Status: Accepted. Source repairs are present; exact-source Linux qualification of the current cohort, complete native failure paths, and provider publication remain pending. ADR-068 owns the native gate contracts. The current publication contract is defined by ADR-076, ADR-080, ADR-112, and the BenchmarkComparisons feature.
| Requirement | Acceptance contract and evidence |
|---|---|
| REQ-NGR-001: authenticate the exact executing job | AC-NGR-001 requires bounded authenticated discovery and revalidation of the same own-repository workflow, source, attempt, and job. Only strict in_progress with a null result admits native setup; queued, terminal, unknown, mismatched, exhausted, cancelled, transport-failed, or malformed state rejects before allocation or timing. The initial request is bounded to 120,000 ms. Only after an exact queued response may one 60,000 ms stale-response window run at a cancellation-aware 1,000 ms cadence, with no more than 61 total captures. Preserve exact request, body, and header behavior, including the current-job-only Cache-Control: no-cache, max-age=0 refresh. No reselection, stale fallback, or workload retry. Real current-job authority cases and exact-source GitHub execution are required. |
| REQ-NGR-002: preserve native Kurrent events | AC-NGR-002 requires exact original/custom/system metadata equality, a complete 55,378-item owned-stream oracle, foreign-resource noninterference, and owned cleanup across genuine one- and three-node cases. Empty tracing remains uncharacterized; tests must not assume an empty result. Genuine pinned-SDK and native Aspire evidence is required. |
| REQ-NGR-003: prove native leader routing | AC-NGR-003 requires pinned SDK and advertised-endpoint validation, genuine leader/follower routing, and observed membership, copies, and acknowledgements. No guessed leader, standalone substitute, or measured write retry is allowed. Native preflight and complete workload results are separate evidence. |
| REQ-NGR-003D: retain bounded private setup diagnostics | AC-NGR-003D preserves and rethrows the original failure. Emit at most one failure-only line of 4,096 bytes, with at most three causes, eight frames per cause, and 64-character identifiers. Include only a closed phase, exception type, and bounded type/method metadata. Exclude messages, stacks, paths, endpoints, credentials, and payloads. Diagnostics do not establish workload success. |
| REQ-NGR-004: qualify the complete current publication | AC-NGR-004 requires exact source/run/attempt/job and archive provenance for the current plan: 924 workers (220 controls, 176 scaled CRUD, 528 vector) and 1,716 unique regular-file inputs (1,656 suite files and 60 provider files), plus the separately authenticated 418-cell document family. Validate exact paths, sizes, hashes, original archive bytes, and source identities. Each slot is a measured result, an authenticated unsupported-topology disposition, or an authenticated terminal workload failure with its fixed safe reason and null report. Failed, cancelled, skipped, missing, mixed, or unavailable evidence is never numeric success. Full source, normal, scalar, recovery, RF3, native preflight, coverage, browser, freshness, and provider gates remain separate required predicates. The intensive TimeSeries family has its own ADR-050/059 plan and is not folded into this cohort. |
| REQ-NGR-005: observe settled resource failures without changing results | AC-NGR-005 preserves the original case, timing, and samples. Only after an eligible exact ResourceExhausted case and its session settle may one authenticated outbox-status read inspect at most 64 consumer heads, outside the measured clock. Unknown or unavailable observations remain unavailable. No quota, purge, retention, or retry change follows from the observation. Native one- and three-node failure-path and cancellation/settlement proof remains required. |
flowchart LR
Authority[Authenticated exact current job] --> Native[Native preflight and workload]
Native --> Result[Original result and failure retained]
Result --> Observe[Bounded post-settlement observation when eligible]
Result --> Cohort[Current complete-cohort validation]
Observe --> Cohort
Cohort --> Gates[Source, recovery, RF3, coverage, browser, freshness]
Gates --> Publish[Independent Website publication]
The owning slice is BenchmarkComparisons: current-job and diagnostic tooling in
scripts/Features/BenchmarkComparisons/, real Node and unit regressions in
tests/KeyLoad.ComparisonTests/Features/BenchmarkComparisons/UnitContracts/, native Kurrent cases in
tests/KeyLoad.ComparisonTests/Features/BenchmarkComparisons/, and the existing
benchmark adapter/host and AppHost-owned topology. Root owns the workflow, shared
source and evidence inventories, schema, documentation, final integration, and
qualification joins. Tests must exercise production context and real native
fixtures; source-name checks and fake executor or target behavior are not evidence.
Qualification requires the canonical Release build, formatter and governance checks, the complete ordinary and scalar suites, process recovery, RF3, all native preflights and workloads, source/input immutability, current coverage/browser thresholds, final freshness checks, and actual provider receipts on the exact Linux source. A previously successful partial run, local development result, source review, or bounded diagnostic does not satisfy these gates. Keep ADR-068 Accepted until its exact-source criteria pass.
