feat(plan-01): Phase 1 — relocate harness code to packages/casan-harness (symlink facade)
Physically move the pure-code subtrees out of .specify into the package, leaving compat symlinks at the old .specify/<dir> paths so every existing reference (internal CASAN_HARNESS_ROOT + external CI/docker/mjs) keeps resolving. Runtime state stays put. Moved (git mv): scripts/ tests/ security/ templates/ config/ governance/ memory/ .specify/<dir> -> packages/casan-harness/<dir> (+ .specify/<dir> symlink) Stays in .specify (state/governance/domain, handled later): logs/ agentops/ level5/ init-options.json traceability-map.json Python `.resolve()` self-location followed the compat symlink into packages and lost the app root; generate-casan-demo-context.py, generate-agentops-dashboard.py and dashboard-server.py now walk UP for the `.specify` state marker instead of a fixed parent depth (fixes "missing trace files" in run-casan4). Full gate: PASS=64 FAIL=0 SKIP=3 (CASAN_CI_STEP_TIMEOUT_SEC=1200 — track-a ~450s runs close to the 600s default and can tip over under load; this is timing variance, not a regression — it passed cleanly with headroom). Runtime log/audit artifacts kept unstaged. Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>
This commit is contained in:
co-authored by
Claude Opus 4.8
parent
2c765c9a45
commit
664bd1f00c
@@ -0,0 +1,59 @@
|
||||
{
|
||||
"$schema": "http://json-schema.org/draft-07/schema#",
|
||||
"$id": "https://casan.fpt/loop-policy.schema.json",
|
||||
"title": "CASAN Loop Budget Governor policy",
|
||||
"description": "Schema for .specify/config/loop-policy.yaml (Plan-17 Track 1). Budgets are non-negative numbers; on_exceed is halt|escalate. Absence of a rule means the strictest built-in ceiling applies (deny-by-default).",
