AILANG Roadmap
This page is automatically generated from the design_docs/planned directory. Each item represents a planned feature or improvement with a detailed design document.
For completed features, see Design Documents.
Planned for v1.1.0
- Global Collaboration Hub - Cross-Computer Agent Collaboration
- M-AGENT-LOOP-ARCHITECTURE: Where Should the Multi-Turn Agent Loop Live?
- M-AGENT: std/agent Module for AI Agent Orchestration
- M-AGENT-SAFE-RUNNER: Turnkey Sandboxed Execution for AI-Authored AILANG Programs
- M-AI-EFFECT-MODES-FOLLOWUPS: Close the Loose Ends from v0.15.0 AI Modes
- M-CALL-SUGAR: Optional Parenthesized Call Syntax
- M-CSP-SESSION-TYPES: CSP Concurrency with Session Types
- M-D4: Design-Doc-Driven Development (D4)
- M-EFFECT-HANDLERS: User-Definable Effect Handlers
- M-ENTROPY: Semantic Entropy Budgets
- M-ERROR-PROP: Error Propagation Operator (
?) - M-EU-COMPLIANCE-EFFECTS: Regulatory Trigger Effects for Agentic Systems
- M-EVAL-FINETUNING-DATA-PIPELINE: Capture-to-QLoRA on the Local Rig
- M-EVAL-TRUST-SIGNALS: External Trust Signals for AILANG Eval Results
- M-FORALL-PROPERTIES: Direct-Core Evaluation for
properties [forall(...) => ...]Blocks - M-GAME-ENGINE-EFFECTS: the game engine as typed effects — Stapledon's Voyage revived as v1.1's flagship
- M-ORACLE-ADEQUACY: Convergence Oracles and Evidence Bundles for the Eval Harness
- M-PERF4: Bytecode Interpreter (Stretch Goal)
- M-PIPE-OPERATOR: Pipe operator and Option chaining
- M-PKG-INFLIGHT: Package-in-Flight Tracking for Registry Workflows
- M-PROCESS-MODES: Replay-Contract Modes for the Process Effect
- M-QUASI: Typed Quasiquotes (String Templates)
- Type-Anchored Defaultable Record Fields
- M-REFLECT: Structural Reflection & User-Defined Type Classes
- M-TRACE-FEEDBACK: Execution-Trace Feedback Loop for Harness Diagnostics
- M-ZERO-LANGUAGE-LEARNINGS: Borrowed Ideas from Vercel Labs' Zero
Planned for v1.0.0
- Sprint Plan: M-BYTECODE-PATTERN-ARITY-FIX
- M-BYTECODE-PATTERN-ARITY-FIX — fixed-length list patterns match longer lists under
--bytecode(silent wrong result) - M-BYTECODE-VM-PARITY-BUGS — Three VM soundness bugs surfaced as "output divergences" (Lanes A + B, scope FROZEN)
- M-DIALECT-KEYWORD-DIAGNOSTICS: Diagnose the Observed
caseTrap - M-EFFECT-CLOCK-NET-FS-MODES: Port Clock, Net, FS to Parameterised Modes
- M-EFFECT-REFINEMENT: Parameterised Effects and Unified Replay Contracts
- Sprint Plan: M-EFFECT-REPLAY-SUBSUMPTION
- M-EFFECT-ROW-VAR-UNIFICATION — Discharge effect-row variables in the effect-checking pass
- M-EFFECT-SCOPE-PARAMS: Capability-Scoping Parameters on Effects
- Sprint Plan — M-MISSION-SLOT-HEARTBEAT
- M-MISSION-SLOT-HEARTBEAT: Per-Gate Heartbeat for Mission Slot Death Attribution
- Sprint Plan: M-NIGHTLY-RUN-VALIDITY-GATE
- Sprint Plan: M-NIGHTLY-SUSTAINED-FAILURE-LABEL
- Sprint Plan: M-NIGHTLY-UNMEASURED-CATEGORY-GATE
- Sprint Plan — M-OLLAMA-V1-STREAMING-IDLE-TIMEOUT
Planned for v0.40.0
Planned for v0.39.2
Planned for v0.39.1
- Sprint Plan — M-CHAINS-EXECUTOR-TRANSCRIPTS
- M-CHAINS-EXECUTOR-TRANSCRIPTS — Executor transcripts into
ailang chains chat(pi, codex, opencode — cloud and rig)
Planned for v0.38.6
- M-CLI-MSG-HANDLER: CLI Runtime Msg Effect Handler
- Sprint Plan: M-SMT-DATETIME — Exact UTC Day Arithmetic in Z3
Planned for v0.38.0
- Sprint Plan: M-OPENROUTER-EU-ROUTING
- M-OPENROUTER-EU-ROUTING: EU In-Region Routing for All OpenRouter Eval Endpoints
- M-SMT-STRING-CASEFOLD-AND-CHARFOLD: Verify
toUpper/toLowerandfoldCharsin contracts
Planned for v0.36.0
- Sprint Plan: m-autopush-gate-followups
