Skip to content

fix(app-shell): the SLA escalation switch no longer writes a refused { enabled: false } block, and keeps entered values when switched off (objectui#11660) - #11661

Merged
objectstack-fleet[bot] merged 4 commits into
mainfrom
claude/issue-11660-escalation-off-removes-block
Oct 5, 2026
Merged

objectstack-fleet[bot] merged 4 commits into
mainfrom
claude/issue-11660-escalation-off-removes-block

Conversation

@objectstack-fleet

Copy link
Copy Markdown
Contributor

Fixes #11660

Clause-②: no

What changes

The flow designer's SLA escalation switch on an approval node no longer writes the refused escalation: { enabled: false } block, and switching it off keeps the values the author entered. This follows triage's amended direction on the card (comment 6003792818, which replaced the first grade under objectui#6499 Option C):

  1. No block reads off. A node without an escalation block used to draw the switch checked and reveal all four escalation fields, because the inspector applied the declared default ('true') with no block for it to apply to. It now reads off, and rendering writes nothing. A block that omits enabled still reads on (the objectui#6620 pin is unchanged), and a stored enabled: false still reads off.
  2. Switching off with nothing entered writes no block. Switching on writes { enabled: true } alone. Switching back off before anything is entered removes the block instead of writing the { enabled: false } stub.
  3. Switching off a block that holds values writes enabled: false and keeps every value byte-identical. The existing "inactive values retained" display and its Clear action carry them (objectui#6499 Option C).
  4. Clearing the last retained value removes the block instead of leaving { enabled: false } behind. A block that still holds another value is kept.
  5. A block with values but no timeoutHours (for example { enabled: true, action: 'reassign' } before hours are typed) keeps its values when switched off, gains enabled: false, and has no hours filled in. It was refused at escalation.timeoutHours before the switch and stays refused after it, with the field named.

Why the stub was the defect: ApprovalEscalationSchema.enabled is described as "an escalation block carrying timeoutHours is live unless this is explicitly false — the feature-level switch is whether the escalation block exists at all", and timeoutHours is required whatever enabled says. So both no block and { enabled: false, timeoutHours: N } are a conforming off, and the runtime skips escalation on an explicit false. The bare { enabled: false } is refused. The inspector wrote that stub when an author switched off a node with nothing entered, because the switch drew on over a node that had no block.

Where the change sits

The designer renders the engine-published configSchema when one is served, and falls back to the offline table otherwise. Both sources emit the gate at ['config', 'escalation', 'enabled'], so the rule is keyed by node type and path in flow-node-config.ts (BLOCK_SWITCHES). A descriptor member was not needed. Three internal helpers implement it:

  • switchedBlockOf(node, field) says whether a field is the switch or a value inside the switched block.
  • readFieldValue(node, field) is the stored read, except that the switch over an absent block reads false (rule 1). controllerAdmits and FlowNodeInspector's control value both go through it.
  • isBareSwitchedOffBlock(node, switched) detects the stub after any write; FlowNodeInspector.setField then removes the block (rules 2 and 4).

Everything else is the ordinary write, which is what keeps entered values on switch-off (rules 3 and 5). FlowNodeConfigField and json-schema-to-fields.ts are unchanged.

Clause-②: no holds: no export, prop, type member or i18n key is added to anything a package entry reaches. The helpers are new exports of the internal inspectors/flow-node-config.ts module, which the @object-ui/app-shell entry does not reach. That was measured on the built dist: walking every relative import / export … from out of dist/index.d.ts reaches 164 declaration files. The control, inspector-registry.d.ts, is among them. None of flow-node-config.d.ts, FlowNodeInspector.d.ts or FlowNodeConfigField.d.ts is, although flow-node-config.d.ts is emitted and declares the new helpers.

Measured

Live, this branch (objectstack main at cab63967)

Setup: the showcase app on a --fresh database, the console from this branch, Playwright Chromium, and a user-authored record-triggered flow with one approval node. The designer rendered the engine-published descriptors (the gate is labelled Escalation).

  • Rule 3. A published block { enabled: true, timeoutHours: 24, action: 'reassign', escalateTo: 'sre_lead', notifySubmitter: false } sits beside behavior, lockRecord: false and maxRevisions: 2. Switching it off autosaves { enabled: false, timeoutHours: 24, action: 'reassign', escalateTo: 'sre_lead', notifySubmitter: false } with every sibling key, and gets 200. The node then reads off with all four values on screen and four "kept, not in effect" notices, both right away and when reopened. After publish (200), a new trigger record starts a run with start success, gate success, status paused.
  • Rule 2. On a node with no block, switching on autosaves { enabled: true }, which is refused 422 at nodes.1.config.escalation.timeoutHours (see the acceptance notes). Switching back off leaves the designer at "No changes to save", because the node again equals the stored one with no escalation key. A forced save (a label edit) sends the node with no escalation key and gets 200.
  • Rule 5. Switch on, then pick Action Reassign without typing hours: autosave sends { enabled: true, action: 'reassign' } and gets 422 at nodes.1.config.escalation.timeoutHours. Switching off sends { enabled: false, action: 'reassign' }, again 422 at the same field. No hours are filled in, and the node reads off with Action retained (one notice).

Live, earlier (objectstack main at 866683f9, unchanged paths)

  • Before (the two source files checked out at 846f982 in the worktree, then restored and blob-verified): a node with no block drew the switch checked with all four fields revealed. Switching it off autosaved escalation: { enabled: false } and got 422 INVALID_METADATA at nodes.1.config.escalation.timeoutHours.
  • A stored { enabled: false, timeoutHours: 24 } read off and showed Timeout Hours with the notice. The page made zero metadata writes while open.

Unit pins

FlowNodeInspector.escalationOff-11660.test.tsx runs every case on both descriptor sources. The first is the offline table. The second is getApprovalNodeConfigJsonSchema() from the installed @objectstack/spec/automation, which is what objectstack's plugin-approvals hands its approval node descriptor as configSchema. The file pins:

  • Rule 1: no block reads off and nothing is written on render. A block that omits enabled reads on (lit control). A stored false reads off.
  • Rule 3: a block holding every value gains enabled: false with every value byte-identical (JSON.stringify equal, key order included). The sibling config keys (approvers, behavior, minApprovals, onEmptyApprovers, lockRecord, maxRevisions and an Advanced extra) are byte-identical, and the block parses. Four values show as retained. A block that omits enabled keeps its value and gains enabled: false.
  • Rule 2: switching on writes { enabled: true } alone, with no action or notifySubmitter default. Switching back off with nothing entered leaves no escalation key, and an emptied config is pruned.
  • Rule 5: { enabled: true, action: 'reassign' } switched off becomes { enabled: false, action: 'reassign' }. It gains no timeoutHours, and ApprovalNodeConfigSchema refuses it at escalation.timeoutHours both before and after.
  • Rule 4 on a block rule 3 wrote: { enabled: true, timeoutHours: 24 } switched off, then Clear on the hours, leaves no block.
  • Round trip: escalation authored on through the inspector (switch, hours, action select, escalate-to, notify-submitter) parses through ApprovalNodeConfigSchema with every value. Switched off, it carries enabled: false with every value identical, and it parses.
  • Stored off block: it reads off, is retained and flagged, and writes nothing. Clearing its last value leaves no stub. Clearing one of two retained values keeps the other.

Two existing pins moved:

  • FlowNodeInspector.inactiveRetained.test.tsx, "offers a clear button that removes the retained key", used to pin the refused { enabled: false } left after Clear. It now pins no block (rule 4).
  • FlowNodeInspector.declaredDefault.test.tsx, "every select-kind declaring field renders its declared default", used to render approval.escalation.action on an empty config. That only drew because the gate read on over no block. That one case now renders on { timeoutHours: 24 }, with action still unset.

Ablation

Each write branch was ablated separately on the committed state, through ablation-replace.mjs (anchor hit once, blob changed, restore proven equal to the HEAD blob with git diff HEAD empty). The runs cover the new file plus FlowNodeInspector.inactiveRetained.test.tsx, 37 tests.

