forked from mosaicstack/stack
rev-974 finished its RM-02 review and could not post it: pr-review.sh failed with 'Gitea token not found'. Verified — with MOSAIC_GIT_IDENTITY unset the token does not resolve; with it set it resolves. The token file was correct throughout. My own context reset wiped the seat's exported identity and my rehydration brief did not re-establish it. git config mosaic.gitIdentity is persistent and per-worktree; MOSAIC_GIT_IDENTITY is ephemeral and per-context. rev-974 works from ~/agent-work with no git-config fallback, so it had no warning and the loss surfaced only when it next needed a credential. Intersection of two banked findings, created by acting on one: D-31 prescribes rotation, D-11a requires identity coherence, and nothing said rotation is a credential-affecting operation. The fix for one failure introduced another. RM-34: rotation must re-establish AND verify seat identity before handing over work. RM-50: prefer the durable binding (mosaic.gitIdentity in the seat's repo) so identity survives a reset by construction. Interim: every rehydration brief re-exports identity. Co-Authored-By: Claude Opus 5 (1M context) <[email protected]>