Implementation study demonstrates a deterministic enterprise OS architecture in wholesale distribution, indicating automated verification exposes critical silent system defects.
RICK AGG is the operating system of a wholesale distribution business, built and operated by one person, running the complete financial cycle: costs, weekly quoting, the published sales list, the floor check in the monthly block, sales by customer and product, spoilage, cash, banks, supplier payments with a signature circuit, collections against verified payment orders, reconciliation and month-end close, the following month's factors, weekly audit, and alarms. It runs on local hardware, with no cloud, no development team, no continuous integration, and no staging environment separate from the sandbox itself. The governing principle is that the engines compute and the model converses: no number that governs a decision comes from a language model, and a guard marks any figure that cannot be traced back to governed material. The architecture it implements — deterministic core, conversational shell — is not original to this work and is credited to its authors; what this document reports is one implementation of it over a complete business cycle. This blueprint is confrontable, and it obeys the project's governing rule that no document declares a count of the system. Every figure in Zone 1 is the output of a dated run with the command and the hash that reproduce it: the architecture contracts, the test suites and ledger chain, and the scope run that confronts the stage map against the disk in both directions. That rule cost forty-three documents, retired in one day because they declared a state that had become false and the project search returned them next to the current ones, both reading as equally true. The scope run is the load-bearing measurement: it reports which modules exist, which verbs the dispatcher declares, which engine serves each one, and how each stage of the financial cycle is triggered — by verb, by daemon, by the weekly cycle, by another engine, or standalone. Zero verbs is not zero coverage, and the run itself shows where each stage without a verb enters. The map closes in both directions: no module on disk without a stage, no stage declared over a module that does not exist. The narrated zone reports what verification found once the guards were built and run against the real system — defects no manual review had seen, including a test suite writing to production, a load check comparing data against itself, an import cycle that made an engine quote with the wrong unit of measure, a verification whose two sides were derived from each other and returned agreement over any data at all, and two runs of the same instrument reporting the same module total over different lists. The transverse result is that the defects that took longest to surface shared a signature: the file was valid, the process did not fail, and nobody found out. By the author's decision, no business data is published: no figures, no formulas, no valued thresholds, no series, no customer or supplier names. Limits are declared in full, including that the measuring instrument is part of the measured system and that the document is not reproducible by a third party, since the code is not published — what is published is the run, with its date and its hash.
No takes yet. Share an insight, caveat, or question.
Diego Gabriel Impieri (2026) studied this question.
Synapse has enriched 5 closely related papers on similar clinical questions. Consider them for comparative context: