summaryrefslogtreecommitdiff
path: root/ORAL_B_RECOVERY.md
diff options
context:
space:
mode:
authorYurenHao0426 <Blackhao0426@gmail.com>2026-07-22 20:24:31 -0500
committerYurenHao0426 <Blackhao0426@gmail.com>2026-07-22 20:24:31 -0500
commit0ccb8ff9ea6686ca8b0adf3ec552408b4b07ad6b (patch)
tree536fff5da9746f5f2d3e209e3fdc74bf2c58616b /ORAL_B_RECOVERY.md
parenta5ba631e7e5562246a9f339fad1303747c72e6ac (diff)
audit: bind oral B recovery to D4 gate
Diffstat (limited to 'ORAL_B_RECOVERY.md')
-rw-r--r--ORAL_B_RECOVERY.md5
1 files changed, 5 insertions, 0 deletions
diff --git a/ORAL_B_RECOVERY.md b/ORAL_B_RECOVERY.md
index 2d9e8bf..7ab6785 100644
--- a/ORAL_B_RECOVERY.md
+++ b/ORAL_B_RECOVERY.md
@@ -80,6 +80,11 @@ observations and random stream. The oracle-role condition explicitly reads the
synthetic environment map only as a labelled diagnostic ceiling and is
ineligible for selection. Neutral warmup must leave maximum predictor error at
most `1e-5`; all warmup and online scalar observations are reported.
+The runner additionally requires the passed D4 gate itself to be tracked and
+the worktree to be clean. Every R1 record binds both the frozen protocol and
+that exact D4 gate by SHA-256; the complete-grid analyzer rejects any digest
+drift. This is an audit-only constraint and does not alter the frozen rates,
+seeds, conditions, metrics, or thresholds.
For each rate and task seed, run four paired conditions on identical context,
noise, perturbations, and evaluation trajectories: