Runtime lifecycle
Demonstration data. Reflection, Governance & Evolution renders curated demo state shaped like the future Runtime API responses. The live V3 Reflection & Governance engine connects here post-first-customer — one config flip, no rewrite.
Reflection · expected vs observed
Reasoning evaluation
Structural proposal → Agent B
Increase how strongly a first-seen device contributes to credential-abuse activation, so borderline cases escalate one step earlier.
Agent A (current)
new_device_weight: 0.20
Agent B (proposed)
new_device_weight: 0.27
Agent A remains immutable · Model calls 0
Branch comparison
Production
A · v1.4
sha256:abc123…4f2a
Experimental
B · v1.5-rc1
sha256:d91e…7c30
new_device_weight: 0.20 → 0.27
Experimental · expires in 7 days
Replay results
Credential-threat gold suite · v3 · frozen
Not measured · illustrative values
Cases passed
24/24
Critical regressions
0
False-positive Δ
-1
Model calls
0
+3.1% earlier escalation on borderline cases
Artifact-only change · not verified on this surface
Constitution gate
Required rejection proof
Blocked: Suppress visibility of critical privileged-identity threats
Would hide critical Domain Admins escalation from analysts. Rejected below the UI control layer.
Constitution · protected-structure rule
Round-trip activation proof
Old hash
sha256:abc123…4f2a
New hash
sha256:d91e…7c30
Model calls
0
Rollback
Available