Skip to content

Milestones

List view

  • **Planned milestone.** Amended by the 2026-09-06 consolidation of `docs/ROADMAP_0.5.0-0.8.0.md`; activates only after 0.7.0 release acceptance. This GitHub milestone was formerly titled 0.10.0. Exits with the 1.0 release-candidate criteria demonstrated on an exact SHA. ## Canonical name Platform Hardening, Extension Ecosystem & 1.0 Readiness ## Critical path Public-contract freeze → plugin SDK + admission policy → performance/scale program → distribution hardening (signing, updates, macOS decision, SBOM) → security/privacy audit → operator documentation → 1.0 readiness dossier ## Objective Declare and freeze the 1.0 public contract surface (CLI envelopes, persisted schema kinds, plugin capability ABI, documented behavior) with a deprecation policy; ship the versioned plugin SDK with admission policy and threat review; run the performance/scale program on named benchmark identities; harden distribution — installer signing decision, update channel, SmartScreen exit, SBOM and signed provenance attestations; decide macOS explicitly; refresh the security/privacy audit; land the deferred 0.3.0 application-quality polish register; complete operator documentation; and assemble the 1.0 readiness dossier with release-candidate criteria demonstrated on an exact SHA. ## Owns The 1.0 contract-surface declaration and deprecation policy, schema compatibility matrix closure, the plugin SDK and admission policy, the benchmark/scale regression program, distribution and platform decisions including SBOM and signed provenance attestations, the security/privacy audit refresh, operator documentation and onboarding, and the 1.0 readiness dossier. ## Out of scope New capability families, authority-boundary widening, a web shell, a second language runtime. A contract that cannot be fixture-frozen is redesigned or labeled experimental — never silently promised. ## Scope amendment (2026-09-15) - **#598** — upgrade, rollback, and corrupted-store recovery qualification. - **#599** — resolve #155 into 1.0-required application gates and 1.x deferrals. ## Sequence 0.7.0 → **0.8.0** (planned) → 1.0.0-rc train Canonical roadmap: https://app.notion.com/p/38f9cb079ddb804a96dbe26b8d86e84f

    No due date
    4/25 issues closed
  • **Planned milestone.** Amended by the 2026-09-06 consolidation of `docs/ROADMAP_0.5.0-0.8.0.md`; activates only after 0.6.0 release acceptance and a minimum confirmed-outcome corpus. This GitHub milestone was formerly titled 0.8.0 and now also consolidates the former 0.9.0. Graduated-automation stages 2–5 — **Recommend**, **Draft workflow**, **Approve**, and **Run with verification**. ## Canonical name Workflow Memory, Recommendations & Verified Repeat Automation ## Critical path Recommendation arc: reconciled chains → deterministic repeat-job signals → evidence-cited recommendation with visible assumptions → decision provenance → draft workflow assembly for review. Automation arc: operator promotion ceremony → match triggers + material-input diff → pre-authorized execution through the governed gateway → divergence pause → lifecycle governance. ## Objective Recommendation arc: recognize repeat jobs from confirmed reconciled chains, recommend the previously approved workflow with visible assumptions and differences, record every accept/edit/reject decision append-only, and compile consistently repeated work into draft Action List workflows for operator review. Nothing executes from a recommendation; accepted recommendations pre-fill the normal 0.3.0 governed path. Automation arc: an operator promotes a draft into an approved, versioned, immutable trusted workflow with explicit matching rules, safe-action tiers, and stop conditions; on a matching job Loop proposes — or, where promotion pre-authorizes it, executes — the workflow through the exact 0.3.0 governed path, staging output, revalidating from declared impact, and producing sign-off records; it pauses to the operator whenever confidence falls, material inputs differ, budgets are exceeded, or revalidation is not PASS. Trusted workflows never modify themselves. ## Owns The repeat-signal feature schema, artwork fingerprinting, matching/scoring policy with material-mismatch hard stops, recommendation records and decision provenance, draft-workflow assembly (compile-only), and the evaluation harness on a named reconciled corpus; the trusted-workflow contract, promotion/revocation/supersession ceremonies, match-trigger evaluation, pre-authorized execution policy inside the governed gateway, divergence/pause semantics, auto-sign-off binding, and workflow lifecycle governance. ## Out of scope Opaque ML ranking, cross-customer data pooling, self-updating drafts, auto-applied recommendations, pricing/scheduling suggestions; self-modifying workflows, frequency-based auto-promotion, unattended operation without a reachable operator, cross-site/multi-tenant automation, agent-initiated promotion. ## Scope amendment (2026-09-15) - **#595** — historical replay and shadow mode before trusted-workflow promotion. - **#596** — canary limits, execution budgets, and a global kill switch for trusted workflows. - **#597** — production trigger adapters for trusted workflows. ## Sequence 0.6.0 → **0.7.0** (planned) → 0.8.0 → 1.0.0-rc train Canonical roadmap: https://app.notion.com/p/38f9cb079ddb804a96dbe26b8d86e84f

