Detector catalog
The detector catalog is broader than one verification command. The default local verification gate centers on four checks:
| ID | Detects | Important boundary |
|---|---|---|
| GC-01 | Unreachable-file candidates | Incomplete roots or graph evidence make the result indeterminate; it is never automatic deletion authority. |
| GC-02 | Duplicate code fragments | Tuned for larger exact token clones; smaller or semantic duplicates are outside its declared floor. |
| GC-08 | Placeholders and stubs | Looks for explicit unfinished-code shapes; noisy console logging was retired from this rule. |
| GC-13 | Configuration gaps | Checks concrete project setup shapes, not whether every present value is correct. |
Compiler-backed semantic providers include EX-01 for swallowed exceptions and MW-01 for a route left unguarded among guarded siblings. Additional graph, security, governance, proof, drift, infrastructure, style, spec, and protocol declarations are represented in the same catalog with their actual disposition.
ships-and-runs means the normal scan reaches it. ships-but-manual names the tool that invokes it. declared-external records a capability owned by another process. dormant records intentionally unwired source. not-a-detector documents an export that matches the mechanical name shape but does not produce code findings.
The canonical, gate-checked source is src/mcp/facade/detector-catalog.ts.