01 · Worktree governance
S/A: exact ownership and allowed branch operations.
F/E: fixed recovery anchors and verified restoration.
SAFE identifies which control conditions were present during a state change. It does not turn a local prototype into production evidence or an implementation into a customer outcome.
S/A: exact ownership and allowed branch operations.
F/E: fixed recovery anchors and verified restoration.
S: two pages, role-specific content, preserved source.
F: rendered-page and residual-text checks.
S: thin core plus risk-triggered governance.
A/F: committee and independent review before merge.
S: one ICP, service, and value claim.
F: facts separated from inference and assumptions.
A: local prototype only.
E: production configuration and deployment deferred.
A: scoped external-write grant.
F/E: mismatch receipt, native restore, independent readback.
S: frozen rubric and max rounds.
F: iterative score kept separate from blind score.
S: RUM defines visitors; HTTP defines noise context.
F: stale RUM returns unavailable, not zero.
S: four independent status layers.
F: tests and real-browser readback.
S: verified, generated, checked, and used are separate.
F: repository SHA cannot prove social usage.