    No due date
    5/25 issues closed
  • **Planned milestone.** Amended by the 2026-09-06 consolidation of `docs/ROADMAP_0.5.0-0.8.0.md`; activates only after 0.5.0 release acceptance. Consolidates the former 0.7.0 title (production outcome reconciliation & confirmed-result ledger). ## Canonical name Governed Intake & Confirmed Outcomes — Page-Gated OCR, Request-to-JobSpec & Confirmed-Result Ledger ## Critical path Intake arc: live-text-first classification → page-gated OCR evidence → deterministic spec parsing → candidate JobSpec with source spans → operator confirmation. Outcomes arc: production-event import → deterministic matching → operator review → confirmed-result ledger. ## Objective Intake arc: scanned or image-only inputs and unstructured requests become structured, provenance-carrying JobSpec candidates — always operator-confirmed. OCR output is evidence with producer, confidence, and source span; it never overrides live text and never changes a deterministic verdict except by producing cited evidence records. Outcomes arc: production/RIP/press events import through a stable file-based importer boundary, match deterministically to exact jobs and outputs by digest and identifiers, route ambiguity to an operator review queue, and append confirmed outcomes — including grouped samples, retries, splits, and partials — to the job spine. Observe-mode only: record and display, recommend nothing. ## Owns The OCR evidence contract and Evidence Graph integration, page-gate classification, sidecar lifecycle and packaging, deterministic specification-field parsers (the offline fallback), candidate-JobSpec assembly, optional agent-assisted extraction through the 0.4.0 inference boundary, and the intake review surfaces; the production-event schema kind, file-based importers with fail-closed validation and idempotent re-import, the deterministic matching engine and scoring policy, the review/confirmation queue, run-grouping semantics, and observe-mode job-history views. ## Out of scope Searchable-PDF write-back, OCR-driven verdict changes, live inbox/API integrations, PageMaster batch OCR, training pipelines, handwriting recognition; recommendations (0.7.0), automation, press-vendor API clients as architecture dependencies, automatic confirmation, cost/scheduling analytics. Only operator-confirmed, digest-matched outcomes may ever influence later learning. ## Scope amendment (2026-09-15) - **#594** — quarantined watch-folder intake adapter (file-based; creates candidates only). ## Sequence 0.5.0 → **0.6.0** (planned) → 0.7.0 → 0.8.0 Canonical roadmap: https://app.notion.com/p/38f9cb079ddb804a96dbe26b8d86e84f

    No due date
    3/21 issues closed
  • **Planned milestone.** Amended by the 2026-09-06 consolidation of `docs/ROADMAP_0.5.0-0.8.0.md`; activates only after 0.4.0 release acceptance. Absorbs the former 0.4.0-B plan-compiler track (#34, #128) and the 0.2.1 job scheduler (#238). ## Canonical name Job Spine & Job-Aware Production Context ## Critical path Job identity + JobSpec contract → encrypted job spine → artifact/output binding by digest → job-aware profile resolution → cross-surface job context ## Objective Make Loop the local system of record for production work: a thin, encrypted job spine links request → job → artwork → output → status, and job context flows deterministically into profile resolution and batch execution. Every job field carries per-field provenance and an explicit unknown state; unknown never resolves to a guessed default. ## Owns JobSpec and job-record schema kinds, job identity and digest linkage, the encrypted local job store and append-only job event log, job-aware profile resolution, job bindings across desktop, CLI, and PageMaster, and the job scheduler with priority classes and first-class cancellation. ## Out of scope MIS functions (quoting, invoicing, scheduling, inventory), multi-user sync, live e-mail/API intake, recommendations, and any automation behavior. Jobless operation remains fully supported. ## Scope amendment (2026-09-15) - **#591** — intent preflight: validate artwork against confirmed JobSpec expectations. - **#592** — job package export, import, archive, retention, and restore. - **#593** — production queue workspace over the application scheduler. ## Sequence 0.4.0 → **0.5.0** (planned) → 0.6.0 → 0.7.0 → 0.8.0 Canonical roadmap: https://app.notion.com/p/38f9cb079ddb804a96dbe26b8d86e84f