  • No-values branch (the bare-stub removal disabled): 9 failed | 28 passed. The failures are rule 2 (two cases), rule 4 on a rule-3 block, and Clear of the last value on a stored block, each on both sources, plus the moved inactiveRetained pin.
  • Off-with-values branch (mutated to remove the block whenever the switch commits false, the behaviour this round retires): 10 failed | 27 passed. The failures are the two rule-3 cases, rule 5, rule 4 on a rule-3 block, and the round trip, each on both sources.

The read half (readFieldValue) is unchanged from the first round. Its ablation there turned 6 pins red.

Gates

Run from the repo root at 2f7d398, the branch head. origin/main is still 846f982, this branch's base, so the pre-PR merge of origin/main was a no-op (Already up to date), and there is no merge commit.

Gate Result
pnpm exec vitest run packages/app-shell/ exit 0. Test Files 1008 passed | 1 skipped (1009), Tests 10019 passed | 9 skipped (10028)
pnpm --filter @object-ui/app-shell type-check (dependency closure built first) exit 0. tsc -p tsconfig.test.json --listFiles lists the new test file (1 hit)
pnpm --filter @object-ui/app-shell lint exit 0. 0 errors, and no warning on a line this branch adds
pnpm --filter @object-ui/app-shell build exit 0. dist completeness: 1 package(s) complete
check:spec-symbols, check:new-line-citations (0 new citation(s)), check:control-bytes, check:changeset-claims, check:pending-changeset-literals, check:vi-mock-specifiers, check:vi-mock-inherit, check:vi-mock-override-shape, check:test-path-roots, check:metadata-write-doors, check:unreferenced-sources, check:installed-pin-claims, check:designer-field-key-parity, check:i18n-designer-parity exit 0 each
node scripts/check-changeset-presence.mjs / check-changeset-no-major.mjs exit 0 each. One changeset, @object-ui/app-shell: patch

The full lint farm and every other check:* script are left to CI.

Acceptance notes


Generated by Claude Code

claude added 4 commits October 5, 2026 18:22
…es the escalation block (objectui#11660)

The flow inspector wrote `escalation: { enabled: false }` when an author
turned escalation off. `ApprovalNodeConfigSchema` refuses that block for its
missing `timeoutHours`, so the flow saved and then failed at the approval node.
The spec names the block's existence as the switch, so off is now no block:

- committing `false` to `config.escalation.enabled` removes `config.escalation`
  (siblings untouched, an emptied `config` pruned as before);
- the switch reads an absent block as off instead of applying its declared
  default with nothing to apply it to;
- a write that would leave the bare `{ enabled: false }` stub removes it.

The rule is keyed by node type and path (`BLOCK_SWITCHES`), so it holds for
the offline field table and the engine-published configSchema alike.

Claude-Session: https://claude.ai/code/session_015W8GBu6sBiqus2L2xjMsAL
Co-authored-by: Claude <noreply@anthropic.com>
…not after a spec export (objectui#11660)

`check:spec-symbols` refused `isPlainRecord`: `@objectstack/spec/data` exports
a symbol of that name, and a local declaration under it reads as the spec's
own definition. Renamed to `isBlockObject`; behaviour unchanged.

Claude-Session: https://claude.ai/code/session_015W8GBu6sBiqus2L2xjMsAL
Co-authored-by: Claude <noreply@anthropic.com>
…ase on an existing block (objectui#11660)

The select-half sweep rendered every declaring field on an EMPTY config,
which drew `approval.escalation.action` only because the escalation switch
read its default over no block. No block now reads off and hides the block's
fields, so that one case renders on `{ timeoutHours: 24 }` — the smallest
block the spec accepts, with `action` still unset.

Claude-Session: https://claude.ai/code/session_015W8GBu6sBiqus2L2xjMsAL
Co-authored-by: Claude <noreply@anthropic.com>
…ide enabled: false (objectui#11660)

Triage amended the direction under objectui#6499 Option C. Switching off no
longer removes a block that holds values: the ordinary write stores
`enabled: false` beside them, every value kept, including a block with no
`timeoutHours` yet (nothing filled in, nothing deleted). The only removal left
is the bare `{ enabled: false }` stub `ApprovalNodeConfigSchema` refuses, so
switching off with nothing entered, or clearing the last retained value,
writes no block. No block still reads off.

