 4,549 lines—into explicit native destinations and dependency-closed ntnt slices. It then extends the proving surface for signup/egress/KMS, monitoring and streaming protocols, durable jobs, multi-node protocol fixtures, AI/provider behavior, alerting, retention, upgrades, restore, HA, and private/on-prem profiles. Production agent/tool effect transcripts remain outside DD-078 pending a real DD-065 contract.
The final project target is one canonical command:
ntnt intent check . --profile fullScope
Documentation, immutable baseline evidence, and one mechanical plan-DAG test only. This PR changes no runtime behavior.
Validation
7ed409c68c17179c742a9edfab0ab860a958916b(patch SHA-2569631ebe3ff3b4fddca83c102905c91469b90b5c79200eb43b693b3fa57636534)8bb722c453c84124761bf89d990ba92a1a3853b2generalized the adoption model and repaired both Greptile inline findings;9bc9c54971e3d5740dc7c54103c1c48a6e1da464closed the multi-create-block maintenance note;eb87c589237465b4f9273d3e10a47ef62e28a3e7moved all Larrimon Waves A–E, Slice 16M, deletion authority, release milestones, and completion criteria into a mechanically non-gating standalone consumer plan;75bd032919e0a8e225b2c67f58b3995b6f740fd6requires release groups to cover every core slice;5692abb8df6db00e9ecedcc8dbaa71ad36e3b763snapshot-locks high-risk scope and deletion sections;92d35c952f07f7b401c53ce7bb6e6f246179665bnormalizes and explicitly exercises snapshot checks across LF/CRLF checkouts;d689279ee63bd52f8831653efdab4db64620d0dbSHA-256-locks all three complete normative document envelopes and rejects outside-section scope/deletion bypassescargo nextest run— 1,962 passed, 0 skippedcargo test --doc— passed (0 doctests)cargo fmt --check— passedcargo test --test dd078_plan_tests— 2 passed, including representative negative drift mutationsceadfd992d1435ac27afb054968ff5569d697ce1— matchedcargo clippy --all-targets -- -D warningsis already red on unchangedbuild.rsunder Rust 1.94: onecollapsible_ifand twomanual_striplints. The plan records this as a baseline preflight to repair separately or resolve through an explicit supported-toolchain pin before Task 1.