- Sprint Plan: M-CACHE-MODULE-ID-ENCODING
- M-CACHE-MODULE-ID-ENCODING — replace
sanitizeModuleID's broken, non-injective mapping - SPRINT PLAN — M-COORDINATOR-WINDOWS-PACKAGE-TIMEOUT-HEADROOM
- M-COORDINATOR-WINDOWS-PACKAGE-TIMEOUT-HEADROOM: A Derived
-timeoutBudget and a Per-Package Headroom Instrument - M-GATE1-SHARED-CLONE-REF-DRIFT Sprint Plan — post-split recovery
- M-GATE1-SHARED-CLONE-REF-DRIFT: A shared
.gitmakesorigin/deva moving floor, so every gate that reads it must record what it read, when - Sprint Plan: M-MISSION-COMMS Phase 1 (Go half only)
- M-MISSION-COMMS-INTO-THE-BINARY: Decisions Are Issues, Reports Are Links, Telemetry Leaves the Thread
- Sprint Plan: M-MISSION-LOOP-WORKBENCH — Phase 1
- M-MISSION-LOOP-WORKBENCH: One Registry, Generated Artifacts, and a Command That Answers "Does This Reach Mission X?"
- M-STATE-DISK-RETENTION: Bounded On-Disk State and a
ailang diskCommand - M-TRACE-LABEL-AWARE: the tracer is below the type system, so IFC labels do not reach it
- M-TRACE-TIER-NOT-ENFORCED: the tracing tier is resolved, printed, and then ignored
Planned for v0.35.3
- Sprint Plan: M-EFFECT-PURE-ROW-OVERGENERALIZATION
- M-EFFECT-PURE-ROW-OVERGENERALIZATION — a
pure funcmust not export an effect-polymorphic row
Planned for v0.35.2
- Sprint Plan: M-CACHESRC-COGNITIVE-COMPLEXITY
- M-CACHESRC-COGNITIVE-COMPLEXITY — extract compile-cache orchestration and preserve its regression oracles
- Sprint Plan — M-LAUNCHD-NOTIFY-SUBSHELL-OBSERVATION (V1 mission iteration 347)
- M-LAUNCHD-NOTIFY-SUBSHELL-OBSERVATION: Restore Notification Test Observability and Bound Production Notification Calls
- M-PI-RUNNER-WORKTREE-ASSERTION-VACUOUS-ON-REVISION — replace the post-run dirty-worktree count with a bounded per-invocation content delta
- M-UNROUTABLE-INBOX-VISIBILITY: Unroutable sends must be surfaced, not stored silently
Planned for v0.35.0
- M-COORD-CLI-SHARED-STORE: control-plane commands must operate on the daemon's actual store
- M-COORD-DISPATCH-INTEGRITY: accept-then-work, dedup, and no silent handoffs
- M-COORDINATOR-CHILD-ENV-OPENCODE-RETRY-STORM-RECOVERY: coherent routes, OpenCode-local pinning, generation-and-attempt-fenced dispatch
- Recovery Plan: M-COORDINATOR-CHILD-ENV-OPENCODE-RETRY-STORM
- Iteration 309 — SPRINT-PLANNER disposition plan
- M-COORDINATOR-ROUTE-AUTHORITY-RECOVERY: narrowed recovery — M1 route authority + M2a OpenCode child preflight
- M-DX-LONG-SESSION — long-run context resilience: compaction-loop guard, sticky evidence store, late-session tool re-injection
- Sprint Plan: M-DX-MICRORAG-CONTEXT — μRAG as a first-class pi extension
- M-DX-MICRORAG-CONTEXT — μRAG as a first-class pi extension: retrieval-triggered context injection + search tool
- Sprint Plan: M-DX-QUALITY-MONITOR — empty/looping-output detection + bounded excerpts
- M-DX-QUALITY-MONITOR — empty/looping-output detection with corrective steering + bounded tool-result excerpts
- Sprint Plan: M-DX-SESSION-GATE — mechanical session-protocol gate for pi
- M-DX-SESSION-PROTOCOL-GATE — mechanical enforcement of the session protocol for pi sessions
- M-EQ-DERIVE-CONTAINERS — make
==work for records, Options and lists when the parts already have Eq - Sprint Plan: M-EVAL-ROLLING-ELO
- M-EVAL-ROLLING-ELO: one anchored rating series across models and AILANG versions
- Sprint Plan —
m-fmt-unpinned-hunks(iteration 288) - Sprint Plan: M-FS-RENAME — std/fs rename/move (atomic file publish)
- M-FS-RENAME — std/fs rename/move: atomic file publish for pure AILANG
- Sprint Plan: M-GIT-BINARY-RESOLUTION-SWEEP
