Skip to content
Open
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
129 commits
Select commit Hold shift + click to select a range
1ab7f28
docs: expose documentation fitness and complete ADR index
seonghobae Aug 10, 2026
3a029ae
docs: reconcile ADR lifecycle index with protected main
seonghobae Aug 10, 2026
ba527a8
docs: add semantic documentation fitness assessment
seonghobae Aug 10, 2026
acf7ce0
test: enforce documentation fitness discoverability
seonghobae Aug 10, 2026
b8ef1a3
docs: model extension and agent authority separation
seonghobae Aug 10, 2026
e0f3642
docs: correct UML fitness against protected main
seonghobae Aug 10, 2026
3eccb93
test: enforce extension authority UML fitness
seonghobae Aug 10, 2026
19df570
docs: expose extension authority UML
seonghobae Aug 10, 2026
651a030
test: derive ADR index completeness from repository files
seonghobae Aug 10, 2026
c3e28e9
docs: align ADR 0109 title with decision record
seonghobae Aug 10, 2026
703c9de
docs: align ADR 0109 index title
seonghobae Aug 10, 2026
71d7554
docs: ground browser and agent protocol boundaries
seonghobae Aug 10, 2026
6019fd5
docs: expose browser protocol standards evidence
seonghobae Aug 10, 2026
be96967
docs: link documentation fitness claims to primary standards
seonghobae Aug 10, 2026
7b73846
docs(adr): define MV3 compatibility authority boundary
seonghobae Aug 10, 2026
cb57387
docs(adr): record architecture decision governance
seonghobae Aug 10, 2026
223e943
docs: index proposed MV3 and ADR governance decisions
seonghobae Aug 10, 2026
6093fcc
docs(adr): index new authority and governance decisions
seonghobae Aug 10, 2026
f6bd300
docs(adr): reserve MV3 authority decision after HTTP ADRs
seonghobae Aug 10, 2026
83af739
docs(adr): reserve governance ADR after HTTP decisions
seonghobae Aug 10, 2026
2b07467
docs(adr): release HTTP-owned ADR 0011 number
seonghobae Aug 10, 2026
4dee0f7
docs(adr): release HTTP-owned ADR 0012 number
seonghobae Aug 10, 2026
e545457
docs: align ADR index with active HTTP numbering
seonghobae Aug 10, 2026
90e355e
docs(adr): align reserved decision numbers with HTTP lineage
seonghobae Aug 10, 2026
39ecb33
test(docs): parse repository ADR status metadata forms
seonghobae Aug 10, 2026
63f9629
test(docs): accept descriptive ADR lifecycle metadata
seonghobae Aug 10, 2026
936f178
docs: reconcile protected-main and active-PR traceability
seonghobae Aug 10, 2026
9409cc5
docs: refresh fitness after traceability reconciliation
seonghobae Aug 10, 2026
bebc7cd
docs: reconcile PRD implementation evidence
seonghobae Aug 10, 2026
88355b4
docs: reconcile TRD protected-main maturity
seonghobae Aug 10, 2026
dce4e6b
docs: align fitness with reconciled PRD and TRD
seonghobae Aug 10, 2026
20e11ad
test(docs): lock current implementation maturity boundaries
seonghobae Aug 10, 2026
7371bee
test(docs): accept status punctuation and semantic TRD wording
seonghobae Aug 10, 2026
e29fc34
test(docs): require canonical traceability maturity vocabulary
seonghobae Aug 10, 2026
e8c8ce4
docs: distinguish proposed ADR provenance from protected main
seonghobae Aug 10, 2026
ef3dc0b
docs: separate ADR lifecycle from branch provenance
seonghobae Aug 10, 2026
484f40f
test(docs): separate branch provenance from protected-main truth
seonghobae Aug 10, 2026
d00aea1
docs: reconcile active sensitive-data lifecycle evidence
seonghobae Aug 10, 2026
113298e
docs(traceability): track bounded resolution freshness authority
seonghobae Aug 10, 2026
34b9765
docs(traceability): bound revocation freshness maturity
seonghobae Aug 10, 2026
14bc318
docs(traceability): reconcile resolution freshness coverage RCA
seonghobae Aug 10, 2026
a3efb62
test(docs): require freshness traceability discovery
seonghobae Aug 10, 2026
1487f4a
docs(traceability): index active freshness authorities
