Skip to content

docs: v4.0 — re-derived 12 factors (Prepare/Bound/Select/Govern, +Least Privilege) - #20

Merged
boshu2 merged 6 commits into
mainfrom
docs/12factor-v4-recut
Jun 7, 2026
Merged

boshu2 merged 6 commits into
mainfrom
docs/12factor-v4-recut

Conversation

@boshu2

@boshu2 boshu2 commented Jun 7, 2026

Copy link
Copy Markdown
Owner

Cross-model NTM council (Opus 4.8 + Codex GPT-5.5 + Gemini 3.5 Flash), then an adversarial pressure-test.

What changed

  • Four-phase lifecycle: Prepare → Bound → Select → Govern (a reading lens, not a strict dependency chain — the pressure-test rejected the strict-chain overclaim).
  • + Factor IV: Enforce Least Privilege — the security gap, covering ingress (authority/sandbox/untrusted-input) and egress (secrets/PII/blast-radius).
  • Merged Harvest Failures → X Compound Knowledge (negative knowledge, same flywheel); relocated fresh-agent-on-failure → XI Supervise (a recovery primitive).
  • Renamed Measure What Matters → Measure Outcomes (XII).
  • All factors renumbered; v3.x accuracy fixes carried in; CI expected-list + factors index updated; VERSION → v4.0.0.

Final order

I Context · II Track-Git · III One-Agent · IV Least-Privilege · V Research · VI Isolate · VII Validate · VIII Lock · IX Extract · X Compound · XI Supervise · XII Measure Outcomes

Gates: 12 files present, structure + ≥500 words + no-stale-framing pass; all internal links resolve. Council + pressure-test artifacts in .agents/council/. Supersedes the v3.2 patch branch.

boshu2 added 6 commits June 6, 2026 20:46
… pseudo-math

Adversarial audit found the factors were overstated and carried objective
errors. Keeping the aphoristic headlines, made the bodies honest.

Objective bugs:
- VI cited 'Factor III (Validation First)' -> Factor V (Validate Externally).
- XI 'Further Reading' linked Dispose Gracefully / Orchestrate Declaratively
  (a different framework) -> this repo's actual X/XII.
- VIII worked example 0.87x0.74='0.644' -> 0.64.

Overstatement -> honest body (headlines kept):
- I: '40% rule' + lost-in-the-middle marked as heuristic/empirical-tendency,
  not a measured law or property of attention.
- III: 50-exchange/70% marked heuristics (token fill != exchange count);
  'worst agent' softened, lossy-handoff cost acknowledged.
- IV: 'no exceptions/always' scoped to integration surface; greenfield exempt.
- II: 'if it's not in git' kept as aphorism, body clarified (committed
  reference for LFS/S3); fixed git-bisect misuse; corrected raw-merge claim.
- V: removed duplicate 'moat' (reserved for VIII) -> 'structural advantage';
  added self-authored-gate caveat; de-overclaimed two-altitude framing.
- VIII: signature inequality demoted to a directional heuristic (terms aren't
  dimensionally comparable); 'decays to zero' -> 'compounding stalls'.
- IX: 'dormancy is success' scoped to bounded work (continuous-ops = steady
  state w/ declining intervention); 'harder to game' qualified.
- XI: OTP 'gold standard' -> analogy-with-caveat; 'root never crashes' fixed.
- X: 'zero shared mutable state' -> 'zero shared mutable WORKING state' (the
  tracker/main are shared coordination state by design).

Part of the v3.2 accuracy correction. Recut (Security factor + XII->VIII
merge) follows. Refs the adversarial audit.
…Privilege

Cross-model council (Opus 4.8 + Codex GPT-5.5 + Gemini 3.5 Flash), adversarially
pressure-tested. Regroup to a 4-phase operational lifecycle (lens, not a strict
dependency chain). Add Factor IV Enforce Least Privilege (ingress+egress security
gap). Merge Harvest Failures -> X Compound Knowledge (negative knowledge);
relocate fresh-agent-on-failure -> XI Supervise. Rename Measure What Matters ->
Measure Outcomes. Renumber all; carry v3.x accuracy fixes. VERSION v4.0.0; CI
expected-list + factors index updated.

Council artifacts in .agents/council/. Closes the accuracy + quorum + sense goal.
@boshu2
boshu2 merged commit 8b96b61 into main Jun 7, 2026
1 of 2 checks passed
@boshu2
boshu2 deleted the docs/12factor-v4-recut branch June 7, 2026 01:53
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant