Files
pi-plan/README.md
T
wassname 632012cc6e judge: extract decideSignOff so inconclusive always means 'ran but failed'
CompleteGoal.execute now delegates to a pure decideSignOff(input, signal,
runJudgeFn) that takes an injected judge runner. judgeModel is never checked
pre-emptively: null just omits --model (buildJudgeArgs), so pi's configured
default runs the judge. The only producers of accepted_inconclusive are now the
judge-error and no-VERDICT paths -- i.e. 'the judge ran but failed', never 'no
model'. Wording (log/result/docstring/README) updated to say 'ran but failed'.

Adds test/decide-signoff.test.ts: null judgeModel still reaches runJudge (no
pre-emptive return); judge error/timeout/no-VERDICT -> accepted_inconclusive
with a 'ran but failed' reason. 11 tests pass, typecheck + lint clean.
2026-07-03 10:55:45 +08:00

117 lines
4.8 KiB
Markdown

# pi-goals
Plan mode for agreeing on goals before any code gets written. Each goal names the subtle failure
mode that could fake a "done" and the discriminator that tells real success from it. Everything
lives in one markdown file, `.pi/plan.md`, which the agent edits with its normal edit tool and which
is injected verbatim every turn so it survives compaction. A goal is signed off only after a fresh
read-only judge checks its evidence against the repo.
Design bet (v2): the plan file is for LLMs and the human, not for TypeScript. There is no parser and
no schema. The format is a convention taught by a prompt; the judge, being a model, reads the file
natively, finds the claimed goal itself (wording drift is fine), runs the goal's `verify` command
itself, and validates the evidence in words. This deleted ~800 lines of v1 (parser, exact-string
goal matching, verify runner, JSON-stream judge transport, review menus) and with them the footguns
they caused.
Like [pi-milestones](https://github.com/Neuron-Mr-White/UniPi/tree/main/packages/milestone) and
[burneikis/pi-plan](https://github.com/burneikis/pi-plan), it guides rather than guards.
[pi-lgtm](https://github.com/wassname/pi-lgtm) was my earlier, more complex attempt.
## Install
```bash
pi install npm:@wassname2/pi-goals
```
Or run it without installing:
```bash
pi -e npm:@wassname2/pi-goals
```
## Use
```
/goals CSV export for the report view
```
`/goals` enters plan mode and starts a conversation; the objective is an optional seed. From there:
1. Plan. The agent explores read-only (edit/write are blocked except on the plan file itself), asks
about anything unclear, and drafts the goals into `.pi/plan.md`.
2. Review. Read the file; a two-option prompt asks Ready or keep planning. To revise, just reply.
3. Work. Each turn the whole plan file is injected (byte-identical when unchanged, so the KV cache
holds), plus a reminder when the file went untouched for a turn. The agent ticks subtasks,
appends to `## Log`, fills `evidence:`, and calls `CompleteGoal` when a discriminator is
satisfied.
Other commands: `/goals clear` empties the plan file; `/goals judge <model-ref>` picks a specific
model for the sign-off judge (default: your current session model, else pi's default).
## The plan.md format (a convention, not a schema)
```markdown
# ship the cache layer
Latency target came from the SLO review; keep the existing client API.
## Goals
1. [/] goal: Implement cache layer
- subtle failure mode: cache silently bypassed, latency ok by luck
- discriminator: hit-rate > 0.8 in load-test.log (a bypass reads ~0)
- verify: pytest tests/cache -q && python bench/p95.py --max-ms 50
- tasks:
1. [x] wire cache client
2. [/] eviction policy
- evidence:
- > load-test.log: p95=41ms, hit-rate 0.93 (not bypassed)
# Future work / out of scope
## Log
- 2026-06-15 14:02 cache client wired; eviction next
```
- A goal is a checkbox line beginning `goal:` (`[ ]` open, `[/]` active, `[x]` done, `[-]`
cancelled). That one line pattern is the only thing the extension itself reads, for the widget.
- The `discriminator` is the success test, written while planning: the positive observation that the
goal succeeded and that none of the `subtle failure mode`s could fake. `evidence` is the proof,
filled at sign-off: each item pairs a durable artifact with a short read of it.
- Small format deviations are fine; the file is read by the human and the judge, not a parser.
- The agent prunes finished goals itself when the file gets long (evidence survives in git history
and `## Log`).
## Signing off a goal (`CompleteGoal`)
`CompleteGoal(goal)` is the one blessed tool. It spawns a read-only `pi` subprocess (`-p
--no-session --no-extensions`, tools `read,bash,grep,find,ls`, edit/write excluded) with the whole
plan file and the claimed goal. The judge finds the goal, re-derives from the cited artifacts rather
than trusting claims, runs `verify` if the goal names one, and returns `VERDICT: accept | reject`
plus what's missing.
- accept: a sign-off line is appended to `## Log` and the agent ticks the goal `[x]` itself. The
tool-written log line is the audit trail; a hand-tick without one shows in the diff.
- reject: the goal stays open and the agent gets the missing list.
- judge ran but failed/errored/timed out, or returned no VERDICT line: accepted inconclusive,
logged as such. There is no pre-emptive "no model" path -- a null judgeModel just omits
`--model` so pi's configured default runs the judge, so inconclusive always means "ran but
failed", never "couldn't start". The working agent is never blocked on judge infra.
## Prompts
All model-facing text lives in [`src/prompts.ts`](src/prompts.ts), in flow order.
## Develop
```bash
pi -e ./src/index.ts # load locally
npm test # vitest: judge argv invariants + appendLog
npm run typecheck
npm run lint
```
## License
MIT