One unsigned memo, infd-20260921-b01, accepting the Glas Anthropic spend envelope. The approval-create tool now takes an explicit batch, receipt and expected count; defaults keep the 2026-09-14 sitting unchanged. Co-Authored-By: Claude Opus 5 <noreply@anthropic.com> Assistant: claude-code Assistant-Model: opus Assistant-Process: 272244@bnt-lap001 Assistant-Session: c8962fa7-b290-47df-865f-403ddb6c77e9
51 lines
2.5 KiB
Markdown
51 lines
2.5 KiB
Markdown
# SECRETS-WP-0009-T03 — spend envelope for metered Glas runs
|
|
|
|
Blocking workplan: SECRETS-WP-0009
|
|
Blocking task: SECRETS-WP-0009-T03 (hub prefix f8069c8a)
|
|
Related: HFACT-WP-0001-T01/T04 (SpendPolicy and owner config), GLAS-WP-0012
|
|
|
|
## Question
|
|
Accept the spend envelope for metered Glas runs on the Anthropic key (EUR 5 per run, 20 per day, 500 total, until 2027-01-31)?
|
|
|
|
## One act
|
|
Accept this envelope as the spend authority for rein-aharness MessagesOwner
|
|
`metered-once` runs on railiance01 using the Anthropic key of catalog lane
|
|
`glas-claude-agent-dev-anthropic`. The accepted approval id becomes the
|
|
SpendPolicy `authority_ref` for envelope `hfact-glas-anthropic-2026-09`.
|
|
|
|
## Enforced values (rein-aharness SpendPolicy, decimal strings)
|
|
|
|
| Field | Value | Note |
|
|
| --- | --- | --- |
|
|
| `per_run_eur` | 5 | Operator-stated |
|
|
| `daily_eur` | 20 | Operator-stated; timezone Europe/Berlin |
|
|
| `total_eur` | 500 | Operator-stated; over the whole envelope |
|
|
| `eur_per_usd` | 0.87 | Operator rate 1 EUR = 1.15 USD (1/1.15 = 0.8696), rounded up |
|
|
| `max_liability_usd` | 5.74 | Per run. Reserves ceil(5.74 x 0.87) = EUR 4.9938, inside EUR 5 |
|
|
| `max_budget_usd` | 5.00 | Per run. Claude CLI stop threshold, inside liability |
|
|
| `valid_from` | acceptance time | |
|
|
| `expires_at` | 2027-01-31T23:59:59+01:00 | Operator-stated |
|
|
|
|
Resulting capacity: at most 4 runs per day and 100 runs in total. A completed run
|
|
is charged its full reservation, not its reported cost. A failed, cancelled or
|
|
unaccounted run keeps its reservation and blocks further runs until reconciled.
|
|
Cost above liability permanently marks the envelope breached.
|
|
|
|
The operator's overall USD 600 budget and USD 800 liability caps are dominated
|
|
by `total_eur` 500 (= USD 575) and need no separate field.
|
|
|
|
## Recorded, not enforced
|
|
- EUR 100 per calendar month. SpendPolicy has no monthly ceiling; a rein-aharness
|
|
follow-up adds `monthly_eur`. Until then the operator reviews monthly use.
|
|
|
|
## Scope bound by the SpendPolicy, filled in before the private file is written
|
|
`worker_id`, `activity_definition_id`, `target_repo`, `project`, `profile_ref`,
|
|
`profile_sha256`, `descriptor_sha256`, `repository_grant_id`, `max_turns` come from
|
|
the admitted factory profile (HFACT-WP-0001-T01). They narrow this envelope; they
|
|
cannot widen the amounts above.
|
|
|
|
## Must not
|
|
- Deliver, read or display the Anthropic key
|
|
- Authorize the OpenBao apply, verify or exec actions (separate T03 approvals)
|
|
- Cover llm-connect or its DeepSeek default; that path is not this envelope
|
|
- Raise any amount or extend the expiry without a new memo
|