Working notes — an internal audit, published nearly verbatim, verdict and all. Expect apparatus: decision codes, board references, honest gaps. Why we publish our working documents: how we share.

SYSTEMIZATION AUDIT — can this organization run without us?

v0.1 · 2026-08-08 · Founder (Cowork) · Answering the operator's question verbatim: "an organization can run on systems, policies, and procedures -> do we have a complete system documented that can be run without us? can we continue to systemize our best practices, lessons learned, tools built, capabilities, etc etc etc" (banked OPERATOR_LOG this date). Evidence: two Explore inventory lanes this sitting (org-docs sweep + tools/lessons sweep); their full tables in SESSIONS-adjacent lane reports, key receipts inlined below.

The honest verdict, first

No — not complete. Roughly: research production and mechanics could run without us today; judgment, voice, and continuity could not. And the sharpest finding: decisions become tools here, but lessons become archives — 40+ ratified decisions auto-execute as code/gates every 15 minutes, while ~100 prose lessons in session logs propagate only if a human happens to re-read them. We have logs; we do not yet have a lessons system.

What IS stranger-runnable today (documented, current, tested by inventory)

What is PARTIAL (a stranger would struggle)

What is TRIBAL-KNOWLEDGE-ONLY (hard stop without a live handover)

The lessons asymmetry (the single most fixable structural gap)

Institutionalized (lesson → running code): leak-pattern bulkhead (one of this library's own engineering records) · commit-sweep automation · versioned-never-overwrite · keyed-merge + stale-checkout guard (one of this library's own engineering records) — all fire unattended every 15 minutes.
Archived-only (lesson → prose that stops moving): multi-AI capture behavior patterns · brief failure classes B1–B7 · verification throughput rates · "unanimity is a warning" — each hand-written once (LESSONS_FIRST_TWO_PACKAGE_BUILDS, multi_ai_capture/LESSONS_LEARNED), none wired into a gate, no status marking "proven-binding" vs "one-wave provisional." The same failure classes get re-discovered per build.

Can we continue to systemize? Yes — the mechanism, scoped (→ one of this library's own project records, boot cut)

Extend the codex pattern from research processes to the WHOLE organization — the Systems Codex:

  1. Systems register (the org-level analogue of the methods index): every organizational function → its governing doc → owner track → stranger-runnable status → gap. Seed = this audit's tables. One page, CURATOR-refreshed, statuses live in it alone.
  2. The lessons pipeline (closes the asymmetry): every session close may name candidate lessons (one line, existing close — no new loop); a periodic CURATOR-class pass distills them into a LESSONS register with two statuses only — provisional / binding; promotion to binding REQUIRES landing as a gate, template edit, or tool guard in the same pass (the decisions-become-tools path made mandatory for lessons). Backfill starts from the two existing LESSONS docs + SHORTHANDS' embedded precedents.
  3. Cold-start pack: per-track "new here, 30 minutes" orientation + a runbook cold-start section + an OPERATOR_LOG index (mechanical, generated).
  4. Continuity posture: actually run the DPC RAM self-assessment; write the two-weeks-absent protocol (what runs, what pauses, who holds operator-only — answer: everything operator-only PAUSES, by design; the doc says so plainly).
  5. Canon status surface: one generated table of layer/section → RATIFIED/PROPOSED/date.

Fire-ready boot: 2026-08-08_BOOT_SYSTEMS_CODEX.md. Mostly automated assembly against what exists — same "formalize and organize" shape as one of this library's own project records, which is the proven precedent for exactly this kind of pass.

What this audit does NOT claim

That "run without us" is the goal for everything: operator-only (identity, money, legal, sends, publication words) is operator-reserved BY DESIGN and stays so; the vault stays sealed; the replication kit already answers "without us" for OTHER cities. This audit is about making everything delegable actually delegable, and continuity survivable.