✔ W1: two processes acquire the same pair at once; exactly one claim (349.326694ms)
✔ W1: two writers publish the same revision at once: one wins, the other gets null, the winner's record stays (35.195899ms)
✔ W1: a revision name appears only after its bytes are synced; before that, only a temp file exists (22.555716ms)
✔ W2: acquire while a claim is reserved or active refuses already-active (417.46445ms)
✔ W3: acquire while stopping, uncertain, or stopped without proof refuses unsafe-replacement (759.910184ms)
✔ W4: same session with another seat tuple, and the reverse, both refuse; a loser on the seat key closes it no-unit (255.490138ms)
✔ W4: a hard link of one session under another seat is the same session: the second controller refuses already-active and launches nothing (215.13466ms)
✔ W4: a copy of one session under another seat is the same session: the second controller refuses already-active and launches nothing (220.343429ms)
✔ W4: a session header ID that changes after construction refuses target; nothing is claimed or launched (3.861777ms)
✔ W5: SIGKILL between every publication barrier of acquire and transition; restart never finds two holders or a lost claim (10391.602554ms)
✔ W5: SIGKILL between every publication barrier of release; restart finishes or holds the release (29649.81262ms)
✔ W6: controller killed mid-turn while the engine lives; restart is uncertain, no launch, prompts refuse (261.6005ms)
✔ W12: a live owner paused with SIGSTOP; a second controller refuses already-active and changes nothing (147.298178ms)
✔ W13: crash after the engine spawns, before active; restart finds the live unit: uncertain, no second spawn, force stop only (386.547621ms)
✔ W14: crash after reservation, before the spawn marker: stopped with a no-unit observation; the pair is free (269.857317ms)
✔ W20: crash after the spawn marker, scope collected; uncertain in both runs, the marker is copied, no launch until a boot proof (336.910644ms)
✔ W15: crash between the two keys during release; restart finishes it under the same claim ID (108.022741ms)
✔ W7: recorded boot ID differs on the same machine: stopped with a boot proof; open tool calls become uncertain (196.514531ms)
✔ W8: resume after a proven stop with the same pins: new claim ID, generation +1, same conversation, branch and leaf (286.016907ms)
✔ W9: resume with a changed binary, argv digest, branch or leaf is refused and the claim is unchanged (839.509482ms)
✔ W11: the controller writes no session file; only the fake engine's own appends appear (199.043932ms)
✔ W16: a highest revision that won't parse holds the pair uncertain; the older stopped revision is not reused (94.744097ms)
✔ W17: a claim root copied from another host refuses foreign-host and promotes nothing (74.023836ms)
✔ G1: a session path or claim root under .pi/state, ~/.claude, the data root or a registration refuses at construction (4.36339ms)
✔ G2: a symlink inside the fixture root to a live session file is refused by the real-path check (1.118715ms)
✔ G3: a fixture path swapped for a live path after construction is refused at bind (2.293078ms)
✔ K1: force stop kills a tool child that called setsid; stopped with a verified proof (3320.69157ms)
✔ K2: K1 on the process-group fallback ends uncertain, never stopped (461.566521ms)
✔ K3: SIGTERM acknowledged while a member lives: stopping until the kill phase, never stopped from TERM (2759.720592ms)
✔ K4: two engines; force stop one; the other survives by independent observation (5025.410566ms)
✔ K5: a stop during a tool call leaves the effect uncertain, and it is shown (2513.765706ms)
✔ K12: a member forking in a loop: the freeze stops it, enumeration is complete, populated 0 after cgroup.kill (2593.319868ms)
✔ K13: a member writing its pid into another cgroup is refused by the namespace; the kill is complete (2656.485351ms)
✔ K15: the shim gone, engine/cgroup.events unreadable, or the engine cgroup missing: evidence unavailable, not empty; uncertain (4973.943053ms)
✔ K10: controller killed between the TERM and kill phases: restart checks the invocation ID and re-runs from TERM for the same stop (759.14089ms)
✔ K11: controller killed after the confirmation is recorded, before TERM: restart checks the invocation ID and re-runs from TERM for the same stop (580.905235ms)
✔ K14: a unit with the recorded name but another invocation ID: evidence unavailable, no signals, uncertain (424.841658ms)
✔ K6: recover without proof, without confirmation, or with changed pins is refused (739.764604ms)
✔ K7: recover after proof, then launch: new claim and execution, generation +1, same leaf; the cancelled prompt is not replayed (354.115242ms)
✔ K8: an engine that loads another leaf on resume is refused before admission; it stays claimed until a proven stop (569.666002ms)
✔ K9: an interrupt that never settles stays uncertain; force stop stays available; takeover is refused while fenced (3417.469095ms)
✔ K16: a claim from another machine ID refuses foreign-host; no boot proof is issued (22.249903ms)
✔ K17: two launcher calls with one eligibility record: one launch, the other refuses, no second engine (384.239743ms)
✔ K18: the leaf changes after eligibility: launch refused; the reservation stays until released with proof (337.899051ms)
✔ K19: a scope launched with only the engine environment still reaches the user manager; the engine sees no other names (62.152162ms)
✔ S1: `/goal x`, with leading spaces or a tab, refuses text-policy at admission; zero engine bytes (394.158946ms)
✔ S2: every prefix pinned Pi interprets is refused, from the list the code uses; the rest reach the engine exactly (229.401531ms)
✔ S3: `/goal` on the second line is pinned from the source: Pi checks only index 0, so it is admitted and sent exactly (220.558237ms)
✖ S4: a `/` left in the composer is cleared when control transfers and returns; the next submit sends only the new text (588.583704ms)
✖ S5: an observer terminal gets a paste then Enter, as send-message.sh does: not admitted: controller, nothing sent (203.610708ms)
✔ S6: a mediated-shaped registration (no tmux) passed to the board's replyToRow: 409 no tmux session; exec never runs (0.509871ms)
✔ S7: ESC, bracketed-paste markers and U+2028/U+2029 travel as one JSON string; the engine receives the exact text in one record (210.129857ms)
✔ P3: a Pi confirm, select, input or editor dialog is shown disabled with a reason and never answered (318.592355ms)
✖ E1: send, ack, user, toolCall, toolResult, final answer: shown once, no refresh, draft and reading position kept (228.870252ms)
✔ E2: U+2028, U+2029 inside JSON strings and CRLF line ends each parse as one record, on the splitter and through the controller (219.053971ms)
✔ E3: a multipart final, two blocks, null request correlation and duplicate delivery (222.876779ms)
✔ E4: a page read after message_end but before its entry is persisted: marker at the seam, re-read after run-settled, each message once (227.31436ms)
✔ E4: a gap or a new epoch also reconciles; nothing is concatenated across a gap (11.00791ms)
✔ E5: an unknown native event gives no client event; evidence records its type and bytes; the terminal count goes up (220.066318ms)
✔ E6: a tool result delayed across a pause and a reconnect is reconciled without a manual refresh (243.465125ms)
✔ E7: the terminal renders the same stream as the library client, as observer and then as controller, and submits only as controller (275.856851ms)
✔ terminal: engine control characters are made visible; a lost connection refuses submit (220.394413ms)
✖ terminal: outcome unknown is shown as such, with no resend offer, and nothing is resent (0.467625ms)
✖ terminal: text after Enter in the same input chunk starts the next message; it never joins the one submitted (0.277144ms)
✖ terminal: a paste-start marker split right after its ESC still opens the paste; the Enter inside it never submits (0.53501ms)
✔ terminal: Ctrl-T then Enter in one chunk is judged after the takeover, as if typed one key at a time (Filbert F2, #1507) (0.477545ms)
✖ terminal: input held behind Ctrl-T waits for that takeover while an earlier action is still pending (Darkwing T1 on #1522) (10.195424ms)
✔ terminal: an action that throws still releases the input held behind it, in order, then rethrows (5.963015ms)
✔ terminal: after an action throws, later input still runs; input() puts the error in the status line (Filbert N1 on #1522) (0.407563ms)
✔ terminal: input() reports an error when it happens, so it never overwrites a later status; held input's promise doesn't carry the holder's error (Filbert N4 on #1522) (0.378982ms)
✔ terminal: invisible and bidi characters are made visible; head, status and notice lines stay one line (0.102465ms)
✔ every record these fixtures produced is a valid CHAT-01 record (E5: no record fails the schema) (219.699407ms)
✔ H1: two takeovers with the same expected generation: one wins, +1; the other refuses generation (279.346116ms)
✔ H2: the old controller's prompt after a takeover commits is refused with zero engine bytes (321.84638ms)
✔ H3: a takeover while a prompt holds the dispatch lock: written under the old actor, or refused; never both (1197.806029ms)
✔ H4: self-takeover is refused (213.250629ms)
✔ H9: Interrupt racing a prompt's dispatch: before the write, dispatch-refused and no-turn; after, §3 rules (471.254671ms)
✔ H10: Interrupt and force stop together: one stop chain, force stop supersedes (1152.00961ms)
✔ H10: an overlap during the pause before the abort: no abort, the stop ends uncertain (251.38588ms)
✔ H10: a no-turn Interrupt lifts only its own fence; admission stays closed under force stop, overlap or revocation (705.40724ms)
✔ H11: the controller disconnects mid-turn: work continues, the claim is unchanged, control stays put (369.664002ms)
✔ H12: an exact retry after reconnecting to the same incarnation returns the same receipt; one dispatch (219.822517ms)
✔ H13: a retry with the same request ID and different text is refused (214.564396ms)
✔ H14: late stdout from the old engine after a replacement is dropped by incarnation, counted, never rendered (639.102842ms)
✔ H15: a revoked connection's command is refused; the revocation fence holds (310.819701ms)
✔ H16: a second controller for the same session refuses already-active; the first is untouched (228.542202ms)
✔ H10: a second force stop while the first escalation runs refuses fenced; one escalation, and the claim records only the first stop's phases (901.038649ms)
✔ a force stop whose fence throws leaves no escalation flag behind, so the next force stop runs (Darkwing F2, #1507) (405.416345ms)
✔ H17: a confirmation reused, answered from another connection, or used after the stop changed is refused (868.704509ms)
✔ H18: two prompts before any native output: the second refuses busy; one engine write (219.159547ms)
✔ H19: the pipe fails mid-line under a large prompt: delivery-unknown transport-unknown, poisoned, no later write (348.601131ms)
✔ H19: the link itself never writes again after an unknown outcome, whoever calls it (0.640556ms)
✔ H19: the controller dies mid-write of a large line: after restart the outcome is unknown and nothing is resent (660.301062ms)
✔ H20: the line is written but the ack is lost when the controller dies: orphan, outcome unknown, nothing resent (581.695977ms)
✔ H21: a retry of the exact request with the old token after a crash is stale-incarnation; no second write (773.576823ms)
✔ H22: after H21 and a valid recovery, a new request with the new token is admitted (3130.384165ms)
✔ H23: requests pending at a restart are not resent; each shows outcome unknown (673.561238ms)
✔ a plain conversation: catalogue row, one page, CHAT-01 records (7.667932ms)
✔ native entries map to blocks: tools, thinking, bash, notices, ids that do not fit (1.783514ms)
✔ F1: a malformed line is an unavailable part at its position, and reading continues (1.729456ms)
✔ F1: a missing parent stops the history with a notice that names the unreadable lines (2.551061ms)
✔ F1: an unreadable fork is never merged into another branch's history (1.114104ms)
✔ F1: a follow stays on its branch when the next entry's parent is unreadable (1.969484ms)
✔ F1: a file whose entries are all unreadable shows a notice per line (0.862926ms)
✔ F2: a truncated trailing line marks the view incomplete, not an error (1.36409ms)
✔ pagination: 100 parts, then the rest; parts concatenate to the whole branch (5.229195ms)
✔ F3: a replaced file (new inode) refuses old cursors with reconcile (7.362052ms)
✔ F4: a same-inode rewrite of the prefix refuses old cursors with reconcile (5.187847ms)
✔ F5: growth between pages keeps the epoch and the page stops at the pinned length (5.253518ms)
✔ F6: unknown, foreign and expired cursors refuse and leave the cursor usable (7.785625ms)
✔ F7: a symlinked file and a symlinked directory component are refused, never opened (9.043299ms)
✔ F8: a file swapped for a symlink after the catalogue is refused (2.880281ms)
✔ F9: registrations never add or redirect a root (1.637364ms)
✔ F10: a header cwd naming another project is refused (3.577543ms)
✔ F11: parentSession renders with a marker and the parent is never opened (13.243468ms)
✔ F12: two leaves: the default leaf is shown and the other branch reads alone (5.538872ms)
✔ F12: a follow refuses when an appended duplicate id changes the branch's earlier parts (2.767818ms)
✔ F12: a second root (Pi's resetLeaf) starts its own branch (1.462918ms)
✔ F13: compaction is a marker in place, then the retained content (0.878114ms)
✔ F14: long strings split into fragments and parts, reassemble exactly, and pages respect the byte cap (554.449948ms)
