Executive summary
Phase 3F-RS added a fail-closed process supervisor around the exact Qwen3.8-27B direct serving configuration qualified in Phase 3F-RT. It performed no new discovery, full-corpus extraction, claim-semantic change, reproduction, candidate construction, governor action, or promotion.
The supervisor distinguishes process, API, and inference health; records exact PID, creation time, executable, command, model/configuration hash, port owner, runtime instance, and slot state; and refuses termination whenever ownership is ambiguous.
A stalled request is detected from absent stream and decoded-token progress, cancelled first, and escalated to exact-worker replacement only when cancellation does not restore inference health. The identical model/configuration is reloaded and verified by bounded structured inference before admission reopens.
Every failed request attempt is immutable. At most one separately versioned retry is allowed after verified recovery; a second failure terminates explicitly rather than circulating.
All deterministic supervisor faults passed: owned worker exit during a real frozen-source request, forced inference-unhealthy replacement, and qualification-only reload failure with no retry loop.
Across the completed primary campaign and clean post-repair continuation, 40 two-source cycles produced 27 successful cycles and 13 bounded terminal failures. Eighty source requests created 105 immutable attempts: 67 valid completions and 38 real hard hangs. Twenty-five retries were issued and 12 succeeded.
The supervisor replaced 38 real campaign workers plus two deterministic live-fault workers. After every completed cycle, active model/runtime identity, slot state, and orphan state were checked. The final runtime is healthy with admission open, one idle slot, and no orphan serving worker.
The requested 10-consecutive-cycle acceptance target was not met. The best completed streak was eight cycles. A versioned continuation reached nine before exposing a redundant post-recovery health-probe defect; a clean rerun after the minimal repair crossed that boundary but still encountered model-level double-hang terminal failures.
The final disposition is MIXED BOTTLENECK. Runtime containment is strongly demonstrated, but the complete Phase 3F-RS acceptance criteria are not. The frozen 20-source Phase 3F-CE corpus remains blocked and was not rerun.
The bounded supervisor qualification was committed and pushed on the isolated qualification branch at 777193e. It was not merged or activated into Hiro production code.