Doctors and Mac certification
Run diagnosis with explicit exclusions before any repair:
prometheus doctor --json \
--exclude control.kbd-runtime \
--exclude state.kbd-orchestrator \
--exclude control.kbd-rollout \
--exclude remote-queue
Selection happens before excluded checks are constructed or executed. The report’s selection object records the requested check filter and exclusions.
Generate a non-mutating repair plan:
prometheus doctor --json --refresh --dry-run \
--exclude control.kbd-runtime \
--exclude state.kbd-orchestrator \
--exclude control.kbd-rollout \
--exclude remote-queue
Review every action. Apply only safe, reversible, in-scope actions with explicit confirmation.
Allowed health matrix
Run and archive redacted output for:
- canonical
prometheus doctor --jsonandnpm run doctorparity; pk doctor --json;codex doctor --json;cowork doctor,cowork toolchain status, andcowork toolchain check;scripts/prometheus-services.sh doctor;scripts/check-mcp-health.sh --json;prometheus learning status --json;- root smoke tests and
pkhealth fixtures.
Deployment topology
Certification evidence
Required checks must be green. Every warning needs a written disposition. Archive exact command, exit code, commit, timestamp, sanitized environment, and report path. Run scripts/certify-memory-operations.sh --long-memory separately because it intentionally writes a certification memory; doctor remains diagnostic.