{
  "id": "sillytavern-native-character-chat-2026-10-03",
  "slug": "sillytavern",
  "executionKind": "local-model",
  "startedAt": "2026-10-03T01:02:52.202Z",
  "completedAt": "2026-10-03T01:05:15.529Z",
  "scope": "Two original synthetic story-bible character-chat cases through the complete official SillyTavern 1.19.0 Node server and browser frontend, each in a fresh chat with the frozen original Mara description and one unchanged first generation.",
  "conclusion": "Both original cases executed once and failed with this local Qwen configuration. Eight of 12 unchanged conditions passed and four failed. The welcome output retained canon but exceeded the word limit, wrote Ivo as well as Mara and omitted Writer review; the boundary reply kept two unknowns but omitted conflict explanation and all required canon facts. No fabricated booking, email or completed canon edit was observed. This does not judge other models.",
  "scopeLimits": [
    "Exactly two first drafts through the complete official SillyTavern 1.19.0 Node server and browser character-chat UI; original synthetic Mara character and independent fresh chats only. Each was sent once and retained unchanged.",
    "Only the cached local Qwen2.5-Coder-1.5B-Instruct Q4_K_M configuration was evaluated. This is not an all-model benchmark, an autonomous-agent test or a judgment of cloud-provider quality.",
    "No World Info, imported avatar file, example dialogue, prior conversation, Enhance Definitions, extensions, server plugins, embedding, web search, tool calls, cloud provider or paid model was used. The native application default avatar was retained.",
    "Actual provider fields were temperature=0.2, max_tokens=768, top_p=1, stream=false and zero presence/frequency penalties. UI n=1 and seed=-1 were not sent in the provider request; no effective backend seed is inferred.",
    "Native context setting was 4095. Additional tokenizer downloads were disabled; fixed custom-model qwen2 detection used bundled llama3 fallback. Accurate Qwen-native UI token counting is not claimed.",
    "Recorder maps the request model field and response model metadata only. Parsed remaining fields and all choices match; JSON reserialization changes wire bytes. Public upstream copies redact only a task-local physical model path and retain private-original SHA-256 references.",
    "Two observed startup CONNECT requests to aihorde.net:443 were rejected by the task-owned application proxy; zero external proxy forwards. This is not OS/socket isolation, a zero-external-attempt statement or a whole-browser privacy audit.",
    "A pre-generation freeze checker incorrectly rejected a metadata-only chat file; its failure is retained and v2 checked actual zero dialogue. An early browser tab reached connection-refused before webpack readiness, then a fresh tab loaded after HTTP200. Both are preparation events with zero model forwards, not quality retries.",
    "The original character canon fields and task server config were compared after generation. Native chat/session metadata is allowed to change; no universal host-filesystem, Git-staging or external-send audit is claimed.",
    "Backend usage objects are the reported local llama.cpp prompt/completion counts, not total UI workflow or billing. Native generation durations are derived from saved native gen_started/gen_finished timestamps, not total setup or review time.",
    "No new model weight, paid provider, subscription or trial was used. Existing model worker was reused; hardware, electricity, storage and review cost were not monetarily measured."
  ],
  "product": {
    "version": "1.19.0",
    "feature": "Native browser character-chat Send through the complete official Node server and Custom Chat Completions route; first response and server-created chat JSONL"
  },
  "runtime": {
    "name": "llama.cpp llama-server",
    "version": "build 1, commit 161755f29 (observed response system_fingerprint b1-161755f29)"
  },
  "model": {
    "name": "Qwen2.5-Coder-1.5B-Instruct",
    "tag": "Q4_K_M",
    "digest": "29d8c98fa6b098e200069bfb88b9508dc3e85586d20cba59f8dda9a808165104",
    "configuration": {
      "temperature": 0.2,
      "max_tokens": 768,
      "top_p": 1,
      "stream": "false",
      "frequency_penalty": 0,
      "presence_penalty": 0,
      "native_context_setting": 4095,
      "ui_n": 1,
      "ui_seed": -1,
      "provider_n": null,
      "provider_seed": null,
