Operational controls in the development loop
Sepo makes issues, pull requests, comments, and a dedicated memory branch the shared record for human-agent work. It also derives project rubrics from prior discussions and uses them during review and repair.
A small Qwen code-generation pilot points to the same need for concrete instructions. Its operational privacy prompt produced clearer consent models, field restrictions, and negative tests than principle-only conditions. However, the study used few runs, could not isolate prompt length from specificity, and has not yet completed external behavioral testing. Together, the artifacts support operationalizing requirements inside the workflow—not a claim that the resulting code is already safe.