layered-soul/docs
Sam & Claude 21a630cd93 docs(hive): add HIVE-ONBOARDING design — colibri-vault as the join-the-hive primitive
Captures the strategy: promote the proven clawdie-vault-fetch flow into a
colibri-vault crate that provisions a jail's secrets, making 'spawn jail ->
vault-provision -> register' the single onboarding step.

- tenant = jail = bucket (1:1:1); Org Collections for multi-tenant isolation
- 'one key' ideal (customer provider key + operator org service-account)
- mother skill (genesis + policy-gated self-replication); colibri-vault is a limb
- moat = capability routing (one-key agent borrows the whole multi-OS swarm)
- security invariant: bootstraps on host, jails hold only resolved secrets
- lean MVP + explicit overengineering traps to avoid

Cross-linked from CAPABILITY-ROUTING. Building blocks LIVE, platform PLANNED.

Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>
2026-06-19 21:03:50 +02:00
..
CAPABILITY-ROUTING.md docs(hive): add HIVE-ONBOARDING design — colibri-vault as the join-the-hive primitive 2026-06-19 21:03:50 +02:00
CLAWDIE-HERMES-FREEBSD-INTEGRATION.md docs: retire Autolycus label -> hermes-osa; correct FreeBSD install facts 2026-06-17 17:14:43 +02:00
CONNECT-HERMES-SOUL.md docs: match layered-soul docs to its populated state 2026-06-14 02:12:41 +02:00
HIVE-ONBOARDING.md docs(hive): add HIVE-ONBOARDING design — colibri-vault as the join-the-hive primitive 2026-06-19 21:03:50 +02:00
HOST-MATRIX.md security(docs): mask Tailscale IPs + bot handles behind fleet.env 2026-06-19 18:19:32 +02:00
MCP-INTEGRATION.md security(docs): mask Tailscale IPs + bot handles behind fleet.env 2026-06-19 18:19:32 +02:00
MIGRATION-MANIFEST.md docs(migration): add Claude review-lane verification notes 2026-06-17 20:29:47 +02:00
TOOLCHAIN.md chore: install Go 1.24.4 on debby — toolchain baseline complete 2026-06-17 16:35:22 +02:00