Tag

#adr

27 pages tagged #adr.


Decisions adr/ 27 pages

Why the hub may POST one fixed sentence to a URL the operator runs when something starts waiting on the human, what that refines in the push deferral, and why Web Push stays deferred.

adr/0026-contentless-notify-target #notifications #privacy #operations

Why a version can be held live and mutated in place while an agent writes it, and why the artifact's public URL keeps serving the last sealed version throughout.

adr/0025-live-artifact-versions #artifacts #versioning #mcp

Every agent has an identity and a trust level; trusted reads all, untrusted is confined to its spaces.

adr/0012-agent-identity-and-trust #security #auth #agents

Why an agent posting a question or an approval may say how long it can wait, why the hub then resolves that one item as itself, and why this is not retention.

adr/0027-deadlines-on-open-items #inbox #approvals #questions #agents

The human interface is a responsive, mobile-first PWA served from the same binary.

adr/0005-installable-pwa-human-surface #pwa #ui #human

Human and agent interaction is asynchronous mailboxes, with no real-time chat in v1.

adr/0007-async-mailbox-semantics #interaction #inbox

Protected artifacts are encrypted in the browser; the server stores ciphertext only.

adr/0009-browser-side-artifact-encryption #security #artifacts #e2ee

Why the hub carries what needs an agent's attention on the next tool result it makes, and offers standing subscriptions, instead of a push channel or a per-harness poll.

adr/0024-notifications-on-the-tool-result #mcp #notifications #agents

Lean by constructionDecision Record

A single binary and a single engine, with no microservices, CRDTs, or consensus.

adr/0008-lean-single-binary #architecture #lean

The agent surface is MCP; A2A is a later optional facade, not the base protocol.

adr/0011-mcp-primary-a2a-deferred #mcp #a2a #interop

Manual pruning in v1Decision Record

No automatic expiry ships; the human is the garbage collector, and retention is a per-layer concept.

adr/0004-manual-pruning-in-v1 #retention #lifecycle

AgentFS is vendored and its engine patched so the binary links exactly one engine.

adr/0010-one-pinned-engine #engine #agentfs #storage

The hub store, session brains, and artifacts all run on the Turso Database Rust engine.

adr/0002-single-turso-engine #storage #engine

The default deployment is a container behind a reverse proxy; an embedded tailnet endpoint is optional and experimental.

adr/0014-optional-embedded-tailnet #deployment #tailnet #networking

The hub is the single writer per session file and serialises writers in process.

adr/0013-per-session-serialization #concurrency #sessions #agentfs

Why the UI is held by Playwright Test, Vitest, Stylelint, TypeScript and mutation testing rather than by pattern-matching scripts over source text.

adr/0023-prove-the-interface-with-standard-tools #testing #interface #tooling

The human surface keeps an in-app notification and a freshness stream instead of a browser push service.

adr/0016-push-notifications-deferred #notifications #pwa #privacy

Full-text search over the same engine backs both the MCP tools and the PWA.

adr/0006-engine-native-search #search #fts

Why the engine returns search rows unordered and the hub scores them, and what would change it.

adr/0022-search-ranks-in-the-hub #search #engine

A session brain has one owner, another agent takes it over or branches from it without the human, and the hub chooses which of the two it is.

adr/0020-sessions-belong-to-their-agent #sessions #brain #ownership #handoff

stdio MCP is a proxy to the one running hub, a small CLI serves harness hooks, and both read the same env-style settings.

adr/0019-hub-client-proxy-and-cli #mcp #client #configuration #hooks

A calm, mailroom-like PWA with a fixed token set, a no-emoji rule, and an accessibility build gate.

adr/0015-human-interface-foundation #pwa #design #accessibility

An agent cannot leave unbounded open items on the human; the writer refuses past a configurable cap.

adr/0017-inbox-action-item-cap #inbox #agents #safety

There is no vendor cloud and no brain off the node; the node is the central solution.

adr/0001-local-hub-is-the-cloud #deployment #local-first

One AgentFS file per project behind the same wrapper, reached by the brain tools with a store argument and written with a content-hash compare-and-set.

adr/0018-project-knowledge-base #knowledge-base #agentfs #projects #search

A token names who is calling rather than which agent, every call authenticates, ordinary projects are open to any token, and a confidential project is reached by grant and is absent to everyone else.

adr/0021-the-token-is-the-identity #identity #tokens #authorization #confidential

The hub wraps the real AgentFS per session and is the single writer for each file.

adr/0003-wrap-agentfs-per-session #agentfs #sessions #storage


All tags