- M-GIT-BINARY-RESOLUTION-SWEEP: One Absolute-Path Git Resolver for All 93 Exec Sites
- Sprint Plan: M-MODEL-REGISTRY-SINGLE-SOURCE
- M-MODEL-REGISTRY-SINGLE-SOURCE: models.yml becomes the one place models are assigned
- M-PARTIAL-ACCESSOR-SHAPE — total accessors, honest denominators, self-describing docs
- M-PKG-DETERMINISTIC-LOCKFILE: ailang.lock as a Pure Function of Its Inputs
- Sprint Plan — M-REGISTRY-INTERFACE-HASH-BLIND-TO-SIGNATURES
- M-REGISTRY-INTERFACE-HASH-BLIND-TO-SIGNATURES
- m unified release model
- M-ZAI-WINDOW-ROUTING: Time-Window-Aware Model Routing (z.ai GLM Coding Plan)
Planned for v0.33.2
- M-COVERAGE-CROSS-PACKAGE-ATTRIBUTION: Should
make test-coverageadopt-coverpkg? - Sprint Plan: M-TELEMETRY-REMOTE-READ-FASTFOLLOW
Planned for v0.33.1
- M-EVAL-STANDARD-MODE-INPUT-FILES-GAP: gate multi-file grading benchmarks out of standard mode
- Sprint Plan —
m-named-test-assert-lowering(maketest "…" { assert … }execute) - m-named-test-body-check-semantics — every expression in a pure named test body is a check (#604)
- Sprint Plan — M-NET-EFFECT-PROXY-BOUNDARY
- m-net-effect-proxy-boundary — bring AILANG's Net effect inside the egress boundary (D5 Option B)
- M-TYPECLASS-INT-FRACTIONAL-DICTIONARY-GAP: catch missing Fractional[Int] at compile time
Planned for v0.31.0
- M-AI-STRUCTURED-STEP — Sprint Plan
- M-AI-STRUCTURED-STEP — Structured output as an orthogonal option on
step - M-COMMENTS-FOR-AI-AUTHORS: measured comment semantics for an AI-first language — style guidance, first-class doc-comments, contracts-as-documentation
- M-DECISION-ENTROPY-MONITOR — Per-Step Decision-Weight Grading for AI Code-Generation Monitoring
- M-EVAL-EXPERIMENT-REGISTRY: Preregistration You Can Execute
- M-EVAL-FMT-WEAKMODEL-AB — M6:
motoko_ext_fmt, a profile-scoped AILANG extension - M-EVAL-KIMI-K3-AGENTIC: onboard Kimi K3 as an agentic suite model (OpenRouter × motoko/pi harnesses)
- M-FMT-DETERMINISTIC-FEEDBACK:
motoko_ext_fmtTeaches, Instead of Tidying in Secret - M-MANAGED-AGENTS-MODEL-EVAL — Managed Agents as a Gemini agent-mode eval vessel
- M-MCP-2026-07-28: Adopt the stateless MCP spec (go-sdk v1.6.1 → v1.7.0) without breaking our own client
- M-MEM-BUDGET-RUNTIME: Memory as a Budgeted Resource in the AILANG Runtime
- Sprint Plan —
m-strip-decl-aware(declaration-aware source stripping ininternal/testing)
Planned for v0.30.0
- M-ARCH-BOUNDARIES-EVAL-EXCLUSION-TIGHTEN: scope the
evalbridge exception file-level - M-DIAG-PRIMITIVE-FIELD-SUGGESTIONS: Symbol-Specific Enrichment of the Primitive-Field-Access Diagnostic
- M-PARMAP-EFFECTFUL: Concurrent Map over Effectful Functions (
parMap/gather) - M-PARSER-BLOCK-LET-SEPARATOR: Consistent statement-separator handling after block-RHS
let
Planned for v0.29.0
- m agent step cancellation
- M-AILANG-SEMANTIC-CONTEXT: Typed, Semantic Context Minimization for the Agent Loop
- M-ANTHROPIC-SANDBOX: Anthropic Self-Hosted Sandbox Executor
- M-APPLE-CONTAINER-LOCAL-EVAL-SANDBOX
- M-BUDGET-SCOPING-BUG — Sprint Plan
- M-CASCADE-OBSERVABILITY: Surface Cascade AI Conversation History
- M-CONCURRENCY-LEVERAGE: Leverage Fork() Across All Execution Modes
- Sprint Plan: M-DEONTIC-PKG — sunholo/deontic extension package
- M-CONTRACTS-AS-CODE: The Verified Deontic Engine — AILANG's Flagship Vertical Example
- M-COORD-THINKING: Extended Thinking Levels for Coordinator Skills
- M-DX27: GitHub Repository Search Fallback for
ailang docs search - M-EVAL-OPENROUTER-BASELINE-ROTATION: Cloud Baseline Three Candidate Models
- M-EVAL-RESULTS-FOLDER-STRUCTURE: Model-First Eval Results Layout
