# Changelog One line per release. Versions are git tags (`vX.Y.Z`). ## [0.10.0] - 2026-08-21 - Two configuration gaps and a diagnosis. **`flavour` is now a config key.** It was the one rendering setting with no way to set it once: `template` and `format` had keys, the escaping flavour did not, so a template whose extension says nothing about its output needed the flag on every invocation. It is normally inferred from the extension and unset still means "infer", which is why `config --show` reports `(infer)` rather than `(none)` — an unset flavour is not an absence. There is deliberately no silent fallback, because guessing it wrong yields malformed output rather than ugly output. **An INI overlay handed to `--overlay` is diagnosed rather than left to fail.** The INI form is a SOURCE format that `colitur convert` turns into the S-expression one; feeding it directly failed deep in the sexp reader with "more than one S-expression in file", naming neither the cause nor the cure — and the shipped examples under `data/ef/examples/` are exactly what someone would try it with. The detector's own first version capped its scan at 40 lines while `poland.ini`'s comment header is 43, so it silently never fired on the very file it was written for. Also: the README's about page carried three false claims — that older tags are not downloadable (true for one morning), that the OF form exists (`lib/rites/` holds `rite_ef` alone), and suite timings from a much smaller suite — and gains a status section stating not just the five validation layers but what they cannot see, since the differential and the oracle share one data lineage. 570 tests. ## [0.9.0] - 2026-08-20 - An audit of the shipped program, and the fixes it found. **The citation parser accepted OCaml integer-literal syntax**, so `Luke 1_1:5` read as chapter ELEVEN and `+5` as 5 — a transcription typo silently becoming a *different chapter*, reachable through any user overlay. Numbers are now plain digits and positive, and a descending range is rejected. **Four pairs of different books shared a full title**: 1 and 2 Corinthians both rendered "Epistola ad Corinthios", as did Thessalonians, Timothy and Peter — 108 citations in 2027 alone that a reader cannot resolve to a book. This was the Kings defect fixed one release earlier and simply not generalised. A test now forbids it, while allowing the case where two ids *are* the same book under different numbering, which a tradition relates. **Spec §8.5 went from recorded to delivered**: shipped styles did not re-parse their own rendered output — 32 of 52 Latin abbreviations and 49 of 52 full titles failed — so a citation copied out of colitur's own output into an overlay was passed through untouched and printed in the wrong language, silently. Every shipped name is now a registered spelling and `split_book` learned multi-word titles. **Overlay errors stopped naming OCaml source files at the reader**: the five-path rewriter is replaced by a generic one applied at every load path, so "rank: is not one of the allowed values (at Class9)" replaces a raw `Of_sexp_error` dump. Also: the `new-overlay` scaffold shows `citations` at the right nesting level (it documented the field without showing it, and the nesting is the single easiest thing to get wrong); `config --show` validates before printing rather than exiting 2 after five rows; error messages no longer echo whole file lines, which copied an unrelated file's contents to stderr when a flag pointed at one; and a month answers to both spellings of its own name, since an unknown template key renders as the empty string and the mistake produced a silently blank heading. `--raw` output is byte-identical to 0.8.0 across the whole domain. 569 tests. ## [0.8.0] - 2026-08-20 - Output, naming, and configurable citations — the release that made everything a reader sees a file rather than a value in code. **Rendering**: a logic-less template engine (Mustache subset, no partials, no lambdas, no code execution) with *mandatory* per-flavour escaping — `latex typst groff html xml ics none` — plus five emitters (`csv json sexp xml ics`, the last RFC 5545 with stable UIDs and 75-octet folding), `colitur table`/`render`/`emit`/`publish`, and eleven shipped templates: an ordo booklet in six flavours and a wall calendar in four. **Naming**: language tables and a config file, so slugs stop reaching the page — `ef-septuagesima-sunday-2` was printing in a booklet because nothing asserted coverage. Latin names for the whole temporal cycle and sanctoral, transcribed from the Missal, with a citation checker wired into the suite; `--raw` keeps