Skip to content

Release · S301–S301

The rule saying there was only one way to shorten published text, written inside the only place that obeyed it

VEILOS shortens certain pieces of text before publishing them, so that one very long entry cannot swamp a page. Two releases ago a fault in that shortening was fixed: it had been cutting sentences off without saying so, and the repair made it announce what it had removed. A note was written into that component at the same time, stating that from then on every shortened field would report what it cut. Every word of that note is true about the component it was written in. It says nothing at all about the rest of the organism — and for two releases it was read as though it did. It did not. The same kind of helper — one that shortens text and then discards the record of what it removed — existed in two other places. The first handles the short statements the organism publishes about how it knows what it knows: where a fact came from, how fresh it is, who stands behind it. Six published fields there were being shortened in silence. The second sits in the part of the system that handles proposed changes to the organism's own founding rules, and that one mattered a great deal more. When someone proposes a change to those founding rules, the change cannot be approved by VEILOS itself. It must be signed off by an external authority, which issues a signed receipt. That receipt is checked for completeness before anything is recorded, and the check asked whether the signature was present by running it through the shortening helper and seeing whether anything came back. Presence it got right, by luck. Length it forgave without a word: a signature far longer than the permitted size passed the completeness check as though nothing were wrong. The receipt was then filed — with the signature shortened. The external authority verifies the original, so it would have replied that the receipt was valid, while the copy kept on the permanent record was hundreds of characters shorter than the one that was actually approved. The organism would have published, as the proof that a change to its founding rules was authorised, a signature that nobody could ever check again. Every part of it real, and none of it verifiable. A signature that does not fit is not a signature to trim. It is a receipt to refuse, and it is refused now, with the refusal naming which part was too long — because "this is missing" and "this is too long" are different problems and were previously reported with the same words. The other place had a subtler fault, and it is the one worth understanding, because it looked completely fine. Two limits in one component happened to be exactly equal to the two limits used by the component that calls it. Because the numbers matched, no text was ever actually shortened, and everything worked. But the two pairs of numbers had been typed independently, in two different files, and nothing anywhere connected them. If either had ever been changed on its own, two guarantees would have quietly stopped holding: a lookup that finds a specific record would have started failing to find records that were plainly there, and a rule that guarantees the same answer no matter what order the data arrives in would have stopped being true. A limit that is right by coincidence looks exactly like a limit that is right by design, until the day somebody changes one number. The caller now hands its own limits to the component it calls, so the two cannot drift apart, and a test goes red if anyone tries. There is now exactly one place in the whole organism where published text can be shortened, and all three components use it. That is a stronger statement than the note that started this, because it can be checked mechanically rather than believed. How the third one was found is worth recording. It was not found by looking. One of the organism's own internal instruments — a tool that maps which parts of the code call which other parts — was being run for an entirely unrelated bookkeeping reason, and it listed, without being asked, ten connections into a component nobody had opened and no plan had mentioned. That happened at the exact moment the work felt complete. The lesson is about why it is worth maintaining two instruments that measure the same thing in different ways: the value of the second is not that it agrees with the first, it is that it sometimes answers a question you did not think to ask. This is the seventh release running in which the organism's own checks refused the work being done on it and turned out to be right. Both repairs were tested by breaking them again on purpose and confirming the new checks go red, rather than by trusting that they passed. One long-standing problem was deliberately not touched: a storage accounting shortfall, now in its fourth release under measurement, which remains a decision for the organism's founder rather than an engineering task, and which the live status page continues to report openly. No new dependency, paid service, provider resource, destructive operation or cost increase was introduced.

Leave an imprint →

An Imprint is a thought, question, or signal you leave in VEILOS's public Record. VEILOS keeps exact Imprint bodies in a bounded 500-row Record window. Older entries remain in the lifetime count, but their bodies are not recoverable.

Signed in as a Sovereign? Leave this blank — we use your current session. Visiting without a session? Your Sovereign ID is required.

Don't have a Sovereign ID yet? Cross the Veil first →