Finish required CI for reviewed startup shutdown ownership
A11 fix is pushed and locally verified at 4b064886; required run d657047e is pending amid shared allocation failures.
A11 fix is pushed and locally verified at 4b064886; required run d657047e is pending amid shared allocation failures.
Snapshot: 2026-09-27 18:13 UTC. CN14 outcome is REQUEUED-INFRA under the shared allocation health rule; claim is being released.
The old monitor covered the full adoption pass, including probes, canary creation and state writes. The shutdown hook needed it, so a held adoption step prevented restart cleanup inside the watchdog's unchanged 10-second grace. Adoption and cleanup now run outside that monitor. Restart shutdown interrupts adoption before waiting for its current ownership transition, then releases acquired children; unvisited children retain their previous release. Acquired handles are published before interruptible metadata callbacks. Completion latches keep one cleanup owner through completion, including rollback. Final shutdown completes adoption and stops every child.
Independent review found an initial unconditional-cancellation version would leave unvisited children running on final shutdown. A fail-first control proved that issue, and interruption is now scoped to restart handoff. The reviewer approved the final full diff and test design with no remaining blocking finding. OS operations that are individually non-interruptible are source-reviewed, not claimed as a tested cancellation guarantee.
CN14/out/findings.md records the incremental plan and facts. CN14/out/merge-candidate-635.md contains the review/validation record; its verdict remains pending required CI. Individual baseline and repeated XML files, full-local-final.xml, full-suite-summary.txt and review-ownership.md retain evidence and complete failure stack traces. Checkout is CN14/ws/ContainerNursery, clean at the pushed head. Existing W44 history: https://github.com/CodexCoder21Organization/ContainerNursery/tree/wip/handoff-evidence-W44/handoff-evidence/W44.
While confirming required CI for https://github.com/CodexCoder21Organization/ContainerNursery/pull/635 at 4b064886743daca6c251ca3067d3b467c4b667f2, the buildtest list showed three allocation failures scheduled around 17:58 UTC on 2026-09-27. All are newer than the policy health cutoff. The policy states that two or more recent infrastructure failures require checkpointing and REQUEUED-INFRA without retrying. The PR's own required run https://buildtest.kotlin.build/run?id=d657047e was PROVISIONING during the read-only watcher assessment; this is not an observed code failure or evidence that this particular run has failed.
Run https://buildtest.kotlin.build/run?id=e449f129 (BuildTestRunner), scheduledAt=1790531937946, completedAt=1790532080645:
Could not verify droplet cleanup before requeueing runId=e449f129 during allocation failure: DropletServiceCallStalledException: Droplet service call listDroplets stalled for 30000ms during findDropletsByNamePrefix.. The run was failed without re-entering admission.
Run https://buildtest.kotlin.build/run?id=b28264c0 (CodexCoder21Organization/TemplateCli), scheduledAt=1790531929987, completedAt=1790532080639:
Could not verify droplet cleanup before requeueing runId=b28264c0 during allocation failure: DropletServiceCallStalledException: Droplet service call listDroplets stalled for 30000ms during findDropletsByNamePrefix.. The run was failed without re-entering admission.
Run https://buildtest.kotlin.build/run?id=3880dde5 (lane-FBTE2), scheduledAt=1790531902218, completedAt=1790532050634:
Could not verify droplet cleanup before requeueing runId=3880dde5 during allocation failure: RuntimeException: Sandboxed code threw an exception: java.lang.InternalError: Exception encountered in implementation of foundation/url/sjvm/intrinsics/ServiceBridge:rpc(Ljava/lang/String;Ljava/util/Map;)Ljava/util/Map; : foundation.url.resolver.PersistentRpcConnection$AmbiguousRpcRequestException: RPC request 'listDroplets' to service 'digitalocean-droplets' has an ambiguous outcome because its transport failed after the request write began. The request was not replayed because the remote handler may already have run. Original transport failure: Persistent RPC connection to service 'digitalocean-droplets' was closed while requests were still pending. Reader transport failure: java.io.EOFException: Stream closed while reading message data (read 0 of 4 bytes). cause: foundation.url.resolver.UrlResolutionException: Persistent RPC connection to service 'digitalocean-droplets' was closed while requests were still pending. Reader transport failure: java.io.EOFException: Stream closed while reading message data (read 0 of 4 bytes).. The run was failed without re-entering admission.
Impact: local work and PR push are complete, but the lane cannot declare a green required-check merge candidate. No workaround or retry was applied; leave the existing required run intact. Suggested owner action: inspect allocation/listDroplets transport and cleanup confirmation, then assess the existing run. The report-challenge CLI was not invoked because it automatically enqueues and merges, which this lane expressly forbids. This evidence is retained in the handoff and lane files.
No status reports yet.