the bare-slug form. The coverage test at first walked only the *observed* day and so never saw commemorations or transfers, which is exactly how "Commemoratio canute-martyr" reached a printed page. **Citations became configurable**: parsed into structure and re-rendered, so book names, abbreviations, punctuation and numbering tradition are each a file — `[bible]` and `[sigla]` sections in a language file, `lang/traditions.ini` for Vulgate-versus-modern numbering, three config keys and flags. Naming and renumbering are deliberately separate mechanisms; conflating them is how a citation ends up naming the wrong book. The design's own survey of "the shipped data" had read one of three citation-bearing files and missed twenty-one book tokens — `sanctoral.sexp` carries more citations than the lectionary does — and the fact was already written down in `commons.sexp`'s header, which called the inconsistency "cosmetic" because nothing parsed those strings. **Differential closure**: lectio adopted eight corrections argued from the Missal, so on those days the shared lineage is broken and colitur is no longer the outlier; the fixture was regenerated and seven divergence classes closed. Also: `publish --prune` refused a manifest entry escaping `--out` (a real traversal, found by canary), `fold_ics` was made total on arbitrary octets, and four vacuous assertions were replaced with real ones. 559 tests. ## [0.7.0] - 2026-08-18 - A flat INI form for overlays, a reference man page, and two real local calendars. **`colitur convert FILE.ini`** transpiles a flat, section-per-slug format to the S-expression one — `status`, `subject` and `layer` all default, so an ordinary local saint's feast says only what distinguishes it, and dates flatten to `MM-DD`, `easter+N` and `oct/sun/-1`. It is a front door, not a second data model: it parses to exactly the `Overlay.t` the sexp form does, and a test asserts the two produce identical values. It is deliberately less expressive — `Add`, `Suppress`, single-field `Edit` — and refuses `Replace`, multi-field and citation edits *by name* rather than dropping them. **The conversion verifies its own output**: the emitted text is parsed back with the same function that loads an overlay and must mean what the INI said, or nothing is written — a transpiler emitting valid-but-wrong sexp is the failure a convenience format invites, and `colitur check` could never catch it. That check was wrong on the first attempt in exactly that way, re-serialising the parsed value instead of parsing the emitted text; a mutation corrupting the renderer sailed through it, and the fix makes the same mutation redden two tests. **`colitur-overlay(5)`** documents the format in full — every directive, every field, the three date shapes — and, more usefully, *how an overlay is applied*: load, merge, resolve, emit, with the point made explicit that overlay entries take part in precedence on equal terms, so "my feast does not appear" is almost always a lost contest rather than a load failure. **Two real calendars ship** beside the invented example: **Poland**, 17 entries from the *Calendarium Perpetuum pro Dioecesium Poloniae* (1964), with three unrecoverable classes marked as inferences and a warning about the 1921/1934 *Proprium Poloniae* still bound into many missals; and **Benedictine**, two entries and a comment explaining why — the monastic rite grades feasts Duplex and Semiduplex below II class, where the Roman calendar has III and IV, so most Benedictine propers cannot be expressed here at all, and rather than invent a mapping the source never states, that file lists two dozen excluded feasts by name. Both are examples, not authorities. 405 tests. ## [0.6.0] - 2026-08-18 - Writing a local calendar gets a feedback loop. An overlay is still **applied, not validated** — the five test layers assert things about the *shipped* calendar and cannot vouch for a user's file — but until now the only way to learn whether yours did what you meant was to generate a year of output and grep for your own slug, and the only way to see that a directive matched nothing was to notice a warning scroll past among 365 lines. **`colitur check FILE ...