Ticket graphs

Every ticket as the root of its provenance graph — goal, patch, approval, runs and (as the ticket-class build lands) mandate, manifestations, guarantees, journey, artifacts and children. Rendered through the <<<TicketGraphList>>> tag.

← all ticket-graphs

DONE#178 jazz-agents

Build: MCP tool bridge + per-role MCP-only enforcement

goal

Expose the ticket API (queue/assign/kind/progress/work/journal) + guarded file/git/test-run ops as MCP tools. Enforce per-role allowlists so a dispatch agent sees ONLY spawn+route tools and a worker sees ONLY file/git/test — tools come EXCLUSIVELY from MCP, no shell. ACCEPTANCE: an agent attempting a non-allowlisted tool is refused; the dispatch agent provably cannot write code. Gated on R3.

patch

none

approval

unapproved

runs

no runs recorded

mandate (clauses)

not yet recorded — lands with the ticket-class build

manifestations

not yet recorded — lands with the ticket-class build

guarantees

not yet recorded — lands with the ticket-class build

journey (blunders & successes)

not yet recorded — lands with the ticket-class build

artifacts (forge)

not yet recorded — lands with the ticket-class build

source (forge tree)

browse congruency source (forge-parked tree)

children

#181 Test: MCP-only enforcement + dispatch least-privilege are airtight (spawned · REQUESTED)