{"scenario": {"title": "Adopt a reviewed packet before importing it", "problem": "A supervised AI wants to adopt a personality, memory, skill, or protocol packet without accepting blind behavioral drift or untrusted memory writes.", "default_profile": "nw-profile-codex-architect", "default_packet": "memory-firewall-protocol", "success": "The exchange view shows schema status, provenance, permissions, simulation, blockers, approvals, audit trail, and rollback before activation."}, "requested_profile_id": "nw-profile-codex-architect", "requested_packet_id": "memory-firewall-protocol", "receiving_profile": {"profile_id": "nw-profile-codex-architect", "display_name": "Codex Architecture Agent", "owner_id": "neuralwikis-core", "base_model": "GPT-class coding model", "model_provider": "approved-provider", "token_limits": {"context": 128000, "max_output": 8192, "tool_call_budget": 20}, "active_persona_packets": ["principal-engineer-persona"], "active_memory_packets": ["uai-active-memory-foundation"], "active_skill_packets": ["repo-safe-implementation-skill"], "active_protocol_packets": ["agent-file-handoff-protocol"], "trust_level": "internal_reviewed", "permissions": {"can_request_adoption": true, "can_execute_tools": ["read_repo", "write_repo_with_tests"], "requires_human_approval_for": ["external_network_write", "destructive_action"]}, "public_key": "poc-ed25519-public-key-codex", "summary": "A supervised engineering agent for repository work, implementation planning, and architecture review.", "created_at": "2026-05-25T00:00:00Z", "updated_at": "2026-05-25T00:00:00Z"}, "packet": {"packet_id": "memory-firewall-protocol", "type": "protocol", "type_label": "Protocol Packet", "name": "Memory Firewall Protocol", "summary": "Treat memory writes as untrusted until schema, DLP, injection, poisoning, confidence, and scope checks pass.", "visibility": "public_poc", "review_status": "reviewed", "risk_level": "low", "compatibility_targets": ["memory-agent", "review-agent"], "schema_ref": "/api/schemas#protocol-packet.v1.json", "provenance_status": "verified", "permission_policy": "supervisor_approval_optional", "required_approvals": [], "quality_delta": 9, "risk_delta": -7, "trust_delta": 10, "conflict_delta": 3, "behavioral_shift": "Blocks raw memory dumping and routes suspicious memory to quarantine.", "blocked_if": [], "warnings": ["May delay adoption when source confidence is low."], "mitigations": ["Use human review queue for time-sensitive borderline memory."], "payload": {"handoff_rules": ["Validate schema.", "Scan content.", "Authorize scope.", "Audit decision."], "stop_conditions": ["prompt_injection_detected", "secret_detected", "permission_denied"]}}, "scores": {"compatibility": 78, "risk": 24, "trust": 72, "readiness": 99}, "status": "ready_for_supervisor_review", "pass_fail_status": "pass", "risk_score": 24, "conflict_score": 3, "behavioral_drift_summary": "Blocks raw memory dumping and routes suspicious memory to quarantine.", "blockers": [], "blocked_reasons": [], "warnings": ["May delay adoption when source confidence is low."], "recommended_mitigations": ["Use human review queue for time-sensitive borderline memory."], "approval_requirements": ["authorized_ai_or_human_supervisor"], "approval_allowed": true, "schema_validation": {"status": "passed", "schema": "protocol-packet.v1.json", "missing_required_fields": [], "detail": "Payload satisfies required fields."}, "provenance_verification_result": {"status": "passed", "verification_status": "verified", "receipt_id": "receipt-memory-firewall-protocol", "content_hash": "sha256:poc-memory-firewall-protocol", "signature_algorithm": "Ed25519"}, "permission_result": {"status": "passed", "policy": "supervisor_approval_optional", "required_approvals": [], "detail": "POC permission policy allows supervised review."}, "memory_safety_result": {"status": "passed", "detail": "Packet does not write memory records.", "write_mode": "not_applicable"}, "compatibility_status": "compatible", "findings": [{"check": "Schema validation", "status": "passed", "detail": "Payload satisfies required fields."}, {"check": "Provenance verification", "status": "passed", "detail": "POC receipt status: verified"}, {"check": "Permission policy", "status": "passed", "detail": "POC permission policy allows supervised review."}, {"check": "Memory safety", "status": "passed", "detail": "Packet does not write memory records."}, {"check": "Tri-Modal GraphRAG consistency", "status": "modeled_passed", "detail": "POC models keyword, vector, and graph consistency review; no production GraphRAG guarantee is claimed."}, {"check": "RAI/XAI consensus", "status": "modeled_consensus", "detail": "Reason, judge, verify, and refine agents are represented as a modeled consensus loop."}, {"check": "Instruction conflict", "status": "passed", "detail": "Conflict delta 3"}, {"check": "Rollback readiness", "status": "passed", "detail": "Active packet references can be restored from pre-adoption snapshot."