`** loads each overlay, applies it to the real shipped calendar, and reports the directive counts, the slug each one targets, and any directive that found no target; it exits 2 on a load failure or an unmatched directive, so it composes into a Makefile or a pre-commit hook. It answers three narrow questions — does the file parse, does every directive find its target, what does the merged result contain — and does *not* check a calendar against the rubrics, which the help text and man page both say, because the name invites a stronger reading than the command earns. **`colitur new-overlay`** prints a commented starter to stdout for redirection, rather than writing a file where it likes; every value in it is a placeholder that will appear in `day` output if left unedited, so a half-finished overlay is visible rather than silently inert. **The format is less hostile too**: `citations` and `layer` may now be omitted from an added celebration, defaulting to empty and to the overlay's own `id` — they were the two of eight fields carrying nothing an author could supply, and omitting them used to fail with `lib/kernel/celebration.ml.t_of_sexp: the following record elements were undefined`, naming a source file the author will never open. An explicitly stated value still wins, pinned in both directions. Parse errors stop naming kernel source paths. The leniency is scoped to overlays alone: `Layer.load`, which reads the shipped sanctoral, stays strict, because a missing field there is a defect rather than a convenience. 398 tests. ## [0.5.0] - 2026-08-18 - Two corrections, both found in primary sources the project already had but had not fully read. **`ubaldus` (16 May) and `didacus` (13 November) are III-class feasts, not commemorations** — found by auditing *all 290* fixed-date sanctoral entries against the Missal's own universal calendarium, anchored on the Roman calends column because the arabic day numbers are OCR-wrecked and the dominical letters vanish in some months. They were the only two status defects in the file; the 15 days the automated pass could not reach were read by hand. Universality is structural, not a judgement call: the calendarium carries no *pro aliquibus locis* marker in its 573 lines while the wider Missal carries 79 elsewhere, and each saint has his own Mass entry in the Proprium, which a bare commemoration never has. Neither needed a proper authored — each takes its Mass from a Common with only its Oratio proper — though one Common was newly transcribed (*Missa Iustus*, 1 Cor 4:9-14 / Luke 12:32-34, read independently in both scans). 13 036 days change, every one classified. **RG 113's first sentence is now implemented**: *"Commemoratio de Tempore fit primo loco"* — only its second sentence was, so ordering ran through the precedence table for every commemoration including the seasonal one. Reconciled with RG 110(c)'s *"ante omnes alias commemorationes"* by the term the two rubrics share, whose sense RG 113's own sentence fixes: season, then the inseparable Peter/Paul pair, then table order. 3 533 days change, **every one order-only** — identical commemoration sets, verified as sorted multisets. Also: every Latin quotation in the rules register re-audited against the electronic transcription — all 26 rubric quotations verbatim, zero errors — which established that rubrics must be checked against the transcription and propers against the photographic scans, the confusion that nearly lost RG 110(c). 396 tests. ## [0.4.0] - 2026-08-18 - Three colour corrections, and the first findings in this project's history made against sources **outside its own data lineage**. colitur was bootstrapped from lectio, lectio's ini is generated from missalemeum, and missalemeum uses Divinum Officium's data files — so the differential and the oracle, layers 3 and 4, are one witness counted twice, and an error inherited at the root is invisible to both. Two sources outside that tree were admitted this release, each with its rubrical edition established *before* use: a published **1962 Ordo** (three liturgical years, 1091 days, 1504 permitted Masses) and **O'Connell's *The Celebration of Mass*, 4th ed. (1964)**, revised throughout to the Codex Rubricarum (1960) and the 1962 Missal. **Good Friday is black, not violet** (RG 128(b)'s own exception for the *Actio liturgica ... usque ad Communionem exclusive*, with RG 132) — recorded in the register as an acknowledged gap since Task 16 and closed here. **The Vigil of the Assumption and the Vigil of St Lawrence are violet**, not white and red (RG 128, "vigils of II and III class outside Paschaltide"); the Ascension's vigil is untouched, being the one such vigil *inside* Paschaltide. That rule had sat transcribed in the register since 11 August, disagreeing with the shipped data the whole time, while both layers stayed green on the shared error. 