
Run management · Stage gates · Refusals
One pipeline from declared constraints to the service window. Every stage names its decision, its owner, and the gates that must be signed before anything advances.
Pipeline run console
Open a run and take the stages in order. Hard gates refuse rather than warn — the run will not advance until they are signed. Local, deterministic, no account.
Status
Idle
No run open. Start one to take the stages in order.
Stage
P1 · Intake
Owner: Desk · 10 min
Gates signed
0 of 6 stages cleared
0 individual sign-offs on record
Opened
—
Local clock, this device only
P1 · Desk
Are the constraints declared, or are we guessing?
Held at the desk — no tool leaves this stage.
What you observed, what you decided, and why. First-party only — this is your record of the stage, not a guarantee from the suite.
0 characters · saved on this device
Evidence attachments
Attach a photo, receipt, timing sheet or supplier note and tie it to the gate it settles. Nothing is uploaded. Files under 1 MB travel inside the exported packet; larger ones are listed by name, size and type.
No evidence on this stage yet. A signed gate with no evidence is still a signed gate — it just carries less weight in the packet.
Run log
Empty. Every control and sign-off is recorded here, on this device.
How the console behaves
Sign off & advance
Moves the run forward only when every hard gate on the open stage is signed. Otherwise it records a refusal.
Reopen previous
Steps back a stage. Existing sign-offs stand until you withdraw them by hand.
Hold
A deliberate pause. Nothing advances while held, and the log says when it started.
Stand down
Ends the run as refused. Dining out is the correct outcome, not a failure state.
Clear
Deletes the run and its log from this device. No copy exists anywhere else.
Where the run sits
Stages P2 and P3 belong to Menu Builder, P5 and P6 to Occasion Operating System. The desk owns intake and the handoff packet — the two points where an unstated assumption would otherwise travel downstream.