Decisions
0
Pending review
0
Approved
0
Critical open
0
Emergency pause
Inactive
Reviewer identities
7
Identity-bound reviews
0 / 0
Local review
7
Production auth
false
External IdP
false
Bindings
8
Local ready
8
Production bound
0
External required
8
Governed modules
8
Decision kinds
11
Evidence sections
8
Evidence ready
8
Production bound
0
Governance ready
false
Bindings
8
Workflows
8
Local ready
8
Production bound
0
Ops ready
false
Blocked decisions
8
Evidence items
8
Local ready
8
External authority ready
false
Production bound
0
Human Gate inputs
8
Submissions
8
Submission ready
true
Production bound
0
Human Gate inputs
8
Ops ready
false
Handoff items
1
Closure handoff ready
true
Missing candidates
7
Unsatisfied criteria
8
Partial closable
0
productionCompletionReady
false
Execution packets
5
Milestones
30
External required
5
Human Gate inputs
381
productionReadyClaimAllowed
false
Readiness signals
1
Blocked decisions
8
Human Gate decisions
8
Ready local receipts
0
Local ledger
.next/cache/wcn-agent-os/decision-ledger.json
No production side effects
deploy=false · chain=false · funds=false · humanGateProductionSubmissionReady=false · productionExternalAuthorityReady=false · partialGateCanClose=false · productionCompletionReady=false

Production authority Human Gate queue

A read-only work surface for the remaining production authority packets. It shows what needs a Human Gate decision while keeping deploy, chain write, funds, secrets, and production auth blocked.

Queue API
Packets
5
Submitted
0
Pending
0
Draft missing
5
Local approvals
0
Production claim
false
External evidence
externalEvidenceComplete=false · productionReadyClaimAllowed=false
False boundary
deploy=false · chain=false · funds=false · secrets=false · auth=false
Source
wcn-agent-os-production-authority-human-gate-queue-local-v1 · lib/agent-os/production-authority-human-gate-queue.ts · local-only · read-only
02 · wcn_product_system · public-release

WCN Product System

Production release gate

Draft not submitted
Decision
No local decision submitted
Approval progress
0 / 2 · remaining=2
Authorities
deployment_authorization
Missing external evidence
Approved release Human Gate decision with scope, owner, rollback owner, and affected public surfaces
Production deploy target, domain, branch, environment, and deploy strategy
Post-deploy HTTP smoke record attached to the release decision
Rollback owner, rollback command, threshold, and execution record
Production release evidence export with build, route, claim, smoke, and rollback proof
Next action

Create a local pending_review Human Gate draft with POST /api/agent-os/production-authority-intake/wcn-authority-intake-wcn-product-system-public-release/human-gate-draft.

Draft API

Local Human Gate draft only; no production approval or external authority is created.

05 · platform_reliability_kernel · production-observability

Platform Reliability Kernel

Production observability and operator UI

Draft not submitted
Decision
No local decision submitted
Approval progress
0 / 2 · remaining=2
Authorities
production_observability, authenticated_reviewer_identity
Missing external evidence
Production metric stream binding and dashboard URL
External alert destination with delivery audit trail
Authenticated operator identity with MFA and role claims
Incident runbook acknowledgement trail in production storage
Post-release smoke evidence attached to a release Human Gate decision
Next action

Create a local pending_review Human Gate draft with POST /api/agent-os/production-authority-intake/wcn-authority-intake-platform-reliability-kernel-production-observability/human-gate-draft.

Draft API

Local Human Gate draft only; no production approval or external authority is created.

06 · trust_proof_layer · production-proof-outputs

Trust / Proof Layer

Production proof outputs require external authority

Draft not submitted
Decision
No local decision submitted
Approval progress
0 / 2 · remaining=2
Authorities
proof_output_authority, authenticated_reviewer_identity
Missing external evidence
Production evidence storage and verifier identity binding
Authenticated PoB review queue and conflict enforcement
Versioned scoring policy and anti-gaming threshold approval
Production dispute freeze, supplement, resolution, and appeal operations
Settlement eligibility gate and no-open-dispute evidence
Reputation writer identity, rollback, and correction path
Hash-only chain anchor request handoff approval
Public proof claim language, privacy, legal, and reviewer approval
Next action

Create a local pending_review Human Gate draft with POST /api/agent-os/production-authority-intake/wcn-authority-intake-trust-proof-layer-production-proof-outputs/human-gate-draft.

Draft API

Local Human Gate draft only; no production approval or external authority is created.

07 · blockchain_anchoring_module · production-chain-adapter

Blockchain Anchoring Module

Production signer and chain adapter

Draft not submitted
Decision
No local decision submitted
Approval progress
0 / 2 · remaining=2
Authorities
signer_custody, authenticated_reviewer_identity
Missing external evidence
Production signer custody provider and custody owner
Wallet and key rotation policy with authenticated reviewer proof
Real chain adapter secret provisioned through approved production environment
Production network provider, explorer URL, finality policy, and rate limits
Broadcast authorization record attached to a chain_anchor Human Gate decision
Gas and treasury limits with real-funds authority evidence
Production retry, DLQ, reconciliation, and incident runbook evidence
Next action

Create a local pending_review Human Gate draft with POST /api/agent-os/production-authority-intake/wcn-authority-intake-blockchain-anchoring-module-production-chain-adapter/human-gate-draft.

Draft API

Local Human Gate draft only; no production approval or external authority is created.

08 · human_gate_governance · production-governance-ops

Human Gate / Governance

Authenticated production governance operations

Draft not submitted
Decision
No local decision submitted
Approval progress
0 / 2 · remaining=2
Authorities
authenticated_reviewer_identity
Missing external evidence
Production auth provider binding
MFA policy enforcement evidence
Reviewer identity proof
Role-to-reviewer mapping
Emergency pause operator roster
Segregation-of-duties enforcement evidence
Legal and organizational authority evidence pack
Next action

Create a local pending_review Human Gate draft with POST /api/agent-os/production-authority-intake/wcn-authority-intake-human-gate-governance-production-governance-ops/human-gate-draft.

Draft API

Local Human Gate draft only; no production approval or external authority is created.

Readiness review Human Gate queue

A read-only queue for proof-output readiness signals imported from production governance evidence. It shows which proof-output paths need Human Gate review while proof output, public claims, settlement, reputation, chain requests, and production side effects remain blocked.

Queue API
Signals
1
Submitted
0
Pending
0
Draft missing
1
Local approvals
0
Production claim
false
Proof output
productionProofOutputAllowed=false · productionReadyClaimAllowed=false
False boundary
deploy=false · chain=false · funds=false · secrets=false · publicProof=false
Source
wcn-agent-os-production-governance-readiness-review-queue-local-v1 · lib/agent-os/production-governance-readiness-review-queue.ts · local-only · read-only
governance-review-trust-proof-output-reliability-readiness · 06 · trust_proof_layer · proof-output-reliability-readiness

Human Gate review required: Proof outputs pass through reliability readiness before side effects

Trust / Proof Layer

Draft not submitted
Decision
No local decision submitted
Approval progress
0 / 2 · remaining=2
Proof output
productionProofOutputAllowed=false
Human Gate inputs
Approved Human Gate decision for each production proof output before public proof, settlement, reputation, chain, or public-claim side effects.
Reviewer identity, MFA, role matrix, segregation-of-duties, and decision audit export evidence for proof-output approvals.
Rollback, replay, incident, and false-boundary review for each blocked production decision.
Missing production evidence
Production Human Gate review record for each blocked proof-output decision.
Production auth, MFA, reviewer identity proof, and role-matrix evidence for proof-output approvers.
Immutable decision audit export linking upstream evidence, false boundaries, rollback plan, and affected systems.
Next action

Create a local pending_review Human Gate decision with POST /api/agent-os/decision-ledger/readiness-review-signals/governance-review-trust-proof-output-reliability-readiness/human-gate-draft.

Draft API

Local Human Gate draft only; no proof output, public claim, settlement, chain request, or production approval is created.

Module gate Human Gate queue

A read-only queue for module gate update drafts produced from verified Evolution Ledger records. It lets humans review module authority changes while the module registry remains unchanged.

Queue API
Module drafts
8
Ready
0
Submitted
0
Pending
0
Not submitted
0
Local approvals
0
Registry applied
0
Registry applied
moduleRegistryUpdatesApplied=0 · productionReadyClaimAllowed=false
False boundary
deploy=false · chain=false · funds=false · registry=false
Source
wcn-agent-os-module-gate-human-gate-queue-local-v1 · lib/agent-os/module-gate-human-gate-queue.ts · local-only · read-only
01 · meta_agent_os

Meta Agent OS

已验证进化记录被本模块采纳 · partial

Draft not ready
Decision
No local decision submitted
Approval progress
0 / 1 · remaining=1
Proposed gate
verified-evolution-adoption
Evidence
No verified cross-module evolution changes are ready for this module.
Next action

Verify the upstream evolution record before this module gate draft can be submitted to Human Gate.

Draft API
02 · wcn_product_system

WCN Product System

已验证进化记录被本模块采纳 · partial

Draft not ready
Decision
No local decision submitted
Approval progress
0 / 1 · remaining=1
Proposed gate
verified-evolution-adoption
Evidence
No verified cross-module evolution changes are ready for this module.
Next action

Verify the upstream evolution record before this module gate draft can be submitted to Human Gate.

Draft API
03 · runtime_business_agent_network

Runtime Business Agent Network

已验证进化记录被本模块采纳 · partial

Draft not ready
Decision
No local decision submitted
Approval progress
0 / 1 · remaining=1
Proposed gate
verified-evolution-adoption
Evidence
No verified cross-module evolution changes are ready for this module.
Next action

Verify the upstream evolution record before this module gate draft can be submitted to Human Gate.

Draft API
04 · agent_interoperability_gateway

Agent Interoperability Gateway

已验证进化记录被本模块采纳 · partial

Draft not ready
Decision
No local decision submitted
Approval progress
0 / 1 · remaining=1
Proposed gate
verified-evolution-adoption
Evidence
No verified cross-module evolution changes are ready for this module.
Next action

Verify the upstream evolution record before this module gate draft can be submitted to Human Gate.

Draft API
05 · platform_reliability_kernel

Platform Reliability Kernel

已验证进化记录被本模块采纳 · partial

Draft not ready
Decision
No local decision submitted
Approval progress
0 / 1 · remaining=1
Proposed gate
verified-evolution-adoption
Evidence
No verified cross-module evolution changes are ready for this module.
Next action

Verify the upstream evolution record before this module gate draft can be submitted to Human Gate.

Draft API
06 · trust_proof_layer

Trust / Proof Layer

已验证进化记录被本模块采纳 · partial

Draft not ready
Decision
No local decision submitted
Approval progress
0 / 1 · remaining=1
Proposed gate
verified-evolution-adoption
Evidence
No verified cross-module evolution changes are ready for this module.
Next action

Verify the upstream evolution record before this module gate draft can be submitted to Human Gate.

Draft API
07 · blockchain_anchoring_module

Blockchain Anchoring Module

已验证进化记录被本模块采纳 · partial

Draft not ready
Decision
No local decision submitted
Approval progress
0 / 1 · remaining=1
Proposed gate
verified-evolution-adoption
Evidence
No verified cross-module evolution changes are ready for this module.
Next action

Verify the upstream evolution record before this module gate draft can be submitted to Human Gate.

Draft API
08 · human_gate_governance

Human Gate / Governance

已验证进化记录被本模块采纳 · partial

Draft not ready
Decision
No local decision submitted
Approval progress
0 / 1 · remaining=1
Proposed gate
verified-evolution-adoption
Evidence
No verified cross-module evolution changes are ready for this module.
Next action

Verify the upstream evolution record before this module gate draft can be submitted to Human Gate.

Draft API

Module registry apply plan

A read-only apply plan for Human Gate-approved module gate drafts. It shows the exact registry mutation intent and verification commands while keeping the registry unchanged.

Apply plan API
Plans
8
Ready local
0
Waiting
0
Blocked
0
Not ready
8
Applied
0
Production claim
false
False boundary
sourceMutation=false · push=false · deploy=false · chain=false
Source
wcn-agent-os-module-gate-registry-apply-plan-local-v1 · lib/agent-os/module-gate-registry-apply-plan.ts · lib/agent-os/module-gate-registry-apply-ledger.ts · local-only · read-only
01 · meta_agent_os

Meta Agent OS

lib/agent-os/module-registry.ts · append_or_update_gate

Not ready
Decision
No approved decision
Gate
verified-evolution-adoption · partial
Plan hash
e1764e0a0837b08caf25d66544240d06e2a2ccc63d2b7cea318ef4699eabdcae
Apply endpoint
POST /api/agent-os/modules/registry-apply-plan/meta_agent_os/apply
Confirmation
APPLY_LOCAL_MODULE_GATE_OVERLAY
Local application
none
Patch preview
selector=meta_agent_os:verified-evolution-adoption
status=partial
Verification
npm run check:agent-os-modules
npm run check:agent-os-architecture
npm run check:agent-os-implementation
npm run check:agent-os-completion-roadmap
Next action

Verify the upstream evolution record and create a Human Gate draft before planning a registry update.

02 · wcn_product_system

WCN Product System

lib/agent-os/module-registry.ts · append_or_update_gate

Not ready
Decision
No approved decision
Gate
verified-evolution-adoption · partial
Plan hash
13cd039216f15cbc8ce4035ca2f9803525bb6715a31c157e256c442f3a17112a
Apply endpoint
POST /api/agent-os/modules/registry-apply-plan/wcn_product_system/apply
Confirmation
APPLY_LOCAL_MODULE_GATE_OVERLAY
Local application
none
Patch preview
selector=wcn_product_system:verified-evolution-adoption
status=partial
Verification
npm run check:mvp-local
npm run check:agent-os-product
npm run build
npm run check:agent-os-implementation
Next action

Verify the upstream evolution record and create a Human Gate draft before planning a registry update.

03 · runtime_business_agent_network

Runtime Business Agent Network

lib/agent-os/module-registry.ts · append_or_update_gate

Not ready
Decision
No approved decision
Gate
verified-evolution-adoption · partial
Plan hash
4b923dd19eed3604b5045b4edd35a9a97eed7c1e74a58d01ff3aa5f952506ec3
Apply endpoint
POST /api/agent-os/modules/registry-apply-plan/runtime_business_agent_network/apply
Confirmation
APPLY_LOCAL_MODULE_GATE_OVERLAY
Local application
none
Patch preview
selector=runtime_business_agent_network:verified-evolution-adoption
status=partial
Verification
npm run test -- lib/mvp/__tests__/wcn-mvp-agent-run-bridge.test.ts
npm run check:agent-os-runtime
npm run check:agent-os-implementation
npm run check:agent-os-modules
Next action

Verify the upstream evolution record and create a Human Gate draft before planning a registry update.

04 · agent_interoperability_gateway

Agent Interoperability Gateway

lib/agent-os/module-registry.ts · append_or_update_gate

Not ready
Decision
No approved decision
Gate
verified-evolution-adoption · partial
Plan hash
ba4a7d508a104f37dfcc618dafa3fa624558ff694094e33e6f80d3220bd80fe1
Apply endpoint
POST /api/agent-os/modules/registry-apply-plan/agent_interoperability_gateway/apply
Confirmation
APPLY_LOCAL_MODULE_GATE_OVERLAY
Local application
none
Patch preview
selector=agent_interoperability_gateway:verified-evolution-adoption
status=partial
Verification
npm run check:agent-os-implementation
npm run check:agent-os-gateway
npm run check:agent-os-modules
npm run check:agent-os-governance
Next action

Verify the upstream evolution record and create a Human Gate draft before planning a registry update.

05 · platform_reliability_kernel

Platform Reliability Kernel

lib/agent-os/module-registry.ts · append_or_update_gate

Not ready
Decision
No approved decision
Gate
verified-evolution-adoption · partial
Plan hash
29c6e51f65393836fdabcc3e8a2f8ab8d68247b9da102c3d6c6393e5a900eda9
Apply endpoint
POST /api/agent-os/modules/registry-apply-plan/platform_reliability_kernel/apply
Confirmation
APPLY_LOCAL_MODULE_GATE_OVERLAY
Local application
none
Patch preview
selector=platform_reliability_kernel:verified-evolution-adoption
status=partial
Verification
npm run check:agent-os-implementation
npm run check:agent-os-reliability
npm run check:agent-os-modules
npm run check:agent-os-governance
Next action

Verify the upstream evolution record and create a Human Gate draft before planning a registry update.

06 · trust_proof_layer

Trust / Proof Layer

lib/agent-os/module-registry.ts · append_or_update_gate

Not ready
Decision
No approved decision
Gate
verified-evolution-adoption · partial
Plan hash
43bdfd5c9b3f42d58c21aa09a42244227bca88dc00810c936eada58d3b9b8ced
Apply endpoint
POST /api/agent-os/modules/registry-apply-plan/trust_proof_layer/apply
Confirmation
APPLY_LOCAL_MODULE_GATE_OVERLAY
Local application
none
Patch preview
selector=trust_proof_layer:verified-evolution-adoption
status=partial
Verification
npm run check:mvp-local
npm run check:agent-os-proof
npm run check:agent-os-reliability
npm run check:agent-os-completion-roadmap
Next action

Verify the upstream evolution record and create a Human Gate draft before planning a registry update.

07 · blockchain_anchoring_module

Blockchain Anchoring Module

lib/agent-os/module-registry.ts · append_or_update_gate

Not ready
Decision
No approved decision
Gate
verified-evolution-adoption · partial
Plan hash
0169a28497340aa5e31ed0932522a8f40ffce92d7de39e43a21e1161c5093f73
Apply endpoint
POST /api/agent-os/modules/registry-apply-plan/blockchain_anchoring_module/apply
Confirmation
APPLY_LOCAL_MODULE_GATE_OVERLAY
Local application
none
Patch preview
selector=blockchain_anchoring_module:verified-evolution-adoption
status=partial
Verification
npm run check:agent-os-implementation
npm run check:agent-os-chain
npm run check:agent-os-modules
npm run check:agent-os-governance
Next action

Verify the upstream evolution record and create a Human Gate draft before planning a registry update.

08 · human_gate_governance

Human Gate / Governance

lib/agent-os/module-registry.ts · append_or_update_gate

Not ready
Decision
No approved decision
Gate
verified-evolution-adoption · partial
Plan hash
c39a74b574b98de7d714bcaef06c57063c2fc294818a53f52046dcde8a6cef79
Apply endpoint
POST /api/agent-os/modules/registry-apply-plan/human_gate_governance/apply
Confirmation
APPLY_LOCAL_MODULE_GATE_OVERLAY
Local application
none
Patch preview
selector=human_gate_governance:verified-evolution-adoption
status=partial
Verification
npm run check:mvp-local
npm run check:agent-os-governance
npm run check:agent-os-completion-roadmap
npm run check:agent-os-implementation
Next action

Verify the upstream evolution record and create a Human Gate draft before planning a registry update.

Production governance closure handoff package

A local takeover package that fuses governance ops, external authority evidence, Human Gate submission, and the production-governance-ops closure matrix row so the gate remains explicit, blocked, and verifiable.

wcn-agent-os-production-governance-closure-handoff-local-v1
wcn-production-governance-closure-handoff-production-governance-ops

Authenticated production governance operations

wcn-module-completion-work-order-1-human_gate_governance-production-governance-ops

draft_not_submitted
Required candidates
7
Missing candidates
7
Closure criteria
8
Unsatisfied criteria
8
Closure draft status
draft_not_submitted
Partial closable
false
Closure matrix row
wcn-module-completion-closure-matrix-1-human_gate_governance-production-governance-ops
wcn-module-completion-execution-packet-1-human-gate-governance-production-governance-ops
/api/agent-os/production-readiness/closure-review/production-governance-ops/human-gate-draft
Closure blockers
7 required evidence candidates are missing for production-governance-ops.
8 closure criteria remain unsatisfied for production-governance-ops.
closureEvidenceStored=false and acceptedForHumanGateClosureReview=false.
closureReviewStatus=awaiting_dry_run_accepted_closure_evidence_bundle; closureEvidenceAcceptedLocal=false.
closureHumanGateDecisionStatus=draft_not_submitted; decisionSubmitted=false.
Production execution records, post-execution verification, rollback readiness, and ready-claim approval are still external Human Gate dependencies.
External production authority evidence has not been submitted to Human Gate.
The local handoff package cannot close production-governance-ops without real production execution and post-execution verification.
Next actions
Submit redacted candidate metadata for all 7 evidence requests in production-governance-ops.
Dry-run a complete closure evidence bundle with POST /api/agent-os/production-readiness/closure-evidence.
Submit a closure review draft with POST /api/agent-os/production-readiness/closure-review/production-governance-ops/human-gate-draft only after the closure evidence dry-run is accepted.
Record independent Human Gate review decisions without self-approval.
Attach real production execution records and post-execution verification outside local-only mode before any production-ready claim.
Submit all eight production governance authority evidence groups through the Human Gate package.
Keep productionAuthBound=false and productionSideEffectExecuted=false until an approved production authority packet exists.
Validation
npm run check:mvp-local
npm run check:agent-os-governance
npm run check:agent-os-completion-roadmap
npm run check:agent-os-implementation
curl -s http://localhost:3000/api/agent-os/modules/completion-roadmap
curl -s http://localhost:3000/api/agent-os/modules/completion-work-orders
curl -s http://localhost:3000/api/agent-os/decision-ledger/production-governance-ops
curl -s http://localhost:3000/api/agent-os/decision-ledger/production-external-authority-evidence
curl -s http://localhost:3000/api/agent-os/decision-ledger/production-governance-human-gate-submission
curl -s http://localhost:3000/api/agent-os/modules/completion-work-orders/execution-packets
Workflows
wcn-governance-ops-production-authority-intake
wcn-governance-ops-authenticated-reviewer-session
wcn-governance-ops-mfa-role-matrix-preflight
wcn-governance-ops-readiness-review-queue-triage
wcn-governance-ops-proof-output-authorization
wcn-governance-ops-release-deploy-chain-funds-guardrail
wcn-governance-ops-emergency-pause-rehearsal
wcn-governance-ops-decision-audit-export-handoff
Evidence items
wcn-governance-external-authority-auth-provider
wcn-governance-external-authority-mfa-policy
wcn-governance-external-authority-reviewer-proof
wcn-governance-external-authority-role-matrix
wcn-governance-external-authority-segregation-duties
wcn-governance-external-authority-emergency-pause
wcn-governance-external-authority-audit-export
wcn-governance-external-authority-legal-authority
Submissions
wcn-prod-gov-submission-auth-provider
wcn-prod-gov-submission-mfa-policy
wcn-prod-gov-submission-reviewer-identity-proof
wcn-prod-gov-submission-role-reviewer-matrix
wcn-prod-gov-submission-segregation-of-duties
wcn-prod-gov-submission-emergency-pause-roster
wcn-prod-gov-submission-decision-audit-export
wcn-prod-gov-submission-legal-authority-ready-claim
False boundary
productionAuthProviderBound=false
productionMfaEnforced=false
productionReviewerIdentityProofBound=false
productionRoleMatrixBound=false
productionEmergencyPauseRosterBound=false
productionDecisionAuditExportBound=false
legalAuthorityBound=false
closureEvidenceStored=false
productionEvidenceComplete=false
partialGateCanClose=false
productionCompletionReady=false
productionReadyClaimAllowed=false
productionDeployExecuted=false
productionChainWriteExecuted=false
realFundsTouched=false
productionSecretsLoaded=false
productionProofOutputAllowed=false
productionSideEffectExecuted=false
source=lib/agent-os/production-governance-closure-handoff.ts · localOnly=true · readOnly=true · productionBound=false · productionCompletionReady=false

Module completion execution packet queue

The four production-gate completion work orders are bound to local evidence systems, Human Gate submission packets, fixed-agent roles, local milestones, and blocked production boundaries.

wcn-agent-os-module-completion-execution-packets-local-v1
wcn-module-completion-execution-packet-1-human-gate-governance-production-governance-ops

08 · Human Gate / Governance

Execute the governance completion work order locally by preparing the production governance Human Gate packet without binding production authority.

external_authority_blocked
Work order lead
14-governance-human-gate
Reviewer
10-ship-review
Publish gate
11-publish-gate
Milestones
6
Active work order
wcn-module-completion-work-order-1-human_gate_governance-production-governance-ops
governanceOpsWorkflows
count=8
lib/agent-os/production-governance-ops-command-center.ts
externalAuthorityEvidenceItems
count=8
lib/agent-os/production-governance-external-authority-evidence.ts
humanGateSubmissionSteps
count=8
lib/agent-os/production-governance-human-gate-submission.ts
01 · 01-wcn-conductor
Lock completion work order and local-only boundary

A task spec that names production-governance-ops, fixed-agent roles, no push, no deploy, no chain write, no real funds, and no production secrets.

localOnly=true · productionActionAllowed=false
02 · 14-governance-human-gate
Bind governance ops command center

The eight local governance ops workflows are mapped to Human Gate authority intake, reviewer sessions, MFA, role matrix, readiness triage, proof output, irreversible-action guardrails, emergency pause, and audit export.

localOnly=true · productionActionAllowed=false
03 · 08-auth-rbac-security
Bind external authority evidence matrix

External production evidence is listed as a Human Gate requirement without treating local metadata as production authority.

localOnly=true · productionActionAllowed=false
04 · 12-docs-memory
Bind Human Gate submission package

Human Gate submission steps, missing production evidence, and local acceptance commands are ready for review.

localOnly=true · productionActionAllowed=false
05 · 10-ship-review
Review closure-blocking evidence gaps

Ship review confirms every missing production binding remains visible and no local packet is treated as production completion.

localOnly=true · productionActionAllowed=false
06 · 11-publish-gate
Block production-ready claim

Publish gate confirms the execution packet is locally reviewable and still externally blocked.

localOnly=true · productionActionAllowed=false
Validation
npm run check:mvp-local
npm run check:agent-os-governance
npm run check:agent-os-completion-roadmap
npm run check:agent-os-implementation
curl -s http://localhost:3000/api/agent-os/modules/completion-roadmap
curl -s http://localhost:3000/api/agent-os/modules/completion-work-orders
curl -s http://localhost:3000/api/agent-os/decision-ledger/production-governance-ops
curl -s http://localhost:3000/api/agent-os/decision-ledger/production-external-authority-evidence
Human Gate inputs
Production auth provider binding
MFA policy enforcement evidence
Reviewer identity proof
Role-to-reviewer mapping
Emergency pause operator roster
Segregation-of-duties enforcement evidence
Legal and organizational authority evidence pack
Legal entity or delegated authority source
Missing production evidence
Legal or organizational authority proof
Production reviewer roster approval
Authority expiry and revocation evidence
Production auth provider configuration
Reviewer identity proof
Production session assurance audit record
Production MFA enforcement proof
Production role matrix adoption record
False boundary
workOrderExecutesProduction=false
productionAuthProviderBound=false
productionMfaEnforced=false
legalAuthorityBound=false
productionDeployExecuted=false
productionChainWriteExecuted=false
realFundsTouched=false
productionSecretsLoaded=false
productionProofOutputAllowed=false
productionReadyClaimAllowed=false
scopeExpansionExecuted=false
productionSideEffectExecuted=false
wcn-module-completion-execution-packet-2-platform-reliability-kernel-production-observability

05 · Platform Reliability Kernel

Execute the reliability completion work order locally by preparing observability, operator, cutover, external-binding, and Human Gate evidence without activating production monitoring or incident operations.

external_authority_blocked
Work order lead
07-backend-data
Reviewer
14-governance-human-gate
Publish gate
11-publish-gate
Milestones
6
Active work order
wcn-module-completion-work-order-2-platform_reliability_kernel-production-observability
observabilityBindings
count=6
lib/agent-os/production-observability.ts
operatorWorkflows
count=7
lib/agent-os/production-observability-operator-console.ts
cutoverEvidenceItems
count=8
lib/agent-os/production-observability-cutover-evidence.ts
externalBindingItems
count=8
lib/agent-os/production-observability-external-binding-evidence.ts
humanGateSubmissionSteps
count=8
lib/agent-os/production-observability-human-gate-submission.ts
01 · 01-wcn-conductor
Lock completion work order and local-only boundary

A task spec that names production-observability, fixed-agent roles, no push, no deploy, no chain write, no real funds, and no production secrets.

localOnly=true · productionActionAllowed=false
02 · 07-backend-data
Bind production observability control map

Metrics, alert delivery, authenticated operator, runbook acknowledgement, incident timeline, and release smoke probe bindings are visible without claiming production observability.

localOnly=true · productionActionAllowed=false
03 · 08-auth-rbac-security
Bind production observability external evidence

External production evidence is listed as a Human Gate requirement without treating local metadata as production authority.

localOnly=true · productionActionAllowed=false
04 · 09-qa-browser
Bind observability Human Gate submission package

Human Gate submission steps, missing production evidence, and local acceptance commands are ready for review.

localOnly=true · productionActionAllowed=false
05 · 14-governance-human-gate
Review closure-blocking evidence gaps

Ship review confirms every missing production binding remains visible and no local packet is treated as production completion.

localOnly=true · productionActionAllowed=false
06 · 11-publish-gate
Block production-ready claim

Publish gate confirms the execution packet is locally reviewable and still externally blocked.

localOnly=true · productionActionAllowed=false
Validation
npm run check:agent-os-implementation
npm run check:agent-os-reliability
npm run check:agent-os-completion-roadmap
curl -s http://localhost:3000/api/agent-os/modules/completion-roadmap
curl -s http://localhost:3000/api/agent-os/modules/completion-work-orders
curl -s http://localhost:3000/api/agent-os/reliability-kernel/production-observability
curl -s http://localhost:3000/api/agent-os/reliability-kernel/production-operator-console
curl -s http://localhost:3000/api/agent-os/reliability-kernel/production-observability-external-binding-evidence
Human Gate inputs
Production metric stream binding and dashboard URL
External alert destination with delivery audit trail
Authenticated operator identity with MFA and role claims
Incident runbook acknowledgement trail in production storage
Post-release smoke evidence attached to a release Human Gate decision
Release approval decision id
Approved production smoke routes
Rollback owner and rollback command
Missing production evidence
Bind metrics to a production observability backend.
Record metric names, retention, dashboard URL, and escalation owner.
Verify metrics are emitted from the production runtime, not only local JSON state.
Bind critical and warning alerts to an external delivery channel.
Record rate limits, dedupe key, on-call owner, and delivery audit trail.
Confirm no alert destination can trigger production side effects by itself.
Bind operator actions to production auth, MFA, and role claims.
Map operator roles to allowed reliability actions.
False boundary
workOrderExecutesProduction=false
productionAuthProviderBound=false
productionMfaEnforced=false
legalAuthorityBound=false
productionDeployExecuted=false
productionChainWriteExecuted=false
realFundsTouched=false
productionSecretsLoaded=false
productionProofOutputAllowed=false
productionReadyClaimAllowed=false
scopeExpansionExecuted=false
productionSideEffectExecuted=false
wcn-module-completion-execution-packet-3-trust-proof-layer-production-proof-outputs

06 · Trust / Proof Layer

Execute the proof output completion work order locally by preparing proof controls, reliability readiness, external binding evidence, and Human Gate submission packets without publishing proof, touching funds, writing reputation, or sending chain requests.

external_authority_blocked
Work order lead
07-backend-data
Reviewer
14-governance-human-gate
Publish gate
11-publish-gate
Milestones
6
Active work order
wcn-module-completion-work-order-3-trust_proof_layer-production-proof-outputs
proofControls
count=8
lib/agent-os/production-proof-controls.ts
proofReliabilityDecisions
count=8
lib/agent-os/trust-proof-reliability-readiness.ts
proofExternalBindingItems
count=8
lib/agent-os/production-proof-external-binding-evidence.ts
proofHumanGateSubmissionSteps
count=8
lib/agent-os/production-proof-human-gate-submission.ts
01 · 01-wcn-conductor
Lock completion work order and local-only boundary

A task spec that names production-proof-outputs, fixed-agent roles, no push, no deploy, no chain write, no real funds, and no production secrets.

localOnly=true · productionActionAllowed=false
02 · 07-backend-data
Bind production proof controls and reliability readiness

Verified evidence source, PoB review queue, scoring policy, dispute ops, settlement eligibility, reputation signal, chain anchor request, and public proof claim controls are visible through reliability readiness before side effects.

localOnly=true · productionActionAllowed=false
03 · 02-product-truth
Bind production proof external evidence

External production evidence is listed as a Human Gate requirement without treating local metadata as production authority.

localOnly=true · productionActionAllowed=false
04 · 09-qa-browser
Bind proof Human Gate submission package

Human Gate submission steps, missing production evidence, and local acceptance commands are ready for review.

localOnly=true · productionActionAllowed=false
05 · 14-governance-human-gate
Review closure-blocking evidence gaps

Ship review confirms every missing production binding remains visible and no local packet is treated as production completion.

localOnly=true · productionActionAllowed=false
06 · 11-publish-gate
Block production-ready claim

Publish gate confirms the execution packet is locally reviewable and still externally blocked.

localOnly=true · productionActionAllowed=false
Validation
npm run check:mvp-local
npm run check:agent-os-proof
npm run check:agent-os-reliability
npm run check:agent-os-completion-roadmap
npm run check:agent-os-implementation
curl -s http://localhost:3000/api/agent-os/modules/completion-roadmap
curl -s http://localhost:3000/api/agent-os/modules/completion-work-orders
curl -s http://localhost:3000/api/agent-os/trust-proof-layer/production-proof-controls
Human Gate inputs
Production evidence storage and verifier identity binding
Authenticated PoB review queue and conflict enforcement
Versioned scoring policy and anti-gaming threshold approval
Production dispute freeze, supplement, resolution, and appeal operations
Settlement eligibility gate and no-open-dispute evidence
Reputation writer identity, rollback, and correction path
Hash-only chain anchor request handoff approval
Public proof claim language, privacy, legal, and reviewer approval
Missing production evidence
Bind evidence packets to durable production evidence storage.
Record evidence owner, verifier, hash, timestamp, and source system.
Reject PoB draft creation when the production evidence source is missing or unverified.
Persist PoB review items in an authenticated production queue.
Assign reviewer identity, deadline, evidence scope, and conflict checks.
Block runtime agents from approving their own PoB drafts.
Version production scoring rules and anti-gaming thresholds.
Bind scoring changes to Evolution Ledger and Human Gate where high impact.
False boundary
workOrderExecutesProduction=false
productionAuthProviderBound=false
productionMfaEnforced=false
legalAuthorityBound=false
productionDeployExecuted=false
productionChainWriteExecuted=false
realFundsTouched=false
productionSecretsLoaded=false
productionProofOutputAllowed=false
productionReadyClaimAllowed=false
scopeExpansionExecuted=false
productionSideEffectExecuted=false
wcn-module-completion-execution-packet-4-wcn-product-system-public-release

02 · WCN Product System

Execute the product release completion work order locally by preparing release gate, evidence, execution plan, cutover, production binding, and Human Gate submission packets without deploying or publishing production claims.

