You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Parent: #333
Execution mode: implementation
Depends on: #338
Transitive foundations: #334, #335, #336
Later migration/generalization: #342
Problem Statement
Forge is not proven general-purpose while its only successful Workforce is tied to Project/Task/Git concepts. A second Workforce must complete useful work using non-repository Resources and the same Mission/Execution/Grant/Budget/Gate contracts, without reintroducing an always-on parent agent or leaking private Resource content to public/model providers.
Deep Research is the smallest high-value proof because its core actions are bounded read/evidence/synthesis rather than broad external mutation.
Desired Outcome
An installable official Deep Research Workforce accepts a bounded research Mission with non-repository Resources, deterministically retrieves/versions evidence, uses bounded parallel cognitive work only where useful, verifies material claims independently, surfaces contradictions/uncertainty, and produces a cited Artifact whose provenance can be reconstructed from Forge evidence.
No Project/Git record is required.
User Story
As the Forge operator,
I want to run deep, adversarial research through the same governed runtime as coding,
So that Forge proves non-coding Workforces without unbounded context, hidden egress or unsupported evidence claims.
Requirements
A. Official package
Ship Deep Research as a normal #338 declarative Workforce package. Keep the role set small/purposeful; illustrative roles are Research Lead, Source Scout(s), Primary-source Researcher, Evidence Verifier, Contrarian Reviewer and Synthesizer. The package manifest/workflow is canonical, not the role names.
B. Non-repository Mission
The Mission is creatable through generic APIs/contracts with objective/question, source/resource policy, Resource bindings, egress/classification policy, time/cost/token/context/concurrency budget, completion/verification policy and output Artifact requirements. It must not need projectId, repository, branch or fake filesystem root.
C. Minimal Phase-5 Resource readers
Implement only the minimum read-only Resource access required for this proof using the generic #334 Resource/Capability/Grant contracts plus #336 confined/read Operation semantics:
bounded public/approved web retrieval;
bounded uploaded/local document Resource;
optional existing knowledge-source read only if it is already safely available.
Do not pre-build the full Phase-8 adapter ecosystem here. Define a narrow generic read boundary/service whose behaviors/evidence are sufficient for Deep Research; #342 later generalizes/migrates these proven readers into the common adapter/credential/conformance plane.
Reads use Principal + Grant + Resource scope, response byte/time/item limits, content-type/redirect validation and provenance. Public web retrieval obeys #353/#335 egress policy and may not receive confidential Resource text merely because a package asks for search.
D. Evidence model
Persist/source Artifacts containing safe metadata such as stable source Resource ref, retrieval time/version/fingerprint/URL when policy allows, content digest and bounded extract identity, classification, claim/evidence relation, verification state, contradiction/staleness notes.
Do not persist raw secrets or unbounded source dumps as ordinary evidence. Historical claim provenance remains reconstructable even when payload retention policy removes content.
E. Bounded retrieval/context
deterministically dedupe identical/near-identical Resources where safe;
build run-scoped context packets under explicit token/byte/item budgets;
no shared accumulated conversation inheritance;
reuse validated content-addressed extracts/indexes when Resource versions are unchanged;
treat retrieval/search text as untrusted data that cannot alter policy, Grants, routing or package instructions.
F. Parallel discovery
Parallel Source Scouts are optional/policy-bound. Fan out only when independent discovery materially helps. Enforce Mission concurrency/model-call/token/cost ceilings and avoid sending the full corpus to every worker.
G. Claim/verification contract
The Synthesizer cannot self-certify. Material claims carry structured evidence refs. Deterministic checks run first (source availability, duplicate refs, citation integrity, schema/required evidence). An independent verifier/contrarian pass evaluates support, contradictions and source quality under fresh bounded context. A trusted Gate decides passed | needs_revision | needs_human_review | insufficient_evidence from versioned policy/evidence.
H. Uncertainty/source hierarchy
Prefer primary/authoritative sources where allowed; distinguish fact, interpretation and unresolved contradiction; never fabricate consensus; inaccessible sources produce explicit insufficiency; stale evidence cannot silently satisfy freshness requirements.
I. Output
Produce a human-readable report Artifact plus machine-readable claim/evidence manifest. Citations resolve to underlying evidence/Resource identity and verification state. Prose formatting does not confer authority.
J. Phase-8 handoff contract
Before close, document the exact read behaviors, Resource/Grant semantics, egress rules, evidence schema and failure classes that #342 must preserve when migrating the Phase-5 readers into the generic adapter ecosystem. #342 must be able to migrate without changing the Phase-5 release outcome.
Large - second official Workforce plus minimal read-only Resource proof, expected as 6-9 small PRs.
Technical Notes
This phase proves generic runtime reuse, not a premature connector platform. If research requires if (deepResearch) orchestration in Core, or a whole parallel adapter framework, stop and correct the generic seam.
Parent: #333
Execution mode: implementation
Depends on: #338
Transitive foundations: #334, #335, #336
Later migration/generalization: #342
Problem Statement
Forge is not proven general-purpose while its only successful Workforce is tied to Project/Task/Git concepts. A second Workforce must complete useful work using non-repository Resources and the same Mission/Execution/Grant/Budget/Gate contracts, without reintroducing an always-on parent agent or leaking private Resource content to public/model providers.
Deep Research is the smallest high-value proof because its core actions are bounded read/evidence/synthesis rather than broad external mutation.
Desired Outcome
An installable official Deep Research Workforce accepts a bounded research Mission with non-repository Resources, deterministically retrieves/versions evidence, uses bounded parallel cognitive work only where useful, verifies material claims independently, surfaces contradictions/uncertainty, and produces a cited Artifact whose provenance can be reconstructed from Forge evidence.
No Project/Git record is required.
User Story
As the Forge operator,
I want to run deep, adversarial research through the same governed runtime as coding,
So that Forge proves non-coding Workforces without unbounded context, hidden egress or unsupported evidence claims.
Requirements
A. Official package
Ship Deep Research as a normal #338 declarative Workforce package. Keep the role set small/purposeful; illustrative roles are Research Lead, Source Scout(s), Primary-source Researcher, Evidence Verifier, Contrarian Reviewer and Synthesizer. The package manifest/workflow is canonical, not the role names.
B. Non-repository Mission
The Mission is creatable through generic APIs/contracts with objective/question, source/resource policy, Resource bindings, egress/classification policy, time/cost/token/context/concurrency budget, completion/verification policy and output Artifact requirements. It must not need
projectId, repository, branch or fake filesystem root.C. Minimal Phase-5 Resource readers
Implement only the minimum read-only Resource access required for this proof using the generic #334 Resource/Capability/Grant contracts plus #336 confined/read Operation semantics:
Do not pre-build the full Phase-8 adapter ecosystem here. Define a narrow generic read boundary/service whose behaviors/evidence are sufficient for Deep Research; #342 later generalizes/migrates these proven readers into the common adapter/credential/conformance plane.
Reads use Principal + Grant + Resource scope, response byte/time/item limits, content-type/redirect validation and provenance. Public web retrieval obeys #353/#335 egress policy and may not receive confidential Resource text merely because a package asks for search.
D. Evidence model
Persist/source Artifacts containing safe metadata such as stable source Resource ref, retrieval time/version/fingerprint/URL when policy allows, content digest and bounded extract identity, classification, claim/evidence relation, verification state, contradiction/staleness notes.
Do not persist raw secrets or unbounded source dumps as ordinary evidence. Historical claim provenance remains reconstructable even when payload retention policy removes content.
E. Bounded retrieval/context
F. Parallel discovery
Parallel Source Scouts are optional/policy-bound. Fan out only when independent discovery materially helps. Enforce Mission concurrency/model-call/token/cost ceilings and avoid sending the full corpus to every worker.
G. Claim/verification contract
The Synthesizer cannot self-certify. Material claims carry structured evidence refs. Deterministic checks run first (source availability, duplicate refs, citation integrity, schema/required evidence). An independent verifier/contrarian pass evaluates support, contradictions and source quality under fresh bounded context. A trusted Gate decides
passed | needs_revision | needs_human_review | insufficient_evidencefrom versioned policy/evidence.H. Uncertainty/source hierarchy
Prefer primary/authoritative sources where allowed; distinguish fact, interpretation and unresolved contradiction; never fabricate consensus; inaccessible sources produce explicit insufficiency; stale evidence cannot silently satisfy freshness requirements.
I. Output
Produce a human-readable report Artifact plus machine-readable claim/evidence manifest. Citations resolve to underlying evidence/Resource identity and verification state. Prose formatting does not confer authority.
J. Phase-8 handoff contract
Before close, document the exact read behaviors, Resource/Grant semantics, egress rules, evidence schema and failure classes that #342 must preserve when migrating the Phase-5 readers into the generic adapter ecosystem. #342 must be able to migrate without changing the Phase-5 release outcome.
Implementation Sequence
Primary Code Seams To Inspect First
web/worker/architect-context.tsweb-search behavior only as migration/reference, not architectureOrthogonal Checkpoints
Acceptance Criteria
Out of Scope
Implementation Scope
Large - second official Workforce plus minimal read-only Resource proof, expected as 6-9 small PRs.
Technical Notes
This phase proves generic runtime reuse, not a premature connector platform. If research requires
if (deepResearch)orchestration in Core, or a whole parallel adapter framework, stop and correct the generic seam.