{
  "schema_version": "mentaview.public-mvp-local-progress/v1",
  "stage_id": "pilot-foundations-local",
  "step_name": "Pilot foundations verified locally; public activation pending",
  "reported_at": "2026-09-13",
  "evidence_scope": "local-engineering",
  "attribution": "Local execution results supplied by the coordinating engineering review. Publishing this receipt does not independently rerun or certify those results.",
  "counting_boundary": "These are separate suite observations, with possible overlap and included subsets. Do not add them into a unique test total. An unspecified ignored count is not zero.",
  "unique_test_total": null,
  "suites": [
    {
      "id": "kernel-domain-regression",
      "label": "Kernel and domain regression",
      "tests_passed": 688,
      "tests_ignored": 0,
      "status": "Passed locally",
      "scope": "Kernel and domain regression suite."
    },
    {
      "id": "server-ordinary",
      "label": "Server ordinary suite",
      "tests_passed": 184,
      "tests_ignored": 26,
      "status": "Passed locally",
      "scope": "The 26 ignored tests require separate PostgreSQL, attested sidecar and environment gates, including media or hardware requirements. This ordinary run does not clear them all."
    },
    {
      "id": "sdk-http-tls",
      "label": "Rust SDK HTTP/TLS",
      "tests_passed": 37,
      "tests_ignored": null,
      "status": "Passed locally; revision 2 rerun passed",
      "scope": "Final revision 2 rerun passed, including the optional BYOK reference and updated documentation assertions. The reported SHA identifies the contract manifest, not a test artifact. This local transport evidence does not qualify a hosted backend."
    },
    {
      "id": "encrypted-credential-store",
      "label": "Encrypted credential store",
      "tests_passed": 21,
      "tests_ignored": null,
      "status": "Passed locally",
      "scope": "Includes five PostgreSQL tests within the 21 reported passes."
    },
    {
      "id": "openai-connector-http",
      "label": "OpenAI connector HTTP transport",
      "tests_passed": 14,
      "tests_ignored": null,
      "status": "Passed locally",
      "scope": "Actual HTTP exchanges in local tests, including delayed response body fencing and read errors. No calls to the actual OpenAI service or other external model providers."
    },
    {
      "id": "claim-snapshot-concurrency",
      "label": "Claim snapshot concurrency",
      "tests_passed": 5,
      "tests_ignored": null,
      "status": "Passed locally",
      "scope": "PostgreSQL concurrency tests."
    },
    {
      "id": "restricted-postgresql-role",
      "label": "Restricted PostgreSQL role",
      "tests_passed": 4,
      "tests_ignored": null,
      "status": "Passed locally; coordinating rerun passed",
      "scope": "Four checks passed, including a real NOSUPERUSER PostgreSQL role. This targeted result does not clear all 26 ignored server tests."
    },
    {
      "id": "guest-http",
      "label": "Guest HTTP",
      "tests_passed": 1,
      "tests_ignored": null,
      "status": "Passed locally",
      "scope": "One local guest HTTP test; no public invitation pilot is activated."
    },
    {
      "id": "history",
      "label": "History",
      "tests_passed": 1,
      "tests_ignored": null,
      "status": "Passed locally",
      "scope": "One local history test."
    },
    {
      "id": "memory-lifecycle",
      "label": "Memory lifecycle",
      "tests_passed": 1,
      "tests_ignored": null,
      "status": "Passed locally",
      "scope": "One local memory lifecycle test."
    },
    {
      "id": "byok-guest-flow",
      "label": "Complete guest BYOK HTTP flow (v4)",
      "tests_passed": 1,
      "tests_ignored": null,
      "status": "Passed locally",
      "scope": "The v4 test passed with real PostgreSQL and a synthetic local loopback provider, covering /turns, history, replay, credential revocation and the explicit public-activation hold. No actual external provider was called."
    },
    {
      "id": "caddy-release-controls",
      "label": "Caddy release controls",
      "tests_passed": 21,
      "tests_ignored": null,
      "status": "Passed locally; final receipts persisted",
      "scope": "Final release-control checks passed. The associated real-TLS exercise used a synthetic upstream; it does not qualify a public backend."
    },
    {
      "id": "node-ui",
      "label": "Current Node UI tests",
      "tests_passed": 37,
      "tests_ignored": 0,
      "status": "Passed locally",
      "scope": "Current UI source: 37/37 passed after fixing a pending Ask stalled by a delayed session check for the same identity, and stale history status. The older asset on frozen revision 7a0f76b passed 36 tests; that is a separate observation. Neither result qualifies a hosted guest experience."
    },
    {
      "id": "browser-ui-local",
      "label": "Current browser UI checks",
      "tests_passed": 7,
      "tests_ignored": null,
      "status": "Passed locally",
      "scope": "Seven actual Chrome 152 headless cases passed on the current asset, using loopback HTTPS and a synthetic backend only. Desktop and mobile views were inspected by the coordinating reviewer. This local manual gate is separate from mandatory CI; it does not qualify Rust, authentication or a hosted backend."