- M-EVAL-SLIM-PROMPT-SELF-DISCOVERY
- M-EVAL-STREAM-HEALTH-RETRY: Mid-stream death detection + fast retry for the streaming executor
- Sprint Plan: M-MOTOKO-EXT-PER-TASK
- M-MOTOKO-EXT-PER-TASK: Per-Invocation motoko Extension Configuration
- m pure prng
- M-SERVE-API-LIVE-TOOL-REGISTRY: Live Tool Registry for Agentic Sessions
- m stdlib html streaming
Planned for docparse-billing
- DX Improvements Discovered During Billing Package Creation
- M-BILLING: DocParse Billing and Agent-Assisted Payment
- M-BILLING: DocParse Responsibility
- M-BILLING: ailang-multivac Responsibility
- M-BILLING: ailang-packages Responsibility
Planned for ailang-core-triage
- ailang check on a package file alone fails MOD010; path-dep syntax "undocumented"
ailang run -ai claude-opus-5can never use the Claude OAuth credential the factory already knows how to read- Compile cache not invalidated when a PATH dependency's interface changes
- Coordinator pushes/reports the wrong ref: completion names files on an empty
coordinator/task-*branch while the work sits on the agent's owndesign-doc/*branch - Coordinator: enable auto-merge on design-doc PRs (docs-only paths)
- Daemon goes silent after its own binary is rebuilt; dead subscription indistinguishable from idle
- Daemon re-stalls ~2 min after clean start; dead subscription indistinguishable from idle
- std/clock & std/datetime: prompt and one guide say "seconds", implementation is milliseconds
- design-doc-creator hard-codes the ailang repo's mission-log path, breaking the daneel repo's proven docs-only gate and auto-merge scope
- Effect checker resolves let-bound lambda to top-level function of same name
- Forall property blocks fail to lower — #624 / M-M3-RESIDUAL T6
- Gemini Vertex client cannot enforce region: global host accepts any location segment
- IFC Label Refinements Lost Across Module Boundaries (Daneel, v0.36.0)
- Imported-type property generator skips (std/json Json) misclassified as vacuous
- Issue #1137 severity correction — process-allowlist downgrade to improvement
- Local dependency override (Go-style
replace) for development vs registry resolution - Named-test bodies fail float comparisons — missing Fractional dictionary in lowered path
- Nightly-eval holds the rig lock all night — widen the yield ask from os-rotation-filler to nightly-eval
- Per-subcommand process allowlist requested (git push --force leak in Daneel's audit trail)
- Registry validator over-matches
name:fields as advertised tool names (daneel_ext_help publish rejected) - serve-api silently coexists with coordinator on 127.0.0.1:8765; requests split between listeners
showfrom string interpolation inside requires/ensures clauses is not encoded — ShowNormalizer misses contract exprs- SMT-encode pure dt* datetime builtins (addDays/startOfDay/weekday) for verify
- source_strip test skip-range scan miscounts braces inside string literals
- Effect checker charges a stored (never-called) lambda's effects to the enclosing function
- verify: VERIFIED not refutable when ensures calls a user function (asymmetric SMT gating)
Long-term Vision
AILANG is designed as a deterministic language for autonomous AI code synthesis. The long-term roadmap includes:
- Structural Reflection - Typed quasiquotes and AST manipulation
- Schema Registry - Machine-readable type and effect definitions
- Capability Budgets - Resource-bounded effects
- Training Data Export - Execution traces for AI self-training
For the complete vision, see Why AILANG and Vision.
Generated at build time. 176 planned features across 18 upcoming versions.