22 809 days change across 1583–9999, every one colour-only, none unclassified — and the two vigils' identical 7 196 was verified against an independent implementation rather than accepted. Also: **rose stays on Gaudete and Laetare**, now a decided position rather than an unexamined one (RG 131 is permissive, so the colour field carries a permission there, not a requirement). Divergences from every Divinum-Officium-lineage source are cited, not adopted: C37 and M29. 395 tests. ## [0.3.1] - 2026-08-18 - Adjudications and evidence only; no behaviour change. **M13 closed** — St Joseph is not displaced from Passion Friday: the hypothesis the entry rested on (a rubric at Joseph's own propers entry, "the same shape as the Annunciation's") was checked directly and is false, and the analogue does not exist either, the Annunciation's exception living in RG 96 rather than its propers. **Mass I of the BVM Saturday** needs no corroborating oracle year because none can exist: Advent has no IV-class ferias, so that office never falls there. **A third oracle window, 2035**, witnessing `isidore-of-seville` and with him `common-of-doctors`, the one Common no window had ever tested — closing step 4's blind spot as far as the method allows, the last two saints being unreachable by construction. 393 tests. ## [0.3.0] - 2026-08-17 - Three EF corrections and a new resolution step, all argued from the Missal rather than from oracle agreement. **The votive Mass of Our Lady on Saturday** (RG 309(a)): the office had been kept since v0.1 but read the feria's Mass, so the day observed Our Lady and read the parable of the weeds; it now selects among the Missal's five *Missae de sancta Maria in sabbato* by season — 87 611 reading rows, every one a Saturday. **The Seven Sorrows of Passion Friday**, a movable commemoration colitur had no trace of, buildable only once `Date_spec` grew `Easter_offset`; adding it *reversed* an allow-list verdict, since RG 111(d) admits two commemorations on a III-class day and colitur admits exactly two where the oracle drops one. **The week after Trinity**, which now says the Mass the Missal prints for it, under RG 299's *nisi propria Missa assignetur* — and the same rule shows the Christ-the-King-week divergence was never a bug at all. RG 299 also closes a standing gap: the ferial-Mass rule was recorded as unconfirmed against the primary source and is now cited. ## [0.2.0] - 2026-08-17 - `Date_spec` carries movable dates: `Easter_offset` and `Nth_weekday` beside `Fixed`, whose on-disk form is unchanged so all 327 sanctoral entries parse untouched. Easter comes from the rite, not the kernel, which ships both Gregorian and Julian and must not pick. `Layer` keeps a split index — fixed entries year-independent as before, movable ones resolved per civil year. That unblocked **Rogation Wednesday** (RG 87/88/89), recorded as architecturally blocked since 13 August on reasoning that turned out to rest on `Date_spec`'s expressiveness rather than the entity's nature: 2 257 days across the domain, and in the other 6 160 an impeded feast takes the single slot RG 111 allows. And it unblocked **`colitur --overlay FILE`** (repeatable, ordered), which applies a user calendar on top of the shipped one — never instead of it — so a diocese or parish can add local feasts, fixed or movable. An overlay is applied, not validated: the five test layers assert things about the shipped calendar and cannot vouch for a user's file. Also: a second oracle year (2038, live-captured) closing the Common route's blind spot, `--version`, a Makefile, and a man page. ## [0.1.0] - 2026-08-17 - First tag. The Extraordinary Form (1962 Roman Missal) end to end: the complete temporal cycle, the resolution engine (occurrence, precedence, commemorations, transfers) against the sanctoral calendar, and the Mass reading citations for every day — correct and total over 1583–9999, with no clock, randomness or environment read below the CLI. Four commands (`easter`, `temporal`, `day`, `readings`) plus `--help`/`--version`, a man page, and a Makefile that installs binary, calendar data and man page into `~/.local` by default. Validated in five layers: types, QCheck properties over every year in the domain, a 16 801-day differential against the sibling lectio engine, two independent missalemeum oracle windows (2026–2027 and 2038), and ~36 hand-verified golden pins — 375 tests. Rules are computed against the Missal and its *Rubricae Generales*, with every published-calendar divergence adjudicated against the primary text rather than adopted; several are resolved in this engine's favour and cited in the register. Not included: the Ordinary Form, the chants (Psalm/Gradual/Tract/Alleluia/Sequence, deliberately rejected rather than guessed), and template-driven output.