These references identify retained original records. They describe their own source/run only; they do not establish qualification of the current source or current cohort.
| Original reference | Evidence retained |
|---|---|
Source dbd01269, Benchmarks run 37120639751, attempt 1 |
Original RabbitMQ startup and Kurrent setup/post-run metadata failures. |
Original ca22 CI and f403 Kurrent preflight receipts |
Policy-record and selected native one/two/three-node preflight records; the selected passes do not qualify later refresh, routing, full-cohort, or publication criteria. |
Original ca7 CI/failure receipts and 3ae CI receipt |
Retained normal/scalar/recovery/RF3 outcomes and original failed/null workload evidence. Benchmarks run 37129421599 was cancelled before execution and supplies no measurements. |
Benchmarks run 37130907091, attempt 1, job 111227060126, source 7d9852 |
Original Kurrent three-node setup failure; sealed source/run/upload/report/worker evidence SHA-256 c50787a2279f9a8525df8794aaafa786e5a2cb2f7dd37bac623e36f524dd0a54; verification receipt SHA-256 f12f7c4f4e4fd068e6b78fb4c6d13aa77d0f12976f7c6fedc525a157a2d6f1cb. |
| Read-only K2R source analysis | Review SHA-256 da2be25c51d66e5b242554ced508c58715732a94fc7ae74888b4439c8ed741de; it found no proven routing cause or justified repair. |
Original 7d1196 Kurrent preflight and KeyLoad failures |
Retained successor setup failure and native resource/ownership/fault observations. The KeyLoad source is fabff69193f41c784f0b36b85c1f34d82fa9903d; Benchmarks run 37166698745; the OpenSearch VectorExact job is 111334162158, with failed artifact 11291956733 (SHA-256 1823f7fc876ad3b3a385056a8f75ab6bcd1de2cdb53bbef977a9e2d4313f5088) and original qualification 11291373059 (SHA-256 070fd453c92cf373666c3e993990f9e06bac07d111eac0795ebcdc03ed86d4d2). The n1 delete observation retained 100,000 outbox entries and 192,581,709 bytes. These original observations do not prove a new passing cohort or website refresh. |
| Original analysis records | Pinned SDK source review; exact delete source accounting. These are explanatory source reviews, not workload or qualification evidence. |
The external job artifacts and sealed originals remain the source of truth for these records. Do not rewrite their bytes or treat their historical plan labels as current acceptance criteria.
Original old-runtime source 6af5938696c1af61051040bd2d515bc140d773a4,
Benchmarks run37986409035 attempt2, failed before any measurement. Authenticated
native document archive11645560990 contains22 cases,11 failed SurrealDB cases;
its full readback case reports SurrealDbServerVersionMismatch. The raw native
version response was not retained. Contract archive11645251789 contains1305
cases,1304 passed and one failed: the negative TimeSeries CellId fixture supplied
its actual three-node cell instead of a different cell. No numeric result or
aggregate qualifies that source.
Checkpoint f1d1b0905bd41035b1d0634eb44bc8a9866a1be3 repairs only the exact
pinned SurrealDB version oracle and that negative fixture, with an independent
bounded actual HTTP version assertion in the unchanged native readback flow.
The immutable old RequestGrain source is byte-identical; canonical workloads,
image pins, inventories, topology, resource/durability and main-only provenance
are unchanged. Full original Benchmarks run37990964853 attempt1 is the prepared
BEFORE cohort; all performance qualification remains pending.
Attempt1 image job114025123180 failed before native version/workload execution
while pulling the pinned registry:3.1.2 image: Docker Hub returned its
unauthenticated pull-rate limit. Normal benchmark contracts passed; scalar
contracts failed and require their original bounded failure evidence before any
diagnosis. No performance cell ran. One complete same-source retry, attempt2,
started at21:41:22Z on fresh Linux jobs. This infrastructure retry does not
relable either original failure as success or provide a measurement.
The expected surrealdb-3.2.4+20260803.93ab219 reply is derived from the
immutable native version handler,
package version construction
and SHA-verified Linux-amd64 image binary metadata. Selected OCI index is
sha256:51baed8709f57f67dcf04b30e3177db846803fa9342dae2be58c6fa5f8d59843;
embedded binary SHA256 is 8f0471ee2018384e2aaeb4028d5fea670f28bf86a2df3d9b04da00364ea7aff8.
This is source/artifact inference until the original GitHub actual HTTP assertion
passes; the missing old raw body is not reconstructed as runtime evidence.
Strict exact equality and rejection remain; no alternate-version acceptance or
compatibility fallback is introduced. Current native operations and whole
cohort are still required before claiming the repair qualified.