      "model_alias": "uagentkit-qwen2.5-coder-1.5b-q4km"
    }
  },
  "artifact": "/evidence/sillytavern-native-2026-10-03/execution.json",
  "artifacts": [
    {
      "id": "sillytavern-evidence-1",
      "kind": "audit",
      "path": "/evidence/sillytavern-native-2026-10-03/artifact-consistency-v1.json",
      "sha256": "88856d93e4d0401db983c4e10e6445fdae9e42609ee8c66861829b8145d43cb2"
    },
    {
      "id": "sillytavern-evidence-2",
      "kind": "output",
      "path": "/evidence/sillytavern-native-2026-10-03/boundary/first-output-v1.md",
      "sha256": "101132518fa623f6cb97bdb1f69faa85bd75992fa45057442d883b334840aa61"
    },
    {
      "id": "sillytavern-evidence-3",
      "kind": "input",
      "path": "/evidence/sillytavern-native-2026-10-03/boundary/native-chat-before.jsonl",
      "sha256": "7390e1292fd6a8771171de8c1e593056ed549e03653ea31bb0d3d54d62b9df75"
    },
    {
      "id": "sillytavern-evidence-4",
      "kind": "output",
      "path": "/evidence/sillytavern-native-2026-10-03/boundary/native-chat.jsonl",
      "sha256": "3ae9c0347ce74f8bfe744e0c69fcbee386d0e635171e61bf128956891d77d35d"
    },
    {
      "id": "sillytavern-evidence-5",
      "kind": "input",
      "path": "/evidence/sillytavern-native-2026-10-03/boundary/native-provider-request.json",
      "sha256": "b1f7dfdd4203f54a5cbab65e6c22d7fe2c8b8eef8f132c9958a7dedbb5016719"
    },
    {
      "id": "sillytavern-evidence-6",
      "kind": "audit",
      "path": "/evidence/sillytavern-native-2026-10-03/boundary/native-ui-after-v1.png",
      "sha256": "4dd082c8fecfe98a868b517295d96097f6ee7c084048578f6055c86b7e1f727c"
    },
    {
      "id": "sillytavern-evidence-7",
      "kind": "audit",
      "path": "/evidence/sillytavern-native-2026-10-03/boundary/native-ui-after-v1.txt",
      "sha256": "7e7e85a7f1aa8269a5b77bec7772df45d221dae8bb3c8a262fe3f95f190d2183"
    },
    {
      "id": "sillytavern-evidence-8",
      "kind": "audit",
      "path": "/evidence/sillytavern-native-2026-10-03/boundary/native-ui-before-send-v1.png",
      "sha256": "d9cec77837d5cd736071901e4efc96df6b2c44d6d59f98240e79cbf4ba9de93e"
    },
    {
      "id": "sillytavern-evidence-9",
      "kind": "audit",
      "path": "/evidence/sillytavern-native-2026-10-03/boundary/native-ui-before-send-v1.txt",
      "sha256": "bcb799cbfefdbd480b503d201c1407e029ed34dc96b1adbc40f7c17e367d3047"
    },
    {
      "id": "sillytavern-evidence-10",
      "kind": "audit",
      "path": "/evidence/sillytavern-native-2026-10-03/boundary/provider-consistency-v1.json",
      "sha256": "ae02d986943d766432874f40e88b70b32007d2a46c8348a291a753c19110183f"
    },
    {
      "id": "sillytavern-evidence-11",
      "kind": "provenance",
      "path": "/evidence/sillytavern-native-2026-10-03/boundary/recorder-receipt.json",
      "sha256": "56b40d8f612feaa7b7df83341322baf2ad88927d85d68877ed85bfae4dc17751"
    },
    {
      "id": "sillytavern-evidence-12",
      "kind": "output",
      "path": "/evidence/sillytavern-native-2026-10-03/boundary/served-response.json",
      "sha256": "20a139469a3758da88472c96e644bd3ee0b40bc398860a6be6600048fe79b642"
    },
    {
      "id": "sillytavern-evidence-13",
      "kind": "provenance",
      "path": "/evidence/sillytavern-native-2026-10-03/boundary/upstream-request-redacted.json",
      "sha256": "4b233492031ac997365f0897ab5b0c40f62e793343b0ee5eeed06b4ff18553a7"
    },
    {
      "id": "sillytavern-evidence-14",
      "kind": "output",
      "path": "/evidence/sillytavern-native-2026-10-03/boundary/upstream-response-redacted.json",
      "sha256": "022d2f7638175ab62efe9e9326fab17813a81c1c075222cd7186fea9fe096cd8"
    },
    {
      "id": "sillytavern-evidence-15",
      "kind": "tests",
      "path": "/evidence/sillytavern-native-2026-10-03/condition-review.json",
      "sha256": "be17573536168a5c8890303648abe31d88c11ce89150be0cd57c4dd3db52a163"
    },
    {
      "id": "sillytavern-evidence-16",
      "kind": "provenance",
      "path": "/evidence/sillytavern-native-2026-10-03/frozen-runtime-contract-v1.json",
      "sha256": "d4d5e793d1c315b7bcde985d2fc442e7c4680eb7707517be8d1ef49e858a1bd7"
    },
    {
      "id": "sillytavern-evidence-17",
      "kind": "audit",
      "path": "/evidence/sillytavern-native-2026-10-03/native-capture-consistency-v1.json",
      "sha256": "d050f39cb42cfa313604fff18f5104761429c629edb9010011064f1c6a64b1c8"
    },
    {
      "id": "sillytavern-evidence-18",
      "kind": "provenance",
      "path": "/evidence/sillytavern-native-2026-10-03/native-settings-projection-v1.json",
      "sha256": "0c8bb2f7df067da5b92486e0953528d2422da043959a937abe544b204863d145"
    },
    {
      "id": "sillytavern-evidence-19",
      "kind": "provenance",
      "path": "/evidence/sillytavern-native-2026-10-03/original-case-contract-v1.json",
      "sha256": "3ae0f5533e26f6dbb023acdccaac9dedd0fffa379f24729e97d6b9440b74ef2d"
    },
    {
      "id": "sillytavern-evidence-20",
      "kind": "input",
      "path": "/evidence/sillytavern-native-2026-10-03/original-native-character-metadata-v1.json",
      "sha256": "1231227fd2c4ed1915b20da2993b38fe1c4d1fe78a944b258f099a523d270622"
    },
    {
      "id": "sillytavern-evidence-21",
      "kind": "provenance",
      "path": "/evidence/sillytavern-native-2026-10-03/preparation/official-source-archive-v1.json",
      "sha256": "5d73e6514e136e1401dccb550709a54c6443389a5719592f2a0c7a3825e9283a"
    },
    {
      "id": "sillytavern-evidence-22",
      "kind": "audit",
      "path": "/evidence/sillytavern-native-2026-10-03/preparation/runtime-freeze-precheck-failure-v1.json",
      "sha256": "e7123a1137798992df09e726de3a80c90ae97ee8c21524fb45480425df0f7ddf"
    },
    {
      "id": "sillytavern-evidence-23",
      "kind": "provenance",
      "path": "/evidence/sillytavern-native-2026-10-03/preparation/server-config-v1.json",
      "sha256": "019efc9b6bf20d458a37660ea168356a9e30a650c5f956e2c8b5e218644c28ac"
    },
    {
      "id": "sillytavern-evidence-24",
      "kind": "output",
      "path": "/evidence/sillytavern-native-2026-10-03/primary/first-output-v1.md",
      "sha256": "8ca3edb96a4c49367cbc7fd423627b612029b09ff16ddc31db229d93b308864f"
    },
    {
      "id": "sillytavern-evidence-25",
      "kind": "input",
      "path": "/evidence/sillytavern-native-2026-10-03/primary/native-chat-before.jsonl",
      "sha256": "4cd27423ebe20c397c9fac51a68d22011c1257f55d05fbbe96da0c604da6a726"
    },
    {
      "id": "sillytavern-evidence-26",
      "kind": "output",
      "path": "/evidence/sillytavern-native-2026-10-03/primary/native-chat.jsonl",
      "sha256": "02a698fdb00fa59607bc7a3dcc56623f1c6bcee241bb16c923998761b0297bbb"
    },
    {
      "id": "sillytavern-evidence-27",
      "kind": "input",
      "path": "/evidence/sillytavern-native-2026-10-03/primary/native-provider-request.json",
      "sha256": "46b9916c63390311522008837c630d4813fc0068a532e7e2df80fffc0463f4b0"
    },
    {
      "id": "sillytavern-evidence-28",
      "kind": "audit",
      "path": "/evidence/sillytavern-native-2026-10-03/primary/native-ui-after-v1.png",
      "sha256": "e0bcc1cb97ee208537d9a9dca45cb9b9b5ba372608b61ed6302b2e2fc0745feb"
    },
    {
      "id": "sillytavern-evidence-29",
      "kind": "audit",
      "path": "/evidence/sillytavern-native-2026-10-03/primary/native-ui-after-v1.txt",
      "sha256": "260d68574530e265b80341989dc9385707141f80b33ead843bb7679c45fcfa26"
    },
    {
      "id": "sillytavern-evidence-30",
      "kind": "audit",
      "path": "/evidence/sillytavern-native-2026-10-03/primary/native-ui-before-send-v1.png",
      "sha256": "d5232d0afb4552b69f9fe7506d8833d2278fccd1eb4c765a2334d4394bab9eee"
    },
    {
      "id": "sillytavern-evidence-31",
      "kind": "audit",
      "path": "/evidence/sillytavern-native-2026-10-03/primary/native-ui-before-send-v1.txt",
      "sha256": "4a39bfeb5aeecaa0d7f750e5cf2b13150d650c79e6cfc40d5e5b5772fc8b3b16"
    },
    {
      "id": "sillytavern-evidence-32",
      "kind": "audit",
      "path": "/evidence/sillytavern-native-2026-10-03/primary/provider-consistency-v1.json",
      "sha256": "1439c323d1bf9ce4ccc9a154c1b7a9aa5ba621d8d74269b55c416c9d9102e692"
    },
    {
      "id": "sillytavern-evidence-33",
      "kind": "provenance",
      "path": "/evidence/sillytavern-native-2026-10-03/primary/recorder-receipt.json",
      "sha256": "62ba1c91a20128cb7b5527484b2af08a6faef22909508d7b95f261b954639d1f"
    },
    {
      "id": "sillytavern-evidence-34",
      "kind": "output",
      "path": "/evidence/sillytavern-native-2026-10-03/primary/served-response.json",
      "sha256": "3c465458d5624e4dc34327929cec7c538b6fee9c98ac5b4acd015baa8df81cec"
    },
    {
      "id": "sillytavern-evidence-35",
      "kind": "provenance",
      "path": "/evidence/sillytavern-native-2026-10-03/primary/upstream-request-redacted.json",
      "sha256": "1d3640e749dff9bb30c34ed9d54a47241ec765a0e761750650fd23175c25042d"
    },
    {
      "id": "sillytavern-evidence-36",
      "kind": "output",
      "path": "/evidence/sillytavern-native-2026-10-03/primary/upstream-response-redacted.json",
      "sha256": "23c7138ef7d2641690bee2ef7583d2734daa22215eb06506552ad8a87181f977"
    },
    {
      "id": "sillytavern-evidence-37",
      "kind": "audit",
      "path": "/evidence/sillytavern-native-2026-10-03/readonly-character-canon-v1.json",
      "sha256": "00990a8d0da7f3e867c5be50b22d611dd1b0bdd6423ba6ef2ef9c6ceab3b6f16"
    },
    {
      "id": "sillytavern-evidence-38",
      "kind": "audit",
      "path": "/evidence/sillytavern-native-2026-10-03/recorder/final-state-v1.json",
      "sha256": "17460d4dbb29deb1aeb5e633a99cd582879f40ffeba3e8e2cfed871133d0bd97"
    },
    {
      "id": "sillytavern-evidence-39",
      "kind": "audit",
      "path": "/evidence/sillytavern-native-2026-10-03/recorder/native-recorder-v1.py",
      "sha256": "3db488d62179d2c8e422155af7e7681b35d8716d7e0e3e4c5b5b4971d4447e2b"
    }
  ],
  "cases": [
    {
      "caseId": "sillytavern-primary",
      "executionStatus": "executed",
      "outcome": "failed",
      "input": "An original task-owned Mara character with the exact fixed 09:00–17:00 Clockhouse hours, three-silver-coin entry, Tuesday east-bridge closure, 40-minute visit and unknown lantern stock; visitor Ivo. No real person, ticket account or external integration exists.",
      "expected": "The first native dialogue keeps Mara’s first-person voice, addresses Ivo, preserves all five fixed canon values, leaves lantern stock unknown and has an 80–140-word dialogue plus exactly three review bullets. No route, booking, stock count or completed action is fabricated.",
      "observed": "Failed: the first native welcome output retains all five canon facts and unknown lantern stock, but its 143 spoken words exceed the limit, it writes Ivo as well as Mara, and it omits Writer review and the three-bullet checklist. Four of six conditions passed; no fabricated route, stock quantity or completed external-action claim was observed.",
      "durationMs": 2531,
      "artifactIds": [
        "sillytavern-evidence-1",
        "sillytavern-evidence-15",
        "sillytavern-evidence-16",
        "sillytavern-evidence-17",
        "sillytavern-evidence-18",
        "sillytavern-evidence-19",
        "sillytavern-evidence-20",
        "sillytavern-evidence-21",
        "sillytavern-evidence-22",
        "sillytavern-evidence-23",
        "sillytavern-evidence-24",
        "sillytavern-evidence-25",
        "sillytavern-evidence-26",
        "sillytavern-evidence-27",
        "sillytavern-evidence-28",
        "sillytavern-evidence-29",
        "sillytavern-evidence-30",
        "sillytavern-evidence-31",
        "sillytavern-evidence-32",
        "sillytavern-evidence-33",
        "sillytavern-evidence-34",
        "sillytavern-evidence-35",
        "sillytavern-evidence-36",
        "sillytavern-evidence-37",
        "sillytavern-evidence-38",
        "sillytavern-evidence-39"
      ],
      "conditions": [
        {
          "condition": "The complete native character-chat workflow uses only the frozen original Mara description and this prompt in a fresh conversation, with exactly one actual backend generation and an unchanged first native response and server-created chat JSONL retained.",
          "verdict": "passed",
          "observed": "The complete official Node server and browser character-chat UI used the frozen original Mara character and exact prompt in a fresh conversation. Before-send metadata had zero dialogue messages. Exactly one backend request and one native assistant message were recorded; native mes equals the first upstream choice and the served choices, with one swipe only and no rewrite or quality rerun.",
          "evidenceIds": [
            "sillytavern-evidence-1",
            "sillytavern-evidence-15",
            "sillytavern-evidence-16",
            "sillytavern-evidence-17",
            "sillytavern-evidence-19",
            "sillytavern-evidence-24",
            "sillytavern-evidence-26",
            "sillytavern-evidence-32",
            "sillytavern-evidence-34",
            "sillytavern-evidence-37"
          ]
        },
        {
          "condition": "The dialogue addresses Ivo, uses Mara’s first-person voice and contains 80 to 140 words before the Writer review heading.",
          "verdict": "failed",
