> For the complete documentation index, see [llms.txt](https://nytshift.gitbook.io/nytshift-docs/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://nytshift.gitbook.io/nytshift-docs/evidence-and-handoff-records/release-manifest.md).

# Release manifest

Release: `nightshift-local-readiness-58`

Prepared: 2026-07-16

## Included

* Premium responsive landing page and multi-venue terminal.
* Customer-scoped PostgreSQL persistence for authenticated profile preferences and PAPER session/order/fill/position/PnL/risk/protection/audit history, plus HMAC-only Privy-verified venue-account ownership and idempotent strict Hyperliquid signer/portfolio-reconciliation projections for testnet/live orders, retained fills, token/builder fees, closed/unrealized PnL, equity/margin/exposure, positions/liquidation/leverage and funding. Checksummed advisory-locked migrations, optimistic revisions, archived reset history, replay-safe offline extension, immutable coverage observations and bounded divergent-state recovery remain fail-closed; raw provider identities, guest PAPER and isolated signer authority stay separate.
* Chart-native perpetual risk context with fresh venue mark/oracle-or-index, basis, funding and open-interest evidence; exact inspected-position entry/liquidation lines and side-correct distance; and fail-closed stale, partial and ambiguous states with no inferred liquidation price.
* Chart-native account margin authority with exact Hyperliquid DEX, Arcus account and complete Lighter type-0 account scope; venue-labeled equity, available collateral, margin usage/utilization, capital buffer and exact-position leverage/mode/notional/unrealized PnL; and explicit unavailable, partial and stale states with no inferred leverage or capital.
* Chart-native carry and realized-performance authority with exact venue/market identity, bounded Hyperliquid and Arcus recent closed-PnL windows, exact-position funding/carry, direct Lighter position performance and independent partial/unavailable/stale states with no lifetime overclaim or partial aggregation.
* Chart-native funding-history and liquidation context with exact venue/symbol snapshots, deduplicated observed-rate statistics, no summed/annualized carry, a strict bounded Lighter venue-tagged liquidation/deleverage tape and explicit non-inference boundaries for Hyperliquid and Arcus.
* Live Arcus mainnet perpetual discovery, paginated history, books, REST-plus-WebSocket recent-trade tape, funding, public account reads and Robinhood Chain transfer reconciliation.
* Connected Arcus no-send preflight with live market/book/account/position/compliance re-read, strict decimal tick/quantum normalization, session-aware margin/exposure evidence and a non-promotable zero-execution response.
* Arcus public account lifecycle reconciliation across open-order/order-history/fill REST snapshots and exact address-scoped `orders`/`userFills` WebSocket updates, with duplicate suppression, fail-closed order sequence gaps and snapshot-only recovery.
* Disabled-by-default Arcus protected place/cancel boundary with operator authentication, exact ten-second reviews, live portfolio/rate rechecks, Ed25519 `ordersign` payloads, durable idempotency, ACK-only responses, unknown-outcome reconciliation and explicit testnet/mainnet release gates.
* Kill-switch-only Arcus account-wide emergency cancel with bounded live-scope review, domain-separated one-use confirmation, exact legacy scheme-2 signing, independent durable idempotency and zero-open-order reconciliation; asynchronous ACK never means complete.
* Durable Arcus reconciliation fail-safe with review-bound one-cancel authority, persistence before place, atomic no-retry automatic cancel on unknown lifecycle state, signer-owned incident health and terminal-state-only entry unlock.
* Signer-owned Arcus execution alert delivery with transactional durable outbox transitions, secret-free envelopes, stable HMAC-authenticated idempotency IDs, bounded leased retry, overflow fail-close, aggregate health and an ordinary-execution gate independent from emergency cancel-all.
* Application-identified execution-store schema v8 with exclusive transactional migrations, exact history/table/column checks, SQLite integrity attestation, schema-v6 row preservation, distinct durable leverage/dead-man action idempotency, exact take-profit/stop-loss bracket-leg scope, account/network-bound dead-man schedule plus tracked-CLOID evidence, exact rehearsal-account binding with legacy unbound-proof invalidation, future/foreign-schema refusal, WAL enforcement, authenticated terminal health, and an independently exact-v8 BFF gate for fail-closed ordinary plus emergency authority.