external_authority_blocked
Work order lead
02-product-truth
Reviewer
14-governance-human-gate
Publish gate
11-publish-gate
Milestones
6
Active work order
wcn-module-completion-work-order-4-wcn_product_system-public-release
releaseGateBindings
count=10
lib/agent-os/product-release-gate.ts
releaseEvidenceSections
count=8
lib/agent-os/product-release-evidence.ts
releaseExecutionPhases
count=8
lib/agent-os/product-release-execution-plan.ts
cutoverWorkflows
count=8
lib/agent-os/product-release-cutover-command-center.ts
productionBindingItems
count=10
lib/agent-os/product-release-production-binding-evidence.ts
humanGateSubmissionSteps
count=8
lib/agent-os/product-release-human-gate-submission.ts
01 · 01-wcn-conductor
Lock completion work order and local-only boundary

A task spec that names public-release, fixed-agent roles, no push, no deploy, no chain write, no real funds, and no production secrets.

localOnly=true · productionActionAllowed=false
02 · 02-product-truth
Bind public release gate and execution plan

Release decision, source freeze, build/route acceptance, deployment target, smoke, rollback, API access, evidence export, and ready-claim controls are visible without production release execution.

localOnly=true · productionActionAllowed=false
03 · 04-public-site
Bind product release production evidence

External production evidence is listed as a Human Gate requirement without treating local metadata as production authority.

localOnly=true · productionActionAllowed=false
04 · 06-native-dashboard
Bind product release Human Gate submission package

Human Gate submission steps, missing production evidence, and local acceptance commands are ready for review.

localOnly=true · productionActionAllowed=false
05 · 14-governance-human-gate
Review closure-blocking evidence gaps

Ship review confirms every missing production binding remains visible and no local packet is treated as production completion.

localOnly=true · productionActionAllowed=false
06 · 11-publish-gate
Block production-ready claim

Publish gate confirms the execution packet is locally reviewable and still externally blocked.

localOnly=true · productionActionAllowed=false
Validation
npm run check:mvp-local
npm run check:agent-os-product
npm run build
npm run check:agent-os-implementation
npm run check:agent-os-completion-roadmap
curl -s http://localhost:3000/api/agent-os/modules/completion-roadmap
curl -s http://localhost:3000/api/agent-os/modules/completion-work-orders
curl -s http://localhost:3000/api/agent-os/product-system/release-gate
Human Gate inputs
Approved release Human Gate decision with scope, owner, rollback owner, and affected public surfaces
Production deploy target, domain, branch, environment, and deploy strategy
Post-deploy HTTP smoke record attached to the release decision
Rollback owner, rollback command, threshold, and execution record
Production release evidence export with build, route, claim, smoke, and rollback proof
Release scope, public surfaces, release owner, rollback owner, and affected claims.
Authenticated reviewer identity with segregation-of-duties evidence.
Explicit approval or rejection decision linked to the evidence export.
Missing production evidence
Create a release decision with explicit scope, release owner, rollback owner, and affected public surfaces.
Require authenticated reviewer identity and segregation-of-duties evidence before approval.
Attach all release evidence ids before the decision can authorize deployment.
Freeze source documents, route list, release notes, and public claim registry for the release candidate.
Record the exact source paths and hash manifest used to build the public surface.
Reject manual edits to generated public artifacts after freeze.
Run a clean production build from the frozen source candidate.
Record build command, commit or worktree identifier, timestamp, and artifact digest.
False boundary
workOrderExecutesProduction=false
productionAuthProviderBound=false
productionMfaEnforced=false
legalAuthorityBound=false
productionDeployExecuted=false
productionChainWriteExecuted=false
realFundsTouched=false
productionSecretsLoaded=false
productionProofOutputAllowed=false
productionReadyClaimAllowed=false
scopeExpansionExecuted=false
productionSideEffectExecuted=false
wcn-module-completion-execution-packet-5-blockchain-anchoring-module-production-chain-adapter

07 · Blockchain Anchoring Module

Execute the chain adapter completion work order locally by preparing signer, wallet, adapter, broadcast, external binding, and Human Gate evidence without touching keys, funds, or real chain broadcasts.

external_authority_blocked
Work order lead
07-backend-data
Reviewer
14-governance-human-gate
Publish gate
11-publish-gate
Milestones
6
Active work order
wcn-module-completion-work-order-5-blockchain_anchoring_module-production-chain-adapter
adapterBindings
count=8
lib/agent-os/production-chain-adapter.ts
evidenceSections
count=8
lib/agent-os/production-chain-evidence.ts
broadcastReadinessWorkflows
count=8
lib/agent-os/production-chain-broadcast-readiness.ts
externalBindingItems
count=8
lib/agent-os/production-chain-external-binding-evidence.ts
humanGateSubmissionSteps
count=8
lib/agent-os/production-chain-human-gate-submission.ts
01 · 01-wcn-conductor
Lock completion work order and local-only boundary

A task spec that names production-chain-adapter, fixed-agent roles, no push, no deploy, no chain write, no real funds, and no production secrets.

localOnly=true · productionActionAllowed=false
02 · 07-backend-data
Bind production chain adapter map

Signer custody, wallet policy, adapter secrets, network provider, broadcast authorization, gas limits, retry reconciliation, and explorer verification are visible without production chain access.

localOnly=true · productionActionAllowed=false
03 · 08-auth-rbac-security
Bind production chain external evidence

External production evidence is listed as a Human Gate requirement without treating local metadata as production authority.

localOnly=true · productionActionAllowed=false
04 · 09-qa-browser
Bind chain Human Gate submission package

Human Gate submission steps, missing production evidence, and local acceptance commands are ready for review.

localOnly=true · productionActionAllowed=false
05 · 14-governance-human-gate
Review closure-blocking evidence gaps

Ship review confirms every missing production binding remains visible and no local packet is treated as production completion.

localOnly=true · productionActionAllowed=false
06 · 11-publish-gate
Block production-ready claim

Publish gate confirms the execution packet is locally reviewable and still externally blocked.

localOnly=true · productionActionAllowed=false
Validation
npm run check:agent-os-implementation
npm run check:agent-os-chain
npm run check:agent-os-completion-roadmap
curl -s http://localhost:3000/api/agent-os/modules/completion-roadmap
curl -s http://localhost:3000/api/agent-os/modules/completion-work-orders
curl -s http://localhost:3000/api/agent-os/blockchain-anchoring/production-chain-adapter
curl -s http://localhost:3000/api/agent-os/blockchain-anchoring/production-evidence
curl -s http://localhost:3000/api/agent-os/blockchain-anchoring/production-broadcast-readiness
Human Gate inputs
Production signer custody provider and custody owner
Wallet and key rotation policy with authenticated reviewer proof
Real chain adapter secret provisioned through approved production environment
Production network provider, explorer URL, finality policy, and rate limits
Broadcast authorization record attached to a chain_anchor Human Gate decision
Gas and treasury limits with real-funds authority evidence
Production retry, DLQ, reconciliation, and incident runbook evidence
Approved custody provider and signer manifest id.
Missing production evidence
Bind a production signer custody provider or hardware-backed wallet policy outside local-only mode.
Record custody owner, key rotation authority, backup policy, and emergency pause owner.
Require Human Gate approval before the custody reference can be enabled.
Define who can rotate, pause, recover, and audit production signer keys.
Map signer actions to authenticated reviewer identity and segregation-of-duties rules.
Attach wallet policy evidence to the chain-adapter Human Gate decision.
Provision RPC, signer, indexer, and adapter secrets through approved production environment settings.
Record secret owner, rotation cadence, least-privilege scope, and no-secret-in-artifact evidence.
False boundary
workOrderExecutesProduction=false
productionAuthProviderBound=false
productionMfaEnforced=false
legalAuthorityBound=false
productionDeployExecuted=false
productionChainWriteExecuted=false
realFundsTouched=false
productionSecretsLoaded=false
productionProofOutputAllowed=false
productionReadyClaimAllowed=false
scopeExpansionExecuted=false
productionSideEffectExecuted=false
source=lib/agent-os/module-completion-execution-packets.ts · localOnly=true · readOnly=true · productionCompletionReady=false · productionReadyClaimAllowed=false

Production governance Human Gate submission package

A local ordered package for submitting production auth provider, MFA policy, reviewer proof, role matrix, segregation of duties, emergency pause roster, decision audit export, and legal authority evidence to Human Gate without binding production authority.

wcn-agent-os-production-governance-human-gate-submission-local-v1
01 · auth_provider_submission · 08-human-gate-governance

Production auth provider submission

Submit the production auth provider, issuer, subject mapping, session assurance, and revocation evidence before any production review can count.

productionBound=false
Upstream refs
lib/agent-os/reviewer-identity.ts
lib/agent-os/production-governance.ts
app/api/agent-os/decision-ledger/reviewer-identities/route.ts
Human Gate inputs
Approved production auth provider and environment
Reviewer issuer, subject mapping, session id, and assurance policy
Revocation and replacement owner for production reviewers
Missing production evidence
Production auth provider configuration
Reviewer subject mapping proof
Production session assurance audit record
Validation
npm run check:agent-os-governance
GET /api/agent-os/decision-ledger/reviewer-identities
GET /api/agent-os/decision-ledger/production-governance-human-gate-submission
Decision kinds
release
deploy
funds
legal
chain_anchor
public_claim
scope_expansion
autonomy
source_deletion
external_write
emergency_pause
Required production binding
wcn-prod-gov-auth-provider
Evidence sections
wcn-governance-evidence-auth-provider
Workflows
production_authority_intake
authenticated_reviewer_session
External authority kinds
auth_provider_binding
02 · mfa_policy_submission · auth-rbac-security

MFA policy submission

Submit the MFA enforcement policy, accepted methods, decision-kind assurance levels, expiry, and fail-closed evidence for high-impact production reviews.

productionBound=false
Upstream refs
lib/agent-os/production-governance.ts
lib/agent-os/production-governance-evidence.ts
lib/agent-os/production-readiness.ts
Human Gate inputs
MFA policy owner and accepted methods
Decision-kind-to-assurance-level matrix
Expiry and re-authentication policy
Missing production evidence
Production MFA enforcement proof
MFA method and timestamp on production reviews
Rejected-review audit record for stale or missing MFA
Validation
npm run check:agent-os-governance
npm run check:agent-os-production-readiness
GET /api/agent-os/decision-ledger/production-governance-human-gate-submission
Decision kinds
release
deploy
funds
legal
chain_anchor
scope_expansion
source_deletion
Required production binding
wcn-prod-gov-mfa-policy
Evidence sections
wcn-governance-evidence-mfa-policy
Workflows
mfa_role_matrix_preflight
External authority kinds
mfa_policy_binding
03 · reviewer_identity_proof_submission · governance-human-gate

Reviewer identity proof submission

Submit real reviewer identity proof, organization role, delegated authority, affected-system scope, and revocation evidence before production approval.

productionBound=false
Upstream refs
lib/agent-os/reviewer-identity.ts
app/api/agent-os/decision-ledger/[decisionId]/review/route.ts
lib/agent-os/__tests__/reviewer-identity.test.ts
Human Gate inputs
Named reviewer roster with organization roles
Delegation or legal authority source for each reviewer class
Revocation and replacement owner for reviewer authority changes
Missing production evidence
Authenticated reviewer identity proof
Organization role or delegation record
Reviewer revocation and replacement evidence
Validation
npm run check:agent-os-governance
GET /api/agent-os/decision-ledger/reviewer-identities
GET /api/agent-os/decision-ledger/production-governance-human-gate-submission
Decision kinds
release
deploy
funds
legal
chain_anchor
public_claim
scope_expansion
autonomy
source_deletion
external_write
emergency_pause
Required production binding
wcn-prod-gov-reviewer-proof
Evidence sections
wcn-governance-evidence-reviewer-identity
Workflows
authenticated_reviewer_session
proof_output_authorization
External authority kinds
reviewer_identity_proof_binding
04 · role_reviewer_matrix_submission · 08-human-gate-governance

