537722bf65
omo's ultimate-browsing engine added a 'surrogate retrieval tier' (PR #6662): when a page fetch is blocked by a WAF/paywall/rate-limit, it falls back to third-party copies (Wayback, archive.today, Jina Reader) with strict provenance labeling and validators that reject fake successes (dead Google Cache interstitials, AMP redirect stubs, rate-limit bodies). Hermes adaptation: a bundled research skill + stdlib-only script instead of a Python sub-engine — zero core-tool footprint, per the footprint ladder. Clean-room implementation (their repo is Sustainable Use License; nothing copied), keeping the good ideas: provenance contract (snapshot vs live), body validation over status codes, domain rotation for archive.today, API-first pivot guidance, and explicit skip of proxy relays (MITM). E2E tested: recovered a real 486KB Wayback snapshot with timestamp; validators reject redirect stubs, interstitial titles, and sub-floor bodies.