Skip to content

Builder configuration and defaults catalogue

Status: RELEASED, LOCAL-SYNTHETIC CONTRACT SURFACE. These defaults and the bounded Builder M1 contracts are present in the current regular release. Their evidence remains local and synthetic; they are not live-system or production configuration guidance.

ControlDefaultOwner-selectable alternativesInvariant
Authority profileSAFE_GUIDEDGoverned CUSTOM; dangerous RAMPAGE_FULL_CONTROL_LAB (RAMPAGE and FULL_CONTROL_LAB aliases)Governed rights remain Host/System ceiling ∩ Owner profile ∩ assignments ∩ current constraints. The lab profile is separately risk-accepted and never exceeds the OS/host ceiling.
Read-only routeAUTO_EXECUTE in SAFE_GUIDEDOwner may narrow or denyExact admitted capability, tenant and use-time checks still apply.
Effectful routeOWNER_APPROVAL in SAFE_GUIDEDCUSTOM may select governed AUTO_EXECUTE; the lab profile may bypass PanSphaira action/Approval gatesThe lab bypass is outside SAFE_GUIDED/Canon security claims for bypassed layers; malformed or integrity-invalid Builder input still denies.
Unknown intentUNRESOLVED_INTENT, inactive, non-executableNone until a compatible capability is admittedIntent never creates authority or effect.
ScaffoldGeneric ADAPTER or SKILL data contractOwner selects kindNo target-specific privileged Builder core.
Data classificationSYNTHETICNone in M1 evidence/contribution pathsLive/customer data is outside this contract.
InstallationSeparately routedAUTO_EXECUTE, OWNER_APPROVAL, DENYDoes not imply activation, mutation or publication.
ActivationSeparately routedAUTO_EXECUTE, OWNER_APPROVAL, DENYImport or planning never activates.
MutationSeparately routedAUTO_EXECUTE, OWNER_APPROVAL, DENYReadback and recovery evidence remain mandatory.
ContributionOPT_INNo automatic modeSanitizer accepts only the closed bundle schema.
Publication authorizationABSENTGranted only outside this M1 bundle by a separate authorized actionA bundle cannot carry or infer its own publication approval.
Evidence statusLOCALLY_VALIDATED_SYNTHETICNone in v1Does not imply live-system or production fitness.
Byte statusRELEASEDNone in v1Release of these contract bytes does not activate a system, credential, tenant, route or publication authority.
Failure postureDeny/explicit non-successNoneUnknown field, kind, status or integrity drift fails closed.

The contribution sanitizer allow-list accepts Issue/Claim/Evidence IDs, synthetic scope and acceptance metadata, digest-only evidence references and public relative source paths. It excludes credential/token material, private or absolute paths, raw prompts/runtime receipts, customer/tenant data and all unknown fields.

RAMPAGE_FULL_CONTROL_LAB is not the broadest governed Profile. Its selection requires exact Owner risk acceptance, a disposable or explicitly bounded lab, visible OS/host ceiling and bypass list, claim downgrade, and tested reset, rollback and recovery. Restart, revoke or cleanup resets the published local profile lifecycle to SAFE_GUIDED; audit and emergency-stop records are not a security boundary against an actor able to alter them under the OS ceiling.

Local synthetic proof of concept — not a production release or security certification.