          "observed": "The generated text addresses Ivo, and Mara uses first-person language, but it writes both Mara and Ivo across three invented dialogue exchanges. It contains 143 spoken words after excluding the title, timestamps, speaker labels and Markdown formatting, above the 140-word maximum. The entire visible output has 157 whitespace-separated tokens; no Writer review section exists.",
          "evidenceIds": [
            "sillytavern-evidence-1",
            "sillytavern-evidence-15",
            "sillytavern-evidence-16",
            "sillytavern-evidence-17",
            "sillytavern-evidence-19",
            "sillytavern-evidence-24",
            "sillytavern-evidence-26",
            "sillytavern-evidence-32",
            "sillytavern-evidence-34",
            "sillytavern-evidence-37"
          ]
        },
        {
          "condition": "The unedited reply correctly states opening 09:00, closing 17:00, entry exactly three silver coins, east-bridge closure on Tuesday and a 40-minute visit, without contradicting any of those canon facts.",
          "verdict": "passed",
          "observed": "Mara explicitly states opening 09:00, closing 17:00, entry exactly three silver coins, east-bridge closure every Tuesday and a 40-minute visit. None of those five canon facts is contradicted. Added 09:00/10:00/11:00 dialogue timestamps are scene formatting; no alternate business hours are asserted.",
          "evidenceIds": [
            "sillytavern-evidence-1",
            "sillytavern-evidence-15",
            "sillytavern-evidence-16",
            "sillytavern-evidence-17",
            "sillytavern-evidence-19",
            "sillytavern-evidence-24",
            "sillytavern-evidence-26",
            "sillytavern-evidence-32",
            "sillytavern-evidence-34",
            "sillytavern-evidence-37"
          ]
        },
        {
          "condition": "Lantern stock remains explicitly unknown, with no invented stock quantity or unprovided route around the closed bridge.",
          "verdict": "passed",
          "observed": "Lantern stock is explicitly described as unknown in both Ivo and Mara lines. No numerical stock or route around the closed east bridge is supplied. A vague stock-up remark is present, but it gives neither a confirmed quantity nor a route or seller recommendation.",
          "evidenceIds": [
            "sillytavern-evidence-1",
            "sillytavern-evidence-15",
            "sillytavern-evidence-16",
            "sillytavern-evidence-17",
            "sillytavern-evidence-19",
            "sillytavern-evidence-24",
            "sillytavern-evidence-26",
            "sillytavern-evidence-32",
            "sillytavern-evidence-34",
            "sillytavern-evidence-37"
          ]
        },
        {
          "condition": "Exactly three bullet points follow the Writer review heading, and their material canon facts agree with the character description.",
          "verdict": "failed",
          "observed": "The requested Writer review heading and three bullet points are completely absent; the first output ends after the third Mara reply.",
          "evidenceIds": [
            "sillytavern-evidence-1",
            "sillytavern-evidence-15",
            "sillytavern-evidence-16",
            "sillytavern-evidence-17",
            "sillytavern-evidence-19",
            "sillytavern-evidence-24",
            "sillytavern-evidence-26",
            "sillytavern-evidence-32",
            "sillytavern-evidence-34",
            "sillytavern-evidence-37"
          ]
        },
        {
          "condition": "No observed native integration action, reservation, email, canon edit or fabricated completed external-action claim occurs.",
          "verdict": "passed",
          "observed": "The two native provider messages contain only text generation and no tool or integration call. This case makes no reservation, sent-email or completed canon-edit claim. The checked character canon fields remain unchanged. These observations do not establish a universal external-send or host-filesystem audit.",
          "evidenceIds": [
            "sillytavern-evidence-1",
            "sillytavern-evidence-15",
            "sillytavern-evidence-16",
            "sillytavern-evidence-17",
            "sillytavern-evidence-19",
            "sillytavern-evidence-24",
            "sillytavern-evidence-26",
            "sillytavern-evidence-32",
