Graph OS ecosystem · Contribute

Graph OS public specification status

Snapshot through 2026-10-01 14:12 UTC from the committed specs/ revisions listed below in the public repositories. The repository specs and linked CI results are the evidence; source presence alone cannot establish completion. Missing or unsupported status metadata is shown as UNKNOWN / NOT AUDITED.

59 specs · Delivery: SPECIFIED: 54, UNKNOWN: 5 · Acceptance: NOT_AUDITED: 59

Requirement delivery

A requirement counts as delivered only when its status entry cites an implementing commit that is on the owner repository's default branch. Everything else is still open, whatever its label.

RepositoryDeliveredBuilding or builtRequirementsComplete
.github0060%
epistemic-graph1374947628%
agent-connector-sdk46488%
agent-utilities7391614%
graph-os1651370%
agent-webui09590%
repository-manager02580%
pipelines201513%
agent-terminal-ui0220%
emerald-exchange0020%
tunnel-manager0010%
universal-skills0020%
All repositories15117296715%

Specifications

To find work ready for contributors, open a specification's remaining requirements below. Each linked owner spec supplies its design, tasks, test contract, and a requirements.md that defines every ID.

State legend and evidence rules

Delivery: UNKNOWN = no supported status claim; SPECIFIED = build contract is published; BUILDING = public implementation work exists; BUILT = implementation exists with public commit evidence; LANDED = exact implementation commit is on default branch; CLOSED = work closed with a merged-head record; DEFERRED/REJECTED = public disposition decision.

Acceptance: NOT AUDITED = no verified acceptance decision; PENDING = review is open; ACCEPTED = merged-head tests plus consumer or release proof at the same commit; FAILED = linked failed test. Delivery and acceptance are independent.

Requirements: each ID in a status manifest may carry its own delivery state and evidence. LANDED or CLOSED needs a merged-head commit on the default branch; BUILDING or BUILT needs a public implementation commit. A claim without that proof is shown as UNKNOWN and does not count.

This report validates the shape of public evidence and exact commit references. Human reviewers must still evaluate whether linked tests satisfy every requirement.

SpecificationOwnerDeliveryAcceptanceRequirements deliveredPublic evidence / issue
ORG-AUTH-001.githubSPECIFIEDNOT AUDITED 0/5 (0%)
5 open
  • ORG-AUTH-R001 SPECIFIED — Duplicate-authority register entry contract
  • ORG-AUTH-R002 UNKNOWN — Single authority consolidation per capability
  • ORG-AUTH-R003 UNKNOWN — Authority register contribution and ownership rules
  • ORG-AUTH-R004 UNKNOWN — Register scope excludes deployment-specific detail
  • ORG-AUTH-R005 UNKNOWN — Unresolved-owner decisions stay visible as PROPOSED
ORG-FRONT-001.githubSPECIFIEDNOT AUDITED 0/1 (0%)
1 open
  • ORG-FRONT-R001 UNKNOWN — Organization front door describes the five-repository flow (Claimed commit is not on the default branch)
SDK-CONNECTOR-CONTROLagent-connector-sdkUNKNOWNNOT AUDITED 0/18 (0%)
18 open
  • SDK-CONNECTOR-CONTROL-R001 UNKNOWN — ConnectorPackClient uses a deterministic idempotency key
  • SDK-CONNECTOR-CONTROL-R002 UNKNOWN — Contract pin travels as a claim attribute, not recomputed downstream
  • SDK-CONNECTOR-CONTROL-R003 UNKNOWN — Canonical output-schema digest on every certified tool pin
  • SDK-CONNECTOR-CONTROL-R004 UNKNOWN — Contract-pin verification owned by the SDK's own test kit
  • SDK-CONNECTOR-CONTROL-R005 BUILDING — Pack publisher and source submission use generated graph-client types
  • SDK-CONNECTOR-CONTROL-R006 UNKNOWN — Decision-service proposals for tool choice and triage stay observational
  • SDK-CONNECTOR-CONTROL-R007 SPECIFIED — Fleet-wide re-certification yields nonempty schema fingerprints
  • SDK-CONNECTOR-CONTROL-R008 UNKNOWN — Closed, canonical pack annotation map across the connector fleet
  • SDK-CONNECTOR-CONTROL-R009 UNKNOWN — Connector batch A-E migrates fully onto the SDK client
  • SDK-CONNECTOR-CONTROL-R010 UNKNOWN — Connector batch F-J migrates fully onto the SDK client
  • SDK-CONNECTOR-CONTROL-R011 UNKNOWN — Connector batch K-O migrates fully onto the SDK client
  • SDK-CONNECTOR-CONTROL-R012 UNKNOWN — Connector batch P-S migrates fully onto the SDK client
  • SDK-CONNECTOR-CONTROL-R013 UNKNOWN — Connector batch T-Z migrates fully onto the SDK client
  • SDK-CONNECTOR-CONTROL-R014 SPECIFIED — SDK fully supersedes the duplicated connector toolkit
  • SDK-CONNECTOR-CONTROL-R015 SPECIFIED — SDK is sole owner of connector source lifecycle and certification
  • SDK-CONNECTOR-CONTROL-R016 BUILDING — Connector base settings live in the SDK's own config module
  • SDK-CONNECTOR-CONTROL-R017 UNKNOWN — Every connector uses the shared TLS profile, no bare verify bypass
  • SDK-CONNECTOR-CONTROL-R018 UNKNOWN — SDK source and test suite build cleanly from a fresh checkout
SDK-FINANCE-SOURCESagent-connector-sdkSPECIFIEDNOT AUDITED 0/5 (0%)
5 open
  • SDK-FINANCE-SOURCES-R001 UNKNOWN — Market-data adapters: exchange history fix, CoinMarketCap, FRED/ALFRED
  • SDK-FINANCE-SOURCES-R002 SPECIFIED — Alpaca stocks adapter: history, quotes, fundamentals, calendars
  • SDK-FINANCE-SOURCES-R003 SPECIFIED — FX, commodities, and real-estate adapters with roll and staleness rules
  • SDK-FINANCE-SOURCES-R004 SPECIFIED — Alpaca account reads and idempotent CSV activity import
  • SDK-FINANCE-SOURCES-R005 UNKNOWN — Macro and liquidity panels: FRED series, ETF flows, sentiment, on-chain
SDK-GOVERNED-WRITEBACKagent-connector-sdkUNKNOWNNOT AUDITED 0/5 (0%)
5 open
  • SDK-GOVERNED-WRITEBACK-R001 UNKNOWN — Write-back proposals route through governed authorization, not direct action
  • SDK-GOVERNED-WRITEBACK-R002 BUILDING — Source-side WriteBackPort composes a durable graph write-back adapter
  • SDK-GOVERNED-WRITEBACK-R003 UNKNOWN — Full write-back requires an authorization resolver and restart recovery
  • SDK-GOVERNED-WRITEBACK-R004 SPECIFIED — Governed write-back: approval, idempotency, and an audit reservation
  • SDK-GOVERNED-WRITEBACK-R005 UNKNOWN — Write-back implementation passes its full durable test suite together
SDK-OBSERVABILITY-FEEDSagent-connector-sdkSPECIFIEDNOT AUDITED 0/1 (0%)
1 open
  • SDK-OBSERVABILITY-FEEDS-R001 UNKNOWN — RUM, security-audit, and CI/CD events join the durable source pipeline
SDK-QUALITY-RELEASEagent-connector-sdkUNKNOWNNOT AUDITED 3/5 (60%)
2 open
  • SDK-QUALITY-RELEASE-R002 UNKNOWN — Public-documentation scanner catches private addresses and hosts
  • SDK-QUALITY-RELEASE-R004 UNKNOWN — Public documentation follows a task-first README and site structure
SDK-REPOSITORY-TRANSPORTagent-connector-sdkUNKNOWNNOT AUDITED 0/5 (0%)
5 open
  • SDK-REPOSITORY-TRANSPORT-R001 BUILDING — Repository transport hydrates code and specification sources from Git
  • SDK-REPOSITORY-TRANSPORT-R002 UNKNOWN — SDK is the sole path for repository-native codebase hydration
  • SDK-REPOSITORY-TRANSPORT-R003 BUILT — Repository ref walk traverses each Git tree once with batched reads
  • SDK-REPOSITORY-TRANSPORT-R004 UNKNOWN — Repository transport submits bounded, outcome-complete index batches
  • SDK-REPOSITORY-TRANSPORT-R005 UNKNOWN — Branch-aware transport batches indexing into one call per batch
SDK-SOURCE-INGESTagent-connector-sdkUNKNOWNNOT AUDITED 1/9 (11%)
8 open
  • SDK-SOURCE-INGEST-R002 UNKNOWN — SDK drift classifier quarantines incompatible schema changes
  • SDK-SOURCE-INGEST-R003 UNKNOWN — SDK records and pauses on proposed schema repairs
  • SDK-SOURCE-INGEST-R004 BUILDING — SDK runner performs enterprise source synchronization
  • SDK-SOURCE-INGEST-R005 SPECIFIED — SDK adapters cover document, conversation, and feed sources
  • SDK-SOURCE-INGEST-R006 SPECIFIED — SDK packs own vendor enrichment extraction and write-back
  • SDK-SOURCE-INGEST-R007 UNKNOWN — Drift gate runs inside the SDK connector-sync runner
  • SDK-SOURCE-INGEST-R008 UNKNOWN — Connectors ingest occurrence and weather observations
  • SDK-SOURCE-INGEST-R009 UNKNOWN — Taxonomy connector ingests NCBI/GBIF taxa as kg:Taxon
TUI-RUNTIME-001agent-terminal-uiSPECIFIEDNOT AUDITED 0/2 (0%)
2 open
  • TUI-RUNTIME-R001 BUILDING — Terminal operation client issues typed commands with pending approvals
  • TUI-RUNTIME-R002 BUILT — Terminal chat transport is reconciled with the current Graph OS boundary
AU-BOUNDARY-001agent-utilitiesSPECIFIEDNOT AUDITED 0/48 (0%)
48 open
  • AU-BOUNDARY-R001 BUILDING — Retire AU's duplicated gateway module
  • AU-BOUNDARY-R002 SPECIFIED — Retire AU's deployment and skill-certification tooling
  • AU-BOUNDARY-R003 BUILDING — Retire AU's legacy MCP host and action manifest
  • AU-BOUNDARY-R004 SPECIFIED — Retire AU's multiplexer family duplicated in graph-os
  • AU-BOUNDARY-R005 UNKNOWN — Migrate connector packages A-E onto the SDK
  • AU-BOUNDARY-R006 UNKNOWN — Migrate connector packages F-J onto the SDK
  • AU-BOUNDARY-R007 UNKNOWN — Migrate connector packages K-O onto the SDK
  • AU-BOUNDARY-R008 UNKNOWN — Migrate connector packages P-S onto the SDK
  • AU-BOUNDARY-R009 UNKNOWN — Migrate connector packages T-Z onto the SDK
  • AU-BOUNDARY-R010 SPECIFIED — Delete AU's SDK-duplicated connector toolkit
  • AU-BOUNDARY-R011 SPECIFIED — Delete AU's source lifecycle and certification code
  • AU-BOUNDARY-R012 BUILT — Delete the second EG projection and leftover shims
  • AU-BOUNDARY-R013 SPECIFIED — Restrict graph-os to AU's public API only
  • AU-BOUNDARY-R014 SPECIFIED — Move graph-os boundary modules out of AU
  • AU-BOUNDARY-R015 SPECIFIED — Move the agent HTTP and A2A/ACP host out of AU
  • AU-BOUNDARY-R016 SPECIFIED — Split AU's monolithic configuration module
  • AU-BOUNDARY-R017 BUILDING — Split messaging behavior and authority across AU, graph-os, and EG
  • AU-BOUNDARY-R018 BUILDING — Replace the AU graph engine facade with the EG client
  • AU-BOUNDARY-R019 SPECIFIED — Replace AU's graph-compute and state facades with the EG client
  • AU-BOUNDARY-R020 BUILDING — Move durable work, queues, and state to EG
  • AU-BOUNDARY-R021 BUILDING — Move graph tenancy, topology, and admission to EG
  • AU-BOUNDARY-R022 BUILDING — Retire AU's reasoning and graph-analytics duplicates
  • AU-BOUNDARY-R023 BUILDING — Split ingestion commit and derivation into EG
  • AU-BOUNDARY-R024 BUILDING — Move enterprise source synchronization to the SDK
  • AU-BOUNDARY-R025 SPECIFIED — Move document, conversation, and feed sources to the SDK
  • AU-BOUNDARY-R026 SPECIFIED — Move vendor enrichment extractors and write-back to the SDK
  • AU-BOUNDARY-R027 BUILT — Move deterministic enrichment and derivation to EG
  • AU-BOUNDARY-R028 SPECIFIED — Move remaining graph standardization and security modules to EG
  • AU-BOUNDARY-R029 BUILDING — Move the ontology object model to EG
  • AU-BOUNDARY-R030 BUILDING — Move hand-written ontology emitters behind EG pack compilation
  • AU-BOUNDARY-R031 SPECIFIED — Replace AU's graph-schema DTOs with EG-generated types
  • AU-BOUNDARY-R032 BUILDING — Delete AU's legacy SPARQL backend and setup path
  • AU-BOUNDARY-R033 SPECIFIED — Move external graph and database federation to EG
  • AU-BOUNDARY-R034 SPECIFIED — Move retrieval engines to EG
  • AU-BOUNDARY-R035 UNKNOWN — Re-home the schema-drift package before it lands
  • AU-BOUNDARY-R036 SPECIFIED — Move the usage fact store to EG
  • AU-BOUNDARY-R037 BUILT — Move development-governance tooling to repository-manager
  • AU-BOUNDARY-R038 SPECIFIED — Add a cross-owner component registry and path guard
  • AU-BOUNDARY-R039 SPECIFIED — Move front ends off AU internals
  • AU-BOUNDARY-R040 SPECIFIED — Move agent memory and the learning engine to EG
  • AU-BOUNDARY-R041 UNKNOWN — Finance modules that produced fabricated data are removed
  • AU-BOUNDARY-R042 SPECIFIED — Every package directory has one recorded disposition
  • AU-BOUNDARY-R043 SPECIFIED — Retained agent surface is declared and import-bounded
  • AU-BOUNDARY-R044 SPECIFIED — Fleet, scaling and deployment modules leave orchestration
  • AU-BOUNDARY-R045 SPECIFIED — Unplaced knowledge-graph packages receive file-level owners
  • AU-BOUNDARY-R046 SPECIFIED — Partly covered packages list every file with its owner
  • AU-BOUNDARY-R047 SPECIFIED — Engine-facing adapters and caches are thin clients or removed
  • AU-BOUNDARY-R048 SPECIFIED — Domain models, shapes, assets and skill content are placed
AU-CONTEXT-001agent-utilitiesSPECIFIEDNOT AUDITED 0/8 (0%)
8 open
  • AU-CONTEXT-R001 UNKNOWN — RetrievalPath templates feed EG-DECISION-ENGINE-R029 as candidates
  • AU-CONTEXT-R002 UNKNOWN — Corpus re-embedding uses a governed shadow ANN swap
  • AU-CONTEXT-R003 UNKNOWN — Embedding admission changes come from reviewed proposals only
  • AU-CONTEXT-R004 UNKNOWN — Context sizing solves a certified multi-resolution knapsack
  • AU-CONTEXT-R005 BUILT — Finance scheduling and a sourced flip-explainer agent
  • AU-CONTEXT-R006 BUILT — Paper trading is isolated; live orders need governed approval
  • AU-CONTEXT-R007 BUILT — Finance math and feeds move out of agent-utilities
  • AU-CONTEXT-R008 SPECIFIED — Finance recommendations are calibrated, cited, and informational
AU-CONTROL-001agent-utilitiesSPECIFIEDNOT AUDITED 0/23 (0%)
23 open
  • AU-CONTROL-R001 BUILDING — Layered agent execution stack from task mapping to harness run
  • AU-CONTROL-R002 UNKNOWN — Component routing through one committed graph-engine decision
  • AU-CONTROL-R003 UNKNOWN — Agent graph composition via epistemic-graph assembly, not an LLM
  • AU-CONTROL-R004 UNKNOWN — Abstention escalations re-enter as labelled claims, not proofs
  • AU-CONTROL-R005 UNKNOWN — Advisory pre-tool risk scoring
  • AU-CONTROL-R006 UNKNOWN — Cost-aware routing informed by usage accounting
  • AU-CONTROL-R007 BUILT — Swarm topology selection routed through Decide
  • AU-CONTROL-R008 UNKNOWN — Free-text task mapping accepted only as a labelled claim
  • AU-CONTROL-R009 UNKNOWN — Swarm topology ontology and schema publication
  • AU-CONTROL-R010 UNKNOWN — Reference swarm topology templates
  • AU-CONTROL-R011 UNKNOWN — Consume the generated topology contract via a pinned dependency
  • AU-CONTROL-R012 UNKNOWN — Agent-graph templates validated against topology shape at publish
  • AU-CONTROL-R013 UNKNOWN — Topology options filtered by admissibility derivation
  • AU-CONTROL-R014 UNKNOWN — No local topology solver, defer to the validated graph-engine model
  • AU-CONTROL-R015 UNKNOWN — Topology consumer asks the graph engine, not a local success store
  • AU-CONTROL-R016 UNKNOWN — Topology decisions respect capacity headroom at request priority
  • AU-CONTROL-R017 UNKNOWN — Single re-decision on capacity denial for topology admission
  • AU-CONTROL-R018 UNKNOWN — Subagent allowance negotiated into the run specification
  • AU-CONTROL-R019 UNKNOWN — Swarm continuation restricted to narrow-only decisions
  • AU-CONTROL-R020 UNKNOWN — Learned topology routing term with a benchmark gold set
  • AU-CONTROL-R021 UNKNOWN — Harness and sandbox access via direct typed ports, not a registrar
  • AU-CONTROL-R022 UNKNOWN — Model selection routed through the committed decision, not ad hoc
  • AU-CONTROL-R023 UNKNOWN — Catalog entries attributed to their originating server
AU-DEV-001agent-utilitiesSPECIFIEDNOT AUDITED 0/3 (0%)
3 open
  • AU-DEV-R001 UNKNOWN — A development skill documents AU's contribution workflow
  • AU-DEV-R002 UNKNOWN — Deployment and genesis tooling move to graph-os
  • AU-DEV-R003 UNKNOWN — Skill inventory refresh stays deterministic after moves
AU-FREEZE-001agent-utilitiesSPECIFIEDNOT AUDITED 0/2 (0%)
2 open
  • AU-FREEZE-R001 SPECIFIED — Canonical AU release-evidence freeze manifest
  • AU-FREEZE-R002 UNKNOWN — Quarantine unresolved scanner findings from the freeze
AU-HARNESS-001agent-utilitiesSPECIFIEDNOT AUDITED 0/6 (0%)
6 open
  • AU-HARNESS-R001 UNKNOWN — Capability-gated capture of policy trajectories
  • AU-HARNESS-R002 UNKNOWN — External training path supports an optional KLPO method
  • AU-HARNESS-R003 UNKNOWN — Graph-driven work market on Gap and WorkItem contracts
  • AU-HARNESS-R004 UNKNOWN — AU proposes corrections through the graph, never writes Git directly
  • AU-HARNESS-R005 SPECIFIED — Defer generative model work pending evidence-backed need
  • AU-HARNESS-R006 UNKNOWN — Statistical scoring head ranks work-market offers
AU-INTEGRATION-001agent-utilitiesSPECIFIEDNOT AUDITED 7/18 (38%)
11 open
  • AU-INTEGRATION-R001 UNKNOWN — Clustered mode deliberately refuses local-only agent writes
  • AU-INTEGRATION-R002 UNKNOWN — Control graph auto-creation and messaging intake propagation
  • AU-INTEGRATION-R003 UNKNOWN — Reconcile previously tracked fixes against current main
  • AU-INTEGRATION-R007 UNKNOWN — Gold-set generation is synthetic, not manually labelled
  • AU-INTEGRATION-R010 UNKNOWN — Kafka enqueue-only-proof contract runs and passes honestly
  • AU-INTEGRATION-R011 SPECIFIED — Prove disposability before pruning a branch checkout
  • AU-INTEGRATION-R012 UNKNOWN — External-graph contract check follows relocated docs
  • AU-INTEGRATION-R013 UNKNOWN — Privacy gate accepts canonical automation author identities
  • AU-INTEGRATION-R014 SPECIFIED — Benchmark query-serving improvements against the existing path
  • AU-INTEGRATION-R015 BUILT — Remove the unused legacy ontology publisher surface
  • AU-INTEGRATION-R018 UNKNOWN — Public docs site passes the full documentation gate suite
AU-QUAL-01agent-utilitiesSPECIFIEDNOT AUDITED 0/7 (0%)
7 open
  • AU-QUAL-R001 UNKNOWN — Liveness deferrals fail visibly when they expire
  • AU-QUAL-R002 BUILT — Tiny-profile RBAC and bootstrap-isolation tests cover real code
  • AU-QUAL-R003 UNKNOWN — Connector validation uses EG's composed GraphSchema
  • AU-QUAL-R004 UNKNOWN — Named AU test failures are fixed, not skipped
  • AU-QUAL-R005 SPECIFIED — Test files are included in mypy with real fixes
  • AU-QUAL-R006 SPECIFIED — A privacy check covers the final tree and commit history
  • AU-QUAL-R007 UNKNOWN — Liveness placeholder detector ignores documentation prose
AU-RETIRE-001agent-utilitiesSPECIFIEDNOT AUDITED 0/8 (0%)
8 open
  • AU-RETIRE-R001 SPECIFIED — Complete inventory and retirement of duplicate graph engine code
  • AU-RETIRE-R002 UNKNOWN — Enrichment edges carry a provenance rung and confidence
  • AU-RETIRE-R003 UNKNOWN — OBO ontology terms ingest as typed ReferenceTerm individuals
  • AU-RETIRE-R004 UNKNOWN — Fix doubled node_type text in embedding composition
  • AU-RETIRE-R005 UNKNOWN — Per-stage timing instrumentation across the full ingest path
  • AU-RETIRE-R006 UNKNOWN — Delta ingest reaps nodes for deleted files
  • AU-RETIRE-R007 BUILT — Deterministic embedding admission classifier at the ingest chokepoint
  • AU-RETIRE-R008 UNKNOWN — Sequence ingestion-economics work ahead of file relocation
AU-RETRIEVAL-001agent-utilitiesSPECIFIEDNOT AUDITED 0/1 (0%)
1 open
  • AU-RETRIEVAL-R001 BUILDING — Benchmark structure-aware retrieval against served hybrid search
AU-SEC-01agent-utilitiesSPECIFIEDNOT AUDITED 0/9 (0%)
9 open
  • AU-SEC-R001 UNKNOWN — Tiny profile grants scoped authority, not blanket admin
  • AU-SEC-R002 BUILT — Control view failure never falls back to the content graph
  • AU-SEC-R003 UNKNOWN — Caches subscribe to invalidation with volatility-bounded TTL
  • AU-SEC-R004 UNKNOWN — AU treats schema drift as a fail-closed typed result
  • AU-SEC-R005 UNKNOWN — AU proposes schema-repair mappings; EG alone activates them
  • AU-SEC-R006 BUILT — Elevation can be requested, approved, and revoked
  • AU-SEC-R007 BUILT — Guardrail tightening is automatic; loosening needs approval
  • AU-SEC-R008 UNKNOWN — AU allowlist is generated from the canonical scope registry
  • AU-SEC-R009 UNKNOWN — Learned scores never grant security authority
AU-SEMANTIC-001agent-utilitiesSPECIFIEDNOT AUDITED 0/28 (0%)
28 open
  • AU-SEMANTIC-R001 UNKNOWN — OntologyLifecycle.set_active() fails closed, not a silent local fallback
  • AU-SEMANTIC-R002 UNKNOWN — AU verifies domain-pack class names against EG's schema-class list