|
||||
"type": "object",
|
||||
"required": ["version", "profiles"],
|
||||
"additionalProperties": false,
|
||||
"properties": {
|
||||
"version": { "type": "integer", "minimum": 1 },
|
||||
"org_ceiling": { "$ref": "#/definitions/budget" },
|
||||
"profiles": {
|
||||
"type": "object",
|
||||
"minProperties": 1,
|
||||
"additionalProperties": { "$ref": "#/definitions/profileBlock" }
|
||||
}
|
||||
},
|
||||
"definitions": {
|
||||
"budget": {
|
||||
"type": "object",
|
||||
"additionalProperties": false,
|
||||
"properties": {
|
||||
"max_steps": { "type": "number", "minimum": 0 },
|
||||
"max_tokens": { "type": "number", "minimum": 0 },
|
||||
"max_wall_clock_sec": { "type": "number", "minimum": 0 },
|
||||
"max_cost_usd": { "type": "number", "minimum": 0 },
|
||||
"max_corrections_per_step": { "type": "number", "minimum": 0 },
|
||||
"on_exceed": { "type": "string", "enum": ["halt", "escalate"] }
|
||||
}
|
||||
},
|
||||
"convergence": {
|
||||
"type": "object",
|
||||
"additionalProperties": false,
|
||||
"properties": {
|
||||
"oscillation_repeat": { "type": "integer", "minimum": 1 },
|
||||
"thrash_window": { "type": "integer", "minimum": 1 },
|
||||
"no_progress_window": { "type": "integer", "minimum": 1 },
|
||||
"on_stall": { "type": "string", "enum": ["halt", "escalate"] }
|
||||
}
|
||||
},
|
||||
"profileBlock": {
|
||||
"type": "object",
|
||||
"additionalProperties": false,
|
||||
"properties": {
|
||||
"defaults": { "$ref": "#/definitions/budget" },
|
||||
"delegation_levels": {
|
||||
"type": "object",
|
||||
"propertyNames": { "pattern": "^L[0-5]$" },
|
||||
"additionalProperties": { "$ref": "#/definitions/budget" }
|
||||
},
|
||||
"projects": {
|
||||
"type": "object",
|
||||
"additionalProperties": { "$ref": "#/definitions/budget" }
|
||||
},
|
||||
"convergence": { "$ref": "#/definitions/convergence" }
|
||||
}
|
||||
}
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,96 @@
|
||||
# CASAN Loop Budget Governor policy (Plan-17 Track 1).
|
||||
#
|
||||
# This file is a GOVERNED, security-sensitive artifact. Loosening any ceiling
|
||||
# (raising a max_*, or adding a more permissive delegation_level / project rule)
|
||||
# must go through control-plane-settings.py (approval JWT + SoD proposer!=approver
|
||||
# + versioned + rollback) — see Plan-17 17.3 / Plan-14 / Plan-16 SEC-07.
|
||||
#
|
||||
# Deny-by-default: any run whose (profile, delegation_level, project) does not
|
||||
# match a rule here falls back to the strictest built-in ceiling in loop_common.py
|
||||
# (STRICT_CEILING), NOT to "unlimited". A missing field inside a matched rule also
|
||||
# falls back to the strict value for that field.
|
||||
#
|
||||
# on_exceed: halt | escalate (halt = stop the loop; escalate = route to the
|
||||
# HITL approvals inbox, Plan-13 §3.4).
|
||||
version: 1
|
||||
|
||||
# Organization hard cap (Plan-17 17.19): a governed meta-loop change can never
|
||||
# loosen a budget above these values, even with a valid approval. Defense-in-depth
|
||||
# — the governor also clamps any governed override to this cap at read time, and
|
||||
# loop-metaloop.py refuses to apply a loosen proposal that exceeds it.
|
||||
org_ceiling:
|
||||
max_steps: 200
|
||||
max_tokens: 1000000
|
||||
max_wall_clock_sec: 7200
|
||||
max_cost_usd: 25.0
|
||||
max_corrections_per_step: 6
|
||||
|
||||
profiles:
|
||||
# Production is secure-by-default: tight ceilings, escalate on breach so a human
|
||||
# decides whether to grant more budget (never silently continue).
|
||||
prod:
|
||||
defaults:
|
||||
max_steps: 20
|
||||
max_tokens: 100000
|
||||
max_wall_clock_sec: 600
|
||||
max_cost_usd: 1.0
|
||||
max_corrections_per_step: 2
|
||||
on_exceed: halt
|
||||
delegation_levels:
|
||||
L0:
|
||||
max_steps: 5
|
||||
max_tokens: 20000
|
||||
max_wall_clock_sec: 120
|
||||
max_cost_usd: 0.10
|
||||
max_corrections_per_step: 1
|
||||
L1:
|
||||
max_steps: 10
|
||||
max_tokens: 40000
|
||||
max_cost_usd: 0.25
|
||||
L2:
|
||||
max_steps: 20
|
||||
max_tokens: 100000
|
||||
max_cost_usd: 1.0
|
||||
L3:
|
||||
max_steps: 40
|
||||
max_tokens: 200000
|
||||
max_wall_clock_sec: 1200
|
||||
max_cost_usd: 3.0
|
||||
max_corrections_per_step: 3
|
||||
L4:
|
||||
max_steps: 80
|
||||
max_tokens: 400000
|
||||
max_wall_clock_sec: 2400
|
||||
max_cost_usd: 8.0
|
||||
max_corrections_per_step: 4
|
||||
L5:
|
||||
max_steps: 160
|
||||
max_tokens: 800000
|
||||
max_wall_clock_sec: 4800
|
||||
max_cost_usd: 20.0
|
||||
max_corrections_per_step: 5
|
||||
projects:
|
||||
okr:
|
||||
max_steps: 30
|
||||
# Convergence detection (Plan-17 T2): stop a loop that repeats actions or
|
||||
# stops making forward progress. on_stall=escalate routes to the HITL inbox.
|
||||
convergence:
|
||||
oscillation_repeat: 3
|
||||
thrash_window: 4
|
||||
no_progress_window: 3
|
||||
on_stall: escalate
|
||||
|
||||
# Dev may run longer while iterating, but is still bounded and still audited.
|
||||
dev:
|
||||
defaults:
|
||||
max_steps: 50
|
||||
max_tokens: 250000
|
||||
max_wall_clock_sec: 1800
|
||||
max_cost_usd: 5.0
|
||||
max_corrections_per_step: 3
|
||||
on_exceed: halt
|
||||
convergence:
|
||||
oscillation_repeat: 4
|
||||
thrash_window: 6
|
||||
no_progress_window: 5
|
||||
on_stall: escalate
|
||||
Reference in New Issue
Block a user