Requirement traceability index
Copy MarkdownThis index maps every normative section of parent specification #17 to one canonical owner and an eventual acceptance seam. Foundation means issue #18 establishes executable evidence; Future names the seam a later tracer bullet must complete. The machine-readable source is traceability.json.
Issue #25 covers Shared task API, Pi RPC lifecycle, Browser Client interaction, and both adapter rows through shared cancellation HTTP scenarios, the accepted-abort transcript, native tests, and packaged cross-adapter conformance. Issue #26 extends those rows with confirmed in-process session reset, retained-state rejection, recovery-only process replacement, and shared reset scenarios/transcripts. Issue #27 adds shared progress/failure transcripts, human-readable activity, bounded UTF-8 output with visible truncation, cancelled extension dialogs, safe protocol failure recovery, and packaged Rails/Phoenix semantic comparison. Issue #28 adds bounded task and abort deadlines, TERM-to-KILL owned-process cleanup, honest identity replacement, safe startup/exit handling, and equivalent native fake-Pi recovery/exhaustion scenarios. Issue #29 completes Rails checkout-scoped continuity with reload/fork-safe persistent clients, verified concurrent broker election, idle-only grace, and multi-process replacement/crash/cleanup coverage. Issue #30 adds rapid/stable polling, bounded network recovery, read-after-ambiguous-mutation reconciliation, single-host Turbo/LiveView lifecycle handling, conservative stale-mark removal, and current-browser cross-context/navigation acceptance. Issue #31 fixes the five-setting server-owned configuration contract, native development fail-closed activation, canonical direct spawn with inherited environment, precise startup validation, and safe unavailable-executable behavior across both adapters. Issue #32 completes exact normalized host/peer enforcement, native session CSRF with stable responses, safe logging, absent permissive CORS, persistent remote HTTP warnings, and trusted-network/proxy documentation across both adapters. Issue #33 makes Phoenix host integration discoverable or explicitly selectable, generated through one checksummed seam, dependency-free outside development, atomically updatable, collision-safe, annotation-aware, and reversibly uninstallable with packaged clean-host evidence. Issue #34 gives Rails the corresponding atomic checksummed generator, conventional or explicit ERB layout and mount selection, native development-only helper/configuration seams, mutation refusal, idempotent update, all-or-nothing inverse, and built-gem clean-host evidence. Issue #35 completes the taskbar-owned Corner composer with lifecycle semantics, native accessible controls, one live region, keyboard/focus paths, Shadow DOM isolation, narrow/200% reflow, reduced motion, and equivalent packaged-bundle DOM/current-browser evidence. Issue #36 proves the built Phoenix package and public installer in Recollect before removing its application-local runtime, API, assets, configuration, fake peer, and tests, with no provisional compatibility seam.
Issue #38 makes the complete Rails boundary matrix executable from built artifacts in clean generated applications, with a fast pull-request subset, supported Puma topology rows, synchronized MRI/Linux claims, and per-row JSON evidence. Issue #39 completes the corresponding Phoenix matrix from 1.7 through 1.8 at fixed Elixir floors and newest Elixir/OTP, using clean conventional apps, isolated built-Hex installation, controller-HEEx/LiveView evidence, and synchronized standard BEAM/Linux claims. Issue #40 completes artifact-isolated Chromium, Firefox, and WebKit example acceptance, taskbar-owned automated accessibility and lifecycle checks, and deterministic browser evidence. Issue #41 enforces protected-main source identity, lockstep versions, deterministic artifact bytes, strict package contents, clean artifact-installed acceptance, honest human-evidence prerequisites, checksums, and an immutable provenance handoff before publication. Issue #42 adds protected OIDC/credential publication, ordered registry reconciliation, public-byte and clean-install verification, durable resumable checkpoints, partial roll-forward, and tag/announcement gates exercised entirely with deterministic fakes in ordinary CI.
| Normative section | Owner | Eventual acceptance seam | Status |
|---|---|---|---|
| Problem Statement | Root tooling | Clean-checkout root verification and packaged-adapter acceptance | Foundation |
| Solution | Root tooling | Coordinated Rails and Phoenix package artifact inspection | Foundation |
| User Stories | Conformance Contract | Versioned contract scenarios mapped to adapter and browser acceptance | Future |
| Product and distribution | Root tooling | Self-contained gem and Hex package built at one root version | Foundation |
| Ownership boundaries | Root tooling | Machine-readable dependency graph and negative coupling checks | Foundation |
| Shared task API | Conformance Contract | Identical black-box HTTP scenarios against both packaged adapters | Adapter slices |
| Pi RPC lifecycle | Conformance Contract | Transcript replay through the deterministic fake Pi peer | Foundation |
| Normalized browser task context | Conformance Contract | Valid and invalid context fixtures parsed independently by both adapters | Adapter slices |
| Source-hint contract | Conformance Contract | Cross-adapter source classification fixtures plus native attribution tests | Adapter slices |
| Bounds, truncation, and normalization | Conformance Contract | Golden bounded-context fixtures compared across native validators | Adapter slices |
| Browser Client interaction | Browser Client | Browser-owned DOM and current-browser cross-tab/navigation tests plus packaged example flows | Adapter slices |
| Security and configuration | Conformance Contract | Framework-native access, CSRF, activation, and startup validation tests | Adapter slices |
| Rails Adapter | Rails Adapter | Built-gem clean-application integration and broker topology tests | Rails slice |
| Phoenix Adapter | Phoenix Adapter | Built-Hex clean-application integration and supervision tests | Phoenix slice |
| Documentation and examples | Root tooling | Documentation checks and examples installed only from built artifacts | Future |
| Versioning and coordinated release | Root tooling | Version drift, immutable artifact, checksum, and registry reconciliation gates | Foundation |
| Implementation sequence and change control | Root tooling | Traceability and clean vertical-slice gates before dependent work | Foundation |
| Test philosophy and primary seam | Conformance Contract | Behavior exercised at packaged adapter interfaces | Foundation |
| Shared Conformance Contract | Conformance Contract | Schema, fixture, scenario, transcript, and golden validation | Foundation |
| Browser Client | Browser Client | Fast DOM plus artifact-isolated Chromium, Firefox, and WebKit lifecycle, keyboard, focus, cross-tab, Turbo/LiveView navigation, reflow, reduced-motion, and axe example flows | Adapter slices |
| Accessibility | Browser Client | Taskbar-owned automated lifecycle/axe/keyboard/reflow evidence in both artifacts | Adapter slices |
| Rails-native integration | Rails Adapter | Rails installer, engine, CSRF, attribution, and broker process tests | Rails slice |
| Phoenix-native integration | Phoenix Adapter | Phoenix installer, Plug, CSRF, attribution, and OTP isolation tests | Phoenix slice |
| Compatibility matrix | Root tooling | Published matrix synchronized to clean generated application CI rows | Adapter slices |
| Examples, artifacts, documentation, and release | Root tooling | Packaged example, artifact content, documentation, and release rehearsal gates | Future |
| Out of Scope | Conformance Contract | Contract and architecture review rejects accidental unsupported interfaces | Foundation |