Files
correx/BACKLOG.md
T
kami 40245583e5 docs(backlog): mark health TUI pane shipped, add QA plan
Flip §A live health TUI pane to pending-live-QA (fd67a6c), register the QA
gate in §F, add docs/qa/QA-health-tui-pane.md. Note that §4 health-checks is
now feature-complete in code (3 probes + pane) — retire as a unit once QA passes.
2026-06-14 18:58:46 +04:00

12 KiB
Raw Blame History

CORREX — BACKLOG

⚠️ MAINTENANCE RULE — READ FIRST When an item here is resolved, MOVE it out of this file and into RETRO.md. Do not just tick a box and leave it. Cut the entry, paste it into RETRO.md with the resolving commit hash(es) and the date it landed/was verified. This file is the live outstanding-work list; RETRO.md is the archive of what got done. "Resolved" = built and verified (live-QA passed where a QA gate is noted). Items marked SHIPPED (pending live-QA) stay here until their QA gate passes, then they move.

QA RULE — after a feature is done, plan its QA before calling it resolved. Run /qa-plan <commits|spec> (or copy docs/qa/TEMPLATE.md by hand) to produce a docs/qa/QA-<feature>.md with observable-evidence checks. A feature is not "resolved" until that plan passes live. On PASS → move to RETRO.md; on FAIL → refile the misses here as numbered findings.

Synthesized 2026-06-14 from the five docs/plans/2026-06-13-*.md design specs and session memory. Pointers are commit hashes / spec sections, not gospel — verify against current code before acting (memory is point-in-time).


A. Observability spec — docs/plans/2026-06-13-observability-spec.md

Metrics + CLI + TUI pane and the health backbone are shipped (fe94140, 4f6bfa8, f8fd260) — those are RETRO candidates once live-QA'd. Remaining:

  • [~] §4 LLAMA_SERVER health probeSHIPPED (pending live-QA) aaf896d. Liveness via GET /health + tokens/sec degradation watch (windowed avg of recorded InferenceCompletedEvents, opt-in via llama_tps_warn_below). Plugs into the existing HealthMonitor. QA gate in §F → docs/qa/QA-llama-health-probe.md.
  • [~] §4 EVENT_STORE health probeSHIPPED (pending live-QA) 7a1362c. Times a cheap lastGlobalSequence() read as a responsiveness heartbeat (DEGRADED on throw or over event_store_latency_warn_ms); read-only by design (no probe writes into the log). QA gate in §F → docs/qa/QA-event-store-health-probe.md.
  • [~] §4/§3 live health TUI paneSHIPPED (pending live-QA) fd67a6c. OverlayHealth (key H / palette "health checks") mirrors the stats pane: pull-based fetch over WS (GetHealthCheckshealth.checks/HealthReport), per-subject status with degraded loud, visible fallback when disabled. QA gate in §F → docs/qa/QA-health-tui-pane.md. With all three probes + this pane, §4 health-checks is feature-complete in code — retire as a unit once the QA gates pass.
  • §3 tier-2 stats — full session-completion summary pane polish (basic pane shipped).
  • 🚫 §3 tier-3 Prometheus/Grafana export — spec says "deferred indefinitely". Do not build.

B. Role reliability spec — docs/plans/2026-06-13-role-reliability-spec.md

§3 analyst keystone (894969d), entity grounding (b050dc4), §2 write-manifest (4e5e4e5), and §5 reviewer prompt/needs wiring (3467826) are shipped — RETRO candidates. Remaining:

  • §5 reviewer static-first INFRA — run compiler/detekt/formatters as a pipeline step and mechanically exclude their findings from reviewer context. Needs a static-findings event representation. (Prompt half is done; infra half is unbuilt.)
  • §6 CritiqueFinding schema in code — only test expectations exist today; no structured type. Shared by plan critic + code reviewer.
  • §6 CriticCalibrationProjection (keyed by modelHash, role) — needs runtime history to exist first (spec ordering #5). Same projection as pipeline-addenda A3.
  • §4 architect contradiction-check — L3 retrieval over decision journal + ADRs → PossibleContradictionFlag (display-only in v1). Unbuilt.
  • §3 symbol grounding — deferred; needs a real symbol index (file-path grounding done).
  • §2 dynamic plan-derived diff manifest — allowed files from the impl_plan artifact. Future refinement; static per-stage writes = [globs] form is shipped.
  • ⚠️ §4 architect ADR shape (alternativesConsidered required non-empty) — DELIBERATELY NOT TAKEN. Conflicts with the standing "don't raise alternatives unless real cost/breakage" preference already encoded in architect.md. Revisit only with an explicit rationale; do not add by default.

C. Plan pipeline addenda — docs/plans/2026-06-13-plan-pipeline-addenda.md

Entire spec is unbuilt.

  • A1 brief echo-back gate — planner restates brief as BriefEcho; harness diffs referencedFiles/symbols/acceptanceCriteria vs original; divergence → BriefEchoMismatchEvent, halt before any plan generation. (Cheapest failure point.)
  • A2 stage-level plan checkpointing — reconciliation compares produced artifacts vs the confirmed plan's produces-slots per stage; StageCheckpointPassedEvent / StageCheckpointFailedEvent (halt + surface).
  • A3 critique calibration trackingCritiqueOutcomeCorrelatedEvent + CriticCalibrationProjection (= role-reliability §6; build once, two consumers).

D. Research workflow spec — docs/plans/2026-06-13-research-workflow-spec.md

Core workflow is SHIPPED end-to-end, ON by default (fb1d970..378ee39): extractor + web_search (T1) + web_fetch (T2) in :infrastructure:tools, research.toml (decompose→gather→report), schemas, prompts. Remaining:

  • Live-QA the full run — could not validate in-session (no SearXNG/network in sandbox). Needs SearXNG running; exercise triage→fetch-approval→report→artifact viewer.
  • §6 web approval client — the one larger unbuilt piece. Third client on the existing Ktor REST+WS bus: approval cards + event strip + session list. Behind WireGuard/Tailscale only, never public. Independent track (spec ordering #5).
  • §3 batch fetch-approval at source-list level — currently per-fetch T2; operator should approve the source list once, not each URL.
  • Dedicated SourceFetched / LowQualityExtraction events — quality + content_sha256 currently ride inside ToolExecutionCompletedEvent metadata only.
  • Dynamic per-session egress allowlist — currently static networkAllowedHosts + T2 gate.
  • Fresh-machine runtime install — copy research.toml + prompts/ + schemas/ and the [[artifacts]] / [tools.research] config entries into ~/.config/correx (already done on this box; repo source is examples/workflows/ + docs/schemas/).
  • 🚫 No headless browser, no LLM-based extraction, no public approval endpoint (non-responsibilities).

E. TUI requirements spec — docs/plans/2026-06-13-tui-requirements-spec.md

§2 last-event clock + unknown-event fallback (8b896b5) and §5.1 deterministic command-parse card (65df3f4) are shipped — RETRO candidates. Remaining:

  • §2 full Go↔Kotlin per-event-type render matrix — golden-fixture tests asserting a defined render for every event type (last §2 bullet; partially covered today).
  • §3/§4 plan comparison view — top-2 candidates side-by-side, compact stage graphs, diff-highlighted, lint/critique findings inline. Lands with the planning pipeline; load-bearing for the future preference ranker.
  • §3 approval ergonomics audit — single-key y/n/e for T0T2, mandatory confirm T3+, queued-approval navigable list (never modal-stacked). Verify against current band impl.
  • Render markdown in chat turns (QA feature note b) — TUI currently ignores md.
  • Session list / resume view (QA feature note c) — after server restart + TUI reopen there's no way to see a prior session or its state; GET /sessions data exists server-side.
  • Idea board → profile promotion — deferred hook; auto-captured ideas promote into the curated .correx/project.toml profile. (Board itself shipped 3ac0a14..02e963d.)
  • §5.2 command-card LLM annotation layer — deferred by spec ("ship layer 1, live with it, then decide whether layer 2 earns its place"). Build only after using layer 1.