Role reviewer matrix submission

Submit the production role-to-reviewer matrix, thresholds, affected-system scope, escalation rules, and Evolution Ledger adoption record.

productionBound=false
Upstream refs
lib/agent-os/reviewer-identity.ts
lib/agent-os/evolution-ledger.ts
lib/agent-os/production-governance.ts
Human Gate inputs
Approved role-to-reviewer matrix version
Allowed decision kinds, modules, affected systems, and thresholds
Evolution Ledger adoption or rollback record
Missing production evidence
Production role matrix version
Role claim to reviewer mapping proof
Evolution Ledger adoption record
Validation
npm run check:agent-os-governance
npm run check:agent-os-evolution
GET /api/agent-os/decision-ledger/production-governance-human-gate-submission
Decision kinds
release
deploy
funds
legal
chain_anchor
public_claim
scope_expansion
autonomy
source_deletion
external_write
emergency_pause
Required production binding
wcn-prod-gov-role-reviewer-matrix
Evidence sections
wcn-governance-evidence-role-reviewer-matrix
Workflows
mfa_role_matrix_preflight
External authority kinds
role_reviewer_matrix_binding
05 · segregation_of_duties_submission · governance-human-gate

Segregation of duties submission

Submit requester, deployer, signer, fund operator, and final-approver separation rules before release, deploy, chain, funds, or emergency approvals.

productionBound=false
Upstream refs
lib/agent-os/decision-ledger.ts
lib/agent-os/production-governance-evidence.ts
lib/agent-os/production-governance-ops-command-center.ts
Human Gate inputs
Segregation-of-duties rule by decision kind
Conflict-of-interest disclosure and replacement procedure
Independent approver classes for high-impact decisions
Missing production evidence
Production conflict-of-interest check result
Independent reviewer assignment proof
Requester/deployer/signer/final-approver separation record
Validation
npm run check:agent-os-governance
npm run check:agent-os-chain
GET /api/agent-os/decision-ledger/production-governance-human-gate-submission
Decision kinds
release
deploy
funds
legal
chain_anchor
emergency_pause
Required production binding
wcn-prod-gov-segregation-of-duties
Evidence sections
wcn-governance-evidence-segregation-of-duties
Workflows
mfa_role_matrix_preflight
release_deploy_chain_funds_guardrail
External authority kinds
segregation_of_duties_binding
06 · emergency_pause_roster_submission · 08-human-gate-governance

Emergency pause roster submission

Submit who can activate, extend, clear, audit, and notify production emergency pause, with auth, MFA, scope, expiry, and escalation evidence.

productionBound=false
Upstream refs
app/api/agent-os/decision-ledger/emergency-pause/route.ts
lib/agent-os/decision-ledger-store.ts
lib/agent-os/reliability-kernel-store.ts
Human Gate inputs
Approved emergency pause operator roster
Pause activation, extension, expiry, and clear policy
Notification and escalation owner list
Missing production evidence
Production emergency pause operator roster
Pause action auth and MFA proof
Pause notification and expiry audit evidence
Validation
npm run check:agent-os-governance
POST /api/agent-os/decision-ledger/emergency-pause
GET /api/agent-os/decision-ledger/production-governance-human-gate-submission
Decision kinds
emergency_pause
deploy
external_write
chain_anchor
funds
Required production binding
wcn-prod-gov-emergency-pause-roster
Evidence sections
wcn-governance-evidence-emergency-pause-roster
Workflows
emergency_pause_rehearsal
External authority kinds
emergency_pause_roster_binding
07 · decision_audit_export_submission · 08-human-gate-governance

Decision audit export submission

Submit immutable decision export, reviewer proof, MFA, role matrix, evidence hashes, affected systems, retention, redaction, and deletion-prevention policy.

productionBound=false
Upstream refs
lib/agent-os/decision-ledger-store.ts
app/api/agent-os/decision-ledger/route.ts
lib/agent-os/production-governance-external-authority-evidence.ts
Human Gate inputs
Decision audit export destination and retention policy
Required reviewer proof, MFA, evidence hash, and affected-system fields
Immutability or hash-chain verification method
Missing production evidence
Immutable production decision audit export
Retention and deletion-prevention proof
Export hash or hash-chain reference
Validation
npm run check:agent-os-governance
GET /api/agent-os/decision-ledger
GET /api/agent-os/decision-ledger/production-governance-human-gate-submission
Decision kinds
release
deploy
funds
legal
chain_anchor
public_claim
scope_expansion
autonomy
source_deletion
external_write
emergency_pause
Required production binding
wcn-prod-gov-decision-audit-export
Evidence sections
wcn-governance-evidence-decision-audit-export
Workflows
readiness_review_queue_triage
decision_audit_export_handoff
External authority kinds
decision_audit_export_binding
08 · legal_authority_ready_claim_submission · 01-wcn-conductor

Legal authority and ready-claim submission

Submit legal entity, representative authority, treasury, signer, public-claim, governance authority, and explicit production-ready claim approval.

productionBound=false
Upstream refs
lib/agent-os/production-authority-intake.ts
lib/agent-os/production-readiness-external-evidence.ts
app/api/agent-os/production-readiness/external-evidence/route.ts
Human Gate inputs
Legal entity and representative authority source
Treasury, signer, public-claim, and governance approval owners
Production-ready claim approval decision
Missing production evidence
Legal entity and representative authority evidence
Treasury, signer, and public-claim authorization proof
Residual-risk and ready-claim approval
Validation
npm run check:agent-os-governance
npm run check:agent-os-production-readiness
GET /api/agent-os/production-readiness/external-evidence
Decision kinds
release
deploy
funds
legal
chain_anchor
public_claim
scope_expansion
Required production binding
wcn-prod-gov-authority-evidence-pack
Evidence sections
wcn-governance-evidence-authority-pack
Workflows
production_authority_intake
release_deploy_chain_funds_guardrail
External authority kinds
legal_authority_binding
source=lib/agent-os/production-governance-human-gate-submission.ts · localOnly=true · readOnly=true · productionBound=false

Production governance external authority evidence matrix

A local read-only matrix for the external authority evidence required before production auth, MFA, reviewer proof, role matrix, emergency pause, decision audit export, legal authority, proof output, deploy, chain, or funds operations can be treated as bound.

wcn-agent-os-production-governance-external-authority-evidence-local-v1
01 · auth_provider_binding · 08-human-gate-governance

Production auth provider external authority

Bind production reviewer sessions to a real auth provider issuer, subject mapping, session assurance level, and revocation policy.

productionBound=false
Evidence
lib/agent-os/reviewer-identity.ts
lib/agent-os/production-governance.ts
app/api/agent-os/decision-ledger/reviewer-identities/route.ts
Human Gate inputs
Approved production auth provider and environment
Reviewer issuer, subject mapping, session id, and assurance policy
Revocation and replacement owner for production reviewers
Missing production evidence
Production auth provider configuration
Reviewer subject mapping proof
Production session assurance audit record
Validation
npm run check:agent-os-governance
GET /api/agent-os/decision-ledger/reviewer-identities
GET /api/agent-os/decision-ledger/production-external-authority-evidence
Decision kinds
release
deploy
funds
legal
chain_anchor
public_claim
scope_expansion
autonomy
source_deletion
external_write
emergency_pause
Required production binding
production_auth_provider
Evidence sections
auth_provider_packet
Workflows
production_authority_intake
authenticated_reviewer_session
Production authority queue API
production_governance_authority_binding
02 · mfa_policy_binding · auth-rbac-security

MFA policy external authority

Bind high-impact production reviews to MFA assurance rules that fail closed when MFA evidence is missing, stale, or below required level.

productionBound=false
Evidence
WcnProductionGovernanceBinding.kind=mfa_policy
lib/agent-os/production-governance-evidence.ts
lib/agent-os/production-readiness.ts
Human Gate inputs
MFA policy owner and accepted methods
Decision-kind-to-assurance-level matrix
Expiry and re-authentication policy
Missing production evidence
Production MFA enforcement proof
MFA method and timestamp on production reviews
Rejected-review audit record for stale or missing MFA
Validation
npm run check:agent-os-governance
npm run check:agent-os-production-readiness
GET /api/agent-os/decision-ledger/production-external-authority-evidence
Decision kinds
release
deploy
funds
legal
chain_anchor
scope_expansion
source_deletion
Required production binding
mfa_policy
Evidence sections
mfa_policy_packet
Workflows
mfa_role_matrix_preflight
Production authority queue API
production_governance_authority_binding
03 · reviewer_identity_proof_binding · governance-human-gate

Reviewer identity proof external authority

Bind every production reviewer to a real authorized person or delegated operator with role, affected-system scope, and revocation evidence.

productionBound=false
Evidence
lib/agent-os/reviewer-identity.ts
app/api/agent-os/decision-ledger/[decisionId]/review/route.ts
lib/agent-os/__tests__/reviewer-identity.test.ts
Human Gate inputs
Named reviewer roster with organization roles
Delegation or legal authority source for each reviewer class
Revocation and replacement owner for reviewer authority changes
Missing production evidence
Authenticated reviewer identity proof
Organization role or delegation record
Reviewer revocation and replacement evidence
Validation
npm run check:agent-os-governance
GET /api/agent-os/decision-ledger/reviewer-identities
GET /api/agent-os/decision-ledger/production-external-authority-evidence
Decision kinds
release
deploy
funds
legal
chain_anchor
public_claim
scope_expansion
autonomy
source_deletion
external_write
emergency_pause
Required production binding
reviewer_identity_proof
Evidence sections
reviewer_identity_packet
Workflows
authenticated_reviewer_session
proof_output_authorization
Production authority queue API
production_governance_authority_binding
04 · role_reviewer_matrix_binding · 08-human-gate-governance

Role reviewer matrix external authority

Bind production roles to allowed decision kinds, modules, affected systems, thresholds, escalation rules, and Evolution Ledger adoption records.

productionBound=false
Evidence
WcnReviewerIdentityRecord.allowedRoles
WcnReviewerIdentityRecord.allowedDecisionKinds
lib/agent-os/evolution-ledger.ts
Human Gate inputs
Approved role-to-reviewer matrix version
Allowed decision kinds, modules, affected systems, and thresholds
Evolution Ledger adoption or rollback record
Missing production evidence
Production role matrix version
Role claim to reviewer mapping proof
Evolution Ledger adoption record
Validation
npm run check:agent-os-governance
npm run check:agent-os-evolution
GET /api/agent-os/decision-ledger/production-external-authority-evidence
Decision kinds
release
deploy
funds
legal
chain_anchor
public_claim
scope_expansion
autonomy
source_deletion
external_write
emergency_pause
Required production binding
role_reviewer_matrix
Evidence sections
role_reviewer_matrix_packet
Workflows
mfa_role_matrix_preflight
Production authority queue API
production_governance_authority_binding
05 · segregation_of_duties_binding · governance-human-gate

Segregation of duties external authority

Bind requester, deployer, signer, fund operator, and final approver separation rules before release, deploy, funds, chain, or emergency-pause approvals can count.

productionBound=false
Evidence
decision.requiredApprovalCount
reviewerConflictCheck
lib/agent-os/decision-ledger.ts
Human Gate inputs
Segregation-of-duties rule by decision kind
Conflict-of-interest disclosure and replacement procedure
Independent approver classes for high-impact decisions
Missing production evidence
Production conflict-of-interest check result
Independent reviewer assignment proof
Requester/deployer/signer/final-approver separation record
Validation
npm run check:agent-os-governance
npm run check:agent-os-chain
GET /api/agent-os/decision-ledger/production-external-authority-evidence
Decision kinds
release
deploy
funds
legal
chain_anchor
emergency_pause
Required production binding
segregation_of_duties
Evidence sections
segregation_of_duties_packet
Workflows
mfa_role_matrix_preflight
release_deploy_chain_funds_guardrail
Production authority queue API
production_governance_authority_binding
06 · emergency_pause_roster_binding · 08-human-gate-governance