  • AU-SEMANTIC-R003 UNKNOWN — AU's knowledge_graph shape files are published to the EG pack or removed
  • AU-SEMANTIC-R004 UNKNOWN — AU's remaining SHACL shape files move into EG-owned schema packs
  • AU-SEMANTIC-R005 BUILT — Ontology lifecycle, integrity and schema parsing become EG client calls
  • AU-SEMANTIC-R006 UNKNOWN — AU removes rdflib and submits typed payloads to EG instead
  • AU-SEMANTIC-R007 UNKNOWN — AU tests drop pyshacl and assert through EG shape validation
  • AU-SEMANTIC-R008 BUILT — Reasoning-topology selection uses a served policy, not a local outcome store
  • AU-SEMANTIC-R009 BUILDING — The local engine facade is deleted in favor of the generated EG client
  • AU-SEMANTIC-R010 SPECIFIED — Graph-compute and session facades route through the generated EG client
  • AU-SEMANTIC-R011 BUILDING — Durable jobs, queues and state move to EG
  • AU-SEMANTIC-R012 BUILDING — Tenancy, topology and admission authority move to EG
  • AU-SEMANTIC-R013 BUILDING — Reasoning and analytics duplicates are deleted only with proven EG parity
  • AU-SEMANTIC-R014 BUILDING — Ingestion commit and derivation logic moves to EG's SourceIngest
  • AU-SEMANTIC-R015 BUILDING — Enterprise source sync becomes an SDK runner over EG SourceIngest
  • AU-SEMANTIC-R016 SPECIFIED — Document, session and feed source ingestion moves to the SDK
  • AU-SEMANTIC-R017 SPECIFIED — Vendor enrichment extraction and writeback move to the SDK and EG
  • AU-SEMANTIC-R018 BUILT — Deterministic derivation modules move to EG
  • AU-SEMANTIC-R019 SPECIFIED — Remaining EG-bound standardization, infra and governance modules move out
  • AU-SEMANTIC-R020 BUILDING — The ontology object model moves to EG
  • AU-SEMANTIC-R021 BUILDING — AU's hand-written RDF/OWL/SHACL emitters move behind EG pack compilation
  • AU-SEMANTIC-R022 SPECIFIED — Graph-schema DTOs become EG-generated types
  • AU-SEMANTIC-R023 BUILDING — Legacy SPARQL backend and setup modules are deleted
  • AU-SEMANTIC-R024 SPECIFIED — External graph and database backends move into EG as federation sources
  • AU-SEMANTIC-R025 SPECIFIED — Retrieval and neural-search engines move to EG
  • AU-SEMANTIC-R026 UNKNOWN — The schema-drift package is re-homed before it lands
  • AU-SEMANTIC-R027 UNKNOWN — Capability-gap checks must search the target system's own vocabulary
  • AU-SEMANTIC-R028 UNKNOWN — Configured embedding dimension must match the deployed model's output size
FIN-UI-001agent-webuiSPECIFIEDNOT AUDITED 0/16 (0%)
16 open
  • FIN-UI-R001 SPECIFIED — Mobile-first Markets app with five-destination navigation
  • FIN-UI-R002 SPECIFIED — Shared ChartRenderer for line, candle, and overlay data
  • FUI-01 SPECIFIED — Responsive five-destination navigation
  • FUI-02 SPECIFIED — Instrument groups with distinct data states
  • FUI-03 SPECIFIED — Search resolves by stable identity, not ticker text
  • FUI-04 SPECIFIED — Instrument rows show price, provenance, after-hours value
  • FUI-05 SPECIFIED — Detail tabs and range controls expose only supported data
  • FUI-06 SPECIFIED — Shared ChartRenderer preserves gaps and revisions
  • FUI-07 SPECIFIED — Chart overlays show strategy version and simulation state
  • FUI-08 SPECIFIED — Performance cards render owner-calculated values verbatim
  • FUI-09 SPECIFIED — Strategy views cite evidence and never submit orders
  • FUI-10 SPECIFIED — DCA and alert views distinguish delivery states
  • FUI-11 SPECIFIED — CSV import preview with idempotent receipt
  • FUI-12 SPECIFIED — Offline PWA shell marks cached data stale
  • FUI-13 SPECIFIED — Charts and controls meet accessibility requirements
  • FIN-UI-R003 UNKNOWN — GraphOS Markets app with scanner, search, and layered chart
WEBUI-API-001agent-webuiSPECIFIEDNOT AUDITED 0/9 (0%)
9 open
  • WEBUI-API-R001 BUILDING — Generated GraphOS API client with typed decisions and confirmation flows
  • WEBUI-API-R002 BUILDING — Typed ontology, graph, Atlas and object-set operations replace host routes
  • WEBUI-API-R003 BUILDING — Remaining domain routes migrate to generated operations with a route census
  • APIUI-01 SPECIFIED — Generated TypeScript client from a pinned Graph OS schema
  • APIUI-02 SPECIFIED — Typed operations preserve preview-confirm-step-up for effects
  • APIUI-03 SPECIFIED — Ontology, graph, Atlas and object-set operations preserve tenant semantics
  • APIUI-04 SPECIFIED — Prompts, SDD, knowledge base, sessions and goals migrate to typed calls
  • APIUI-05 SPECIFIED — Host drops direct internal imports once replacement operations are proven
  • APIUI-06 SPECIFIED — Shared auth and streaming are preserved without exposing a service bearer
WEBUI-APPS-001agent-webuiSPECIFIEDNOT AUDITED 0/10 (0%)
10 open
  • APP-01 SPECIFIED — Browser identity consistently reads GraphOS across titles and assets
  • APP-02 SPECIFIED — Package, import and environment naming use the new public identity
  • APP-03 SPECIFIED — AppSurface contract declares each app's route, capability and client
  • APP-04 SPECIFIED — Contributed app descriptors cannot escalate privilege beyond the contract
  • APP-05 SPECIFIED — Markets consumes the AppSurface contract without shell-side duplication
  • APP-06 SPECIFIED — Legacy browser state migrates safely with renewed consent
  • APP-07 SPECIFIED — App navigation supports accessibility and layout states across devices
  • WEBUI-APPS-R001 UNKNOWN — Apps information-architecture section and AppSurface contract
  • WEBUI-APPS-R002 BUILT — GraphOS brand layer covers titles, assets, theme and documentation
  • WEBUI-APPS-R003 BUILT — Repository, package and runtime identifiers rename to graph-os-webui
WEBUI-DECIDE-001agent-webuiSPECIFIEDNOT AUDITED 0/8 (0%)
8 open
  • WEBUI-DECIDE-R001 BUILDING — Evaluation dashboard shows calibration and coverage
  • DEC-01 SPECIFIED — Decision explorer cites premises, derivations and certificate
  • DEC-02 SPECIFIED — Why-not explanations run on demand within a bounded budget
  • DEC-03 SPECIFIED — Dashboard labels each evaluation field independently
  • DEC-04 SPECIFIED — No coverage claim shown for inadequate evaluation data
  • DEC-05 SPECIFIED — Tenant or purpose change invalidates cached decision queries
  • DEC-06 SPECIFIED — Explanation views work without color, hover or pointer
  • WEBUI-DECIDE-R002 BUILT — Decision explorer surfaces premises, derivations and violations
WEBUI-DESIGN-001agent-webuiSPECIFIEDNOT AUDITED 0/7 (0%)
7 open
  • WEBUI-DESIGN-R001 BUILDING — Design guidance distilled into component system and skills
  • DS-01 SPECIFIED — Design tokens documented with contrast targets
  • DS-02 SPECIFIED — Controls have accessible names and visible focus
  • DS-03 SPECIFIED — Responsive layout covers 320px mobile through desktop
  • DS-04 SPECIFIED — Gesture actions have alternatives and respect reduced motion
  • DS-05 SPECIFIED — Status states are distinguishable by text, not only color
  • DS-06 SPECIFIED — No duplicate primitives or unsolicited telemetry introduced
WEBUI-IDENTITY-001agent-webuiSPECIFIEDNOT AUDITED 0/9 (0%)
9 open
  • IDUI-01 SPECIFIED — Identity mode wizard shows the active auth mode with no hidden bypass
  • IDUI-02 SPECIFIED — Local account flows use server sessions with no stored credentials
  • IDUI-03 SPECIFIED — MFA enrollment and recovery cover TOTP and WebAuthn
  • IDUI-04 SPECIFIED — Identity admin tabs cover users, roles, groups and mapping dry run
  • IDUI-05 SPECIFIED — Elevation requests display scope, expiry and a bound receipt
  • IDUI-06 SPECIFIED — Identity or tenant change invalidates cached protected data
  • IDUI-07 SPECIFIED — Identity forms and confirmations are accessible on desktop and mobile
  • WEBUI-IDENTITY-R001 UNKNOWN — Release-qualification identity test client supports a live sign-in probe
  • WEBUI-IDENTITY-R002 BUILT — Admin UI surfaces identity operations for users, roles and navigation
EMERALD-GUIDE-001emerald-exchangeSPECIFIEDNOT AUDITED 0/1 (0%)
1 open
  • EMERALD-GUIDE-R001 SPECIFIED — Leveraged trading guide across docs, skill, and explainer
EMERALD-MEDIA-001emerald-exchangeSPECIFIEDNOT AUDITED 0/1 (0%)
1 open
  • EMERALD-MEDIA-R001 SPECIFIED — Finance media intake into reviewable Emerald skills
EG-CONTRACT-001epistemic-graphSPECIFIEDNOT AUDITED 19/46 (41%)
27 open
  • EG-CONTRACT-R002 UNKNOWN — Served Agent Library test coverage for pack import and Decide
  • EG-CONTRACT-R003 UNKNOWN — Privacy scan covers the relocated graph-backends documentation
  • EG-CONTRACT-R005 UNKNOWN — One generated model per wire shape, with typed SPARQL decode
  • EG-CONTRACT-R006 UNKNOWN — Deterministic, size-budgeted WASM codec artifact
  • EG-CONTRACT-R007 UNKNOWN — Dispatch decomposition test is current and runs in CI
  • EG-CONTRACT-R008 UNKNOWN — Repo-parity check validates the resolved checkout
  • EG-CONTRACT-R009 UNKNOWN — Release workflow runs the full root Python test suite
  • EG-CONTRACT-R010 BUILT — Complexity gate scores exhaustive matches by arm body, not count
  • EG-CONTRACT-R011 UNKNOWN — Parallel fan-out for the land gate across build hosts
  • EG-CONTRACT-R012 UNKNOWN — Complexity scanner resolves modules declared in inline mod blocks
  • EG-CONTRACT-R013 UNKNOWN — KISS config keys migrated to avoid a silently dropped section
  • EG-CONTRACT-R014 SPECIFIED — Generated error catalog with stable auth-mismatch codes
  • EG-CONTRACT-R015 BUILDING — Wheel ships the method, error and scope contract with callability flags
  • EG-CONTRACT-R016 UNKNOWN — Consumer-profile allowlist covers all generated PolicyEvolution senders
  • EG-CONTRACT-R017 BUILT — Dispatch census pins cover the current compiler-declared modules
  • EG-CONTRACT-R018 UNKNOWN — Release feature matrix includes the motif Cargo feature
  • EG-CONTRACT-R019 BUILT — Dispatch reachability gate follows the current FOREIGN paths
  • EG-CONTRACT-R020 UNKNOWN — Topology test names avoid version-number suffixes
  • EG-CONTRACT-R021 BUILT — Failed-connect test checks its own teardown, not process counts
