# TRW runtime artifacts — not tracked in version control.
# Tracked: config.yaml, frameworks/, learnings/, scripts/, templates/
# Secret: credentials.yaml holds the platform_api_key (mode 0600) — never track it (PRD-SEC-005).
credentials.yaml
# Backups TRW moved aside instead of deleting (user bytes, per machine) — never track them.
trash/
# The proprietary-entitlement record is a per-machine install fact, not project
# config. Tracked, it told a teammate's credential-less clone to take the
# proprietary path, which then aborted their whole public install
# (PRD-INFRA-126 FR05).
proprietary-installed.json
# Secret: runtime/memory-token is this checkout's memory daemon grant (mode 0600) — never track it (PRD-CORE-280).
runtime/memory-token
# The interpreter this machine's hooks start is a local install fact (PRD-FIX-155).
channels/cc03-python.txt
# The learn journal's write-ahead (pending/) and refused (dead_letter/) records hold
# raw caller text; only learnings/entries/ is tracked.
learnings/pending/
learnings/dead_letter/
# The feedback outbox and its sent log hold submission bodies (redacted, but
# caller-written) — never track them (FEEDBACK-LOCAL-OUTBOX, OQ-024).
feedback/outbox/
feedback/sent/
context/
reflections/
logs/
*.jsonl
# PRD-SEC-013 override evidence: C9 can only flag a forged approval record or a
# rewritten override ledger if git can SEE those files. The `*.jsonl` rule above
# hid both from every git-side check (probe finding N7), so the two evidence
# paths are force-tracked. Removing either negation re-hides the evidence and is
# itself a control-plane finding.
!contracts/intent-override-ledger.jsonl
!contracts/weaken-edit-approvals.jsonl
*.lock
knowledge.db
# PRD-FIX-123-FR04: pre-write copies of CLAUDE.md / AGENTS.md taken before
# every instruction-file write. They mirror files that may hold private
# project rules, so they are never tracked.
backups/
# The rebuildable code index (trw-mcp code index, and the reviewer-dispatch
# prebuild of PRD-CORE-300 S10). Never tracked.
code-index/
