refactor(ddd): restore contextual-orchestrator ownership boundary - #899
refactor(ddd): restore contextual-orchestrator ownership boundary#899seonghobae wants to merge 28 commits into
Conversation
|
Important Draft PR not reviewedDraft PRs are not automatically reviewed by default.
To automatically review draft PRs, update your CodeRabbit configuration: reviews:
auto_review:
drafts: trueThanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. Comment |
Signed-off-by: Codex <codex@localhost>
|
Current-head local evidence for
This PR remains draft until #780 lands (or its exact fix is otherwise present) and current-head hosted checks/review are terminal. No provider credentials or production records were inspected. |
Merge the current #899 ownership-boundary head into the dichotomous measurement-policy stack without rewriting child history. The parent delta is the code-current Vision runtime note; the measurement policy delta remains unchanged.
Merge protected main@3f61c824 into the ownership-boundary root without rewriting history. The intervening main delta only adds the repository Pages landing source at docs/index.md and does not overlap the DDD boundary repair.
Merge the current #899 root after it incorporated protected main@3f61c824. The only new parent delta is docs/index.md; the dichotomous measurement-policy semantic delta is unchanged.
Adopt protected main@0f1d4472 without rewriting the ownership-boundary branch. The intervening protected-main delta is limited to the Tests workflow docs-only paths-ignore change and does not overlap this PR's product/DDD files.
Adopt #924's restored docs-contract test triggering while preserving the contextual-orchestrator ownership boundary without force rewrite.
seonghobae
left a comment
There was a problem hiding this comment.
Fresh ancestry review: this head still diverges from protected main at merge base b0e94aa… and is six protected commits behind. The protected-only delta is the repository-local Draft-admission workflow contract in .github/workflows/{tests,prov-o-contract,ontology-pages}.yml plus tests/test_tests_workflow_contract.py; those paths are disjoint from this PR's surviving contextual-orchestrator ownership-boundary delta. Treat the wrong base as a repair finding, not a close condition. I will first adopt the current executable workflow contract as a realistic RED against the stale workflow files, then adopt the exact protected workflow blobs and non-force converge this branch to main@83eba561…. Descendant #902/#915/#919 must then be advanced without force so their valid domain deltas remain stacked on the moved parent.
Scope
Restores the DDD/source-of-truth boundary between LineageWeave and
ContextualWisdomLab/contextual-orchestrator.LineageWeave owns product measurement/evidence policy and consumes the published orchestrator contract. Provider credentials, provider endpoints, model-agent bootstrap, provider/model discovery, routing and fallback remain in contextual-orchestrator.
Changes
docker/contextual-orchestrator/{Dockerfile,agents.json,start.py}and its obsolete bootstrap test;orchestratorCompose service; backend/MCP consume only externally suppliedORCHESTRATOR_BASE_URL/ORCHESTRATOR_API_KEY;.env.example;Fail-closed behavior
With no contextual-orchestrator consumer endpoint/credential configured, model-backed channels remain unavailable rather than calling a provider directly. No provider key or provider URL is accepted as an orchestrator credential.
TDD / review evidence
The architecture-fitness RED began at
88ad120a22fd286306e0ba49e66eb2b670c22ebc; subsequent commits remove the causes. A documentation audit then founddocs/doctoring/ACTUAL_RUNTIME_EVIDENCE_2026-08-19_VISION.mdstill describedLLM_GATEWAY_API_URL/LLM_GATEWAY_API_KEYas current LineageWeave configuration;379c44b0eb09bfb8b3aa087acd7b7729482a4360corrected that statement while preserving the historical experiment.Fresh ancestry review on
47ebceeffe1c8f5ceecc19a5768028b76c8605b5found the branch six protected commits behindmainat merge baseb0e94aa2a6f7a943f96dc5c4f2fdecd0021978a1. Review5118102878records the wrong-base finding. RED1f70eb57f77503db067b96c345c39795ab894ec4first adopted the current executable workflow contract while the branch still carried stale workflow definitions. Repairsb008a4f4744a8917a31e1e6979ab8997e937cf02,3780bfab8d6df9dadddabc6af7d85f5166b1a08c, and6dbf089d7c6ac55e46def95bc6afddff9a087f1badopted the exact protected Tests, PROV-O, and Ontology Pages Draft-admission contracts. Two-parent non-force convergencee5711282c48cc20d0a88fb56a9e382d500989c72then joined the repaired tree to protectedmain@83eba56149eb802cd63642c507c324c9976ec78ewithout rewriting the ownership-boundary delta.Exact live identity / governance
main@83eba56149eb802cd63642c507c324c9976ec78e;e5711282c48cc20d0a88fb56a9e382d500989c72;33923013869completedskipped, proving Draft admission is active without allocating the product test lane;33923013891, SAST33923013866, and CodeQL33923013917remain queued, so exact-head GREEN is not claimed;Keep Draft until unchanged-current-head security/governance evidence is terminal-clean and the required independent review is present. Do not self-approve, bypass, weaken gates, or inherit predecessor evidence.