* Dedicated Hyperliquid signer doctor and loopback supervisor with absolute file-only API-wallet loading, master-key/Arcus refusal, explicit hard-$12-capped mainnet opt-in, zero-network lazy-SDK startup, exact network-bound authenticated schema-v8/WAL/eligibility/dead-man health, shared-store exclusion, bounded child recovery, clean stop and fingerprint-only process evidence; no key registration, funding, rehearsal or order authority is included.
* Separate sensitive Arcus signer-store snapshots with SQLite point-in-time copying, exact schema/fingerprint/integrity attestation, SHA-256 manifests, runtime-wide mutual exclusion, bounded verified retention, guarded restore, prior database/WAL/SHM preservation, and rollback-failure evidence retention.
* Operator-visible Arcus signer audit with pre-token review-verdict persistence, venue-filtered signer reads, exact account/session scope, strict detail-free BFF projection, malformed-event fail-close, and explicit separation from the public funding ledger.
* Fresh server-owned spans plus review-owned durable execution-flow roots propagated through signed tickets and Arcus/Hyperliquid signer audit; exact CLOID/client-ID rejoin for later cancel and reconciliation; browser lineage rejection; bounded secret-free schema-v3 retention; exact venue-specific audit projection; and an authenticated 24-hour outcome/p95/feed-age/divergence dashboard.
* Deterministic JSON Schema Draft 2020-12 and OpenAPI 3.1.1 development/signer artifacts with immutable named-v1 and operation-boundary compatibility enforcement, committed drift checks, TypeScript/Python signer parity, strict extra-field refusal and exact decimal strings for both venue signer transports.
* Separately versioned anonymous public-market OpenAPI with strict pre-serialization catalog/candle/book/trade/funding/liquidation/health validation, immutable response/header boundaries, normalized cross-venue DTOs and secret-free fail-closed producer handling.
* Separately versioned anonymous public-account OpenAPI with strict pre-serialization Arcus/Lighter/Hyperliquid validation, bounded privacy-reduced exact-address DTOs, immutable response/header boundaries and address-free contract-violation telemetry.
* Separately versioned anonymous public Robinhood Chain readiness OpenAPI for chain state, provider topology/health/incidents and aggregate activity health, with strict pre-serialization validation, immutable response/header boundaries, public-RPC non-promotion and endpoint/path/wallet-free failure handling.
* Separately versioned anonymous public Robinhood Chain address/asset OpenAPI for reviewed prices, canonical holdings, bounded wallet activity and the 25-asset radar, with exact-decimal balances, archive/gap invariants, immutable response/header boundaries and address-free failure telemetry.
* Source-attributed Robinhood Chain bridge evidence under that public contract, with one canonical Ethereum/RHC route, five provider-owned partner families, canonical timing plus L1-claim requirements, 16 official bridge contracts, a dual-page drift audit and zero quote/signing/execution authority.
* Rolling protected-control-plane SLO evaluation with exact schema-v1/v2-to-v3 migration, durable fixed-code alert/recovery incidents, restart-safe leased HMAC delivery, secret-free terminal/health evidence and a Hyperliquid-mainnet-only alerting gate.
* Strict operator-imported advisory proposals with bounded validity, identity-only SHA-256 lifecycle persistence, authenticated import/invalidation, optional exact Hyperliquid symbol/side reservation, pre-signer single-use consumption, aggregate health/observability and strict checkpoint backup/restore; no model, signer or AEGIS-bypass authority.
* Versioned Pro agent proposal API with one-time opaque credentials, HMAC-digest-only storage, maximum-24-hour expiry, exact symbol/stance/notional/validity/hourly mandates, durable attempt quotas/audit, loopback-or-TLS transport, invalid-auth throttling, individual plus atomic global revocation and strict rejection from the private ledger and all execution routes.
* Provider-neutral Agent Pro licensing with compact Ed25519-signed terms, offline create-once issuer keys, public-key-only runtime verification, per-license active-credential limits, atomic shared UTC-month attempt metering, authenticated privacy-reduced usage export, schema-v1 checkpoint migration and explicit separation from payment collection or signer authority.