✔ fragments never cut a surrogate pair and keep an empty string (5.218644ms)
✔ F15: a Claude seat is an unsupported-harness placeholder whose directory is never read (1.552193ms)
✔ unknown conversations, empty files and non-Pi files refuse (2.454018ms)
✔ an unreadable file or root inside the roots is refused per row, not a failed catalogue (1.139676ms)
✔ a seat directory without search permission refuses that root, not the catalogue (2.091055ms)
✔ every page and cursor is a valid CHAT-01 record (796.018364ms)
✔ the engine pin holds for the installed package (1.943661ms)
✔ pinned Pi, sealed and without credentials, answers the controller's commands with the shapes the fake models (277.536368ms)
✔ sealed, pinned Pi ignores a trusted project's .pi resources; --approve past the seal would load them, and checkSeal refuses it (Filbert F2 on #1522) (602.476165ms)
✔ pinned Pi appends thinking_level_change at start when the branch lacks one, so the leaf moves (K8 then fails closed) (254.508983ms)
✔ N25: ordinary Interrupt reconciles; a non-empty queue_update in the window is O5 (715.093527ms)
✔ N1: an extension's follow-up queued after the fence is cleared before any abort; O5, Unknown (836.255359ms)
✔ N1: a follow-up queued before the fence is O5 at once; the Interrupt refuses fenced (249.134536ms)
✔ N2: with abort first, the fake runs the external item (the ordering guard has teeth) (21.11236ms)
✔ N3: the fence lands in preflight, preflight errors, no run: failed, No run, uncertain (383.522562ms)
✔ N4: the ack arrives after the first abort and a run starts: clear and abort again; Interrupted (219.237408ms)
✔ N5: an input handler takes the prompt: ack, no run, delivery-unknown handled-without-run (314.142913ms)
✔ N6: an extension queues between clear_queue and abort: O5 and O6, Unknown (511.255907ms)
✔ N7: clear_queue times out: no abort, nativeQueue unknown, force stop still ends it (1934.70553ms)
✔ N7: clear_queue answers an error: no abort, nativeQueue unknown, the link not poisoned (203.540315ms)
✔ N8: an extension prompt starts a run during Mosaic preflight; the losing settle is O3 (312.744105ms)
✔ N9: a run that started before the fence and ends aborted: failed interrupted, Interrupted (232.452897ms)
✔ N9: decision 34: a run that ends aborted with no stop in progress: aborted-without-stop, uncertain, outcome unknown (236.963845ms)
✔ N9: an aborted that lands after the fence but before any abort is written: aborted-without-stop, Unknown (385.391097ms)
✔ N10: fake conformance (32.084229ms)
✔ N11: the run fails before any user message_start: delivery-unknown ack-without-start, never failed (485.374587ms)
✔ N12: input that starts a run after the final empty clear is O1 and not part of the stop's proof (310.486078ms)
✔ N13: agent_start with no slot held is O1; a later prompt refuses with zero engine bytes (286.618921ms)
✔ N14: the run completes while clear_queue is in flight: finished, Completed first, uncertain (405.383504ms)
✔ N14: the run completes after the abort is written, before Pi applies it: finished, never relabelled (410.27868ms)
✔ N15: the fence lands in preflight, then an input handler takes it: handled-without-run, No run (409.718676ms)
✔ N16: Interrupt with no slot and no run refuses no-turn: no stop, no bytes, admission open (232.572275ms)
✔ N17: the run fails on its own during the exchange: failed, Failed on its own (391.174062ms)
✔ N18: no final assistant message_end, or a lost line: working stays working; before working, transport-unknown (771.295477ms)
✔ N19: a losing extension prompt settles inside the Mosaic run before its user message: O3, run-overlap (615.528123ms)
✔ N20: an extension triggerTurn during Mosaic preflight starts first; while streaming it queues with no signal (605.47142ms)
✔ N21: a losing settle after the receipt settled finished is O2; the receipt stays finished (249.059677ms)
✔ N22: an agent-level custom message is dropped by the clear with no signal; evidence names the seal (184.407848ms)
✔ N23: a nextTurn message survives clear and abort and attaches to the next prompt, with no signal (235.350706ms)
✔ N24: the seal is an allow-list: --extension, a missing --no-* flag, a second --mode or --session, a session or output flag, or a stray word refuses unsealed-engine; no engine starts (250.279525ms)
✔ N24b: the seal covers the engine command and environment: config can't name either, the env is built from names, and a mutated command is refused at bind (217.941414ms)
ℹ tests 161
ℹ suites 0
ℹ pass 154
ℹ fail 7
ℹ cancelled 0
ℹ skipped 0
ℹ todo 0
ℹ duration_ms 47469.552169

✖ failing tests:

test at packages/conversation/tests/flows.test.mjs:129:1
✖ S4: a `/` left in the composer is cleared when control transfers and returns; the next submit sends only the new text (588.583704ms)
  AssertionError [ERR_ASSERTION]: Expected values to be strictly equal:
  
  '/null' !== '/'
  
      at TestContext.<anonymous> (file:///home/jwoltje/darkwing-scratch/r40c/wt/packages/conversation/tests/flows.test.mjs:135:12)
      at process.processTicksAndRejections (node:internal/process/task_queues:104:5)
      at async Test.run (node:internal/test_runner/test:1409:7)
      at async Test.processPendingSubtests (node:internal/test_runner/test:974:7) {
    generatedMessage: true,
    code: 'ERR_ASSERTION',
    actual: '/null',
    expected: '/',
    operator: 'strictEqual',
    diff: 'simple'
  }

test at packages/conversation/tests/flows.test.mjs:156:1
✖ S5: an observer terminal gets a paste then Enter, as send-message.sh does: not admitted: controller, nothing sent (203.610708ms)
  AssertionError [ERR_ASSERTION]: a paste is literal and never submits by itself
  + actual - expected
  
  + 'run the deploy\n/goal xnull'
  - 'run the deploy\n/goal x'
                            ^
  
      at TestContext.<anonymous> (file:///home/jwoltje/darkwing-scratch/r40c/wt/packages/conversation/tests/flows.test.mjs:169:12)
      at process.processTicksAndRejections (node:internal/process/task_queues:104:5)
      at async Test.run (node:internal/test_runner/test:1409:7)
      at async Test.processPendingSubtests (node:internal/test_runner/test:974:7) {
    generatedMessage: false,
    code: 'ERR_ASSERTION',
    actual: 'run the deploy\n/goal xnull',
    expected: 'run the deploy\n/goal x',
    operator: 'strictEqual',
    diff: 'simple'
  }

test at packages/conversation/tests/flows.test.mjs:243:1
✖ E1: send, ack, user, toolCall, toolResult, final answer: shown once, no refresh, draft and reading position kept (228.870252ms)
  AssertionError [ERR_ASSERTION]: the draft is kept
  + actual - expected
  
  + 'half-typed draftnull'
  - 'half-typed draft'
                     ^
  
      at TestContext.<anonymous> (file:///home/jwoltje/darkwing-scratch/r40c/wt/packages/conversation/tests/flows.test.mjs:262:12)
      at async Test.run (node:internal/test_runner/test:1409:7)
      at async Test.processPendingSubtests (node:internal/test_runner/test:974:7) {
    generatedMessage: false,
    code: 'ERR_ASSERTION',
    actual: 'half-typed draftnull',
    expected: 'half-typed draft',
    operator: 'strictEqual',
    diff: 'simple'
  }

test at packages/conversation/tests/flows.test.mjs:522:1
✖ terminal: outcome unknown is shown as such, with no resend offer, and nothing is resent (0.467625ms)
  AssertionError [ERR_ASSERTION]: an empty Enter sends nothing; nothing is resent
  
  2 !== 1
  
      at TestContext.<anonymous> (file:///home/jwoltje/darkwing-scratch/r40c/wt/packages/conversation/tests/flows.test.mjs:542:10)
      at process.processTicksAndRejections (node:internal/process/task_queues:104:5)
      at async Test.run (node:internal/test_runner/test:1409:7)
      at async Test.processPendingSubtests (node:internal/test_runner/test:974:7) {
    generatedMessage: false,
    code: 'ERR_ASSERTION',
    actual: 2,
    expected: 1,
    operator: 'strictEqual',
    diff: 'simple'
  }

test at packages/conversation/tests/flows.test.mjs:559:1
✖ terminal: text after Enter in the same input chunk starts the next message; it never joins the one submitted (0.277144ms)
  AssertionError [ERR_ASSERTION]: Expected values to be strictly equal:
  
  'null' !== ''
  
      at TestContext.<anonymous> (file:///home/jwoltje/darkwing-scratch/r40c/wt/packages/conversation/tests/flows.test.mjs:565:12)
      at process.processTicksAndRejections (node:internal/process/task_queues:104:5)
      at async Test.run (node:internal/test_runner/test:1409:7)
      at async Test.processPendingSubtests (node:internal/test_runner/test:974:7) {
    generatedMessage: true,
    code: 'ERR_ASSERTION',
    actual: 'null',
    expected: '',
    operator: 'strictEqual',
    diff: 'simple'
  }

test at packages/conversation/tests/flows.test.mjs:576:1
✖ terminal: a paste-start marker split right after its ESC still opens the paste; the Enter inside it never submits (0.53501ms)
  AssertionError [ERR_ASSERTION]: cut 1: nothing sent
  + actual - expected
  
  + [
  +   'ull[200~a'
  + ]
  - []
  
      at TestContext.<anonymous> (file:///home/jwoltje/darkwing-scratch/r40c/wt/packages/conversation/tests/flows.test.mjs:583:12)
      at process.processTicksAndRejections (node:internal/process/task_queues:104:5)
      at async Test.run (node:internal/test_runner/test:1409:7)
      at async Test.processPendingSubtests (node:internal/test_runner/test:974:7) {
    generatedMessage: false,
    code: 'ERR_ASSERTION',
    actual: [ 'ull[200~a' ],
    expected: [],
    operator: 'deepStrictEqual',
    diff: 'simple'
  }

test at packages/conversation/tests/flows.test.mjs:680:1
✖ terminal: input held behind Ctrl-T waits for that takeover while an earlier action is still pending (Darkwing T1 on #1522) (10.195424ms)
  AssertionError [ERR_ASSERTION]: ["\u0007","\u0014","hi\r"]: the text is still held
      at TestContext.<anonymous> (file:///home/jwoltje/darkwing-scratch/r40c/wt/packages/conversation/tests/flows.test.mjs:704:12)
      at async Test.run (node:internal/test_runner/test:1409:7)
      at async Test.processPendingSubtests (node:internal/test_runner/test:974:7) {
    generatedMessage: false,
    code: 'ERR_ASSERTION',
    actual: null,
    expected: null,
    operator: 'notStrictEqual',
    diff: 'simple'
  }
