You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Epic - VNext programme tracking. Do not dispatch this Epic directly to an implementation agent.
Context
Forge is evolving from a coding-focused control plane into a local-first, budget-aware, deterministic-first runtime for installing, governing and operating AI Workforces.
Software Engineering remains the first compatibility/proof Workforce. Forge Core becomes generic Mission/Execution/Resource/Capability/Grant/Operation/Artifact/Gate/Trigger/Budget infrastructure rather than a permanent coding product.
Forge eventually replaces Hermes/HearthBot orchestration. Hermes is requirements/history only: no source/config/state/runtime compatibility or Forge->Hermes fallback is allowed.
Canonical programme invariants:
No always-on LLM parent/orchestrator.
Idle/unchanged operation costs zero model tokens.
Optimize expected cost to a verified outcome subject to a quality floor.
Agents/package prose do not possess authority; Forge lends scoped revocable Grants.
Resource and Capability are distinct.
Workers/verifiers produce evidence; deterministic Gates decide.
Workforce packages are declarative data, not trusted executable plugins.
External side effects use idempotency/reconciliation; ambiguous submission is never blindly retried.
Version/pin anything that can change run behavior/evidence meaning.
Install a Workforce. Bind the Resources it may use. Grant bounded Capabilities. Give it a Mission. Forge handles deterministic orchestration, budgeting, delegation, execution, verification, evidence, recovery and escalation.
All implementation issues are planned in advance with explicit dependencies and orthogonal checkpoints. Only the current dependency frontier is dispatchable. Tracking Epics remain status/architecture maps, never implementation work orders.
At programme completion, Forge proves Software Engineering, non-repository Deep Research, persistent Trigger-driven operation, safe backup/restore recovery, a bounded Infrastructure Ops side effect and complete HearthBot/Hermes cutover through the same governed runtime.
Readiness is now derived by the #354 dependency/tracking control plane. Treat managed readiness labels as projections/cache, not authority; always re-check current Depends on:/tracking state at dispatch time.
ready-for-agent remains a truthful projection of the dependency frontier rather than template validity.
Idle persistent operation makes zero LLM calls when unchanged.
Hard Mission budgets block before over-budget provider invocation; every production model call has routing/budget/context/egress evidence.
Routine Workflow readiness, sequencing, fan-out/join and handoff consume zero model calls; Work Packages and Artifacts remain the durable handoff/state primitives.
Restart/replay does not duplicate confirmed side effects; ambiguous writes reconcile rather than blind retry.
Backup restore enters durable quarantine, fences stale runtime state and reconciles current external effects/Triggers/credentials/autonomy/budgets before consequential autonomy resumes.
Workers cannot self-verify into authority and child work cannot widen parent Grant/Resource/budget scope.
Hostile Resource/package/prompt content cannot widen authority or provider/network egress.
Operator cancellation/revocation prevents new side effects/model calls.
Running Missions remain pinned across Workforce/package updates.
Software Engineering passes two clean generic-runtime release runs including bounded rework/restart.
Deep Research completes a non-repository evidence workflow through the same Core.
Persistent Missions remain quiescent with zero-token idle and survive restart.
Trigger duplicate/replay/self-loop/signature/catch-up cases are bounded and reconstructable.
Infrastructure Ops proves ongoing deterministic monitoring plus one explicitly approved bounded recoverable side effect under earned autonomy after the restore/DR gate is proven.
Operator reporting exposes evidence/freshness/critical findings without opaque trust scores.
HearthBot is only a thin Forge interface and Hermes can be fully stopped/removed without losing retained responsibilities.
New implementation branches start from current main only after declared dependencies close; stale pre-VNext branches are not used as implementation bases.
Planning Standard
Before dispatch, every implementation issue must include source-of-truth/authority boundaries, implementation sequence, primary code seams, objective pass conditions, failure/restart/concurrency/privacy/security tests and logical orthogonal checkpoints using .ai/skills/orthogonal-review.md.
Implementation agents should not redesign programme architecture unless a concrete contradiction is proven. If a required contract is missing, fail/block the issue and open a narrow architecture finding rather than inventing a second system.
Later explicit hostile-review addenda/corrections on an implementation issue refine earlier planning. When planning comments conflict, the later explicit correction wins unless current code or an accepted spec has since changed.
Explicit Non-Goals
Model ensembles/latent-state bridging.
Permanent LLM parent agent.
Arbitrary model-authored shell authority.
Self-modifying Workforce/runtime code.
Automatic generation/trust of executable Workforces.
Public Workforce marketplace before provenance/update safety is proven.
Enterprise multi-user RBAC in the initial programme.
Importing Hermes code/config/state.
A2A/direct agent-to-agent orchestration as a second runtime truth.
LangGraph or another agent framework as Forge Core's authoritative workflow/checkpoint store.
Review / Delivery Rule
Every PR follows the repository full independent orthogonal-review protocol. Findings are classified change-blocking vs adjacent; adjacent pre-existing improvements become separate issues rather than causing infinite rework. A phase closes only with objective test/evidence artifacts and explicit residual uncertainty, not a model saying “done.”
Execution mode: tracking
Canonical architecture: ADR 0014 +
docs/forge-vnext-architecture.mdIssue Type
Epic - VNext programme tracking. Do not dispatch this Epic directly to an implementation agent.
Context
Forge is evolving from a coding-focused control plane into a local-first, budget-aware, deterministic-first runtime for installing, governing and operating AI Workforces.
Software Engineering remains the first compatibility/proof Workforce. Forge Core becomes generic Mission/Execution/Resource/Capability/Grant/Operation/Artifact/Gate/Trigger/Budget infrastructure rather than a permanent coding product.
Forge eventually replaces Hermes/HearthBot orchestration. Hermes is requirements/history only: no source/config/state/runtime compatibility or Forge->Hermes fallback is allowed.
Canonical programme invariants:
Desired Outcome
All implementation issues are planned in advance with explicit dependencies and orthogonal checkpoints. Only the current dependency frontier is dispatchable. Tracking Epics remain status/architecture maps, never implementation work orders.
At programme completion, Forge proves Software Engineering, non-repository Deep Research, persistent Trigger-driven operation, safe backup/restore recovery, a bounded Infrastructure Ops side effect and complete HearthBot/Hermes cutover through the same governed runtime.
Tasks
Bootstrap / current-beta hardening
mainrepository rules/checks after trusted publication.Readiness is now derived by the #354 dependency/tracking control plane. Treat managed readiness labels as projections/cache, not authority; always re-check current
Depends on:/tracking state at dispatch time.Generic runtime phases
Tracking-only Epics
Branch / stale-plan hygiene
audit/vnext-instruction-boundarywhile PR docs: align repository agent instructions with VNext runtime truth #351 remains open.Acceptance Criteria
Execution mode: implementation, explicitDepends on:metadata, objective acceptance criteria, primary code seams, a PR-sized implementation sequence, out-of-scope boundaries and deep orthogonal checkpoints.ready-for-agentremains a truthful projection of the dependency frontier rather than template validity.mainonly after declared dependencies close; stale pre-VNext branches are not used as implementation bases.Planning Standard
Before dispatch, every implementation issue must include source-of-truth/authority boundaries, implementation sequence, primary code seams, objective pass conditions, failure/restart/concurrency/privacy/security tests and logical orthogonal checkpoints using
.ai/skills/orthogonal-review.md.Implementation agents should not redesign programme architecture unless a concrete contradiction is proven. If a required contract is missing, fail/block the issue and open a narrow architecture finding rather than inventing a second system.
Later explicit hostile-review addenda/corrections on an implementation issue refine earlier planning. When planning comments conflict, the later explicit correction wins unless current code or an accepted spec has since changed.
Explicit Non-Goals
Review / Delivery Rule
Every PR follows the repository full independent orthogonal-review protocol. Findings are classified change-blocking vs adjacent; adjacent pre-existing improvements become separate issues rather than causing infinite rework. A phase closes only with objective test/evidence artifacts and explicit residual uncertainty, not a model saying “done.”