Roadmap & Evidence Gaps

This page records evidence and stabilization work, not promised delivery dates. Program tracking: stacksjs/stacks#2060.

Current status

The white paper is a governed Protocol 1.0 working draft. RFC 0001 is accepted; RFCs 0002–0005 are proposed with review ending 20 August 2026. Reference implementation code does not bypass that review window.

Stacks.js is a pre-1.0 reference implementation with no profile claim. The generated evidence page pins source bf1245e336ab14551e22cb7d88284f93e649a1a2, evidence commit 2a17dd38ffbe9f910273e3777079e7f1ec1623ba, and RFC commit ea9dbe438aca308085372e68aaa82ebe2e92b8d0.

Completed foundations

  • RFC 0001 publishes maintainers, sponsorship, quorum, voting, conflicts, appeals, security handling, compatibility classes, and review windows.
  • Specification text is CC BY 4.0; fixtures/runner material is MIT-licensed.
  • RFC 0002 proposes 47 stable requirement IDs and Core ← Standard ← Complete inheritance with pass-only claim semantics.
  • RFC 0003 proposes 16 deterministic runner-neutral fixtures and database, queue, cache, storage, mail, realtime, and deployment contracts.
  • RFC 0004 proposes a JSON Schema plus semantic checks for attributable reports.
  • An independent standard-library Python runner consumes the shared suite and reports 15 passes without claiming a profile.
  • Stacks CI pins the RFC revision, rejects suite drift, runs its adapter, validates the report, and retains JSON/Markdown artifacts. Its claim remains null.
  • A deterministic source manifest, runtime driver registry, and Craft support matrix now feed this paper through a checksummed evidence lock.

Governance gates

  • #2050, #2051, and #2052 stay open until their RFC review/vote records are complete.
  • RFC 0005 and #2061 block broad production claims for environment encryption.
  • A profile claim requires every inherited requirement to pass; skipped, unsupported, exception, and experimental results never satisfy it.

Reference implementation evidence still needed

  • Wire the remaining protocol fixtures to public Stacks APIs and publish per-driver service versions/topologies in retained CI reports.
  • Add deterministic OpenAPI, declaration, and Buddy command-reference freshness checks (#2056, #2032).
  • Expand provider-contract matrices without turning missing credentials into false passes (#2057).
  • Complete independent review and disposition for environment envelope v2 (#2058, #2061).
  • Provision platform signing/notarization and retain native install, launch, update, rollback, and uninstall evidence before any Craft row becomes stable (#2059, #2062, #2063).

Documentation quality still needed

  • Tag remaining capability pages with maturity and last-verified evidence.
  • Test selected commands/snippets and internal links in CI.
  • Keep provider-specific claims tied to exact provider revisions.
  • Keep protocol requirements in the RFC repository and Stacks.js syntax in implementation guides.
  • Continue removing unsupported benchmark and legal-compliance conclusions.

Extension work

AI, analytics, desktop, CMS, commerce, search, and internationalization are independent extension badges. Craft is currently reported as experimental; the other extensions remain unsupported by the Stacks protocol adapter until their specific evidence is executed.

Licenses and community