Goal
After all compatibility readers migrate, delete the legacy human-governance manager role and fallback, human delegate role, and technical-waiver mechanisms, then align agent skills with the Launchplane workflow. Preserve separately authorized DB-native, identity-bound, repository/base/action-scoped agent execution grants.
Scope
- Remove contracts, database fields/tables, actions, routes, UI types, status names, comments, fixtures, tests, and documentation belonging to the legacy human
manager role/fallback, human delegate role, and technical-waiver mechanisms after their compatibility readers reach zero.
- Delete GitHub repository authority metadata superseded by Launchplane; keep only thin routing/generated projection inputs that still have a live consumer.
- Update Launchplane, GitHub, repo-readiness, security-review, babysit-pr, and related skills so they distinguish engineering attestation and authorized own-identity landing from human Owner acceptance, scoped exact-artifact production execution, policy administration, and bypass; retain the no-impersonation and no-status-minting rules.
- Keep the GitHub Project
Manager field as planning metadata unless a separate roadmap decision changes it; it is not an authorization role.
- Avoid a core Codex Lab change unless deployed attestation provenance demonstrates a concrete missing primitive. Preserve existing Every Code record and serialization identifiers until proven reader cutover; this plan does not reassign Codex Lab release/runtime work.
- Validate that active issues and docs no longer instruct agents or humans to use the legacy human-manager fallback, human
delegate role, or technical waivers.
- Do not remove or prohibit DB-native, actor-bound, repository/base/action-scoped coding-agent permissions that are separately authorized and exercised under the agent's own identity with all required gates.
Acceptance Criteria
- Searches and schema inspection find no live readers for the legacy human
manager role/fallback, human delegate role, or technical-waiver mechanisms.
- Compatibility code and migrations are removed at the earliest safe revision rather than retained indefinitely.
- Skills route agent reviews through Launchplane, preserve authorized landing under the acting agent's own scoped identity, and forbid human-review impersonation or direct status minting.
- Repo readiness and PR babysitting explain missing/stale agent and Owner evidence accurately and distinguish merge execution, Owner acceptance, production promotion, policy administration, and bypass.
.github/github.json files contain no stale human-role authorization authority.
- Tests and docs use
Owner, engineering attestation, and production authorization consistently.
- No deletion removes a current DB-native actor-bound agent execution grant unless that grant is separately revoked through its owning authority model.
Finish Line
Only the new Owner-and-agent governance model remains in runtime code, repository config, skills, and current documentation.
Next Action
Track reader counts separately for the legacy human manager role/fallback, human delegate role, and technical-waiver mechanisms during each gated rollout. Begin deleting only those shared legacy paths after the final corresponding reader migrates and current DB-native scoped agent-execution grants are confirmed outside the deletion set.
Current Status
State: two stacked PRs are green, reviewed and marked "Ready for the merge train". #2698 (root, technical human waiver) and #2700 (manager and delegate role policies plus retired manager preview approval, based on #2698). Both keep the database tables and schema so stored rows are kept. Work by GOLP-2006-D0 (Claude Code).
Next action: the Launchplane merge-train session lands #2698, then #2700 (label only the root; #2698 needs a branch update). After both land, close this issue if the owner declines both questions below; otherwise open follow-up PRs for the answers.
Blocked by: none
Waiting for: the merge train; owner answers to two questions on this issue (drop the three retired tables; empty the operator.manager-preview-approval grant set).
Last verified: 2026-10-01, both PRs 33/33 checks green.
Direction
proves the retired designs above are gone from the code
Deletes the retired waiver and manager role code.
Goal
After all compatibility readers migrate, delete the legacy human-governance
managerrole and fallback, humandelegaterole, and technical-waiver mechanisms, then align agent skills with the Launchplane workflow. Preserve separately authorized DB-native, identity-bound, repository/base/action-scoped agent execution grants.Scope
managerrole/fallback, humandelegaterole, and technical-waiver mechanisms after their compatibility readers reach zero.Managerfield as planning metadata unless a separate roadmap decision changes it; it is not an authorization role.delegaterole, or technical waivers.Acceptance Criteria
managerrole/fallback, humandelegaterole, or technical-waiver mechanisms..github/github.jsonfiles contain no stale human-role authorization authority.Owner, engineering attestation, and production authorization consistently.Finish Line
Only the new Owner-and-agent governance model remains in runtime code, repository config, skills, and current documentation.
Next Action
Track reader counts separately for the legacy human
managerrole/fallback, humandelegaterole, and technical-waiver mechanisms during each gated rollout. Begin deleting only those shared legacy paths after the final corresponding reader migrates and current DB-native scoped agent-execution grants are confirmed outside the deletion set.Current Status
State: two stacked PRs are green, reviewed and marked "Ready for the merge train". #2698 (root, technical human waiver) and #2700 (manager and delegate role policies plus retired manager preview approval, based on #2698). Both keep the database tables and schema so stored rows are kept. Work by GOLP-2006-D0 (Claude Code).
Next action: the Launchplane merge-train session lands #2698, then #2700 (label only the root; #2698 needs a branch update). After both land, close this issue if the owner declines both questions below; otherwise open follow-up PRs for the answers.
Blocked by: none
Waiting for: the merge train; owner answers to two questions on this issue (drop the three retired tables; empty the operator.manager-preview-approval grant set).
Last verified: 2026-10-01, both PRs 33/33 checks green.
Direction
Deletes the retired waiver and manager role code.