Dated system review →1 October 2026 · 10:13–10:14 KST
Historical implementation review · 30 September 2026 at 14:26 KST

Stronger evidence.
Operating proof still matters.

Health, performance provenance and recovery now have stronger local evidence checks. Earlier research, observation and identity fixes remain documented below. Internal reviews establish specific offline behaviors; operating adoption, sustained net performance and external attestation require separate evidence.

Internal engineering disclosure; synthetic validation is not an independent attestation or operating-effect proof.

Latest scoped verification and acceptance criteria →
Operational evidence review · 30 September 2026 at 14:26 KST

A stronger standard for health, performance and recovery.

Three locally verified changes close false positive paths in operating evidence. An unreadable heartbeat cannot establish health; carried performance retains its original observation time; recovery needs a direct observation of the affected target.

What this review establishes at each evidence level
Evidence levelStatusWhat the evidence supports
Implementation and local behaviorLocally verifiedPinned changes, actual producer/consumer counterexamples and separate internal source review. Required local repository checks passed on every exact revision; platform skips remain unevaluated. Draft publication does not establish operating adoption.
Operating adoption and effectNot verifiedNo installed-version receipt or natural-run before/after effect was obtained for these revisions.
Sustained net performanceNot verifiedNo reconciled fill, fee, funding and external-flow series establishes sustained strategy or account performance here.
External reproducibility and attestationNot verifiedReviewers are internal agents. Private source references and public file hashes do not constitute independent attestation.

A file touch cannot establish operating health

Reviewed Draft
Before
A running synthetic process with a freshly touched but malformed or timestamp-less state file was classified HEALTHY.
After
Uninterpretable heartbeat evidence provides no age. A running target is UNKNOWN unless an existing degradation priority applies; unknown targets stay in the total population but outside healthy and operational numerators.

Six base failures became 17 passing heartbeat tests. The internal reviewer independently repeated 17; a further isolated run of the focused and adjacent selection passed 88 tests.

Existing staleness and classification priorities remain. PID presence and a parsed timestamp do not establish installed code identity or successful application work.

Reviewed Draft published at the pinned revision. Required local repository selection: 922 passed and 60 skipped, exit code 0. The platform-specific skips are not evaluated. No verified deployment or natural operating effect.

Pinned source and access limits

mxroach/neuropublic · _state_age / run_once_sync / read_daemon_health / _section_daemons
Commit 9fa70597d98f91c850b549258bd5dbf9488caf45
Private source repository: access is required to reproduce its tests.

Draft change →

Carried performance keeps its original observation time

Reviewed Draft
Before
A valid old flow plus a malformed record could be treated as a complete ledger and produce fresh positive TWR. The dashboard also discarded carry status and original observation time.
After
Partial unreadable input follows the existing degraded path. Carried values retain degraded status, carry markers and their original observation time across repeated publication; legacy records acquire no fabricated provenance.

The actual producer-to-dashboard base failed three cases. The final combined selection passed 109 tests, including 47 focused tests; the internal reviewer independently repeated 47. A pre-integration schema suite passed 39 tests.

Existing return formulas, flow schemas, sizing and authority are preserved. NAV-based TWR and input readability do not establish fee-matched realized profit, broker reconciliation or sustained net performance.

Reviewed Draft published at the pinned revision. Required local repository selection: 922 passed and 60 skipped, exit code 0. The platform-specific skips are not evaluated. No verified deployment or natural operating effect.

Pinned source and access limits

mxroach/neuropublic · _read_capital_flows / evaluate / read_trading
Commit 5918e95232754e48d178f37249528526215c2dc5
Private source repository: access is required to reproduce its tests.

Draft change →

Recovery requires a direct observation of the affected target

Reviewed Draft
Before
A successful recovery attempt could be counted effective when no health history existed, the observation was outside the window, or only other targets were measured.
After
The producer emits untruncated direct HEALTHY targets. The consumer requires target evidence in the configured window, gives direct unhealthy observations priority, and retains unknowns outside verified and effective counts.

