Approved exact-plan work
Authorization, plan alignment, capability, constraints, execution conditions, and required evidence support continuation.
This document turns the DSG ONE architecture into an explorable 3D model. Drag the scene, select a trust domain, inspect its authority boundary, then follow the implementation and evidence sections below.
The authority layer distinguishes exact-plan work, capability gaps, and unsupported or out-of-plan actions.
Authorization, plan alignment, capability, constraints, execution conditions, and required evidence support continuation.
The step remains inside the approved plan, but execution pauses until the required permission or capability is provisioned.
Missing authority, failed constraints, incomplete proof, or scope violation does not become success.
Admission requires composite improvement, real-efficiency improvement, and no regression in protected metrics such as P99 latency, error rate, throughput, cost efficiency, audit completeness, human override rate, SLA status, and zero-data-loss guarantees.
ADMIT = scoreImproved ∧ efficiencyImproved ∧ noProtectedRegressionNatural-language hints do not become solver code. Search completion and whole-space search are tracked independently.
missing constraints.aimoEncoding → REVIEWsearchComplete ≠ wholeSpaceSearchedAfter a candidate is found, an independent solver asks whether any assignment exists with strictly lower energy.
verifier_objective < candidate_energyUNSAT → VERIFIED_GLOBAL_OPTIMUM. Better witness → COUNTEREXAMPLE_FOUND. Timeout → VERIFICATION_TIMEOUT.
candidateAuthority = SIMULATION_ONLYpromotionAuthority = DSG_CONTROL_PLANEselfPromotionAllowed = falsePlan hash, commits, allowed paths, constraints, tests, build, objective improvement, evidence, and Cinema proof binding are checked before promotion.
BLOCKED and FAILED remain explicit. Required lanes need a joinable state, commit SHA, evidence, and no blockers.
Sessions bind to an approved plan, approved step, and agent identity. Verifier-side access is observation-only; delegated secrets use opaque references outside the model/evidence path.
secret_ref / otp_refHTTPS, private-address/DNS protections, SSRF-style rejection, and expiring AES-GCM session sealing protect the remote boundary.
PASS → COMMIT_NEXT_BASELINEREVIEW → HOLD_REVIEWBLOCK → EXECUTE_ROLLBACKMonitoring observes; canonical authority owns mutation. Unbound production targets fail closed.
PRODUCTION_TARGET_UNBOUND → BLOCKCurrent documentation inventories 44 workflow files in the current repository snapshot and 40 primary pytest modules, plus Azure, Browserbase, and Copilot CLI E2E paths.
line coverage = NOT MEASUREDbranch coverage = NOT MEASURED