F. In-flight QA gates (move to RETRO when each passes)

These are SHIPPED in code but prompt-/server-/network-dependent and not yet live-verified:

  • Epic 15 live-QA gate — server up → correx events / correx replay on a real session, confirm MDC sessionIds in logs. (Code complete a7d5211..75703ec.)
  • Idea board live-QA — needs a real router model to emit the {"ideas":[…]} block.
  • Clarification loop + workflow-propose panel live-QA — both prompt-dependent (need a real router/analyst model to emit the structured json blocks).
  • Research workflow live-QA — see §D.
  • LLAMA_SERVER health probe live-QAaaf896d; needs a real llama-server to ping. Plan: docs/qa/QA-llama-health-probe.md (liveness up/down/restore, non-2xx, tps degrade, restart hysteresis, replay independence).
  • EVENT_STORE health probe live-QA7a1362c. Plan: docs/qa/QA-event-store-health-probe.md (responsive→HEALTHY, no-log-pollution, slow/throw→DEGRADED, restore hysteresis, replay independence).
  • Health TUI pane live-QAfd67a6c. Plan: docs/qa/QA-health-tui-pane.md (H opens/fetches, matches correx health, degraded loud, disabled fallback, resize, live wire-contract values).
  • TUI kernel-steering + AMD gauge fresh live-QA — approve+note actually revising the same stage's output; AMD VRAM/RAM gauge on the real box.
  • Unit-tested-only fixes, not live-verified: 1a7eb05 (verdict-edge rejection), e195c79 (stale-parking OrchestrationPaused ABANDONED_STALE), df3ee0b (bare-id narration model match).

G. Low-severity hardening

  • turnId prefix collisionstartsWith("repomap:$repoRoot") can collide where one root path prefixes another (/repo vs /repo2). Fix = trailing : delimiter in 3 places (ProjectMemoryService write+check, L3RepoKnowledgeRetriever filter).
  • Narration lane lag — stale pause-trigger narrations blend with current workflow status; drop queued pause narrations once their approval resolves.
  • WorkspaceStateProbe fingerprint — hashes path|mtime|size without newline separators though the docstring says "lines". Internally consistent/deterministic; cosmetic.
  • ⚠️ PreemptRedirectEvent has no producer (QA bug #6) — B3 hard re-route is unreachable from the TUI. Intended flow: steering → router proposes → operator confirms. Skipped by design; build only if the hard-reroute path is actually wanted.

H. Freestyle mode — deferred follow-ups (epic COMPLETE, B4 PASSED)

  • Graph re-routing by preemptive steering — only priority-directive surfacing is built today; mid-execution input cannot re-route the compiled graph.
  • Child-session SubagentRunner impl — seam exists (InSessionSubagentRunner); child-session is the intended drop-in swap. Sequential only (no-parallel-agents invariant).
  • Post-lock ApprovalDecisionResolvedEvent.userSteering → L0 promotion — currently stays L2; out of freestyle's exercised path (gate is pre-lock).

I. Gamedev / Godot readiness (operator intent)

  • .cs in RepoMapIndexer SYMBOL_PATTERNS — add if the gamedev repo is Godot Mono (.gd and .md headings already shipped: 81a21bf, f521ac8).
  • Structural .tscn / .tres validator — parse scene format, node-tree-aware diff preview. Prerequisite validation layer before any scene editing.
  • (far future) Scene editing behind approval+diff + derive a fine-tuning dataset from the event log. ⚠️ Fine-tuning is on CLAUDE.md's intentionally-NOT-implemented list — needs an explicit epic + operator de-listing, not an incidental add.

Ops notes (not backlog items, but bite repeatedly)

  • Config copies of examples/* in ~/.config/correx go stale silently — e.g. a missing inject_artifact_kinds in a copied workflow TOML caused invented artifact kinds. Re-sync after editing the repo examples.
  • Do not rebuild jars while the server JVM is running — lazy classloading breaks (NoClassDefFoundError). Stop the server first.