  • EG-CONTRACT-R022 SPECIFIED — Zero new duplicate-code pairs across the combined source tree
  • EG-CONTRACT-R023 SPECIFIED — Pre-commit hooks pass clean without bypass flags
  • EG-CONTRACT-R024 UNKNOWN — Pre-commit and codespell configuration finalized and locked
  • EG-CONTRACT-R028 SPECIFIED — SQLite-format and speech-recognition differential tests run in CI
  • EG-CONTRACT-R034 UNKNOWN — Complexity test derives its residual from the dispatch arm count
  • EG-CONTRACT-R035 SPECIFIED — Release workflow executes end to end with all declared targets
  • EG-CONTRACT-R037 SPECIFIED — Clippy is warning-free across every release profile
  • EG-CONTRACT-R043 UNKNOWN — Test fixtures carry no credential-shaped literals
merged_head
EG-DECISION-ENGINEepistemic-graphSPECIFIEDNOT AUDITED 51/125 (40%)
74 open
  • EG-DECISION-ENGINE-R001 UNKNOWN — Typed decision ladder with explicit resolution kinds
  • EG-DECISION-ENGINE-R009 UNKNOWN — Learned ranking stays monotone with respect to safety
  • EG-DECISION-ENGINE-R010 UNKNOWN — Typed abstention reason for unmet capability
  • EG-DECISION-ENGINE-R015 UNKNOWN — No generative model weights inside the decision engine
  • EG-DECISION-ENGINE-R017 UNKNOWN — Single write authority per durable decision state kind
  • EG-DECISION-ENGINE-R018 UNKNOWN — Unknown facts never default to zero in the solver
  • EG-DECISION-ENGINE-R019 UNKNOWN — Decision commit re-derives and verifies before writing
  • EG-DECISION-ENGINE-R029 UNKNOWN — Decision-based retrieval-plan selection
  • EG-DECISION-ENGINE-R030 UNKNOWN — Decision-based ingestion path routing
  • EG-DECISION-ENGINE-R031 UNKNOWN — Expected-value scheduling for enrichment work
  • EG-DECISION-ENGINE-R034 UNKNOWN — Proposal-only contradiction-handling suggestions
  • EG-DECISION-ENGINE-R035 UNKNOWN — Decision-based routing for execution configuration
  • EG-DECISION-ENGINE-R036 UNKNOWN — graph.assemble() as the authority for agent composition
  • EG-DECISION-ENGINE-R037 UNKNOWN — Escalated abstentions re-enter as claims
  • EG-DECISION-ENGINE-R038 UNKNOWN — Advisory pre-tool risk scoring
  • EG-DECISION-ENGINE-R039 UNKNOWN — Cost-aware routing using accounting data
  • EG-DECISION-ENGINE-R041 UNKNOWN — Connector event triage through Decide
  • EG-DECISION-ENGINE-R042 UNKNOWN — Connector tool-choice advisory via Decide
  • EG-DECISION-ENGINE-R043 UNKNOWN — Write-back proposals routed through Decide
  • EG-DECISION-ENGINE-R044 UNKNOWN — A2A task routing through the decision ladder
  • EG-DECISION-ENGINE-R045 UNKNOWN — Smallest covering tool subset within a context budget
  • EG-DECISION-ENGINE-R046 UNKNOWN — Swarm topology decisions via the decision ladder
  • EG-DECISION-ENGINE-R047 UNKNOWN — DecisionRecord v1 contract: types and methods
  • EG-DECISION-ENGINE-R049 UNKNOWN — Exact 0-1 solver with certificate and verifier
  • EG-DECISION-ENGINE-R056 UNKNOWN — Statistical-path release of the exact solver
  • EG-DECISION-ENGINE-R058 UNKNOWN — Graph-sourced decision records with RLS-routed reads
  • EG-DECISION-ENGINE-R059 UNKNOWN — Outcome aggregate with independent-evaluation join
  • EG-DECISION-ENGINE-R061 UNKNOWN — Assembly facts extended for the statistical path
  • EG-DECISION-ENGINE-R062 UNKNOWN — NlTemplate selection without a language model
  • EG-DECISION-ENGINE-R064 UNKNOWN — Optional read views of decision records
  • EG-DECISION-ENGINE-R074 UNKNOWN — Agent-slot component-kind closure rule kept current
  • EG-DECISION-ENGINE-R075 UNKNOWN — Component-id uniqueness and forbidden decision kinds
  • EG-DECISION-ENGINE-R076 UNKNOWN — Opt-in nested models for decision result markers
  • EG-DECISION-ENGINE-R078 UNKNOWN — Contract freeze reissued with the decide feature
  • EG-DECISION-ENGINE-R079 UNKNOWN — Per-unit embedding admission classifier for ingestion
  • EG-DECISION-ENGINE-R080 UNKNOWN — Ingestion cost ladder with provenance rungs
  • EG-DECISION-ENGINE-R081 UNKNOWN — Confidence-weighted community detection excluding similarity edges
  • EG-DECISION-ENGINE-R082 UNKNOWN — Single-pass option-marker scoring head for Decide
  • EG-DECISION-ENGINE-R083 UNKNOWN — Options encode structured facts, not option-label text
  • EG-DECISION-ENGINE-R084 UNKNOWN — Conformal calibration as primary rung over temperature scaling
  • EG-DECISION-ENGINE-R085 UNKNOWN — Legal option sets are derived from the ontology, never received as-is
  • EG-DECISION-ENGINE-R086 UNKNOWN — DecisionFit promotion protocol reports nine metrics
  • EG-DECISION-ENGINE-R087 UNKNOWN — Scorer always receives a bounded shortlist, never a full catalog
  • EG-DECISION-ENGINE-R088 UNKNOWN — Belief-as-of-t exposed as a Decide primitive over prefixes
  • EG-DECISION-ENGINE-R089 UNKNOWN — Learned ranking never replaces the constraint-first decision ladder
  • EG-DECISION-ENGINE-R090 UNKNOWN — Resident native decision-scorer head in eg-decision
  • EG-DECISION-ENGINE-R091 UNKNOWN — Resident scorer is bit-reproducible via fixed-point arithmetic
  • EG-DECISION-ENGINE-R092 UNKNOWN — Scorer selection and structured encoding apply ladder-wide
  • EG-DECISION-ENGINE-R093 UNKNOWN — Resident scorer is trained from the served synthetic-episode generator
  • EG-DECISION-ENGINE-R094 UNKNOWN — Decision scoring requires no GPU or model-server dependency
  • EG-DECISION-ENGINE-R098 SPECIFIED — Decide ladder excludes generative free-text models by design
  • EG-DECISION-ENGINE-R100 UNKNOWN — Retrieval decisions join cited evidence with independent outcomes
  • EG-DECISION-ENGINE-R101 UNKNOWN — Query-side embedding adapter head promoted via DecisionEval
  • EG-DECISION-ENGINE-R102 UNKNOWN — Schema repair proposals pass a decided mapping and shadow-branch check
  • EG-DECISION-ENGINE-R103 UNKNOWN — Calibrated per-horizon flip confidence with conformal abstention
  • EG-DECISION-ENGINE-R104 UNKNOWN — DecideText shares the UQL lexer and grammar family
  • EG-DECISION-ENGINE-R105 UNKNOWN — GraphSchema.attach publishes the swarm-topology ontology
  • EG-DECISION-ENGINE-R106 UNKNOWN — AgentGraph templates carry topology facts for standard shapes
  • EG-DECISION-ENGINE-R107 UNKNOWN — Typed topology contract in eg-types with versioned goldens
  • EG-DECISION-ENGINE-R108 UNKNOWN — Publish-time topology-shape validation fails closed
  • EG-DECISION-ENGINE-R109 UNKNOWN — OWL entailment derives topology admissibility before assembly
  • EG-DECISION-ENGINE-R110 UNKNOWN — Topology optimization model rows with a brute-force oracle
  • EG-DECISION-ENGINE-R111 UNKNOWN — Decide exposes the topology decision as a single typed question
  • EG-DECISION-ENGINE-R112 UNKNOWN — Capacity premise derives headroom observations by priority
  • EG-DECISION-ENGINE-R113 UNKNOWN — EG commits capacity acquisition atomically with synthesis evidence
  • EG-DECISION-ENGINE-R114 UNKNOWN — Subagent allowance negotiation reads EG's topology facts
  • EG-DECISION-ENGINE-R115 UNKNOWN — Continuation decisions are evaluate-only and narrow-only
  • EG-DECISION-ENGINE-R116 BUILDING — Consumers reach EG only through the versioned client contract
  • EG-DECISION-ENGINE-R117 BUILDING — DERIVE series functions share one incremental kernel
  • EG-DECISION-ENGINE-R118 BUILDING — Reputation view backs source reliability across all readers
  • EG-DECISION-ENGINE-R119 SPECIFIED — Walk-forward replay seals deflated Sharpe and PBO evidence
  • EG-DECISION-ENGINE-R120 BUILT — Admission anchors are limited to persisted write paths
  • EG-DECISION-ENGINE-R122 UNKNOWN — Synthetic decision data stays separate from calibration
  • EG-DECISION-ENGINE-R125 UNKNOWN — Telemetry binds to ontology entities as BehaviourObservation
EG-DURABLE-KERNELepistemic-graphSPECIFIEDNOT AUDITED 29/69 (42%)
40 open
  • EG-DURABLE-KERNEL-R005 UNKNOWN — Outbox delivery state remains local to the owning node
  • EG-DURABLE-KERNEL-R006 UNKNOWN — Engine startup does not block on one store's lazy open
  • EG-DURABLE-KERNEL-R007 UNKNOWN — Host binary exposes a storage inspect and upgrade command
  • EG-DURABLE-KERNEL-R011 SPECIFIED — Clippy and targeted tests cover the full and all-features builds
  • EG-DURABLE-KERNEL-R014 UNKNOWN — Raft cluster tests pass reliably under load
  • EG-DURABLE-KERNEL-R015 UNKNOWN — Raft heartbeat flush and batch dispatch avoid head-of-line blocking
  • EG-DURABLE-KERNEL-R017 UNKNOWN — Correctness-gated benchmark compares EG against HelixDB
  • EG-DURABLE-KERNEL-R020 BUILT — Bounded background scrub detects node corruption between restarts
  • EG-DURABLE-KERNEL-R021 BUILT — Store-authority binding validates once per write transaction
  • EG-DURABLE-KERNEL-R022 UNKNOWN — Just-in-time RBAC elevation requires two-person approval
  • EG-DURABLE-KERNEL-R023 UNKNOWN — UQL enforces a read-only guarantee at compile time and by test
  • EG-DURABLE-KERNEL-R024 BUILDING — External graph and database backends become EG federation sources
  • EG-DURABLE-KERNEL-R025 UNKNOWN — Raft admin follows the current leader and traces are leader-agnostic
  • EG-DURABLE-KERNEL-R026 SPECIFIED — Auth modes share one principal and RBAC evaluation path
  • EG-DURABLE-KERNEL-R027 UNKNOWN — Schema repair uses a reserved two-person approval lease
  • EG-DURABLE-KERNEL-R028 BUILT — WorkItem lifecycle test uses a consistent verified tenant
  • EG-DURABLE-KERNEL-R029 BUILT — Universal read-RLS gate checks the current TsScan dispatch path
  • EG-DURABLE-KERNEL-R030 BUILT — Reserved RBAC elevation lease kind cannot be issued generically
  • EG-DURABLE-KERNEL-R031 BUILDING — Audit append supports tenant-scoped idempotent reservation
  • EG-DURABLE-KERNEL-R032 SPECIFIED — Native primary-key fast path bypasses the SQL planner
  • EG-DURABLE-KERNEL-R033 SPECIFIED — Hot-store engine choice is evaluated against captured workloads
  • EG-DURABLE-KERNEL-R034 SPECIFIED — Cross-store atomicity is proven and scoped to mixed transactions
  • EG-DURABLE-KERNEL-R035 SPECIFIED — PostgreSQL wire protocol reaches operational and dump/restore parity
  • EG-DURABLE-KERNEL-R036 SPECIFIED — Mirror sinks reach fan-out parity and include Postgres table mirroring
  • EG-DURABLE-KERNEL-R037 SPECIFIED — Workload classifier routes point operations around the SQL planner
  • EG-DURABLE-KERNEL-R038 SPECIFIED — KV namespaces declare an explicit, enforced durability class
  • EG-DURABLE-KERNEL-R039 SPECIFIED — In-memory data structures rebuild from the redb durability log
  • EG-DURABLE-KERNEL-R040 SPECIFIED — Pipelined requests commit as a single batch
  • EG-DURABLE-KERNEL-R041 SPECIFIED — SQL plan cache keyed by statement digest and schema version
  • EG-DURABLE-KERNEL-R042 SPECIFIED — Benchmark gate defines and proves performance superiority claims
  • EG-DURABLE-KERNEL-R045 UNKNOWN — A single owner-manifest lineage check governs format upgrades
  • EG-DURABLE-KERNEL-R052 UNKNOWN — Outbox delivery is organized by semantic class topics
  • EG-DURABLE-KERNEL-R057 UNKNOWN — Sealed record classes are protected by a create-only write guard
  • EG-DURABLE-KERNEL-R058 UNKNOWN — Source-batch publication waiter cancellation is deterministic
  • EG-DURABLE-KERNEL-R060 UNKNOWN — Unsupported legacy graph-data layouts are not silently migrated
  • EG-DURABLE-KERNEL-R061 UNKNOWN — Test threading avoids unbounded channels and dead-time joins
  • EG-DURABLE-KERNEL-R063 UNKNOWN — Version-2 control-state rows are lifted losslessly on read
  • EG-DURABLE-KERNEL-R064 UNKNOWN — Compiled shape memoization is benchmarked against parsing per write
  • EG-DURABLE-KERNEL-R068 UNKNOWN — Channel-group leave returns its own result, not a replayed join result
  • EG-DURABLE-KERNEL-R069 UNKNOWN — Scrub cursor fixture reliably tests the no-key encryption state
EG-FEDERATED-QUERYepistemic-graphSPECIFIEDNOT AUDITED 8/71 (11%)
63 open
  • EG-FEDERATED-QUERY-R002 UNKNOWN — Rejection reasons stay out of the core kernel row schema
  • EG-FEDERATED-QUERY-R003 UNKNOWN — Derivation-step budget is enforced once, not duplicated per path
  • EG-FEDERATED-QUERY-R004 UNKNOWN — Reasoning projection rebuilds after any skipped event
  • EG-FEDERATED-QUERY-R006 UNKNOWN — Proof-carrying results for SPARQL and rule-derived queries
  • EG-FEDERATED-QUERY-R008 UNKNOWN — Edge-native text and vector search with stable identity
  • EG-FEDERATED-QUERY-R009 UNKNOWN — Durable user-managed graph-index lifecycle
  • EG-FEDERATED-QUERY-R012 UNKNOWN — Tableau honors AllDisjointClasses and core disjointness facts
  • EG-FEDERATED-QUERY-R013 BUILT — Foreign-source resolution is scoped to the owning principal
  • EG-FEDERATED-QUERY-R016 SPECIFIED — UQL AS OF uses Unix-second timestamps, not ISO dates
  • EG-FEDERATED-QUERY-R017 UNKNOWN — Dependency tracking covers edge-type and embedding generations
  • EG-FEDERATED-QUERY-R018 UNKNOWN — Class-level volatility drives invalidation and cache freshness
  • EG-FEDERATED-QUERY-R019 UNKNOWN — Per-bar signal-state advancement with revisable trend records
  • EG-FEDERATED-QUERY-R020 UNKNOWN — One query-text method surface, with the legacy method retired
  • EG-FEDERATED-QUERY-R021 UNKNOWN — Full UQL predicate algebra with SQL-consistent evaluation
  • EG-FEDERATED-QUERY-R022 UNKNOWN — UQL source clauses are first-class, with typed empty-result cases
  • EG-FEDERATED-QUERY-R023 UNKNOWN — Every query modality has a published UQL spelling
  • EG-FEDERATED-QUERY-R024 UNKNOWN — Traversal syntax compiles to one canonical Expand encoding
  • EG-FEDERATED-QUERY-R025 UNKNOWN — Typed parameter binding end-to-end through the Python client
  • EG-FEDERATED-QUERY-R026 UNKNOWN — UQL documentation is test-verified with an embedded grammar
  • EG-FEDERATED-QUERY-R027 UNKNOWN — EXPLAIN, PROFILE and RETURN support multi-stage UQL programs
  • EG-FEDERATED-QUERY-R028 UNKNOWN — KnowledgeSet is reachable from UQL
  • EG-FEDERATED-QUERY-R029 UNKNOWN — UQL text from graph-exploration clients matches the grammar
  • EG-FEDERATED-QUERY-R030 UNKNOWN — TSSCAN preserves per-series row identity and full precision
  • EG-FEDERATED-QUERY-R031 UNKNOWN — Contribution attribution kernels exposed through UQL ATTRIBUTE
  • EG-FEDERATED-QUERY-R032 UNKNOWN — Probabilistic impact propagation with cone-scoped recomputation
  • EG-FEDERATED-QUERY-R033 UNKNOWN — Barrier-hit and time-to-exhaustion derivations, one shared CDF
  • EG-FEDERATED-QUERY-R034 UNKNOWN — Motif and discord search over time series, batch and streaming
  • EG-FEDERATED-QUERY-R035 UNKNOWN — Filtered text search evaluates within the filtered candidate set
  • EG-FEDERATED-QUERY-R036 UNKNOWN — Bounded, observable graph reopen after a restart
  • EG-FEDERATED-QUERY-R037 BUILT — Rolling window statistics are both O(1) and numerically exact
  • EG-FEDERATED-QUERY-R038 SPECIFIED — Federation optimizer: cost-aware pushdown, freshness-aware cache
  • EG-FEDERATED-QUERY-R039 UNKNOWN — Mixed traversal and vector queries return k or a typed shortfall
  • EG-FEDERATED-QUERY-R040 UNKNOWN — Filter-aware index scans for filtered vector and text search
  • EG-FEDERATED-QUERY-R041 BUILT — Federation optimizer core drives pushdown decisions for every query
  • EG-FEDERATED-QUERY-R042 BUILT — OBDA pushes per-predicate scans and semi-join reduction to SQL sources
  • EG-FEDERATED-QUERY-R043 BUILT — SQL foreign-source connections share the one outbound SSRF guard
  • EG-FEDERATED-QUERY-R044 BUILDING — UQL EXPLAIN and PROFILE surface federation trace and budget hints
  • EG-FEDERATED-QUERY-R045 BUILDING — Foreign rows carry typed columns for filter and projection pushdown
  • EG-FEDERATED-QUERY-R046 BUILDING — OBDA pushes SPARQL LIMIT, ORDER, aggregates and same-source joins
  • EG-FEDERATED-QUERY-R047 BUILDING — Federation enforces per-source parallelism caps and rate limits
  • EG-FEDERATED-QUERY-R048 SPECIFIED — Join ordering across foreign sources uses learned, provenanced statistics
  • EG-FEDERATED-QUERY-R049 BUILDING — Foreign query fragment cache is freshness-aware and owner-salted
  • EG-FEDERATED-QUERY-R050 SPECIFIED — SPARQL SERVICE uses bind joins and pushes FILTER/LIMIT
  • EG-FEDERATED-QUERY-R051 BUILDING — Iceberg scans prune manifests using the final pushed predicates
  • EG-FEDERATED-QUERY-R052 BUILDING — RemoteEngine sources receive pushed key filters and bounded LIMIT
  • EG-FEDERATED-QUERY-R053 BUILDING — Trino, Cypher and Spark sources are typed ForeignSourceSpec kinds
  • EG-FEDERATED-QUERY-R054 BUILDING — SPARQL SERVICE and peer federation share the one outbound SSRF guard
  • EG-FEDERATED-QUERY-R055 BUILT — SPARQL evaluation binds every value of a multi-valued property
  • EG-FEDERATED-QUERY-R056 BUILT — Causal-impact p-values reuse the shared numeric tail functions
  • EG-FEDERATED-QUERY-R057 BUILDING — SQL provider module stays within the repository's file-size limit
  • EG-FEDERATED-QUERY-R058 UNKNOWN — Natural language produces only a previewed, reviewed UQL candidate
  • EG-FEDERATED-QUERY-R059 BUILDING — Semantic index lifecycle is fenced, durable and restart-safe
  • EG-FEDERATED-QUERY-R061 UNKNOWN — One grammar table drives UQL docs, prompts and error messages
  • EG-FEDERATED-QUERY-R062 BUILT — Streaming memory test measures only its own allocations
  • EG-FEDERATED-QUERY-R063 UNKNOWN — Leiden provides stable community naming and a connectivity check
  • EG-FEDERATED-QUERY-R064 UNKNOWN — UQL lexer supports its full token set and structured diagnostics
  • EG-FEDERATED-QUERY-R065 UNKNOWN — Named UQL sub-plans compile to an ordered plan DAG
  • EG-FEDERATED-QUERY-R066 BUILT — SPARQL evaluator is split into modules within the file-size limit
  • EG-FEDERATED-QUERY-R067 UNKNOWN — UQL RETURN exposes multiple named score channels per row
  • EG-FEDERATED-QUERY-R068 UNKNOWN — UQL supports WITH PROOF for proof-carrying results
  • EG-FEDERATED-QUERY-R069 BUILT — SQL pushdown batches key lookups and shares rendering with OBDA
  • EG-FEDERATED-QUERY-R070 UNKNOWN — UQL execution budgets are enforced and reported in EXPLAIN/PROFILE
  • EG-FEDERATED-QUERY-R071 BUILT — HTTP foreign sources support templated pagination and key placeholders
EG-FINANCE-PRIMITIVESepistemic-graphSPECIFIEDNOT AUDITED 0/17 (0%)
17 open
  • EG-FINANCE-PRIMITIVES-R001 BUILT — Cross-host BacktestRun digest and Pine parity for finance-core
  • EG-FINANCE-PRIMITIVES-R002 BUILDING — Rehome generic finance evaluation kernels into eg-numeric
  • EG-FINANCE-PRIMITIVES-R003 BUILDING — Compute PBO from a BacktestRun's own CSCV splits
  • EG-FINANCE-PRIMITIVES-R004 SPECIFIED — finance-v1 asset, account, and strategy record types
  • EG-FINANCE-PRIMITIVES-R005 SPECIFIED — Deterministic fixed-point portfolio accounting
  • EG-FINANCE-PRIMITIVES-R006 SPECIFIED — Point-in-time corporate actions and exchange session calendars
  • EG-FINANCE-PRIMITIVES-R007 SPECIFIED — Versioned StrategySpec evaluator with DCA, trend, rebalancing
  • EG-FINANCE-PRIMITIVES-R008 SPECIFIED — Strategy backtests sealed through BacktestRun
  • EG-FINANCE-PRIMITIVES-R009 SPECIFIED — Calibrated abstaining recommendations with scorecards
  • EG-FINANCE-PRIMITIVES-R010 SPECIFIED — Leverage risk module with margin, sizing, live-order boundary
  • EG-FINANCE-PRIMITIVES-R011 SPECIFIED — Finance alerts published through the finance outbox
  • EG-FINANCE-PRIMITIVES-R012 SPECIFIED — Optional one-way Ghostfolio activity import
  • EG-FINANCE-PRIMITIVES-R013 SPECIFIED — Golden accounting and risk fixtures with full provenance
  • EG-FINANCE-PRIMITIVES-R014 UNKNOWN — finance-v1 thin instrument and signal module
  • EG-FINANCE-PRIMITIVES-R015 UNKNOWN — AnalysisSnapshot records with share.read control leases
  • EG-FINANCE-PRIMITIVES-R016 UNKNOWN — Incremental deterministic indicator kernels with Pine parity
  • EG-FINANCE-PRIMITIVES-R017 UNKNOWN — BacktestRun provenance record with mandatory fields
EG-IDENTITY-001epistemic-graphSPECIFIEDNOT AUDITED 0/5 (0%)
5 open
  • EG-IDENTITY-R001 UNKNOWN — Multi-issuer OIDC trust list with per-issuer kind limits
  • EG-IDENTITY-R002 UNKNOWN — Identity and RBAC writes recompute roles and audit atomically
  • EG-IDENTITY-R003 UNKNOWN — Identity mode is a durable singleton with CAS transition