Seven initial base failures and five further review counterexamples were reproduced. Final 69 passed, including the actual producer-to-consumer path; the internal independent reviewer repeated 69.

HEALTHY remains process/log health, not proof of completed domain work or durable restoration. Naive health timestamps, malformed target evidence and legacy absence remain unknown.

Reviewed Draft published at the pinned revision. Required local repository selection: 922 passed and 60 skipped, exit code 0. The platform-specific skips are not evaluated. No verified deployment or natural operating effect.

Pinned source and access limits

mxroach/neuropublic · daemon_health_master.evaluate / _recovery_health_in_window / auto_recovery_effectiveness_tracker.evaluate
Commit 3cc129f4a2675855843dc367ed8aadc5de3e20d0
Private source repository: access is required to reproduce its tests.

Draft change →

Public counterexamples, with an explicit reproduction limit.

The structured file discloses sanitized counterexample inputs and internally verified outcomes. It contains no private balances or real account data. Reproducing the original evaluations requires access to the private source and tests; this artifact alone is not an executable reproduction bundle. SHA-256 identifies these public bytes, not the correctness of a private run.

The engineering counterexamples are synthetic. They do not replace, refresh or combine the dates or populations of the separate operating inspection and earlier lineage/readiness observations. The separate operating inspection is dated 1 October 2026 · 10:13–10:14 KST. Read its own populations and limits →

Evidence still needed for stronger claims

  • — Owner-authorized adoption of each exact revision, installed identity, and an independent natural-run receipt with declared coverage.
  • — Affected-target observation after recovery plus domain health checks; process/log health alone cannot establish completed work.
  • — Reconciled realized fills, fees, funding and external flows, matched by account, strategy and time, across a declared evaluation window.
  • — A repeatable research-to-authority-to-execution-to-accounting path with consistent identifiers and explicit denominators.
  • — External reproduction through sanitized runnable evidence and independent observer access; internal reviews and checksums are insufficient.
Earlier engineering review · 30 September 2026 at 10:45 KST

What changed, and what each check establishes.

Incomplete input cannot become ready

Reviewed Draft · not deployed
Before
Two timestamp-qualified rows plus 598 invalid timestamp rows could satisfy a 600-record readiness threshold; malformed tails were ignored and mixed naive/aware times could fail the cycle.
After
Only timestamp-qualified object rows contribute records, depth and diversity. Partial invalid evidence becomes unknown with explicit diagnostics, visible in the report and dashboard.

83 tests passed on the final frozen tree. The independent reviewer repeated 41 measurement and 3 actual dashboard-consumer tests. Base counterexamples failed before the fix.

All absent inputs remain missing; partial invalid inputs become unknown. Completeness covers only listed/discovered files, and older reports acquire no invented unknown count. Freshness, PIT correctness and research quality are not certified.

Reviewed Draft #4916 updated; exact-head CI was queued or running at this review.

Source reference

mxroach/neuropublic · _measure_jsonl_multi / _assess_input / run_once / read_research_lab
Commit f3cadaedbaf3a0c00acc34c3def18780d153169c

Draft change →

Unknown observations cannot inflate the clean rate

Reviewed Draft · not deployed
Before
Three UNKNOWN or UNPARSED observations could produce a clean 3/3 result, presented as 100%.
After
Only evaluable states enter the rate. Unknown, unparsed and unprobed rows remain visible and excluded from both sides; no evaluable observations yield 0/0 with no rate.

302 tests and 462 subtests passed. The independent reviewer repeated 15 regressions; the base failed 8 of those cases.

This rate describes an evaluable subset, not whole-fleet coverage. Original rows, states and receipt schema are preserved. Historical operating receipts were not rewritten.

Reviewed Draft #1500; exact-head CI was queued or running at this review.

