Skip to content

docs: add three repository routine prompts - #43

Open
N4M3Z wants to merge 12 commits into
mainfrom
change/routine-prompts
Open

docs: add three repository routine prompts#43
N4M3Z wants to merge 12 commits into
mainfrom
change/routine-prompts

Conversation

@N4M3Z

@N4M3Z N4M3Z commented Aug 24, 2026

Copy link
Copy Markdown
Contributor

Plan

Capture the routine operating practice in one place: the prompts, the specification, and the environment decision.

Changes

  • Adds three routine prompt templates under docs/routines/: Nightly PR Babysitter.md (on hold), Repository Digest.md, and Weekly Ceremony Audit.md, each in the scanner register with picker settings separated from the paste-ready prompt.
  • Removes the merge follow-up prompt; the repository digest replaces its per-PR comments with one daily notification.
  • Renames the prompt files to spaced title case.
  • Adds docs/decisions/DECK-0004 Routine Environment Matrix.md: the environment follows the sensitivity of the readable data, and a private repository never mounts beside general egress.
  • Adds the routine-operations spec-driven change: the scanner register, the loud canary, honest degradation, provider adaptation, rendered-value privacy, and manual provider setup.
  • Updates CHANGELOG.

Testing

  • rune spec validate routine-operations passes.
  • Live installs exercised the canary paths: a missing grant reported CONFIGURATION_FAILURE, an allowlist proxy reported INCOMPLETE with counts, and an instruction-shaped nudge was refused.
  • The audit's first successful run created the standing issue (Weekly ceremony audit #45) with a dated drift report.

Release Notes

  • Three routine prompt templates, the routine-operations specification, and the DECK-0004 environment matrix decision.

Note

Add routine-operations spec, DECK-0004 environment matrix, and three repository routine prompts

  • Adds a proposal and detailed spec for routine scanners: scanner register, loud canary, grant diagnosis, environment-by-sensitivity, honest degradation, provider adaptation, rendered-value privacy, and manual provider setup in spec.md
  • Introduces ADR DECK-0004 defining a three-environment matrix (AirGap, Default, WebScan) for routine runs based on data sensitivity
  • Adds three routine prompt templates: Nightly PR Babysitter, Repository Digest, and Weekly Ceremony Audit, each with authority, scope, permitted/prohibited operations, ordered statuses, and fixed notification formats
  • Adds a task checklist in tasks.md with scheduled-run completion and standing-issue comment still pending

Macroscope summarized 99a478e.

Add the routine prompts for the nightly PR babysitter, the deck
merge follow-up, and the weekly ceremony audit. Each file carries
the trigger, the repository list, and the complete prompt. The
provider setup stays manual through the Claude routine picker.

Co-Authored-By: Martin Zeman <N4M3Z@users.noreply.github.com>
@github-actions github-actions Bot added size:small auto: changed-lines bucket area:docs auto: documentation and markdown labels Aug 24, 2026
@N4M3Z

N4M3Z commented Aug 24, 2026

Copy link
Copy Markdown
Contributor Author

@cursor review

@cursor

cursor Bot commented Aug 24, 2026

Copy link
Copy Markdown

Bugbot is paused — on-demand spend limit reached

Bugbot uses usage-based billing for this team and has hit its on-demand spend limit.

A team admin can raise the spend limit in the Cursor dashboard, or wait for the next billing cycle to continue.

@runewright runewright Bot added the issue:cursor Review provider requires intervention label Aug 24, 2026
macroscopeapp[bot]
macroscopeapp Bot previously approved these changes Aug 24, 2026
@macroscopeapp

macroscopeapp Bot commented Aug 24, 2026

Copy link
Copy Markdown

Approvability

Verdict: Not approved

Macroscope's review found this PR not approvable — Although committed as Markdown and installed manually, these files introduce scheduled repository-scanning workflows with private-data access, network-boundary rules, and GitHub comment or issue writes. Their new operational and security-sensitive behavior warrants human review.

Notes:

  • Macroscope's correctness review did not run, so approvability was decided on eligibility alone.

No code changes detected at 99a478e. Prior analysis still applies.

You can add or adjust custom eligibility rules. Learn more.

@N4M3Z

N4M3Z commented Aug 24, 2026

Copy link
Copy Markdown
Contributor Author

Failing step: Quality, Release notes attestation.

Cause: The pull request body has no Release Notes section with a list entry.

Suggested fix: Add a Release Notes heading and one list entry. Use - N/A for non-user-facing work.

Rewrite the three routine prompts with the BuildTask discipline:
an authority section, untrusted-data rules, permitted and
prohibited operations, coverage counts, a status order, and a
fixed notification structure.
@github-actions github-actions Bot added size:med auto: changed-lines bucket and removed size:small auto: changed-lines bucket labels Aug 24, 2026
macroscopeapp[bot]
macroscopeapp Bot previously approved these changes Aug 24, 2026
The merge follow-up posted per-PR consumer comments. The owner
wants awareness: one daily notification with merges, pushes,
releases, and fork-upstream movement across configured
repositories. Add the configurable repo-digest template, move the
audit to Monday 05:00 CET, and put the babysitter on hold.
@github-actions github-actions Bot added size:large auto: changed-lines bucket and removed size:med auto: changed-lines bucket labels Aug 24, 2026
@github-actions github-actions Bot added size:med auto: changed-lines bucket and removed size:large auto: changed-lines bucket labels Aug 24, 2026
Match the deck docs naming convention, for example BenchArtifact
Anatomy.md.
@N4M3Z N4M3Z added review:macroscope Summons the macroscope lane review:runeseer Summons the adjudicating correctness lane labels Aug 24, 2026
@runeseer

runeseer Bot commented Aug 24, 2026

Copy link
Copy Markdown

Not reviewed. This change modifies prose outside the executable specification and workflow scope.


Reviewed dc10652c · review run

@github-actions github-actions Bot removed review:macroscope Summons the macroscope lane review:runeseer Summons the adjudicating correctness lane labels Aug 24, 2026
@N4M3Z N4M3Z added the review:runeseer Summons the adjudicating correctness lane label Aug 24, 2026
@runeseer

runeseer Bot commented Aug 24, 2026

Copy link
Copy Markdown

Not reviewed. This change modifies prose outside the executable specification and workflow scope.


Reviewed dc10652c · review run

@github-actions github-actions Bot removed the review:runeseer Summons the adjudicating correctness lane label Aug 24, 2026
Capture the routine best practices as a spec-driven change and a
decision record. DECK-0004 fixes the environment matrix: the data
sensitivity of what a session reads selects its environment, a
private repository never mounts beside general egress, and the
prompt register is the control layer. The routine-operations
capability specifies the scanner register, the loud canary, the
provider adaptations, and the manual provider setup. Sync the
audit and digest templates with the decided environments.
@github-actions github-actions Bot added size:large auto: changed-lines bucket and removed size:med auto: changed-lines bucket labels Aug 25, 2026
Claude Fable 5 (claude-fable-5) and others added 6 commits August 25, 2026 02:16
The audit runs in the Default environment: the repository chips
supply the checkouts and the GitHub proxy supplies API access. No
private repository chip and no general egress. Move the schedule
to Monday 05:40.
Four live runs failed on absent repository chips, and each
notification guessed at environments instead of naming the chip
row. The startup checks now map the 403 signature to its control,
the headers call the repository grants chips and tell the owner to
confirm they persist after Save, and the specification gains the
Grant Diagnosis requirement.
@N4M3Z N4M3Z self-assigned this Aug 27, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

area:docs auto: documentation and markdown issue:cursor Review provider requires intervention size:large auto: changed-lines bucket

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant