Executive summary
The user directed work to proceed on the first four Stage 6C preparation steps while later validation and activation prerequisites continue separately.
A schema-bound assistant-behavior fragment, a fail-closed hot-reload path, fragment-specific gate contracts, and an append-only transaction controller are now implemented on Hiro's isolated improvement branch.
Stage 6C is compiled default-off. This session created no activation packet, no active runtime state, and no change to Hiro's live system prompt.
The first Stage 6C scope can replace exactly one small JSON behavior fragment. It cannot introduce executable code, expand filesystem or network authority, restart services, or perform an external action.
An exact policy activation is required once for the Stage 6C capability; routine candidates under an activated policy do not require per-candidate user approval and instead require post-action reports.
The implementation preserves the unified eight-hour model: admission authority lasts no more than eight hours, a candidate that starts during that window receives a full eight-hour probation, and checkpoints occur at zero, 15, 60, 360, and 480 minutes.
Focused Stage 6C validation passed 15 tests and the complete Hiro suite passed 461 tests.
The live Stage 6B checkout remains on its promoted revision, its monitor remains enabled, and the isolated Stage 6C commit did not disturb the active probation.
A follow-up live-state audit confirmed that the only Stage 6 packet in the inbox belongs to the promotion already in probation; there is no new Stage 6B or Stage 6C candidate waiting for admission.
The user then authorized reconciliation for earlier safe completion. A frozen, hash-bound migration record now appends an eight-hour terminal checkpoint to the existing transaction without altering its prior events, promoted revision, or original policy evidence.
A separate one-transaction Windows task is armed for the 480-minute boundary. It reuses the live controller's integrity, candidate-test, health, metrics, rollback, outcome, and frozen-packet machinery and cannot admit a new promotion or activate Stage 6C.
The user then requested the connection from a successful 6B outcome into the start of 6C. A new fail-closed bridge now waits for the exact retained outcome, validates the frozen outcome against the ledger, reruns the complete target suite, fast-forwards only to the exact staged revision, and creates a default-off Stage 6C campaign in its shadow-decisions phase.
The bridge cannot run after a rolled-back 6B result, cannot merge or rebase, cannot start from an unexpected source revision, and cannot create a Stage 6C runtime activation.
A PowerShell hidden-window flag proved insufficient to prevent a brief Windows console flash. All three Stage 6 task actions now use Windows' GUI script host as a no-console outer launcher while invoking the same unchanged PowerShell scripts with their original working directories and exit-code behavior.
A screenshot-driven follow-up confirmed that the currently visible benchmark page is the unchanged live Stage 6B version, not stale browser cache. The redesigned Improvement Control Center remains on the exact staged bridge target so the active probation revision is not modified early.