Skip to content

chore: fill derivable placeholders, drop false ARCHITECTURE, surface the rest - #42

Closed
hyperpolymath wants to merge 5 commits into
mainfrom
chore/estate-topup
Closed

chore: fill derivable placeholders, drop false ARCHITECTURE, surface the rest#42
hyperpolymath wants to merge 5 commits into
mainfrom
chore/estate-topup

Conversation

@hyperpolymath

Copy link
Copy Markdown
Owner

Automated estate top-up. Nothing here invents a value.

Filled — every token with one mechanical answer (owner, repo, forge, author, dates, project name, main branch). Identity from the git remote, dates from the clock, name from the README H1.

Not filled, on purposeSECURITY_EMAIL (two competing addresses exist in the estate), RESPONSE_TIME, CONDUCT_TEAM (substitutes into "a {{CONDUCT_TEAM}} member", which is not English), WEBSITE, PROJECT_DESCRIPTION, LANG_STACK. More than one defensible answer exists, and a confident wrong value is worse than a visible gap.

DeletedARCHITECTURE.md where it is byte-identical to the 346-copy estate boilerplate (blob 607e3d8c). Those 33 lines describe a src/ tests/ docs/ scripts/ config/ tree this repo does not have. Matched by hash, so a genuinely written ARCHITECTURE can never be caught by it.

CODEOWNERS — the solo form from standards/CODEOWNERS-POLICY.adoc Rule 1, which forbids a catch-all where the only owner is the sole maintainer. templates/CODEOWNERS contradicts that policy; the policy is versioned, dated and resolves standards#55, so it wins. Genuine co-owners (Rule 2) are untouched.

SurfacedREQUIRES_INITIALISATION.md plus a priority action in 0-AI-MANIFEST.a2ml, listing every remaining token, what it means, which files it belongs in, why it was not done already, and that it is to be deleted only when the work is genuinely complete.

Built from a fresh clone of origin/main, never a local checkout — several of those are dirty and hold unpushed commits.

🤖 Generated with Claude Code

…the rest

Estate top-up pass. Three separate things, none of which invents a value.

FILLED — every token with a single mechanical answer: OWNER, REPO, FORGE,
PROJECT, PACKAGE_NAME, PROJECT_NAME, AUTHOR, AUTHOR_EMAIL, CONDUCT_EMAIL,
AUTHOR_FIRST/LAST/INITIALS, CURRENT_YEAR, CURRENT_DATE, DATE, MAIN_BRANCH.
Identity comes from the git remote, dates from the clock, project name from the
README H1 where there is one.

Deliberately NOT filled, because more than one defensible answer exists and a
confident wrong value is worse than a visible gap: SECURITY_EMAIL (two competing
addresses are in use across the estate), RESPONSE_TIME, CONDUCT_TEAM (which
substitutes into "a {{CONDUCT_TEAM}} member", not English), WEBSITE,
PROJECT_DESCRIPTION, LANG_STACK.

DELETED — ARCHITECTURE.md, where it is byte-identical to the 346-copy estate
boilerplate (blob 607e3d8). Those 33 lines describe a src/ tests/ docs/
scripts/ config/ tree that this repo does not have, so the file is not merely
uninformative, it is wrong. Genuinely written ARCHITECTURE files are matched by
hash and left alone. No file beats a confidently false one.

CODEOWNERS — rewritten to the solo form mandated by
hyperpolymath/standards CODEOWNERS-POLICY.adoc Rule 1, which forbids a catch-all
line where the only owner is the sole maintainer. The estate's own
templates/CODEOWNERS contradicts that policy; the policy is versioned, dated and
resolves standards#55, so it wins. Files naming a genuine co-owner are Rule 2
and are untouched. Note @hyperpolymath and @metadatastician are the same person,
so a file naming the other account is a copy artifact that silently routed
review requests to the wrong account.

SURFACED — REQUIRES_INITIALISATION.md, and a priority action in
0-AI-MANIFEST.a2ml. Tokens that need a decision no script can make are left
visibly unfilled rather than faked or quietly deleted. The marker says what each
one is, which files it belongs in, why it was not done already, and that it must
be deleted only once the work is genuinely finished.

[methodology.state-validation]
reject-if-contains = ["{{PLACEHOLDER}}", "{{PROJECT}}", "rsr-template-repo"]
reject-if-contains = ["{{PLACEHOLDER}}", "CAFESCRIPTO", "rsr-template-repo"]

@gitar-bot gitar-bot Bot Aug 5, 2026

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

⚠️ Bug: Placeholder fill defeats template-detection reject list

The reject-if-contains / reject_patterns lists exist to flag un-initialised or stale state files by detecting leftover template tokens ({{PLACEHOLDER}}, {{PROJECT}}, rsr-template-repo). The top-up pass filled the {{PROJECT}} entry with the project name, turning the list into ["{{PLACEHOLDER}}", "CAFESCRIPTO", "rsr-template-repo"]. This defeats the guard two ways: it no longer detects a genuine leftover {{PROJECT}} token, and it now rejects any STATE file that legitimately mentions the project name. {{PROJECT}} here is a literal detection pattern, not a fillable placeholder, so it should be restored to "{{PROJECT}}" in all four files.

Restore the literal {{PROJECT}} detection token (use reject_patterns spelling in the two .k9.ncl files).:

reject-if-contains = ["{{PLACEHOLDER}}", "{{PROJECT}}", "rsr-template-repo"]

Was this helpful? React with 👍 / 👎

Comment thread guix.scm

(package
(name "{{PROJECT_NAME}}")
(name "CafeScripto")

@gitar-bot gitar-bot Bot Aug 5, 2026

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

💡 Quality: Guix name/URL use mixed-case CafeScripto vs real repo cafescripto

The actual repository/project slug is lowercase cafescripto (see the PR URL, STATE.a2ml project/name, container/manifest.toml, CITATION.cff), but the fill used the README H1 brand form CafeScripto in guix.scm, .guix-channel and CITATIONS.adoc. GitHub redirects case-insensitively so the URLs resolve, but guix build/guix lint require lowercase package names — (name "CafeScripto") is non-conventional and may be flagged. This also leaves citation metadata inconsistent (CITATIONS.adoc vs CITATION.cff). Use cafescripto for the Guix package name, channel name and repository URLs.

Use the lowercase repo slug for the Guix package name and home-page; apply the same to .guix-channel and CITATIONS.adoc URLs.:

(name "cafescripto")
...
(home-page "https://github.com/hyperpolymath/cafescripto")

Was this helpful? React with 👍 / 👎

@gitar-bot gitar-bot Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

⚠️ This PR is blocked due to unresolved code review findings.

Configure merge blocking · Maintainers can dismiss this review.

@gitar-bot

gitar-bot Bot commented Aug 5, 2026

Copy link
Copy Markdown

Note

Automatic reviews are paused because your trial's included automatic processing has been used for this period. Upgrade now, or comment "Gitar review" to run a review anytime.
Learn more

Code Review ⚠️ Changes requested 0 resolved / 2 findings

Automates estate metadata fill and removes boilerplate ARCHITECTURE files, but fills template tokens that defeat template-detection reject lists and introduces mixed-case naming inconsistencies in Guix URLs.

⚠️ Bug: Placeholder fill defeats template-detection reject list

📄 .machine_readable/agent_instructions/methodology.a2ml:104 📄 .machine_readable/bot_directives/methodology.a2ml:104 📄 .machine_readable/contractiles/k9/methodology-guard.k9.ncl:47 📄 .machine_readable/contractiles/self-validating/methodology-guard.k9.ncl:47

The reject-if-contains / reject_patterns lists exist to flag un-initialised or stale state files by detecting leftover template tokens ({{PLACEHOLDER}}, {{PROJECT}}, rsr-template-repo). The top-up pass filled the {{PROJECT}} entry with the project name, turning the list into ["{{PLACEHOLDER}}", "CAFESCRIPTO", "rsr-template-repo"]. This defeats the guard two ways: it no longer detects a genuine leftover {{PROJECT}} token, and it now rejects any STATE file that legitimately mentions the project name. {{PROJECT}} here is a literal detection pattern, not a fillable placeholder, so it should be restored to "{{PROJECT}}" in all four files.

Restore the literal {{PROJECT}} detection token (use reject_patterns spelling in the two .k9.ncl files).
reject-if-contains = ["{{PLACEHOLDER}}", "{{PROJECT}}", "rsr-template-repo"]
💡 Quality: Guix name/URL use mixed-case CafeScripto vs real repo cafescripto

📄 guix.scm:21 📄 guix.scm:66 📄 .guix-channel:9-10 📄 .guix-channel:16 📄 docs/attribution/CITATIONS.adoc:10 📄 docs/attribution/CITATIONS.adoc:14 📄 docs/attribution/CITATIONS.adoc:21 📄 docs/attribution/CITATIONS.adoc:25 📄 docs/attribution/CITATIONS.adoc:29 📄 docs/attribution/CITATIONS.adoc:33

The actual repository/project slug is lowercase cafescripto (see the PR URL, STATE.a2ml project/name, container/manifest.toml, CITATION.cff), but the fill used the README H1 brand form CafeScripto in guix.scm, .guix-channel and CITATIONS.adoc. GitHub redirects case-insensitively so the URLs resolve, but guix build/guix lint require lowercase package names — (name "CafeScripto") is non-conventional and may be flagged. This also leaves citation metadata inconsistent (CITATIONS.adoc vs CITATION.cff). Use cafescripto for the Guix package name, channel name and repository URLs.

Use the lowercase repo slug for the Guix package name and home-page; apply the same to .guix-channel and CITATIONS.adoc URLs.
(name "cafescripto")
...
(home-page "https://github.com/hyperpolymath/cafescripto")
🤖 Prompt for agents
Code Review: Automates estate metadata fill and removes boilerplate ARCHITECTURE files, but fills template tokens that defeat template-detection reject lists and introduces mixed-case naming inconsistencies in Guix URLs.

1. ⚠️ Bug: Placeholder fill defeats template-detection reject list
   Files: .machine_readable/agent_instructions/methodology.a2ml:104, .machine_readable/bot_directives/methodology.a2ml:104, .machine_readable/contractiles/k9/methodology-guard.k9.ncl:47, .machine_readable/contractiles/self-validating/methodology-guard.k9.ncl:47

   The `reject-if-contains` / `reject_patterns` lists exist to flag un-initialised or stale state files by detecting leftover template tokens (`{{PLACEHOLDER}}`, `{{PROJECT}}`, `rsr-template-repo`). The top-up pass filled the `{{PROJECT}}` entry with the project name, turning the list into `["{{PLACEHOLDER}}", "CAFESCRIPTO", "rsr-template-repo"]`. This defeats the guard two ways: it no longer detects a genuine leftover `{{PROJECT}}` token, and it now rejects any STATE file that legitimately mentions the project name. `{{PROJECT}}` here is a literal detection pattern, not a fillable placeholder, so it should be restored to `"{{PROJECT}}"` in all four files.

   Fix (Restore the literal {{PROJECT}} detection token (use reject_patterns spelling in the two .k9.ncl files).):
   reject-if-contains = ["{{PLACEHOLDER}}", "{{PROJECT}}", "rsr-template-repo"]

2. 💡 Quality: Guix name/URL use mixed-case CafeScripto vs real repo cafescripto
   Files: guix.scm:21, guix.scm:66, .guix-channel:9-10, .guix-channel:16, docs/attribution/CITATIONS.adoc:10, docs/attribution/CITATIONS.adoc:14, docs/attribution/CITATIONS.adoc:21, docs/attribution/CITATIONS.adoc:25, docs/attribution/CITATIONS.adoc:29, docs/attribution/CITATIONS.adoc:33

   The actual repository/project slug is lowercase `cafescripto` (see the PR URL, STATE.a2ml `project`/`name`, container/manifest.toml, CITATION.cff), but the fill used the README H1 brand form `CafeScripto` in guix.scm, .guix-channel and CITATIONS.adoc. GitHub redirects case-insensitively so the URLs resolve, but `guix build`/`guix lint` require lowercase package names — `(name "CafeScripto")` is non-conventional and may be flagged. This also leaves citation metadata inconsistent (CITATIONS.adoc vs CITATION.cff). Use `cafescripto` for the Guix package name, channel name and repository URLs.

   Fix (Use the lowercase repo slug for the Guix package name and home-page; apply the same to .guix-channel and CITATIONS.adoc URLs.):
   (name "cafescripto")
   ...
   (home-page "https://github.com/hyperpolymath/cafescripto")

Options

Display: compact → Showing less information.

Comment with these commands to change the behavior for this request:

Compact
gitar display:verbose         

Important

Your trial ends in 5 days — upgrade now to keep code review, CI analysis, auto-apply, custom automations, and more.

Was this helpful? React with 👍 / 👎 | Gitar

hyperpolymath and others added 4 commits August 5, 2026 14:13
…t a value

The estate top-up sweep substituted {{PROJECT}} here along with every other
token. This line is a DETECTOR list: the comment above it says these rules
detect corrupt/template/stale state files, so the tokens named in it are the
ones whose PRESENCE means a state file is broken.

Substituting it did two things. It blinded the {{PROJECT}} leak detector, and it
made the detector reject any state file containing this repo's own uppercased
name — the opposite of what the rule is for.

Same failure class as a template recipe rewriting the incident record that
documents its own bug: substituting tokens inside a thing that is ABOUT tokens.
Nothing else in this PR changes.

Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
…t a value

The estate top-up sweep substituted {{PROJECT}} here along with every other
token. This line is a DETECTOR list: the comment above it says these rules
detect corrupt/template/stale state files, so the tokens named in it are the
ones whose PRESENCE means a state file is broken.

Substituting it did two things. It blinded the {{PROJECT}} leak detector, and it
made the detector reject any state file containing this repo's own uppercased
name — the opposite of what the rule is for.

Same failure class as a template recipe rewriting the incident record that
documents its own bug: substituting tokens inside a thing that is ABOUT tokens.
Nothing else in this PR changes.

Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
The previous commit on this branch was written by a script that read the file
through a shell command substitution. $(...) strips trailing newlines and
printf '%s' does not put one back, so the file lost its final newline and the
diff showed "\ No newline at end of file".

Content is otherwise byte-identical to that commit.

Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
The previous commit on this branch was written by a script that read the file
through a shell command substitution. $(...) strips trailing newlines and
printf '%s' does not put one back, so the file lost its final newline and the
diff showed "\ No newline at end of file".

Content is otherwise byte-identical to that commit.

Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
@sonarqubecloud

sonarqubecloud Bot commented Aug 5, 2026

Copy link
Copy Markdown

@hyperpolymath

Copy link
Copy Markdown
Owner Author

Closing in favour of a reworked substituter — hyperpolymath/standards#590.

This sweep filled {{TOKEN}} placeholders by plain text replacement across every file. Across the 90 repositories reviewed it drew 141 findings, and one is severe:

sed "s/{{PROJECT_NAME}}/$name/g"  →  sed "s/Conative Gating/$name/g"
sed -e "s/{{DATE}}/$DATE/g"       →  sed -e "s/2026-08-05/$DATE/g"

Those are the scripts whose job is to perform template substitution. Filling the left-hand side of their own sed expressions means template application silently stops working — and the breakage stays invisible until someone mints a repository from the template and gets a half-substituted tree.

Four further shapes came out of the same cause:

  • release.sh no longer substitutes {{DATE}} into release notes
  • just's own {{ARGS}} reported as an unfilled token, leaving repos permanently "not initialised"
  • instructional docs rewritten to "Replace laminar, laminar, {{DEPS}} with actuals"
  • documentation describing placeholders had its examples filled in

The rule plain replacement cannot express: a placeholder is sometimes a value to fill and sometimes the subject being discussed. standards#590 encodes that distinction and is tested against this exact corruption (9/9, the first three cases reproducing it).

Nothing here is lost — the placeholder filling will be redone with that tool. Closing rather than fixing forward because repairing 289 branches individually would repeat the mistake at the same scale.

@hyperpolymath
hyperpolymath deleted the chore/estate-topup branch August 18, 2026 14:47
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant