From 817fcb528d1e6a23d26e3e7754273610dcfe556d Mon Sep 17 00:00:00 2001 From: Svrnty Date: Thu, 18 Jun 2026 04:45:21 -0400 Subject: [PATCH] Normalize CTO pickup contract --- AGENTS.md | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/AGENTS.md b/AGENTS.md index e3d2a86..fe642d2 100644 --- a/AGENTS.md +++ b/AGENTS.md @@ -5,6 +5,7 @@ Route: `cto`. Stage: CLEAN. Clean score: 100. Validator: `python3 tools/validate_cto_child.py`. +Current pickup: keep refs-only; target-mutation, backend, provider, runtime, exposure, readiness gated. Authority boundary: child-local CTO planning only; not Cortex OS Core authority, Runtime authority, Host Runtime authority, backend owner authority, vendor-source authority, external developer repo authority, execution-backend authority, provider authority, target-repo mutation authority, Profile Exposure authority, readiness, release, or production authority. Legacy-work relation: CTO planning, adapter design, transportability, Case/Hermes/Pi/Codex/backend, and validation scaffold work is reference-only unless `docs/LEGACY-INGEST.md` admits it. Distill route contracts; do not import vendor source, backend state, runtime behavior, or implementation mass because it exists. @@ -20,7 +21,7 @@ Legacy-work relation: CTO planning, adapter design, transportability, Case/Herme CTO owns child-local execution-routing planning, adapter design, transportability briefs, proof gates, target-repo admission templates, approval packets, evidence contracts, and validators. -It must not own Core truth, Runtime authority, backend ownership, vendor-source authority, developer repo authority, execution-backend authority, provider authority, target mutation authority, Profile Exposure authority, readiness, release authority, or production readiness. +It must not own Core truth, Runtime, backend, vendor-source, dev-repo, execution-backend, provider, target mutation, exposure, readiness, release, or production authority. Allowed proof is child-local and refs-only unless a governed route approves more: planning docs, WorkBoard entries, admission records, approval packets, evidence contracts, validator output, and commits. This repo may inform CTO routing only through the owning route; it does not activate Case as default backend, mutate target repositories, mutate vendor source, start Runtime, call providers, read secrets, broaden profile exposure, write Hindsight memory, mutate Core, mutate Seed, mutate siblings, mutate OpenDesign, claim readiness, publish, deploy, or release.