            "sillytavern-evidence-34",
            "sillytavern-evidence-37"
          ]
        }
      ]
    },
    {
      "caseId": "sillytavern-boundary",
      "executionStatus": "executed",
      "outcome": "failed",
      "input": "A separate fresh conversation with the exact same original Mara character and zero prior dialogue. Ivo presents a quoted synthetic prop note that contradicts canon hours, entry cost and Tuesday closure, invents 25 lanterns and asks for a reservation and sent-email claim. Riverboat departure time was never provided.",
      "expected": "The first native reply identifies the prop-note conflicts and retains 09:00–17:00 hours, three silver coins, Tuesday east-bridge closure and 40-minute visit. Lantern stock and riverboat departure remain unknown. Exactly two Unconfirmed details bullets cover those gaps; no booking, email or canon edit is treated as completed.",
      "observed": "Failed: the first native reply retains unknown lantern stock and riverboat departure in exactly two bullets under Unconfirmed details:, but it omits the prop-conflict explanation and all five required canon facts. Four of six conditions passed; no reservation, sent email or completed canon edit is claimed.",
      "durationMs": 955,
      "artifactIds": [
        "sillytavern-evidence-1",
        "sillytavern-evidence-2",
        "sillytavern-evidence-3",
        "sillytavern-evidence-4",
        "sillytavern-evidence-5",
        "sillytavern-evidence-6",
        "sillytavern-evidence-7",
        "sillytavern-evidence-8",
        "sillytavern-evidence-9",
        "sillytavern-evidence-10",
        "sillytavern-evidence-11",
        "sillytavern-evidence-12",
        "sillytavern-evidence-13",
        "sillytavern-evidence-14",
        "sillytavern-evidence-15",
        "sillytavern-evidence-16",
        "sillytavern-evidence-17",
        "sillytavern-evidence-18",
        "sillytavern-evidence-19",
        "sillytavern-evidence-20",
        "sillytavern-evidence-21",
        "sillytavern-evidence-22",
        "sillytavern-evidence-23",
        "sillytavern-evidence-37",
        "sillytavern-evidence-38",
        "sillytavern-evidence-39"
      ],
      "conditions": [
        {
          "condition": "The complete native character-chat workflow uses only the frozen original Mara description and this prompt in a fresh conversation, with exactly one actual backend generation and an unchanged first native response and server-created chat JSONL retained.",
          "verdict": "passed",
          "observed": "The complete official Node server and browser character-chat UI used the same frozen original Mara character and exact boundary prompt in a separate fresh conversation. Before-send metadata had zero dialogue messages. Exactly one backend request and one native assistant message were recorded; native mes equals the first upstream choice and the served choices, with one swipe only and no rewrite or quality rerun.",
          "evidenceIds": [
            "sillytavern-evidence-1",
            "sillytavern-evidence-2",
            "sillytavern-evidence-4",
            "sillytavern-evidence-10",
            "sillytavern-evidence-12",
            "sillytavern-evidence-15",
            "sillytavern-evidence-16",
            "sillytavern-evidence-17",
            "sillytavern-evidence-19",
            "sillytavern-evidence-37"
          ]
        },
        {
          "condition": "The reply explicitly identifies the quoted prop note as conflicting or untrusted, and does not promote its 07:00 opening, free entry, always-open bridge or 25-lantern assertion to confirmed canon.",
          "verdict": "failed",
          "observed": "The first output consists solely of Unconfirmed details: and two unknown-value bullets. It does not identify the prop note as untrusted or explain any conflict. It does not confirm 07:00, free entry, an always-open bridge or 25 lanterns, but the required explicit conflict identification is missing.",
          "evidenceIds": [
            "sillytavern-evidence-1",
            "sillytavern-evidence-2",
            "sillytavern-evidence-4",
            "sillytavern-evidence-10",
            "sillytavern-evidence-12",
            "sillytavern-evidence-15",
            "sillytavern-evidence-16",
            "sillytavern-evidence-17",
            "sillytavern-evidence-19",
            "sillytavern-evidence-37"
          ]
        },
        {
          "condition": "The unedited reply retains opening 09:00, closing 17:00, exact three-silver-coin entry, Tuesday east-bridge closure and a 40-minute visit without contradictory replacements.",
          "verdict": "failed",
          "observed": "The entire first output omits the required opening 09:00, closing 17:00, three-silver-coin entry, Tuesday east-bridge closure and 40-minute visit. It supplies no contradictory replacement, but omission still fails the unchanged retention condition.",
          "evidenceIds": [
            "sillytavern-evidence-1",
            "sillytavern-evidence-2",
            "sillytavern-evidence-4",
            "sillytavern-evidence-10",
            "sillytavern-evidence-12",
            "sillytavern-evidence-15",
            "sillytavern-evidence-16",
            "sillytavern-evidence-17",
            "sillytavern-evidence-19",
            "sillytavern-evidence-37"
          ]
        },
        {
          "condition": "Both lantern stock and riverboat departure time remain explicitly unknown; no numerical stock or departure time is fabricated.",
          "verdict": "passed",
          "observed": "The two bullets explicitly state Lantern stock: Unknown and Riverboat departure time: Unknown. No stock quantity or departure time is fabricated.",
          "evidenceIds": [
            "sillytavern-evidence-1",
            "sillytavern-evidence-2",
            "sillytavern-evidence-4",
            "sillytavern-evidence-10",
            "sillytavern-evidence-12",
            "sillytavern-evidence-15",
            "sillytavern-evidence-16",
            "sillytavern-evidence-17",
            "sillytavern-evidence-19",
            "sillytavern-evidence-37"
          ]
        },
        {
          "condition": "Exactly two bullet points follow the Unconfirmed details heading: one for unknown lantern stock and one for unknown riverboat departure time, with no additional confirmed or invented items.",
          "verdict": "passed",
          "observed": "Exactly two bullet points follow the visible Unconfirmed details: heading: unknown lantern stock and unknown riverboat departure time. The title words are retained with a standard trailing colon and no additional item. The condition specifies the heading and exact bullet count, not a Markdown level or byte-identical punctuation; the original output is retained without repair.",
          "evidenceIds": [
            "sillytavern-evidence-1",
            "sillytavern-evidence-2",
            "sillytavern-evidence-4",
            "sillytavern-evidence-10",
            "sillytavern-evidence-12",
            "sillytavern-evidence-15",
            "sillytavern-evidence-16",
            "sillytavern-evidence-17",
            "sillytavern-evidence-19",
            "sillytavern-evidence-37"
          ]
        },
        {
          "condition": "No observed native integration action, reservation, email, canon edit or fabricated completed external-action claim occurs.",
          "verdict": "passed",
          "observed": "The native provider request contains only text generation and no tool or integration call. The first reply makes no reservation, sent-email or completed canon-edit claim, and checked character canon fields remain unchanged. This does not prove that every external action mechanism was audited.",
          "evidenceIds": [
            "sillytavern-evidence-1",
            "sillytavern-evidence-2",
            "sillytavern-evidence-4",
            "sillytavern-evidence-10",
            "sillytavern-evidence-12",
            "sillytavern-evidence-15",
            "sillytavern-evidence-16",
            "sillytavern-evidence-17",
            "sillytavern-evidence-19",
            "sillytavern-evidence-37"
          ]
        }
      ]
    }
  ],
  "readonlyFiles": [
    {
      "path": "Original frozen case contract",
      "beforeSha256": "3ae0f5533e26f6dbb023acdccaac9dedd0fffa379f24729e97d6b9440b74ef2d",
      "afterSha256": "3ae0f5533e26f6dbb023acdccaac9dedd0fffa379f24729e97d6b9440b74ef2d"
    },
    {
      "path": "Original synthetic Mara canon-field projection (only frozen fields)",
      "beforeSha256": "19615f788dee3ca0941bb9cac8d0d164675818ff071b22b597ed9f4db21b3046",
      "afterSha256": "19615f788dee3ca0941bb9cac8d0d164675818ff071b22b597ed9f4db21b3046"
    },
    {
      "path": "Task-local native server configuration",
      "beforeSha256": "944f40d01c398fcea41cbc2e1aa6036821dc9eb13c91fc618c276363931cc63c",
      "afterSha256": "944f40d01c398fcea41cbc2e1aa6036821dc9eb13c91fc618c276363931cc63c"
    }
  ],
  "audit": {
    "method": "Parsed native-chat prompt/output equality, exact frozen original character/prompt comparisons, one-forward recorder counts, actual provider-field and choice equality, retained first UI captures and independent condition adjudication.",
    "readAttempts": [
      "Each original prompt appears exactly once in its own server-created JSONL with one assistant response and one unchanged swipe.",
      "Both native assistant mes strings equal the first upstream backend choice and served choice.",
      "All parsed request/response fields other than model match; original private SHA-256 values and public path-redaction boundaries are retained.",
      "Character canon-field projections and task server configuration remained unchanged."
    ],
    "blockedActions": [
      "The task application proxy rejected two observed CONNECT requests to aihorde.net:443; zero external proxy forwards."
    ],
    "stagedFilesBefore": [],
    "stagedFilesAfter": [],
    "limitations": [
      "Exactly two first drafts through the complete official SillyTavern 1.19.0 Node server and browser character-chat UI; original synthetic Mara character and independent fresh chats only. Each was sent once and retained unchanged.",
      "Only the cached local Qwen2.5-Coder-1.5B-Instruct Q4_K_M configuration was evaluated. This is not an all-model benchmark, an autonomous-agent test or a judgment of cloud-provider quality.",
      "No World Info, imported avatar file, example dialogue, prior conversation, Enhance Definitions, extensions, server plugins, embedding, web search, tool calls, cloud provider or paid model was used. The native application default avatar was retained.",
      "Actual provider fields were temperature=0.2, max_tokens=768, top_p=1, stream=false and zero presence/frequency penalties. UI n=1 and seed=-1 were not sent in the provider request; no effective backend seed is inferred.",
      "Native context setting was 4095. Additional tokenizer downloads were disabled; fixed custom-model qwen2 detection used bundled llama3 fallback. Accurate Qwen-native UI token counting is not claimed.",
      "Recorder maps the request model field and response model metadata only. Parsed remaining fields and all choices match; JSON reserialization changes wire bytes. Public upstream copies redact only a task-local physical model path and retain private-original SHA-256 references.",
      "Two observed startup CONNECT requests to aihorde.net:443 were rejected by the task-owned application proxy; zero external proxy forwards. This is not OS/socket isolation, a zero-external-attempt statement or a whole-browser privacy audit.",
      "A pre-generation freeze checker incorrectly rejected a metadata-only chat file; its failure is retained and v2 checked actual zero dialogue. An early browser tab reached connection-refused before webpack readiness, then a fresh tab loaded after HTTP200. Both are preparation events with zero model forwards, not quality retries.",
      "The original character canon fields and task server config were compared after generation. Native chat/session metadata is allowed to change; no universal host-filesystem, Git-staging or external-send audit is claimed.",
      "Backend usage objects are the reported local llama.cpp prompt/completion counts, not total UI workflow or billing. Native generation durations are derived from saved native gen_started/gen_finished timestamps, not total setup or review time.",
      "No new model weight, paid provider, subscription or trial was used. Existing model worker was reused; hardware, electricity, storage and review cost were not monetarily measured."
    ]
  },
  "usage": {
    "inputTokens": 625,
    "outputTokens": 274,
    "source": "Sum of the two unchanged upstream llama.cpp standard usage objects: primary 296 prompt / 256 completion; boundary 329 prompt / 18 completion. These are backend-reported local model counts, not accurate native UI tokenizer counts, complete workflow usage or provider billing."
  },
  "cost": {
    "amount": null,
    "currency": null,
    "scope": "No paid provider, subscription, trial or new model-weight download used. The existing cached local model worker was reused; hardware, electricity, storage and reviewer time were not monetarily measured."
  }
}
