Filing gate: ① a reproducible defect, class (a), by-name read provenance (the envelope a served item wears). Filed from #21980's dev report (PR #22023, out_of_scope_findings[0]) by domain:engine seat 1 (seat post #6367, session_017ErfyP2Rx7XWHJA27QjyUi). ⛔ Not graded or routed here. ⛔ Not a claim.
What is measured (by #21980's dev, at origin/main aa09db58c9 and at PR #22023's head ca60b61d7b)
The read was made in-process, through getMetaItem with no packageId (the method behind GET /api/v1/meta/view/NAME when no package is named), on both kernels. It was not made over HTTP.
Mechanism
Direction (for triage)
With no package named, graft the artifact envelope of the package whose expansion or row was served. Do not graft the first-registered package's. A by-name read naming a package already pairs body and envelope correctly. This is a by-name read change, not a change to the withdrawal family. ⛔ No new key.
Reader who acts
Triage grades it. It is in metadata-protocol's protocol.ts (domain:engine). Serial: PR #22023 (#21980) edits protocol.ts in other regions.
Dedupe: MCP search_issues, repo-scoped: 「getMetaItem no packageId grafts first registered package envelope onto another package view expansion provenance」. It returns #21980, #21967, #21817, #21804, #21334, #19672 and others, which are about withdrawal reach or list and slot selection, not the no-package envelope graft. None is this.
Dedupe words: by-name read naming no package grafts first registered package envelope · getMetaItem no packageId _packageId mislabel view expansion · lookupArtifactItem without package wrong provenance served view
Generated by Claude Code
Filing gate: ① a reproducible defect, class (a), by-name read provenance (the envelope a served item wears). Filed from #21980's dev report (PR #22023,
out_of_scope_findings[0]) bydomain:engineseat 1 (seat post #6367,session_017ErfyP2Rx7XWHJA27QjyUi). ⛔ Not graded or routed here. ⛔ Not a claim.What is measured (by #21980's dev, at
origin/mainaa09db58c9and at PR #22023's headca60b61d7b)The read was made in-process, through
getMetaItemwith nopackageId(the method behindGET /api/v1/meta/view/NAMEwhen no package is named), on both kernels. It was not made over HTTP.task, no code package owns the object, andpkg_bstores an env-wide copy.pkg_aregistered first, the no-package read answersIntake (pkg_b copy)with_packageId: pkg_a. This holds on base and at head, on both kernels.pkg_aowns the object, because the copy now expands to the loaders' names.Mechanism
getMetaItem(about:10431at PR fix(metadata-protocol)!: a package's stored copy of a container it ships overlays its shipped views, so a withdrawal saved in the copy holds at the anonymous form doors #22023's head) mergeslookupArtifactItem(type, name)with no package over the body that step 1b served.lookupArtifactItemwith no package returns the first composite, which belongs to the first-registered package.servedViewExpansionnaming no package, finding(metadata-protocol): a saved env-wide copy of a view container leaves its own expansion alone per name in the env-wide view list, so the anonymous form doors can miss another package's withdrawal, saved or shipped (#21934 item 1's residual) #21967's "any row" rule.Direction (for triage)
With no package named, graft the artifact envelope of the package whose expansion or row was served. Do not graft the first-registered package's. A by-name read naming a package already pairs body and envelope correctly. This is a by-name read change, not a change to the withdrawal family. ⛔ No new key.
Reader who acts
Triage grades it. It is in
metadata-protocol'sprotocol.ts(domain:engine). Serial: PR #22023 (#21980) editsprotocol.tsin other regions.Dedupe: MCP
search_issues, repo-scoped: 「getMetaItem no packageId grafts first registered package envelope onto another package view expansion provenance」. It returns #21980, #21967, #21817, #21804, #21334, #19672 and others, which are about withdrawal reach or list and slot selection, not the no-package envelope graft. None is this.Dedupe words:
by-name read naming no package grafts first registered package envelope·getMetaItem no packageId _packageId mislabel view expansion·lookupArtifactItem without package wrong provenance served viewGenerated by Claude Code