AIM Cortex Programme Board

Live · 2026-08-25 18:05 · main f66cd20d

One platform, two ways in. The science lives in the engine and library; shared product logic lives once in services; Fox (people) and Machines (AI agents) are thin surfaces on top. The work is nine numbered workstreams; each item is a ticket in the Cortex Delivery board. The goal running through all of it: thinner surfaces, a fatter shared middle, every capability built once.

Waiting on you live · labelled needs:david

DecideEnable the 'PR merged' + 'PR linked to issue' Project workflows #710. Belt-and-braces on the mechanical board: turn on the built-in Project #2 workflows so merged/linked PRs move tickets automatically.
StandingMerges stay your word, one lane at a time. Tickets are the source of truth — update the ticket, not this page. Archived sessions are reopenable from the Archived list — that is the rollback. S1 security (9.2) has your go; the async seam is live with the old engine warm as the parachute.

Sequence & dependencies

The serial spine — each step needs the one before it
1

Foundations

live lanes

3

Surveys

9/11 done

7

Feature slices

8/19 done

Branches off the spine
4 · Machines POC

starts once Surveys reaches its executor (3.5)

Parallel tracks — own gates
2 · Data platform6 · Services

Build alongside the spine; only the job-store swap (2.3) waits (for 1.3 + 3.5).

No gate — run anytime
5 · Fox hygiene9 · Security8 · Engine & science · 8.1 urgent

Nothing blocks these; they run whenever there is a slot.

Ready / in flight now live
3.87.68.4

Computed from the tickets this run — every item currently Ready, In Progress or In Review.

Waits on Matt
7.38.28.68.7

7.3 analysis blocks · 8.2 v6.1 · 8.6/8.7 drivers + Likert — need Matt's rulings (8.4).

Gantt · effort & sequence T-shirt sizes · live

Each bar is a ticket; its width is the AI-execution effort (the Size field), laid end-to-end along the dependency chain. Dashed lines are dependency gates — a downstream track (e.g. 7 Feature slices, 4 Machines) can’t start until the marked spine work clears. Not a calendar — horizontal is relative AI-effort (XXS minutes · XS ½h · S 1–2h · M ½d · L 1d · XL 2–3d · XXL ~1wk).
sequence start≈19.4 AI-days →
Landed — 51 delivery ticketsclick to expand
2.1 · Stand up the control-plane database2.1 · migration 0001 must self-grant `migrate`2.2 · Accounts / projects / keys / budget grad2.3 · Job-store backend swap 2.4 · Asset data waves2.4 · 2.4.1 · Results wave — migrate study run2.4 · 2.4.2 · Audiences finalisation — provena2.4 · 2.4.3 · Fix import_studies append-only u2.5 · Ledger graduation + evidence envelope2.8 · Results cache 3.1 · Surveys slice spec 3.2 · Freeze the characterization corpus3.3 · Wire the 6 stranded believability specs3.4 · Demo curation 3.5 · Services survey executor 3.5 · Shared PRNG primitive 3.5 · Sampler cleanup 3.6 · Fox thin adapter + flag cutover3.6c · Survey executor reference-lookup 4.1 · Machines POC: real run-survey job kind4.2 · Machines POC: minimal MCP tool 4.3 · Machines POC: demo — an agent commission5.1 · Compat calibration_status hardcoded true5.2 · verbose_errors to real config + error ca5.3 · DRIVER_BANK provenance gating5.4 · Fakery re-sweep 5.5 · Avatar quality 5.6 · V6 warm-cache staleness plan row5.7 · resonanceMap per-persona confidence ?? 05.8 · Local/IDB-mode Quadrant demos serve stal5.9 · Silent-failure / honesty register needs 6.2 · Accounts / identity model detail6.5 · Error-code developer + user documentatio6.6 · Move static reference datasets out of gi6.7 · CF Pages deploy pipe — LFS-smudge clone 7.2 · 7.2.0 · Golden-freeze the spec-less Fox 7.2 · 7.2.1 · Port the focus-group study runne7.5 · 7.5.1 · Port the creative study runner t7.5 · 7.5.2 · Port the sensitivity study runne7.5 · 7.5.3 · Port the interview study runner 7.5 · 7.5.4 · Port the resonance-map study run7.5 · 7.5.5 · Port the ddq study runner to the7.10 · Survey question types 9.2 · S1 security execution 9.2 · 9.2/S1 [Medium]: authenticated SSRF via 9.2 · 9.2/S1 [Medium]: path traversal via cont9.2 · 9.2/S1 [Medium]: indirect prompt injecti9.2 · 9.2/S1 [Medium]: D1 DoS — save-state wri9.2 · 9.2/S1 [Medium]: D1 DoS — arbitrary diag9.2 · 9.2/S1 [Medium]: no CSRF defence on stat9.2 · 9.2/S1 [Medium/local-dev]: serve.py hard

The work — by workstream active shown · done in Landed

now / in reviewdoneparkedurgentreadytriage / queued
1

Foundations

Objective: Stand up the guardrails and coordination so the build runs safely, in parallel, without rotting.

Needs: Unlocks the whole critical path. These are live lanes, not board tickets.

2

Data platform

10/13

Objective: Give the platform a real memory — one production database for accounts, keys, assets and results.

Needs: Store ruled (D-021, production). 2.3 waits on 1.3 + 3.5. · epic #647

3

Surveys

9/11

Objective: Prove the build-once model — move the first real feature into shared services, thin on both surfaces.

Needs: Needs the 1.1 gate + 1.3 job seam; not the data platform. Spec 3.1 ruled. · epic #648

4

Machines

3/3

Objective: Let an AI agent commission a survey end to end — the first Machines proof of concept, internal only.

Needs: Branches off the spine once Surveys reaches its executor (3.5). Delta ruled (D-022). · epic #649

5

Fox hygiene

9/9

Objective: Close the honesty and cleanup gaps in the Fox app so demos and pilots are trustworthy.

Needs: No gate — runs anytime, full-auto to verified PRs. · epic #650

6

Services & platform

4/7

Objective: Build the shared plumbing both surfaces rely on — the AI gateway, accounts, a real release path.

Needs: 6.1 rides the Surveys path; 6.3 is independent and unlocks retiring the old VM. · epic #651

  • DeliversThe one shared LLM gateway service — 29 registered tasks + the 4 ingestion/image endpoints, the unregistered raw-completion escape hatch closed, provider provenance stamped (closes the model_used defect) → unlocks every surface calling LLMs through one governed path instead of its own integration, with the Survey-voicing subset moving first, riding workstream 3 (Surveys).
    Services
  • DeliversA real release path for the service — Artifact Registry, scripted deploy, an acceptance probe (M4 baseline + real >30s async compute), previous-image rollback, release-identity stamp → unlocks the old-VM decommission (~65-110/mo saving).
    Services
  • 6.4#624Infra tidyqueued
    DeliversInfra tidy on the redeployed box — L1 observability re-verified (merged 08-08, never re-verified), key-rotation completed, a tunnel/DNS map drawn → unlocks a verified, documented infra baseline for the 6.3 release path and old-VM decommission to build on.
    Services
7

Feature slices

8/19

Objective: Grow the product by pulling each study type into shared services, reusing the Surveys machinery.

Needs: Needs the Surveys machinery (3). 7.3 also needs Matt (8.4). · epic #652

8

Engine & science

0/9

Objective: Engine & science — the 100k population, the capability workshop, and Matt's handover items.

Needs: 8.1 is urgent and runs now; most rows are Matt-gated. · epic #653

9

Security & governance

8/12

Objective: Security baseline, dependency debt, and pre-customer licensing validation.

Needs: 9.1 sweep can start now (Codex); 9.2 has David's go. · epic #654

0

Miscellaneous

12/15

Objective: Operational, board and CI/bookkeeping tickets — outside the 1-9 delivery spine.

Needs: No delivery dependency; kept homed for the audit trail, not a workstream of work.