## 1. GitLab Lifecycle Policy - [x] 1.1 Run controlled baseline and `--local-dev` scans for previously affected public GitLab targets. - [x] 1.2 Add source-configured external lifecycle command construction only for GitLab scans. - [x] 1.3 Generalize explicit completion parsing and classify missing completion or wrapper exit as retryable. - [x] 1.4 Confirm partial findings use the existing three-attempt queue policy and stable identities. ## 2. Regression Coverage - [x] 2.1 Add command tests proving GitLab receives `--local-dev` while other Git sources do not. - [x] 2.2 Add completion, incomplete exit, wrapper exit, partial finding, and queue exhaustion tests. - [x] 2.3 Run focused and broader regression suites with bytecode writes disabled. ## 3. Validation And Rollout - [x] 3.1 Run strict OpenSpec validation and verify implementation against artifacts. - [x] 3.2 Restart the managed runtime and confirm GitLab command, source, scan-slot, PostgreSQL, and pipeline health. - [x] 3.3 Observe at least 100 GitLab attempts or two hours before historical replay. - [x] 3.4 Requeue one bounded exact-signature historical batch and verify completion, deduplication, and queue drain.