{
  "schema_version": "0.1",
  "checked_at": "2026-06-17T00:15:39.443219+00:00",
  "checked_by_agent": "AGENT-001",
  "checked_from_session": "SES-AUDIT",
  "status": "warning",
  "findings": [
    {
      "id": "HLT-001",
      "severity": "medium",
      "status": "resolved",
      "summary": "REQ-002 (medium) has no linked health findings.",
      "affected_ids": [
        "REQ-009",
        "REQ-002"
      ],
      "source_refs": [
        {
          "path": ".prd_plugin/state/requests.json",
          "line": null,
          "note": "REQ-002"
        }
      ],
      "recommended_action": "Create an HLT-* finding or link an existing one to track risk.",
      "created_at": "2026-06-17",
      "resolved_at": "2026-07-11",
      "resolution": "The originating audit request REQ-009 was rejected after REQ-002 had already shipped; the missing-health trigger no longer applies."
    },
    {
      "id": "HLT-002",
      "severity": "medium",
      "status": "resolved",
      "summary": "REQ-054 tracks an unresolved downstream state-loss hazard and requires explicit health visibility until it is implemented or rejected.",
      "affected_ids": [
        "REQ-054"
      ],
      "source_refs": [
        {
          "path": ".prd_plugin/state/requests.json",
          "line": null,
          "note": "REQ-054"
        }
      ],
      "recommended_action": "Review REQ-054 and retain this finding until the installer hazard is implemented, rejected, or superseded with evidence.",
      "created_at": "2026-07-11",
      "resolved_at": "2026-07-15",
      "resolution": "Resolved in PRD Plugin 0.15.3: the CLI lists protected files before writes, refuses destructive reset in non-interactive sessions, requires RESET PRD STATE exactly when interactive, and points routine updates to --force alone. Verified by EV-093 and WFR-016.",
      "updated_at": "2026-07-15"
    },
    {
      "id": "HLT-003",
      "severity": "high",
      "status": "resolved",
      "summary": "The drift-hook audit must return clean after all REQ-083 repairs and revalidation work.",
      "affected_ids": [
        "REQ-083",
        "TRK-067"
      ],
      "source_refs": [
        {
          "path": ".prd_plugin/state/requests.json",
          "line": null,
          "note": "REQ-083"
        }
      ],
      "recommended_action": "Resolve only after the complete configured seven-validator drift audit reports no findings or stale records.",
      "created_at": "2026-07-11",
      "resolved_at": "2026-07-11",
      "resolution": "EV-055 records a clean seven-validator re-audit, 656 passing unit tests, and a successful local workflow check."
    },
    {
      "id": "HLT-005",
      "severity": "medium",
      "status": "resolved",
      "summary": "Delegated reporting must preserve deterministic project truth and fail safely when the AI-Collab executor is absent, invalid, or unavailable.",
      "affected_ids": [
        "REQ-084",
        "TRK-070"
      ],
      "source_refs": [
        {
          "path": ".prd_plugin/state/requests.json",
          "line": null,
          "note": "REQ-084"
        }
      ],
      "recommended_action": "Resolve only after contract, privacy, fallback, cross-host parity, and full drift/gate validation pass with fresh evidence.",
      "created_at": "2026-07-12",
      "resolved_at": "2026-07-12",
      "resolution": "EV-056 records contract, privacy, fallback, cross-host parity, full-suite, local-workflow, gate, and clean seven-validator drift evidence. Delegation remains off by default."
