GLMCHAT V2.2.1 — CURRENT ISSUE STATUS Updated: 29 July 2026 13:48:39 UTC Supersedes all earlier CURRENT_ISSUE_STATUS conclusions. Baseline: GLMCHAT_V2.2.1_PROVIDER_ALIGNED_HANDOVER_29072026123942.zip CLOSED — CODE, MIGRATION AND LOCAL CONTRACTS - All previously closed seven-defect and provider-alignment items remain closed. - C-027 Target-host runner controlled-preflight classification repaired and regression-tested. - C-028 Apache-compatible HTTPS domain-root rewrite/private-path/header/cache acceptance completed: 29 runner passes plus 13 manual HTTP passes; four explicit missing-module failures remain. - C-029 Apache-compatible HTTPS nested /glmchat/ acceptance completed with the same results. OPEN — TARGET HOST OR AUTHORISED EXTERNAL SYSTEM P0-001 PHP success path with sqlite3, curl, mbstring and zip enabled, including PHP remediation/provider integration assertions. P0-002 Actual live LiteSpeed domain-root deployment. P0-003 Actual live LiteSpeed nested-subdirectory deployment. P0-004 Live LiteSpeed rewrite, private-path, security-header, HTTPS/proxy and cookie enforcement. Apache-compatible evidence now exists; LiteSpeed and authenticated-cookie evidence remain open. P0-005 Live SSE streaming and cancellation through LiteSpeed/proxy. P0-006 Upgrade using a private clone of actual production database/storage. P0-007 Intentionally failed production-data upgrade and tested rollback. P0-008 Live Together API-key, account-access and provider error-path validation. P0-009 Live zai-org/GLM-5.1 text, reasoning, streaming and cancellation. P0-010 Live function calling and autonomous PHP-tool execution. P0-011 Live Qwen/Qwen3.5-9B vision routing and image validation. P0-012 Live Together TTS voice inventory, generation and Android playback. P0-013 Physical Android Chrome acceptance. P0-014 Physical Samsung Internet acceptance. P0-015 Physical TalkBack and 200% text acceptance. OPEN — FORMAL RISK OR LOAD/FAILURE ACCEPTANCE P1-001 React 16/ReactDOM 16 risk decision and controlled upgrade plan. P1-002 Six-digit PIN and seven-day offline-credential threat-model decision. P1-003 Long-running workflow, worker-lease, concurrency and SQLite contention tests. P1-004 IndexedDB quota, transaction failure, eviction and storage-clear tests. P1-005 Large upload, storage exhaustion and hostile ZIP tests on target hosting. P1-006 Low-connectivity, captive-portal and Android download tests. CURRENT VERDICT - Known locally reproducible runtime defects: CLOSED. - Acceptance-runner defect: CLOSED. - Apache-compatible root and nested HTTP controls: PASSED within the local environment. - Required PHP modules: FAILED/UNAVAILABLE locally. - Actual LiteSpeed, live provider, production-data and physical-device acceptance: NOT RUN. - Production status: CONDITIONAL STAGING CANDIDATE; production GO is not authorised.