What shipped
A standalone Python 3.11+ standard-library package named app_permission_review now implements the complete offline launch-kit workflow:
sample-launch-kitcreates the exact ten-file fictional input closure and safely supports explicit--forcereplacement;generate-launch-kitvalidates inputs, generates the exact 22-file buyer/operator kit in staging, validates it, proves input immutability, and atomically replaces onlyoutputs/; andvalidate-launch-kitindependently recomputes expected bytes and rejects any inventory, content, hash, lineage, label, term, path, or safety-boundary drift.
The rendered kit includes all required sales, intake, operating-contract, SOW, delivery, QA, decision-session, demo, outreach, objection-learning, renewal, sample, and canonical manifest artifacts. The fictional agenda totals 45 minutes, the demo stops at three minutes, outreach contains exactly three unsent touches, and the tracker contains exactly three stable fictional rows.
Architecture
- **Closed contracts:** duplicate-key-rejecting JSON, exact field sets, fixed enums and terms, canonical dates and hashes, reserved example contacts, safe relative paths, strict UTF-8/LF text, exact CSV headers, and closed file inventories.
- **Copy-by-value compounding:** eight authorized synthetic parent outputs are bundled byte-for-byte with frozen SHA-256 values. No parent implementation was copied.
- **Fixed renderers:** each commercial or operating artifact is dedicated fixed copy. The service profile can change only the supplied date, obvious seller placeholders, and optional validated display accent; it cannot weaken scope or evidence limits.
- **Visible synthetic lineage:** Markdown samples prepend an exact banner and limitation block. CSV samples prepend one exact label column while preserving source values. Both sample README and manifest reconcile all eight relationships and hashes.
- **Acyclic manifest:**
launch-kit.jsoninventories and hashes the other 21 outputs and explicitly excludes only itself. - **Independent deterministic validation:** validation reloads inputs and renders expected bytes rather than trusting existing outputs. Canonical JSON, stable CSV, explicit ordering, supplied dates, and no runtime variability make identical runs byte-identical.
- **Failure-safe replacement:** staging is validated before an atomic directory swap. Invalid generation preserves the last valid outputs and exposes no partial final tree.
- **Offline boundary:** runtime has no network, browser, OAuth, API client, connector, model provider, or child-process dependency.
Trimmed scope
No metadata adapter, diff engine, risk engine, browser, connector, model call, web service, UI, database, PDF/DOCX export, authentication, payment, signature, scheduling, CRM sync, outbound sending, workspace mutation, or quarterly automation was added. Pricing, scope, terms, and safety boundaries are not configurable. The build packages one service and one frozen fictional scenario.
Limitations
The service reasons only over buyer-authorized declared metadata processed separately by the parent. It does not observe live behavior, inspect code, detect malicious behavior, scan vulnerabilities, certify security or compliance, provide legal advice, or enforce a rollout. Humans remain responsible for authorization, completeness, decisions, deployment, acceptance, and retention/deletion.
Suggested next steps
The next-day learning test is deliberately non-technical:
- manually identify three boutique AI implementation consultancies with one concrete upcoming change pair;
- apply every hard gate before outreach;
- send the offer and optional synthetic packet outside this tool;
- offer a short metadata-fit call and ask for the $1,500 paid-upfront review; and
- record price resistance, trust concerns, and the hardest field to map without putting live data into the bundled tracker.
Success is one paid review or, secondarily, two serious metadata-fit calls with identifiable change pairs. Do not add an adapter until two paid engagements reveal the same stable source format and mapping friction.