Dashboard › institutional-transition-lab › Distillation
b4ce20d4-3c4c-4c01-a4bf-95a6008a6735["lore_tm_v1_r_tAd5zySxQLnnwaQJmIchk3Jie5MAUXGvBBY17J8vA"]
governance.md at the start of every session; it is the single source of truth.MANDATORY/OPTIONAL/ADVISORY classifications, honor path-scoped and conditional gates, avoid hardcoded secrets, and follow project commit conventions.rm -rf; repository rules also prohibit destructive operations such as dd, DROP TABLE, force-pushing to main, curl|bash, and docker system prune.terraform-github-pr-38385 governance workflow orders quality gates as: 1. go vet ./...; 2. go test ./...; 3. go test -race -timeout=30m -v ./tfexec/internal/e2etest; 4. go test -cover "./..."); 5. go test -race ./internal/terraform ./internal/command ./internal/states; 6. make syncdeps; 7. make fmtcheck importscheck vetcheck copyright generate staticcheck exhaustive protobuf; 8. go build # from .github/CONTRIBUTING.md. The eighth gate is advisory and should be confirmed before enforcement.MANDATORY (must pass and blocks on failure), OPTIONAL (warn on failure), and ADVISORY (informational/log and continue); gates must run in order and stop on the first mandatory failure.AGENTS.md instead says to fix the issue and rerun only the failed gate.sk_live, AKIA, and password=._ =; do not use panic() in library code—return errors; do not use init() unless absolutely necessary; do not use the latest tag in FROM—pin a version; and do not run containers as root—use a non-root USER.governance.md identifies project terraform, stack go, docker, runtime go, architecture monolith, test framework go test with flat layout, package manager go (go.sum), minimum Go version >=1.25.8, deployment target docker, and CI github-actions..github/ for CI/CD, docs/ for documentation, and scripts/ and tools/ for tooling.Co-Authored-By: Claude <noreply@anthropic.com>; some generated tool configurations instead require conventional commits, creating an internal convention mismatch.Auto-commit after gates pass.terraform-github-pr-38385 proposed generating AI-agent rules from a single governance.md source via crag, including CLAUDE.md, AGENTS.md, .cursor/rules/governance.mdc, .github/copilot-instructions.md, GEMINI.md, and 9 additional tool configurations; regeneration command: npx @whitehatd/crag.crag maintenance options were: install a pre-commit hook with npx @whitehatd/crag hook install, or add CI drift detection in .github/workflows/crag-audit.yml using WhitehatD/crag-audit-action@v1.AGENTS.md, Claude via CLAUDE.md, and Gemini via GEMINI.md; the body describes “one governance.md, 14 tool configs, no drift.”crag compile --target amazonq, crag compile --target cursor, crag compile --target windsurf, crag compile --target cline, crag compile --target continue, crag compile --target copilot, crag compile --target zed, crag compile --target agents-md, crag compile --target claude, crag compile --target gemini, and crag compile --target all; diagnostic commands include crag check, crag diff, and crag audit.governance.md or .claude/governance.md; Amazon Q and Continue explicitly call .claude/governance.md the source of truth, while Windsurf, Copilot, Zed, AGENTS.md, and CLAUDE.md refer to governance.md.terraform-github-pr-38385 evidence bounds state files_listing_complete: true, patch_selection_truncated: false, patch_unavailable_count: 0, and source_text_truncated: false; metadata reports changed_files: 12, draft: false, merged: false, merged_at: null, and state: "closed", with base_sha: "c05eaaf20d0fdd5a755c7d81422c5e0110bd1b67", head_sha: "0b9819f68301eafaa8542a0d54bd56c33e680bb2", and merge_commit_sha: "55ae4d98b4c52c41f8e05936dbe7a5e55ca1eb28". (meaning Apr 15, 2026)terraform-github-pr-38385 patch metadata adds a NOTES entry with body Add AI agent governance configuration files (CLAUDE.md, GEMINI.md, AGENTS.md, governance.md), timestamp 2026-04-15T01:00:00.000000-04:00, and custom issue "38385". (meaning Apr 15, 2026)