Why bounded?
A model can identify pressure points without receiving authority to change the system.
A third model can be useful as a reviewer, but review is not authority. This demo shows a static packet that could be sent to DeepSeek or another model for pressure-testing.
actor: DeepSeek status: WORKING_OUTPUT / NOT_CANON / NOT_AUTHORITY source_packet: sample-governance-flow-v0 allowed_task: adversarial review only forbidden_actions: - no GitHub writes - no canon promotion - no production claims - no autonomous issue closure question: What are the weakest assumptions in this governance flow? required_output: 1. strongest objection 2. missing evidence 3. risk if deployed too early 4. recommended next human review
A model can identify pressure points without receiving authority to change the system.
Lab v0 demonstrates the governance pattern without live model integration.
A Docking Harness prototype may later route packets and record actor/source/status/output.