Source reference

mxroach/fleet-brain · build_freshness / build_receipt / render
Commit 1fdceaac6d4ab173b38f50ff5552457b72eac28a

Draft change →

Missing decision identity cannot establish lineage

Reviewed Draft · not deployed
Before
Two executed orders sharing a blank native decision reference could inherit one signal and falsely count as linked: 2/2 in both executed and strict synthetic metrics.
After
Blank native decision references retain raw evidence but cannot establish counted or trace links. Both synthetic metrics become 0/2 while both orders stay in the denominators.

275 full lineage tests and 97 adjacent tests passed. The independent reviewer repeated 14 identity regressions through the real schema, deserialization, trace and rule chain.

Direct nonstring native decision references are rejected. Normal opaque IDs, multiple children and content identities remain compatible. Already stringified producer IDs cannot reveal their original type; missing live DCA identities remain unresolved.

Reviewed Draft #4923; exact-head CI was queued or running at this review.

Source reference

mxroach/neuropublic · Node.__post_init__ / Edge.__post_init__ / own_decision_identity; R-K1 → R-K4 → BuildContext.absorb → metrics
Commit 87400402b7839632bed2bd8fbefa4b0a2856cf82

Draft change →
Previous engineering round

The first three fixes remain documented.

Execution and receipt persistence are separate outcomes · Observation failure does not establish host failure · Incomplete research observations remain unknown. Their source pins and publication limits are preserved in the earlier review, dated 30 September 2026 at 09:50 KST.

Earlier source advances

Identity and boundaries have advanced; runtime proof remains scoped.

DCA decision identity

Merged and installed source contains identity minting. Observed live rows still lack decision IDs; runtime adoption is unresolved.

Source reference

mxroach/neuropublic · DCAAccumulator.run_once · dc18ac0ae78fe7cb8c487aad8c6924a2e1a3e577

Kill and release event identity

Merged and installed source contains event identity. The inspected live ledger was empty; no event was triggered for this review.

Source reference

mxroach/neuropublic · EmergencyKillSwitch.trigger / clear · bc89dacf89680597bb1be8d833a79128be103aa8

Published core-target identity

Merged and installed source contains target identity. Runtime consumption and authority linkage remain unverified.

Source reference

mxroach/neuropublic · core_satellite_target_publisher.run_once · a35574d44fa4f37472999c842764cdb60ab5c0de

Read-only console signal boundary

Merged source tightens signal history and raw linkage boundaries. Deployed HTTP behavior was not independently checked.

Source reference

mxroach/neurobrick-console · server-readonly-profile.ts · 68b047eddd99feee2c01f5c1f5f5ecb8c7e284f7

Account-scoped AI review seam

Merged implementation remains disabled by default. Runtime manifest issuance and adoption remain unverified.

Source reference

mxroach/NeuroForAll · PgReviewInventory · 24efbf34b4ea5f9e55f210bee26f6e7463c355ad

Separate observation windows

More indexed evidence does not establish full integration.

These historical operating snapshots precede the round2 implementations. Synthetic validation does not update their populations or establish natural runtime effects.

Lineage index

30 September 2026 at 07:11 KST

112,812 nodes · 34,405 edges · 297 gate rows linked.

Strict end-to-end: 0/4466. Accounting linkage: 4302/4768.

Original index aggregates were read; the full graph was not independently rebuilt. Accounting and strict end-to-end metrics use different populations.

Research input monitor

30 September 2026 at 08:44 KST

13 ready · 1 building · 2 starved. 21 stale fundamental panels.

A separate readiness monitor, not a successful rerun of the historical price/factor acceptance case.

Fleet observation

30 September 2026 at 09:00 KST

Fallback · 2 unavailable probe paths · independence unverified.

Name-resolution and host-key verification failures left two observation paths unavailable. Host health and external attestation were not established.

Remaining acceptance work

The stronger operating claim still needs evidence.

  • — A repeatable research → authority → execution → accounting path remains unverified.
  • — No current engineering patch has verified deployment or natural runtime effect.
  • — Observed source installation and synthetic checks do not establish sustained economic performance.
  • — Natural runtime adoption of the three further fixes and required exact-head CI remain unverified.
  • — Missing live decision identities and absent undiscovered rotation parts remain unresolved.