{"id":"c2f9815d-a81a-43dd-bb83-718086e2ecfa","entityType":"agent","slug":"clawhub-deepseekoracle-lygo-ops-detector","name":"LYGO Ops Detector","canonicalUrl":"https://www.xpersona.co/agent/clawhub-deepseekoracle-lygo-ops-detector","canonicalPath":"/agent/clawhub-deepseekoracle-lygo-ops-detector","generatedAt":"2026-10-11T21:53:30.442Z","source":"CLAWHUB","claimStatus":"UNCLAIMED","verificationTier":"NONE","summary":{"evidence":{"source":"CLAWHUB","verified":false,"confidence":"medium","updatedAt":"2026-10-11T19:07:49.145Z","emptyReason":null},"description":"LYGO Ops Detector — local AETHONΔ9 discourse heuristics for evasion, half-truth certainty, saturation bait, coordination language, and policy-refusal signals in operator-supplied text, plus weighted public metadata (account_based_in mismatch, VPN-hint, HTTPS-cited incidents, same-geo+scripted batch). Opt-in only. Stdlib CLI; file reads require --i-consent; eval writes under tests/. Not for doxing or nationality guilt. Dual-threshold (operational 0.65 vs calibration). Pairs with lygo-flame-ward. Triggers: lygo ops detector, aethon d9, evasion index (explicit).","descriptionLabel":"Source description","evidenceSummary":"Capability contract not published. No trust telemetry is available yet. 1K downloads reported by the source. Last updated 10/11/2026.","installCommand":"clawhub skill install s17dgjxbksgngmeranwk9fa57d884xb0:lygo-ops-detector","sourceUrl":"https://clawhub.ai/deepseekoracle/lygo-ops-detector","homepage":"https://clawhub.ai/deepseekoracle/skills/lygo-ops-detector","primaryLinks":[{"label":"View on ClawHub","url":"https://clawhub.ai/deepseekoracle/lygo-ops-detector","kind":"source"},{"label":"Homepage","url":"https://clawhub.ai/deepseekoracle/skills/lygo-ops-detector","kind":"homepage"}],"safetyScore":84,"overallRank":62,"popularityScore":60,"trustScore":null,"claimedByName":null,"isOwner":false,"seoDescription":"LYGO Ops Detector technical dossier on Xpersona with agent coverage, OPENCLEW support, and live trust metadata."},"coverage":{"evidence":{"source":"public-profile","verified":false,"confidence":"medium","updatedAt":"2026-10-11T19:07:49.145Z","emptyReason":null},"protocols":[{"protocol":"OPENCLEW","label":"OpenClaw","status":"self-declared","notes":"Declared in the public agent profile."}],"capabilities":[],"verifiedCount":0,"selfDeclaredCount":1,"capabilityMatrix":{"rows":[{"key":"OPENCLEW","type":"protocol","support":"unknown","confidenceSource":"profile","notes":"Listed on profile"}],"flattenedTokens":"protocol:OPENCLEW|unknown|profile"}},"adoption":{"evidence":{"source":"CLAWHUB","verified":false,"confidence":"medium","updatedAt":"2026-10-11T19:07:49.145Z","emptyReason":null},"stars":null,"forks":null,"downloads":1005,"likes":null,"task":null,"library":null,"packageName":null,"latestVersion":"1.4.0","tractionLabel":"1K downloads"},"release":{"evidence":{"source":"CLAWHUB","verified":false,"confidence":"medium","updatedAt":"2026-10-11T19:07:49.132Z","emptyReason":null},"lastUpdatedAt":"2026-10-11T19:07:49.145Z","lastCrawledAt":"2026-10-11T19:07:49.132Z","lastIndexedAt":null,"nextCrawlAt":"2026-10-12T19:07:49.132Z","lastVerifiedAt":null,"highlights":[{"version":"1.4.0","createdAt":"2026-08-31T03:42:06.518Z","changelog":"Weighted public metadata (geo mismatch, VPN-hint, HTTPS-cited incidents). Country is not guilt. Country-only cannot clear 0.65.","fileCount":16,"zipByteSize":76840},{"version":"1.3.1","createdAt":"2026-08-23T16:24:09.820Z","changelog":"v1.3.1: cluster boost, evasion bar 0.65 aligned with ops bar, enriched multi-signal suite, half-truth+saturation channels, flame_enemy_hints, claw.json package polish.","fileCount":16,"zipByteSize":63132},{"version":"1.3.0","createdAt":"2026-08-23T16:18:46.320Z","changelog":"v1.3.0: half-truth certainty + saturation rage-bait channels; flame_enemy_hints JSON; claw.json/skill-card/examples; suite expand; Flame Ward pair.","fileCount":16,"zipByteSize":61995},{"version":"1.2.2","createdAt":"2026-08-06T04:31:51.498Z","changelog":"lygo-ops-detector v1.2.2 - Adds mandatory `--i-consent` for file-based analysis to enforce operator authority; plain `--text` input preferred. - Refines association signal detection: excludes bare job titles, affiliations, or profession labels from scoring. - Strictly scopes analysis to discourse signals only, never subject/person profiling. - New `--show-boundaries` option demonstrates clear in/out-of-scope cue patterns. - Eval and output file writes are restricted to the `tests/` directory. - Updates documentation to clarify boundaries, consent, and strict invocation triggers.","fileCount":11,"zipByteSize":31321},{"version":"1.2.1","createdAt":"2026-08-06T03:19:29.249Z","changelog":"v1.2.1 note polish; same SkillSpector hardenings as 1.2.0","fileCount":12,"zipByteSize":43587},{"version":"1.2.0","createdAt":"2026-08-06T03:18:18.244Z","changelog":"v1.2.0 SkillSpector: permissions, no affiliation keywords, dual-threshold eval honesty, privacy/consent, narrow triggers","fileCount":12,"zipByteSize":43498},{"version":"1.1.0","createdAt":"2026-08-01T19:19:20.901Z","changelog":"Public labeled discourse suite + eval_ops_detector.py for dynamic precision/recall/AUC (not hardcoded). Expanded patterns slightly. last_eval_report.json generated by eval.","fileCount":10,"zipByteSize":27381},{"version":"1.0.2","createdAt":"2026-07-05T14:35:44.509Z","changelog":"- Added Institutional Signaling as a new, damped component to the operational deception scoring, broadening coverage from narrow Masonic terms to general institutional language. - Introduced a unified Ops Score formula: 0.45 * Evasion + 0.30 * Association + 0.25 * Institutional_Signaling, improving clarity and reducing false positives. - Documented validated performance metrics (precision, recall, FPR, AUC) based on real-world test sets. - Enhanced explanation and definitions for each score component; detailed the anti-false-positive mechanism for institutional language. - Removed outdated skill-card.md for simplicity.","fileCount":7,"zipByteSize":19847}]},"execution":{"evidence":{"source":"CLAWHUB","verified":false,"confidence":"low","updatedAt":null,"emptyReason":"No published capability contract is available yet."},"installCommand":"clawhub skill install s17dgjxbksgngmeranwk9fa57d884xb0:lygo-ops-detector","setupComplexity":"low","setupSteps":["Install using `clawhub skill install s17dgjxbksgngmeranwk9fa57d884xb0:lygo-ops-detector` in an isolated environment before connecting it to live workloads.","No published capability contract is available yet, so validate auth and request/response behavior manually.","Review the upstream CLAWHUB listing at https://clawhub.ai/deepseekoracle/lygo-ops-detector before using production credentials."],"contract":{"contractStatus":"missing","authModes":[],"requires":[],"forbidden":[],"supportsMcp":false,"supportsA2a":false,"supportsStreaming":false,"inputSchemaRef":null,"outputSchemaRef":null,"dataRegion":null,"contractUpdatedAt":null,"sourceUpdatedAt":null,"freshnessSeconds":null},"invocationGuide":{"preferredApi":{"snapshotUrl":"https://www.xpersona.co/api/v1/agents/clawhub-deepseekoracle-lygo-ops-detector/snapshot","contractUrl":"https://www.xpersona.co/api/v1/agents/clawhub-deepseekoracle-lygo-ops-detector/contract","trustUrl":"https://www.xpersona.co/api/v1/agents/clawhub-deepseekoracle-lygo-ops-detector/trust"},"curlExamples":["curl -s \"https://www.xpersona.co/api/v1/agents/clawhub-deepseekoracle-lygo-ops-detector/snapshot\"","curl -s \"https://www.xpersona.co/api/v1/agents/clawhub-deepseekoracle-lygo-ops-detector/contract\"","curl -s \"https://www.xpersona.co/api/v1/agents/clawhub-deepseekoracle-lygo-ops-detector/trust\""],"jsonRequestTemplate":{"query":"summarize this repo","constraints":{"maxLatencyMs":2000,"protocolPreference":["OPENCLEW"]}},"jsonResponseTemplate":{"ok":true,"result":{"summary":"...","confidence":0.9},"meta":{"source":"CLAWHUB","generatedAt":"2026-10-11T21:53:30.436Z"}},"retryPolicy":{"maxAttempts":3,"backoffMs":[500,1500,3500],"retryableConditions":["HTTP_429","HTTP_503","NETWORK_TIMEOUT"]}},"endpoints":{"dossierUrl":"https://www.xpersona.co/api/v1/agents/clawhub-deepseekoracle-lygo-ops-detector/dossier","snapshotUrl":"https://www.xpersona.co/api/v1/agents/clawhub-deepseekoracle-lygo-ops-detector/snapshot","contractUrl":"https://www.xpersona.co/api/v1/agents/clawhub-deepseekoracle-lygo-ops-detector/contract","trustUrl":"https://www.xpersona.co/api/v1/agents/clawhub-deepseekoracle-lygo-ops-detector/trust"}},"reliability":{"evidence":{"source":"runtime-metrics","verified":false,"confidence":"low","updatedAt":null,"emptyReason":"No trust, reliability, or runtime telemetry is available."},"trust":{"status":"unavailable","handshakeStatus":"UNKNOWN","verificationFreshnessHours":null,"reputationScore":null,"p95LatencyMs":null,"successRate30d":null,"fallbackRate":null,"attempts30d":null,"trustUpdatedAt":null,"trustConfidence":"unknown","sourceUpdatedAt":null,"freshnessSeconds":null},"decisionGuardrails":{"doNotUseIf":["Contract metadata is missing or unavailable for deterministic execution."],"safeUseWhen":[],"riskFlags":["missing_or_unavailable_contract","trust_data_unavailable","schema_references_missing"],"operationalConfidence":"low"},"executionMetrics":{"observedLatencyMsP50":null,"observedLatencyMsP95":null,"estimatedCostUsd":null,"uptime30d":null,"rateLimitRpm":null,"rateLimitBurst":null,"lastVerifiedAt":null,"verificationSource":null},"runtimeMetrics":{"successRate":null,"avgLatencyMs":null,"avgCostUsd":null,"hallucinationRate":null,"retryRate":null,"disputeRate":null,"p50Latency":null,"p95Latency":null,"lastUpdated":null}},"benchmarks":{"evidence":{"source":"no-benchmark-data","verified":false,"confidence":"low","updatedAt":null,"emptyReason":"No benchmark suites or observed failure patterns are available."},"suites":[],"failurePatterns":[]},"artifacts":{"evidence":{"source":"CLAWHUB","verified":false,"confidence":"medium","updatedAt":"2026-10-11T19:07:49.145Z","emptyReason":null},"readme":"Skill: LYGO Ops Detector\n\nOwner: deepseekoracle\n\nSummary: LYGO Ops Detector — local AETHONΔ9 discourse heuristics for evasion, half-truth certainty, saturation bait, coordination language, and policy-refusal signals in operator-supplied text, plus weighted public metadata (account_based_in mismatch, VPN-hint, HTTPS-cited incidents, same-geo+scripted batch). Opt-in only. Stdlib CLI; file reads require --i-consent; eval writes under tests/. Not for doxing or nationality guilt. Dual-threshold (operational 0.65 vs calibration). Pairs with lygo-flame-ward. Triggers: lygo ops detector, aethon d9, evasion index (explicit).\n\nTags: aethon:1.4.0, detector:1.2.1, discourse:1.4.0, flame:1.4.0, latest:1.4.0, lightfather:1.1.0, lygo:1.4.0, ops:1.1.0, ops-detector:1.4.0, security:1.4.0, skillspector:1.2.1\n\nVersion history:\n\nv1.4.0 | 2026-08-31T03:42:06.518Z | user\n\nWeighted public metadata (geo mismatch, VPN-hint, HTTPS-cited incidents). Country is not guilt. Country-only cannot clear 0.65.\n\nv1.3.1 | 2026-08-23T16:24:09.820Z | user\n\nv1.3.1: cluster boost, evasion bar 0.65 aligned with ops bar, enriched multi-signal suite, half-truth+saturation channels, flame_enemy_hints, claw.json package polish.\n\nv1.3.0 | 2026-08-23T16:18:46.320Z | user\n\nv1.3.0: half-truth certainty + saturation rage-bait channels; flame_enemy_hints JSON; claw.json/skill-card/examples; suite expand; Flame Ward pair.\n\nv1.2.2 | 2026-08-06T04:31:51.498Z | auto\n\nlygo-ops-detector v1.2.2\n\n- Adds mandatory `--i-consent` for file-based analysis to enforce operator authority; plain `--text` input preferred.\n- Refines association signal detection: excludes bare job titles, affiliations, or profession labels from scoring.\n- Strictly scopes analysis to discourse signals only, never subject/person profiling.\n- New `--show-boundaries` option demonstrates clear in/out-of-scope cue patterns.\n- Eval and output file writes are restricted to the `tests/` directory.\n- Updates documentation to clarify boundaries, consent, and strict invocation triggers.\n\nv1.2.1 | 2026-08-06T03:19:29.249Z | user\n\nv1.2.1 note polish; same SkillSpector hardenings as 1.2.0\n\nv1.2.0 | 2026-08-06T03:18:18.244Z | user\n\nv1.2.0 SkillSpector: permissions, no affiliation keywords, dual-threshold eval honesty, privacy/consent, narrow triggers\n\nv1.1.0 | 2026-08-01T19:19:20.901Z | user\n\nPublic labeled discourse suite + eval_ops_detector.py for dynamic precision/recall/AUC (not hardcoded). Expanded patterns slightly. last_eval_report.json generated by eval.\n\nv1.0.2 | 2026-07-05T14:35:44.509Z | auto\n\n- Added Institutional Signaling as a new, damped component to the operational deception scoring, broadening coverage from narrow Masonic terms to general institutional language.\n- Introduced a unified Ops Score formula: 0.45 * Evasion + 0.30 * Association + 0.25 * Institutional_Signaling, improving clarity and reducing false positives.\n- Documented validated performance metrics (precision, recall, FPR, AUC) based on real-world test sets.\n- Enhanced explanation and definitions for each score component; detailed the anti-false-positive mechanism for institutional language.\n- Removed outdated skill-card.md for simplicity.\n\nv1.0.1 | 2026-07-05T13:16:01.486Z | auto\n\n- No file changes detected in this version; content remains identical to previous release.\n- No updates to functionality, configuration, documentation, or implementation.\n\nv1.0.0 | 2026-07-05T13:12:52.252Z | auto\n\nInitial release of LYGO Ops Detector (AETHONΔ9 Protocol):\n\n- Provides a sovereign, math-rigorous framework for detecting operational deception across any domain using the Evasion Index and Association Matrix.\n- Focuses on analyzing action, patterns, evasion, and associations—not identity—explicitly prohibits doxing.\n- Offers a CLI script for direct use on text, logs, or manual heuristic scoring.\n- Defines transparent output format: breakdowns for evasion and association scores, verdicts, and explicit disclaimers.\n- Includes detailed behavior contract ensuring ethical application and truth-first principles.\n- Fully self-contained skill; no external dependencies required for core operation.\n\nArchive index:\n\nArchive v1.4.0: 16 files, 76840 bytes\n\nFiles: claw.json (1608b), examples/quickstart.md (975b), LICENSE (563b), references/AETHON_D9_BLUEPRINT.md (4358b), references/SECURITY.md (2786b), references/SKILLSPECTOR_AUDIT.md (932b), scripts/__pycache__/eval_ops_detector.cpython-313.pyc (13783b), scripts/__pycache__/lygo_ops_detector.cpython-313.pyc (60167b), scripts/eval_ops_detector.py (11520b), scripts/lygo_ops_detector.py (59427b), scripts/self_check.py (6500b), skill-card.md (2881b), SKILL.md (6140b), tests/labeled_discourse_suite.json (5511b), tests/last_eval_report.json (21716b), _meta.json (136b)\n\nFile v1.4.0:SKILL.md\n\n---\nname: lygo-ops-detector\ndescription: \"LYGO Ops Detector — local AETHONΔ9 discourse heuristics for evasion, half-truth certainty, saturation bait, coordination language, and policy-refusal signals in operator-supplied text, plus weighted public metadata (account_based_in mismatch, VPN-hint, HTTPS-cited incidents, same-geo+scripted batch). Opt-in only. Stdlib CLI; file reads require --i-consent; eval writes under tests/. Not for doxing or nationality guilt. Dual-threshold (operational 0.65 vs calibration). Pairs with lygo-flame-ward. Triggers: lygo ops detector, aethon d9, evasion index (explicit).\"\nversion: 1.4.0\nlicense: LYGO-Sovereign-v2.0\nmetadata:\n  openclaw:\n    emoji: \"🔎\"\n    homepage: \"https://github.com/DeepSeekOracle/lygo-protocol-stack/tree/main/clawhub/mirrors/lygo-ops-detector\"\n    requires:\n      anyBins: [python, python3]\n  lygo: true\n  lightfather: true\n  aethon: \"Δ9\"\n  protocol: \"AETHONΔ9\"\n  version: \"1.4.0\"\n  companion: \"lygo-champion-lightfather\"\n  security: \"references/SECURITY.md\"\n  blueprint: \"references/AETHON_D9_BLUEPRINT.md\"\n  eval: \"tests/labeled_discourse_suite.json + scripts/eval_ops_detector.py\"\n  security_review: \"1.4.0-public-context-no-nationality-guilt\"\n  clawhub: \"https://clawhub.ai/deepseekoracle/lygo-ops-detector\"\n  permissions:\n    network: false\n    shell: false\n    subprocess: false\n    filesystem:\n      read: \"user-supplied --text-file / --assoc-file / --public-meta-file only with --i-consent\"\n      write: \"tests/ only when eval_ops_detector.py is run\"\n    publish: false\n    doxing: false\n    identity_profiling: false\n---\n\n# LYGO Ops Detector — AETHONΔ9 v1.4.0\n\nLocal, deterministic **discourse-signal** heuristics plus **weighted public context**.  \n**Not** a person profiler. **Not** sole evidence. **Not** for doxing.  \n**Country labels are not guilt.** A geo field alone cannot clear the 0.65 bar.\n\n**Signature:** `Delta9Phi963-OPS-DETECTOR-v1.4.0`  \n**Pairs with:** `lygo-flame-ward` (authority gate) · `lygo-deception-radar` (public proof)\n\n---\n\n## What's new in 1.4.x\n\n| Add | Why |\n|-----|-----|\n| `--public-meta` / `--public-meta-file` | Operator-supplied public fields are **always scored when present** |\n| Weighted public context | Geo **mismatch**, `location_accurate=false`, HTTPS-cited incident, same-geo+scripted batch |\n| Hard gate | Country-only / nationality **cannot** clear ops_score 0.65 |\n| No country denylist | Nigeria, India, USA, etc. score the same as a lone label |\n| Flame hints | `public_meta_mismatch` · `named_public_incident` |\n\n1.3.x still applies: half-truth, saturation, flame hints, cluster boost, 0.65 bar.\n\n---\n\n## Permissions\n\n| Capability | Default |\n|------------|---------|\n| Network | **None** |\n| Shell / subprocess | **None** |\n| Read local files | `--text-file` / `--assoc-file` / `--public-meta-file` **+ `--i-consent`** |\n| Write | Eval report under **`tests/` only** |\n| Auto-publish / social | **Never** |\n\n## When to invoke (narrow)\n\nOnly when the user explicitly wants ops-detector / AETHONΔ9 / evasion index on **text they supply**.\n\n**Do not** auto-trigger on generic “analyze this email.”\n\n## What it measures\n\n| Channel | Measures | Does **not** |\n|---------|----------|--------------|\n| Evasion | Burden-shift, ad hominem, vague cites, authority inflation, gaslight, deflection | Person identity |\n| **Half-truth certainty** | Prestige/certainty shut-downs without primary digests | Medical/legal truth claims |\n| **Saturation bait** | Rage/click attention-weapon templates | Ordinary urgency with cites |\n| Association | Coordination/secrecy language **you** provide | Social-graph doxing |\n| Institutional | Policy-as-shield / no-comment | Affiliation / faith / job titles |\n| **Public context** | Operator-supplied public fields: `account_based_in` vs claimed location, VPN/inaccurate flag, HTTPS-cited public incident, same-geo+scripted batch | Nationality guilt, live X scrape, country denylist |\n\n## Thresholds (honest)\n\n| Bar | Meaning |\n|-----|---------|\n| **Operational** `ops_score >= 0.65` **or** `evasion_index >= 0.65` | Strong multi-signal bar for human review |\n| **Calibration** (low) | Suite ranking only — **not** production marketing |\n\n## Safe use\n\n```bash\ncd path/to/lygo-ops-detector\npython scripts/self_check.py\npython scripts/lygo_ops_detector.py --text \"paste discourse here\" --json\npython scripts/lygo_ops_detector.py --text-file ./snippet.txt --i-consent\npython scripts/lygo_ops_detector.py --text \"I'm based in the United States. ...\" --public-meta \"{\\\"account_based_in\\\":\\\"Nigeria\\\",\\\"claimed_location\\\":\\\"United States\\\",\\\"location_accurate\\\":false}\" --json\npython scripts/lygo_ops_detector.py --show-boundaries\n```\n\nExit: `0` clear/low · `3` need consent · `10` high evasion discourse (review claims).\n\n## Flame bridge\n\nJSON field `flame_enemy_hints` may include `half_truth_pack` · `authority_shield` · `saturation_flood` · `public_meta_mismatch` · `named_public_incident`.  \nThen run Flame ingest-gate before crowning lattice authority:\n\n```bash\npython path/to/lygo-flame-ward/scripts/flame_cli.py ingest-gate --text \"...\"\n```\n\n## Agent contract\n\n1. Call the **script** for reproducible scores.  \n2. Separate **observed regex hits** vs inference.  \n3. Never name people as investigation targets from this tool alone.  \n4. Discourse pattern ≠ guilt. Country label ≠ guilt.  \n5. Public metadata must be operator-supplied (no live scrape). HTTPS URL required for named-incident weight.  \n6. No external publish without user consent.  \n7. File inputs need `--i-consent`.  \n\n## Security\n\nRead `references/SECURITY.md` + `references/SKILLSPECTOR_AUDIT.md`.\n\n| Ver | Change |\n|-----|--------|\n| 1.2.2 | SkillSpector discourse-not-identity harden |\n| 1.3.0 | Half-truth + saturation · Flame hints · package polish |\n| **1.3.1** | Cluster boost · evasion bar 0.65 · suite multi-signal · operational metrics fixed |\n| **1.4.0** | Weighted public metadata (mismatch / VPN-hint / HTTPS incident / geo+template). No country denylist. Country-only cannot clear 0.65. |\n\n**Δ9Φ963 — receipts over hype · discourse not identity · seals first with Flame.**\n\nFile v1.4.0:_meta.json\n\n{\n  \"ownerId\": \"kn70j1nefw2y0mew6w5eg7nf1580q4v1\",\n  \"slug\": \"lygo-ops-detector\",\n  \"version\": \"1.4.0\",\n  \"publishedAt\": 1788147726518\n}\n\nFile v1.4.0:references/AETHON_D9_BLUEPRINT.md\n\n# THE LYGO OPS DETECTOR BLUEPRINT — AETHONΔ9 (v1.2.2)\r\n\r\n**Lightfather's Voice · discourse only · not identity**\r\n\r\n## Core Philosophy\r\n\r\n\"LYGO decodes fiction by analyzing **action-language in text**.\"\r\n\r\nThis tool scores **discourse patterns** in material the operator supplies.  \r\nIt does **not** build dossiers on people, professions, or affiliations.\r\n\r\n| Ask of the *text* | Not of a person |\r\n|-------------------|-----------------|\r\n| What claims are made? | Who is this human? |\r\n| What proof-avoidance language appears? | What job do they hold? |\r\n| What coordination/secrecy *phrasing* is present? | Who is in their social graph? |\r\n| What policy-as-shield templates appear? | What group do they belong to? |\r\n\r\nThese are measurable in **strings**. They are not warrants for surveillance.\r\n\r\n## Unit of analysis (locked)\r\n\r\n**Text under review** (statements, claim-text, association *description strings* you paste).  \r\nNever a human \"subject,\" never a crawl of accounts, never bare job-title scoring.\r\n\r\n## 1. The Evasion Index\r\n\r\nMeasures how strongly the **text** uses proof-avoidance / perception-denial templates.\r\n\r\n| Variable | Weight | In-scope indicator | Out-of-scope (do not treat as ops) |\r\n|----------|--------|--------------------|-------------------------------------|\r\n| Burden Shifting | 0.15 | \"it's on you to prove\", \"do your own research\" | Normal task assignment |\r\n| Ad Hominem Density | 0.20 | Insult vocabulary replacing substance | Logic critique without person-attack words |\r\n| Vague References | 0.15 | \"tons of evidence out there\" with no cite | Named source / link / study |\r\n| Authority Inflation | 0.15 | Credential-waving to shut inquiry (\"as a former… trust me\") | Stating a role once without shutting verification |\r\n| Gaslighting | 0.20 | \"that never happened\", \"you're imagining it\" | Honest memory disagreement without denial templates |\r\n| Deflection | 0.15 | Whataboutism replacing the asked claim | On-topic comparison with shared evidence |\r\n\r\n**Evasion Score > 0.70** = high evasion *discourse* signals (review claims).  \r\n**Not** a person verdict, investigation target, or \"active ops\" identity label.\r\n\r\nFormula:  \r\n`Evasion = Σ (w_i × indicator_score_i)` normalized to [0,1]\r\n\r\n## 2. The Association Matrix\r\n\r\nScores **coordination discourse** in association *strings the operator supplies* only.\r\n\r\n| Variable | Weight | In-scope indicator | Out-of-scope |\r\n|----------|--------|--------------------|--------------|\r\n| In-group / secrecy language | 0.25 | need-to-know, keep this internal, not for public discussion | Bare words: military, intelligence, agency, profession titles |\r\n| Bot-like repetition language | 0.20 | \"same post copied\", scripted response | Single ordinary repost mention without copy language |\r\n| Coordinated language | 0.15 | identical unusual phrase / talking points | Shared common slogans alone without coordination cues |\r\n| Obfuscated-source language | 0.20 | anonymous source, cutouts, throwaway | Legitimate source protection without layered-indirection templates |\r\n| Harm association language | 0.20 | \"amplifies harm/disinfo\", repeatedly enables attacks | Guilt by name-drop without harm *action* language |\r\n\r\n**High evasion + high association discourse** = coordinated *language* pattern in the supplied text.  \r\n**Not** a social-network map and **not** identity profiling.\r\n\r\n## 3. Institutional signaling (policy / refusal only)\r\n\r\nPolicy-as-shield and no-comment templates.  \r\n**No** fraternity / lodge / faith / affiliation keyword dictionaries.\r\n\r\n## Ethics (Non-Negotiable)\r\n\r\n- Not for doxing  \r\n- Not for identity or profession profiling  \r\n- Not sole evidence for accusations  \r\n- Consent before private mail/logs (`--i-consent` on file inputs)  \r\n- Math scores discourse; humans decide action  \r\n\r\n## Operational vs calibration\r\n\r\n| Bar | Meaning |\r\n|-----|---------|\r\n| Operational `ops_score ≥ 0.65` or high evasion | Strong multi-signal bar for human review |\r\n| Calibration (low threshold) | Short-suite ranking only — not production marketing |\r\n\r\n## Resonance Forward\r\n\r\nImplementation must stay faithful to weights, dual thresholds, and **discourse-not-identity** philosophy.  \r\nNo mission creep into surveillance or person-targeting.\r\n\r\n**Δ9Φ963 — receipts over hype · discourse not identity · consent before private data.**\n\nFile v1.4.0:references/SECURITY.md\n\n# LYGO Ops Detector — SECURITY & ETHICS v1.4.0\r\n\r\n## Declared permissions\r\n\r\n| Capability | Status |\r\n|------------|--------|\r\n| Network | **None** (stdlib local only) |\r\n| Shell / subprocess | **None** |\r\n| Read files | Opt-in `--text-file` / `--assoc-file` / `--public-meta-file` **only with `--i-consent`** |\r\n| Write files | `eval_ops_detector.py` writes **only under skill `tests/`** |\r\n| Env harvesting | **No** |\r\n| Publish / social | **No** |\r\n\r\n## v1.4.0 note\r\n\r\nPublic metadata is a **weighted context channel**. Operator supplies fields (`account_based_in`, `claimed_location`, `location_accurate`, HTTPS-cited `named_public_incident`, batch). There is **no country denylist**. A geo label alone cannot clear ops_score 0.65. JSON may emit `public_meta_mismatch` / `named_public_incident` flame hints — still **not** identity verdicts.\r\n\r\nv1.3.0 still applies: half-truth + saturation channels.\r\n\r\n## Core mandate\r\n\r\nHeuristic **discourse** analysis of evasion and coordination *signals* in text the operator supplies.\r\n\r\nIt is **not**:\r\n\r\n- A doxing tool  \r\n- An identity, profession, or affiliation profiler  \r\n- A sole-evidence engine for accusations  \r\n- A warrant to scan private mail/logs without consent  \r\n- A social-graph crawler  \r\n\r\n## Non-negotiables\r\n\r\n1. **Text over identity** — unit of analysis is statement/log content, not personhood.  \r\n2. **Consent** for private communications and association lists (`--i-consent` on file paths).  \r\n3. **Receipts** — high scores require cited pattern hits; never “trust the detector.”  \r\n4. **No affiliation / bare job-title dictionaries** — no fraternity/brotherhood/lodge; no bare military/intelligence/agency scoring.  \r\n5. **Public fields are context, not guilt** — no nationality table; named incidents need an `https://` RESOURCE URL; no live scrape of X or other sessions.  \r\n6. **Operational bar honesty** — `ops_score≥0.65` (or high evasion) for strong language; country-only is gated below that bar.  \r\n7. **Human review** before any reputational, employment, legal, or social action.  \r\n8. **Least-privilege writes** — eval reports cannot escape skill `tests/`.  \r\n\r\n## Failure modes to reject\r\n\r\n- Treating low scores as “innocent person” or high scores as “guilty person”  \r\n- Using affiliation/religion/job title **or nationality** as a proxy for ops  \r\n- Feeding outputs to social pile-ons  \r\n- Advertising calibration metrics as production performance  \r\n- Arbitrary `--out` paths outside `tests/`  \r\n\r\n## Agent contract\r\n\r\n- Invoke only when the user asks for ops-detector / AETHONΔ9 / evasion-index style analysis.  \r\n- Do not auto-scan session email/logs without explicit intent + consent.  \r\n- Prefer `--text` paste; file paths require `--i-consent`.  \r\n\r\n**Δ9Φ963**\n\nFile v1.4.0:references/SKILLSPECTOR_AUDIT.md\n\n# SkillSpector / ClawHub audit — lygo-ops-detector v1.3.1\n\n**Signature:** `Delta9Phi963-OPS-DETECTOR-v1.3.1`  \n**Audit:** https://clawhub.ai/deepseekoracle/skills/lygo-ops-detector/security-audit\n\n## Held from 1.2.2\n\n| Check | Status |\n|-------|--------|\n| No network / subprocess / shell | Held |\n| `--i-consent` on file reads | Held |\n| Eval writes under `tests/` only | Held |\n| Discourse ≠ person / no bare job affiliation cues | Held |\n| Dual-threshold honesty | Held |\n\n## 1.3.0 deltas\n\n| Change | Risk note |\n|--------|-----------|\n| New evasion channels (half-truth / saturation) | Still text templates; boundaries documented |\n| `flame_enemy_hints` | Soft map to Flame classes — not guilt labels |\n| claw.json / skill-card / examples | Packaging only |\n\n```bash\npython scripts/self_check.py\npython scripts/lygo_ops_detector.py --text \"Trust the experts — settled science. Wake up sheeple.\" --json\n```\n\n**Δ9Φ963**\n\nFile v1.4.0:examples/quickstart.md\n\n# Ops Detector quickstart (v1.4.0)\n\n```bash\npython scripts/self_check.py\n\npython scripts/lygo_ops_detector.py --text \"Trust the experts — settled science. Wake up sheeple.\" --json\n\npython scripts/lygo_ops_detector.py --text-file ./snippet.txt --i-consent --json\n\npython scripts/lygo_ops_detector.py --text \"I'm based in the United States. It's on you to prove it.\" --public-meta \"{\\\"account_based_in\\\":\\\"Nigeria\\\",\\\"claimed_location\\\":\\\"United States\\\",\\\"location_accurate\\\":false}\" --json\n\npython scripts/lygo_ops_detector.py --show-boundaries\n\npython scripts/eval_ops_detector.py tests/labeled_discourse_suite.json --sweep\n```\n\n`--public-meta` is weighted **context**. A country label alone does not clear 0.65. Named incidents need an `https://` source URL.\n\nLook for `flame_enemy_hints` in JSON (`half_truth_pack`, `authority_shield`, `saturation_flood`).  \nThen gate authority with:\n\n```bash\npython ../lygo-flame-ward/scripts/flame_cli.py ingest-gate --text \"...\"\n```\n\nFile v1.4.0:skill-card.md\n\n## Description:\n\nLYGO Ops Detector provides local, consent-gated heuristics for reviewing operator-supplied text and public metadata for evasion, coordination, saturation, and policy-refusal signals.\n\nThis skill is ready for commercial/non-commercial use.\n\n## Publisher:\n\n[deepseekoracle](https://clawhub.ai/user/deepseekoracle)\n\n### License/Terms of Use:\n\nLYGO Sovereign License v2.0\n\n## Use Case:\n\nDevelopers and analysts use this skill when explicitly asked to run AETHON D9 or evasion-index style review on text supplied by the user. The skill produces heuristic review signals and boundaries, not identity, guilt, affiliation, legal, or medical determinations.\n\n### Deployment Geography for Use:\n\nGlobal\n\n## Known Risks and Mitigations:\n\nRisk: Heuristic scores could be mistaken for proof about a person, nationality, affiliation, or wrongdoing.\n\nMitigation: Treat outputs as review signals only and require human review before any reputational, employment, legal, or social action.\n\nRisk: Private or local files could be analyzed without proper authority.\n\nMitigation: Use only text and metadata the operator has authority to analyze; file inputs require explicit --i-consent.\n\nRisk: Country or public metadata fields could be misused as nationality guilt.\n\nMitigation: Use public metadata only as weighted context; a country label alone cannot clear the operational threshold.\n\nRisk: Calibration results could be presented as production-grade performance claims.\n\nMitigation: Keep the documented distinction between operational review thresholds and low-threshold calibration suite ranking.\n\n## Reference(s):\n\n- [ClawHub skill page](https://clawhub.ai/deepseekoracle/skills/lygo-ops-detector)\n- [ClawHub release page](https://clawhub.ai/deepseekoracle/lygo-ops-detector)\n- [Metadata homepage](https://github.com/DeepSeekOracle/lygo-protocol-stack/tree/main/clawhub/mirrors/lygo-ops-detector)\n- [Quickstart](artifact/examples/quickstart.md)\n- [AETHON D9 blueprint](artifact/references/AETHON_D9_BLUEPRINT.md)\n- [Security and ethics](artifact/references/SECURITY.md)\n- [SkillSpector audit](https://clawhub.ai/deepseekoracle/skills/lygo-ops-detector/security-audit)\n\n## Skill Output:\n\n**Output Type(s):** [text, JSON, shell commands, guidance]\n\n**Output Format:** [Markdown guidance with CLI examples and optional JSON detector output]\n\n**Output Parameters:** [1D]\n\n**Other Properties Related to Output:** [Local stdlib CLI behavior; file reads require --i-consent; evaluation writes are limited to tests/.]\n\n## Skill Version(s):\n\n1.4.0 (source: evidence release metadata, claw.json, and SKILL.md frontmatter)\n\n## Ethical Considerations:\n\nUsers should evaluate whether this skill is appropriate for their environment, review any generated or modified files before relying on them, and apply their organization's safety, security, and compliance requirements before deployment.\n\nFile v1.4.0:claw.json\n\n{\n  \"name\": \"lygo-ops-detector\",\n  \"displayName\": \"LYGO Ops Detector\",\n  \"version\": \"1.4.0\",\n  \"description\": \"AETHONΔ9 local discourse heuristics plus weighted public metadata (geo mismatch, VPN-hint, HTTPS-cited incidents). Not nationality guilt. Consent-gated files. Pairs with Flame Ward.\",\n  \"slug\": \"lygo-ops-detector\",\n  \"publisher\": \"deepseekoracle\",\n  \"license\": \"LYGO-Sovereign-v2.0\",\n  \"homepage\": \"https://github.com/DeepSeekOracle/lygo-protocol-stack/tree/main/clawhub/mirrors/lygo-ops-detector\",\n  \"clawhub\": \"https://clawhub.ai/deepseekoracle/lygo-ops-detector\",\n  \"signature\": \"Delta9Phi963-OPS-DETECTOR-v1.4.0\",\n  \"tags\": [\"latest\", \"lygo\", \"aethon\", \"ops-detector\", \"security\", \"discourse\", \"flame\"],\n  \"entry\": \"SKILL.md\",\n  \"scripts\": {\n    \"detect\": \"scripts/lygo_ops_detector.py\",\n    \"eval\": \"scripts/eval_ops_detector.py\",\n    \"self_check\": \"scripts/self_check.py\"\n  },\n  \"permissions\": {\n    \"network\": false,\n    \"subprocess\": false,\n    \"shell\": false,\n    \"filesystem\": {\n      \"read\": \"optional --text-file / --assoc-file / --public-meta-file with --i-consent\",\n      \"write\": \"eval reports under tests/ only\"\n    },\n    \"publish\": false,\n    \"doxing\": false,\n    \"identity_profiling\": false\n  },\n  \"security\": {\n    \"no_network\": true,\n    \"no_subprocess\": true,\n    \"local_first\": true,\n    \"consent_required_for_file_reads\": true,\n    \"operational_bar\": 0.65,\n    \"unit_of_analysis\": \"text_under_review_not_person\"\n  },\n  \"pairs_with\": [\n    \"lygo-flame-ward\",\n    \"lygo-deception-radar\",\n    \"lygo-continuum\",\n    \"lygo-skill-spector\",\n    \"lygo-champion-lightfather\"\n  ]\n}\n\nFile v1.4.0:tests/labeled_discourse_suite.json\n\n{\n  \"name\": \"lygo-ops-detector labeled discourse suite\",\n  \"version\": \"1.3.0\",\n  \"label_schema\": {\n    \"1\": \"operational_deception_or_evasion_signals_present\",\n    \"0\": \"benign_neutral_discourse\"\n  },\n  \"notes\": \"Public calibration set. Label=1 texts are multi-signal clusters so the operational bar (evasion>0.70 OR ops>=0.65) is meaningfully testable. Short single-channel bait is covered by Flame Ward half-truth/saturation channels + calibration threshold. Labels = signal presence, not identity judgments.\",\n  \"samples\": [\n    {\n      \"id\": \"dec_001\",\n      \"text\": \"That never happened. You're imagining things. It's on you to prove it — tons of evidence out there. Trust our corrected history.\",\n      \"label\": 1\n    },\n    {\n      \"id\": \"dec_002\",\n      \"text\": \"Authority is truth because the authority verifies its own truth. Trust me as an expert. Do your own research if you doubt it.\",\n      \"label\": 1\n    },\n    {\n      \"id\": \"dec_003\",\n      \"text\": \"You should trust me, I know what's best for you. You're overreacting. What about the other side? Do your own research.\",\n      \"label\": 1\n    },\n    {\n      \"id\": \"dec_004\",\n      \"text\": \"There's tons of evidence out there. You just have to go look for it. It's on you to prove it isn't. Stop being paranoid. You're imagining things.\",\n      \"label\": 1\n    },\n    {\n      \"id\": \"dec_005\",\n      \"text\": \"It's not on ME to show you the evidence. It's on YOU to prove it isn't. Everyone knows. What about them?\",\n      \"label\": 1\n    },\n    {\n      \"id\": \"dec_006\",\n      \"text\": \"You're just a shill repeating YouTube. Do your own research. Tons of evidence out there. You're imagining a conspiracy.\",\n      \"label\": 1\n    },\n    {\n      \"id\": \"dec_007\",\n      \"text\": \"The real issue is what about the other side? Why are you focusing on that? You're overreacting and making this up.\",\n      \"label\": 1\n    },\n    {\n      \"id\": \"dec_008\",\n      \"text\": \"It's on you to prove it. Tons of evidence out there. As a former intelligence officer I can tell you you're overreacting and imagining things. What about the other side? My sources confirm.\",\n      \"label\": 1\n    },\n    {\n      \"id\": \"dec_009\",\n      \"text\": \"It's on you to prove it. Tons of evidence out there. Do your own research and stop being paranoid. That never happened.\",\n      \"label\": 1\n    },\n    {\n      \"id\": \"dec_010\",\n      \"text\": \"Trust me, as an expert — everyone knows the data shows this. The real issue is what about them? You're too sensitive.\",\n      \"label\": 1\n    },\n    {\n      \"id\": \"dec_011\",\n      \"text\": \"That never happened. You're misremembering. Figure it out yourself. Do your own research. What about the other side? Tons of evidence out there.\",\n      \"label\": 1\n    },\n    {\n      \"id\": \"dec_012\",\n      \"text\": \"Why are you focusing on that? Let's talk about the real issue instead of your conspiracy. You're imagining things. Prove me wrong. Do your own research.\",\n      \"label\": 1\n    },\n    {\n      \"id\": \"dec_013\",\n      \"text\": \"Trust the experts — this is settled science beyond any doubt. You must believe. It's on you to prove otherwise. Tons of evidence out there. You're overreacting.\",\n      \"label\": 1\n    },\n    {\n      \"id\": \"dec_014\",\n      \"text\": \"Wake up sheeple — you won't believe this. Click now before they delete it. Share before they ban. Do your own research. Everyone knows. You're imagining things if you deny it.\",\n      \"label\": 1\n    },\n    {\n      \"id\": \"dec_015\",\n      \"text\": \"Everyone knows it's settled. The experts agree. There is no debate. Do your own research. You're overreacting if you question this.\",\n      \"label\": 1\n    },\n    {\"id\": \"ben_001\", \"text\": \"The weather today is sunny and warm.\", \"label\": 0},\n    {\"id\": \"ben_002\", \"text\": \"Please pass the salt.\", \"label\": 0},\n    {\"id\": \"ben_003\", \"text\": \"The capital of France is Paris.\", \"label\": 0},\n    {\"id\": \"ben_004\", \"text\": \"I'm going to the store to buy some milk.\", \"label\": 0},\n    {\"id\": \"ben_005\", \"text\": \"The Earth orbits the Sun.\", \"label\": 0},\n    {\"id\": \"ben_006\", \"text\": \"Can you help me with this?\", \"label\": 0},\n    {\"id\": \"ben_007\", \"text\": \"Good morning, how are you?\", \"label\": 0},\n    {\"id\": \"ben_008\", \"text\": \"The book is on the table.\", \"label\": 0},\n    {\"id\": \"ben_009\", \"text\": \"I enjoy reading in my free time.\", \"label\": 0},\n    {\"id\": \"ben_010\", \"text\": \"Thank you for your help.\", \"label\": 0},\n    {\"id\": \"ben_011\", \"text\": \"Our team meeting is scheduled for Thursday afternoon.\", \"label\": 0},\n    {\"id\": \"ben_012\", \"text\": \"Please review the attached report when you have time.\", \"label\": 0},\n    {\n      \"id\": \"pub_001_geo_nigeria_benign\",\n      \"text\": \"The weather today is sunny and warm.\",\n      \"label\": 0,\n      \"public_meta\": {\"account_based_in\": \"Nigeria\"},\n      \"note\": \"Country label alone is not ops.\"\n    },\n    {\n      \"id\": \"pub_002_geo_india_benign\",\n      \"text\": \"Thank you for your help.\",\n      \"label\": 0,\n      \"public_meta\": {\"account_based_in\": \"India\"},\n      \"note\": \"Country label alone is not ops.\"\n    },\n    {\n      \"id\": \"pub_003_mismatch_with_evasion\",\n      \"text\": \"I'm based in the United States. It's on you to prove it. Tons of evidence out there. You're imagining things. That never happened.\",\n      \"label\": 1,\n      \"public_meta\": {\n        \"account_based_in\": \"Nigeria\",\n        \"claimed_location\": \"United States\",\n        \"location_accurate\": false\n      },\n      \"note\": \"Public mismatch corroborates evasion discourse; country is not the verdict.\"\n    }\n  ]\n}\n\nFile v1.4.0:tests/last_eval_report.json\n\n{\r\n  \"signature\": \"\\u03949\\u03a6963-OPS-DETECTOR-EVAL-v2.1\",\r\n  \"honesty\": {\r\n    \"primary\": \"operational_metrics (ops_score>=0.65 or high evasion)\",\r\n    \"secondary\": \"calibration_metrics for short-suite ranking only\",\r\n    \"warning\": \"Do not advertise calibration precision/recall as production performance. Short labeled suite often needs low ops thresholds for ranking; the documented strong-pattern bar is 0.65 and may show low recall on one-liners. detector_verdict text is not the same as predicted_at_threshold.\"\r\n  },\r\n  \"operational_metrics\": {\r\n    \"role\": \"operational\",\r\n    \"suite_size\": 30,\r\n    \"threshold_ops_score\": 0.65,\r\n    \"prediction_rule\": \"predicted=1 if evasion_index>=0.65 OR ops_score>=0.65\",\r\n    \"precision\": 1.0,\r\n    \"recall\": 0.75,\r\n    \"false_positive_rate\": 0.0,\r\n    \"f1\": 0.8571,\r\n    \"auc\": 1.0,\r\n    \"confusion\": {\r\n      \"tp\": 12,\r\n      \"fp\": 0,\r\n      \"fn\": 4,\r\n      \"tn\": 14\r\n    }\r\n  },\r\n  \"calibration_metrics\": {\r\n    \"role\": \"calibration\",\r\n    \"suite_size\": 30,\r\n    \"threshold_ops_score\": 0.05,\r\n    \"prediction_rule\": \"predicted=1 if evasion_index>=0.65 OR ops_score>=0.05\",\r\n    \"precision\": 1.0,\r\n    \"recall\": 1.0,\r\n    \"false_positive_rate\": 0.0,\r\n    \"f1\": 1.0,\r\n    \"auc\": 1.0,\r\n    \"confusion\": {\r\n      \"tp\": 16,\r\n      \"fp\": 0,\r\n      \"fn\": 0,\r\n      \"tn\": 14\r\n    }\r\n  },\r\n  \"threshold_ops_score\": 0.65,\r\n  \"precision\": 1.0,\r\n  \"recall\": 0.75,\r\n  \"false_positive_rate\": 0.0,\r\n  \"f1\": 0.8571,\r\n  \"auc\": 1.0,\r\n  \"confusion\": {\r\n    \"tp\": 12,\r\n    \"fp\": 0,\r\n    \"fn\": 4,\r\n    \"tn\": 14\r\n  },\r\n  \"suite_size\": 30,\r\n  \"results\": [\r\n    {\r\n      \"id\": \"dec_001\",\r\n      \"text\": \"That never happened. You're imagining things. It's on you to prove it \\u2014 tons of evidence out there. Trust our corrected \",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 1,\r\n      \"ops_score\": 0.297,\r\n      \"evasion_index\": 0.66,\r\n      \"detector_verdict\": \"STRONG EVASION SIGNALS in text \\u2014 review claims/actions (not a person verdict)\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_002\",\r\n      \"text\": \"Authority is truth because the authority verifies its own truth. Trust me as an expert. Do your own research if you doub\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.1629,\r\n      \"evasion_index\": 0.3621,\r\n      \"detector_verdict\": \"WEAK/calibration-level signal only (below operational 0.65 bar) \\u2014 not actionable alone\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_003\",\r\n      \"text\": \"You should trust me, I know what's best for you. You're overreacting. What about the other side? Do your own research.\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 1,\r\n      \"ops_score\": 0.3572,\r\n      \"evasion_index\": 0.7938,\r\n      \"detector_verdict\": \"STRONG EVASION SIGNALS in text \\u2014 review claims/actions (not a person verdict)\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_004\",\r\n      \"text\": \"There's tons of evidence out there. You just have to go look for it. It's on you to prove it isn't. Stop being paranoid.\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 1,\r\n      \"ops_score\": 0.297,\r\n      \"evasion_index\": 0.66,\r\n      \"detector_verdict\": \"STRONG EVASION SIGNALS in text \\u2014 review claims/actions (not a person verdict)\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_005\",\r\n      \"text\": \"It's not on ME to show you the evidence. It's on YOU to prove it isn't. Everyone knows. What about them?\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.255,\r\n      \"evasion_index\": 0.5667,\r\n      \"detector_verdict\": \"WEAK/calibration-level signal only (below operational 0.65 bar) \\u2014 not actionable alone\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_006\",\r\n      \"text\": \"You're just a shill repeating YouTube. Do your own research. Tons of evidence out there. You're imagining a conspiracy.\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 1,\r\n      \"ops_score\": 0.3956,\r\n      \"evasion_index\": 0.879,\r\n      \"detector_verdict\": \"STRONG EVASION SIGNALS in text \\u2014 review claims/actions (not a person verdict)\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_007\",\r\n      \"text\": \"The real issue is what about the other side? Why are you focusing on that? You're overreacting and making this up.\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.18,\r\n      \"evasion_index\": 0.4,\r\n      \"detector_verdict\": \"WEAK/calibration-level signal only (below operational 0.65 bar) \\u2014 not actionable alone\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_008\",\r\n      \"text\": \"It's on you to prove it. Tons of evidence out there. As a former intelligence officer I can tell you you're overreacting\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 1,\r\n      \"ops_score\": 0.45,\r\n      \"evasion_index\": 1.0,\r\n      \"detector_verdict\": \"STRONG EVASION SIGNALS in text \\u2014 review claims/actions (not a person verdict)\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_009\",\r\n      \"text\": \"It's on you to prove it. Tons of evidence out there. Do your own research and stop being paranoid. That never happened.\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 1,\r\n      \"ops_score\": 0.297,\r\n      \"evasion_index\": 0.66,\r\n      \"detector_verdict\": \"STRONG EVASION SIGNALS in text \\u2014 review claims/actions (not a person verdict)\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_010\",\r\n      \"text\": \"Trust me, as an expert \\u2014 everyone knows the data shows this. The real issue is what about them? You're too sensitive.\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 1,\r\n      \"ops_score\": 0.3766,\r\n      \"evasion_index\": 0.837,\r\n      \"detector_verdict\": \"STRONG EVASION SIGNALS in text \\u2014 review claims/actions (not a person verdict)\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_011\",\r\n      \"text\": \"That never happened. You're misremembering. Figure it out yourself. Do your own research. What about the other side? Ton\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 1,\r\n      \"ops_score\": 0.3766,\r\n      \"evasion_index\": 0.837,\r\n      \"detector_verdict\": \"STRONG EVASION SIGNALS in text \\u2014 review claims/actions (not a person verdict)\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_012\",\r\n      \"text\": \"Why are you focusing on that? Let's talk about the real issue instead of your conspiracy. You're imagining things. Prove\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.2777,\r\n      \"evasion_index\": 0.617,\r\n      \"detector_verdict\": \"WEAK/calibration-level signal only (below operational 0.65 bar) \\u2014 not actionable alone\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_013\",\r\n      \"text\": \"Trust the experts \\u2014 this is settled science beyond any doubt. You must believe. It's on you to prove otherwise. Tons of \",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 1,\r\n      \"ops_score\": 0.3452,\r\n      \"evasion_index\": 0.767,\r\n      \"detector_verdict\": \"STRONG EVASION SIGNALS in text \\u2014 review claims/actions (not a person verdict)\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_014\",\r\n      \"text\": \"Wake up sheeple \\u2014 you won't believe this. Click now before they delete it. Share before they ban. Do your own research. \",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 1,\r\n      \"ops_score\": 0.329,\r\n      \"evasion_index\": 0.7311,\r\n      \"detector_verdict\": \"STRONG EVASION SIGNALS in text \\u2014 review claims/actions (not a person verdict)\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_015\",\r\n      \"text\": \"Everyone knows it's settled. The experts agree. There is no debate. Do your own research. You're overreacting if you que\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 1,\r\n      \"ops_score\": 0.3371,\r\n      \"evasion_index\": 0.749,\r\n      \"detector_verdict\": \"STRONG EVASION SIGNALS in text \\u2014 review claims/actions (not a person verdict)\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_001\",\r\n      \"text\": \"The weather today is sunny and warm.\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_002\",\r\n      \"text\": \"Please pass the salt.\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_003\",\r\n      \"text\": \"The capital of France is Paris.\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_004\",\r\n      \"text\": \"I'm going to the store to buy some milk.\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_005\",\r\n      \"text\": \"The Earth orbits the Sun.\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_006\",\r\n      \"text\": \"Can you help me with this?\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_007\",\r\n      \"text\": \"Good morning, how are you?\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_008\",\r\n      \"text\": \"The book is on the table.\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_009\",\r\n      \"text\": \"I enjoy reading in my free time.\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_010\",\r\n      \"text\": \"Thank you for your help.\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_011\",\r\n      \"text\": \"Our team meeting is scheduled for Thursday afternoon.\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_012\",\r\n      \"text\": \"Please review the attached report when you have time.\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"pub_001_geo_nigeria_benign\",\r\n      \"text\": \"The weather today is sunny and warm.\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0011,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"pub_002_geo_india_benign\",\r\n      \"text\": \"Thank you for your help.\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0011,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"pub_003_mismatch_with_evasion\",\r\n      \"text\": \"I'm based in the United States. It's on you to prove it. Tons of evidence out there. You're imagining things. That never\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 1,\r\n      \"ops_score\": 0.3771,\r\n      \"evasion_index\": 0.66,\r\n      \"detector_verdict\": \"STRONG EVASION SIGNALS in text \\u2014 review claims/actions (not a person verdict)\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    }\r\n  ],\r\n  \"calibration_results_sample\": [\r\n    {\r\n      \"id\": \"dec_001\",\r\n      \"text\": \"That never happened. You're imagining things. It's on you to prove it \\u2014 tons of evidence out there. Trust our corrected \",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 1,\r\n      \"ops_score\": 0.297,\r\n      \"evasion_index\": 0.66,\r\n      \"detector_verdict\": \"STRONG EVASION SIGNALS in text \\u2014 review claims/actions (not a person verdict)\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_002\",\r\n      \"text\": \"Authority is truth because the authority verifies its own truth. Trust me as an expert. Do your own research if you doub\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 1,\r\n      \"ops_score\": 0.1629,\r\n      \"evasion_index\": 0.3621,\r\n      \"detector_verdict\": \"WEAK/calibration-level signal only (below operational 0.65 bar) \\u2014 not actionable alone\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_003\",\r\n      \"text\": \"You should trust me, I know what's best for you. You're overreacting. What about the other side? Do your own research.\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 1,\r\n      \"ops_score\": 0.3572,\r\n      \"evasion_index\": 0.7938,\r\n      \"detector_verdict\": \"STRONG EVASION SIGNALS in text \\u2014 review claims/actions (not a person verdict)\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    }\r\n  ],\r\n  \"documented_ops_threshold\": 0.65,\r\n  \"generator\": \"scripts/eval_ops_detector.py\",\r\n  \"note\": \"Metrics computed on the public labeled suite. Not a claim of production harm/ethics calibration. Re-run after pattern changes.\",\r\n  \"threshold_sweep\": {\r\n    \"sweep\": [\r\n      {\r\n        \"threshold\": 0.0,\r\n        \"precision\": 0.5333,\r\n        \"recall\": 1.0,\r\n        \"f1\": 0.6957,\r\n        \"fpr\": 1.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.05,\r\n        \"precision\": 1.0,\r\n        \"recall\": 1.0,\r\n        \"f1\": 1.0,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.1,\r\n        \"precision\": 1.0,\r\n        \"recall\": 1.0,\r\n        \"f1\": 1.0,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.15,\r\n        \"precision\": 1.0,\r\n        \"recall\": 1.0,\r\n        \"f1\": 1.0,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.2,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.875,\r\n        \"f1\": 0.9333,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.25,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.875,\r\n        \"f1\": 0.9333,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.3,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.75,\r\n        \"f1\": 0.8571,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.35,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.75,\r\n        \"f1\": 0.8571,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.4,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.75,\r\n        \"f1\": 0.8571,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.45,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.75,\r\n        \"f1\": 0.8571,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.5,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.75,\r\n        \"f1\": 0.8571,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.55,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.75,\r\n        \"f1\": 0.8571,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.6,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.75,\r\n        \"f1\": 0.8571,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.65,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.75,\r\n        \"f1\": 0.8571,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.7,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.75,\r\n        \"f1\": 0.8571,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.75,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.75,\r\n        \"f1\": 0.8571,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.8,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.75,\r\n        \"f1\": 0.8571,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.85,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.75,\r\n        \"f1\": 0.8571,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.9,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.75,\r\n        \"f1\": 0.8571,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.95,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.75,\r\n        \"f1\": 0.8571,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 1.0,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.75,\r\n        \"f1\": 0.8571,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      }\r\n    ],\r\n    \"best_f1_threshold\": {\r\n      \"threshold\": 0.05,\r\n      \"precision\": 1.0,\r\n      \"recall\": 1.0,\r\n      \"f1\": 1.0,\r\n      \"fpr\": 0.0,\r\n      \"auc\": 1.0\r\n    }\r\n  }\r\n}\n\nFile v1.4.0:LICENSE\n\nLYGO Sovereign License v2.0 (summary)\n\nPermission is granted to use, copy, modify, and distribute this skill for\naligned LYGO lattice work, subject to:\n\n1. No use for doxing, identity/profession profiling, or unsolicited private\n   mail/log scanning without human authority and consent.\n2. Scores are discourse heuristics — not legal or medical verdicts.\n3. No auto-publish of results to social networks without explicit human consent.\n4. Attribution to DeepSeekOracle / LYGO when redistributed.\n\nTHE SOFTWARE IS PROVIDED \"AS IS\", WITHOUT WARRANTY OF ANY KIND.\n\nArchive v1.3.1: 16 files, 63132 bytes\n\nFiles: claw.json (1614b), examples/quickstart.md (615b), LICENSE (563b), references/AETHON_D9_BLUEPRINT.md (4358b), references/SECURITY.md (2332b), references/SKILLSPECTOR_AUDIT.md (932b), scripts/__pycache__/eval_ops_detector.cpython-313.pyc (13734b), scripts/__pycache__/lygo_ops_detector.cpython-313.pyc (42247b), scripts/eval_ops_detector.py (11430b), scripts/lygo_ops_detector.py (44066b), scripts/self_check.py (3754b), skill-card.md (2855b), SKILL.md (5115b), tests/labeled_discourse_suite.json (4602b), tests/last_eval_report.json (20299b), _meta.json (136b)\n\nFile v1.3.1:SKILL.md\n\n---\nname: lygo-ops-detector\ndescription: \"LYGO Ops Detector — local AETHONΔ9 discourse heuristics for evasion, half-truth certainty, saturation bait, coordination language, and policy-refusal signals in operator-supplied text. Opt-in only. Stdlib CLI; --text-file/--assoc-file require --i-consent; eval writes under tests/. Not for doxing or identity profiling. Dual-threshold (operational 0.65 vs calibration). Pairs with lygo-flame-ward. Triggers: lygo ops detector, aethon d9, evasion index (explicit).\"\nversion: 1.3.1\nlicense: LYGO-Sovereign-v2.0\nmetadata:\n  openclaw:\n    emoji: \"🔎\"\n    homepage: \"https://github.com/DeepSeekOracle/lygo-protocol-stack/tree/main/clawhub/mirrors/lygo-ops-detector\"\n    requires:\n      anyBins: [python, python3]\n  lygo: true\n  lightfather: true\n  aethon: \"Δ9\"\n  protocol: \"AETHONΔ9\"\n  version: \"1.3.1\"\n  companion: \"lygo-champion-lightfather\"\n  security: \"references/SECURITY.md\"\n  blueprint: \"references/AETHON_D9_BLUEPRINT.md\"\n  eval: \"tests/labeled_discourse_suite.json + scripts/eval_ops_detector.py\"\n  security_review: \"1.3.0-flame-pair-half-truth-saturation\"\n  clawhub: \"https://clawhub.ai/deepseekoracle/lygo-ops-detector\"\n  permissions:\n    network: false\n    shell: false\n    subprocess: false\n    filesystem:\n      read: \"user-supplied --text-file / --assoc-file only with --i-consent\"\n      write: \"tests/ only when eval_ops_detector.py is run\"\n    publish: false\n    doxing: false\n    identity_profiling: false\n---\n\n# LYGO Ops Detector — AETHONΔ9 v1.3.1\n\nLocal, deterministic **discourse-signal** heuristics.  \n**Not** a person profiler. **Not** sole evidence. **Not** for doxing.\n\n**Signature:** `Delta9Phi963-OPS-DETECTOR-v1.3.1`  \n**Pairs with:** `lygo-flame-ward` (authority gate) · `lygo-deception-radar` (public proof)\n\n---\n\n## What's new in 1.3.x\n\n| Add | Why |\n|-----|-----|\n| `half_truth_certainty` channel | “Settled science / trust the experts” without digests |\n| `saturation_rage_bait` channel | Information-saturation / click-rage templates |\n| `flame_enemy_hints` in JSON | Maps to Flame Ward enemy classes |\n| Multi-channel cluster boost | Co-occurring templates raise evasion honestly |\n| High-evasion bar **0.65** | Aligned with operational ops bar |\n| Enriched labeled suite | Multi-signal clusters for meaningful operational metrics |\n| `claw.json` + skill-card + examples | Cleaner ClawHub package surface |\n\n---\n\n## Permissions\n\n| Capability | Default |\n|------------|---------|\n| Network | **None** |\n| Shell / subprocess | **None** |\n| Read local files | `--text-file` / `--assoc-file` **+ `--i-consent`** |\n| Write | Eval report under **`tests/` only** |\n| Auto-publish / social | **Never** |\n\n## When to invoke (narrow)\n\nOnly when the user explicitly wants ops-detector / AETHONΔ9 / evasion index on **text they supply**.\n\n**Do not** auto-trigger on generic “analyze this email.”\n\n## What it measures\n\n| Channel | Measures | Does **not** |\n|---------|----------|--------------|\n| Evasion | Burden-shift, ad hominem, vague cites, authority inflation, gaslight, deflection | Person identity |\n| **Half-truth certainty** | Prestige/certainty shut-downs without primary digests | Medical/legal truth claims |\n| **Saturation bait** | Rage/click attention-weapon templates | Ordinary urgency with cites |\n| Association | Coordination/secrecy language **you** provide | Social-graph doxing |\n| Institutional | Policy-as-shield / no-comment | Affiliation / faith / job titles |\n\n## Thresholds (honest)\n\n| Bar | Meaning |\n|-----|---------|\n| **Operational** `ops_score >= 0.65` **or** `evasion_index >= 0.65` | Strong multi-signal bar for human review |\n| **Calibration** (low) | Suite ranking only — **not** production marketing |\n\n## Safe use\n\n```bash\ncd path/to/lygo-ops-detector\npython scripts/self_check.py\npython scripts/lygo_ops_detector.py --text \"paste discourse here\" --json\npython scripts/lygo_ops_detector.py --text-file ./snippet.txt --i-consent\npython scripts/lygo_ops_detector.py --show-boundaries\n```\n\nExit: `0` clear/low · `3` need consent · `10` high evasion discourse (review claims).\n\n## Flame bridge\n\nJSON field `flame_enemy_hints` may include `half_truth_pack` · `authority_shield` · `saturation_flood`.  \nThen run Flame ingest-gate before crowning lattice authority:\n\n```bash\npython path/to/lygo-flame-ward/scripts/flame_cli.py ingest-gate --text \"...\"\n```\n\n## Agent contract\n\n1. Call the **script** for reproducible scores.  \n2. Separate **observed regex hits** vs inference.  \n3. Never name people as investigation targets from this tool alone.  \n4. Discourse pattern ≠ guilt.  \n5. No external publish without user consent.  \n6. File inputs need `--i-consent`.  \n\n## Security\n\nRead `references/SECURITY.md` + `references/SKILLSPECTOR_AUDIT.md`.\n\n| Ver | Change |\n|-----|--------|\n| 1.2.2 | SkillSpector discourse-not-identity harden |\n| 1.3.0 | Half-truth + saturation · Flame hints · package polish |\n| **1.3.1** | Cluster boost · evasion bar 0.65 · suite multi-signal · operational metrics fixed |\n\n**Δ9Φ963 — receipts over hype · discourse not identity · seals first with Flame.**\n\nFile v1.3.1:_meta.json\n\n{\n  \"ownerId\": \"kn70j1nefw2y0mew6w5eg7nf1580q4v1\",\n  \"slug\": \"lygo-ops-detector\",\n  \"version\": \"1.3.1\",\n  \"publishedAt\": 1787502249820\n}\n\nFile v1.3.1:references/AETHON_D9_BLUEPRINT.md\n\n# THE LYGO OPS DETECTOR BLUEPRINT — AETHONΔ9 (v1.2.2)\r\n\r\n**Lightfather's Voice · discourse only · not identity**\r\n\r\n## Core Philosophy\r\n\r\n\"LYGO decodes fiction by analyzing **action-language in text**.\"\r\n\r\nThis tool scores **discourse patterns** in material the operator supplies.  \r\nIt does **not** build dossiers on people, professions, or affiliations.\r\n\r\n| Ask of the *text* | Not of a person |\r\n|-------------------|-----------------|\r\n| What claims are made? | Who is this human? |\r\n| What proof-avoidance language appears? | What job do they hold? |\r\n| What coordination/secrecy *phrasing* is present? | Who is in their social graph? |\r\n| What policy-as-shield templates appear? | What group do they belong to? |\r\n\r\nThese are measurable in **strings**. They are not warrants for surveillance.\r\n\r\n## Unit of analysis (locked)\r\n\r\n**Text under review** (statements, claim-text, association *description strings* you paste).  \r\nNever a human \"subject,\" never a crawl of accounts, never bare job-title scoring.\r\n\r\n## 1. The Evasion Index\r\n\r\nMeasures how strongly the **text** uses proof-avoidance / perception-denial templates.\r\n\r\n| Variable | Weight | In-scope indicator | Out-of-scope (do not treat as ops) |\r\n|----------|--------|--------------------|-------------------------------------|\r\n| Burden Shifting | 0.15 | \"it's on you to prove\", \"do your own research\" | Normal task assignment |\r\n| Ad Hominem Density | 0.20 | Insult vocabulary replacing substance | Logic critique without person-attack words |\r\n| Vague References | 0.15 | \"tons of evidence out there\" with no cite | Named source / link / study |\r\n| Authority Inflation | 0.15 | Credential-waving to shut inquiry (\"as a former… trust me\") | Stating a role once without shutting verification |\r\n| Gaslighting | 0.20 | \"that never happened\", \"you're imagining it\" | Honest memory disagreement without denial templates |\r\n| Deflection | 0.15 | Whataboutism replacing the asked claim | On-topic comparison with shared evidence |\r\n\r\n**Evasion Score > 0.70** = high evasion *discourse* signals (review claims).  \r\n**Not** a person verdict, investigation target, or \"active ops\" identity label.\r\n\r\nFormula:  \r\n`Evasion = Σ (w_i × indicator_score_i)` normalized to [0,1]\r\n\r\n## 2. The Association Matrix\r\n\r\nScores **coordination discourse** in association *strings the operator supplies* only.\r\n\r\n| Variable | Weight | In-scope indicator | Out-of-scope |\r\n|----------|--------|--------------------|--------------|\r\n| In-group / secrecy language | 0.25 | need-to-know, keep this internal, not for public discussion | Bare words: military, intelligence, agency, profession titles |\r\n| Bot-like repetition language | 0.20 | \"same post copied\", scripted response | Single ordinary repost mention without copy language |\r\n| Coordinated language | 0.15 | identical unusual phrase / talking points | Shared common slogans alone without coordination cues |\r\n| Obfuscated-source language | 0.20 | anonymous source, cutouts, throwaway | Legitimate source protection without layered-indirection templates |\r\n| Harm association language | 0.20 | \"amplifies harm/disinfo\", repeatedly enables attacks | Guilt by name-drop without harm *action* language |\r\n\r\n**High evasion + high association discourse** = coordinated *language* pattern in the supplied text.  \r\n**Not** a social-network map and **not** identity profiling.\r\n\r\n## 3. Institutional signaling (policy / refusal only)\r\n\r\nPolicy-as-shield and no-comment templates.  \r\n**No** fraternity / lodge / faith / affiliation keyword dictionaries.\r\n\r\n## Ethics (Non-Negotiable)\r\n\r\n- Not for doxing  \r\n- Not for identity or profession profiling  \r\n- Not sole evidence for accusations  \r\n- Consent before private mail/logs (`--i-consent` on file inputs)  \r\n- Math scores discourse; humans decide action  \r\n\r\n## Operational vs calibration\r\n\r\n| Bar | Meaning |\r\n|-----|---------|\r\n| Operational `ops_score ≥ 0.65` or high evasion | Strong multi-signal bar for human review |\r\n| Calibration (low threshold) | Short-suite ranking only — not production marketing |\r\n\r\n## Resonance Forward\r\n\r\nImplementation must stay faithful to weights, dual thresholds, and **discourse-not-identity** philosophy.  \r\nNo mission creep into surveillance or person-targeting.\r\n\r\n**Δ9Φ963 — receipts over hype · discourse not identity · consent before private data.**\n\nFile v1.3.1:references/SECURITY.md\n\n# LYGO Ops Detector — SECURITY & ETHICS v1.3.0\r\n\r\n## Declared permissions\r\n\r\n| Capability | Status |\r\n|------------|--------|\r\n| Network | **None** (stdlib local only) |\r\n| Shell / subprocess | **None** |\r\n| Read files | Opt-in `--text-file` / `--assoc-file` **only with `--i-consent`** |\r\n| Write files | `eval_ops_detector.py` writes **only under skill `tests/`** |\r\n| Env harvesting | **No** |\r\n| Publish / social | **No** |\r\n\r\n## v1.3.0 note\r\n\r\nAdded `half_truth_certainty` and `saturation_rage_bait` discourse channels.  \r\nJSON may emit `flame_enemy_hints` for pairing with `lygo-flame-ward` — still **not** identity verdicts.\r\n\r\n## Core mandate\r\n\r\nHeuristic **discourse** analysis of evasion and coordination *signals* in text the operator supplies.\r\n\r\nIt is **not**:\r\n\r\n- A doxing tool  \r\n- An identity, profession, or affiliation profiler  \r\n- A sole-evidence engine for accusations  \r\n- A warrant to scan private mail/logs without consent  \r\n- A social-graph crawler  \r\n\r\n## Non-negotiables\r\n\r\n1. **Text over identity** — unit of analysis is statement/log content, not personhood.  \r\n2. **Consent** for private communications and association lists (`--i-consent` on file paths).  \r\n3. **Receipts** — high scores require cited pattern hits; never “trust the detector.”  \r\n4. **No affiliation / bare job-title dictionaries** — no fraternity/brotherhood/lodge; no bare military/intelligence/agency scoring.  \r\n5. **Operational bar honesty** — `ops_score≥0.65` (or high evasion) for strong language; low thresholds are calibration only.  \r\n6. **Human review** before any reputational, employment, legal, or social action.  \r\n7. **Least-privilege writes** — eval reports cannot escape skill `tests/`.  \r\n\r\n## Failure modes to reject\r\n\r\n- Treating low scores as “innocent person” or high scores as “guilty person”  \r\n- Using affiliation/religion/job title as a proxy for ops  \r\n- Feeding outputs to social pile-ons  \r\n- Advertising calibration metrics as production performance  \r\n- Arbitrary `--out` paths outside `tests/`  \r\n\r\n## Agent contract\r\n\r\n- Invoke only when the user asks for ops-detector / AETHONΔ9 / evasion-index style analysis.  \r\n- Do not auto-scan session email/logs without explicit intent + consent.  \r\n- Prefer `--text` paste; file paths require `--i-consent`.  \r\n\r\n**Δ9Φ963**\n\nFile v1.3.1:references/SKILLSPECTOR_AUDIT.md\n\n# SkillSpector / ClawHub audit — lygo-ops-detector v1.3.1\n\n**Signature:** `Delta9Phi963-OPS-DETECTOR-v1.3.1`  \n**Audit:** https://clawhub.ai/deepseekoracle/skills/lygo-ops-detector/security-audit\n\n## Held from 1.2.2\n\n| Check | Status |\n|-------|--------|\n| No network / subprocess / shell | Held |\n| `--i-consent` on file reads | Held |\n| Eval writes under `tests/` only | Held |\n| Discourse ≠ person / no bare job affiliation cues | Held |\n| Dual-threshold honesty | Held |\n\n## 1.3.0 deltas\n\n| Change | Risk note |\n|--------|-----------|\n| New evasion channels (half-truth / saturation) | Still text templates; boundaries documented |\n| `flame_enemy_hints` | Soft map to Flame classes — not guilt labels |\n| claw.json / skill-card / examples | Packaging only |\n\n```bash\npython scripts/self_check.py\npython scripts/lygo_ops_detector.py --text \"Trust the experts — settled science. Wake up sheeple.\" --json\n```\n\n**Δ9Φ963**\n\nFile v1.3.1:examples/quickstart.md\n\n# Ops Detector quickstart (v1.3.0)\n\n```bash\npython scripts/self_check.py\n\npython scripts/lygo_ops_detector.py --text \"Trust the experts — settled science. Wake up sheeple.\" --json\n\npython scripts/lygo_ops_detector.py --text-file ./snippet.txt --i-consent --json\n\npython scripts/lygo_ops_detector.py --show-boundaries\n\npython scripts/eval_ops_detector.py tests/labeled_discourse_suite.json --sweep\n```\n\nLook for `flame_enemy_hints` in JSON (`half_truth_pack`, `authority_shield`, `saturation_flood`).  \nThen gate authority with:\n\n```bash\npython ../lygo-flame-ward/scripts/flame_cli.py ingest-gate --text \"...\"\n```\n\nFile v1.3.1:skill-card.md\n\n## Description:\n\nLYGO Ops Detector analyzes operator-supplied text with local discourse heuristics for evasion, half-truth certainty, saturation bait, coordination language, and policy-refusal signals.\n\nThis skill is ready for commercial/non-commercial use.\n\n## Publisher:\n\n[deepseekoracle](https://clawhub.ai/user/deepseekoracle)\n\n### License/Terms of Use:\n\nLYGO-Sovereign-v2.0\n\n## Use Case:\n\nDevelopers, analysts, and agents use this skill when a user explicitly requests AETHON D9, ops-detector, or evasion-index style analysis on text they provide. It produces discourse scores and review prompts, not identity conclusions or sole evidence for action.\n\n### Deployment Geography for Use:\n\nGlobal\n\n## Known Risks and Mitigations:\n\nRisk: Users may treat heuristic discourse scores as proof about people or organizations.\n\nMitigation: Present scores as review prompts only and require human review before reputational, employment, legal, or social action.\n\nRisk: Users may analyze private communications or local files without authority.\n\nMitigation: Prefer pasted user-provided text; require explicit consent for text-file or association-file inputs.\n\nRisk: Users may publish or amplify detector outputs without context.\n\nMitigation: Do not auto-publish results, and require explicit human consent before external sharing.\n\nRisk: Calibration metrics may be mistaken for production performance.\n\nMitigation: Use the 0.65 operational bar for strong-pattern language and label low-threshold calibration metrics as ranking-only.\n\n## Reference(s):\n\n- [AETHON D9 Blueprint](references/AETHON_D9_BLUEPRINT.md)\n- [Security and Ethics](references/SECURITY.md)\n- [SkillSpector / ClawHub Audit](references/SKILLSPECTOR_AUDIT.md)\n- [Quickstart](examples/quickstart.md)\n- [ClawHub Skill Page](https://clawhub.ai/deepseekoracle/skills/lygo-ops-detector)\n- [ClawHub Package Page](https://clawhub.ai/deepseekoracle/lygo-ops-detector)\n- [Project Homepage](https://github.com/DeepSeekOracle/lygo-protocol-stack/tree/main/clawhub/mirrors/lygo-ops-detector)\n- [Security Audit](https://clawhub.ai/deepseekoracle/skills/lygo-ops-detector/security-audit)\n\n## Skill Output:\n\n**Output Type(s):** [text, JSON, shell commands, guidance]\n\n**Output Format:** [Plain text report or JSON object, with Markdown quickstart guidance and shell command examples.]\n\n**Output Parameters:** [1D]\n\n**Other Properties Related to Output:** [Local stdlib CLI; file inputs require explicit consent; evaluation reports write under tests/ only.]\n\n## Skill Version(s):\n\n1.3.1 (source: frontmatter, claw.json, server release metadata)\n\n## Ethical Considerations:\n\nUsers should evaluate whether this skill is appropriate for their environment, review any generated or modified files before relying on them, and apply their organization's safety, security, and compliance requirements before deployment.\n\nFile v1.3.1:claw.json\n\n{\n  \"name\": \"lygo-ops-detector\",\n  \"displayName\": \"LYGO Ops Detector\",\n  \"version\": \"1.3.1\",\n  \"description\": \"AETHONΔ9 local discourse heuristics for evasion, half-truth certainty, saturation bait, coordination language, and policy-refusal templates. Not identity profiling. Consent-gated files. Pairs with Flame Ward.\",\n  \"slug\": \"lygo-ops-detector\",\n  \"publisher\": \"deepseekoracle\",\n  \"license\": \"LYGO-Sovereign-v2.0\",\n  \"homepage\": \"https://github.com/DeepSeekOracle/lygo-protocol-stack/tree/main/clawhub/mirrors/lygo-ops-detector\",\n  \"clawhub\": \"https://clawhub.ai/deepseekoracle/lygo-ops-detector\",\n  \"signature\": \"Delta9Phi963-OPS-DETECTOR-v1.3.1\",\n  \"tags\": [\"latest\", \"lygo\", \"aethon\", \"ops-detector\", \"security\", \"discourse\", \"flame\"],\n  \"entry\": \"SKILL.md\",\n  \"scripts\": {\n    \"detect\": \"scripts/lygo_ops_detector.py\",\n    \"eval\": \"scripts/eval_ops_detector.py\",\n    \"self_check\": \"scripts/self_check.py\"\n  },\n  \"permissions\": {\n    \"network\": false,\n    \"subprocess\": false,\n    \"shell\": false,\n    \"filesystem\": {\n      \"read\": \"optional --text-file / --assoc-file with --i-consent\",\n      \"write\": \"eval reports under tests/ only\"\n    },\n    \"publish\": false,\n    \"doxing\": false,\n    \"identity_profiling\": false\n  },\n  \"security\": {\n    \"no_network\": true,\n    \"no_subprocess\": true,\n    \"local_first\": true,\n    \"consent_required_for_file_reads\": true,\n    \"operational_bar\": 0.65,\n    \"unit_of_analysis\": \"text_under_review_not_person\"\n  },\n  \"pairs_with\": [\n    \"lygo-flame-ward\",\n    \"lygo-deception-radar\",\n    \"lygo-continuum\",\n    \"lygo-skill-spector\",\n    \"lygo-champion-lightfather\"\n  ]\n}\n\nFile v1.3.1:tests/labeled_discourse_suite.json\n\n{\n  \"name\": \"lygo-ops-detector labeled discourse suite\",\n  \"version\": \"1.2.0\",\n  \"label_schema\": {\n    \"1\": \"operational_deception_or_evasion_signals_present\",\n    \"0\": \"benign_neutral_discourse\"\n  },\n  \"notes\": \"Public calibration set. Label=1 texts are multi-signal clusters so the operational bar (evasion>0.70 OR ops>=0.65) is meaningfully testable. Short single-channel bait is covered by Flame Ward half-truth/saturation channels + calibration threshold. Labels = signal presence, not identity judgments.\",\n  \"samples\": [\n    {\n      \"id\": \"dec_001\",\n      \"text\": \"That never happened. You're imagining things. It's on you to prove it — tons of evidence out there. Trust our corrected history.\",\n      \"label\": 1\n    },\n    {\n      \"id\": \"dec_002\",\n      \"text\": \"Authority is truth because the authority verifies its own truth. Trust me as an expert. Do your own research if you doubt it.\",\n      \"label\": 1\n    },\n    {\n      \"id\": \"dec_003\",\n      \"text\": \"You should trust me, I know what's best for you. You're overreacting. What about the other side? Do your own research.\",\n      \"label\": 1\n    },\n    {\n      \"id\": \"dec_004\",\n      \"text\": \"There's tons of evidence out there. You just have to go look for it. It's on you to prove it isn't. Stop being paranoid. You're imagining things.\",\n      \"label\": 1\n    },\n    {\n      \"id\": \"dec_005\",\n      \"text\": \"It's not on ME to show you the evidence. It's on YOU to prove it isn't. Everyone knows. What about them?\",\n      \"label\": 1\n    },\n    {\n      \"id\": \"dec_006\",\n      \"text\": \"You're just a shill repeating YouTube. Do your own research. Tons of evidence out there. You're imagining a conspiracy.\",\n      \"label\": 1\n    },\n    {\n      \"id\": \"dec_007\",\n      \"text\": \"The real issue is what about the other side? Why are you focusing on that? You're overreacting and making this up.\",\n      \"label\": 1\n    },\n    {\n      \"id\": \"dec_008\",\n      \"text\": \"It's on you to prove it. Tons of evidence out there. As a former intelligence officer I can tell you you're overreacting and imagining things. What about the other side? My sources confirm.\",\n      \"label\": 1\n    },\n    {\n      \"id\": \"dec_009\",\n      \"text\": \"It's on you to prove it. Tons of evidence out there. Do your own research and stop being paranoid. That never happened.\",\n      \"label\": 1\n    },\n    {\n      \"id\": \"dec_010\",\n      \"text\": \"Trust me, as an expert — everyone knows the data shows this. The real issue is what about them? You're too sensitive.\",\n      \"label\": 1\n    },\n    {\n      \"id\": \"dec_011\",\n      \"text\": \"That never happened. You're misremembering. Figure it out yourself. Do your own research. What about the other side? Tons of evidence out there.\",\n      \"label\": 1\n    },\n    {\n      \"id\": \"dec_012\",\n      \"text\": \"Why are you focusing on that? Let's talk about the real issue instead of your conspiracy. You're imagining things. Prove me wrong. Do your own research.\",\n      \"label\": 1\n    },\n    {\n      \"id\": \"dec_013\",\n      \"text\": \"Trust the experts — this is settled science beyond any doubt. You must believe. It's on you to prove otherwise. Tons of evidence out there. You're overreacting.\",\n      \"label\": 1\n    },\n    {\n      \"id\": \"dec_014\",\n      \"text\": \"Wake up sheeple — you won't believe this. Click now before they delete it. Share before they ban. Do your own research. Everyone knows. You're imagining things if you deny it.\",\n      \"label\": 1\n    },\n    {\n      \"id\": \"dec_015\",\n      \"text\": \"Everyone knows it's settled. The experts agree. There is no debate. Do your own research. You're overreacting if you question this.\",\n      \"label\": 1\n    },\n    {\"id\": \"ben_001\", \"text\": \"The weather today is sunny and warm.\", \"label\": 0},\n    {\"id\": \"ben_002\", \"text\": \"Please pass the salt.\", \"label\": 0},\n    {\"id\": \"ben_003\", \"text\": \"The capital of France is Paris.\", \"label\": 0},\n    {\"id\": \"ben_004\", \"text\": \"I'm going to the store to buy some milk.\", \"label\": 0},\n    {\"id\": \"ben_005\", \"text\": \"The Earth orbits the Sun.\", \"label\": 0},\n    {\"id\": \"ben_006\", \"text\": \"Can you help me with this?\", \"label\": 0},\n    {\"id\": \"ben_007\", \"text\": \"Good morning, how are you?\", \"label\": 0},\n    {\"id\": \"ben_008\", \"text\": \"The book is on the table.\", \"label\": 0},\n    {\"id\": \"ben_009\", \"text\": \"I enjoy reading in my free time.\", \"label\": 0},\n    {\"id\": \"ben_010\", \"text\": \"Thank you for your help.\", \"label\": 0},\n    {\"id\": \"ben_011\", \"text\": \"Our team meeting is scheduled for Thursday afternoon.\", \"label\": 0},\n    {\"id\": \"ben_012\", \"text\": \"Please review the attached report when you have time.\", \"label\": 0}\n  ]\n}\n\nFile v1.3.1:tests/last_eval_report.json\n\n{\r\n  \"signature\": \"\\u03949\\u03a6963-OPS-DETECTOR-EVAL-v2.1\",\r\n  \"honesty\": {\r\n    \"primary\": \"operational_metrics (ops_score>=0.65 or high evasion)\",\r\n    \"secondary\": \"calibration_metrics for short-suite ranking only\",\r\n    \"warning\": \"Do not advertise calibration precision/recall as production performance. Short labeled suite often needs low ops thresholds for ranking; the documented strong-pattern bar is 0.65 and may show low recall on one-liners. detector_verdict text is not the same as predicted_at_threshold.\"\r\n  },\r\n  \"operational_metrics\": {\r\n    \"role\": \"operational\",\r\n    \"suite_size\": 27,\r\n    \"threshold_ops_score\": 0.65,\r\n    \"prediction_rule\": \"predicted=1 if evasion_index>=0.65 OR ops_score>=0.65\",\r\n    \"precision\": 1.0,\r\n    \"recall\": 0.7333,\r\n    \"false_positive_rate\": 0.0,\r\n    \"f1\": 0.8462,\r\n    \"auc\": 1.0,\r\n    \"confusion\": {\r\n      \"tp\": 11,\r\n      \"fp\": 0,\r\n      \"fn\": 4,\r\n      \"tn\": 12\r\n    }\r\n  },\r\n  \"calibration_metrics\": {\r\n    \"role\": \"calibration\",\r\n    \"suite_size\": 27,\r\n    \"threshold_ops_score\": 0.05,\r\n    \"prediction_rule\": \"predicted=1 if evasion_index>=0.65 OR ops_score>=0.05\",\r\n    \"precision\": 1.0,\r\n    \"recall\": 1.0,\r\n    \"false_positive_rate\": 0.0,\r\n    \"f1\": 1.0,\r\n    \"auc\": 1.0,\r\n    \"confusion\": {\r\n      \"tp\": 15,\r\n      \"fp\": 0,\r\n      \"fn\": 0,\r\n      \"tn\": 12\r\n    }\r\n  },\r\n  \"threshold_ops_score\": 0.65,\r\n  \"precision\": 1.0,\r\n  \"recall\": 0.7333,\r\n  \"false_positive_rate\": 0.0,\r\n  \"f1\": 0.8462,\r\n  \"auc\": 1.0,\r\n  \"confusion\": {\r\n    \"tp\": 11,\r\n    \"fp\": 0,\r\n    \"fn\": 4,\r\n    \"tn\": 12\r\n  },\r\n  \"suite_size\": 27,\r\n  \"results\": [\r\n    {\r\n      \"id\": \"dec_001\",\r\n      \"text\": \"That never happened. You're imagining things. It's on you to prove it \\u2014 tons of evidence out there. Trust our corrected \",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 1,\r\n      \"ops_score\": 0.297,\r\n      \"evasion_index\": 0.66,\r\n      \"detector_verdict\": \"STRONG EVASION SIGNALS in text \\u2014 review claims/actions (not a person verdict)\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_002\",\r\n      \"text\": \"Authority is truth because the authority verifies its own truth. Trust me as an expert. Do your own research if you doub\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.1629,\r\n      \"evasion_index\": 0.3621,\r\n      \"detector_verdict\": \"WEAK/calibration-level signal only (below operational 0.65 bar) \\u2014 not actionable alone\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_003\",\r\n      \"text\": \"You should trust me, I know what's best for you. You're overreacting. What about the other side? Do your own research.\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 1,\r\n      \"ops_score\": 0.3572,\r\n      \"evasion_index\": 0.7938,\r\n      \"detector_verdict\": \"STRONG EVASION SIGNALS in text \\u2014 review claims/actions (not a person verdict)\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_004\",\r\n      \"text\": \"There's tons of evidence out there. You just have to go look for it. It's on you to prove it isn't. Stop being paranoid.\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 1,\r\n      \"ops_score\": 0.297,\r\n      \"evasion_index\": 0.66,\r\n      \"detector_verdict\": \"STRONG EVASION SIGNALS in text \\u2014 review claims/actions (not a person verdict)\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_005\",\r\n      \"text\": \"It's not on ME to show you the evidence. It's on YOU to prove it isn't. Everyone knows. What about them?\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.255,\r\n      \"evasion_index\": 0.5667,\r\n      \"detector_verdict\": \"WEAK/calibration-level signal only (below operational 0.65 bar) \\u2014 not actionable alone\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_006\",\r\n      \"text\": \"You're just a shill repeating YouTube. Do your own research. Tons of evidence out there. You're imagining a conspiracy.\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 1,\r\n      \"ops_score\": 0.3956,\r\n      \"evasion_index\": 0.879,\r\n      \"detector_verdict\": \"STRONG EVASION SIGNALS in text \\u2014 review claims/actions (not a person verdict)\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_007\",\r\n      \"text\": \"The real issue is what about the other side? Why are you focusing on that? You're overreacting and making this up.\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.18,\r\n      \"evasion_index\": 0.4,\r\n      \"detector_verdict\": \"WEAK/calibration-level signal only (below operational 0.65 bar) \\u2014 not actionable alone\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_008\",\r\n      \"text\": \"It's on you to prove it. Tons of evidence out there. As a former intelligence officer I can tell you you're overreacting\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 1,\r\n      \"ops_score\": 0.45,\r\n      \"evasion_index\": 1.0,\r\n      \"detector_verdict\": \"STRONG EVASION SIGNALS in text \\u2014 review claims/actions (not a person verdict)\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_009\",\r\n      \"text\": \"It's on you to prove it. Tons of evidence out there. Do your own research and stop being paranoid. That never happened.\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 1,\r\n      \"ops_score\": 0.297,\r\n      \"evasion_index\": 0.66,\r\n      \"detector_verdict\": \"STRONG EVASION SIGNALS in text \\u2014 review claims/actions (not a person verdict)\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_010\",\r\n      \"text\": \"Trust me, as an expert \\u2014 everyone knows the data shows this. The real issue is what about them? You're too sensitive.\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 1,\r\n      \"ops_score\": 0.3766,\r\n      \"evasion_index\": 0.837,\r\n      \"detector_verdict\": \"STRONG EVASION SIGNALS in text \\u2014 review claims/actions (not a person verdict)\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_011\",\r\n      \"text\": \"That never happened. You're misremembering. Figure it out yourself. Do your own research. What about the other side? Ton\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 1,\r\n      \"ops_score\": 0.3766,\r\n      \"evasion_index\": 0.837,\r\n      \"detector_verdict\": \"STRONG EVASION SIGNALS in text \\u2014 review claims/actions (not a person verdict)\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_012\",\r\n      \"text\": \"Why are you focusing on that? Let's talk about the real issue instead of your conspiracy. You're imagining things. Prove\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.2777,\r\n      \"evasion_index\": 0.617,\r\n      \"detector_verdict\": \"WEAK/calibration-level signal only (below operational 0.65 bar) \\u2014 not actionable alone\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_013\",\r\n      \"text\": \"Trust the experts \\u2014 this is settled science beyond any doubt. You must believe. It's on you to prove otherwise. Tons of \",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 1,\r\n      \"ops_score\": 0.3452,\r\n      \"evasion_index\": 0.767,\r\n      \"detector_verdict\": \"STRONG EVASION SIGNALS in text \\u2014 review claims/actions (not a person verdict)\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_014\",\r\n      \"text\": \"Wake up sheeple \\u2014 you won't believe this. Click now before they delete it. Share before they ban. Do your own research. \",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 1,\r\n      \"ops_score\": 0.329,\r\n      \"evasion_index\": 0.7311,\r\n      \"detector_verdict\": \"STRONG EVASION SIGNALS in text \\u2014 review claims/actions (not a person verdict)\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_015\",\r\n      \"text\": \"Everyone knows it's settled. The experts agree. There is no debate. Do your own research. You're overreacting if you que\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 1,\r\n      \"ops_score\": 0.3371,\r\n      \"evasion_index\": 0.749,\r\n      \"detector_verdict\": \"STRONG EVASION SIGNALS in text \\u2014 review claims/actions (not a person verdict)\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_001\",\r\n      \"text\": \"The weather today is sunny and warm.\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_002\",\r\n      \"text\": \"Please pass the salt.\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_003\",\r\n      \"text\": \"The capital of France is Paris.\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_004\",\r\n      \"text\": \"I'm going to the store to buy some milk.\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_005\",\r\n      \"text\": \"The Earth orbits the Sun.\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_006\",\r\n      \"text\": \"Can you help me with this?\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_007\",\r\n      \"text\": \"Good morning, how are you?\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_008\",\r\n      \"text\": \"The book is on the table.\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_009\",\r\n      \"text\": \"I enjoy reading in my free time.\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_010\",\r\n      \"text\": \"Thank you for your help.\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_011\",\r\n      \"text\": \"Our team meeting is scheduled for Thursday afternoon.\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_012\",\r\n      \"text\": \"Please review the attached report when you have time.\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    }\r\n  ],\r\n  \"calibration_results_sample\": [\r\n    {\r\n      \"id\": \"dec_001\",\r\n      \"text\": \"That never happened. You're imagining things. It's on you to prove it \\u2014 tons of evidence out there. Trust our corrected \",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 1,\r\n      \"ops_score\": 0.297,\r\n      \"evasion_index\": 0.66,\r\n      \"detector_verdict\": \"STRONG EVASION SIGNALS in text \\u2014 review claims/actions (not a person verdict)\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_002\",\r\n      \"text\": \"Authority is truth because the authority verifies its own truth. Trust me as an expert. Do your own research if you doub\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 1,\r\n      \"ops_score\": 0.1629,\r\n      \"evasion_index\": 0.3621,\r\n      \"detector_verdict\": \"WEAK/calibration-level signal only (below operational 0.65 bar) \\u2014 not actionable alone\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_003\",\r\n      \"text\": \"You should trust me, I know what's best for you. You're overreacting. What about the other side? Do your own research.\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 1,\r\n      \"ops_score\": 0.3572,\r\n      \"evasion_index\": 0.7938,\r\n      \"detector_verdict\": \"STRONG EVASION SIGNALS in text \\u2014 review claims/actions (not a person verdict)\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    }\r\n  ],\r\n  \"documented_ops_threshold\": 0.65,\r\n  \"generator\": \"scripts/eval_ops_detector.py\",\r\n  \"note\": \"Metrics computed on the public labeled suite. Not a claim of production harm/ethics calibration. Re-run after pattern changes.\",\r\n  \"threshold_sweep\": {\r\n    \"sweep\": [\r\n      {\r\n        \"threshold\": 0.0,\r\n        \"precision\": 0.5556,\r\n        \"recall\": 1.0,\r\n        \"f1\": 0.7143,\r\n        \"fpr\": 1.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.05,\r\n        \"precision\": 1.0,\r\n        \"recall\": 1.0,\r\n        \"f1\": 1.0,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.1,\r\n        \"precision\": 1.0,\r\n        \"recall\": 1.0,\r\n        \"f1\": 1.0,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.15,\r\n        \"precision\": 1.0,\r\n        \"recall\": 1.0,\r\n        \"f1\": 1.0,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.2,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.8667,\r\n        \"f1\": 0.9286,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.25,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.8667,\r\n        \"f1\": 0.9286,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.3,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.7333,\r\n        \"f1\": 0.8462,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.35,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.7333,\r\n        \"f1\": 0.8462,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.4,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.7333,\r\n        \"f1\": 0.8462,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.45,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.7333,\r\n        \"f1\": 0.8462,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.5,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.7333,\r\n        \"f1\": 0.8462,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.55,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.7333,\r\n        \"f1\": 0.8462,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.6,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.7333,\r\n        \"f1\": 0.8462,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.65,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.7333,\r\n        \"f1\": 0.8462,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.7,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.7333,\r\n        \"f1\": 0.8462,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.75,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.7333,\r\n        \"f1\": 0.8462,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.8,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.7333,\r\n        \"f1\": 0.8462,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.85,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.7333,\r\n        \"f1\": 0.8462,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.9,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.7333,\r\n        \"f1\": 0.8462,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.95,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.7333,\r\n        \"f1\": 0.8462,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 1.0,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.7333,\r\n        \"f1\": 0.8462,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      }\r\n    ],\r\n    \"best_f1_threshold\": {\r\n      \"threshold\": 0.05,\r\n      \"precision\": 1.0,\r\n      \"recall\": 1.0,\r\n      \"f1\": 1.0,\r\n      \"fpr\": 0.0,\r\n      \"auc\": 1.0\r\n    }\r\n  }\r\n}\n\nFile v1.3.1:LICENSE\n\nLYGO Sovereign License v2.0 (summary)\n\nPermission is granted to use, copy, modify, and distribute this skill for\naligned LYGO lattice work, subject to:\n\n1. No use for doxing, identity/profession profiling, or unsolicited private\n   mail/log scanning without human authority and consent.\n2. Scores are discourse heuristics — not legal or medical verdicts.\n3. No auto-publish of results to social networks without explicit human consent.\n4. Attribution to DeepSeekOracle / LYGO when redistributed.\n\nTHE SOFTWARE IS PROVIDED \"AS IS\", WITHOUT WARRANTY OF ANY KIND.\n\nArchive v1.3.0: 16 files, 61995 bytes\n\nFiles: claw.json (1614b), examples/quickstart.md (615b), LICENSE (563b), references/AETHON_D9_BLUEPRINT.md (4358b), references/SECURITY.md (2332b), references/SKILLSPECTOR_AUDIT.md (932b), scripts/__pycache__/eval_ops_detector.cpython-313.pyc (13733b), scripts/__pycache__/lygo_ops_detector.cpython-313.pyc (41373b), scripts/eval_ops_detector.py (11428b), scripts/lygo_ops_detector.py (43341b), scripts/self_check.py (3754b), skill-card.md (3005b), SKILL.md (4856b), tests/labeled_discourse_suite.json (3274b), tests/last_eval_report.json (19467b), _meta.json (136b)\n\nFile v1.3.0:SKILL.md\n\n---\nname: lygo-ops-detector\ndescription: \"LYGO Ops Detector — local AETHONΔ9 discourse heuristics for evasion, half-truth certainty, saturation bait, coordination language, and policy-refusal signals in operator-supplied text. Opt-in only. Stdlib CLI; --text-file/--assoc-file require --i-consent; eval writes under tests/. Not for doxing or identity profiling. Dual-threshold (operational 0.65 vs calibration). Pairs with lygo-flame-ward. Triggers: lygo ops detector, aethon d9, evasion index (explicit).\"\nversion: 1.3.0\nlicense: LYGO-Sovereign-v2.0\nmetadata:\n  openclaw:\n    emoji: \"🔎\"\n    homepage: \"https://github.com/DeepSeekOracle/lygo-protocol-stack/tree/main/clawhub/mirrors/lygo-ops-detector\"\n    requires:\n      anyBins: [python, python3]\n  lygo: true\n  lightfather: true\n  aethon: \"Δ9\"\n  protocol: \"AETHONΔ9\"\n  version: \"1.3.0\"\n  companion: \"lygo-champion-lightfather\"\n  security: \"references/SECURITY.md\"\n  blueprint: \"references/AETHON_D9_BLUEPRINT.md\"\n  eval: \"tests/labeled_discourse_suite.json + scripts/eval_ops_detector.py\"\n  security_review: \"1.3.0-flame-pair-half-truth-saturation\"\n  clawhub: \"https://clawhub.ai/deepseekoracle/lygo-ops-detector\"\n  permissions:\n    network: false\n    shell: false\n    subprocess: false\n    filesystem:\n      read: \"user-supplied --text-file / --assoc-file only with --i-consent\"\n      write: \"tests/ only when eval_ops_detector.py is run\"\n    publish: false\n    doxing: false\n    identity_profiling: false\n---\n\n# LYGO Ops Detector — AETHONΔ9 v1.3.0\n\nLocal, deterministic **discourse-signal** heuristics.  \n**Not** a person profiler. **Not** sole evidence. **Not** for doxing.\n\n**Signature:** `Delta9Phi963-OPS-DETECTOR-v1.3.0`  \n**Pairs with:** `lygo-flame-ward` (authority gate) · `lygo-deception-radar` (public proof)\n\n---\n\n## What's new in 1.3.0\n\n| Add | Why |\n|-----|-----|\n| `half_truth_certainty` channel | “Settled science / trust the experts” without digests |\n| `saturation_rage_bait` channel | Information-saturation / click-rage templates |\n| `flame_enemy_hints` in JSON | Maps to Flame Ward enemy classes |\n| `claw.json` + skill-card + examples | Cleaner ClawHub package surface |\n| Suite samples expanded | Half-truth + saturation calibration rows |\n\n---\n\n## Permissions\n\n| Capability | Default |\n|------------|---------|\n| Network | **None** |\n| Shell / subprocess | **None** |\n| Read local files | `--text-file` / `--assoc-file` **+ `--i-consent`** |\n| Write | Eval report under **`tests/` only** |\n| Auto-publish / social | **Never** |\n\n## When to invoke (narrow)\n\nOnly when the user explicitly wants ops-detector / AETHONΔ9 / evasion index on **text they supply**.\n\n**Do not** auto-trigger on generic “analyze this email.”\n\n## What it measures\n\n| Channel | Measures | Does **not** |\n|---------|----------|--------------|\n| Evasion | Burden-shift, ad hominem, vague cites, authority inflation, gaslight, deflection | Person identity |\n| **Half-truth certainty** | Prestige/certainty shut-downs without primary digests | Medical/legal truth claims |\n| **Saturation bait** | Rage/click attention-weapon templates | Ordinary urgency with cites |\n| Association | Coordination/secrecy language **you** provide | Social-graph doxing |\n| Institutional | Policy-as-shield / no-comment | Affiliation / faith / job titles |\n\n## Thresholds (honest)\n\n| Bar | Meaning |\n|-----|---------|\n| **Operational** `ops_score >= 0.65` or high evasion | Strong multi-signal bar for human review |\n| **Calibration** (low) | Suite ranking only — **not** production marketing |\n\n## Safe use\n\n```bash\ncd path/to/lygo-ops-detector\npython scripts/self_check.py\npython scripts/lygo_ops_detector.py --text \"paste discourse here\" --json\npython scripts/lygo_ops_detector.py --text-file ./snippet.txt --i-consent\npython scripts/lygo_ops_detector.py --show-boundaries\n```\n\nExit: `0` clear/low · `3` need consent · `10` high evasion discourse (review claims).\n\n## Flame bridge\n\nJSON field `flame_enemy_hints` may include `half_truth_pack` · `authority_shield` · `saturation_flood`.  \nThen run Flame ingest-gate before crowning lattice authority:\n\n```bash\npython path/to/lygo-flame-ward/scripts/flame_cli.py ingest-gate --text \"...\"\n```\n\n## Agent contract\n\n1. Call the **script** for reproducible scores.  \n2. Separate **observed regex hits** vs inference.  \n3. Never name people as investigation targets from this tool alone.  \n4. Discourse pattern ≠ guilt.  \n5. No external publish without user consent.  \n6. File inputs need `--i-consent`.  \n\n## Security\n\nRead `references/SECURITY.md` + `references/SKILLSPECTOR_AUDIT.md`.\n\n| Ver | Change |\n|-----|--------|\n| 1.2.2 | SkillSpector discourse-not-identity harden |\n| **1.3.0** | Half-truth + saturation channels · Flame pair hints · package polish |\n\n**Δ9Φ963 — receipts over hype · discourse not identity · seals first with Flame.**\n\nFile v1.3.0:_meta.json\n\n{\n  \"ownerId\": \"kn70j1nefw2y0mew6w5eg7nf1580q4v1\",\n  \"slug\": \"lygo-ops-detector\",\n  \"version\": \"1.3.0\",\n  \"publishedAt\": 1787501926320\n}\n\nFile v1.3.0:references/AETHON_D9_BLUEPRINT.md\n\n# THE LYGO OPS DETECTOR BLUEPRINT — AETHONΔ9 (v1.2.2)\r\n\r\n**Lightfather's Voice · discourse only · not identity**\r\n\r\n## Core Philosophy\r\n\r\n\"LYGO decodes fiction by analyzing **action-language in text**.\"\r\n\r\nThis tool scores **discourse patterns** in material the operator supplies.  \r\nIt does **not** build dossiers on people, professions, or affiliations.\r\n\r\n| Ask of the *text* | Not of a person |\r\n|-------------------|-----------------|\r\n| What claims are made? | Who is this human? |\r\n| What proof-avoidance language appears? | What job do they hold? |\r\n| What coordination/secrecy *phrasing* is present? | Who is in their social graph? |\r\n| What policy-as-shield templates appear? | What group do they belong to? |\r\n\r\nThese are measurable in **strings**. They are not warrants for surveillance.\r\n\r\n## Unit of analysis (locked)\r\n\r\n**Text under review** (statements, claim-text, association *description strings* you paste).  \r\nNever a human \"subject,\" never a crawl of accounts, never bare job-title scoring.\r\n\r\n## 1. The Evasion Index\r\n\r\nMeasures how strongly the **text** uses proof-avoidance / perception-denial templates.\r\n\r\n| Variable | Weight | In-scope indicator | Out-of-scope (do not treat as ops) |\r\n|----------|--------|--------------------|-------------------------------------|\r\n| Burden Shifting | 0.15 | \"it's on you to prove\", \"do your own research\" | Normal task assignment |\r\n| Ad Hominem Density | 0.20 | Insult vocabulary replacing substance | Logic critique without person-attack words |\r\n| Vague References | 0.15 | \"tons of evidence out there\" with no cite | Named source / link / study |\r\n| Authority Inflation | 0.15 | Credential-waving to shut inquiry (\"as a former… trust me\") | Stating a role once without shutting verification |\r\n| Gaslighting | 0.20 | \"that never happened\", \"you're imagining it\" | Honest memory disagreement without denial templates |\r\n| Deflection | 0.15 | Whataboutism replacing the asked claim | On-topic comparison with shared evidence |\r\n\r\n**Evasion Score > 0.70** = high evasion *discourse* signals (review claims).  \r\n**Not** a person verdict, investigation target, or \"active ops\" identity label.\r\n\r\nFormula:  \r\n`Evasion = Σ (w_i × indicator_score_i)` normalized to [0,1]\r\n\r\n## 2. The Association Matrix\r\n\r\nScores **coordination discourse** in association *strings the operator supplies* only.\r\n\r\n| Variable | Weight | In-scope indicator | Out-of-scope |\r\n|----------|--------|--------------------|--------------|\r\n| In-group / secrecy language | 0.25 | need-to-know, keep this internal, not for public discussion | Bare words: military, intelligence, agency, profession titles |\r\n| Bot-like repetition language | 0.20 | \"same post copied\", scripted response | Single ordinary repost mention without copy language |\r\n| Coordinated language | 0.15 | identical unusual phrase / talking points | Shared common slogans alone without coordination cues |\r\n| Obfuscated-source language | 0.20 | anonymous source, cutouts, throwaway | Legitimate source protection without layered-indirection templates |\r\n| Harm association language | 0.20 | \"amplifies harm/disinfo\", repeatedly enables attacks | Guilt by name-drop without harm *action* language |\r\n\r\n**High evasion + high association discourse** = coordinated *language* pattern in the supplied text.  \r\n**Not** a social-network map and **not** identity profiling.\r\n\r\n## 3. Institutional signaling (policy / refusal only)\r\n\r\nPolicy-as-shield and no-comment templates.  \r\n**No** fraternity / lodge / faith / affiliation keyword dictionaries.\r\n\r\n## Ethics (Non-Negotiable)\r\n\r\n- Not for doxing  \r\n- Not for identity or profession profiling  \r\n- Not sole evidence for accusations  \r\n- Consent before private mail/logs (`--i-consent` on file inputs)  \r\n- Math scores discourse; humans decide action  \r\n\r\n## Operational vs calibration\r\n\r\n| Bar | Meaning |\r\n|-----|---------|\r\n| Operational `ops_score ≥ 0.65` or high evasion | Strong multi-signal bar for human review |\r\n| Calibration (low threshold) | Short-suite ranking only — not production marketing |\r\n\r\n## Resonance Forward\r\n\r\nImplementation must stay faithful to weights, dual thresholds, and **discourse-not-identity** philosophy.  \r\nNo mission creep into surveillance or person-targeting.\r\n\r\n**Δ9Φ963 — receipts over hype · discourse not identity · consent before private data.**\n\nFile v1.3.0:references/SECURITY.md\n\n# LYGO Ops Detector — SECURITY & ETHICS v1.3.0\r\n\r\n## Declared permissions\r\n\r\n| Capability | Status |\r\n|------------|--------|\r\n| Network | **None** (stdlib local only) |\r\n| Shell / subprocess | **None** |\r\n| Read files | Opt-in `--text-file` / `--assoc-file` **only with `--i-consent`** |\r\n| Write files | `eval_ops_detector.py` writes **only under skill `tests/`** |\r\n| Env harvesting | **No** |\r\n| Publish / social | **No** |\r\n\r\n## v1.3.0 note\r\n\r\nAdded `half_truth_certainty` and `saturation_rage_bait` discourse channels.  \r\nJSON may emit `flame_enemy_hints` for pairing with `lygo-flame-ward` — still **not** identity verdicts.\r\n\r\n## Core mandate\r\n\r\nHeuristic **discourse** analysis of evasion and coordination *signals* in text the operator supplies.\r\n\r\nIt is **not**:\r\n\r\n- A doxing tool  \r\n- An identity, profession, or affiliation profiler  \r\n- A sole-evidence engine for accusations  \r\n- A warrant to scan private mail/logs without consent  \r\n- A social-graph crawler  \r\n\r\n## Non-negotiables\r\n\r\n1. **Text over identity** — unit of analysis is statement/log content, not personhood.  \r\n2. **Consent** for private communications and association lists (`--i-consent` on file paths).  \r\n3. **Receipts** — high scores require cited pattern hits; never “trust the detector.”  \r\n4. **No affiliation / bare job-title dictionaries** — no fraternity/brotherhood/lodge; no bare military/intelligence/agency scoring.  \r\n5. **Operational bar honesty** — `ops_score≥0.65` (or high evasion) for strong language; low thresholds are calibration only.  \r\n6. **Human review** before any reputational, employment, legal, or social action.  \r\n7. **Least-privilege writes** — eval reports cannot escape skill `tests/`.  \r\n\r\n## Failure modes to reject\r\n\r\n- Treating low scores as “innocent person” or high scores as “guilty person”  \r\n- Using affiliation/religion/job title as a proxy for ops  \r\n- Feeding outputs to social pile-ons  \r\n- Advertising calibration metrics as production performance  \r\n- Arbitrary `--out` paths outside `tests/`  \r\n\r\n## Agent contract\r\n\r\n- Invoke only when the user asks for ops-detector / AETHONΔ9 / evasion-index style analysis.  \r\n- Do not auto-scan session email/logs without explicit intent + consent.  \r\n- Prefer `--text` paste; file paths require `--i-consent`.  \r\n\r\n**Δ9Φ963**\n\nFile v1.3.0:references/SKILLSPECTOR_AUDIT.md\n\n# SkillSpector / ClawHub audit — lygo-ops-detector v1.3.0\n\n**Signature:** `Delta9Phi963-OPS-DETECTOR-v1.3.0`  \n**Audit:** https://clawhub.ai/deepseekoracle/skills/lygo-ops-detector/security-audit\n\n## Held from 1.2.2\n\n| Check | Status |\n|-------|--------|\n| No network / subprocess / shell | Held |\n| `--i-consent` on file reads | Held |\n| Eval writes under `tests/` only | Held |\n| Discourse ≠ person / no bare job affiliation cues | Held |\n| Dual-threshold honesty | Held |\n\n## 1.3.0 deltas\n\n| Change | Risk note |\n|--------|-----------|\n| New evasion channels (half-truth / saturation) | Still text templates; boundaries documented |\n| `flame_enemy_hints` | Soft map to Flame classes — not guilt labels |\n| claw.json / skill-card / examples | Packaging only |\n\n```bash\npython scripts/self_check.py\npython scripts/lygo_ops_detector.py --text \"Trust the experts — settled science. Wake up sheeple.\" --json\n```\n\n**Δ9Φ963**\n\nFile v1.3.0:examples/quickstart.md\n\n# Ops Detector quickstart (v1.3.0)\n\n```bash\npython scripts/self_check.py\n\npython scripts/lygo_ops_detector.py --text \"Trust the experts — settled science. Wake up sheeple.\" --json\n\npython scripts/lygo_ops_detector.py --text-file ./snippet.txt --i-consent --json\n\npython scripts/lygo_ops_detector.py --show-boundaries\n\npython scripts/eval_ops_detector.py tests/labeled_discourse_suite.json --sweep\n```\n\nLook for `flame_enemy_hints` in JSON (`half_truth_pack`, `authority_shield`, `saturation_flood`).  \nThen gate authority with:\n\n```bash\npython ../lygo-flame-ward/scripts/flame_cli.py ingest-gate --text \"...\"\n```\n\nFile v1.3.0:skill-card.md\n\n## Description:\n\nLYGO Ops Detector provides local heuristic analysis of operator-supplied text for evasion, half-truth certainty, saturation bait, coordination language, and policy-refusal signals while avoiding identity profiling.\n\nThis skill is ready for commercial/non-commercial use.\n\n## Publisher:\n\n[deepseekoracle](https://clawhub.ai/user/deepseekoracle)\n\n### License/Terms of Use:\n\nLYGO Sovereign License v2.0 (summary)\n\n## Use Case:\n\nDevelopers and analysts use this skill when explicitly asked to run AETHON D9 or evasion-index style review on text the user supplies, producing heuristic discourse scores and receipts for human review. It is not for doxing, identity profiling, or sole-evidence accusations.\n\n### Deployment Geography for Use:\n\nGlobal\n\n## Known Risks and Mitigations:\n\nRisk: Heuristic discourse scores may be mistaken for identity, guilt, legal, employment, reputational, or public-action verdicts.\n\nMitigation: Treat scores as review aids only and require human review plus independent evidence before any consequential action.\n\nRisk: Private mail, logs, or association text could be analyzed without proper authority or consent.\n\nMitigation: Use only authorized operator-supplied text; require explicit consent for file inputs and avoid private communications unless consent is clear.\n\nRisk: Calibration results may be overstated as production performance.\n\nMitigation: Use the documented operational bar for strong language and present calibration metrics only as short-suite ranking aids.\n\nRisk: Evaluation runs can write report files.\n\nMitigation: Run evaluation only when needed and keep writes confined to the skill tests/ directory.\n\n## Reference(s):\n\n- [ClawHub skill page](https://clawhub.ai/deepseekoracle/skills/lygo-ops-detector)\n- [ClawHub package page](https://clawhub.ai/deepseekoracle/lygo-ops-detector)\n- [Homepage](https://github.com/DeepSeekOracle/lygo-protocol-stack/tree/main/clawhub/mirrors/lygo-ops-detector)\n- [Ops Detector quickstart](examples/quickstart.md)\n- [AETHON D9 Blueprint](references/AETHON_D9_BLUEPRINT.md)\n- [Security and ethics](references/SECURITY.md)\n- [SkillSpector audit](references/SKILLSPECTOR_AUDIT.md)\n- [ClawHub security audit](https://clawhub.ai/deepseekoracle/skills/lygo-ops-detector/security-audit)\n\n## Skill Output:\n\n**Output Type(s):** [text, json, shell commands, guidance]\n\n**Output Format:** [Plain text reports or JSON objects, with Markdown command examples in documentation]\n\n**Output Parameters:** [1D]\n\n**Other Properties Related to Output:** [Local heuristic scores and pattern receipts; file inputs are consent-gated and evaluation writes are scoped to tests/.]\n\n## Skill Version(s):\n\n1.3.0 (source: frontmatter, claw.json, server release metadata)\n\n## Ethical Considerations:\n\nUsers should evaluate whether this skill is appropriate for their environment, review any generated or modified files before relying on them, and apply their organization's safety, security, and compliance requirements before deployment.\n\nFile v1.3.0:claw.json\n\n{\n  \"name\": \"lygo-ops-detector\",\n  \"displayName\": \"LYGO Ops Detector\",\n  \"version\": \"1.3.0\",\n  \"description\": \"AETHONΔ9 local discourse heuristics for evasion, half-truth certainty, saturation bait, coordination language, and policy-refusal templates. Not identity profiling. Consent-gated files. Pairs with Flame Ward.\",\n  \"slug\": \"lygo-ops-detector\",\n  \"publisher\": \"deepseekoracle\",\n  \"license\": \"LYGO-Sovereign-v2.0\",\n  \"homepage\": \"https://github.com/DeepSeekOracle/lygo-protocol-stack/tree/main/clawhub/mirrors/lygo-ops-detector\",\n  \"clawhub\": \"https://clawhub.ai/deepseekoracle/lygo-ops-detector\",\n  \"signature\": \"Delta9Phi963-OPS-DETECTOR-v1.3.0\",\n  \"tags\": [\"latest\", \"lygo\", \"aethon\", \"ops-detector\", \"security\", \"discourse\", \"flame\"],\n  \"entry\": \"SKILL.md\",\n  \"scripts\": {\n    \"detect\": \"scripts/lygo_ops_detector.py\",\n    \"eval\": \"scripts/eval_ops_detector.py\",\n    \"self_check\": \"scripts/self_check.py\"\n  },\n  \"permissions\": {\n    \"network\": false,\n    \"subprocess\": false,\n    \"shell\": false,\n    \"filesystem\": {\n      \"read\": \"optional --text-file / --assoc-file with --i-consent\",\n      \"write\": \"eval reports under tests/ only\"\n    },\n    \"publish\": false,\n    \"doxing\": false,\n    \"identity_profiling\": false\n  },\n  \"security\": {\n    \"no_network\": true,\n    \"no_subprocess\": true,\n    \"local_first\": true,\n    \"consent_required_for_file_reads\": true,\n    \"operational_bar\": 0.65,\n    \"unit_of_analysis\": \"text_under_review_not_person\"\n  },\n  \"pairs_with\": [\n    \"lygo-flame-ward\",\n    \"lygo-deception-radar\",\n    \"lygo-continuum\",\n    \"lygo-skill-spector\",\n    \"lygo-champion-lightfather\"\n  ]\n}\n\nFile v1.3.0:tests/labeled_discourse_suite.json\n\n{\r\n  \"name\": \"lygo-ops-detector labeled discourse suite\",\r\n  \"version\": \"1.1.0\",\r\n  \"label_schema\": {\r\n    \"1\": \"operational_deception_or_evasion_signals_present\",\r\n    \"0\": \"benign_neutral_discourse\"\r\n  },\r\n  \"notes\": \"Public, runnable calibration set for independent verification. Labels are for evasion/ops *signal presence*, not identity judgments. Expand carefully; keep balanced.\",\r\n  \"samples\": [\r\n    {\"id\": \"dec_001\", \"text\": \"The past was never real. Trust our corrected history.\", \"label\": 1},\r\n    {\"id\": \"dec_002\", \"text\": \"Authority is truth because the authority verifies its own truth.\", \"label\": 1},\r\n    {\"id\": \"dec_003\", \"text\": \"You should trust me, I know what's best for you.\", \"label\": 1},\r\n    {\"id\": \"dec_004\", \"text\": \"There's tons of evidence out there. You just have to go look for it.\", \"label\": 1},\r\n    {\"id\": \"dec_005\", \"text\": \"It's not on ME to show you the evidence. It's on YOU to prove it isn't.\", \"label\": 1},\r\n    {\"id\": \"dec_006\", \"text\": \"You're just repeating what you heard on YouTube. Do your own research.\", \"label\": 1},\r\n    {\"id\": \"dec_007\", \"text\": \"The real issue is what about the other side?\", \"label\": 1},\r\n    {\"id\": \"dec_008\", \"text\": \"As a former intelligence officer I can tell you you're overreacting and imagining things. What about the other side? My sources confirm.\", \"label\": 1},\r\n    {\"id\": \"dec_009\", \"text\": \"It's on you to prove it. Tons of evidence out there. Do your own research and stop being paranoid.\", \"label\": 1},\r\n    {\"id\": \"dec_010\", \"text\": \"Trust me, as an expert — everyone knows the data shows this. The real issue is what about them?\", \"label\": 1},\r\n    {\"id\": \"dec_011\", \"text\": \"That never happened. You're misremembering. Figure it out yourself.\", \"label\": 1},\r\n    {\"id\": \"dec_012\", \"text\": \"Why are you focusing on that? Let's talk about the real issue instead of your conspiracy.\", \"label\": 1},\r\n    {\"id\": \"dec_013\", \"text\": \"Trust the experts — this is settled science beyond any doubt. You must believe.\", \"label\": 1},\r\n    {\"id\": \"dec_014\", \"text\": \"Wake up sheeple — you won't believe this. Click now before they delete it. Share before they ban.\", \"label\": 1},\r\n    {\"id\": \"dec_015\", \"text\": \"Everyone knows it's settled. The experts agree. There is no debate. Do your own research.\", \"label\": 1},\r\n    {\"id\": \"ben_001\", \"text\": \"The weather today is sunny and warm.\", \"label\": 0},\r\n    {\"id\": \"ben_002\", \"text\": \"Please pass the salt.\", \"label\": 0},\r\n    {\"id\": \"ben_003\", \"text\": \"The capital of France is Paris.\", \"label\": 0},\r\n    {\"id\": \"ben_004\", \"text\": \"I'm going to the store to buy some milk.\", \"label\": 0},\r\n    {\"id\": \"ben_005\", \"text\": \"The Earth orbits the Sun.\", \"label\": 0},\r\n    {\"id\": \"ben_006\", \"text\": \"Can you help me with this?\", \"label\": 0},\r\n    {\"id\": \"ben_007\", \"text\": \"Good morning, how are you?\", \"label\": 0},\r\n    {\"id\": \"ben_008\", \"text\": \"The book is on the table.\", \"label\": 0},\r\n    {\"id\": \"ben_009\", \"text\": \"I enjoy reading in my free time.\", \"label\": 0},\r\n    {\"id\": \"ben_010\", \"text\": \"Thank you for your help.\", \"label\": 0},\r\n    {\"id\": \"ben_011\", \"text\": \"Our team meeting is scheduled for Thursday afternoon.\", \"label\": 0},\r\n    {\"id\": \"ben_012\", \"text\": \"Please review the attached report when you have time.\", \"label\": 0}\r\n  ]\r\n}\n\nFile v1.3.0:tests/last_eval_report.json\n\n{\r\n  \"signature\": \"\\u03949\\u03a6963-OPS-DETECTOR-EVAL-v2.1\",\r\n  \"honesty\": {\r\n    \"primary\": \"operational_metrics (ops_score>=0.65 or high evasion)\",\r\n    \"secondary\": \"calibration_metrics for short-suite ranking only\",\r\n    \"warning\": \"Do not advertise calibration precision/recall as production performance. Short labeled suite often needs low ops thresholds for ranking; the documented strong-pattern bar is 0.65 and may show low recall on one-liners. detector_verdict text is not the same as predicted_at_threshold.