Mission Run Overview
Mission Run: Per-Project Sync Consent Ledgers
Make hosted sync an explicit, revocable decision with physically isolated state for each project.
Close the CLI half of the consent incident by replacing path-, repository-, and machine-global grants with one versioned consent authority keyed by canonical project UUID; isolate journal, delivery, body, offline, and migration state per project; treat the global environment flag only as a deny-only kill switch; and consume the SaaS project-admission contract. Ambiguous legacy grants require re-consent, refusals may migrate safely, and the historical 1,322-event disposition remains a separate Human-in-Charge decision.