Repository and deterministic package
- deterministic archive
- source/archive byte parity
- runtime-integrity manifest
- release-identity proof
Repository proof, live-host proof, device proof, accessibility review, security review, and performance measurement remain separate gates. A passing simulation cannot compensate for a missing production or human-review record.
Exact production interpreter contract.
Mounted at the domain root with a blank URL path.
cPanel owns the generated Passenger wrapper.
Synthetic, non-operational, and non-persistent.
A stale environment value cannot redefine the package. Every live HTML and API response should expose the same immutable release headers.
The route inventory is a pre-deployment contract. Status, redirects, headers, compression, cache behavior, and response sizes require the read-only actual-host probe.
| Condition | State | Statement |
|---|---|---|
| production_candidate_is_wip | PASS | Unfinished external acceptance remains visibly WIP. |
| candidate_identity_coherent | PASS | All active repository release-identity sources agree. |
| mixed_live_identity_preserved | PASS | Mixed public release markers are preserved rather than normalized away. |
| candidate_not_claimed_deployed | PASS | The candidate is not represented as deployed. |
| route_inventory_substantial | PASS | The public route contract covers the complete major public surface. |
| route_inventory_not_live_probe | PASS | Repository route inventory does not impersonate an actual-host probe. |
| python_exact | PASS | The cPanel interpreter contract is exact. |
| startup_contract | PASS | The startup module avoids recursive Passenger wrapping. |
| entry_contract | PASS | The WSGI callable is application. |
| blank_path | PASS | The application is mounted at the domain root. |
| no_automatic_cutover | PASS | Repository code cannot activate production. |
| no_automatic_migration | PASS | Repository code cannot migrate production automatically. |
| no_automatic_restart | PASS | Repository code cannot restart Passenger automatically. |
| no_automatic_promotion | PASS | Evidence never promotes the release automatically. |
| independent_gates | PASS | Acceptance dimensions cannot compensate for one another. |
| no_composite_score | PASS | No universal readiness score exists. |
| actual_host_not_inferred | PASS | Public mixed-release evidence does not impersonate host acceptance. |
| hardware_not_inferred | PASS | Browser API support does not impersonate physical hardware acceptance. |
| human_at_review_required | PASS | Automated accessibility checks do not impersonate human review. |
| security_not_inferred | PASS | Static checks do not impersonate production security acceptance. |
| performance_not_inferred | PASS | Unmeasured production performance cannot pass. |
| synthetic_boundary | PASS | Public convergence evidence remains synthetic and non-operational. |
| no_operational_interfaces | PASS | No live force-application path is introduced. |
| terminal_state | PASS | Every derived public action terminates at the synthetic null sink. |
MISSION-FIRST · EVIDENCE-LOCKED · MACHINE-SPEED
DETECT → VERIFY → DENY → CONTAIN → RECOVER → PROVE
Command integrity. Decision superiority. Compartment security. Attested reconstitution.