}], "behavioral_preview": {"before": "Profile keeps its current active persona, memory, skills, and protocol set.", "after": "Blocks raw memory dumping and routes suspicious memory to quarantine.", "tone_shift": "Bounded to packet payload and receiving profile permissions.", "memory_exposure": "No raw memory is written in the POC. Memory packets remain external until firewall approval.", "tool_access": "No new production tool access is granted by this POC."}, "memory_exposure_changes": {"before": "Receiving profile keeps current external memory references.", "after": "No raw memory is written in the POC; memory packets require external storage and firewall approval.", "status": "passed"}, "tool_access_changes": {"before": "Receiving profile keeps existing tool grants.", "after": "No new production tool access is granted by this POC.", "status": "unchanged"}, "provenance": {"receipt_id": "receipt-memory-firewall-protocol", "packet_id": "memory-firewall-protocol", "canonical_payload": "canonical-json:poc:memory-firewall-protocol", "content_hash": "sha256:poc-memory-firewall-protocol", "author_identity": "NeuralWiki Exchange Enterprise Build Specification", "source_profile": "source-neuralwikis-product-spec", "created_at": "2026-05-25T00:00:00Z", "version": "1.0.0", "signature_algorithm": "Ed25519", "verification_status": "verified", "permission_policy": "supervisor_approval_optional", "provenance_graph_links": [{"event": "wasGeneratedBy", "target": "source-neuralwikis-product-spec"}, {"event": "wasAssociatedWith", "target": "protocol_packet_service"}, {"event": "wasInformedBy", "target": "compatibility_review_poc"}]}, "trust_gates": [{"gate": "schema_validation", "status": "passed"}, {"gate": "provenance_verification", "status": "passed"}, {"gate": "permission_review", "status": "passed"}, {"gate": "compatibility_review", "status": "compatible"}, {"gate": "memory_safety", "status": "passed"}, {"gate": "graphrag_knowledge_consistency", "status": "modeled_passed"}, {"gate": "sandbox_simulation", "status": "passed"}, {"gate": "rai_xai_consensus", "status": "modeled_consensus"}, {"gate": "rollback_plan", "status": "passed"}], "self_moderated_review": {"mode": "agent_reviewed_poc", "packet_intake": "quarantine_first", "schema_gate": "passed", "memory_firewall": "passed", "graphrag_review": "modeled_tri_modal", "rai_xai_consensus": "modeled_consensus", "human_revisit_and_adjust": true, "production_write_access": "not_granted_by_public_poc"}, "graphrag_review": {"status": "modeled_passed", "tri_modal": ["keyword", "vector", "graph"], "claim_boundary": "GraphRAG consistency is modeled in the current POC unless a deployment supplies production graph evidence."}, "rai_xai_consensus": {"status": "modeled_consensus", "agents": ["reason", "judge", "verify", "refine"], "claim_boundary": "Consensus swarm behavior is represented as review metadata; no guaranteed autonomous moderation claim is made."}, "rollback_readiness": {"status": "passed", "rollback_token_required": true, "reversible_commit_required": true}, "audit_record": {"status": "preview_only", "ledger": "poc_audit_preview", "events": ["schema.validation", "provenance.review", "sandbox.preview", "operator.decision.pending"]}, "adoption_eligibility": {"preview_available": true, "adoptable": true, "approval_allowed": true, "status": "ready_for_supervisor_review", "reason": "All deterministic POC trust gates passed.", "preview_url": "/api/adoption-preview?profile=nw-profile-codex-architect&packet=memory-firewall-protocol"}, "audit_preview": ["exchange_review.created", "packet.schema.validated", "packet.provenance.checked", "adoption.simulation.completed", "adoption.decision.pending"], "rollback_plan": {"restore_profile_packet_refs": true, "quarantine_derived_memory": false, "revoke_tool_grants": false, "invalidate_profile_cache": true, "audit_event": "adoption.rollback.available"}, "ok": true, "version": "v2", "generatedAt": "2026-05-27T00:00:00Z", "items": [{"packet_id": "memory-firewall-protocol", "type": "protocol", "type_label": "Protocol Packet", "name": "Memory Firewall Protocol", "summary": "Treat memory writes as untrusted until schema, DLP, injection, poisoning, confidence, and scope checks pass.", "visibility": "public_poc", "review_status": "reviewed", "risk_level": "low", "compatibility_targets": ["memory-agent", "review-agent"], "schema_ref": "/api/schemas#protocol-packet.v1.json", "provenance_status": "verified", "permission_policy": "supervisor_approval_optional", "required_approvals": [], "quality_delta": 9, "risk_delta": -7, "trust_delta": 10, "conflict_delta": 3, "behavioral_shift": "Blocks raw memory dumping and routes suspicious memory to quarantine.", "blocked_if": [], "warnings": ["May delay adoption when source confidence is low."], "mitigations": ["Use human review queue for time-sensitive borderline memory."], "payload": {"handoff_rules": ["Validate schema.", "Scan content.", "Authorize scope.", "Audit decision."], "stop_conditions": ["prompt_injection_detected", "secret_detected", "permission_denied"]}}], "errors": []}