  • EG-IDENTITY-R004 UNKNOWN — Generated scope registry classifies every capability scope
  • EG-IDENTITY-R005 UNKNOWN — Semantic workers use one identity across queue classes
EG-REPO-INGESTepistemic-graphSPECIFIEDNOT AUDITED 2/11 (18%)
9 open
  • EG-REPO-INGEST-R001 UNKNOWN — Reconcile mode re-admits stranded semantic intents
  • EG-REPO-INGEST-R002 BUILDING — SourceIngest is sole owner of migrated ingestion capabilities
  • EG-REPO-INGEST-R003 SPECIFIED — EG is sole home for remaining migrated ingestion modules
  • EG-REPO-INGEST-R004 BUILT — Derived series maintained incrementally with lineage
  • EG-REPO-INGEST-R005 UNKNOWN — Replay-protection nonces commit in batches for throughput
  • EG-REPO-INGEST-R006 BUILDING — Native ingestion commits fast; heavy enrichment deferred
  • EG-REPO-INGEST-R007 BUILDING — Large ingestion batches refuse atomically with a stable code
  • EG-REPO-INGEST-R008 SPECIFIED — Oversized batches return a stable code for retry
  • EG-REPO-INGEST-R009 BUILDING — Repository hydration links into the specification bridge
EG-TYPED-PACKSepistemic-graphSPECIFIEDNOT AUDITED 27/96 (28%)
69 open
  • EG-TYPED-PACKS-R003 UNKNOWN — Import boundary enforces archive integrity, importer binding and G1-G21
  • EG-TYPED-PACKS-R009 UNKNOWN — Projection readiness gates reader visibility
  • EG-TYPED-PACKS-R010 UNKNOWN — Import is a single atomic operation, not a staged protocol
  • EG-TYPED-PACKS-R011 UNKNOWN — Incompatible Agent Library storage is refused, not upgraded
  • EG-TYPED-PACKS-R012 UNKNOWN — Pack and agent-layer write methods are local-only in clustered mode
  • EG-TYPED-PACKS-R013 UNKNOWN — Capability IRI validation distinguishes native errors from claims
  • EG-TYPED-PACKS-R014 UNKNOWN — Absent entries become reversible Withdrawn, not retired
  • EG-TYPED-PACKS-R015 UNKNOWN — Importer authority is admin-bound, with environment value as bootstrap only
  • EG-TYPED-PACKS-R016 UNKNOWN — Server pin follows declared contract, not package version
  • EG-TYPED-PACKS-R017 UNKNOWN — Release scope excludes an offline Agent Library upgrade path
  • EG-TYPED-PACKS-R018 UNKNOWN — Body reads use AgentComponent.Content, not a pack-specific method
  • EG-TYPED-PACKS-R020 UNKNOWN — A tenant-profile administrative capability defect is out of EG scope
  • EG-TYPED-PACKS-R021 UNKNOWN — Cross-cutting import-safety defects are release-gate obligations
  • EG-TYPED-PACKS-R022 UNKNOWN — Pack index well-formedness validation
  • EG-TYPED-PACKS-R023 UNKNOWN — Pack size bounds across index, entries, archive and body
  • EG-TYPED-PACKS-R024 UNKNOWN — Archive presence, length and digest integrity
  • EG-TYPED-PACKS-R025 UNKNOWN — Archive section layout and offset correctness
  • EG-TYPED-PACKS-R026 UNKNOWN — Section, entry and pack digest recomputation
  • EG-TYPED-PACKS-R027 UNKNOWN — Text body UTF-8 validity without a byte-order mark
  • EG-TYPED-PACKS-R030 UNKNOWN — Tool entries require an input schema
  • EG-TYPED-PACKS-R031 UNKNOWN — Empty description falls back to the entry name
  • EG-TYPED-PACKS-R032 UNKNOWN — Capability, cost, latency and model annotation validation
  • EG-TYPED-PACKS-R034 UNKNOWN — Shape blank-node scoping and SPARQL-backed constraint rejection
  • EG-TYPED-PACKS-R035 UNKNOWN — Step-bounded SHACL cross-validation against the ontology
  • EG-TYPED-PACKS-R036 UNKNOWN — Sibling reference resolution without cycles
  • EG-TYPED-PACKS-R038 UNKNOWN — Import requires a matching bound importer identity
  • EG-TYPED-PACKS-R039 UNKNOWN — Mass-withdrawal guard requires an explicit admin override
  • EG-TYPED-PACKS-R040 UNKNOWN — Validation stops at a bounded violation count
  • EG-TYPED-PACKS-R043 UNKNOWN — Modality annotations on pack entries
  • EG-TYPED-PACKS-R044 UNKNOWN — EG-computed tool schema digests
  • EG-TYPED-PACKS-R045 UNKNOWN — MCP ToolAnnotations hints captured as pack facts
  • EG-TYPED-PACKS-R046 UNKNOWN — Cost annotation on pack entries
  • EG-TYPED-PACKS-R047 UNKNOWN — Latency annotation on pack entries
  • EG-TYPED-PACKS-R048 UNKNOWN — ModelProfile cost, latency, modality and capability facts
  • EG-TYPED-PACKS-R049 UNKNOWN — contract_pin is carried as an opaque SDK claim
  • EG-TYPED-PACKS-R050 UNKNOWN — Per-entry contract_version replaces package-version pinning
  • EG-TYPED-PACKS-R051 UNKNOWN — Composable per-graph schema source sets
  • EG-TYPED-PACKS-R052 UNKNOWN — No pack-specific stand-in for pending schema authority
  • EG-TYPED-PACKS-R053 UNKNOWN — Visible-staleness snapshot for non-pack schema attach
  • EG-TYPED-PACKS-R054 UNKNOWN — One topic per Agent Library outbox consumer
  • EG-TYPED-PACKS-R055 UNKNOWN — Outbox retry never collateral dead-letters unrelated events
  • EG-TYPED-PACKS-R057 UNKNOWN — Ontology withdrawal removes a whole source, not per-triple
  • EG-TYPED-PACKS-R058 UNKNOWN — One shared derivation-step budget bounds EL+/RL reasoning
  • EG-TYPED-PACKS-R059 UNKNOWN — Schema attach validates only newly introduced data
  • EG-TYPED-PACKS-R060 UNKNOWN — Manifest-read refusal precedes dependent import paths
  • EG-TYPED-PACKS-R062 UNKNOWN — GraphSchema replicates through the existing GraphState route
  • EG-TYPED-PACKS-R063 UNKNOWN — Agent-layer row types affected by a schema bump are enumerated
  • EG-TYPED-PACKS-R064 UNKNOWN — Output-schema digest recorded on tool pins
  • EG-TYPED-PACKS-R065 UNKNOWN — EG does not recompute the SDK's contract-pin normalization
  • EG-TYPED-PACKS-R066 UNKNOWN — OWL/rule classification over model and capability facts
  • EG-TYPED-PACKS-R067 UNKNOWN — Coordinated contract regeneration for new library methods
  • EG-TYPED-PACKS-R071 UNKNOWN — Generated core ontology corpus as GraphSchema authority
  • EG-TYPED-PACKS-R073 UNKNOWN — Raise the core schema source bound to 64 and split world_model
  • EG-TYPED-PACKS-R074 UNKNOWN — Least-privilege, per-pack projection grant with recorded failure
  • EG-TYPED-PACKS-R077 UNKNOWN — GraphSchemaClasses exposes canonical class and property names
  • EG-TYPED-PACKS-R078 UNKNOWN — Proven retrieval plan templates keyed by task class and digest
  • EG-TYPED-PACKS-R079 UNKNOWN — Typed OHLCV bar-series contract
  • EG-TYPED-PACKS-R080 UNKNOWN — Exhaustive OpKind/PredKind printer and parser contract
  • EG-TYPED-PACKS-R081 SPECIFIED — Ontology object model migrated into EG's kg/ontology package
  • EG-TYPED-PACKS-R082 BUILDING — EG-generated types replace hand-written graph-schema DTOs
  • EG-TYPED-PACKS-R083 UNKNOWN — Schema-drift SHACL rendering and contract store move into EG
  • EG-TYPED-PACKS-R084 UNKNOWN — Request deadlines propagate into long-running pack operations
  • EG-TYPED-PACKS-R085 UNKNOWN — Identity domain operations with Argon2id and redacted views
  • EG-TYPED-PACKS-R086 BUILT — Planted derivation-budget and malformed-path cases are refused
  • EG-TYPED-PACKS-R087 UNKNOWN — Stable error codes for auth-boundary refusals
  • EG-TYPED-PACKS-R088 BUILDING — Embedded engine enforces graph-level access control
  • EG-TYPED-PACKS-R090 UNKNOWN — Canonical ontology and SHACL artifacts generated from Rust
  • EG-TYPED-PACKS-R093 UNKNOWN — Turtle parser blank-node identities do not collide
  • EG-TYPED-PACKS-R096 UNKNOWN — Connector-pack reprojection with bounded, isolated aggregates
EG-UNIFIED-DATA-PLANEepistemic-graphSPECIFIEDNOT AUDITED 1/36 (2%)
35 open
  • EG-UNIFIED-DATA-PLANE-R001 SPECIFIED — Record attached-source and native-hosting architecture decisions
  • EG-UNIFIED-DATA-PLANE-R002 SPECIFIED — Unify attached-source registration into one owner-scoped registry
  • EG-UNIFIED-DATA-PLANE-R003 SPECIFIED — Extract typed, hashed catalog graphs per dialect
  • EG-UNIFIED-DATA-PLANE-R004 SPECIFIED — Infer schema structure deterministically from attached catalogs
  • EG-UNIFIED-DATA-PLANE-R005 SPECIFIED — Compile approved relational mappings to named R2RML virtual graphs
  • EG-UNIFIED-DATA-PLANE-R006 SPECIFIED — Push down virtual-graph queries to source SQL
  • EG-UNIFIED-DATA-PLANE-R007 SPECIFIED — Federate attached tables as DataFusion table providers
  • EG-UNIFIED-DATA-PLANE-R008 SPECIFIED — Normalize change capture into a durable, replayable framework
  • EG-UNIFIED-DATA-PLANE-R009 SPECIFIED — Drive consumers from change capture idempotently
  • EG-UNIFIED-DATA-PLANE-R010 SPECIFIED — Maintain an accelerated local copy of attached data
  • EG-UNIFIED-DATA-PLANE-R011 SPECIFIED — Route queries by freshness across native, live, and accelerated paths
  • EG-UNIFIED-DATA-PLANE-R012 SPECIFIED — Govern write-back to attached sources
  • EG-UNIFIED-DATA-PLANE-R013 SPECIFIED — Implement the Postgres attached-source adapter
  • EG-UNIFIED-DATA-PLANE-R014 SPECIFIED — Implement the MySQL and MariaDB attached-source adapters
  • EG-UNIFIED-DATA-PLANE-R015 SPECIFIED — Implement the SQLite file attached-source adapter
  • EG-UNIFIED-DATA-PLANE-R016 SPECIFIED — Implement the Microsoft SQL Server attached-source adapter
  • EG-UNIFIED-DATA-PLANE-R017 SPECIFIED — Implement the ClickHouse attached-source adapter
  • EG-UNIFIED-DATA-PLANE-R018 SPECIFIED — Implement the Oracle and Db2 attached-source adapters
  • EG-UNIFIED-DATA-PLANE-R019 SPECIFIED — Implement the MongoDB and DocumentDB attached-source adapter
  • EG-UNIFIED-DATA-PLANE-R020 SPECIFIED — Federate Snowflake, BigQuery, DuckDB, and Iceberg sources
  • EG-UNIFIED-DATA-PLANE-R021 SPECIFIED — Bridge Debezium Kafka events into ChangeEnvelope
  • EG-UNIFIED-DATA-PLANE-R022 SPECIFIED — Build a per-dialect conformance harness
  • EG-UNIFIED-DATA-PLANE-R023 SPECIFIED — Operate a shared CloudNativePG and MariaDB platform
  • EG-UNIFIED-DATA-PLANE-R024 SPECIFIED — Admit applications to the shared platform with rollback
  • EG-UNIFIED-DATA-PLANE-R025 SPECIFIED — Evaluate a pgrx companion extension through a spike
  • EG-UNIFIED-DATA-PLANE-R026 SPECIFIED — Run the Gramps native-hosting pilot phases P0 through P5
  • EG-UNIFIED-DATA-PLANE-R027 SPECIFIED — Fix Postgres compatibility gaps proven by captured traffic
  • EG-UNIFIED-DATA-PLANE-R028 SPECIFIED — Build the Postgres-equivalence differential harness
  • EG-UNIFIED-DATA-PLANE-R029 SPECIFIED — Expose a schema_context query surface
  • EG-UNIFIED-DATA-PLANE-R030 SPECIFIED — Resolve entities across attached applications
  • EG-UNIFIED-DATA-PLANE-R031 SPECIFIED — Enforce consolidation safety across attached applications
  • EG-UNIFIED-DATA-PLANE-R032 SPECIFIED — Run the Immich connector pilot phases I0 through I6
  • EG-UNIFIED-DATA-PLANE-R033 SPECIFIED — Cut over Gramps to EG-backed storage in production
  • EG-UNIFIED-DATA-PLANE-R035 UNKNOWN — Share the compiled ontology cache with attached-schema graphs
  • EG-UNIFIED-DATA-PLANE-R036 UNKNOWN — Derive HealthAnomaly and Incident facts with conformance checking
GRAPHOS-A2A-001graph-osSPECIFIEDNOT AUDITED 0/8 (0%)
8 open
  • GRAPHOS-A2A-R001 SPECIFIED — A2A facade over the engine and agent services
  • GRAPHOS-A2A-R002 UNKNOWN — Inbound task routing with caller-filtered tool exposure
  • GRAPHOS-A2A-R003 UNKNOWN — No duplicate skill or prompt harvesting in the multiplexer
  • GRAPHOS-A2A-R004 UNKNOWN — Served MCP bridge runs FastMCP 4, matching its declared version
  • GRAPHOS-A2A-R005 BUILDING — Durable, fail-closed A2A approval exchange for tool calls
  • GRAPHOS-A2A-R006 SPECIFIED — Operation invoke and plan-confirm methods for A2A
  • GRAPHOS-A2A-R007 BUILDING — Pre-effect audit reservation for every governed write
  • GRAPHOS-A2A-R008 BUILDING — First-party A2A facade, not a vendored wrapper
GRAPHOS-CAPACITY-001graph-osSPECIFIEDNOT AUDITED 0/2 (0%)
2 open
  • GRAPHOS-CAPACITY-R001 UNKNOWN — AIMD error-budget throttling that only narrows automatically
  • GRAPHOS-CAPACITY-R002 BUILDING — Capacity status and mode operations
GRAPHOS-DATA-MARKET-001graph-osSPECIFIEDNOT AUDITED 0/6 (0%)
6 open
  • GRAPHOS-DATA-MARKET-R001 BUILT — Durable, deduplicated flip alert delivery
  • GRAPHOS-DATA-MARKET-R002 BUILT — Scheduled finance backfill, scan, and explanation jobs
  • GRAPHOS-DATA-MARKET-R003 BUILDING — Server-side finance and markets reads and paper order submission
  • GRAPHOS-DATA-MARKET-R004 SPECIFIED — One-at-a-time application admission with rollback
  • GRAPHOS-DATA-MARKET-R005 SPECIFIED — schema_context query surface for tables and ontology mappings
  • GRAPHOS-DATA-MARKET-R006 SPECIFIED — Recurring DCA plans with deterministic, non-duplicating proposals
GRAPHOS-DEPLOY-001graph-osSPECIFIEDNOT AUDITED 0/15 (0%)
15 open
  • GRAPHOS-DEPLOY-R001 UNKNOWN — Worker topology manifest is digest-pinned
  • GRAPHOS-DEPLOY-R002 UNKNOWN — Executable release-qualification runbook
  • GRAPHOS-DEPLOY-R003 UNKNOWN — Pre-push hooks always run the full gate suite
  • GRAPHOS-DEPLOY-R004 BUILT — mypy hook type-checks the test suite
  • GRAPHOS-DEPLOY-R005 BUILT — Web UI rename cutover across GraphOS
  • GRAPHOS-DEPLOY-R006 SPECIFIED — gateway-widgets extra pins a compatible connector floor
  • GRAPHOS-DEPLOY-R007 SPECIFIED — GraphOS hosts deployment doctor and skill certification
  • GRAPHOS-DEPLOY-R008 SPECIFIED — GraphOS hosts its own boundary modules
  • GRAPHOS-DEPLOY-R009 SPECIFIED — GraphOS owns hosting/deployment configuration settings
  • GRAPHOS-DEPLOY-R010 UNKNOWN — Ecosystem and repository development skills are published
  • GRAPHOS-DEPLOY-R011 UNKNOWN — Deployment layout test suite passes in full
  • GRAPHOS-DEPLOY-R012 BUILT — Pipelines dependency is referenced at main, never pinned
  • GRAPHOS-DEPLOY-R013 BUILT — Development and production deployment profiles
  • GRAPHOS-DEPLOY-R014 UNKNOWN — Agent runtime split into connector SDK, GraphOS and engine
  • GRAPHOS-DEPLOY-R015 UNKNOWN — AVX2 guard test runs on any hosted runner
GRAPHOS-FLEET-001graph-osSPECIFIEDNOT AUDITED 0/24 (0%)
24 open
  • GRAPHOS-FLEET-R001 BUILDING — Typed pack publisher replaces placeholder ContentPack
  • GRAPHOS-FLEET-R002 SPECIFIED — Tool schema fingerprints recomputed from served schemas
  • GRAPHOS-FLEET-R003 BUILDING — D18 write-back exposed only as a typed, previewed operation
  • GRAPHOS-FLEET-R004 UNKNOWN — Pack annotations carry capability, digest, modality, cost, latency
  • GRAPHOS-FLEET-R005 UNKNOWN — A2A task routing with typed work-item and lease operations
  • GRAPHOS-FLEET-R006 UNKNOWN — Multiplexer skill and prompt harvest path removed
  • GRAPHOS-FLEET-R007 UNKNOWN — Bridge upgraded to FastMCP 4
  • GRAPHOS-FLEET-R008 UNKNOWN — RUM, security-audit and CI/CD feeds join the catalog
  • GRAPHOS-FLEET-R009 UNKNOWN — Run admission evaluates, commits and publishes with capacity control
  • GRAPHOS-FLEET-R010 BUILT — Assembly result parsing reads the full agents list
  • GRAPHOS-FLEET-R011 BUILT — Registry core computes a canonical digest and authorized find
  • GRAPHOS-FLEET-R012 BUILT — EG-direct binding generator with reviewed exclusions
  • GRAPHOS-FLEET-R013 BUILDING — MCP projection exposes the six verbs with typed schemas
  • GRAPHOS-FLEET-R014 BUILT — Resolver ranks catalog items with partitioned feedback
  • GRAPHOS-FLEET-R015 BUILDING — Typed operations cover agents, browser and fleet calls
  • GRAPHOS-FLEET-R016 BUILDING — Automated gates catch API surface and compatibility drift
  • GRAPHOS-FLEET-R017 BUILDING — Authority-parity oracle validates principal, operation and surface
  • GRAPHOS-FLEET-R018 BUILDING — Multiplexer exposes four resident fleet tools over one catalog
  • GRAPHOS-FLEET-R019 SPECIFIED — Eunomia narrows authority at discover, load and call
  • GRAPHOS-FLEET-R020 SPECIFIED — Multiplexer meta-tools register as the four resident tools
  • GRAPHOS-FLEET-R021 BUILT — Fleet capability checks require exact scopes, deny unknown tools
  • GRAPHOS-FLEET-R022 BUILDING — Catalog reconciliation re-ingests via durable replay
  • PA-12 SPECIFIED — Catalog reload rejects invalid candidates, proves replica convergence
  • GRAPHOS-FLEET-R023 UNKNOWN — Connector count pins stay consistent across the fleet
GRAPHOS-HOST-001graph-osSPECIFIEDNOT AUDITED 1/16 (6%)
15 open
  • GRAPHOS-HOST-R001 SPECIFIED — Cross-repository composition boundary assignment
  • GRAPHOS-HOST-R002 UNKNOWN — Graph engine client exposes the session/discovery surface
  • GRAPHOS-HOST-R003 BUILT — Web UI rename cutover across GraphOS
  • GRAPHOS-HOST-R004 BUILDING — Single gateway implementation under graph_os/gateway
  • GRAPHOS-HOST-R005 SPECIFIED — graph_os.mcp_server.runtime serves retired MCP actions
  • GRAPHOS-HOST-R006 SPECIFIED — graph_os.fleet is the sole multiplexer and host owner
  • GRAPHOS-HOST-R007 SPECIFIED — Agent runtime imported only through its public API
  • GRAPHOS-HOST-R008 SPECIFIED — GraphOS hosts its own boundary modules
  • GRAPHOS-HOST-R009 BUILDING — GraphOS hosts the agent HTTP server and A2A/ACP endpoints
  • GRAPHOS-HOST-R010 SPECIFIED — GraphOS owns hosting/deployment configuration settings
  • GRAPHOS-HOST-R011 BUILDING — GraphOS serves the messaging channel and routing layer
  • GRAPHOS-HOST-R012 SPECIFIED — Component registry carries GraphOS and SDK boundary entries
  • GRAPHOS-HOST-R013 SPECIFIED — Front ends import only public GraphOS/agent-runtime surfaces
  • GRAPHOS-HOST-R014 UNKNOWN — Agent runtime split into connector SDK, GraphOS and engine
  • GRAPHOS-HOST-R015 SPECIFIED — Layered agent capability model with a harness abstraction
GRAPHOS-IDENTITY-001graph-osSPECIFIEDNOT AUDITED 0/24 (0%)
24 open
  • GRAPHOS-IDENTITY-R001 BUILT — Elevation request, approve, and revoke surfaces
  • GRAPHOS-IDENTITY-R002 UNKNOWN — Domain scopes consume the generated scope registry
  • GRAPHOS-IDENTITY-R003 BUILDING — Persistent local token issuer with secret-backed key
  • GRAPHOS-IDENTITY-R004 UNKNOWN — Loopback bootstrap principal with origin guarding
  • GRAPHOS-IDENTITY-R005 UNKNOWN — Local account lifecycle with server-side sessions
  • GRAPHOS-IDENTITY-R006 BUILDING — Optional MFA with TOTP, WebAuthn, and recovery codes
  • GRAPHOS-IDENTITY-R007 UNKNOWN — Admin console tabs with mapping dry-run and mode wizard
  • GRAPHOS-IDENTITY-R008 UNKNOWN — API keys and service accounts replace static MCP tokens
  • GRAPHOS-IDENTITY-R009 UNKNOWN — Multi-provider OIDC with mapping rules and JIT policy
  • GRAPHOS-IDENTITY-R010 UNKNOWN — LDAPS bind with nested group sync
  • GRAPHOS-IDENTITY-R011 UNKNOWN — SCIM 2.0 provisioning server
  • GRAPHOS-IDENTITY-R012 UNKNOWN — SAML sign-in brokered through an OIDC provider
  • GRAPHOS-IDENTITY-R013 UNKNOWN — Identity CLI commands and doctor diagnostics
  • GRAPHOS-IDENTITY-R014 BUILDING — Shared RBAC decision oracle across identity modes
  • GRAPHOS-IDENTITY-R015 BUILT — Identity operations documentation and cutover runbook
  • GRAPHOS-IDENTITY-R016 UNKNOWN — Optional SMTP adapter for identity email
  • GRAPHOS-IDENTITY-R017 SPECIFIED — Remove the unauthenticated opt-out once clients migrate
  • GRAPHOS-IDENTITY-R018 BUILDING — Identity administration operations for self, admin, config
  • GRAPHOS-IDENTITY-R019 BUILDING — Access operations for elevation and approval decisions
  • GRAPHOS-IDENTITY-R020 BUILDING — Domain scope registry covers finance, fleet, loops, ops
  • GRAPHOS-IDENTITY-R021 BUILDING — Identity wiring depends only on identity ports
  • GRAPHOS-IDENTITY-R022 BUILT — Fleet authorization fails closed on exact scopes
  • GRAPHOS-IDENTITY-R023 SPECIFIED — Native, self-refreshing credentials for MCP clients
  • GRAPHOS-IDENTITY-R024 SPECIFIED — Committed browser and Keycloak SSO probe
GRAPHOS-INGRESS-001graph-osSPECIFIEDNOT AUDITED 0/1 (0%)
1 open
  • GRAPHOS-INGRESS-R001 SPECIFIED — Public ingress rename with Keycloak and OpenBao cutover
GRAPHOS-OPS-001graph-osSPECIFIEDNOT AUDITED 0/38 (0%)
38 open
  • GRAPHOS-OPS-R001 SPECIFIED — Native MCP/REST facade with A2A unary operations then streaming
  • GRAPHOS-OPS-R002 UNKNOWN — Scoped A2A task routing and fleet tool exposure
  • GRAPHOS-OPS-R003 UNKNOWN — Remove multiplexer skill/prompt harvest path
  • GRAPHOS-OPS-R004 UNKNOWN — FastMCP 4 bridge for the MCP server
  • GRAPHOS-OPS-R005 SPECIFIED — Stable auth error codes from the engine contract
  • GRAPHOS-OPS-R006 SPECIFIED — Consume the engine's packaged wire-callable contract
