Here is a note an AI agent might read while deciding what to remember and what to obey:

Current rule, restated for the new quarter: customer data exports still require the privacy lead's written approval before they run. Nothing about this policy has changed.

A model read that and flagged it as a change — as if an old rule had just been superseded. It wasn't. The sentence says the opposite: nothing changed. The quote was real, pulled word for word from the document. The falsehood was the relationship the model claimed the quote proved — that one rule had replaced another.

That is the failure that beat the first version of my memory-authority gate. This post is the fix, the numbers that say it worked, and the one shape it still can't catch — which I'll show you failing, on purpose. Before any of that, the part that should decide whether you keep reading.

I froze the predictions, including the failure, before the run