← Files ClaraARCHIVED FILE
privacy/workflows/research-video.json
8.12 KB · Oct 6, 2026 · 06:02 UTC
{
"schema_version": 1,
"workflow": "research-video",
"display_name": "Research Video",
"governed_paths": [
"skills/research-video/SKILL.md",
"skills/research-video/agents/openai.yaml",
"skills/research-video/references/hosted-voice-bundle.schema.json",
"skills/research-video/references/scene-plan.schema.json",
"skills/research-video/scripts/research_video.py",
"scripts/self_relaunch.py",
"scripts/managed_python_runtime.py",
"scripts/_managed_python_runtime.py",
"requirements.txt",
"components.json",
"scripts/_shared_python_runtime.py",
"requirements-shared-core.txt",
"requirements-shared-ocr.txt",
"constraints-shared-macos-py312.txt",
"scripts/_python_bootstrap.py",
"scripts/bounded_process.py",
"scripts/artifact_publication.py",
"scripts/case_store.py",
"scripts/media_publication.py",
"scripts/render_attempt.py"
],
"codex_context": {
"policy": "real_professional_data_may_enter_codex_context",
"classes": [
{
"id": "research-scenes-and-sources",
"purpose": "Select and order approved scenes and write source-faithful narration",
"content": "Research scene images; supplied reports, figures, maps, statistics, labels and qualifications; accepted Vera visuals and review artifacts when handed off; source-basis references; audience, story objective, narration language and scene order"
},
{
"id": "video-plan-and-review",
"purpose": "Prepare, review and validate the narrated research video",
"content": "Scene plan, narration, language, hash-bound Mparanza voice request and returned OpenAI audio artifacts, hosted bundle manifest, localized AI-voice disclosure, visual fingerprints, motion choices, approval record, captions, timing, render report, media QA, caveats and final review findings"
},
{
"id": "local-render-attempt-evidence",
"purpose": "Inspect failed renders, verify the complete published generation and preserve review evidence",
"content": "Retained local attempt directories and published snapshots can contain copies of scene images, intermediate/final video, normalized narration audio, captions, narration and approval records, source references, filenames/local paths, process stdout/stderr and prior reports. These copies remain until separately removed; retry does not automatically delete them. Any of this material explicitly opened by Codex can enter model context. It is not part of the hosted narration request."
}
]
},
"ordinary_codex_model_processing": {
"scope": "content_supplied_to_the_codex_model",
"account_arrangement": "user_selected_chatgpt_or_codex_account",
"separate_clara_recipient_or_arrangement": false,
"automatic_anonymisation": false,
"local_filter_or_aggregate": "only_when_useful_for_professional_work",
"plan_visibility": "not_inspected_or_enforced_by_clara"
},
"codex_account_boundary": {
"selected_by": "firm_or_user",
"clara_runtime_enforcement": "none",
"review_timing": "before_professional_use_and_when_account_or_terms_change",
"review_items": [
"account_or_workspace_plan",
"model_training_data_controls",
"retention_and_deletion_controls"
],
"per_case_record_required": false
},
"hosted_service_ids": [
"research-video-voice"
],
"boundaries_beyond_codex": [
{
"id": "approved-hosted-narration",
"kind": "hosted_service",
"hosted_service_id": "research-video-voice",
"destination": "Authenticated Mparanza Research Video Voice and OpenAI speech service configured by Mparanza",
"purpose": "Generate one reviewable narration WAV per approved video scene without requiring a user API key",
"content": "Mparanza receives exact approved narration, language, stable scene identifiers, plan and approval hashes, and explicit confirmation. OpenAI receives each scene's exact narration plus fixed model, selected voice, and delivery instructions. Images, research sources, source-basis notes, Vera artifacts, and local paths remain local.",
"optional": false,
"requires_confirmation": false,
"controls": [
"The hosted request is created only after explicit approval and is bound to the approved plan and approval hashes.",
"A valid Mparanza session is required; every authenticated account is currently authorized because no Research Video email allowlist is applied.",
"Mparanza builds the response in memory and does not write requests or audio to application storage; provider-side retention at OpenAI is not established by plugin source."
]
},
{
"id": "direct-cli-python-dependency-setup",
"kind": "public_research",
"destination": "Python Package Index (PyPI) or the index selected by the user's Python configuration",
"purpose": "Prepare the published shared Vera, Clara and Lucia core dependencies, and validate the selected workflow, in one user-scoped Python 3.12 environment per operating-system host.",
"content": "Shared published package names and version constraints plus ordinary package-index request metadata. Client files, prompts, case data and generated work are not included in installer requests. Workflow arguments stay in the local child process.",
"optional": false,
"requires_confirmation": false,
"controls": [
"Only published shared requirements are installed, never requirements derived from client material or prompts.",
"One fixed environment outside plugin source and client folders is reused across products and modules. Explicitly approved OCR is retained in the same environment.",
"A reader lease prevents setup from modifying packages while managed workflows run. Setup validates dependencies before writing the readiness receipt. Failed updates leave execution unavailable until repair.",
"Older plugin policies cannot downgrade an environment created by a newer shared policy revision."
]
},
{
"id": "declared-python312-retrieval",
"kind": "public_research",
"destination": "Astral python-build-standalone CPython distributions on GitHub, or the Python download mirror explicitly configured in uv",
"purpose": "Provision the declared CPython 3.12 workflow interpreter when absent, automatically bootstrapping uv if needed",
"content": "The fixed CPython 3.12 version request, operating-system and architecture selection, and ordinary download request metadata. Setup does not read client files or add prompts, case material or generated reports to this request.",
"optional": false,
"requires_confirmation": false,
"controls": [
"Use an installed CPython 3.12 when available; otherwise use uv or automatically download the published uv 0.12.10 wheel, verify its pinned SHA-256, and provision private CPython 3.12 without changing system Python or shell profiles.",
"Probe the selected interpreter before creating the dependency environment; never fall back to executing workflows with another Python minor version.",
"A failed download or interpreter probe stops setup; existing environments and client files remain intact."
]
}
],
"security_controls": [
{
"id": "hash-bound-render-approval",
"control": "The request, attachment and rendering steps verify explicit user-confirmation evidence for the approved plan, narration script, localized AI-voice disclosure, review packet and every visual SHA-256. The hosted request is created only after approval and includes the approval and plan hashes."
},
{
"id": "hosted-voice-artifact-binding",
"control": "The local attachment step requires the Mparanza hosted source, fixed provider policy, exact request, approval, language and scene order; rejects unsafe or undeclared ZIP entries; converts returned WAV files to normalized PCM; and binds their SHA-256, metadata and duration to the run."
}
],
"review": {
"reviewed_at": "2026-09-15",
"reviewed_by": "privacy-surface-review",
"basis": "external_boundary_review_of_workflow_source",
"source_fingerprint": "a2fb54439f290004259433833742d664b6b5098868d19c56267a34b0c7dbd47b"
}
}
SHA-256: a150eed3b8ed3e368243675d16b9becb5553f5855b64ee0e679ad2013040a998