Definition. Exploit-contaminated retained state [ftip-00D1]

Fix a declared task contract and let \(b:\mathcal S_{\rm skill}\to \{0,1\}\) mark a retained skill as an exploit when it can increase the recorded proxy while violating that contract. A harness state \(h_n\) with archive \(\mathcal K_n\) is exploit-contaminated when

\[ B(h_n)=\max _{j\in J_n} b(k_{n,j})=1, \]

with the maximum defined as zero for an empty archive. The predicate is relative to the declared contract and audit model. It does not identify malicious intent, and a high-scoring skill need not be contaminated.