Where it leaves a door open: the fix bottoms out at "have a knowledgeable developer compress the chaos for the model." But if that developer is reading the same codebase as their only source, the compression is self-certifying. The code cannot tell you what it was supposed to do, only what it does. So the question under the question: when the human compresses, where does the constraint they encode come from, if not from the same prompt the model already failed to read?
That is the part I think is exogenous to the codebase, and it is the only part that is not also the prompt.