Skip to content

Commit 6d9800a

Browse files
committed
docs(roadmap): separate operational status from publication audit
Signed-off-by: huangruiteng <14976749+huangruiteng@users.noreply.github.com>
1 parent fd9910b commit 6d9800a

1 file changed

Lines changed: 12 additions & 0 deletions

File tree

‎docs/architecture/rfcs/loopx-overall-roadmap-v0.md‎

Lines changed: 12 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -237,6 +237,18 @@ expansion follows from this roadmap revision.
237237

238238
Do not invent unmeasured performance targets. Before each experiment/pilot, its owner freezes thresholds, baseline, budget, stop conditions and evidence scope. A post-result threshold change belongs to a new experiment. G4 correctness requires no duplicate protected effects or stale/unauthorized commits; performance and cost thresholds require separate measured qualification.
239239

240+
Operational status used by post-writeback sinks must stay distinct from repository
241+
publication audits. A Goal Channel gate decision still reads current Goal and
242+
quota state, but a repository-wide public-boundary scan belongs to explicit
243+
`loopx check`/premerge validation, not every `refresh-state` notification
244+
attempt. The local status APIs already use this separation. For the next
245+
long-history qualification, measure the full `refresh-state` and `quota
246+
spend-slot` paths separately: lock wait, history/receipt readback, state
247+
projection, optional sink work, and result delivery. Keep the required
248+
authority and privacy checks; optimize repeated reads only with equivalent
249+
positive, negative, retry, and stale-generation outcomes. A fast sink no-op
250+
is not evidence that long-history status and quota admission meet G4 SLOs.
251+
240252

241253
## 4. Every RFC: Ownership and Next Step
242254

0 commit comments

Comments
 (0)