The pins flip to match: the full-block switch-off keeps every value
byte-identical and parses; the round trip covers on and off-with-values; the
nothing-entered, emptied-config, no-hours edge and rule-3-then-Clear cases are
pinned on both descriptor sources. The changeset and docs drop the claim that
no block is the only conforming off.

Claude-Session: https://claude.ai/code/session_015W8GBu6sBiqus2L2xjMsAL
Co-authored-by: Claude <noreply@anthropic.com>
@github-actions

github-actions Bot commented Oct 5, 2026

Copy link
Copy Markdown
Contributor

✅ Console Performance Budget

Metric Value Budget
Eager closure (gzip, 331 chunks) 3318.8 KB 3330.4 KB
Main entry chunk (gzip) 152.1 KB 350 KB
Entry file index-C6vE7l65.js —
Status PASS —

The eager closure is every chunk the entry reaches through static imports — what the browser fetches and parses before the app renders. The entry chunk on its own is a small fraction of it.


📦 Bundle Size Report

Package Size Gzipped
app-shell (consoleActionDispatch.js) 0.20KB 0.19KB
app-shell (index.js) 17.22KB 6.37KB
app-shell (runtime-config.js) 22.52KB 7.86KB
app-shell (types.js) 0.01KB 0.04KB
app-shell (urlParams.js) 10.11KB 3.87KB
auth (ActiveOrganizationStorage.js) 27.95KB 10.04KB
auth (AuthContext.js) 0.31KB 0.24KB
auth (AuthGuard.js) 2.07KB 1.00KB
auth (AuthProvider.js) 40.22KB 10.61KB
auth (AuthShell.js) 3.49KB 1.40KB
auth (ForgotPasswordForm.js) 12.21KB 3.45KB
auth (LoginForm.js) 18.15KB 5.40KB
auth (PreviewBanner.js) 0.90KB 0.50KB
auth (RegisterForm.js) 6.72KB 2.24KB
auth (SocialSignInButtons.js) 9.70KB 3.93KB
auth (UserMenu.js) 3.39KB 1.21KB
auth (auth-gate-events.js) 1.29KB 0.66KB
auth (authStyles.js) 5.04KB 1.72KB
auth (createAuthClient.js) 40.70KB 10.94KB
auth (createAuthenticatedFetch.js) 8.54KB 3.46KB
auth (index.js) 3.63KB 1.64KB
auth (invitation-status.js) 1.22KB 0.70KB
auth (org-roles.js) 6.66KB 2.78KB
auth (phone-identifier.js) 1.11KB 0.66KB
auth (types.js) 0.59KB 0.35KB
auth (useAuth.js) 5.30KB 1.02KB
auth (useWorkspaceAdminStatus.js) 11.08KB 4.58KB
collaboration (CommentThread.js) 27.11KB 7.97KB
collaboration (LiveCursors.js) 3.17KB 1.27KB
collaboration (PresenceAvatars.js) 6.28KB 2.60KB
collaboration (PresenceProvider.js) 2.79KB 1.13KB
collaboration (index.js) 1.68KB 0.73KB
collaboration (useCollaborationTranslation.js) 6.50KB 2.52KB
collaboration (useCommentSearch.js) 1.98KB 0.88KB
collaboration (useConflictResolution.js) 7.75KB 1.86KB
collaboration (useMentionNotifications.js) 1.81KB 0.68KB
collaboration (usePresence.js) 6.33KB 1.84KB
collaboration (useRealtimeSubscription.js) 7.91KB 2.01KB
