← Files ClaraARCHIVED FILE

privacy/workflows/html-deck.json

6.11 KB · Oct 3, 2026 · 06:30 UTC

↓ Download file

{
  "schema_version": 1,
  "workflow": "html-deck",
  "display_name": "HTML Deck",
  "governed_paths": [
    "skills/html-deck/SKILL.md",
    "skills/html-deck/assets",
    "skills/html-deck/references",
    "skills/html-deck/scripts",
    "scripts/verify_advisory_html_delivery.py",
    "scripts/advisory_delivery.py",
    "scripts/advisor_case_core.py",
    "scripts/advisory_evidence_lineage.py",
    "scripts/case_store.py",
    "scripts/bounded_process.py",
    "scripts/self_relaunch.py",
    "scripts/managed_python_runtime.py",
    "scripts/_managed_python_runtime.py",
    "requirements.txt",
    "components.json",
    "scripts/advisory_lineage_labels.py"
  ],
  "codex_context": {
    "policy": "real_professional_data_may_enter_codex_context",
    "classes": [
      {
        "id": "source-and-case-material",
        "purpose": "Build a source-faithful presentation",
        "content": "Word, PDF, Markdown, spreadsheet, case-workspace, sealed JSON or CSV evidence artifacts, or mixed source material, including names, facts, figures, qualifications, evidence gaps, and advisor judgement"
      },
      {
        "id": "deck-work",
        "purpose": "Plan, compose, revise, and review the presentation",
        "content": "Storyline, claims, stable claim and evidence receipt identifiers, dependency edges, evidence bundle and binding records, source hashes, resolved values, slide titles and text, speaker notes, layout choices, content and evidence ledgers, exact hash-bound output appearances written to the shared advisory claim register, workpaper and delivery checkpoints, HTML/CSS, screenshots, and QA findings"
      },
      {
        "id": "embedded-and-retained-deck-artifacts",
        "purpose": "Review what the deck contains and preserve exact evidence across revisions",
        "content": "Editable plans and full source ledgers, resolved evidence values, source labels and hashes, speaker notes, final embedded ledgers, ZIPs, previous content-addressed builds, revision maps, screenshots, print-preview PDFs and browser console diagnostics may enter model context. The publication content ledger omits source locators unless publish_locator is true, but retains source labels, IDs, hashes and slide records; this is field filtering, not automatic anonymisation. Hidden notes and JSON remain readable in the HTML. Bound previous builds are retained until separately removed; the cleanup checker does not enforce filesystem access. A hashed directory and noindex metadata provide neither authentication nor a deletion guarantee."
      },
      {
        "id": "shared-case-normalization-attempts",
        "purpose": "Inspect case presentation imports and any normalization diagnostics used by this workflow",
        "content": "When a presentation is imported through the shared case helper and requires normalization, local attempt directories retain converted presentation files and converter stdout/stderr logs. They may contain source document content, metadata and local paths, including after failure or cancellation. Reading them supplies their contents to model context. This conditional import path does not mean every workflow execution converts a presentation or sends these files to a hosted service. Retained attempt files remain until separately removed."
      }
    ]
  },
  "ordinary_codex_model_processing": {
    "scope": "content_supplied_to_the_codex_model",
    "account_arrangement": "user_selected_chatgpt_or_codex_account",
    "separate_clara_recipient_or_arrangement": false,
    "automatic_anonymisation": false,
    "local_filter_or_aggregate": "only_when_useful_for_professional_work",
    "plan_visibility": "not_inspected_or_enforced_by_clara"
  },
  "codex_account_boundary": {
    "selected_by": "firm_or_user",
    "clara_runtime_enforcement": "none",
    "review_timing": "before_professional_use_and_when_account_or_terms_change",
    "review_items": [
      "account_or_workspace_plan",
      "model_training_data_controls",
      "retention_and_deletion_controls"
    ],
    "per_case_record_required": false
  },
  "hosted_service_ids": [],
  "boundaries_beyond_codex": [
    {
      "id": "direct-cli-python-dependency-setup",
      "kind": "public_research",
      "destination": "Python Package Index (PyPI) or the index selected by the user's Python configuration",
      "purpose": "Prepare the declared Python dependencies before running a documented workflow CLI",
      "content": "Published package requirements and ordinary package-index request metadata. Existing workflow arguments are forwarded to a local Python child; they are not included in the pip install command.",
      "optional": false,
      "requires_confirmation": false,
      "controls": [
        "The direct CLI selects published core or registered component requirements before importing workflow modules.",
        "The launcher preserves the working directory and arguments in the local child process; this does not redact arguments or change the workflow data boundary.",
        "An existing matching runtime is reused. Setup installs into a fingerprinted user-scoped environment and propagates failure; it does not install into the case folder."
      ]
    }
  ],
  "security_controls": [
    {
      "id": "static-resource-and-markup-checks",
      "control": "Static validation rejects detected remote resource references, external CSS URLs/imports, executable attributes and named dynamic-network/evaluation patterns. These finite syntax checks do not prove that arbitrary JavaScript cannot make network requests. Current browser QA opens a fresh context without a request-interception policy; it is not a network sandbox."
    },
    {
      "id": "publication-source-locator-filter",
      "control": "The embedded content-ledger projection excludes each source locator unless its explicit publish_locator flag is true. It retains source labels, hashes and slide records and does not detect confidential content in those fields."
    }
  ],
  "review": {
    "reviewed_at": "2026-09-15",
    "reviewed_by": "privacy-surface-review",
    "basis": "external_boundary_review_of_workflow_source",
    "source_fingerprint": "e1cc8ab03ba031cad5345fb8432d8195ee8a0fb58f5c08637e8167cd6919d4e9"
  }
}

SHA-256: e8367040da42a5ffe002286290be2421bd266f74c8efce68a26f22deaba8bd82