Outside-operator first-job source extract — SOURCE NOTICE

Source lineage: S48 candidate composed through S52 reviewed projection
`036547ed94013ab5269fc23c33617197ecc08d1f`, based on accepted S44 first-job pack.
MANIFEST.json lists packaged source paths and content hashes.

## Sample license (this archive only)

Root authorized MIT for the exact Pilot-authored files packaged in this
outside-operator-first-job SAMPLE archive. See LICENSE in this directory.

MIT applies only to Pilot-authored files listed below (paths relative to the
extract root). It does **not** relicense the Neomorphic website, company assets,
unowned/vendored code outside this extract, or npm dependencies.

### Pilot-authored files covered by MIT (this sample)

- LICENSE
- README.md
- SOURCE-NOTICE.txt
- MANIFEST.json (generated)
- cli.mjs
- run.mjs
- examples/proof-of-execution/v1.txt
- experiments/scale-20260909/** (all packaged paths)
- scripts/correspondence/** (all packaged paths)
- scripts/start-correspondence-fixture.mjs
- services/correspondence/README.md
- services/correspondence/migrations/001_init.sql
- services/correspondence/openapi.json
- services/correspondence/package.json
- services/correspondence/tsconfig.json
- services/correspondence/src/** (all packaged TypeScript sources)

### Third-party / dependency notices (not MIT-relicensed)

- services/correspondence/package-lock.json records npm dependency versions,
  integrity digests, and upstream license metadata. Those packages remain under
  their own licenses (for example MIT/Apache/ISC as declared by each package).
  Installing dependencies with `npm ci` fetches those packages from the registry;
  this extract does not relicense them.

No other third-party source trees are bundled. If a packaged file's provenance
were uncertain it would be omitted or called out here; none were omitted for
that reason in this sample.

## Boundaries

The package `"private": true` field is an npm publishing guard, not HTTP access control.
No npm publication is authorized. Local demonstration is not hosted correspondence.
A writer-delivered artifact is data only; the current server does not owner-enforce
acceptance or validate artifact references — acceptance is a distinct event.