    },
    {
      "id": "HLT-006",
      "severity": "medium",
      "status": "resolved",
      "summary": "State tools must prevent duplicate IDs and finish with zero critical, high, medium, or low audit findings.",
      "affected_ids": [
        "REQ-085",
        "TRK-074",
        "TRK-075"
      ],
      "source_refs": [
        {
          "path": ".prd_plugin/state/requests.json",
          "line": null,
          "note": "REQ-085"
        }
      ],
      "recommended_action": "Resolve only after concurrency, stale-registry, duplicate, query, mutation, linking, full-suite, and repeated CHML audits are clean.",
      "created_at": "2026-07-12",
      "resolved_at": "2026-07-12",
      "resolution": "EV-057 records six CHML fix cycles followed by zero CHML findings, clean full tests, gates, and drift re-audit.",
      "updated_at": "2026-07-12"
    },
    {
      "id": "HLT-007",
      "severity": "high",
      "status": "resolved",
      "summary": "Release knowledge contradicts the actual tag-triggered npm workflow, causing false credential blockers and incomplete release reporting.",
      "affected_ids": [
        "REQ-086",
        "TRK-076"
      ],
      "linked_ids": [
        "REQ-086"
      ],
      "created_at": "2026-07-12",
      "resolved_at": "2026-07-12",
      "resolution": "EV-058 proves corrected workflow guidance, durable memory, MEM-aware tool linking, 681 passing tests, zero CHML findings, and clean re-audit.",
      "updated_at": "2026-07-12"
    },
    {
      "id": "HLT-008",
      "severity": "high",
      "status": "resolved",
      "summary": "Parallel agents cannot safely update canonical tracking state across Git worktrees",
      "affected_ids": [
        "REQ-087",
        "TRK-079",
        "ARCH-RISK-004"
      ],
      "linked_ids": [
        "EV-060",
        "EV-061",
        "DEC-004",
        "CHG-063"
      ],
      "created_at": "2026-07-13",
      "resolved_at": "2026-07-13",
      "recommended_action": "Require agent-scoped tracking branches and serialize validated promotion into canonical state.",
      "resolution": "Resolved by pre-allocating one DBR tracking file per worker and serially promoting merged branches under the canonical lock; EV-060 verifies collision, recovery, validation, and packaging behavior.",
      "updated_at": "2026-07-13"
    },
    {
      "id": "HLT-009",
      "severity": "high",
      "status": "resolved",
      "summary": "Published parallel-tracking capability is not consistently enforced or discoverable in downstream repos",
      "affected_ids": [
        "REQ-088",
        "REQ-087",
        "PRD-002",
        "ARCH-002"
      ],
      "linked_ids": [
        "DEC-004",
        "HLT-008",
        "REQ-088",
        "TRK-083",
        "TRK-084",
        "TRK-085",
        "EV-062",
        "CHG-064",
        "EV-063",
        "CHG-065"
      ],
      "created_at": "2026-07-13",
      "resolved_at": "2026-07-13",
      "recommended_action": "Enforce worker-only branch writes from config, expose DBR state through existing discovery tools, install branch consistency validation by default, and align all shipped workflows.",
      "resolution": "Runtime enforcement, DBR discovery/status, malformed-DBR isolation, mandatory downstream state validation, aligned workflow guidance, fresh-install coverage, and repeated zero-finding audits are verified by EV-063 and logged in CHG-064/CHG-065.",
      "updated_at": "2026-07-13"
    },
    {
      "id": "HLT-010",
      "severity": "medium",
      "status": "resolved",
      "summary": "Downstream ignore delivery must preserve project rules and keep canonical PRD Plugin state trackable",
      "affected_ids": [
        "REQ-089",
        "TRK-086"
      ],
      "linked_ids": [
        "REQ-089",
        "TRK-086"
      ],
      "created_at": "2026-07-13",
      "resolved_at": "2026-07-13",
      "recommended_action": "Require focused merge tests, real git check-ignore assertions, packed-npm installation, and the full release gate before resolution.",
      "resolution": "Resolved by EV-064: bounded/idempotent merge, preservation tests, real git checks, and packed npm install all passed.",
      "updated_at": "2026-07-13"
    },
    {
      "id": "HLT-011",
      "severity": "medium",
      "status": "resolved",
      "summary": "Stop-reflection delivery must remain recursion-safe, duplicate-safe, fail-open, and upgrade-preserving across supported hosts.",
      "affected_ids": [
        "REQ-090"
      ],
      "linked_ids": [
        "REQ-090",
        "TRK-087",
        "PRD-004",
        "ARCH-004",
        "IMP-005",
        "EV-066"
      ],
      "created_at": "2026-07-14",
      "resolved_at": "2026-07-14",
      "recommended_action": "Run cross-host hook, concurrent CRUD, installer upgrade, full-suite, downstream pack, and release verification before resolving.",
      "resolution": "Resolved by fail-open one-pass marker behavior, strict cross-runtime CRUD validation/locking, installer migration, 727-test suite, 54 MCP tests, clean-package and upgrade smoke, and zero-CHML re-audit.",
      "updated_at": "2026-07-14"
    },
    {
      "id": "HLT-012",
      "severity": "medium",
      "status": "resolved",
      "summary": "Substrate adapter must not create split-brain project truth, leak local state, or bypass PRD MCP.",
      "affected_ids": [
        "REQ-091"
      ],
      "linked_ids": [
        "REQ-091",
        "EV-070",
        "EV-071",
        "EV-072"
      ],
      "created_at": "2026-07-14",
      "resolved_at": "2026-07-14",
      "recommended_action": "Keep exports read-only and bounded; require PRD MCP for allowlisted coordinate mutations; verify package and cross-repo contracts.",
      "resolution": "Resolved by bounded read contracts, MCP-only coordination, privacy exclusions, package-content enforcement, and fresh verification in EV-070, EV-071, and EV-072.",
      "updated_at": "2026-07-14"
    },
    {
      "id": "HLT-013",
      "severity": "high",
      "status": "resolved",
      "summary": "Binary evidence can abort downstream state validation before canonical state is evaluated",
      "affected_ids": [
        "REQ-092",
        "TRK-092"
      ],
      "linked_ids": [
        "REQ-092"
      ],
      "created_at": "2026-07-14",
      "resolved_at": "2026-07-14",
      "recommended_action": "Ship the verified text-source allowlist in 0.11.2 and verify the published package through a fresh downstream install.",
      "resolution": "Resolved in prd-plugin 0.11.2 by explicit textual claim-source filtering; 745 tests, composite gate, successful GitHub Actions publication, and npm registry verification are recorded in EV-074.",
      "updated_at": "2026-07-14"
    },
    {
      "id": "HLT-014",
      "severity": "medium",
      "status": "resolved",
      "summary": "Explicit local request routing can be overwritten and canonical .prd_plugin artifact paths can be misclassified as plugin surfaces",
      "affected_ids": [
        "REQ-093",
        "TRK-093"
      ],
      "linked_ids": [
        "REQ-093",
        "TRK-093",
        "EV-076",
        "EV-101"
      ],
      "created_at": "2026-07-14",
      "resolved_at": "2026-07-15",
      "recommended_action": "Ship and verify regression coverage that preserves explicit local scope, excludes canonical state paths from product-name matching, and retains omitted-scope plugin autosubmit.",
      "resolution": "Explicit local routing and canonical .prd_plugin paths are covered by the 0.11.3 regression and the current full suite.",
      "updated_at": "2026-07-15"
    },
    {
      "id": "HLT-015",
      "severity": "medium",
      "status": "resolved",
      "summary": "Impact-scoped verification must fail closed when selection is incomplete or degraded.",
      "affected_ids": [
        "REQ-094",
        "TRK-094"
      ],
      "linked_ids": [
        "REQ-094",
        "EV-079"
      ],
      "created_at": "2026-07-14",
      "resolved_at": "2026-07-14",
      "resolution": "EV-079 proves mandatory full fallback, complete changed-file accounting, focused tests, full release verification, and zero CHML findings.",
      "updated_at": "2026-07-14"
    },
    {
      "id": "HLT-016",
      "severity": "high",
      "status": "resolved",
      "summary": "PRD documentation and skills advertise npm run prd:adapter, but no such executable command is shipped in PRD Plugin or AI-Collab",
      "affected_ids": [
        "REQ-099",
        "TRK-111"
      ],
      "linked_ids": [
        "REQ-099",
        "TRK-111",
        "EV-101"
      ],
      "created_at": "2026-07-15",
      "resolved_at": "2026-07-15",
      "recommended_action": "Replace the nonexistent command with the versioned executable bridge and enforce command/package parity in tests.",
      "resolution": "The package now ships a valid prd:adapter entry point and all workflow guidance uses the executable runtime tools.",
      "updated_at": "2026-07-15"
    },
    {
      "id": "HLT-017",
      "severity": "high",
      "status": "resolved",
      "summary": "Judgment, delegated reporting, and impact-verification requests have no AI-Collab consumer that returns validated results and resumes workflows",
      "affected_ids": [
        "REQ-099",
        "TRK-111"
      ],
      "linked_ids": [
        "REQ-099",
        "TRK-111",
        "EV-101"
      ],
      "created_at": "2026-07-15",
      "resolved_at": "2026-07-15",
      "recommended_action": "Implement the hash-bound runtime request/result consumer, deterministic validation, exact workflow resume, and safe fallback.",
      "resolution": "The runtime worker dispatches source/hash-bound judgment and reporting requests and accepts callbacks only through deterministic validators.",
      "updated_at": "2026-07-15"
    },
    {
      "id": "HLT-018",
      "severity": "high",
      "status": "resolved",
      "summary": "AI-Collab Knowledge Hub is shipped, but PRD Plugin wiki and knowledge workflows remain repository-local",
      "affected_ids": [
        "REQ-099",
        "TRK-111"
      ],
      "linked_ids": [
        "REQ-099",
        "TRK-111",
        "EV-101"
      ],
      "created_at": "2026-07-15",
      "resolved_at": "2026-07-15",
      "recommended_action": "Connect authorized federated wiki/docs/manual search and browsing with provenance, freshness, backlinks, and local fallback.",
      "resolution": "Knowledge, memory, context and federation are integrated through configurable Substrate enrichment with local canonical fallback.",
      "updated_at": "2026-07-15"
    },
    {
      "id": "HLT-019",
      "severity": "high",
      "status": "resolved",
      "summary": "PRD tracking goals and Stop guard are not synchronized with Substrate goals, executions, and bus settlement, creating dual lifecycle authorities",
      "affected_ids": [
        "REQ-099",
        "TRK-111"
      ],
      "linked_ids": [
        "REQ-099",
        "TRK-111",
        "EV-101"
      ],
      "created_at": "2026-07-15",
      "resolved_at": "2026-07-15",
      "recommended_action": "Keep PRD state canonical and add duplicate-safe identity links, one-way projections, reconciliation diagnostics, and receipt-backed settlement.",
      "resolution": "Duplicate-safe runtime link records and one-way goal observation prevent dual lifecycle authority; PRD remains canonical.",
      "updated_at": "2026-07-15"
    },
    {
      "id": "HLT-020",
      "severity": "medium",
      "status": "open",
      "summary": "REQ-107 residual: 32 MCP handlers still execute in hand-written JS across 21 withLock sites, so the canonical write path is not yet reachable through the UTCP manual alone. Definitions are inverted to templates/tool-spec.json; execution migrates tool by tool. Contained: the server is validated and no longer authors definitions, and the target pattern is proven - prd_reflections.py and request_thread.py mutate canonical state under the same .prd_plugin/local/mcp-state.lock.",
      "affected_ids": [
        "REQ-107"
      ],
      "linked_ids": [
        "REQ-107",
        "DEC-014"
      ],
      "created_at": "2026-07-21",
      "resolved_at": null,
      "recommended_action": "Port the 32 JS handlers to validated native entry points tool by tool, flipping each spec entry from transport=mcp to transport=cli with the suite green at every step."
    },
    {
      "id": "HLT-021",
      "severity": "high",
      "status": "open",
      "summary": "The commit gate cannot see whether changed source has a test, so a repo can run the method faithfully and still ship untested code. Measured 2026-07-22: AI-Collab-v3 runs prd-plugin with hooks and the gate enabled and carries 0.19 tests per source file, against 6.97 here, 8.38 in Asset-Foundry and 8.48 in GRAPH_LANG. REQ-163 raised test-first to an always-in-force rule in all four instruction files and made that verifiable, which addresses the INSTRUCTION half; the ENFORCEMENT half is still open.",
      "affected_ids": [
        "REQ-162"
      ],
      "linked_ids": [
        "REQ-162",
        "REQ-163"
      ],
      "created_at": "2026-07-22",
      "resolved_at": null,
      "recommended_action": "Add a gate check that reports when a commit changes source files no test file references - warn by default, error where a repo opts in, and explicit about what it cannot see."
    },
    {
      "id": "HLT-022",
      "severity": "high",
      "status": "open",
      "summary": "Substrate retrieval can bypass provider policy or remain unusable while the upstream fix is pending",
      "affected_ids": [
        "REQ-164"
      ],
      "linked_ids": [
        "REQ-164"
      ],
      "created_at": "2026-07-24",
      "resolved_at": null,
      "recommended_action": "Keep the fail-closed provider-policy, correct local embed route, fast failure, and index-readiness risks visible until the receiving repository resolves them."
    },
    {
      "id": "HLT-023",
      "severity": "medium",
      "status": "open",
      "summary": "Cross-repository PRD state aggregation can expose stale or over-authoritative configuration views",
      "affected_ids": [
        "REQ-165"
      ],
      "linked_ids": [
        "REQ-165"
      ],
      "created_at": "2026-07-24",
      "resolved_at": null,
      "recommended_action": "Keep the first slice read-only, provenance-scoped, freshness-labelled, and bound to the existing per-repository snapshot contract."
    },
    {
      "id": "HLT-024",
      "severity": "high",
      "status": "resolved",
      "summary": "Reasoning Guard enforcement can interrupt valid work or persist sensitive event material if its boundaries are wrong",
      "affected_ids": [
        "REQ-171"
      ],
      "linked_ids": [
        "REQ-171",
        "TRK-157",
        "EV-203"
      ],
      "created_at": "2026-07-24",
      "resolved_at": "2026-07-24",
      "recommended_action": "Ship report-first defaults, per-category overrides, reduced-coverage disclosure, bounded sanitization, atomic state, and cross-host regression evidence.",
      "resolution": "Resolved by the shipped report-by-default, category-configurable guard with sanitized bounded atomic local state, explicit cross-host limitations, regression coverage, and release-gate evidence EV-203.",
      "updated_at": "2026-07-24"
    },
    {
      "id": "HLT-025",
      "severity": "high",
      "status": "resolved",
      "summary": "Structured reasoning diagnostics could falsely block normal execution, persist sensitive reasoning material, or overstate completion when host coverage is reduced.",
      "affected_ids": [
        "REQ-173",
        "TRK-159"
      ],
      "linked_ids": [
        "PRD-011",
        "ARCH-011",
        "IMP-013",
        "REQ-173",
        "EV-205",
        "WFR-411",
        "WFR-413"
      ],
      "created_at": "2026-07-24",
      "resolved_at": "2026-07-24",
      "recommended_action": "Keep this risk open until cross-host E2E, redaction/security, migration, latency, full-suite, and CHML evidence is recorded for release 0.16.54.",
      "resolution": "Resolved by EV-205: security/redaction, bounded migration, typed evidence, clearance semantics, cross-host parity, 100-sample latency budgets, 1,259-test full verification, final code review, and all four CHML audits passed with zero findings.",
      "updated_at": "2026-07-24"
    }
  ]
}