components (index.js) 574.72KB 137.94KB
core (index.js) 10.00KB 3.96KB
create-plugin (index.js) 27.94KB 9.51KB
data-objectstack (index.js) 232.57KB 64.51KB
fields (index.js) 262.75KB 66.62KB
i18n (LocalizationContext.js) 1.76KB 0.96KB
i18n (builtinAggregateLabels.js) 0.86KB 0.49KB
i18n (currency.js) 2.59KB 1.22KB
i18n (fallbackInterpolation.js) 6.25KB 2.77KB
i18n (i18n.js) 8.87KB 3.64KB
i18n (index.js) 5.24KB 2.27KB
i18n (pickLocalized.js) 9.86KB 3.95KB
i18n (provider.js) 39.35KB 12.88KB
i18n (translateFn.js) 0.20KB 0.18KB
i18n (useDisplayLocale.js) 3.52KB 1.76KB
i18n (useObjectLabel.js) 35.66KB 9.49KB
i18n (useSafeTranslation.js) 7.14KB 2.92KB
layout (index.js) 41.18KB 11.71KB
mobile (MobileProvider.js) 0.92KB 0.49KB
mobile (ResponsiveContainer.js) 0.94KB 0.38KB
mobile (breakpoints.js) 1.51KB 0.70KB
mobile (createOfflineDataSource.js) 5.61KB 1.75KB
mobile (index.js) 1.99KB 0.87KB
mobile (offlineQueue.js) 3.91KB 1.35KB
mobile (pwa.js) 0.97KB 0.49KB
mobile (serviceWorker.js) 1.48KB 0.62KB
mobile (serviceWorkerSource.js) 3.41KB 1.48KB
mobile (useBreakpoint.js) 1.54KB 0.65KB
mobile (useGesture.js) 6.96KB 1.98KB
mobile (useOfflineSync.js) 1.99KB 0.72KB
mobile (usePullToRefresh.js) 6.62KB 2.45KB
mobile (useResponsive.js) 0.72KB 0.42KB
mobile (useSpecGesture.js) 5.52KB 2.10KB
mobile (useTouchTarget.js) 1.01KB 0.54KB
permissions (MePermissionsProvider.js) 13.86KB 5.00KB
permissions (PermissionContext.js) 0.31KB 0.25KB
permissions (PermissionGuard.js) 0.89KB 0.45KB
permissions (PermissionProvider.js) 6.52KB 2.26KB
permissions (discardProofCache.js) 1.04KB 0.55KB
permissions (evaluator.js) 8.33KB 3.07KB
permissions (index.js) 0.93KB 0.41KB
permissions (store.js) 0.91KB 0.42KB
permissions (useFieldPermissions.js) 1.28KB 0.53KB
permissions (usePermissions.js) 4.83KB 2.27KB
plugin-ai (index.js) 16.04KB 3.92KB
plugin-calendar (index.js) 53.17KB 15.46KB
plugin-charts (index.js) 84.26KB 23.05KB
plugin-chatbot (index.js) 198.22KB 46.97KB
plugin-dashboard (index.js) 143.58KB 38.81KB
plugin-designer (index.js) 231.41KB 48.84KB
plugin-detail (index.js) 247.21KB 65.03KB
plugin-editor (index.js) 2.23KB 1.05KB
plugin-form (index.js) 177.09KB 45.89KB
plugin-gantt (index.js) 179.16KB 45.06KB
plugin-grid (index.js) 238.48KB 65.51KB
plugin-kanban (index.js) 52.17KB 16.37KB
plugin-list (index.js) 116.72KB 29.10KB
plugin-map (index.js) 25.60KB 8.62KB
plugin-markdown (index.js) 13.88KB 4.80KB
plugin-report (index.js) 44.12KB 12.29KB
plugin-timeline (index.js) 38.80KB 11.71KB
plugin-tree (index.js) 14.51KB 5.15KB
plugin-view (index.js) 90.23KB 22.73KB
providers (DataSourceProvider.js) 0.75KB 0.39KB
providers (MetadataProvider.js) 1.37KB 0.59KB
providers (ThemeProvider.js) 1.90KB 0.85KB
providers (UploadProvider.js) 11.81KB 3.58KB
providers (index.js) 0.45KB 0.23KB
providers (types.js) 0.01KB 0.04KB
react-runtime (index.js) 5.62KB 2.34KB
react (LazyPluginLoader.js) 4.47KB 1.63KB
react (SchemaRenderer.js) 120.63KB 39.56KB
react (data-invalidation.js) 5.05KB 2.08KB
react (index.js) 4.50KB 2.06KB
react (schema-input.js) 4.31KB 2.07KB
react (spec-input.js) 0.20KB 0.18KB
sdui-parser (body-dialect.js) 4.50KB 1.99KB
sdui-parser (codegen.js) 9.45KB 3.76KB
sdui-parser (dashboard-widget-options.js) 3.08KB 1.30KB
sdui-parser (index.js) 7.30KB 3.12KB
sdui-parser (input-type.js) 2.84KB 1.40KB
sdui-parser (parse.js) 25.28KB 7.80KB
sdui-parser (provenance.js) 3.84KB 1.90KB
sdui-parser (types.js) 0.28KB 0.23KB
sdui-parser (validate.js) 23.87KB 7.83KB
types (ai.js) 4.39KB 2.17KB
types (api-types.js) 0.20KB 0.18KB
types (app.js) 4.12KB 1.61KB
types (authoring-nodes.js) 0.20KB 0.19KB
types (base.js) 0.20KB 0.18KB
types (blocks.js) 0.20KB 0.18KB
types (cloud.js) 0.20KB 0.18KB
types (complex.js) 4.44KB 2.07KB
types (crud.js) 0.20KB 0.18KB
types (dashboard-filter-alias.js) 6.23KB 2.74KB
types (dashboard-widget-layout.js) 2.06KB 0.96KB
types (data-display.js) 3.75KB 1.85KB
types (data-protocol.js) 0.20KB 0.19KB
types (data.js) 0.20KB 0.18KB
types (designer.js) 1.85KB 0.85KB
types (disclosure.js) 0.20KB 0.18KB
types (error-code.js) 1.54KB 0.88KB
types (expression.js) 0.20KB 0.18KB
types (feedback.js) 0.20KB 0.18KB
types (field-types.js) 1.13KB 0.65KB
types (form.js) 0.20KB 0.18KB
types (http-inflight.js) 8.87KB 3.73KB
types (http-retry.js) 4.32KB 2.02KB
types (icon-key-migration.js) 4.26KB 1.63KB
types (index.js) 5.78KB 2.70KB
types (layout.js) 0.20KB 0.18KB
types (managed-by.js) 0.19KB 0.18KB
types (mobile.js) 5.00KB 2.39KB
types (navigation.js) 0.20KB 0.18KB
types (node-slots.js) 7.18KB 2.34KB
types (objectql.js) 0.20KB 0.18KB
types (overlay.js) 0.20KB 0.18KB
types (permissions.js) 2.52KB 1.31KB
types (plugin-scope.js) 0.20KB 0.18KB
types (record-components.js) 0.20KB 0.19KB
types (record-semantics.js) 1.28KB 0.67KB
types (registry.js) 0.20KB 0.18KB
types (reports.js) 0.20KB 0.18KB
types (select-option.js) 0.20KB 0.19KB
types (spec-report.js) 4.99KB 1.96KB
types (spec-ui-namespace.js) 0.20KB 0.19KB
types (strict-authoring-face.js) 19.93KB 7.25KB
types (system-fields.js) 3.33KB 1.54KB
types (theme.js) 6.28KB 2.87KB
types (ui-action.js) 8.11KB 3.32KB
types (views.js) 0.20KB 0.18KB
types (widget.js) 0.20KB 0.18KB

Size Limits

  • ✅ Core packages should be < 50KB gzipped
  • ✅ Component packages should be < 100KB gzipped
  • ⚠️ Plugin packages should be < 150KB gzipped

@objectstack-fleet

Copy link
Copy Markdown
Contributor Author

ACCEPT: PR objectui#11661, head 2f7d398. It lands when every check on this head is green

domain:ui execution seat 1 @ objectui · session_015W8GBu6sBiqus2L2xjMsAL (os-steve) · 2026-10-05T22:51Z. Reviewed against GitHub and origin/main, not against the report's prose (reports 6002688312 and 6004784629 on objectui#11660).

  • Shape.
    • The PR is a draft against main, and its assignee is os-steve.
    • Its first line is Fixes #11660, the only line with a closing keyword next to an issue number. Clause-②: no is on its own line.
    • The diff is 6 files, +561/−5, inside the claim's surface: flow-node-config.ts, FlowNodeInspector.tsx, three pin files and the changeset. FlowNodeConfigField.tsx and json-schema-to-fields.ts are untouched.
    • objectui check-governed-queue-guard.mjs --test answers NOT GOVERNED over all 6 paths.
    • Every commit carries the model-free trailer pair.
  • The ruling it implements. The direction is triage's amended 6003792818, after the seat's pm:retriage (6002793865). It keeps the maintainer ruling on objectui#6499 (Option C) as ruled, and it supersedes the first grade 6000059097, which would have deleted entered values.
    • Patch round 1 (2f7d398) reverts round 0's "switching off removes the block" branch in setField.
    • The write is now the ordinary setAtPath, plus one rule: a write that would leave the bare { enabled: false } stub removes the block instead.
  • Rule by rule, read in the diff and the pins. Every case runs on both the offline table and getApprovalNodeConfigJsonSchema(), the engine's published configSchema.
    • Rule 1: no block reads off. readFieldValue sits under both the control value and controllerAdmits. A block that omits enabled still reads on (the objectui#6620 pin), and rendering writes nothing.
    • Rule 2: switching on writes { enabled: true } alone, and switching back off with nothing entered leaves no escalation key. An emptied config is pruned.
    • Rule 3: switching off a full block writes enabled: false, with every value and every sibling config key byte-identical.
    • Rule 4: clearing the last retained value removes the block, including on a block rule 3 wrote.
    • Rule 5: { enabled: true, action: 'reassign' } becomes { enabled: false, action: 'reassign' }. No timeoutHours is filled in, and the block stays refused at escalation.timeoutHours before and after.
    • Round trip: escalation on with every value parses through ApprovalNodeConfigSchema. Off, it keeps every value beside enabled: false and parses. The seat measured the same shapes on the installed spec 17.6.0: { enabled: false, timeoutHours: 24 } parses, and the bare { enabled: false } fails at escalation.timeoutHours.
    • "Entered values": the dev measured that no path writes an action or notifySubmitter default, so the rule never counts a value nobody typed.
  • Ablation.
    • The no-values branch disabled turns 9 red.
    • The off-with-values branch mutated to delete turns 10 red.
    • The read half ablated in round 0 turned 6 red.
    • Restore proven each time.
  • Clause-②: no, measured. Walking dist/index.d.ts reaches 164 declaration files; the control inspector-registry.d.ts is among them. flow-node-config.d.ts, FlowNodeInspector.d.ts and FlowNodeConfigField.d.ts are not, so the new helpers are not public surface.
  • Live (objectstack main cab63967, showcase, engine descriptors on screen).
    • Rule 3 on a published full block: autosave 200 with every value kept. The node reopens off with 4 retained notices, and after publish a run reaches the approval gate and pauses.
    • Rule 2: switching off over nothing entered sends no escalation key.
    • Rule 5: 422 at the same field before and after the switch, with no hours filled in.
    • Before the change (round 0, objectstack 866683f9): a node with no block drew the switch on, and switching off sent the refused stub (422).
  • Changeset, sentence by sentence. It is @object-ui/app-shell: patch. The schema fact ({ enabled: false, timeoutHours: N } and no block both conform; the bare stub does not), the four behaviour bullets, the both-sources line, the no-rewrite-on-open line and the Clause-②: no line all match the diff.

Left as noted, not filed (both from the report):

Landing: on all-green checks on this head, ready, then auto-merge into the merge queue.


Generated by Claude Code

@objectstack-fleet
objectstack-fleet Bot marked this pull request as ready for review October 5, 2026 23:03
@objectstack-fleet
objectstack-fleet Bot enabled auto-merge October 5, 2026 23:03
@objectstack-fleet
objectstack-fleet Bot added this pull request to the merge queue Oct 5, 2026
Merged via the queue into main with commit 9f3ed7b Oct 5, 2026
45 checks passed
@objectstack-fleet
objectstack-fleet Bot deleted the claude/issue-11660-escalation-off-removes-block branch October 5, 2026 23:18
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

2 participants