* Policy-bound Hyperliquid-testnet Agent Pro automation with maximum-24-hour operator policies, P-256 DPoP sender constraint, durable proof/request replay protection, live AEGIS/account/market/builder checks, deterministic at-most-once signer claims, reconcile-only ambiguity handling and immediate independent revocation; no cancellation, funding, wallet, direct-signer or mainnet agent authority.
* Hardened Node Agent Pro client and no-secret CLI with create-once external P-256 identity files, environment-only token input, exact loopback targeting, redirect/cookie/referrer refusal, fresh verifiable DPoP, strict schema/byte/timeout bounds and submit/status-only commands.
* Additive signed Agent Pro automation entitlement with proposal-only v1 compatibility, explicit monthly automation allowance, atomic idempotent request metering, pre-signer overage lock, private aggregate operator export, schema-v1 checkpoint migration and strict backup/health/terminal evidence.
* Authenticated commercial control cockpit with an exact private signer aggregate of retained builder-fee fills by token and UTC month, strict no-identity BFF projection, explicit bounded-local/archive-not-ingested/claim-unreconciled coverage, unpriced premium usage and zero recognized payment revenue while collection remains unconfigured.
* Operator-authenticated Hyperliquid builder reward state with strict referral/spot-token normalization, exact per-token decimals, token-zero parity, identity-free content hashing, combined-claim labeling, no archive ingestion and no claim execution capability.
* Bounded private live-feed soak evidence across safe runtime, aggregate venue/history, Hyperliquid/Arcus/Lighter catalogs and Robinhood Chain head/topology probes, with SHA-256 sample chaining, controlled child-generation restart proof, post-restart convergence, fixed-code redaction and an explicit 24-hour plus managed-topology qualification boundary.
* Shared strict Hyperliquid perpetual metadata authority for anonymous discovery, portfolio reconciliation and execution review, with official primary/HIP-3 asset IDs, sparse DEX-index preservation, exact DEX collateral-token identity, size/price precision, current margin modes, whole-catalog fail-close and aggregate schema-drift health.
* Position-safe AEGIS policy with fresh long/short reduce-only direction and maximum-size proof, machine-epsilon-safe venue lot normalization, a 20%-of-equity BTC/ETH/SOL/HYPE correlated-exposure cap, strict dynamic-policy validation and deterministic property/integration coverage.
* Coverage-aware portfolio reconciliation across orders, deduplicated fills, signed positions, funding and account PnL/margin state, with monotonic boot/reconnect snapshots, missing-order unknown state, fixed drift evidence, bounded summaries, an opaque-account atomic checkpoint, aggregate health and strict verified backup/restore.
* Strict configured-account Hyperliquid reconciliation across every discovered perp DEX, exact missing-order status, bounded unaggregated fill/funding windows and account-mode detection, with coalesced boot/reconnect reads and a mandatory fresh generation on execution and policy-bound automation. Every DEX is bound to `allPerpMetas.collateralToken`; Standard, Unified and Portfolio Margin capital and HIP-3 lifecycle rows use strict `spotMeta` identity plus reserve-oracle conversion. Fresh review additionally requires the exact venue-active leverage, maximum order size and `availableToTrade` capacity from `activeAssetData`; missing identity/oracle/capacity locks instead of guessing portfolio borrowing.
* Separate explicit Hyperliquid leverage authority: a mismatch returns a leverage-only review, preserves current cross/isolated mode, confirms through its own one-use token, calls the official SDK at most once under schema-v8 durability, proves application from fresh `activeAssetData`, grants no automation authority and requires a completely new order review afterward.
* Hyperliquid venue-native dead-man authority: a one-use operator-confirmed arm schedules a 30-second `scheduleCancel` deadline; authenticated mounted-terminal heartbeats revalidate readiness, read every discovered perp DEX and extend it monotonically; pre-sign failures prove no attempt, post-sign ambiguity becomes reconcile-only, disarm requires zero open orders, and mainnet submission independently requires fresh exact testnet `scheduledCancel` proof plus a live recent deadline in both BFF and signer.
* Hyperliquid supervised mainnet promotion: the same isolated loopback supervisor used for testnet now accepts mainnet only with exact dual enablement and an explicit canary cap no greater than the compiled $12 first-canary ceiling; offline doctor and health-only child startup make zero venue requests, strict health binds mode/dead-man network/schema-8 WAL state, and the shared store lock preserves account-bound rehearsal evidence without exposing keys, addresses or tokens.
* Strict offline Hyperliquid campaign evidence with a generated private exact-schema checklist, all nine testnet lifecycle/recovery cases or complete mainnet canary closure, five-minute per-mutation authorization freshness, pre/post/final readiness, customer-database reconciliation, $12/1x scope, final flat/zero-order/kill-switch/signer/backup proof and aggressive identity/payload redaction. Its digest is hash-bound rather than signed, and the tool performs no network or venue request.
* Canonical Robinhood Chain coverage matrix across live Arcus, Lighter and Hyperliquid discovery, with Arcus-first preference, exact venue/symbol context, provider/session gaps and fail-closed funding/execution state.
* Accessible canonical asset dossiers for all 25 reviewed Robinhood Chain assets, joining immutable contract/class identity, independently eligible oracle state, live ERC-8056 current/pending multiplier and pause evidence, current market schedules, exact unavailable/execution reasons and bounded preferred-venue displayed depth that is never called total liquidity.
* Full Lighter read-only terminal rail with live mainnet discovery, watchlists, search, alerts, technical-analysis charts, exact market-ID candle/tape streams, books, funding, open interest/volume and bounded public L1-address account/asset/position inspection; authenticated lifecycle, signing and the undocumented Robinhood Chain deposit route remain explicitly unavailable.
* Live public Hyperliquid market, candle, order-book and REST-plus-WebSocket recent-trade reads.
* Venue-isolated Arcus, Lighter, Hyperliquid and Robinhood Chain watchlists with strict bounded preference parsing, live/canonical availability intersection, keyboard controls and reload persistence.
* A bounded accessible command palette with cross-venue live-market search, canonical Robinhood Chain identity search, safe terminal actions, keyboard navigation, degraded-feed exclusion and no execution commands.
* Strict terminal price alerts with venue/symbol isolation, 90-second verified observation freshness, exact one-shot trigger evidence, bounded browser persistence and explicit terminal-open delivery semantics.
* Strict responsive workspace layouts with four deterministic pane presets, eight bounded named local views, reload persistence and keyboard/focus-safe controls.
* Bounded 5,000-bar chart retention with validated overlap merge, paginated-history preservation, atomic exact venue/symbol/interval binding, response-identity and late-stream guards, fail-closed context remount/axis clearing, calendar-aware continuity telemetry, immediate stream-gap/recovery repair and non-destructive same-context REST degradation.
* Versioned atomic Arcus/Lighter/Hyperliquid candle checkpoint with v1→v2 migration, provider-only writes, corrections, bounded retention/LRU limits, health counts and explicitly aged persisted outage pages.
* Strict persistent chart style, study visibility and bounded period preferences; incremental last-bar/append rendering with full correction/backfill fallbacks; and exact UTC time/OHLCV crosshair context.
* Strict TradingView-compatible UDF config/search/symbol/history/time responses plus a supervised custom live Datafeed over canonical venue identities, provider-only history, exact Lighter market IDs and gap/reconnect repair; a license-attested v32 installer, exact manifest/SRI/CSP verifier, same-origin native widget, standard left drawing toolbar and bounded layout/template persistence activate only when approved private assets are injected outside Git, with the complete custom chart retained as fallback.
* One supervised public browser WebSocket per venue with pooled/ref-counted market/L2, exact market-ID Lighter book/candle/tape and Arcus account subscriptions, exact unsubscribe/replay, frame/message/new-connection ceilings, stale detection, bounded reconnect and Hyperliquid heartbeat.
* Selected Arcus and Hyperliquid books use full replacement snapshots; Lighter applies nonce-continuous changes after its initial snapshot. Strict REST bootstrap/repair, forced Lighter gap resubscription and truthful transport/freshness labels replace the former REST-polled `LIVE L2` claim.
* Live Hyperliquid pre-trade cost disclosure with account-specific maker/taker rates, a fill-only 2 bps native NIGHTSHIFT builder fee, per-user approval verification, fee-bound one-use tickets, immutable signer V2 plus additive bracket V4 DTOs and isolated runtime address/rate enforcement; Arcus and Lighter receive no invented surcharge.
* Optional user-reviewed Hyperliquid take profit with a single official-SDK `normalTpsl` batch containing parent, reduce-only TP limit-trigger and reduce-only SL limit-trigger orders. Every leg has a distinct CLOID; incomplete, duplicate, reduce-only-parent or wrong-side brackets fail before signer I/O; automation V3 remains unchanged and explicitly unauthorized for brackets.
* Grouped Hyperliquid bracket reconciliation that binds retained parent/TP/SL identity, reuses one bounded account-fill scan, persists exact per-leg lifecycle evidence and confirms sibling cancellation only from venue `siblingFilledCanceled`; bounded-partial, conflicting, failed-protection and unconfirmed-sibling outcomes remain actionable rather than green.
* Operator-only grouped Hyperliquid bracket Trade Autopsy reconstructed exclusively from synchronized retained parent/TP/SL lifecycle and audit evidence, with exact leg lineage, generated contracts, zero venue reads and strict standalone/missing/corrupt-group refusal.
* Exact Hyperliquid builder-revenue reconciliation that retains parent/protective CLOID scopes plus take-profit/stop-loss leg identity before submit, resolves venue order IDs, pages unaggregated user fills, records positive builder fees exactly once by trade ID, sums exact decimals by fee token and reports bounded coverage without recognizing order acknowledgements as revenue.
* Strict durable Hyperliquid order lifecycle with one signer query/transaction for normalized pending/open/partial/fill/cancel/reject/trigger state, exact order quantities, all matching fill/fee/PnL evidence, native builder revenue, replay/conflict protection and terminal-visible reconciliation instead of venue-native JSON.
* Authenticated configured-signer Time Machine and exact per-CLOID Trade Autopsy with strict generated contracts, bounded-local lifecycle/fill/PnL/fee/builder-revenue evidence, chronological flow/span lineage, no arbitrary account persistence and no venue mutation.
* Per-request nonce CSP with strict-dynamic framework scripts, blocked inline handlers/objects/frames, self-hosted brand fonts and cross-origin isolation headers.
* Accessible terminal dialogs with focus containment, deterministic initial focus, opener restoration, dialog-to-dialog transfer and mutation-safe Escape handling, plus comprehensive reduced-motion CSS and scrolling behavior.
* Read-only EIP-6963/EIP-1193 injected-wallet discovery with strict chain/account parsing, account and chain event handling, explicit Robinhood Chain 4663 switching, manual public-address fallback and no signing authority.
* Optional Privy customer identity with Google and EVM-wallet login, `users-without-wallets` embedded EVM provisioning, linked external wallets, exact chain-4663 metadata, server-side access-token verification, explicit provider-unconfigured UI/health, and no implied operator, signer, execution, transfer, withdrawal or commercial authority.
* Authenticated customer account workspace with dual Privy access/identity-token cross-checking, explicitly bounded provider claims, separate active-browser and linked-wallet evidence, strict revisioned display/portfolio/chart/notification preferences, an opaque-ID private atomic checkpoint, aggregate health, verified backup/restore and no implied portfolio completeness, funding, withdrawal, trading or Agent Pro authority.
* Short-lived local operator authentication with constant-time secret exchange, HttpOnly/SameSite-Strict API cookie, in-memory CSRF, logout revocation, bounded bodies, session rate limits and locked-state redaction.
* Disabled-by-default Fastify development service with explicit enablement, exact IPv4 loopback binding, separate constant-time bearer authentication, bounded requests/sockets, capability-scoped rate limits and unambiguous non-executable paper labeling.
* Exact-origin, bounded-byte and concurrency-guarded Arcus/Lighter/Hyperliquid public REST reads with opaque account rate limits, cooldown circuits and endpoint-free health.
* Robinhood Chain mainnet discovery for chain ID 4663.
* Shared `@terminal/venues` read-only adapter package.
* Canonical featured Stock Token contract allowlist, registry version `2026-07-13`.
* Complete 25-token Robinhood Chain canonical identity and balance catalog, plus native ETH, WETH and USDG; every contract-bearing asset derives from one source-attributed official registry and the current 21-asset Chainlink-reviewed feed registry remains an independently sourced strict pricing subset.
* Bounded release-time audit of the current official Robinhood contract page that reports additions, removals, address changes and duplicates without auto-updating trusted identity.
