Skip to content

[FEATURE] VNext Phase 5 — Deep Research Workforce and non-repository resource proof #339

Description

@Joncallim

Parent: #333
Execution mode: implementation
Depends on: #338
Transitive foundations: #334, #335, #336
Later migration/generalization: #342

Problem Statement

Forge is not proven general-purpose while its only successful Workforce is tied to Project/Task/Git concepts. A second Workforce must complete useful work using non-repository Resources and the same Mission/Execution/Grant/Budget/Gate contracts, without reintroducing an always-on parent agent or leaking private Resource content to public/model providers.

Deep Research is the smallest high-value proof because its core actions are bounded read/evidence/synthesis rather than broad external mutation.

Desired Outcome

An installable official Deep Research Workforce accepts a bounded research Mission with non-repository Resources, deterministically retrieves/versions evidence, uses bounded parallel cognitive work only where useful, verifies material claims independently, surfaces contradictions/uncertainty, and produces a cited Artifact whose provenance can be reconstructed from Forge evidence.

No Project/Git record is required.

User Story

As the Forge operator,
I want to run deep, adversarial research through the same governed runtime as coding,
So that Forge proves non-coding Workforces without unbounded context, hidden egress or unsupported evidence claims.

Requirements

A. Official package

Ship Deep Research as a normal #338 declarative Workforce package. Keep the role set small/purposeful; illustrative roles are Research Lead, Source Scout(s), Primary-source Researcher, Evidence Verifier, Contrarian Reviewer and Synthesizer. The package manifest/workflow is canonical, not the role names.

B. Non-repository Mission

The Mission is creatable through generic APIs/contracts with objective/question, source/resource policy, Resource bindings, egress/classification policy, time/cost/token/context/concurrency budget, completion/verification policy and output Artifact requirements. It must not need projectId, repository, branch or fake filesystem root.

C. Minimal Phase-5 Resource readers

Implement only the minimum read-only Resource access required for this proof using the generic #334 Resource/Capability/Grant contracts plus #336 confined/read Operation semantics:

  • bounded public/approved web retrieval;
  • bounded uploaded/local document Resource;
  • optional existing knowledge-source read only if it is already safely available.

Do not pre-build the full Phase-8 adapter ecosystem here. Define a narrow generic read boundary/service whose behaviors/evidence are sufficient for Deep Research; #342 later generalizes/migrates these proven readers into the common adapter/credential/conformance plane.

Reads use Principal + Grant + Resource scope, response byte/time/item limits, content-type/redirect validation and provenance. Public web retrieval obeys #353/#335 egress policy and may not receive confidential Resource text merely because a package asks for search.

D. Evidence model

Persist/source Artifacts containing safe metadata such as stable source Resource ref, retrieval time/version/fingerprint/URL when policy allows, content digest and bounded extract identity, classification, claim/evidence relation, verification state, contradiction/staleness notes.

Do not persist raw secrets or unbounded source dumps as ordinary evidence. Historical claim provenance remains reconstructable even when payload retention policy removes content.

E. Bounded retrieval/context

  • deterministically dedupe identical/near-identical Resources where safe;
  • build run-scoped context packets under explicit token/byte/item budgets;
  • no shared accumulated conversation inheritance;
  • reuse validated content-addressed extracts/indexes when Resource versions are unchanged;
  • treat retrieval/search text as untrusted data that cannot alter policy, Grants, routing or package instructions.

F. Parallel discovery

Parallel Source Scouts are optional/policy-bound. Fan out only when independent discovery materially helps. Enforce Mission concurrency/model-call/token/cost ceilings and avoid sending the full corpus to every worker.

G. Claim/verification contract

The Synthesizer cannot self-certify. Material claims carry structured evidence refs. Deterministic checks run first (source availability, duplicate refs, citation integrity, schema/required evidence). An independent verifier/contrarian pass evaluates support, contradictions and source quality under fresh bounded context. A trusted Gate decides passed | needs_revision | needs_human_review | insufficient_evidence from versioned policy/evidence.

H. Uncertainty/source hierarchy

Prefer primary/authoritative sources where allowed; distinguish fact, interpretation and unresolved contradiction; never fabricate consensus; inaccessible sources produce explicit insufficiency; stale evidence cannot silently satisfy freshness requirements.

I. Output

Produce a human-readable report Artifact plus machine-readable claim/evidence manifest. Citations resolve to underlying evidence/Resource identity and verification state. Prose formatting does not confer authority.

J. Phase-8 handoff contract

Before close, document the exact read behaviors, Resource/Grant semantics, egress rules, evidence schema and failure classes that #342 must preserve when migrating the Phase-5 readers into the generic adapter ecosystem. #342 must be able to migrate without changing the Phase-5 release outcome.

Implementation Sequence

  1. Deep Research package/workflow schema under [FEATURE] VNext Phase 4 — declarative Workforce packages and Software Engineering extraction #338.
  2. Non-repository Mission API/fixture with no Project/Git dependency.
  3. Minimal document Resource reader under [FEATURE][ARCH] VNext Phase 0 — generic runtime contracts and compatibility seam #334/[FEATURE] VNext Phase 2 — secure generic execution envelope and side-effect recovery #336 boundaries.
  4. Minimal approved web Resource reader under [FEATURE] VNext Phase 1 — deterministic budget, routing, and context economics #335 egress + [FEATURE] VNext Phase 2 — secure generic execution envelope and side-effect recovery #336 bounds.
  5. Evidence/claim contracts: source Artifact, claim relation, contradiction/freshness.
  6. Retrieval/context selector: deterministic dedupe, budgets and content-addressed reuse.
  7. Research Agent Runs with provider-neutral cognitive requirements.
  8. Independent verification/contrarian Gate and bounded revision loop.
  9. Report + machine-readable provenance/citations.
  10. Hostile release fixture: contradictory/stale/prompt-injected/duplicated/inaccessible sources + budget/egress restrictions.
  11. Phase-8 migration contract documenting what [FEATURE] VNext Phase 8 — general Resource/Capability adapter ecosystem #342 must generalize/preserve.

Primary Code Seams To Inspect First

Orthogonal Checkpoints

  1. Non-repository purity: hidden Project/Git assumptions, foreign keys, API/UI serialization.
  2. Egress/privacy: sentinel confidential strings, public search, provider restrictions, redirects/content types.
  3. Prompt/data injection: hostile source requests tools/policy changes/authority.
  4. Evidence correctness: duplicate/missing/stale/contradictory sources, citation mismatch, unsupported claims.
  5. Budget/fan-out: parallel oversubscription, duplicate context, retry/remediation cost.
  6. Verification independence: Synthesizer self-pass attempts, missing evidence, revision-loop scope.
  7. Reader boundary: Phase-5 readers do not become a hidden full adapter framework or expose credentials/broad network authority.
  8. Release reproducibility: stable evidence identities where deterministic policy promises them; explicit residual uncertainty.
  9. Future migration: hostile review of the [FEATURE] VNext Phase 8 — general Resource/Capability adapter ecosystem #342 handoff contract for semantic gaps that would force a breaking rewrite.

Acceptance Criteria

Out of Scope

Implementation Scope

Large - second official Workforce plus minimal read-only Resource proof, expected as 6-9 small PRs.

Technical Notes

This phase proves generic runtime reuse, not a premature connector platform. If research requires if (deepResearch) orchestration in Core, or a whole parallel adapter framework, stop and correct the generic seam.

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    dependency-blockedREADINESS PROJECTION — Issue is blocked by unresolved dependencies. This label is a cache.enhancementNew feature or request

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions