KB-6B09

06 — Next Prompts (P-PUB / P2-EXEC / H-RATIFY / P3 gated SB-0)

5 min read Revision 1
one-roof-governanceauthnext-promptsp-pubp2-exech-ratifygated-sb02026-06-02

06 — Next Prompts (paste-ready follow-on macros)

Package: one-roof-auth-model-ratification-intake-2026-06-02 All macros are self-contained-after-clear (cite KB/FS paths + live-verify first). Build stays NO-GO until B-RATIFY (doc 04 Steps 2+3) is enacted by humans.


The one human action that unblocks everything

H-RATIFY (human/sovereign, out-of-band — NOT an Agent macro): Enact doc 04. (1) A human files APR-BOOT-AUTHMODEL-1 (action='modify', blank proposed_action_code). (2) Council records L2 quorum (1 president-human + ≥2 ai_council, 0 rejects, proposer excluded). (3) The President L4 e-signs into os_proposal_approvals (esignature_agreement=true). Then trigger P3 below.


P-PUB — Publish this package to KB + GPT artifact re-verify (immediate, non-build)

Ingest one-roof-auth-model-ratification-intake-2026-06-02 docs 00–07 to the KB and confirm list_documents/get_document/search_knowledge return them. Then route to the GPT council for artifact + reasoning re-verification of the intake decision (D-PATH). Also confirm the bootstrap package's gpt-review-bootstrap-artifacts-verified... file location (filesystem vs KB) and reconcile. Read first: this package 00, 03, 04, 07. Forbidden: any build/COMMIT; any approval/e-sign row. *(Status: EXECUTED by the PUBLISH_VERIFY_AND_CLOSE mission, 2026-06-02 — package published

  • verified in KB; GPT re-verify remains the open review hand-off.)*

P2-EXEC — Route H-RATIFY to the humans (the one gate)

Deliver doc 04 (the ratification-ready packet) to the council + President as the action request. Confirm receipt. Do not stage any approval_requests/apr_approvals/ os_proposal_approvals row on their behalf. Await out-of-band enactment. Read first: this package 01, 03, 04.

P3 — Gated SB-0 build (ONLY after B-RATIFY enacted)

Pre-gate (STOP unless ALL true): (a) os_proposal_approvals has the President's e-sign row linked to APR-BOOT-AUTHMODEL-1; (b) APR-BOOT-AUTHMODEL-1.quorum_passed = TRUE, status='approved'. Then build SB-0 in one small reviewed transaction: governance_build_authorization + indexes + v_build_auth_valid (quorum_passed/valid_sovereign_esign) + fn_build_commit_allowed; then the 8 governance apr_action_types rows with the F-83-1 re-wire FIRST. Rehearse BEGIN..ROLLBACK immediately before COMMIT; pg_dump touched reuse-tables; verify entry==exit + idle-tx=0 after. Read first: hardening doc 03; bootstrap docs 03, 05; impl-index 89 (stop conditions), 90, 91.

P4 — GPT review of hardening package (parallel, independent)

hardening doc 14 N3 — review hardening docs 00–16 for build-readiness sufficiency. Runs parallel to P-PUB/P2-EXEC.

P5 — Axis substrate build (downstream of SB-0)

hardening doc 14 N5 — build axis_registry + axis_assignment under an SB-0 L3 grant; decide FAC-08 cardinality / max_labels_per_entity. Only after SB-0 built.

P6 — fn_auto_approve_add hardening (standalone-reversible, may land first)

hardening doc 14 N4 — auto-approve iff proposed_action_code ∈ governed allowlist AND risk='low', else fail-safe deny. Relevant to this intake: doc 04 had to set action='modify' precisely to dodge the current over-broad 'add' auto-approve path; N4 closes that hole. Rehearse BEGIN..ROLLBACK; may be sovereign-approved as a safety patch independently of B-RATIFY.


Sequencing

P-PUB (publish + GPT re-verify)  ∥  P4 (hardening review)
        │
        ▼
P2-EXEC (route to humans)  ──►  H-RATIFY (human L2 + L4, out-of-band)
                                      │ (only after enacted)
                                      ▼
                               P3 (gated SB-0 build)  ──►  P5 (axis build)
P6 (auto-approve fix) may land first, standalone, reversible.

P-PUB (publish this package + GPT re-verify) in parallel with P2-EXEC (route the packet to the humans). Build remains NO-GO; no Agent step crosses the ratification line.

  • packet to route: [[04-ratification-artifact-or-human-packet]]; gate state: [[05-build-go-nogo-after-ratification-intake]].
  • continues bootstrap [[one-roof-auth-axis-bootstrap-ratification-rehearsal-go-nogo-2026-06-02]] doc 08.
Back to Knowledge Hub knowledge/dev/reports/architecture/one-roof-auth-model-ratification-intake-2026-06-02/06-next-prompts.md