seonghobae Aug 10, 2026
e65a484
docs(traceability): state freshness as non-protected-main truth
seonghobae Aug 10, 2026
1c94b63
docs(adr): make acceptance transition explicit
seonghobae Aug 10, 2026
e77ab74
docs(doctoring): cite mutable CDP tip-of-tree correctly
seonghobae Aug 10, 2026
c463145
test(docs): accept descriptive ADR index status suffixes
seonghobae Aug 10, 2026
c32a051
test(docs): remove compound-line lint hazards
seonghobae Aug 10, 2026
75fc2e2
docs(traceability): track fresh-resolution socket consumer lane
seonghobae Aug 10, 2026
927d1d7
docs(traceability): record fresh socket consumer RCA
seonghobae Aug 10, 2026
c2bbb9f
docs(traceability): pin resolution freshness budget evidence
seonghobae Aug 10, 2026
14c57a6
docs(traceability): fail closed on missing revocation nextUpdate
seonghobae Aug 10, 2026
057a4c5
test(docs): require freshness trace links
seonghobae Aug 10, 2026
02f8f8b
docs(traceability): cite RFC 9325 TLS guidance
seonghobae Aug 10, 2026
c818ef5
test(docs): lock UML and maturity discoverability
seonghobae Aug 10, 2026
893e521
docs: record dated active PR maturity evidence
seonghobae Aug 10, 2026
c8a6822
docs: index volatile active PR evidence separately
seonghobae Aug 10, 2026
c3bcdae
docs: index extension authority UML
seonghobae Aug 10, 2026
ce1b718
docs: refresh whole-graph fitness against active authority lanes
seonghobae Aug 10, 2026
c66afb9
docs: refresh exact active-PR maturity evidence
seonghobae Aug 10, 2026
110c420
docs: reconcile fresh-socket authority exact evidence
seonghobae Aug 10, 2026
c251e07
test(docs): track semantic observation maturity
seonghobae Aug 10, 2026
cc4990a
docs: reconcile semantic observation maturity
seonghobae Aug 10, 2026
121be9c
docs(prd): track semantic observation provenance
seonghobae Aug 10, 2026
44d3f5f
docs(traceability): map semantic observation provenance
seonghobae Aug 10, 2026
fc0ed49
docs: refresh active PR maturity through #55
seonghobae Aug 10, 2026
57bcd02
test(docs): keep active maturity evidence current
seonghobae Aug 10, 2026
b1e4d42
docs: trace socket-use freshness enforcement
seonghobae Aug 10, 2026
1c605bb
test(docs): retain socket-use freshness trace
seonghobae Aug 10, 2026
e054442
test(docs): enforce complete maturity and UML contracts
seonghobae Aug 10, 2026
d80305a
test(docs): bind active PR evidence to exact maturity rows
seonghobae Aug 10, 2026
8a3828d
docs: refresh audience and evidence provenance
seonghobae Aug 10, 2026
dd51ef8
docs: refresh active implementation maturity through PR 56
seonghobae Aug 10, 2026
8a1d09a
docs: reconcile latest runtime and compatibility evidence
seonghobae Aug 10, 2026
1d7fa5a
test(docs): bind latest active evidence to documentation fitness
seonghobae Aug 10, 2026
6d9b13d
test(docs): align broker boundary assertion with canonical wording
seonghobae Aug 10, 2026
1ee9a71
test(docs): assert explicit MV3 compatibility boundary
seonghobae Aug 10, 2026
ab70e33
docs(evidence): track typed semantic query active maturity
seonghobae Aug 10, 2026
979d61f
test(docs): guard typed semantic query maturity evidence
seonghobae Aug 10, 2026
a1e99ed
docs(evidence): record exact semantic query acceptance
seonghobae Aug 10, 2026
302708f
fix(docs): bind semantic query evidence contract to exact facts
seonghobae Aug 10, 2026
234c9d0
docs(fitness): reconcile typed semantic query maturity
seonghobae Aug 10, 2026
4f4d460
docs(fitness): refresh active maturity through PR 59
seonghobae Aug 10, 2026
de845bb
docs(fitness): reconcile action-target and history lanes
seonghobae Aug 10, 2026
ce41fc1
test(docs): enforce maturity through PR 59
seonghobae Aug 10, 2026
f7aa7bc
docs(doctoring): record current history API evidence
seonghobae Aug 10, 2026
cc5650d
test(docs): bind active evidence checks to semantics
seonghobae Aug 10, 2026
ff0f012
docs(mv3): publish supported capability evidence matrix
seonghobae Aug 10, 2026
66a6032
docs(fitness): refresh active maturity through PR 60
seonghobae Aug 10, 2026
4b29478
test(docs): enforce MV3 capability matrix maturity
seonghobae Aug 10, 2026
e93e5b3
test(docs): bind history authority assertion to semantics
seonghobae Aug 10, 2026
99c18b3
docs(mv3): separate isolated-world compatibility evidence
seonghobae Aug 10, 2026
17aeac6
docs(fitness): refresh active maturity through PR 61
seonghobae Aug 10, 2026
b13556a
test(docs): enforce isolated-world evidence maturity
seonghobae Aug 10, 2026
2eeba22
docs(fitness): reconcile compatibility through PR 61
seonghobae Aug 10, 2026
0f19c50
test(docs): track current active dependency stacks
seonghobae Aug 10, 2026
69af6f2
docs(fitness): record extension policy isolation evidence
seonghobae Aug 10, 2026
1e68bd5
test(docs): enforce extension policy isolation maturity
seonghobae Aug 10, 2026
f17d7ab
docs(traceability): record extension authority security evidence
seonghobae Aug 10, 2026
6e71663
test(docs): lock extension authority traceability
seonghobae Aug 10, 2026
9e2be61
fix(docs): ignore markdown emphasis in closure contract
seonghobae Aug 10, 2026
536207e
docs(traceability): reconcile extension security ownership
seonghobae Aug 10, 2026
e4d6af2
docs(traceability): record action post-condition evidence boundary
seonghobae Aug 10, 2026
2ed154c
docs(traceability): reconcile action outcome and fixture evidence
seonghobae Aug 11, 2026
dc0055e
docs(traceability): record controlled fixture exact-head proof
seonghobae Aug 11, 2026
c927649
test(docs): require latest active PR maturity evidence
seonghobae Aug 11, 2026
17ff489
docs: refresh active implementation maturity evidence
seonghobae Aug 11, 2026
d3c736d
docs: reconcile latest active runtime evidence
seonghobae Aug 11, 2026
81f416f
docs: preserve extension-policy evidence contract
seonghobae Aug 11, 2026
d913b62
docs: record PR 67 and 68 maturity evidence
seonghobae Aug 11, 2026
c7370ce
docs: index latest active PR maturity delta
seonghobae Aug 11, 2026
fe60bff
docs: record exact green settlement evidence
seonghobae Aug 11, 2026
a55a973
docs: follow current settlement head
seonghobae Aug 11, 2026
a61a990
docs: record green current settlement head
seonghobae Aug 11, 2026
098c56a
docs: track sensitive reservation recheck lane
seonghobae Aug 11, 2026
0915569
docs: track pinned Agent Task semantic evidence lanes
seonghobae Aug 11, 2026
79215ba
docs: record green semantic browser evidence
seonghobae Aug 11, 2026
53137b1
docs: record green Agent Task resource evidence
seonghobae Aug 11, 2026
7aebfd7
docs: track process-set and extension mutation evidence
seonghobae Aug 11, 2026
61773a4
docs: refresh exact extension isolation evidence
seonghobae Aug 11, 2026
f454dea
docs: refresh active PR 73 and 74 evidence
seonghobae Aug 11, 2026
070f1c4
docs: reconcile moved active-PR evidence
seonghobae Aug 11, 2026
685a3eb
docs: reconcile exact PR 73 and 74 maturity
seonghobae Aug 11, 2026
0fcb613
docs: index exact maturity closure evidence
seonghobae Aug 11, 2026
8640e5e
docs: reconcile model-route active maturity
seonghobae Aug 11, 2026
6bca1cf
docs: reconcile export and extension composition maturity
seonghobae Aug 11, 2026
724342b
docs: record exact green export-route evidence
seonghobae Aug 11, 2026
8eb48f3
docs(evidence): reconcile active authority through PR 79
seonghobae Aug 11, 2026
0efbf36
docs: reconcile active maturity through PR 84
seonghobae Aug 11, 2026
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
276 changes: 276 additions & 0 deletions docs/DOCUMENTATION_FITNESS.md

Large diffs are not rendered by default.

40 changes: 20 additions & 20 deletions docs/PRD.md
Original file line number Diff line number Diff line change
Expand Up @@ -44,7 +44,7 @@ Every requirement uses **exactly one** status from this table. Implementation ev
| **Proposed** | Product direction still requiring a dedicated reviewed decision or sufficient implementation evidence. |
| **Open** | A decision or acceptance criterion is intentionally unresolved. |

Only `Implemented` may describe shipped behavior. An Accepted ADR is design authority, not implementation proof.
Only `Implemented` may describe shipped behavior. An Accepted ADR is design authority, not implementation proof. Active PR implementation evidence may be named in the evidence column, but it does not change a requirement to `Implemented` until the applicable behavior reaches protected `main`.

## 4. Problem statement

Expand Down Expand Up @@ -84,10 +84,10 @@ The status applies to the **whole named product surface**, not to every implemen
|---|---|---|---|
| **OriginWeave Browser** | Chromium-compatible interactive distribution with governed agent entry points | Planned | No protected-main branded browser distribution yet |
| **OriginWeave Runtime** | Headless/embedded governed web-task runtime | Planned | Rust authority kernels exist; browser integration remains incomplete |
| **OriginWeave Observe** | Structured observation from tools, structured data, network, accessibility, DOM/layout and visual fallback | Planned | Session/context/node-authority foundations are on protected main; semantic browser observation adapter is incomplete |
| **OriginWeave Capture** | Schema-bound extraction, crawler controls, downloads and WARC/PROV-oriented capture | Planned | Evidence foundations exist; complete capture runtime not shipped |
| **OriginWeave Observe** | Structured observation from tools, structured data, network, accessibility, DOM/layout and visual fallback | Planned | Session/context/node-authority foundations are on protected main; active PR #52 adds a bounded authority-bound semantic-observation value primitive with explicit evidence-channel provenance, but it is not a browser observation adapter and remains non-shipped |
| **OriginWeave Capture** | Schema-bound extraction, crawler controls, downloads and WARC/PROV-oriented capture | Planned | Evidence foundations and partial real-Chromium extension compatibility evidence exist; complete capture runtime is not shipped |
| **OriginWeave Governor** | CPU, RAM, GPU, VRAM, admission and model/browser priority governance | Accepted architecture | Deterministic resource-budget and CPU-worker admission foundations are implemented; platform telemetry/scheduling adapters remain incomplete |
| **OriginWeave Policy** | Capability, origin, purpose, risk, crawler, approval and sensitive-data authority | Accepted architecture | Capability/origin/purpose/risk/crawler/approval foundations are implemented; purpose-bound sensitive-data policy is active work in PR #33 and the trusted broker remains planned |
| **OriginWeave Policy** | Capability, origin, purpose, risk, crawler, approval and sensitive-data authority | Accepted architecture | Capability/origin/purpose/risk/crawler/approval and purpose-bound sensitive-data policy foundations are implemented on protected main; trusted sensitive-data broker/storage/lifecycle remain planned under issue #10 |
| **OriginWeave Evidence** | Credential-free evidence, provenance and task-trail contracts | Accepted architecture | Credential-free network evidence and purpose-bound sensitive-access receipts are implemented; complete Evidence Trail, WARC/PROV adapters and durable enterprise storage remain planned |
| **OriginWeave Protocol** | Stable browser-agent protocol independent of one upstream automation standard | Planned | Contract documented; implementation pending |
