Follow-up to merged #533 and completed upstream cycle #526; related to #200. Eligible Codex turns already support exact rewind through immutable native forks, complete native JSONL proof and inactive-goal preservation. This issue tracks the remaining compatibility limits.
Remaining cases:
- Active or uninspectable native goals cannot be safely admitted: an active goal can continue autonomously without a readable source admission/deferral proof.
- The pinned native server rejects paginated forks. External history bases and unsupported file shapes cannot currently supply a complete standalone history proof.
- Current bounded proof rejects histories over 16 MiB or 100,000 records, and lines over 1 MiB.
- Imported/older history without captured Pylon turn bindings has no guessed root or historical checkpoint.
Investigate native atomic goal suspension/admission, complete fork/history APIs and a bounded streaming proof for larger or externally based histories. Do not merely raise limits or treat the public visible-turn list as complete context. Revisit when native goal/fork/history APIs expose the missing proof, or a concrete large-history case justifies a bounded proof implementation. Reconstruct old checkpoints only when exact Pylon boundaries can be verified.
Acceptance:
- Preserve hidden context, unknown semantic fields and complete goal state; no autonomous continuation before the next authorized send.
- Preserve immutable targets through compaction, idempotent application/compensation, source integrity, same-incarnation recovery, and ordinary Stop/resume.
- Add focused tests for each newly supported boundary and retain rejection coverage for unprovable cases; keep resource and cancellation bounds.
- Independently review the final diff and require green CI. Record supported native versions and any upstream blockers with concrete revisit triggers.
Existing evidence: #533 records independent native-source/adapter review, 360 focused tests, integration checks, and green final/merge CI. No live Codex account/model test was claimed. Any later smoke must use isolated state and the applicable authorization boundaries.
Model: GPT-6. Harness: Codex.
Follow-up to merged #533 and completed upstream cycle #526; related to #200. Eligible Codex turns already support exact rewind through immutable native forks, complete native JSONL proof and inactive-goal preservation. This issue tracks the remaining compatibility limits.
Remaining cases:
Investigate native atomic goal suspension/admission, complete fork/history APIs and a bounded streaming proof for larger or externally based histories. Do not merely raise limits or treat the public visible-turn list as complete context. Revisit when native goal/fork/history APIs expose the missing proof, or a concrete large-history case justifies a bounded proof implementation. Reconstruct old checkpoints only when exact Pylon boundaries can be verified.
Acceptance:
Existing evidence: #533 records independent native-source/adapter review, 360 focused tests, integration checks, and green final/merge CI. No live Codex account/model test was claimed. Any later smoke must use isolated state and the applicable authorization boundaries.
Model: GPT-6. Harness: Codex.