O3: export bounded Proofpress claims as OAFF v0.1 - #210
Conversation
|
The latest updates on your projects. Learn more about Vercel for GitHub.
|
Codex Review SummaryThis comment shows the latest Codex review activity on this pull request.
ℹ️ About Codex in GitHubYour team has set up Codex to review pull requests in this repo. Reviews are triggered when you
Codex reacts with 👀 while any review is running, comments if it has suggestions, and reacts with 👍 once all reviews finish with no findings. |
There was a problem hiding this comment.
💡 Codex Review
Here are some automated review suggestions for this pull request.
Reviewed commit: 4e3b379131
ℹ️ About Codex in GitHub
Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you
- Open a pull request for review
- Mark a draft as ready
- Comment "@codex review".
If Codex has suggestions, it will comment; otherwise it will react with 👍.
Codex can also answer questions or update the PR. Try commenting "@codex address that feedback".
| "revision": revision, | ||
| "statement": claim["statement"], | ||
| "type": "observation", | ||
| "applicability": {"description": description, "conditions": conditions}, |
There was a problem hiding this comment.
Preserve claim expiration in exported applicability
When a claim has expires_at, including one already expired, _base_v2_state excludes it from governed context as expired, but this projection serializes only the applicability description and conditions and can still emit its historical admission receipt. The standalone package therefore contains no deadline or expired state, allowing recipients to interpret stale knowledge as reusable indefinitely. Preserve the expiration in the OAFF applicability/lifecycle representation, or fail closed when that limit cannot be represented.
AGENTS.md reference: AGENTS.md:L49-L50
Useful? React with 👍 / 👎.
Adds an opt-in, read-only OAFF exporter for one immutable Proofpress claim. It requires explicit applicability conditions and exact caller-supplied source bytes that match retrieval evidence digests. The caller supplies an organization HTTPS namespace and an approved source URI. Source bytes and private workspace paths are not embedded.
Existing admission and withdrawal events become attributed originating receipts, never local authority. Includes CLI, docs, and tests.
Verified locally: 4 exporter tests (including standalone OAFF verifier), 8 context discovery tests, 4 content-addressed adapter tests, Ruff, and
git diff --check.Limit: this version exports each claim as one Finding. Revision chains and relation links remain for O5.