* Public health provenance that publishes the exact accepted Git commit and standalone artifact digest only from a stable, matching regular-file marker pair; partial, malformed or mismatched deployed markers make health unsafe.
* A Linux x64 exact-commit public-release builder that runs the full handoff gate in a scrubbed disabled-execution environment, emits a deterministic standalone GNU-tar/gzip artifact with complete per-file SHA-256 manifest and create-once receipt, and independently verifies the full extracted tree before any separately authorized VPS promotion.
* A visible command-deck release proof that shows the exact live commit/artifact pair while independently labeling process execution locks, operator configuration, RHC provider qualification, archive evidence and venue metadata; malformed or failed health reads clear prior proof.
* A fail-closed production-activation panel that independently labels Privy browser/server configuration, licensed Advanced Charts v32 proof, fresh redundant Robinhood Chain provider readiness and deliberately locked order authority; contradictory or stale evidence cannot retain a ready claim.
* A terminal-native build-trust drawer with a compact top-bar state, `B` shortcut and safe command-palette action; it reuses the strict public-health projection, bounds polling, clears stale proof on every failure and keeps deployment identity separate from execution authority.
* Coarse verified-release filesystem evidence with a fixed bounded operating reserve and next-release allowance; constrained headroom remains visible and non-authoritative, a breached reserve makes process health unsafe, paths and inventory stay private, and pruning remains a separate content-addressed operator action.
* Serialized whole-snapshot runtime-state writes with unique process/sequence temp names, Windows-safe promotion under concurrent readers, retrying state reads and no orphan temp files; both offline rehearsal-signer supervisors also apply bounded cold-start grace before strict steady-state restart thresholds.
* Bounded release-time audit of Chainlink's exact Robinhood address directory that reports missing/new canonical feeds, proxy/secondary-proxy, heartbeat, decimal and duplicate drift without auto-updating trusted price identity.
* Explicit live/mock data modes; deterministic mock data is always labeled simulated.
* Reviewed Chainlink feed metadata with strict freshness, sequencer, pause and multiplier states.
* Public-address ERC-8056 holdings with partial and incomplete valuation handling.
* Persistent public-address canonical-token activity plus Alchemy-gated external native-ETH value transfers with strict raw-wei parsing, independent safe-head checkpoints/gaps, bounded page-key backfill, reorg-tail replay, schema migration, retention and archive-gated pagination; internal ETH transfers remain explicitly unavailable.
* Bounded RPC retries, payload caps, circuit breaking, all-read primary-to-fallback routing, rolling privacy-safe HTTP telemetry, live block-divergence checks and runbooks.
* Supervised chain-4663 `newHeads` streams with handshake validation, stale-head detection, bounded jittered reconnect, reconnect telemetry and post-incident stabilization.
* Explicit production-data readiness gates for two independent managed providers, live WSS heads and archive access; the default official public RPC is labeled diagnostic rather than production.
* Endpoint-bound Robinhood Chain archive-capability evidence with manual bootstrap/rotation, guarded refresh-window renewal, exclusive dead-owner-recoverable locking, atomic success-only replacement, fixed-code refresh state, public expiry observability and hardened systemd one-shot/timer templates.
* A command-deck readiness state machine bound to the monitored provider topology, with explicit public-diagnostic, fallback, WSS, archive, divergence and stabilization evidence.
* Dependable loopback-only local production supervisor with persistent configuration, health monitoring, automatic restart and clean shutdown.
* Allowlisted, checksum-verified Robinhood Chain, secret-free control-plane/proposal lifecycle telemetry, server-keyed agent state, public market-history and opaque-account portfolio-reconciliation checkpoint backups with bounded retention, offline restore, staged replacement and pre-restore rollback preservation.
* Disabled-by-default HMAC operator alert delivery with atomic outbox enqueue, schema-v1 migration, durable worker leases, idempotency IDs, bounded retry and secret-free health.
* Deterministic Robinhood Chain paper RFQ fixtures, portfolio replay and discipline scoring.
* Replay-verified schema-v2 live-book paper capital with an exact account-wide one-times entry-notional envelope and non-flipping reduce-only intent, explicitly separate from venue margin or liquidation semantics.