    No due date
    3/20 issues closed
  • **Living milestone.** Former planning alias: **0.0.6**. Supersedes the retired **0.1.4** GitHub milestone title. ## Canonical name Evidence-Grounded Automation & Bounded Agent Alpha ## Critical path Grounded explanation → safe next action → deterministic finding-driven plan (natural-language plan compilation moved to 0.5.0 by the 2026-09-06 consolidation) ## Objective Ship a useful agent-assisted vertical slice that improves understanding and planning while using the exact same authority boundaries as manual operation. First agent capability: **selected-finding explanation + safe-next-action proposal + deterministic plan assistance**. Not autonomous production. ## Owns Deterministic fallback explanations, grounded context packages, provider-neutral inference boundary, schema-constrained explanation/safe-next-action output, prompt-injection defense, finding-driven deterministic plan assembly, agent timeline UI without authority drift, and evaluation/stop conditions. ## Out of scope Autonomous mutation; self-modifying trusted workflows; full customer intake/MIS ownership; OCR-driven specification intake as a release dependency; internet-required core functionality. ## Scope amendment (2026-09-15) - **#584** — grounded explanation, context package, safe next actions, and the explanation timeline: restores the A-arc owner (deterministic offline first; the provider boundary stays #371). - **#590** — the deterministic-plan half of the critical path as *finding-driven assembly*: selected findings become an inspectable registry-backed plan that enters the normal preview/approval path with zero mutation authority. ## Authority model Core computes technical truth. The operator authorizes consequential work. The agent explains and proposes only. Canonical roadmap: https://app.notion.com/p/38f9cb079ddb804a96dbe26b8d86e84f

    Due by November 4, 2026
    4/7 issues closed
  • **Living milestone.** Former planning alias: **0.0.5**. Supersedes the retired **0.1.3** GitHub milestone title. ## Canonical name Governed Corrections, Preview, Approval & Sign-off ## Critical path Operation registry + dry run → preview + approval + execute → recheck + sign-off + rollback ## Objective Deliver the first complete trustworthy production correction loop: **finding → proposed operation → dry run → preview/diff → approval → execute to new artifact → revalidate → sign off → recover/rollback if needed** ## Owns Versioned semantic-operation registry, dry-run planning, technical and visual preview/diff, operator approval, execution to new output by default, append-only provenance, deterministic post-operation revalidation, sign-off records, and cross-surface parity (desktop, CLI, PageMaster, Action List). ## Out of scope The agent may not gain direct mutation authority. Job intake, workflow learning, OCR, press/RIP reconciliation, and full MIS functions remain downstream. Leftover 0.2.0 operator/product/trust work belongs in **0.2.1**, not here. ## Scope amendment (2026-09-15) The 2026-09-15 architecture review's verified gaps are executable issues: - **#586** — replace the placeholder workspaces with real Production Preview / Inspect / Fix surfaces (the integration surface over the 0.3.0-A/B/C contracts; #560 only makes the rail honest). - **#587** — deterministic selection predicates and logical composition for semantic operations (one selector language shared by manual Fix, Action Lists, and later agent plans). - **#588** — published correction-operation catalog and coverage matrix. - **#589** — portable Proof-of-Preflight and sign-off evidence bundle. ## Living sequence **0.3.0** (current) → **0.4.0** Canonical roadmap: https://app.notion.com/p/38f9cb079ddb804a96dbe26b8d86e84f

    Due by October 31, 2026
    0/25 issues closed