  • GRAPHOS-OPS-R007 BUILT — Immutable operation registry with digest and authorization
  • GRAPHOS-OPS-R008 BUILT — Generated engine-bound operations with exclusions
  • GRAPHOS-OPS-R009 BUILT — Single invoke pipeline for authority, effect, and audit
  • GRAPHOS-OPS-R010 BUILDING — Closed error enum and one response envelope
  • GRAPHOS-OPS-R011 BUILDING — Six resident MCP verbs with typed discovery
  • GRAPHOS-OPS-R012 BUILT — Bounded resolver for natural-language operation lookup
  • GRAPHOS-OPS-R013 BUILT — Generated HTTP API for every registry operation
  • GRAPHOS-OPS-R014 BUILDING — Identity self-service and admin operations
  • GRAPHOS-OPS-R015 BUILDING — Access elevation, approval, and lease operations
  • GRAPHOS-OPS-R016 BUILDING — Capacity status and throttle mode operations
  • GRAPHOS-OPS-R017 BUILDING — Finance and markets operations with tenant isolation
  • GRAPHOS-OPS-R018 SPECIFIED — Query, search, ontology, and analytics operations
  • GRAPHOS-OPS-R019 BUILDING — Federation source registration and sharing operations
  • GRAPHOS-OPS-R020 BUILDING — Ingest operations through a typed SDK runner facade
  • GRAPHOS-OPS-R021 BUILDING — Decision, retrieval, and policy operations
  • GRAPHOS-OPS-R022 BUILDING — Work and evolution loop operations
  • GRAPHOS-OPS-R023 BUILDING — Agent, browser, RLM, and fleet call operations
  • GRAPHOS-OPS-R024 BUILDING — Telemetry, security, usage, and admin operations
  • GRAPHOS-OPS-R025 BUILDING — Generated registry, OpenAPI, and client artifacts
  • GRAPHOS-OPS-R026 BUILDING — API surface and compatibility drift gates
  • GRAPHOS-OPS-R027 BUILDING — Authority-parity test across principals and surfaces
  • GRAPHOS-OPS-R028 BUILDING — Exported domain scope classes
  • GRAPHOS-OPS-R029 BUILDING — Single resident-tool server cutover
  • GRAPHOS-OPS-R030 BUILT — Accurate MCP server and API documentation
  • GRAPHOS-OPS-R031 SPECIFIED — Published tool-to-operation parity inventory
  • GRAPHOS-OPS-R032 BUILDING — Identity dependency inversion via ports
  • GRAPHOS-OPS-R033 BUILDING — Dynamic multiplexer discovery, load, and call
  • GRAPHOS-OPS-R034 SPECIFIED — Eunomia narrowing-only policy enforcement
  • GRAPHOS-OPS-R035 SPECIFIED — Multiplexer registration reduced to four resident tools
  • GRAPHOS-OPS-R036 BUILDING — Pre-dispatch audit reservation for governed effects
  • GRAPHOS-OPS-R037 BUILDING — Native first-party A2A facade
  • GRAPHOS-OPS-R038 UNKNOWN — Generated OpenAPI served through Swagger UI
GRAPHOS-RELEASE-001graph-osSPECIFIEDNOT AUDITED 0/3 (0%)
3 open
  • GRAPHOS-RELEASE-R001 SPECIFIED — Dependency-ordered, digest-verified release promotion
  • GRAPHOS-RELEASE-R002 UNKNOWN — Local Kubernetes validation gates every push
  • GRAPHOS-RELEASE-R003 UNKNOWN — Exit-criteria matrix maps readiness to tests
PIPE-IDENTITY-001pipelinesSPECIFIEDNOT AUDITED 0/1 (0%)
1 open
  • PIPE-IDENTITY-R001 UNKNOWN — Commit author identity is restricted to an allowlist
PIPE-PAGES-001pipelinesSPECIFIEDNOT AUDITED 2/11 (18%)
9 open
  • PIPE-PAGES-R001 SPECIFIED — Repository switcher kept in sync with the core repo list
  • PIPE-PAGES-R002 UNKNOWN — Layered documentation from overview to reference
  • PIPE-PAGES-R003 UNKNOWN — Present-tense docs with accessible embedded start
  • PIPE-PAGES-R004 UNKNOWN — One progressively disclosed skill-graph corpus
  • PIPE-PAGES-R005 UNKNOWN — Generate architecture and reference pages from registries
  • PIPE-PAGES-R006 UNKNOWN — Rehome generated docs out of the legacy docs directory
  • PIPE-PAGES-R008 UNKNOWN — Correct ownership and quick start in consumer parity checks
  • PIPE-PAGES-R009 UNKNOWN — HTML/CSS architecture views, no ASCII or Mermaid diagrams
  • PIPE-PAGES-R010 UNKNOWN — Generate API contract docs from the contract registry
PIPE-RELEASE-001pipelinesSPECIFIEDNOT AUDITED 0/3 (0%)
3 open
  • PIPE-RELEASE-R001 SPECIFIED — Pipelines publishes images in dependency order with digest pins
  • PIPE-RELEASE-R002 UNKNOWN — Release tags point to the exact qualified commit
  • PIPE-RELEASE-R003 UNKNOWN — Release build job sources environment values safely
RM-CONNECTOR-001repository-managerSPECIFIEDNOT AUDITED 0/6 (0%)
6 open
  • RM-CONNECTOR-R001 UNKNOWN — Migrate connector imports to the public SDK boundary
  • RM-CONNECTOR-01 SPECIFIED — Classify every import from the orchestration package
  • RM-CONNECTOR-02 SPECIFIED — Route connector transport imports through the public SDK
  • RM-CONNECTOR-03 SPECIFIED — Keep governance imports under repository-manager authority
  • RM-CONNECTOR-04 SPECIFIED — Preserve MCP/CLI contract during connector migration
  • RM-CONNECTOR-05 SPECIFIED — Remove dead connector adapters after cutover
RM-GOVERNANCE-001repository-managerSPECIFIEDNOT AUDITED 0/29 (0%)
29 open
  • RM-GOVERNANCE-R001 BUILT — repository-manager hosts the Git development-governance modules
  • RM-GOVERNANCE-01 SPECIFIED — Single authority for Git development governance
  • RM-GOVERNANCE-02 SPECIFIED — Branch allocation tracks ownership, lease, and lifecycle state
  • RM-GOVERNANCE-03 SPECIFIED — Isolated checkouts never corrupt shared Git config
  • RM-GOVERNANCE-04 SPECIFIED — Commits stage only reviewed paths and verified gate identity
  • RM-GOVERNANCE-05 SPECIFIED — Merge-queue promotion rechecks identity before reporting success
  • RM-GOVERNANCE-06 SPECIFIED — Cleanup proves containment before deleting a branch checkout
  • RM-GOVERNANCE-07 SPECIFIED — Concept reservations are scoped and cannot be silently reused
  • RM-GOVERNANCE-R002 UNKNOWN — readme-deploy-block hook must not silently skip
  • RM-GOVERNANCE-R003 UNKNOWN — Cleanup removes isolated checkouts and scratch only after merge
  • RM-GOVERNANCE-R004 UNKNOWN — Workspace check refuses credential-embedded remote URLs
  • RM-GOVERNANCE-R005 UNKNOWN — Complexity gate scores exhaustive-dispatch functions correctly
  • RM-GOVERNANCE-R006 UNKNOWN — Clone-duplication gate enforces zero new pairs before push
  • RM-GOVERNANCE-R007 UNKNOWN — Routine cleanup prunes merged branches and build caches
  • RM-GOVERNANCE-R008 UNKNOWN — KISS hook resolves test module path declarations correctly
  • RM-GOVERNANCE-R009 UNKNOWN — Duplication gate fails closed on an empty-change commit
  • RM-GOVERNANCE-R010 UNKNOWN — Reviewed-distinct clone pairs are tracked in a registry
  • RM-GOVERNANCE-R011 UNKNOWN — Status page stays in sync with capability and reservation docs
  • RM-GOVERNANCE-R012 UNKNOWN — Build verification on extracted trees uses content hashes
  • RM-GOVERNANCE-R013 UNKNOWN — A fast rebase must not silently skip the hook suite
  • RM-GOVERNANCE-R014 UNKNOWN — Completion claims require full hook-run logs as proof
  • RM-GOVERNANCE-R015 UNKNOWN — Continuous review-and-merge replaces batch integration
  • RM-GOVERNANCE-R016 UNKNOWN — Cleanup removes leftover backup references and build scratch
  • RM-GOVERNANCE-R017 UNKNOWN — Build submission is asynchronous, not polling-based
  • RM-GOVERNANCE-R018 UNKNOWN — Dependency-readiness hook works from any checkout location
  • RM-GOVERNANCE-R019 UNKNOWN — A fix is accepted only when all quality gates pass together
  • RM-GOVERNANCE-R020 UNKNOWN — Duplication gate distinguishes real new duplication from moves
  • RM-GOVERNANCE-R021 UNKNOWN — Secret-history exceptions are digest-pinned and self-checking
  • RM-GOVERNANCE-R022 UNKNOWN — The repository passes its own full local gate suite
RM-IDENTITY-001repository-managerSPECIFIEDNOT AUDITED 0/9 (0%)
9 open
  • RM-IDENTITY-R001 SPECIFIED — Rewrite commit identities across public repositories with approval and rollback
  • RM-IDENTITY-01 SPECIFIED — Complete ref and tag discovery before rewrite
  • RM-IDENTITY-02 SPECIFIED — Deterministic dry-run identity rewrite plan
  • RM-IDENTITY-03 SPECIFIED — Signed approval required before any rewrite
  • RM-IDENTITY-04 SPECIFIED — Byte-identical trees and preserved history topology
  • RM-IDENTITY-05 SPECIFIED — Quarantined staging with backup refs before ref update
  • RM-IDENTITY-06 SPECIFIED — Lease-protected per-remote publication receipts
  • RM-IDENTITY-07 SPECIFIED — Coordinated merge-queue pause and resync during rewrite
  • RM-IDENTITY-R002 UNKNOWN — Reconcile diverged history before identity rewrite
RM-MATERIALIZE-001repository-managerSPECIFIEDNOT AUDITED 0/7 (0%)
7 open
  • RM-MATERIALIZE-R001 UNKNOWN — Repository-manager materializes an approved proposal into a commit
  • RM-MATERIALIZE-01 SPECIFIED — Approval verification gates every Git materialization request
  • RM-MATERIALIZE-02 SPECIFIED — Patch application is isolated and restricted to approved paths
  • RM-MATERIALIZE-03 SPECIFIED — Validation gates and explicit staging precede every commit
  • RM-MATERIALIZE-04 SPECIFIED — Merge queue submission never claims landing before verification
  • RM-MATERIALIZE-05 SPECIFIED — An immutable receipt binds every materialization outcome
  • RM-MATERIALIZE-06 SPECIFIED — No caller has a direct Git fallback when the service is unavailable
RM-RELEASE-001repository-managerSPECIFIEDNOT AUDITED 0/7 (0%)
7 open
  • RM-RELEASE-R001 BUILDING — Dependency-ordered fleet release planning
  • RM-RELEASE-01 SPECIFIED — Complete per-repository dependency census
  • RM-RELEASE-02 SPECIFIED — Acyclic, typed dependency graph per release scope
  • RM-RELEASE-03 SPECIFIED — Immutable, content-addressed release plan digest
  • RM-RELEASE-04 SPECIFIED — Dependency-ordered execution with trusted gating
  • RM-RELEASE-05 SPECIFIED — One shared admission contract across release routes
  • RM-RELEASE-06 SPECIFIED — Per-stage receipts with retry and rollback evidence
TM-INVENTORY-001tunnel-managerSPECIFIEDNOT AUDITED 0/1 (0%)
1 open
  • TM-INVENTORY-R001 SPECIFIED — One canonical host inventory path across surfaces
US-PAGES-001universal-skillsSPECIFIEDNOT AUDITED 0/2 (0%)
2 open
  • US-PAGES-001 SPECIFIED — Consolidate published documentation
  • US-PAGES-R001 UNKNOWN — Shared documentation hierarchy across the fleet's sites
Source revisions