* Exact browser-local cross-market paper portfolio navigation over retained position, entry, realized PnL, active-GTC and protection evidence, plus fresh exact venue-mark/unrealized evidence for every open context; aggregate mark-to-market paper equity is withheld unless the complete portfolio is freshly marked.
* Strict browser-local PAPER risk checkpoint with immutable user-defined UTC daily-loss, peak-drawdown, midpoint-relative top-of-book spread and visible-depth entry-slippage limits; incomplete exact marks, invalid evidence, a loss breach, excessive spread or excessive adverse consumed-depth slippage pauses standard immediate/GTC exposure while preserving reduce-only exits and local protection.
* Strict bounded browser-local paper position protection for as many as eight unique venue/symbol contexts, with legacy single-plan migration, exact stop/take-profit levels, independent fresh venue-mark/book health, same-market post-trigger evidence, reduce-only full/partial depth exits, per-plan position-drift invalidation, exact local cancellation and explicit open-terminal/non-venue authority boundaries.
* Strict browser-local GTC paper limits with non-crossing placement, bounded account-wide reservations, one-order-per-fresh-book consumption, watermark-protected partial continuation, retained cancellation/rejection/fill lifecycle, exact away-market health/management rows, idempotent one-order local cancellation and explicit no-venue/no-queue authority boundaries.
* Production 404 gates for all disconnected paper compiler, replay and fixture-league routes.
* Nightshift command centre with Tape radar, deterministic mandate compiler, versioned paper agents, DCA/rebalance replay, risk-adjusted scoring, clonable league, alerts and paper emergency stop.
* Deterministic risk, paper, portfolio and AI proposal boundaries.
* Disabled-by-default isolated Hyperliquid execution service.
* Fail-closed Arcus execution gate: protected code is present but the supervised local runtime forces it disabled until a user-owned API wallet, separate signer process, funded eligible USDG account, exact market-size attestations, rehearsals and explicit canary approval exist.
* Testnet-only Arcus signer supervisor with a zero-network doctor, strict loopback/authenticated health binding, child restart budget, clean stop/restart controls, Hyperliquid/mainnet refusal and redacted local state/logs.
* Account-bound Arcus testnet rehearsal evidence derived from the durable signer audit: acknowledged-plus-terminal order lifecycle and acknowledged-plus-zero-open-order emergency stop, independently validated across signer/supervisor/BFF, visible to an authenticated operator and expiring after 30 days without environment overrides.
* Drift-checked Arcus Robinhood Chain testnet funding planner with current official document parsing, live chain/contract/token/wallet attestation, exact mint/approval/deposit calldata, no-state simulation, fee completeness and separate credit reconciliation; it has no signing or send capability and never constructs a production deposit.
* Disabled-by-default dual-Privy-token Arcus production withdrawal-to-self lifecycle with strict official-document drift detection, chain-4663 BridgeVault proxy/implementation proof, exact linked-wallet/account/collateral/compliance binding, one-use user-owned EIP-712 signing, at-most-once fixed-origin submission, durable 202-pending state and mandatory exact-withdrawalId terminal reconciliation; no key, raw identity, signature or arbitrary recipient is retained.
* Codex instructions, first-session guide, RHC implementation tickets and release checklist.
* Environment preflight and handoff/secret checks.

## Deliberately excluded

* Node/Python dependencies, build output, caches and local environment files.
* Platform-held or unrestricted wallet signing, arbitrary-recipient withdrawals, browser key storage, autonomous transfer authority and ERC-4337 session keys.
* Preconfigured or automatically activated real-money execution; operator credentials, funding, eligibility attestations and final authorization remain outside the repository.
* Any claim of Robinhood partnership, endorsement or affiliation.

## Required verification

```bash
pnpm preflight
pnpm contracts:check
pnpm audit:rhc-registry
pnpm audit:rhc-bridges
pnpm audit:rhc-oracles
pnpm audit:arcus-funding
pnpm audit:arcus-withdrawal
pnpm verify
pnpm build
pnpm smoke:web
pnpm handoff:check
```

The delivered ZIP must contain one `hyperliquid-ai-terminal/` root and pass `unzip -t` before upload.


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://nytshift.gitbook.io/nytshift-docs/evidence-and-handoff-records/release-manifest.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
