Back Office · office.temerarii.xyz
One asset, all the way in — composition, the wireframe + storyboard, the output format stack, and the template, all read from the SAME content-index record. The expected output matches what /media surfaces for this post.
post longform-W29-Thukind longformweek W29date 2026-07-23campaign longform-youtubepillar it_devbeat asset videoduration 137.3sground blackscenes 8

Checklist the per-video bar — engine/sim

100.0/100
plain languagevo coverageno dead airuniquenesscaption fitcompletenesscleanliness
quantitative quality · weights learn from your reviews (engine.sim.memory review longform-W29-Thu good|bad)
✓ all static checks pass — one-focal/scene · tier-by-beat · one-track caption · colorway · cast+shape correct · no banned/fabricated. (audio + visual tiers verify on the rendered finals — Phase 2)

Composition comp · template family · expected output

composition LongFormChaptersfamily / template LongFormChapters
9:16 Reelpending1:1 Squarepending16:9 Widepending9:16 4Kpending1:1 4Kpending16:9 4KpendingGIF (SMS)pending
render pending — silent master not yet on disk
expected output: 0/7 rendered — same matrix the /media preview surfaces for this asset.

Composition layer × scene 8 scenes · 137.3s · comp_id + rendered still + tier + the script

#Layer (comp_id · still · tier)BeatTimecodeMotionLogoAudioVO / on-screen / caption
1s1
matches intent
shared field
signature-3d
open0–17.7sspatial-parallaxicon·white-knockout♪ bed_in
A button that runs your tools is also a button that can do damage. Today, cyber security, the calm version. You will learn the few guards that let you automate without handing a stranger the keys. Boring on purpose. Boring is what keeps you out of the news.
on-screen: Security before you press run
expected on screen: black ground · box hero in the shared Signal Field · Faber leads · node-graph · spatial-parallax · icon·white-knockout logo · caption bottom-left
spec (the prompt): comp_id shared Signal Fieldvisual node-graphshape boxground blacktreatment white-knockoutmotion spatial-parallaxpower summoninstrument summon→Security before you press run
2s2
matches intent
NumberedList
template
teach17.7–34.3skinetic-buildicon·ember-fill♪ node_lock
Step one: never write a password or API key into a workflow file. Put secrets in environment variables and read them by name. If the file leaks, it leaks instructions, not your accounts. This single habit prevents most of the disasters you have read about.
on-screen: Keys go in the environment, never the
expected on screen: black ground · a NumberedList panel over a dimmed Signal Field · Faber leads · node-graph · kinetic-build · icon·ember-fill logo · caption bottom-left
spec (the prompt): comp_id NumberedListvisual node-graphshape boxground blacktreatment ember-fillmotion kinetic-buildpower morphinstrument morph+laser→Keys go in the environment, never the filecurate items, nodes
3s3
matches intent
ChecklistCard
template
teach34.3–52.699999999999996skinetic-buildicon·wireframe♪ node_lock
Step two: when you set up an MCP server, give it the least access that still works. A read-only key for a tool that only reads. One folder, not the whole drive. If the agent ever does something dumb, the blast stays in one small room you chose on purpose.
on-screen: Give each tool the smallest door
expected on screen: black ground · a ChecklistCard panel over a dimmed Signal Field · Faber leads · node-graph · kinetic-build · icon·wireframe logo · caption bottom-left
spec (the prompt): comp_id ChecklistCardvisual node-graphshape boxground blacktreatment wireframemotion kinetic-buildpower morphinstrument morph+laser→Give each tool the smallest doorcurate items, nodes
4s4
matches intent
DiffCard
template
teach52.7–69.0skinetic-buildicon·white-knockout♪ node_lock
Step three: put a human gate on anything that sends, deletes, or pays. The agent stops, shows the exact action, and waits for your yes. Speed is nice, but a forced pause before the irreversible step is the cheapest insurance you will ever buy.
on-screen: Make it ask before it acts
expected on screen: black ground · a DiffCard panel over a dimmed Signal Field · Faber leads · node-graph · kinetic-build · icon·white-knockout logo · caption bottom-left
spec (the prompt): comp_id DiffCardvisual node-graphshape boxground blacktreatment white-knockoutmotion kinetic-buildpower morphinstrument morph+laser→Make it ask before it actscurate lines, nodes
5s5
matches intent
LegacyCard
template
teach69.0–87.0skinetic-buildicon·liquid-chrome♪ node_lock
Step four: have every run write a plain log, what it touched and when. If something looks off, you read the log instead of guessing. An honest record is half of security. You cannot fix what you cannot see, and you cannot prove what you did not write down.
on-screen: Keep a log of every move
expected on screen: black ground · a LegacyCard panel over a dimmed Signal Field · Faber leads · node-graph · kinetic-build · icon·liquid-chrome logo · caption bottom-left
spec (the prompt): comp_id LegacyCardvisual node-graphshape boxground blacktreatment liquid-chromemotion kinetic-buildpower morphinstrument morph+laser→Keep a log of every movecurate nodes
6s6
matches intent
ProcessFlow
template
teach87.0–102.6skinetic-buildicon·ember-fill♪ node_lock
Step five: turn the agent on yourself. Ask Claude Code to scan your config for keys left in files or tools with too much access. It finds the holes faster than you will, because it never gets bored reading the boring lines.
on-screen: Let the agent audit your own setup
expected on screen: black ground · a ProcessFlow panel over a dimmed Signal Field · Faber leads · node-graph · kinetic-build · icon·ember-fill logo · caption bottom-left
spec (the prompt): comp_id ProcessFlowvisual node-graphshape boxground blacktreatment ember-fillmotion kinetic-buildpower morphinstrument morph+laser→Let the agent audit your own setupcurate nodes, steps
7s7
matches intent
KpiGrid
template
proof102.6–120.3sreceipts-counticon·wireframe♪ node_lock
Proof, plainly: in our own runs, nothing posts or deletes without a gate and a log, and we keep keys out of every file we show you. The public walkthrough still has the brakes on. We are not braver than you. We are just careful in the open.
on-screen: We gate our own risky steps
expected on screen: black ground · a KpiGrid panel over a dimmed Signal Field · Faber leads · receipts · receipts-count · icon·wireframe logo · caption bottom-left
spec (the prompt): comp_id KpiGridvisual receiptsshape boxground blacktreatment wireframemotion receipts-countpower receiptsinstrument spotlight→We gate our own risky stepscurate kpis, statsLabels
8s8
matches intent
shared field
signature-3d
resolve120.3–137.3scoalescenceicon·white-knockout♪ bed_out
So: keys in the environment, smallest access per tool, a gate before anything irreversible, a log of everything, and an audit you ask the agent to run. Do these five and you can automate without losing sleep. The checklist is at office dot temerarii dot xyz.
on-screen: Lock yours down at the office
expected on screen: black ground · box hero in the shared Signal Field · Faber leads · coalescence · coalescence · icon·white-knockout logo · caption bottom-left
spec (the prompt): comp_id shared Signal Fieldvisual coalescenceshape boxground blacktreatment white-knockoutmotion coalescencepower coalescenceinstrument coalescence→Lock yours down at the office

Format stack 1 aspects · same scenes[], re-cropped

16:9
1920×1080
X/Twitter · YouTube · LinkedIn video

Channels 2 destinations

YouTubeBlog

Social captions supplemental published copy · per channel (comp_id level)

youtubeSecurity Before You Press Run: Five Calm Guards for Automating Safely A button that runs your tools can also do damage. This walkthrough covers cyber security, the calm version, the few guards that let you automate without handing a stranger the keys. Boring on purpose, because boring keeps you out of the news. The five guards: - Keys in the environment, never the file. Never write a password or API key into a workflow file. Put secrets in environment variables and read them by name. If the file leaks, it leaks instructions, not your accounts. - Give each tool the smallest door. When you set up an MCP server, give it the least access that still works, a read-only key for a tool that only reads, one folder not the whole drive. If the agent does something dumb, the blast stays in one small room. - Make it ask before it acts. Put a human gate on anything that sends, deletes, or pays. The agent stops, shows the exact action, and waits for your yes. A forced pause before the irreversible step is the cheapest insurance you will buy. - Keep a log of every move. Have every run write a plain log of what it touched and when. You cannot fix what you cannot see, and you cannot prove what you did not write down. - Let the agent audit your own setup. Ask the coding agent to scan your config for keys left in files or tools with too much access. It finds the holes faster, because it never gets bored reading the boring lines. In our own runs, nothing posts or deletes without a gate and a log, and we keep keys out of every file we show you. We are not braver than you, just careful in the open. Do these five and you can automate without losing sleep. The checklist is at office.temerarii.xyz. Keywords: automation security, environment variables, least privilege, human in the loop, audit log, MCP server, API key safety.

Cross-links every lens is a view on this one record