| **OriginWeave SDK** | Typed client libraries and adapters | Planned | Not a shipped product surface |
Expand Down Expand Up @@ -163,7 +163,7 @@ planner identifies field + purpose + destination
-> disclosure receipt records metadata without protected value
```

The full journey is target architecture until the sensitive policy, trusted broker, browser-fill path, and post-condition/evidence path are all protected-main integrated. Implemented subcomponents do not make this whole sequence shipped.
The full journey is target architecture until the trusted broker, browser-fill path, and post-condition/evidence path are all protected-main integrated. The purpose-bound sensitive-data policy foundation and access-evidence primitives are already on protected main; those implemented subcomponents do not make the complete broker journey shipped.

### 8.4 Enterprise crawler

Expand All @@ -183,19 +183,19 @@ public-crawl purpose
| ID | Requirement | Status | Implementation evidence / note |
|---|---|---|---|
| PRD-COMP-001 | Chromium is the compatibility kernel; OriginWeave does not reimplement Blink or V8 | Accepted architecture | ADR 0001 |
| PRD-COMP-002 | Maintain a Manifest V3 compatibility matrix and representative extension test farm | Planned | Issue #27 / release-specific evidence required |
| PRD-COMP-002 | Maintain a Manifest V3 compatibility matrix and representative extension test farm | Planned | Partial protected-main pinned-Chromium evidence covers service worker, content script, storage, DNR, tabs, windows, scripting, commands, side panel, bookmarks, history, restart and repeatability; active PR #43 adds bounded real downloads evidence; issue #27 still owns the complete matrix/release acceptance |
| PRD-COMP-003 | Chromium-specific integrations remain behind versioned adapters | Planned | Adapter strategy ADR 0107 |
| PRD-COMP-004 | Headless runtime remains independently usable without the interactive browser UI | Planned | Modular architecture target |

### 9.2 Session and observation authority

| ID | Requirement | Status | Implementation evidence / note |
|---|---|---|---|
| PRD-OBS-001 | Autonomous observations can carry explicit browser-session, browsing-context, canonical-origin and document-epoch authority | Implemented | `ObservedNodeHandle`, `BrowserSessionId`, `BrowsingContextId` and `DocumentEpoch` on protected main via #17; real browser adapter remains planned |
| PRD-OBS-002 | Actionable semantic-node handles are invalidated by relevant document-epoch changes at the action linearization boundary | Accepted architecture | Core exact-authority validation exists; adapter lifecycle/mutation invalidation and atomic dispatch evidence remain planned |
| PRD-OBS-003 | Observation prefers typed/structured evidence before accessibility/DOM/layout and bounded visual fallback | Accepted architecture | ADR 0103 |
| PRD-OBS-001 | Autonomous observations can carry explicit browser-session, browsing-context, canonical-origin and document-epoch authority | Implemented | `ObservedNodeHandle`, `BrowserSessionId`, `BrowsingContextId` and `DocumentEpoch` are on protected main under Accepted ADR 0010; real browser adapter remains planned |
| PRD-OBS-002 | Actionable semantic-node handles are invalidated by relevant document-epoch changes at the action linearization boundary | Accepted architecture | Core exact-authority validation exists; adapter lifecycle/mutation invalidation and atomic dispatch evidence remain planned; active PR #40 owns the bounded protocol-ID registry and remains non-shipped evidence |
| PRD-OBS-003 | Observation prefers typed/structured evidence before accessibility/DOM/layout and bounded visual fallback | Accepted architecture | ADR 0103; active PR #52 adds a bounded `SemanticNodeObservation` value contract bound to `ObservedNodeHandle`, typed node-local action descriptors and explicit non-empty evidence-channel provenance. It is not a browser observation adapter and remains active/non-shipped evidence |
| PRD-OBS-004 | Observation can use bounded incremental updates rather than full repeated snapshots | Planned | Adapter-specific design needed |
| PRD-OBS-005 | Source channel and trust/provenance remain explicit | Accepted architecture | Evidence model foundations exist |
| PRD-OBS-005 | Source channel and trust/provenance remain explicit | Accepted architecture | Evidence model foundations exist; active PR #52 fails closed when a semantic observation has no contributing evidence channel, while channel identity itself grants no execution authority |

### 9.3 Typed action execution

Expand All @@ -215,17 +215,17 @@ public-crawl purpose
| PRD-NET-002 | Resolution snapshots are bounded, origin-bound and fail closed on unapproved expansion | Implemented | `originweave-destination` |
| PRD-NET-003 | Direct transport connects only to approved canonical sockets and verifies `peer_addr` | Implemented | `originweave-network` |
| PRD-NET-004 | TLS authenticates service identity over the exact governed transport with explicit roots/time | Implemented | `originweave-tls` |
| PRD-NET-005 | Proxy/PAC route authority is explicit and never ambient | Implemented | Protected-main route-authority foundation from #20; PAC evaluation, proxy transport and CONNECT remain planned |
| PRD-NET-006 | Bounded HTTP semantics operate over authenticated governed transport | Planned | Active PR #11 is not shipped evidence |
| PRD-NET-005 | Proxy/PAC route authority is explicit and never ambient | Implemented | Protected-main route-authority foundation; PAC evaluation, proxy transport and CONNECT remain planned |
| PRD-NET-006 | Bounded HTTP semantics operate over authenticated governed transport | Planned | Current implementation evidence is active replacement PR #37; it is not protected-main truth. Historical PR #11 is predecessor lineage and must not be used as current implementation evidence |
| PRD-NET-007 | Real Chromium navigation proves end-to-end consumption of every shipped authority layer | Planned | Issue #28 / release acceptance requirement |

### 9.5 Secret and sensitive-data authority

| ID | Requirement | Status | Implementation evidence / note |
|---|---|---|---|
| PRD-DATA-001 | Raw secret values never enter model-visible context | Accepted architecture | ADR 0104; trusted browser/broker runtime path not fully shipped |
| PRD-DATA-002 | Sensitive disclosure binds tenant/task/field/purpose/destination/classification | Planned | Active replacement PR #33; no active-PR evidence counts as protected-main implementation |
| PRD-DATA-003 | Trusted broker owns expiry, revocation, atomic use reservation and resolution | Planned | Broker implementation pending under issue #10 |
| PRD-DATA-002 | Sensitive disclosure binds tenant/task/field/purpose/destination/classification | Implemented | Protected-main purpose-bound sensitive-data policy kernel governed by Accepted ADR 0007; this status does not claim broker/storage/value resolution |
| PRD-DATA-003 | Trusted broker owns expiry, revocation, atomic use reservation and resolution | Planned | Broker/storage/lifecycle implementation pending under issue #10 |
| PRD-DATA-004 | Privacy controls use purpose-bound authorization, encryption, retention and audit rather than blanket masking | Accepted architecture | `DATA_GOVERNANCE.md` |
| PRD-DATA-005 | Model disclosure additionally binds provider/model/region/retention policy | Planned | Requires orchestrator/provider integration |

Expand All @@ -238,15 +238,15 @@ public-crawl purpose
| PRD-EVD-003 | Evidence Trail links source, model judgement, policy, approval, action and verified outcome as distinct authorities | Planned | Conceptual ERD/provenance ADR; complete trail is not shipped |
| PRD-EVD-004 | **Origin Map** provides buyer-visible provenance exploration | Proposed | UX/product-design work still required |
| PRD-EVD-005 | WARC and PROV are separate interoperability/export adapters | Accepted architecture | ADR 0106 |
| PRD-EVD-006 | Sensitive-access evidence records authority without protected value | Implemented | Protected-main purpose-bound sensitive-access receipts via #31 |
| PRD-EVD-006 | Sensitive-access evidence records authority without protected value | Implemented | Protected-main purpose-bound sensitive-access receipts |

### 9.7 Resource governance

| ID | Requirement | Status | Implementation evidence / note |
|---|---|---|---|
| PRD-RES-001 | Deterministic resource budgets produce cumulative mitigations | Implemented | `originweave-resource` foundations |
| PRD-RES-002 | Browser/human correctness outranks optional model throughput | Accepted architecture | ADR 0105 |
| PRD-RES-003 | CPU worker saturation participates in deterministic new-work admission | Implemented | Protected-main `ResourceSnapshot`/`ResourceGovernor` CPU-worker admission via #30; platform worker telemetry/actuation remains adapter work |
| PRD-RES-003 | CPU worker saturation participates in deterministic new-work admission | Implemented | Protected-main `ResourceSnapshot`/`ResourceGovernor` CPU-worker admission; platform worker telemetry/actuation remains adapter work |
| PRD-RES-004 | Platform adapters report bounded CPU/RAM/GPU/VRAM/network/storage telemetry | Planned | Platform integration required |
| PRD-RES-005 | Constrained GPU systems shrink/offload/pause model work before sacrificing governed browser correctness | Accepted architecture | ADR 0105 |

Expand All @@ -264,10 +264,10 @@ public-crawl purpose

| ID | Requirement | Status | Implementation evidence / note |
|---|---|---|---|
| PRD-EXT-001 | Manifest V3 remains the extension compatibility baseline | Accepted architecture | Official Chrome platform baseline |
| PRD-EXT-002 | Upstream extension APIs are preserved where possible | Accepted architecture | Chromium-kernel strategy |
| PRD-EXT-003 | Extension access to agent authority requires separate signed policy grant | Planned | Issue #27 / enterprise-runtime integration |
| PRD-EXT-004 | Compatibility tests cover install/update, worker lifecycle, scripts, storage, DNR, messaging, download, side panel and isolation | Planned | Issue #27 / release-specific suite |
| PRD-EXT-001 | Manifest V3 remains the extension compatibility baseline | Accepted architecture | Official Chrome platform baseline; real pinned-Chromium evidence exists on protected main |
| PRD-EXT-002 | Upstream extension APIs are preserved where possible | Accepted architecture | Chromium-kernel strategy; current protected-main compatibility lane exercises multiple real MV3 APIs |
| PRD-EXT-003 | Extension access to agent authority requires separate signed policy grant | Planned | Protected-main extension authority foundation exists, but the complete managed-extension/native-messaging/enterprise runtime contract remains open under issue #27; Proposed ADR 0013 does not itself make this shipped |
| PRD-EXT-004 | Compatibility tests cover install/update, worker lifecycle, scripts, storage, DNR, messaging, download, side panel and isolation | Planned | Protected-main suite already covers worker/content/storage/DNR/tabs/windows/scripting/commands/side panel/bookmarks/history/restart/repeatability; active PR #43 adds downloads; install/update/native messaging/enterprise isolation and release-wide matrix remain open under issue #27 |

### 9.10 Crawler and capture policy

Expand Down
Loading
Loading