SOURCES
Raw PDF, YouTube URL, or plain text excerpt submitted and committed durably to Postgres before extraction.

Anonymous entry — read the pipeline before identity is established
This pipeline is the automated path from a raw source to a validated rule candidate. A source is extracted, split into bounded, ordered chunks carrying their source location, and handed to an LLM that must return one small, pure Python function together with a Hoare-style contract. The proposal is inserted as an immutable rule_candidates row, evaluated by the existing gates G1–G6, and sealed through sovereign.finalize_candidate only when all six gates pass. A failed candidate is never deleted — it stays permanently recorded and the pipeline moves on.
The operator console is protected. This anonymous entry state is the only surface reachable before identity is established, and no ingestion work, candidate, or receipt is shown until you continue.
Every stage writes to Postgres before the next one begins, so a worker that sleeps or restarts resumes from durable state instead of losing a chunk. The red hairline is the single path; the state bars carry the coded result of each station.
Raw PDF, YouTube URL, or plain text excerpt submitted and committed durably to Postgres before extraction.
Bounded, ordered pieces of extracted text, each carrying page number, timestamp, or excerpt offset.
One small, pure, self-contained Python function plus a Hoare-style precondition/postcondition contract per chunk.
Immutable rule_candidates row with a computed digest and six gate receipts G1–G6.
sovereign_rules row written by sovereign.finalize_candidate when all six gates PASS.
Step 02 — Operator access
The operator console is protected. Answer here with either a first-use enrollment or a returning verification; the console stays closed until the identity boundary confirms.
No protected ingestion state is exposed until the identity boundary confirms this operator.

A raw source is committed durably to Postgres, then extracted to text and split into bounded, ordered chunks, each chunk carrying its source location — page number, timestamp, or excerpt offset. Every chunk goes to a free-tier LLM that proposes one small, pure, self-contained Python function with a Hoare-style precondition and postcondition contract, and the proposal is inserted as an immutable rule_candidates row.
The existing engine then evaluates the candidate through the six gates G1–G6. When all six return PASS against the current approved policy digest, sovereign.finalize_candidate seals it into sovereign_rules. Any failure leaves the candidate permanently recorded, never deleted, and the pipeline moves to the next chunk.
Entry state is anonymous. The operator console is protected.Raw PDF, YouTube URL, or plain text excerpt submitted and committed durably to Postgres before extraction.
Bounded, ordered pieces of extracted text, each carrying page number, timestamp, or excerpt offset.
One small, pure, self-contained Python function plus a Hoare-style precondition/postcondition contract per chunk.
Immutable rule_candidates row with a computed digest and six gate receipts G1–G6.
sovereign_rules row written by sovereign.finalize_candidate when all six gates PASS.
06 — LedgerOperating facts
Seven facts the operator can rely on before entering the pipeline. Each row is a constraint the system already enforces, not a promise about it.
Queue — Postgres only
Store — Supabase free tier
Workers — Replit free tier
Deletes — None
Entry
First-use self-service enrollment and returning verification are handled inside the anonymous Ingestion Entry state. No pipeline run data is read on this public page.
No comments yet. Be the first!