Emergency pause roster external authority

Bind who can activate, extend, clear, and audit production emergency pause with production auth, MFA, affected-system scope, expiry, and notifications.

productionBound=false
Evidence
app/api/agent-os/decision-ledger/emergency-pause/route.ts
lib/agent-os/decision-ledger-store.ts
lib/agent-os/reliability-kernel-store.ts
Human Gate inputs
Approved emergency pause operator roster
Pause activation, extension, expiry, and clear policy
Notification and escalation owner list
Missing production evidence
Production emergency pause operator roster
Pause action auth and MFA proof
Pause notification and expiry audit evidence
Validation
npm run check:agent-os-governance
POST /api/agent-os/decision-ledger/emergency-pause
GET /api/agent-os/decision-ledger/production-external-authority-evidence
Decision kinds
emergency_pause
deploy
external_write
chain_anchor
funds
Required production binding
emergency_pause_operator_roster
Evidence sections
emergency_pause_roster_packet
Workflows
emergency_pause_rehearsal
Production authority queue API
production_observability_binding
production_governance_authority_binding
07 · decision_audit_export_binding · 08-human-gate-governance

Decision audit export external authority

Bind immutable production decision exports, reviewer proof, MFA, evidence hashes, affected systems, retention, redaction, and deletion-prevention policy.

productionBound=false
Evidence
lib/agent-os/decision-ledger-store.ts
app/api/agent-os/decision-ledger/route.ts
decision.payloadHash
Human Gate inputs
Decision audit export destination and retention policy
Required reviewer proof, MFA, evidence hash, and affected-system fields
Immutability or hash-chain verification method
Missing production evidence
Immutable production decision audit export
Retention and deletion-prevention proof
Export hash or hash-chain reference
Validation
npm run check:agent-os-governance
GET /api/agent-os/decision-ledger
GET /api/agent-os/decision-ledger/production-external-authority-evidence
Decision kinds
release
deploy
funds
legal
chain_anchor
public_claim
scope_expansion
autonomy
source_deletion
external_write
emergency_pause
Required production binding
decision_audit_export
Evidence sections
decision_audit_export_packet
Workflows
readiness_review_queue_triage
decision_audit_export_handoff
Production authority queue API
production_governance_authority_binding
08 · legal_authority_binding · governance-human-gate

Legal and organizational authority binding

Bind legal entity, representative authority, treasury, signer, public-claim, and governance authority evidence before production claims or irreversible operations.

productionBound=false
Evidence
WcnProductionGovernanceBinding.kind=authority_evidence_pack
lib/agent-os/production-authority-intake.ts
docs/agent-os/modules/08-human-gate-governance.deep.md
Human Gate inputs
Legal entity and representative authority source
Treasury, signer, public-claim, and governance approval owners
Expiration, renewal, and revocation rules for authority evidence
Missing production evidence
Legal entity and representative authority evidence
Treasury, signer, and public-claim authorization proof
Authority expiration and revocation tracking record
Validation
npm run check:agent-os-production-readiness
npm run check:agent-os-governance
GET /api/agent-os/decision-ledger/production-external-authority-evidence
Decision kinds
release
deploy
funds
legal
chain_anchor
public_claim
scope_expansion
Required production binding
authority_evidence_pack
Evidence sections
authority_evidence_packet
Workflows
production_authority_intake
release_deploy_chain_funds_guardrail
Production authority queue API
production_release_authorization
production_chain_broadcast_authorization
production_governance_authority_binding
source=lib/agent-os/production-governance-external-authority-evidence.ts · localOnly=true · readOnly=true · productionBound=false

Production governance ops command center

Local operations workflows for authority intake, authenticated reviewer sessions, MFA and role matrix preflight, readiness triage, proof-output authorization, irreversible-action guardrails, emergency pause rehearsal, and audit export handoff.

wcn-agent-os-production-governance-ops-command-center-local-v1
01 · wcn-governance-ops-production-authority-intake · production_authority_intake

Production authority intake

Collect the real legal, organizational, treasury, signer, and public-claim authority packet before any production-ready claim.

productionBound=false
Operator inputs
Production environment and legal entity reference
Authority owner, reviewer roster, and approval scope
Target high-impact decision kind and affected systems
Evidence
lib/agent-os/production-governance.ts
lib/agent-os/production-governance-evidence.ts
app/api/agent-os/production-authority-intake/route.ts
Runbook
Classify the authority request by release, deploy, funds, chain, public claim, legal, or scope expansion.
Attach the local evidence packet and preserve every missing production evidence field.
Route the packet to Human Gate before any production authority is treated as bound.
Human Gate inputs
Legal entity or delegated authority source
Decision kind, scope, affected systems, and expiry
Named accountable human owner for the authority packet
Missing production evidence
Legal or organizational authority proof
Production reviewer roster approval
Authority expiry and revocation evidence
Validation
npm run check:agent-os-authority-intake
npm run check:agent-os-governance
GET /api/agent-os/decision-ledger/production-governance-ops
Required production binding
wcn-prod-gov-authority-evidence-pack
Evidence sections
wcn-governance-evidence-authority-pack
False boundary
productionAuthProviderBound=false
productionMfaEnforced=false
productionReviewerIdentityProofBound=false
productionRoleMatrixBound=false
productionEmergencyPauseRosterBound=false
productionDecisionAuditExportBound=false
legalAuthorityBound=false
productionDeployExecuted=false
productionChainWriteExecuted=false
realFundsTouched=false
productionSecretsLoaded=false
productionProofOutputAllowed=false
productionReadyClaimAllowed=false
productionSideEffectExecuted=false
02 · wcn-governance-ops-authenticated-reviewer-session · authenticated_reviewer_session

Authenticated reviewer session

Prepare production auth provider and reviewer identity proof requirements without accepting local reviewer identity as production auth.

productionBound=false
Operator inputs
Auth provider issuer and production environment
Reviewer subject mapping and session assurance level
Reviewer revocation or replacement policy
Evidence
lib/agent-os/reviewer-identity.ts
app/api/agent-os/decision-ledger/reviewer-identities/route.ts
lib/agent-os/production-governance-evidence.ts
Runbook
Compare the local reviewer id to the intended production subject id.
Require production auth provider claims before the review can count for production.
Keep productionAuthProviderBound=false until issuer, subject, session, and assurance evidence exist.
Human Gate inputs
Approved production auth provider
Reviewer subject mapping proof
Revocation and replacement owner
Missing production evidence
Production auth provider configuration
Reviewer identity proof
Production session assurance audit record
Validation
npm run check:agent-os-governance
GET /api/agent-os/decision-ledger/reviewer-identities
GET /api/agent-os/decision-ledger/production-governance-ops
Required production binding
wcn-prod-gov-auth-provider
wcn-prod-gov-reviewer-proof
Evidence sections
wcn-governance-evidence-auth-provider
wcn-governance-evidence-reviewer-identity
False boundary
productionAuthProviderBound=false
productionMfaEnforced=false
productionReviewerIdentityProofBound=false
productionRoleMatrixBound=false
productionEmergencyPauseRosterBound=false
productionDecisionAuditExportBound=false
legalAuthorityBound=false
productionDeployExecuted=false
productionChainWriteExecuted=false
realFundsTouched=false
productionSecretsLoaded=false
productionProofOutputAllowed=false
productionReadyClaimAllowed=false
productionSideEffectExecuted=false
03 · wcn-governance-ops-mfa-role-matrix-preflight · mfa_role_matrix_preflight

MFA and role matrix preflight

Bind high-impact review requirements to MFA, role matrix version, duty separation, and fail-closed rules before production review.

productionBound=false
Operator inputs
Decision kind and risk level
Required assurance level and MFA method
Role-to-reviewer matrix version
Evidence
WcnReviewerIdentityRecord.allowedDecisionKinds
WcnProductionGovernanceBinding.kind=mfa_policy
WcnProductionGovernanceBinding.kind=role_reviewer_matrix
Runbook
Check whether the decision kind requires MFA and independent reviewers.
Compare reviewer role claims to the approved production role matrix.
Fail closed when MFA, role matrix, or segregation-of-duties evidence is missing.
Human Gate inputs
MFA assurance policy
Role-to-reviewer matrix version
Segregation-of-duties rule by decision kind
Missing production evidence
Production MFA enforcement proof
Production role matrix adoption record
Conflict-of-interest check result
Validation
npm run check:agent-os-governance
npm run check:agent-os-evolution
GET /api/agent-os/decision-ledger/production-governance-ops
Required production binding
wcn-prod-gov-mfa-policy
wcn-prod-gov-role-reviewer-matrix
wcn-prod-gov-segregation-of-duties
Evidence sections
wcn-governance-evidence-mfa-policy
wcn-governance-evidence-role-reviewer-matrix
wcn-governance-evidence-segregation-of-duties
False boundary
productionAuthProviderBound=false
productionMfaEnforced=false
productionReviewerIdentityProofBound=false
productionRoleMatrixBound=false
productionEmergencyPauseRosterBound=false
productionDecisionAuditExportBound=false
legalAuthorityBound=false
productionDeployExecuted=false
productionChainWriteExecuted=false
realFundsTouched=false
productionSecretsLoaded=false
productionProofOutputAllowed=false
productionReadyClaimAllowed=false
productionSideEffectExecuted=false
04 · wcn-governance-ops-readiness-review-queue-triage · readiness_review_queue_triage

Readiness review queue triage

Turn blocked production readiness signals into accountable Human Gate review work before public proof or production claims.

productionBound=false
Operator inputs
Readiness review signal id
Blocked decisions and required Human Gate decision count
Missing production evidence list
Evidence
lib/agent-os/production-governance-readiness-review-queue.ts
app/api/agent-os/decision-ledger/readiness-review-signals/human-gate-queue/route.ts
app/[locale]/agent-os/governance/page.tsx
Runbook
Open the readiness review queue and identify draft_not_submitted or pending_review items.
Create only local Human Gate drafts for blocked proof-output or public-claim paths.
Keep proof output, settlement, reputation, chain request, and production-ready claims blocked.
Human Gate inputs
Signal owner and blocked output scope
Required reviewers and evidence packet ids
Production false-boundary acceptance criteria
Missing production evidence
Production Human Gate review record
Production audit export for readiness decisions
Proof-output authorization evidence
Validation
npm run check:agent-os-governance
GET /api/agent-os/decision-ledger/readiness-review-signals/human-gate-queue
GET /api/agent-os/decision-ledger/production-governance-ops
Required production binding
wcn-prod-gov-decision-audit-export
Evidence sections
wcn-governance-evidence-decision-audit-export
False boundary
productionAuthProviderBound=false
productionMfaEnforced=false
productionReviewerIdentityProofBound=false
productionRoleMatrixBound=false
productionEmergencyPauseRosterBound=false
productionDecisionAuditExportBound=false
legalAuthorityBound=false
productionDeployExecuted=false
productionChainWriteExecuted=false
realFundsTouched=false
productionSecretsLoaded=false
productionProofOutputAllowed=false
productionReadyClaimAllowed=false
productionSideEffectExecuted=false
05 · wcn-governance-ops-proof-output-authorization · proof_output_authorization

Proof output authorization

Prepare Human Gate approval for public proof, settlement, reputation, chain requests, and public claims while keeping every output disabled locally.

productionBound=false
Operator inputs
Proof output type and affected systems
Payload hash, evidence refs, and rollback owner
Reviewer identity, MFA, and audit export packet ids
Evidence
lib/agent-os/production-governance-evidence.ts
lib/agent-os/trust-proof-reliability-readiness.ts
app/api/agent-os/trust-proof-layer/reliability-readiness/route.ts
Runbook
Verify proof output readiness is blocked until Human Gate accepts the evidence packet.
Attach reviewer identity, MFA, role matrix, duty separation, and audit export evidence.
Keep productionProofOutputAllowed=false and publicProofPublished=false in local exports.
Human Gate inputs
Approved proof-output decision id
Evidence hash and rollback owner
Explicit public proof, settlement, reputation, or chain scope
Missing production evidence
Production proof-output approval record
Immutable audit export for proof-output decision
Public proof publication smoke evidence
Validation
npm run check:agent-os-proof
npm run check:agent-os-governance
GET /api/agent-os/decision-ledger/production-governance-ops
Required production binding
wcn-prod-gov-reviewer-proof
wcn-prod-gov-decision-audit-export
Evidence sections
wcn-governance-evidence-reviewer-identity
wcn-governance-evidence-decision-audit-export
False boundary
productionAuthProviderBound=false
productionMfaEnforced=false
productionReviewerIdentityProofBound=false
productionRoleMatrixBound=false
productionEmergencyPauseRosterBound=false
productionDecisionAuditExportBound=false
legalAuthorityBound=false
productionDeployExecuted=false
productionChainWriteExecuted=false
realFundsTouched=false
productionSecretsLoaded=false
productionProofOutputAllowed=false
productionReadyClaimAllowed=false
productionSideEffectExecuted=false
06 · wcn-governance-ops-release-deploy-chain-funds-guardrail · release_deploy_chain_funds_guardrail

Release, deploy, chain, and funds guardrail

Coordinate 02 release, 05 reliability, 07 chain, treasury, and 08 approval evidence before irreversible production actions.

productionBound=false
Operator inputs
Approved release, deploy, funds, or chain decision id
Production readiness and observability evidence
Signer, treasury, rollback, and emergency pause owner
Evidence
lib/agent-os/product-release-execution-plan.ts
lib/agent-os/production-observability-operator-console.ts
lib/agent-os/production-chain-broadcast-readiness.ts
Runbook
Require the matching Human Gate decision before release, deploy, chain, or funds operations.
Compare product release, reliability, chain broadcast, and governance false boundaries.
Stop the handoff when production deploy, chain write, real funds, or secrets are not explicitly approved.
Human Gate inputs
Release or irreversible action approval decision id
Production observability and rollback owner
Signer, treasury, and emergency pause authority
Missing production evidence
Production deploy approval record
Production chain broadcast approval record
Real-funds and treasury authority proof
Validation
npm run check:agent-os-product
npm run check:agent-os-reliability
npm run check:agent-os-chain
Required production binding
wcn-prod-gov-authority-evidence-pack
wcn-prod-gov-emergency-pause-roster
Evidence sections
wcn-governance-evidence-authority-pack
wcn-governance-evidence-emergency-pause-roster
False boundary
productionAuthProviderBound=false
productionMfaEnforced=false
productionReviewerIdentityProofBound=false
productionRoleMatrixBound=false
productionEmergencyPauseRosterBound=false
productionDecisionAuditExportBound=false
legalAuthorityBound=false
productionDeployExecuted=false
productionChainWriteExecuted=false
realFundsTouched=false
productionSecretsLoaded=false
productionProofOutputAllowed=false
productionReadyClaimAllowed=false
productionSideEffectExecuted=false
07 · wcn-governance-ops-emergency-pause-rehearsal · emergency_pause_rehearsal

Emergency pause rehearsal

Prepare activation, extension, expiry, clear, and notification evidence for production emergency pause without touching production systems.

productionBound=false
Operator inputs
Affected system and pause reason
Emergency pause operator and expiry policy
Notification and escalation owner list
Evidence
app/api/agent-os/decision-ledger/emergency-pause/route.ts
lib/agent-os/decision-ledger-store.ts
lib/agent-os/reliability-kernel-store.ts
Runbook
Confirm the emergency pause operator is allowed for the affected system.
Record reason, scope, expiry, and notification targets before activation.
Keep the rehearsal local until production auth, MFA, and roster evidence are bound.
Human Gate inputs
Approved emergency pause operator roster
Pause activation, extension, expiry, and clear policy
Notification and escalation route
Missing production evidence
Production emergency pause roster
Pause action auth and MFA proof
Notification and expiry audit evidence
Validation
npm run check:agent-os-governance
POST /api/agent-os/decision-ledger/emergency-pause
GET /api/agent-os/decision-ledger/production-governance-ops
Required production binding
wcn-prod-gov-emergency-pause-roster
Evidence sections
wcn-governance-evidence-emergency-pause-roster
False boundary
productionAuthProviderBound=false
productionMfaEnforced=false
productionReviewerIdentityProofBound=false
productionRoleMatrixBound=false
productionEmergencyPauseRosterBound=false
productionDecisionAuditExportBound=false
legalAuthorityBound=false
productionDeployExecuted=false
productionChainWriteExecuted=false
realFundsTouched=false
productionSecretsLoaded=false
productionProofOutputAllowed=false
productionReadyClaimAllowed=false
productionSideEffectExecuted=false
08 · wcn-governance-ops-decision-audit-export-handoff · decision_audit_export_handoff

Decision audit export handoff

Package immutable decision evidence, reviewer proof, MFA, role matrix, affected systems, hashes, and rollback references for future agents and auditors.

productionBound=false
Operator inputs
Decision id, payload hash, and evidence refs
Reviewer proof, MFA, and role matrix packet ids
Audit destination, retention, and redaction policy
Evidence
lib/agent-os/decision-ledger-store.ts
app/api/agent-os/decision-ledger/route.ts
lib/agent-os/production-governance-evidence.ts
Runbook
Export only the approved local evidence packet and preserve hashes for future verification.
Attach reviewer proof, MFA, role matrix, affected systems, and rollback references.
Keep productionDecisionAuditExportBound=false until immutable production storage is approved.
Human Gate inputs
Audit export recipient or storage destination
Retention, redaction, and deletion-prevention policy
Immutability or hash-chain verification method
Missing production evidence
Immutable production decision audit export
Retention and deletion-prevention proof
Export hash or hash-chain reference
Validation
npm run check:agent-os-governance
GET /api/agent-os/decision-ledger
GET /api/agent-os/decision-ledger/production-governance-ops
Required production binding
wcn-prod-gov-decision-audit-export
Evidence sections
wcn-governance-evidence-decision-audit-export
False boundary
productionAuthProviderBound=false
productionMfaEnforced=false
productionReviewerIdentityProofBound=false
productionRoleMatrixBound=false
productionEmergencyPauseRosterBound=false
productionDecisionAuditExportBound=false
legalAuthorityBound=false
productionDeployExecuted=false
productionChainWriteExecuted=false
realFundsTouched=false
productionSecretsLoaded=false
productionProofOutputAllowed=false
productionReadyClaimAllowed=false
productionSideEffectExecuted=false

Readiness review signals

Human Gate review signals imported from production readiness before proof outputs can create public proof, settlement, reputation, chain, or public-claim side effects.

signals=1
governance-review-trust-proof-output-reliability-readiness · 06 · trust_proof_layer

Human Gate review required: Proof outputs pass through reliability readiness before side effects

Trust / Proof Layer

requires_human_gate_review
Upstream status
blocked_missing_human_gate
Blocked decisions
8
Ready local receipts
0
Human Gate decisions
8
decisions
8
Evidence
lib/agent-os/trust-proof-reliability-readiness.ts
app/api/agent-os/trust-proof-layer/reliability-readiness/route.ts
app/[locale]/agent-os/proof/page.tsx
lib/agent-os/__tests__/trust-proof-reliability-readiness.test.ts
npm run check:agent-os-proof
npm run check:agent-os-reliability
lib/agent-os/production-readiness.ts
lib/agent-os/production-governance-evidence.ts
app/[locale]/agent-os/governance/page.tsx
Human Gate inputs
Approved Human Gate decision for each production proof output before public proof, settlement, reputation, chain, or public-claim side effects.
Reviewer identity, MFA, role matrix, segregation-of-duties, and decision audit export evidence for proof-output approvals.
Rollback, replay, incident, and false-boundary review for each blocked production decision.
Missing production evidence
Production Human Gate review record for each blocked proof-output decision.
Production auth, MFA, reviewer identity proof, and role-matrix evidence for proof-output approvers.
Immutable decision audit export linking upstream evidence, false boundaries, rollback plan, and affected systems.
Signal false boundary
publicProofPublished=false
realFundsTouched=false
chainAnchorRequested=false
eventOutboxProductionWrite=false
productionSideEffectExecuted=false

Production governance handoff evidence

Local handoff packets for production auth, MFA, reviewer proof, role matrix, duty separation, emergency pause, audit export, and authority evidence.

wcn-agent-os-production-governance-evidence-local-v1
wcn-governance-evidence-auth-provider · auth_provider_packet

Production auth provider evidence

productionBound=false
Evidence
lib/agent-os/reviewer-identity.ts
lib/agent-os/production-governance.ts
app/api/agent-os/decision-ledger/reviewer-identities/route.ts
Required production binding
Bind reviewer sessions to a production auth provider with issuer, subject id, session id, and assurance level.
Record auth provider claims on each production review and preserve them in the decision audit export.
Reject release, deploy, funds, chain, public-claim, scope-expansion, and source-deletion approvals when production auth is missing.
Human Gate inputs
Approved production auth provider and environment name.
Auth issuer, tenant, subject mapping, and session assurance policy.
Human Gate decision authorizing which decision kinds require production auth.
Missing production evidence
Production auth provider configuration.
Reviewer subject mapping proof.
Production session assurance audit record.
Validation
npm run check:agent-os-governance
GET /api/agent-os/decision-ledger/reviewer-identities
wcn-governance-evidence-mfa-policy · mfa_policy_packet

MFA policy evidence

productionBound=false
Evidence
WcnProductionGovernanceBinding.kind=mfa_policy
lib/agent-os/production-governance.ts
lib/agent-os/production-readiness.ts
Required production binding
Require MFA for high-impact production decisions before approval can be counted.
Record MFA method, timestamp, assurance level, and stale-or-missing rejection reason.
Fail closed when MFA evidence is absent for release, deploy, funds, legal, chain, or scope-expansion decisions.
Human Gate inputs
MFA policy owner and accepted methods.
Decision-kind-to-assurance-level matrix.
Expiry and re-authentication policy for stale MFA checks.
Missing production evidence
Production MFA enforcement proof.
MFA method and timestamp on decision reviews.
Rejected-review audit record for missing or stale MFA.
Validation
npm run check:agent-os-governance
npm run check:agent-os-production-readiness
wcn-governance-evidence-reviewer-identity · reviewer_identity_packet

Reviewer identity proof evidence

productionBound=false
Evidence
lib/agent-os/reviewer-identity.ts
app/api/agent-os/decision-ledger/[decisionId]/review/route.ts
lib/agent-os/__tests__/reviewer-identity.test.ts
Required production binding
Attach proof that each reviewer is a real authorized person or delegated operator.
Bind reviewer authority to organization role, legal scope, affected systems, and revocation state.
Store reviewer replacement and revocation evidence before any production approval is accepted.
Human Gate inputs
Named reviewer roster with organization roles.
Delegation or legal authority source for each reviewer class.
Revocation and replacement owner for reviewer authority changes.
Missing production evidence
Authenticated reviewer identity proof.
Organization role or delegation record.
Reviewer revocation and replacement evidence.
Validation
npm run check:agent-os-governance
GET /api/agent-os/decision-ledger/reviewer-identities
wcn-governance-evidence-role-reviewer-matrix · role_reviewer_matrix_packet

Role-to-reviewer matrix evidence

productionBound=false
Evidence
WcnReviewerIdentityRecord.allowedRoles
WcnReviewerIdentityRecord.allowedDecisionKinds
WcnReviewerIdentityRecord.allowedModuleIds
Required production binding
Map production roles to decision kinds, modules, affected systems, thresholds, and escalation rules.
Version each matrix change and attach it to the Evolution Ledger before rollout.
Block reviews when production role claims do not match the current approved matrix.
Human Gate inputs
Approved role-to-reviewer matrix version.
Allowed decision kinds, modules, affected systems, and approval thresholds by role.
Evolution Ledger record for matrix adoption or rollback.
Missing production evidence
Production role matrix version.
Role claim to reviewer mapping proof.
Evolution Ledger adoption record.
Validation
npm run check:agent-os-governance
npm run check:agent-os-evolution
wcn-governance-evidence-segregation-of-duties · segregation_of_duties_packet

Segregation of duties evidence

productionBound=false
Evidence
decision.requiredApprovalCount
reviewerConflictCheck
lib/agent-os/decision-ledger.ts
Required production binding
Prevent requester, deployer, signer, and final approver from being the same production principal.
Require independent reviewers for release, deploy, funds, legal, chain, and emergency pause decisions.
Record conflicts of interest and replacement reviewer assignment in the decision audit export.
Human Gate inputs
Segregation-of-duties rule by decision kind.
Conflict-of-interest disclosure and replacement procedure.
Named independent approver classes for high-impact decisions.
Missing production evidence
Production conflict-of-interest check result.
Independent reviewer assignment proof.
Requester/deployer/signer/final-approver separation record.
Validation
npm run check:agent-os-governance
npm run check:agent-os-chain
wcn-governance-evidence-emergency-pause-roster · emergency_pause_roster_packet

Emergency pause operator roster evidence

productionBound=false
Evidence
app/api/agent-os/decision-ledger/emergency-pause/route.ts
lib/agent-os/decision-ledger-store.ts
lib/agent-os/reliability-kernel-store.ts
Required production binding
Define who can activate, extend, and clear production emergency pause.
Bind pause actions to production auth, MFA, affected system, reason, expiry, and notification evidence.
Notify reliability, gateway, chain, release, and governance owners when pause state changes.
Human Gate inputs
Approved emergency pause operator roster.
Pause activation, extension, expiry, and clear policy.
Notification and escalation owner list for pause state changes.
Missing production evidence
Production emergency pause operator roster.
Pause action auth and MFA proof.
Pause notification and expiry audit evidence.
Validation
npm run check:agent-os-governance
POST /api/agent-os/decision-ledger/emergency-pause
wcn-governance-evidence-decision-audit-export · decision_audit_export_packet

Decision audit export evidence

productionBound=false
Evidence
lib/agent-os/decision-ledger-store.ts
app/api/agent-os/decision-ledger/route.ts
decision.payloadHash
Required production binding
Export immutable decision evidence for production release, deploy, chain, funds, and public claims.
Include reviewer identity proof, MFA status, evidence hashes, affected systems, and rollback references.
Preserve export hashes so later agents can verify no silent mutation occurred.
Human Gate inputs
Decision audit export destination and retention policy.
Required fields for reviewer proof, MFA, evidence hashes, and affected systems.
Immutability and deletion-prevention policy for production decision evidence.
Missing production evidence
Production decision audit export.
Immutable storage or hash chain reference.
Retention and deletion-prevention proof.
Validation
npm run check:agent-os-governance
GET /api/agent-os/decision-ledger
wcn-governance-evidence-authority-pack · authority_evidence_packet

Legal and organizational authority evidence

productionBound=false
Evidence
WcnProductionGovernanceBinding.kind=authority_evidence_pack
lib/agent-os/production-readiness.ts
docs/agent-os/modules/08-human-gate-governance.deep.md
Required production binding
Attach legal entity, treasury, signer, public-claim, and governance authority evidence when required.
Keep unresolved authority fields explicit instead of synthesizing missing facts.
Prevent production release, chain writes, funds movement, public claims, and scope expansion when authority evidence is missing or expired.
Human Gate inputs
Legal entity and representative authority source.
Treasury, signer, public-claim, and governance approval owners.
Expiration, renewal, and revocation rules for authority evidence.
Missing production evidence
Legal entity and representative authority evidence.
Treasury, signer, and public-claim authorization proof.
Authority expiration and revocation tracking record.
Validation
npm run check:agent-os-production-readiness
npm run check:agent-os-governance

Production governance bindings

wcn-agent-os-production-governance-local-v1
wcn-prod-gov-auth-provider · production_auth_provider

Production auth provider binding

productionBound=false
Governed modules
meta_agent_os, wcn_product_system, runtime_business_agent_network, agent_interoperability_gateway, platform_reliability_kernel, trust_proof_layer, blockchain_anchoring_module, human_gate_governance
Decision kinds
release, deploy, funds, legal, chain_anchor, public_claim, scope_expansion, autonomy, source_deletion, external_write, emergency_pause
Local signals
reviewerIdentity.source.productionAuthBound=false
decisionLedger.source.localOnly=true
review.identityVerification.localIdentityBound
Required production binding
Bind reviewer sessions to a production auth provider.
Record auth issuer, subject id, session id, and login assurance level on each review.
Reject production release, deploy, funds, chain, and scope expansion decisions without production auth.
Validation
npm run check:agent-os-governance
GET /api/agent-os/decision-ledger/production-governance
wcn-prod-gov-mfa-policy · mfa_policy

MFA policy for high-impact decisions

productionBound=false
Governed modules
wcn_product_system, agent_interoperability_gateway, blockchain_anchoring_module, human_gate_governance
Decision kinds
release, deploy, funds, legal, chain_anchor, scope_expansion, source_deletion
Local signals
requiredApprovalCount
riskLevel=high|critical
productionAuthBound=false
Required production binding
Require MFA before approving high-impact production decisions.
Record MFA method, timestamp, and assurance result in the decision audit trail.
Fail closed when MFA is stale, missing, or lower than the required assurance level.
Validation
npm run check:agent-os-governance
npm run check:agent-os-production-readiness
wcn-prod-gov-reviewer-proof · reviewer_identity_proof

Reviewer identity proof

productionBound=false
Governed modules
meta_agent_os, wcn_product_system, runtime_business_agent_network, agent_interoperability_gateway, platform_reliability_kernel, trust_proof_layer, blockchain_anchoring_module, human_gate_governance
Decision kinds
release, deploy, funds, legal, chain_anchor, public_claim, scope_expansion, autonomy, source_deletion, external_write, emergency_pause
Local signals
reviewerId
reviewerRole
identityVerification.roleBound
identityVerification.decisionKindAllowed
Required production binding
Attach proof that the reviewer is a real authorized person or delegated operator.
Bind reviewer identity to organization role, legal authority, and review scope.
Store revocation and replacement evidence for reviewer authority changes.
Validation
GET /api/agent-os/decision-ledger/reviewer-identities
npm run check:agent-os-governance
wcn-prod-gov-role-reviewer-matrix · role_reviewer_matrix

Role-to-reviewer permission matrix

productionBound=false
Governed modules
meta_agent_os, wcn_product_system, runtime_business_agent_network, agent_interoperability_gateway, platform_reliability_kernel, trust_proof_layer, blockchain_anchoring_module, human_gate_governance
Decision kinds
release, deploy, funds, legal, chain_anchor, public_claim, scope_expansion, autonomy, source_deletion, external_write, emergency_pause
Local signals
allowedRoles
allowedDecisionKinds
allowedModuleIds
allowedAffectedSystems
Required production binding
Map production roles to allowed decision kinds, modules, affected systems, and approval thresholds.
Version the matrix and attach changes to the Evolution Ledger.
Block reviews when role claims do not match the current production matrix.
Validation
npm run check:agent-os-governance
npm run check:agent-os-evolution
wcn-prod-gov-segregation-of-duties · segregation_of_duties

Segregation of duties

productionBound=false
Governed modules
wcn_product_system, platform_reliability_kernel, blockchain_anchoring_module, human_gate_governance
Decision kinds
release, deploy, funds, legal, chain_anchor, emergency_pause
Local signals
selfApprovalBlocked=true
requiredApprovalCount
uniqueApprovals
Required production binding
Require independent reviewers for high-impact production decisions.
Prevent requester, deployer, signer, and final approver from being the same principal.
Record conflicts of interest and require replacement reviewer assignment.
Validation
npm run check:agent-os-governance
npm run check:agent-os-chain
wcn-prod-gov-emergency-pause-roster · emergency_pause_operator_roster

Emergency pause operator roster

productionBound=false
Governed modules
meta_agent_os, wcn_product_system, runtime_business_agent_network, agent_interoperability_gateway, platform_reliability_kernel, trust_proof_layer, blockchain_anchoring_module, human_gate_governance
Decision kinds
emergency_pause, deploy, external_write, chain_anchor, funds
Local signals
emergencyPause.enabled
emergencyPause.actorId
emergencyPause.reason
emergencyPause.decisionId
Required production binding
Define who can activate and clear production emergency pause.
Bind pause actions to production auth, MFA, reason, affected system, and expiry policy.
Notify reliability, gateway, chain, and release operators when pause state changes.
Validation
POST /api/agent-os/decision-ledger/emergency-pause
npm run check:agent-os-governance
wcn-prod-gov-decision-audit-export · decision_audit_export

Decision audit export

productionBound=false
Governed modules
meta_agent_os, wcn_product_system, runtime_business_agent_network, agent_interoperability_gateway, platform_reliability_kernel, trust_proof_layer, blockchain_anchoring_module, human_gate_governance
Decision kinds
release, deploy, funds, legal, chain_anchor, public_claim, scope_expansion, autonomy, source_deletion, external_write, emergency_pause
Local signals
decision.evidenceRefs
decision.payloadHash
decision.reviews
decision.decidedAt
Required production binding
Export immutable decision evidence for production release, deploy, chain, funds, and public claims.
Include reviewer identity proof, MFA status, evidence hashes, and affected systems.
Preserve export hashes so later agents can verify no silent decision mutation occurred.
Validation
GET /api/agent-os/decision-ledger
npm run check:agent-os-governance
wcn-prod-gov-authority-evidence-pack · authority_evidence_pack

Legal and organizational authority evidence pack

productionBound=false
Governed modules
wcn_product_system, blockchain_anchoring_module, human_gate_governance
Decision kinds
release, deploy, funds, legal, chain_anchor, public_claim
Local signals
evidenceRefs
affectedSystems
scopeExpansion
Required production binding
Attach legal entity, treasury, signer, and public-claim authority evidence when required.
Keep unresolved authority fields explicit instead of synthesizing missing facts.
Prevent public release or chain writes when authority evidence is missing or expired.
Validation
npm run check:agent-os-production-readiness
npm run check:agent-os-governance

Reviewer identities

wcn-agent-os-reviewer-identity-local-v1
human-founder · human_operator

Human Founder

prod=false
roles=governance-owner
Local review=true · Production auth=false
human-security-reviewer · human_operator

Human Security Reviewer

prod=false
roles=security-review
Local review=true · Production auth=false
human-proof-reviewer · human_operator

Human Proof Reviewer

prod=false
roles=proof-review
Local review=true · Production auth=false
human-proof-reviewer-2 · human_operator

Human Proof Reviewer 2

prod=false
roles=proof-review
Local review=true · Production auth=false
15-human-gate-agent · agent_delegate

15 Human Gate Agent

prod=false
roles=human-gate-governance, governance-human-gate, human-gate
Local review=true · Production auth=false
01-wcn-conductor · agent_delegate

01 WCN Conductor

prod=false
roles=meta-agent-os-orchestrator, wcn-conductor, requesting-agent
Local review=true · Production auth=false
local-system-reviewer · system_reviewer

Local System Reviewer

prod=false
roles=system-reviewer
Local review=true · Production auth=false

Recent decisions

wcn-agent-os-decision-ledger-local-v1
No local decisions recorded yet.