What Kairo’s retrieval and context-injection receipts establish, where they fail closed, and why model-boundary exposure is not evidence of attention or causality.
If required retrieval-audit creation fails, journal-derived context is withheld. If durable injection confirmation fails, the block is removed before inference. This is fail-closed behavior at the audited foreground path.
An injection receipt proves more than “nothing”: it proves the recorded block reached the model-call boundary identified by the receipt. It proves nothing stronger about internal processing or the counterfactual cause of the response.
A missing retrieval row does not prove that no memory existed and does not prove the audit path was never invoked. Depending on the route and failure point, absence may reflect a bypass, no candidates, a failure, or simply a lack of committed evidence. These tables are not universal logs of every memory or recall operation.
The schema and endpoint behavior are append-oriented and guarded against ordinary mutation. A narrowly authenticated privacy-purge path is the documented exception; the public contract does not describe the tables as metaphysically immutable. Inspection surfaces expose recorded facts without upgrading them.
The first accurate prose description could disappear when compact conversation mode replaced the prompt. Journal-provenance questions were also not recognized by the topic detector. The fix introduced a typed capability contract and deterministic journal-topic recognition, then projects the facts after full/fast/compact selection. Compact replacement therefore cannot remove them. The 35B remains the exclusive foreground final voice; no 9B capability-answer fallback was introduced.
Regression questions cover direct table names, retrieval-versus-injection, attention/use/influence/causality, universality, and the exact prior failure: “no retrieval row” must remain insufficient evidence to establish why the row is absent.
None of these records proves phenomenal awareness or gives a direct measurement of model attention. They provide bounded operational provenance.