Unauthorized action
An agent asks to inspect or change a scope outside its explicit delegation. Soval withholds before protected state is resolved or disclosed.
request → delegation check → WITHHOLDGoverned lifecycle
Soval keeps the path understandable. Katra Forge keeps each transition exact: inquiry is not formation, approval is not execution, and a passing result is not release.

The hosted workroom currently guides five steps: frame, gather, develop, check, and hand off a review copy. The wider process below describes component responsibilities; formation, repository admission, and downstream execution are not connected to this workroom.
A human states an idea or desired outcome in natural language. No project is inferred.
Smusma preserves the deliberate submission, classification, scope, and intended outcome.
The system finds a related active inquiry, identifies ambiguity, or offers an explicit unrelated line.
One primary workstream binds to exact intent. Parallel work requires an explicit fork and reconciliation condition.
Evidence, assumptions, unknowns, requirements, risks, constraints, and material questions become traceable.
The human selects whether work should become a project or application. Selection still does not form it.
Identity, policy, repository, verified result, and lineage must all be valid, current, and attributable.
Sarek coordinates requirements, backlog, Evidence State, and proposed transitions without becoming the decision authority.
Deterministic inputs produce candidate PRD bytes, gaps, traceability, and a semantic diff for attributable human disposition.
Exact repository checks, admission, and independent readback bind the final PRD and implementation handoff.
WITHHOLD is not a dead end. It identifies the missing prerequisite and preserves a safe next action.
An agent asks to inspect or change a scope outside its explicit delegation. Soval withholds before protected state is resolved or disclosed.
request → delegation check → WITHHOLDA baseline, revision, approval, or provider observation has moved. The action stops, identifies drift, and requires refresh or reconciliation.
request → freshness check → refreshAn exact retry returns the prior result without creating a duplicate effect. The same command ID with changed meaning fails closed.
retry → semantic match → IDEMPOTENTThe interface keeps ten facts separate so a fluent conversation cannot visually impersonate a completed transition.
What was requested, the exact object affected, and its verified precondition.
What would change, what supports it, who may decide, and what remains unknown.
What actually happened, the returned evidence, and the independently verified result.
Human entry
The person should not need repository syntax, internal identifiers, or command vocabulary. Soval surfaces those mechanics only when they materially affect the action.
Agent entry
An agent carries attributable identity and delegated scope. It may analyze, draft, propose, verify, or execute only as separately permitted.
Generic “done” language hides meaningful differences. Soval uses explicit state names and their authority effect.
Prepared work with no accepted authority.
An effect safely stopped with an addressable reason.
A required binding no longer matches current state.
An attributable decision permits a specific effect.
The effect was attempted or completed; verification remains separate.
The actual result was independently read back.
The artifact entered the governing repository boundary.
Only used when a separate release decision and proof exist.