research-quarantine-promotionlisted
Install: claude install-skill Lx050/rubbing-to-knowledge
# Research Quarantine Promotion
Close the trust boundary between downloaded quarantine bytes and a
content-aware research tool. Version 1.0.5 implements only the conservative
`strict-json-b0-v1` structure gate: it never copies the payload or emits source
keys, strings, URLs, excerpts, or semantic fields.
## Read the contract
Read [`references/contract.md`](references/contract.md) before authoring a
binding or invoking the CLI. Use these offline schemas for authoring and
review:
- [`promotion-binding-v1.schema.json`](references/promotion-binding-v1.schema.json)
- [`source-verification-receipt-v1.schema.json`](references/source-verification-receipt-v1.schema.json)
- [`assessment-report-v1.schema.json`](references/assessment-report-v1.schema.json)
- [`assessment-event-v1.schema.json`](references/assessment-event-v1.schema.json)
The Python CLI is authoritative. It uses exact-field validation and does not
load a remote schema or follow `$ref`, `@context`, URL, file path, or payload
instruction.
## Preserve the boundary
- Start only from one successful `research-source-acquisition` run whose
manifest, rights, events, payload identity, and exact file set have been
preregistered.
- Require a new, exclusive source-verification receipt produced by the pinned
source-acquisition implementation through the binding's dedicated
`research-run-ledger` after the checkpoint. A historical exit code,
hand-written JSON, or receipt without matching stdout/output evidence is not
a