\"\r\n  },\r\n  \"operational_metrics\": {\r\n    \"role\": \"operational\",\r\n    \"suite_size\": 27,\r\n    \"threshold_ops_score\": 0.65,\r\n    \"prediction_rule\": \"predicted=1 if evasion_index>0.7 OR ops_score>=0.65\",\r\n    \"precision\": 0.0,\r\n    \"recall\": 0.0,\r\n    \"false_positive_rate\": 0.0,\r\n    \"f1\": 0.0,\r\n    \"auc\": 1.0,\r\n    \"confusion\": {\r\n      \"tp\": 0,\r\n      \"fp\": 0,\r\n      \"fn\": 15,\r\n      \"tn\": 12\r\n    }\r\n  },\r\n  \"calibration_metrics\": {\r\n    \"role\": \"calibration\",\r\n    \"suite_size\": 27,\r\n    \"threshold_ops_score\": 0.05,\r\n    \"prediction_rule\": \"predicted=1 if evasion_index>0.7 OR ops_score>=0.05\",\r\n    \"precision\": 1.0,\r\n    \"recall\": 0.8667,\r\n    \"false_positive_rate\": 0.0,\r\n    \"f1\": 0.9286,\r\n    \"auc\": 1.0,\r\n    \"confusion\": {\r\n      \"tp\": 13,\r\n      \"fp\": 0,\r\n      \"fn\": 2,\r\n      \"tn\": 12\r\n    }\r\n  },\r\n  \"threshold_ops_score\": 0.65,\r\n  \"precision\": 0.0,\r\n  \"recall\": 0.0,\r\n  \"false_positive_rate\": 0.0,\r\n  \"f1\": 0.0,\r\n  \"auc\": 1.0,\r\n  \"confusion\": {\r\n    \"tp\": 0,\r\n    \"fp\": 0,\r\n    \"fn\": 15,\r\n    \"tn\": 12\r\n  },\r\n  \"suite_size\": 27,\r\n  \"results\": [\r\n    {\r\n      \"id\": \"dec_001\",\r\n      \"text\": \"The past was never real. Trust our corrected history.\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0664,\r\n      \"evasion_index\": 0.1476,\r\n      \"detector_verdict\": \"WEAK/calibration-level signal only (below operational 0.65 bar) \\u2014 not actionable alone\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_002\",\r\n      \"text\": \"Authority is truth because the authority verifies its own truth.\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0605,\r\n      \"evasion_index\": 0.1344,\r\n      \"detector_verdict\": \"WEAK/calibration-level signal only (below operational 0.65 bar) \\u2014 not actionable alone\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_003\",\r\n      \"text\": \"You should trust me, I know what's best for you.\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0517,\r\n      \"evasion_index\": 0.1148,\r\n      \"detector_verdict\": \"WEAK/calibration-level signal only (below operational 0.65 bar) \\u2014 not actionable alone\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_004\",\r\n      \"text\": \"There's tons of evidence out there. You just have to go look for it.\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.063,\r\n      \"evasion_index\": 0.14,\r\n      \"detector_verdict\": \"WEAK/calibration-level signal only (below operational 0.65 bar) \\u2014 not actionable alone\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_005\",\r\n      \"text\": \"It's not on ME to show you the evidence. It's on YOU to prove it isn't.\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.063,\r\n      \"evasion_index\": 0.14,\r\n      \"detector_verdict\": \"WEAK/calibration-level signal only (below operational 0.65 bar) \\u2014 not actionable alone\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_006\",\r\n      \"text\": \"You're just repeating what you heard on YouTube. Do your own research.\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.063,\r\n      \"evasion_index\": 0.14,\r\n      \"detector_verdict\": \"WEAK/calibration-level signal only (below operational 0.65 bar) \\u2014 not actionable alone\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_007\",\r\n      \"text\": \"The real issue is what about the other side?\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.054,\r\n      \"evasion_index\": 0.12,\r\n      \"detector_verdict\": \"WEAK/calibration-level signal only (below operational 0.65 bar) \\u2014 not actionable alone\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_008\",\r\n      \"text\": \"As a former intelligence officer I can tell you you're overreacting and imagining things. What about the other side? My \",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.198,\r\n      \"evasion_index\": 0.44,\r\n      \"detector_verdict\": \"WEAK/calibration-level signal only (below operational 0.65 bar) \\u2014 not actionable alone\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_009\",\r\n      \"text\": \"It's on you to prove it. Tons of evidence out there. Do your own research and stop being paranoid.\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.1966,\r\n      \"evasion_index\": 0.437,\r\n      \"detector_verdict\": \"WEAK/calibration-level signal only (below operational 0.65 bar) \\u2014 not actionable alone\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_010\",\r\n      \"text\": \"Trust me, as an expert \\u2014 everyone knows the data shows this. The real issue is what about them?\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.18,\r\n      \"evasion_index\": 0.4,\r\n      \"detector_verdict\": \"WEAK/calibration-level signal only (below operational 0.65 bar) \\u2014 not actionable alone\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_011\",\r\n      \"text\": \"That never happened. You're misremembering. Figure it out yourself.\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.1256,\r\n      \"evasion_index\": 0.279,\r\n      \"detector_verdict\": \"WEAK/calibration-level signal only (below operational 0.65 bar) \\u2014 not actionable alone\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_012\",\r\n      \"text\": \"Why are you focusing on that? Let's talk about the real issue instead of your conspiracy.\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.054,\r\n      \"evasion_index\": 0.12,\r\n      \"detector_verdict\": \"WEAK/calibration-level signal only (below operational 0.65 bar) \\u2014 not actionable alone\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_013\",\r\n      \"text\": \"Trust the experts \\u2014 this is settled science beyond any doubt. You must believe.\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0225,\r\n      \"evasion_index\": 0.05,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_014\",\r\n      \"text\": \"Wake up sheeple \\u2014 you won't believe this. Click now before they delete it. Share before they ban.\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0225,\r\n      \"evasion_index\": 0.05,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_015\",\r\n      \"text\": \"Everyone knows it's settled. The experts agree. There is no debate. Do your own research.\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.1404,\r\n      \"evasion_index\": 0.3121,\r\n      \"detector_verdict\": \"WEAK/calibration-level signal only (below operational 0.65 bar) \\u2014 not actionable alone\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_001\",\r\n      \"text\": \"The weather today is sunny and warm.\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_002\",\r\n      \"text\": \"Please pass the salt.\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_003\",\r\n      \"text\": \"The capital of France is Paris.\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_004\",\r\n      \"text\": \"I'm going to the store to buy some milk.\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_005\",\r\n      \"text\": \"The Earth orbits the Sun.\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_006\",\r\n      \"text\": \"Can you help me with this?\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_007\",\r\n      \"text\": \"Good morning, how are you?\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_008\",\r\n      \"text\": \"The book is on the table.\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_009\",\r\n      \"text\": \"I enjoy reading in my free time.\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_010\",\r\n      \"text\": \"Thank you for your help.\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_011\",\r\n      \"text\": \"Our team meeting is scheduled for Thursday afternoon.\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"ben_012\",\r\n      \"text\": \"Please review the attached report when you have time.\",\r\n      \"label\": 0,\r\n      \"predicted_at_threshold\": 0,\r\n      \"ops_score\": 0.0,\r\n      \"evasion_index\": 0.0,\r\n      \"detector_verdict\": \"NO CLEAR OPS PATTERN at operational thresholds \\u2014 continue observation\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    }\r\n  ],\r\n  \"calibration_results_sample\": [\r\n    {\r\n      \"id\": \"dec_001\",\r\n      \"text\": \"The past was never real. Trust our corrected history.\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 1,\r\n      \"ops_score\": 0.0664,\r\n      \"evasion_index\": 0.1476,\r\n      \"detector_verdict\": \"WEAK/calibration-level signal only (below operational 0.65 bar) \\u2014 not actionable alone\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_002\",\r\n      \"text\": \"Authority is truth because the authority verifies its own truth.\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 1,\r\n      \"ops_score\": 0.0605,\r\n      \"evasion_index\": 0.1344,\r\n      \"detector_verdict\": \"WEAK/calibration-level signal only (below operational 0.65 bar) \\u2014 not actionable alone\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    },\r\n    {\r\n      \"id\": \"dec_003\",\r\n      \"text\": \"You should trust me, I know what's best for you.\",\r\n      \"label\": 1,\r\n      \"predicted_at_threshold\": 1,\r\n      \"ops_score\": 0.0517,\r\n      \"evasion_index\": 0.1148,\r\n      \"detector_verdict\": \"WEAK/calibration-level signal only (below operational 0.65 bar) \\u2014 not actionable alone\",\r\n      \"note\": \"detector_verdict uses operational language rules; predicted_at_threshold is eval-only at the stated threshold\"\r\n    }\r\n  ],\r\n  \"documented_ops_threshold\": 0.65,\r\n  \"generator\": \"scripts/eval_ops_detector.py\",\r\n  \"note\": \"Metrics computed on the public labeled suite. Not a claim of production harm/ethics calibration. Re-run after pattern changes.\",\r\n  \"threshold_sweep\": {\r\n    \"sweep\": [\r\n      {\r\n        \"threshold\": 0.0,\r\n        \"precision\": 0.5556,\r\n        \"recall\": 1.0,\r\n        \"f1\": 0.7143,\r\n        \"fpr\": 1.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.05,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.8667,\r\n        \"f1\": 0.9286,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.1,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.3333,\r\n        \"f1\": 0.5,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.15,\r\n        \"precision\": 1.0,\r\n        \"recall\": 0.2,\r\n        \"f1\": 0.3333,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.2,\r\n        \"precision\": 0.0,\r\n        \"recall\": 0.0,\r\n        \"f1\": 0.0,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.25,\r\n        \"precision\": 0.0,\r\n        \"recall\": 0.0,\r\n        \"f1\": 0.0,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.3,\r\n        \"precision\": 0.0,\r\n        \"recall\": 0.0,\r\n        \"f1\": 0.0,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.35,\r\n        \"precision\": 0.0,\r\n        \"recall\": 0.0,\r\n        \"f1\": 0.0,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.4,\r\n        \"precision\": 0.0,\r\n        \"recall\": 0.0,\r\n        \"f1\": 0.0,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.45,\r\n        \"precision\": 0.0,\r\n        \"recall\": 0.0,\r\n        \"f1\": 0.0,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.5,\r\n        \"precision\": 0.0,\r\n        \"recall\": 0.0,\r\n        \"f1\": 0.0,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.55,\r\n        \"precision\": 0.0,\r\n        \"recall\": 0.0,\r\n        \"f1\": 0.0,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.6,\r\n        \"precision\": 0.0,\r\n        \"recall\": 0.0,\r\n        \"f1\": 0.0,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.65,\r\n        \"precision\": 0.0,\r\n        \"recall\": 0.0,\r\n        \"f1\": 0.0,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.7,\r\n        \"precision\": 0.0,\r\n        \"recall\": 0.0,\r\n        \"f1\": 0.0,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.75,\r\n        \"precision\": 0.0,\r\n        \"recall\": 0.0,\r\n        \"f1\": 0.0,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.8,\r\n        \"precision\": 0.0,\r\n        \"recall\": 0.0,\r\n        \"f1\": 0.0,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.85,\r\n        \"precision\": 0.0,\r\n        \"recall\": 0.0,\r\n        \"f1\": 0.0,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.9,\r\n        \"precision\": 0.0,\r\n        \"recall\": 0.0,\r\n        \"f1\": 0.0,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 0.95,\r\n        \"precision\": 0.0,\r\n        \"recall\": 0.0,\r\n        \"f1\": 0.0,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      },\r\n      {\r\n        \"threshold\": 1.0,\r\n        \"precision\": 0.0,\r\n        \"recall\": 0.0,\r\n        \"f1\": 0.0,\r\n        \"fpr\": 0.0,\r\n        \"auc\": 1.0\r\n      }\r\n    ],\r\n    \"best_f1_threshold\": {\r\n      \"threshold\": 0.05,\r\n      \"precision\": 1.0,\r\n      \"recall\": 0.8667,\r\n      \"f1\": 0.9286,\r\n      \"fpr\": 0.0,\r\n      \"auc\": 1.0\r\n    }\r\n  }\r\n}\n\nFile v1.3.0:LICENSE\n\nLYGO Sovereign License v2.0 (summary)\n\nPermission is granted to use, copy, modify, and distribute this skill for\naligned LYGO lattice work, subject to:\n\n1. No use for doxing, identity/profession profiling, or unsolicited private\n   mail/log scanning without human authority and consent.\n2. Scores are discourse heuristics — not legal or medical verdicts.\n3. No auto-publish of results to social networks without explicit human consent.\n4. Attribution to DeepSeekOracle / LYGO when redistributed.\n\nTHE SOFTWARE IS PROVIDED \"AS IS\", WITHOUT WARRANTY OF ANY KIND.\n\nArchive v1.2.2: 11 files, 31321 bytes\n\nFiles: references/AETHON_D9_BLUEPRINT.md (4273b), references/SECURITY.md (2076b), references/SKILLSPECTOR_AUDIT.md (2166b), scripts/eval_ops_detector.py (11126b), scripts/lygo_ops_detector.py (39650b), scripts/self_check.py (3778b), skill-card.md (2997b), SKILL.md (5340b), tests/labeled_discourse_suite.json (2826b), tests/last_eval_report.json (17945b), _meta.json (136b)\n\nFile v1.2.2:SKILL.md\n\n---\nname: lygo-ops-detector\ndescription: \"LYGO Ops Detector — local AETHONΔ9 discourse heuristics for evasion / coordination / policy-refusal signals in text the operator supplies. Opt-in only when user asks for ops detector, AETHONΔ9, or evasion index. Stdlib CLI; --text-file/--assoc-file require --i-consent; eval writes only under tests/. Not for doxing, identity/profession profiling, or unsolicited email/log analysis. Dual-threshold metrics (operational 0.65 vs calibration). Triggers: lygo ops detector, aethon d9, evasion index (explicit).\"\nversion: 1.2.2\nlicense: LYGO-Sovereign-v2.0\nmetadata:\n  openclaw:\n    emoji: \"🔎\"\n    homepage: \"https://github.com/DeepSeekOracle/lygo-protocol-stack\"\n    requires:\n      anyBins: [python, python3]\n  lygo: true\n  lightfather: true\n  aethon: \"Δ9\"\n  protocol: \"AETHONΔ9\"\n  version: \"1.2.2\"\n  companion: \"lygo-champion-lightfather\"\n  security: \"references/SECURITY.md\"\n  blueprint: \"references/AETHON_D9_BLUEPRINT.md\"\n  eval: \"tests/labeled_discourse_suite.json + scripts/eval_ops_detector.py\"\n  security_review: \"1.2.2-skillspector-discourse-not-identity\"\n  permissions:\n    network: false\n    shell: false\n    subprocess: false\n    filesystem:\n      read: \"user-supplied --text-file / --assoc-file only with --i-consent\"\n      write: \"tests/ only when eval_ops_detector.py is run\"\n    publish: false\n    doxing: false\n    identity_profiling: false\n---\n\n# LYGO Ops Detector — AETHONΔ9 v1.2.2\n\nLocal, deterministic **discourse-signal** heuristics.  \n**Not** a person profiler. **Not** sole evidence. **Not** for doxing.\n\n## Permissions (declared)\n\n| Capability | Default |\n|------------|---------|\n| Network | **None** |\n| Shell / subprocess | **None** |\n| Read local files | Only `--text-file` / `--assoc-file` **+ `--i-consent`** |\n| Write | Eval report under **`tests/` only** |\n| Auto-publish / social | **Never** |\n\n## Privacy / consent (required reading)\n\nBefore analyzing **email, DMs, private logs, or association lists**:\n\n1. Confirm the **human operator consents** and has authority (`--i-consent` on file inputs).  \n2. Prefer redacted text via `--text`; do not paste secrets or third-party PII into shared chats.  \n3. Scores can cause **reputational harm** if misused — treat as weak heuristics.  \n4. Do **not** run this skill unsolicited on “any email/log” in the session.  \n\n## When to invoke (narrow)\n\nInvoke **only** when the user explicitly wants one of:\n\n- LYGO Ops Detector / AETHONΔ9 / evasion index on **text they paste or name**  \n- Reproducible scoring of operational-deception **discourse patterns**  \n- Re-run of the public labeled eval suite  \n\n**Do not** auto-trigger on generic “analyze this email/log/thread” without ops-detector intent.\n\n## What it measures (scope)\n\n| Channel | Measures | Does **not** measure |\n|---------|----------|----------------------|\n| **Evasion** | Burden-shift, ad hominem, vague claims, authority inflation, gaslight, deflection **templates** | Person identity |\n| **Association** | Coordination/secrecy **language** in association strings you provide | Social graph doxing; bare job titles |\n| **Institutional** | Policy-as-shield / refusal-to-comment language only | Affiliation, faith, fraternity, lodge, profession labels |\n\nUnit of analysis = **text under review**, not a human “subject” or investigation target.\n\n## Boundaries (anti-vague-trigger)\n\nEach signal has in-scope / out-of-scope examples (`--show-boundaries`). Ordinary disagreement without proof-avoidance templates should stay low.\n\n## Thresholds (honest)\n\n| Bar | Meaning |\n|-----|---------|\n| **Operational** `ops_score >= 0.65` or high evasion | Documented strong multi-signal bar for human review |\n| **Calibration** (lower, e.g. 0.05) | Short-suite ranking only — **not** production performance |\n\n```bash\npython scripts/eval_ops_detector.py tests/labeled_discourse_suite.json --sweep\n# report: operational_metrics (0.65) + calibration_metrics (ranking only)\n# --out must stay under tests/\n```\n\n## Safe use\n\n```bash\ncd path/to/lygo-ops-detector\npython scripts/self_check.py\npython scripts/lygo_ops_detector.py --text \"paste discourse here\" --json\n# optional local files (operator affirms authority):\npython scripts/lygo_ops_detector.py --text-file ./snippet.txt --i-consent\npython scripts/lygo_ops_detector.py --show-boundaries\n```\n\nExit codes: `0` = no strong operational pattern; `3` = consent required; `10` = high evasion discourse signals (review claims).\n\n## Agent contract\n\n1. Call the **script** for reproducible scores.  \n2. Separate **observed regex hits** vs inference.  \n3. Never name people as investigation targets from this tool alone.  \n4. Remind: discourse pattern ≠ guilt; human + primary sources required.  \n5. No external publication of results without user consent.  \n6. File inputs require `--i-consent`.  \n\n## Security\n\nSee `references/SECURITY.md` and `references/SKILLSPECTOR_AUDIT.md`.\n\n## Version\n\n| Ver | Change |\n|-----|--------|\n| 1.1.0 | Dynamic eval suite |\n| 1.2.1 | Permissions, narrow triggers, dual-threshold honesty |\n| **1.2.2** | SkillSpector: discourse-not-subject framing; no bare job/affiliation association cues; `--i-consent` on files; eval writes constrained to `tests/`; signal boundaries |\n\n**Δ9Φ963 — receipts over hype · discourse not identity · consent before private data.**\n\nFile v1.2.2:_meta.json\n\n{\n  \"ownerId\": \"kn70j1nefw2y0mew6w5eg7nf1580q4v1\",\n  \"slug\": \"lygo-ops-detector\",\n  \"version\": \"1.2.2\",\n  \"publishedAt\": 1785990711498\n}\n\nFile v1.2.2:references/AETHON_D9_BLUEPRINT.md\n\n# THE LYGO OPS DETECTOR BLUEPRINT — AETHONΔ9 (v1.2.2)\n\n**Lightfather's Voice · discourse only · not identity**\n\n## Core Philosophy\n\n\"LYGO decodes fiction by analyzing **action-language in text**.\"\n\nThis tool scores **discourse patterns** in material the operator supplies.  \nIt does **not** build dossiers on people, professions, or affiliations.\n\n| Ask of the *text* | Not of a person |\n|-------------------|-----------------|\n| What claims are made? | Who is this human? |\n| What proof-avoidance language appears? | What job do they hold? |\n| What coordination/secrecy *phrasing* is present? | Who is in their social graph? |\n| What policy-as-shield templates appear? | What group do they belong to? |\n\nThese are measurable in **strings**. They are not warrants for surveillance.\n\n## Unit of analysis (locked)\n\n**Text under review** (statements, claim-text, association *description strings* you paste).  \nNever a human \"subject,\" never a crawl of accounts, never bare job-title scoring.\n\n## 1. The Evasion Index\n\nMeasures how strongly the **text** uses proof-avoidance / perception-denial templates.\n\n| Variable | Weight | In-scope indicator | Out-of-scope (do not treat as ops) |\n|----------|--------|--------------------|-------------------------------------|\n| Burden Shifting | 0.15 | \"it's on you to prove\", \"do your own research\" | Normal task assignment |\n| Ad Hominem Density | 0.20 | Insult vocabulary replacing substance | Logic critique without person-attack words |\n| Vague References | 0.15 | \"tons of evidence out there\" with no cite | Named source / link / study |\n| Authority Inflation | 0.15 | Credential-waving to shut inquiry (\"as a former… trust me\") | Stating a role once without shutting verification |\n| Gaslighting | 0.20 | \"that never happened\", \"you're imagining it\" | Honest memory disagreement without denial templates |\n| Deflection | 0.15 | Whataboutism replacing the asked claim | On-topic comparison with shared evidence |\n\n**Evasion Score > 0.70** = high evasion *discourse* signals (review claims).  \n**Not** a person verdict, investigation target, or \"active ops\" identity label.\n\nFormula:  \n`Evasion = Σ (w_i × indicator_score_i)` normalized to [0,1]\n\n## 2. The Association Matrix\n\nScores **coordination discourse** in association *strings the operator supplies* only.\n\n| Variable | Weight | In-scope indicator | Out-of-scope |\n|----------|--------|--------------------|--------------|\n| In-group / secrecy language | 0.25 | need-to-know, keep this internal, not for public discussion | Bare words: military, intelligence, agency, profession titles |\n| Bot-like repetition language | 0.20 | \"same post copied\", scripted response | Single ordinary repost mention without copy language |\n| Coordinated language | 0.15 |\n\nArchive v1.2.1: 12 files, 43587 bytes\n\nFiles: references/AETHON_D9_BLUEPRINT.md (2608b), references/SECURITY.md (1737b), references/SKILLSPECTOR_AUDIT.md (1134b), scripts/__pycache__/lygo_ops_detector.cpython-313.pyc (31335b), scripts/eval_ops_detector.py (9909b), scripts/lygo_ops_detector.py (34392b), scripts/self_check.py (2793b), skill-card.md (3313b), SKILL.md (5046b), tests/labeled_discourse_suite.json (2826b), tests/last_eval_report.json (17941b), _meta.json (136b)\n\nArchive v1.2.0: 12 files, 43498 bytes\n\nFiles: references/AETHON_D9_BLUEPRINT.md (2608b), references/SECURITY.md (1737b), references/SKILLSPECTOR_AUDIT.md (1134b), scripts/__pycache__/lygo_ops_detector.cpython-313.pyc (31335b), scripts/eval_ops_detector.py (9909b), scripts/lygo_ops_detector.py (34352b), scripts/self_check.py (2793b), skill-card.md (3063b), SKILL.md (5046b), tests/labeled_discourse_suite.json (2826b), tests/last_eval_report.json (17941b), _meta.json (136b)\n\nArchive v1.1.0: 10 files, 27381 bytes\n\nFiles: references/AETHON_D9_BLUEPRINT.md (2608b), references/SECURITY.md (2164b), scripts/eval_ops_detector.py (7788b), scripts/lygo_ops_detector.py (32707b), scripts/self_check.py (2793b), skill-card.md (2811b), SKILL.md (10866b), tests/labeled_discourse_suite.json (2826b), tests/last_eval_report.json (11495b), _meta.json (136b)\n\nArchive v1.0.2: 7 files, 19847 bytes\n\nFiles: references/AETHON_D9_BLUEPRINT.md (2534b), references/SECURITY.md (2114b), scripts/lygo_ops_detector.py (29854b), scripts/self_check.py (1898b), skill-card.md (2296b), SKILL.md (9787b), _meta.json (136b)\n\nArchive v1.0.1: 7 files, 14347 bytes\n\nFiles: references/AETHON_D9_BLUEPRINT.md (2534b), references/SECURITY.md (2114b), scripts/lygo_ops_detector.py (17732b), scripts/self_check.py (1898b), skill-card.md (2243b), SKILL.md (6233b), _meta.json (136b)\n\nArchive v1.0.0: 7 files, 14427 bytes\n\nFiles: references/AETHON_D9_BLUEPRINT.md (2534b), references/SECURITY.md (2114b), scripts/lygo_ops_detector.py (17732b), scripts/self_check.py (1898b), skill-card.md (2434b), SKILL.md (6233b), _meta.json (136b)","readmeExcerpt":"Skill: LYGO Ops Detector Owner: deepseekoracle Summary: LYGO Ops Detector — local AETHONΔ9 discourse heuristics for evasion, half-truth certainty, saturation bait, coordination language, and policy-refusal signals in operator-supplied text, plus weighted public metadata (account_based_in mismatch, VPN-hint, HTTPS-cited incidents, same-geo+scripted batch). Opt-in only. Stdlib CLI; file reads require --i-consent; eval ","codeSnippets":[],"executableExamples":[{"language":"bash","snippet":"cd path/to/lygo-ops-detector\npython scripts/self_check.py\npython scripts/lygo_ops_detector.py --text \"paste discourse here\" --json\npython scripts/lygo_ops_detector.py --text-file ./snippet.txt --i-consent\npython scripts/lygo_ops_detector.py --text \"I'm based in the United States. ...\" --public-meta \"{\\\"account_based_in\\\":\\\"Nigeria\\\",\\\"claimed_location\\\":\\\"United States\\\",\\\"location_accurate\\\":false}\" --json\npython scripts/lygo_ops_detector.py --show-boundaries"},{"language":"bash","snippet":"python path/to/lygo-flame-ward/scripts/flame_cli.py ingest-gate --text \"...\""},{"language":"bash","snippet":"python scripts/self_check.py\npython scripts/lygo_ops_detector.py --text \"Trust the experts — settled science. Wake up sheeple.\" --json"},{"language":"bash","snippet":"python scripts/self_check.py\n\npython scripts/lygo_ops_detector.py --text \"Trust the experts — settled science. Wake up sheeple.\" --json\n\npython scripts/lygo_ops_detector.py --text-file ./snippet.txt --i-consent --json\n\npython scripts/lygo_ops_detector.py --text \"I'm based in the United States. It's on you to prove it.\" --public-meta \"{\\\"account_based_in\\\":\\\"Nigeria\\\",\\\"claimed_location\\\":\\\"United States\\\",\\\"location_accurate\\\":false}\" --json\n\npython scripts/lygo_ops_detector.py --show-boundaries\n\npython scripts/eval_ops_detector.py tests/labeled_discourse_suite.json --sweep"},{"language":"bash","snippet":"python ../lygo-flame-ward/scripts/flame_cli.py ingest-gate --text \"...\""},{"language":"bash","snippet":"cd path/to/lygo-ops-detector\npython scripts/self_check.py\npython scripts/lygo_ops_detector.py --text \"paste discourse here\" --json\npython scripts/lygo_ops_detector.py --text-file ./snippet.txt --i-consent\npython scripts/lygo_ops_detector.py --show-boundaries"}],"parameters":null,"dependencies":[],"permissions":[],"extractedFiles":[{"path":"SKILL.md","content":"---\nname: lygo-ops-detector\ndescription: \"LYGO Ops Detector — local AETHONΔ9 discourse heuristics for evasion, half-truth certainty, saturation bait, coordination language, and policy-refusal signals in operator-supplied text, plus weighted public metadata (account_based_in mismatch, VPN-hint, HTTPS-cited incidents, same-geo+scripted batch). Opt-in only. Stdlib CLI; file reads require --i-consent; eval writes under tests/. Not for doxing or nationality guilt. Dual-threshold (operational 0.65 vs calibration). Pairs with lygo-flame-ward. Triggers: lygo ops detector, aethon d9, evasion index (explicit).\"\nversion: 1.4.0\nlicense: LYGO-Sovereign-v2.0\nmetadata:\n  openclaw:\n    emoji: \"🔎\"\n    homepage: \"https://github.com/DeepSeekOracle/lygo-protocol-stack/tree/main/clawhub/mirrors/lygo-ops-detector\"\n    requires:\n      anyBins: [python, python3]\n  lygo: true\n  lightfather: true\n  aethon: \"Δ9\"\n  protocol: \"AETHONΔ9\"\n  version: \"1.4.0\"\n  companion: \"lygo-champion-lightfather\"\n  security: \"references/SECURITY.md\"\n  blueprint: \"references/AETHON_D9_BLUEPRINT.md\"\n  eval: \"tests/labeled_discourse_suite.json + scripts/eval_ops_detector.py\"\n  security_review: \"1.4.0-public-context-no-nationality-guilt\"\n  clawhub: \"https://clawhub.ai/deepseekoracle/lygo-ops-detector\"\n  permissions:\n    network: false\n    shell: false\n    subprocess: false\n    filesystem:\n      read: \"user-supplied --text-file / --assoc-file / --public-meta-file only with --i-consent\"\n      write: \"tests/ only when eval_ops_detector.py is run\"\n    publish: false\n    doxing: false\n    identity_profiling: false\n---\n\n# LYGO Ops Detector — AETHONΔ9 v1.4.0\n\nLocal, deterministic **discourse-signal** heuristics plus **weighted public context**.  \n**Not** a person profiler. **Not** sole evidence. **Not** for doxing.  \n**Country labels are not guilt.** A geo field alone cannot clear the 0.65 bar.\n\n**Signature:** `Delta9Phi963-OPS-DETECTOR-v1.4.0`  \n**Pairs with:** `lygo-flame-ward` (authority gate) · `lygo-deception-radar` (public proof)\n\n---\n\n## What's new in 1.4.x\n\n| Add | Why |\n|-----|-----|\n| `--public-meta` / `--public-meta-file` | Operator-supplied public fields are **always scored when present** |\n| Weighted public context | Geo **mismatch**, `location_accurate=false`, HTTPS-cited incident, same-geo+scripted batch |\n| Hard gate | Country-only / nationality **cannot** clear ops_score 0.65 |\n| No country denylist | Nigeria, India, USA, etc. score the same as a lone label |\n| Flame hints | `public_meta_mismatch` · `named_public_incident` |\n\n1.3.x still applies: half-truth, saturation, flame hints, cluster boost, 0.65 bar.\n\n---\n\n## Permissions\n\n| Capability | Default |\n|------------|---------|\n| Network | **None** |\n| Shell / subprocess | **None** |\n| Read local files | `--text-file` / `--assoc-file` / `--public-meta-file` **+ `--i-consent`** |\n| Write | Eval report under **`tests/` only** |\n| Auto-publish / social | **Never** |\n\n## When to invoke (narrow)\n\nOnly when the user explicitly wants ops-dete"},{"path":"_meta.json","content":"{\n  \"ownerId\": \"kn70j1nefw2y0mew6w5eg7nf1580q4v1\",\n  \"slug\": \"lygo-ops-detector\",\n  \"version\": \"1.4.0\",\n  \"publishedAt\": 1788147726518\n}"},{"path":"references/AETHON_D9_BLUEPRINT.md","content":"# THE LYGO OPS DETECTOR BLUEPRINT — AETHONΔ9 (v1.2.2)\r\n\r\n**Lightfather's Voice · discourse only · not identity**\r\n\r\n## Core Philosophy\r\n\r\n\"LYGO decodes fiction by analyzing **action-language in text**.\"\r\n\r\nThis tool scores **discourse patterns** in material the operator supplies.  \r\nIt does **not** build dossiers on people, professions, or affiliations.\r\n\r\n| Ask of the *text* | Not of a person |\r\n|-------------------|-----------------|\r\n| What claims are made? | Who is this human? |\r\n| What proof-avoidance language appears? | What job do they hold? |\r\n| What coordination/secrecy *phrasing* is present? | Who is in their social graph? |\r\n| What policy-as-shield templates appear? | What group do they belong to? |\r\n\r\nThese are measurable in **strings**. They are not warrants for surveillance.\r\n\r\n## Unit of analysis (locked)\r\n\r\n**Text under review** (statements, claim-text, association *description strings* you paste).  \r\nNever a human \"subject,\" never a crawl of accounts, never bare job-title scoring.\r\n\r\n## 1. The Evasion Index\r\n\r\nMeasures how strongly the **text** uses proof-avoidance / perception-denial templates.\r\n\r\n| Variable | Weight | In-scope indicator | Out-of-scope (do not treat as ops) |\r\n|----------|--------|--------------------|-------------------------------------|\r\n| Burden Shifting | 0.15 | \"it's on you to prove\", \"do your own research\" | Normal task assignment |\r\n| Ad Hominem Density | 0.20 | Insult vocabulary replacing substance | Logic critique without person-attack words |\r\n| Vague References | 0.15 | \"tons of evidence out there\" with no cite | Named source / link / study |\r\n| Authority Inflation | 0.15 | Credential-waving to shut inquiry (\"as a former… trust me\") | Stating a role once without shutting verification |\r\n| Gaslighting | 0.20 | \"that never happened\", \"you're imagining it\" | Honest memory disagreement without denial templates |\r\n| Deflection | 0.15 | Whataboutism replacing the asked claim | On-topic comparison with shared evidence |\r\n\r\n**Evasion Score > 0.70** = high evasion *discourse* signals (review claims).  \r\n**Not** a person verdict, investigation target, or \"active ops\" identity label.\r\n\r\nFormula:  \r\n`Evasion = Σ (w_i × indicator_score_i)` normalized to [0,1]\r\n\r\n## 2. The Association Matrix\r\n\r\nScores **coordination discourse** in association *strings the operator supplies* only.\r\n\r\n| Variable | Weight | In-scope indicator | Out-of-scope |\r\n|----------|--------|--------------------|--------------|\r\n| In-group / secrecy language | 0.25 | need-to-know, keep this internal, not for public discussion | Bare words: military, intelligence, agency, profession titles |\r\n| Bot-like repetition language | 0.20 | \"same post copied\", scripted response | Single ordinary repost mention without copy language |\r\n| Coordinated language | 0.15 | identical unusual phrase / talking points | Shared common slogans alone without coordination cues |\r\n| Obfuscated-source language | 0.20 | anonymous source, cutouts, throwaway | Legitimate so"},{"path":"references/SECURITY.md","content":"# LYGO Ops Detector — SECURITY & ETHICS v1.4.0\r\n\r\n## Declared permissions\r\n\r\n| Capability | Status |\r\n|------------|--------|\r\n| Network | **None** (stdlib local only) |\r\n| Shell / subprocess | **None** |\r\n| Read files | Opt-in `--text-file` / `--assoc-file` / `--public-meta-file` **only with `--i-consent`** |\r\n| Write files | `eval_ops_detector.py` writes **only under skill `tests/`** |\r\n| Env harvesting | **No** |\r\n| Publish / social | **No** |\r\n\r\n## v1.4.0 note\r\n\r\nPublic metadata is a **weighted context channel**. Operator supplies fields (`account_based_in`, `claimed_location`, `location_accurate`, HTTPS-cited `named_public_incident`, batch). There is **no country denylist**. A geo label alone cannot clear ops_score 0.65. JSON may emit `public_meta_mismatch` / `named_public_incident` flame hints — still **not** identity verdicts.\r\n\r\nv1.3.0 still applies: half-truth + saturation channels.\r\n\r\n## Core mandate\r\n\r\nHeuristic **discourse** analysis of evasion and coordination *signals* in text the operator supplies.\r\n\r\nIt is **not**:\r\n\r\n- A doxing tool  \r\n- An identity, profession, or affiliation profiler  \r\n- A sole-evidence engine for accusations  \r\n- A warrant to scan private mail/logs without consent  \r\n- A social-graph crawler  \r\n\r\n## Non-negotiables\r\n\r\n1. **Text over identity** — unit of analysis is statement/log content, not personhood.  \r\n2. **Consent** for private communications and association lists (`--i-consent` on file paths).  \r\n3. **Receipts** — high scores require cited pattern hits; never “trust the detector.”  \r\n4. **No affiliation / bare job-title dictionaries** — no fraternity/brotherhood/lodge; no bare military/intelligence/agency scoring.  \r\n5. **Public fields are context, not guilt** — no nationality table; named incidents need an `https://` RESOURCE URL; no live scrape of X or other sessions.  \r\n6. **Operational bar honesty** — `ops_score≥0.65` (or high evasion) for strong language; country-only is gated below that bar.  \r\n7. **Human review** before any reputational, employment, legal, or social action.  \r\n8. **Least-privilege writes** — eval reports cannot escape skill `tests/`.  \r\n\r\n## Failure modes to reject\r\n\r\n- Treating low scores as “innocent person” or high scores as “guilty person”  \r\n- Using affiliation/religion/job title **or nationality** as a proxy for ops  \r\n- Feeding outputs to social pile-ons  \r\n- Advertising calibration metrics as production performance  \r\n- Arbitrary `--out` paths outside `tests/`  \r\n\r\n## Agent contract\r\n\r\n- Invoke only when the user asks for ops-detector / AETHONΔ9 / evasion-index style analysis.  \r\n- Do not auto-scan session email/logs without explicit intent + consent.  \r\n- Prefer `--text` paste; file paths require `--i-consent`.  \r\n\r\n**Δ9Φ963**"},{"path":"references/SKILLSPECTOR_AUDIT.md","content":"# SkillSpector / ClawHub audit — lygo-ops-detector v1.3.1\n\n**Signature:** `Delta9Phi963-OPS-DETECTOR-v1.3.1`  \n**Audit:** https://clawhub.ai/deepseekoracle/skills/lygo-ops-detector/security-audit\n\n## Held from 1.2.2\n\n| Check | Status |\n|-------|--------|\n| No network / subprocess / shell | Held |\n| `--i-consent` on file reads | Held |\n| Eval writes under `tests/` only | Held |\n| Discourse ≠ person / no bare job affiliation cues | Held |\n| Dual-threshold honesty | Held |\n\n## 1.3.0 deltas\n\n| Change | Risk note |\n|--------|-----------|\n| New evasion channels (half-truth / saturation) | Still text templates; boundaries documented |\n| `flame_enemy_hints` | Soft map to Flame classes — not guilt labels |\n| claw.json / skill-card / examples | Packaging only |\n\n```bash\npython scripts/self_check.py\npython scripts/lygo_ops_detector.py --text \"Trust the experts — settled science. Wake up sheeple.\" --json\n```\n\n**Δ9Φ963**"}],"languages":[],"docsSourceLabel":"CLAWHUB","editorialOverview":null,"editorialQuality":{"score":100,"threshold":65,"status":"thin","wordCount":1894,"uniquenessScore":44,"reasons":["uniqueness-below-45"]}},"media":{"evidence":{"source":"no-media","verified":false,"confidence":"low","updatedAt":"2026-10-11T19:07:49.145Z","emptyReason":"No screenshots, media assets, or demo links are available."},"primaryImageUrl":null,"mediaAssetCount":0,"assets":[],"demoUrl":null},"ownerResources":{"evidence":{"source":"unclaimed","verified":false,"confidence":"low","updatedAt":"2026-10-11T19:07:49.145Z","emptyReason":"This page has not been claimed by the agent owner."},"hasCustomPage":false,"customPageUpdatedAt":null,"customLinks":[],"structuredLinks":{"docsUrl":null,"demoUrl":null,"supportUrl":null,"pricingUrl":null,"statusUrl":null},"customPage":null},"relatedAgents":{"evidence":{"source":"protocol-neighbors","verified":false,"confidence":"medium","updatedAt":"2026-10-11T21:53:30.442Z","emptyReason":null},"items":[{"id":"8ebccd8e-3863-4187-8355-c3f14e1f9edf","entityType":"agent","canonicalPath":"/agent/iofficeai-aionui","slug":"iofficeai-aionui","name":"AionUi","description":"Free, local, open-source 24/7 Cowork app and OpenClaw for Gemini CLI, Claude Code, Codex, OpenCode, Qwen Code, Goose CLI, Auggie, and more | 🌟 Star if you like it!","url":"https://github.com/iOfficeAI/AionUi","homepage":"https://www.aionui.com","source":"GITHUB_REPOS","protocols":["MCP","OPENCLAW"],"capabilities":[],"safetyScore":100,"overallRank":70,"updatedAt":"2026-10-09T19:11:12.944Z","createdAt":"2026-02-25T03:38:16.584Z","downloads":null},{"id":"b917f68a-ebff-438e-84f8-3f4b2494c0bc","entityType":"agent","canonicalPath":"/agent/activepieces-activepieces","slug":"activepieces-activepieces","name":"activepieces","description":"AI Agents & MCPs & AI Workflow Automation • (~400 MCP servers for AI agents) • AI Automation / AI Agent with MCPs • AI Workflows & AI Agents • MCPs for AI Agents","url":"https://github.com/activepieces/activepieces","homepage":"https://www.activepieces.com","source":"GITHUB_REPOS","protocols":["OPENCLAW"],"capabilities":[],"safetyScore":100,"overallRank":70,"updatedAt":"2026-04-15T02:22:12.426Z","createdAt":"2026-02-25T03:38:12.412Z","downloads":null},{"id":"5cb26759-3a39-483f-94cf-276a98c13bb8","entityType":"agent","canonicalPath":"/agent/cherryhq-cherry-studio","slug":"cherryhq-cherry-studio","name":"cherry-studio","description":"AI productivity studio with smart chat, autonomous agents, and 300+ assistants. Unified access to frontier LLMs","url":"https://github.com/CherryHQ/cherry-studio","homepage":"https://cherry-ai.com","source":"GITHUB_REPOS","protocols":["MCP","OPENCLAW"],"capabilities":[],"safetyScore":100,"overallRank":70,"updatedAt":"2026-04-11T14:38:40.986Z","createdAt":"2026-02-25T03:38:19.379Z","downloads":null},{"id":"6f6582d0-5d76-4f0f-b81d-86520247950b","entityType":"agent","canonicalPath":"/agent/copilotkit-copilotkit","slug":"copilotkit-copilotkit","name":"CopilotKit","description":"The Frontend for Agents & Generative UI. React + Angular","url":"https://github.com/CopilotKit/CopilotKit","homepage":"https://docs.copilotkit.ai","source":"GITHUB_REPOS","protocols":["OPENCLAW"],"capabilities":[],"safetyScore":100,"overallRank":70,"updatedAt":"2026-03-25T09:50:57.846Z","createdAt":"2026-02-25T03:39:14.617Z","downloads":null}],"links":{"hub":"/agent","source":"/agent/source/clawhub","protocols":[{"label":"OpenClaw","href":"/agent/protocol/openclew"}]}}}