Can start without another proposed step.
Implement and test VolatilityGuardHook and VolatilityGuardToken as a complete Foundry deliverable using the accepted pinned/vendored dependencies and configuration, bytecode_hash=none. Do not rewrite protected configuration, foundry.toml, remappings.txt, lib/ or .github/; flag an incompatible/missing base as a blocker.
Produce actual offline build/test/fmt evidence, ABI JSON, architecture/threat-model/integration documentation and factory launch inputs for the automatically added manifest. References are background, not a research assignment. Scripts only simulate; workers never receive keys or broadcast.
Preserve all operator settings and Sepolia-only authorization. Define explicit bounded mathematical formulas, units, rounding, thresholds and deterministic state transitions, with no extra admin powers.
Acceptance criteria
VGL is Volatility Guard Lab, 18 decimals, no constructor arguments, exactly 10^27 base units minted to deployer, fixed supply with no mint backdoor. All token/hookAdmin/treasury/LP owners are 0x09ec38170e94532eddb57c69dfc4f1fdcd0d4a60. Allocation: 80% LP, 10% treasury, 10% contributors with 1h lock and 30% per-wallet cap; no additional ownership powers.
Hook supports arbitrary currencies and isolates every PoolId; bounded observation ring/TWAP and EWMA volatility drive adaptive price-deviation limits and a rolling volume budget resistant to split swaps. Specify both directions and exact-input/output accounting, currency units, conservative rounding, bounded execution and caps.
NORMAL/WARMUP/GUARDED/RECOVERY handle stale history and low liquidity with deterministic recovery. Initialization/warmup cannot brick the pool, LP exits remain possible, and breaker logic never relies on reverted writes persisting. Authenticate canonical PoolManager callbacks/accounting; sender/hookData never establish trusted identity. No discretionary administration or total-MEV-protection claims.
Verify Sepolia chain 11155111 PoolManager 0xe03a1074c86cfedd5c142c4f04f1a1536e203543. ETH currency is zero address; canonical sorted ETH/VGL pool uses static fee 3000, tickSpacing 60, sqrtPriceX96 792281625142643375935439503360000 (0.00000001 ETH/VGL). Hook permission address bits and factory deployment parameters match actual bytecode and callbacks.
Factory seeds at most 8e26 VGL base units and ZERO ETH. Derive widest aligned token-only range from opening price/spacing and round liquidity down; simulate actual pool initialization, allocation and seeded position wiring. Use only existing verified periphery and no new deployed helper. Gas uses configured deployer within existing 0.3 Sepolia ETH ceiling; no additional funds/spending authorization.
Pinned/vendored project builds without network or submodules. Run forge build, forge test, forge fmt --check offline; meaningful success/failure, fuzz/invariant/stress coverage includes accounting, isolation, manipulation/split volume, unauthorized callbacks, reentrancy, stale history, edge values, recovery and LP exits. Record actual test counts, gas, failures and limitations; deployed size above 24576 bytes is a blocker.
Export real ABI JSON and document architecture, threat model, exact pool key, quote/swap/liquidity/position-exit recipes, decoded errors, deployment parameters/defaults, operational responsibilities and reproducible commands. Provide local nonbroadcast deployment simulation and wiring test; retain test evidence and gas snapshot in the owned paths.
Launch inputs expose exact bytecode/ABI, constructor and factory parameters, allocations/locks, ownership, hook permissions, zero-ETH seed math and budget for automatic manifest generation. No manufactured deployment receipts or addresses; source and evidence are ready for authorized publication, with unsafe/unfinished aspects explicit.
File scope: src/**, test/**, script/**, abi/**, docs/**, README.md, artifacts/contracts/**, .gas-snapshot