    }
  ],
  "current_ui_evidence": {
    "qualification_source_reference": "deploy/pilot/gcp-podman/evidence/pilot-browser-local-20260913.json",
    "asset_sha256": "44642b2075eba59288619d18168e19a9ce14948f5bb167ff2faf85b70644da2e",
    "node_log_revision": 3,
    "node_tests_passed": 37,
    "node_tests_failed": 0,
    "node_tests_skipped": 0,
    "browser_version": "152.0.7977.84",
    "playwright_version": "1.62.1",
    "browser_mode": "Chrome headless",
    "browser_gate": "local-manual",
    "mandatory_github_browser_job": false,
    "browser_cases_passed": 7,
    "browser_cases_failed": 0,
    "environment": "loopback-https-synthetic-backend",
    "desktop_and_mobile_reviewed": true,
    "rust_qualified": false,
    "authentication_qualified": false,
    "hosted_backend_qualified": false
  },
  "frozen_helper_runs": {
    "source_revision": "7a0f76b",
    "status": "passed",
    "scope": "Nine separate MVP helper suites on the frozen revision. The 36 Node UI tests used the older asset; current-source Node and browser results are recorded separately. No unique test total or public activation is inferred.",
    "suites": [
      { "id": "sdk-http-tls", "tests_passed": 37 },
      { "id": "node-ui-old-asset", "tests_passed": 36 },
      { "id": "claim-snapshot-concurrency", "tests_passed": 5 },
      { "id": "guest-http", "tests_passed": 1 },
      { "id": "history", "tests_passed": 1 },
      { "id": "memory-lifecycle", "tests_passed": 1 },
      { "id": "encrypted-credential-store", "tests_passed": 21 },
      { "id": "byok-guest-flow", "tests_passed": 1 },
      { "id": "restricted-postgresql-role", "tests_passed": 4 }
    ],
    "postgresql_version": "17.11",
    "fresh_databases": 7,
    "database_cleanups_passed": 7
  },
  "sdk_evidence_reference": {
    "record_revision": 2,
    "contract_manifest_sha256": "8c07ad8235f8ae5bb13100c8454955a8c5229b66a8ebb8363c9d954b5a69ac55",
    "documentation_assertions_rerun_status": "passed",
    "scope": "SDK contract manifest SHA for record revision 2, not a test artifact hash, product release version or source commit."
  },
  "caddy_report": {
    "status": "Final local checks passed; receipts persisted",
    "forwarded": 560,
    "blocked": 28,
    "scope": "Real TLS with a synthetic upstream. These forwarding observations are not a unique test count or hosted-backend qualification.",
    "release_controls_status": "passed",
    "final_receipts_status": "persisted"
  },
  "pending_checks": [
    "M1 is merged and its site is published. M2 revision 7a0f76b passed 34 preview checks, but assurance CI failed on stale app/config evidence hashes. Correction and full CI on the exact corrected commit are pending before promotion; no canonical M2 publication is recorded.",
    "The server ordinary suite leaves 26 ignored tests requiring separate PostgreSQL, attested sidecar and environment gates, including media or hardware requirements; the targeted passes do not clear them all."
  ],
  "public_activation": {
    "status": "blocked",
    "canonical_openai_byok_status": "blocked",
    "backend_gcp_target_status": "unconfirmed",
    "actual_external_provider_calls": 0,
    "backend_inventory": {
      "confirmed_project_id": "mentaview",
      "live_hosting_has_backend_rewrites": false,
      "pilot_path": "/pilot",
      "pilot_http_status": 404,
      "scope": "Inventory is confirmed for the Mentaview project. Static Hosting availability does not identify or qualify a backend deployment target."
    },
    "successor_consent_kernel_included": false,
    "public_hold": {
      "implemented": true,
      "before_discovery": true,
      "before_dispatch": true,
      "capability_inference": false,
      "http_status": 503,
      "byok_http_test_revision": 4
    },
    "blockers": [
      "Canonical public OpenAI BYOK activation is explicitly held before provider discovery and dispatch. The inference capability is advertised as false, and the hold returns a specific HTTP 503 response.",
      "Explicit consent for each turn and a retention policy remain successor work. The isolated consent-kernel work is excluded from this snapshot and does not activate public inference.",
      "The Google Cloud project inventory is confirmed for Mentaview, but the backend target remains unconfirmed. Live Hosting has no backend rewrites and /pilot returns 404; no public guest invitation endpoint is qualified."
    ]
  },
  "truth_boundary": {
    "public_backend_qualified": false,
    "external_certification": false,
    "mvp_ready": false,
    "m5_promotions": 0,
    "historical_p95_status": "FAIL",
    "statement": "Engineering evidence is not external certification. All eleven modules remain at the non-standard M4− internal-laboratory boundary, with zero M5 promotions. Historical p95 FAIL limits remain in force. Local passes do not establish public provider qualification, hosted-backend qualification or MVP readiness."
  }
}
