layered-soul/docs
Sam & Claude 4d8023581f docs(supply-chain): first-party skill repo + mother as paid tier
External skill marketplaces (clawhub.ai, skills.sh, lobehub, browse.sh,
claude-marketplace) are unvetted instruction streams ingested into an agent's
context — a prompt-injection / supply-chain vector, the same class of risk as
`pkg install` from a random mirror, one layer up. Combined with the poudriere
plan, the conclusion is a first-party repository for BOTH layers.

- HIVE-ONBOARDING §10 (new): the trusted supply chain. pkg.clawdie.si (packages)
  gets a sibling first-party skill repo (proposed skills.clawdie.si). External
  sources become staging/review input, never a direct tenant runtime dep:
  curate → pin → sign → publish. Clarifies clawhub.ai is third-party, unrelated
  to pkg.clawdie.si (different layer + ownership).
- HIVE-ONBOARDING §5: mother expanded as the PAID product surface — paid tenants
  are provisioned first-party-only; that hardening is the thing worth paying for.
  §6 moat + §7 invariant + Status open-work updated to match.
- HOST-MATRIX §2: new "Registry & supply-chain provenance" table (first-party vs
  third-party per layer); mother-build row notes it serves pkg.clawdie.si.

Validation: prettier@3 --check; python3 scripts/layered_soul.py validate . — pass.

Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>
2026-06-20 17:22:58 +02:00
..
CAPABILITY-ROUTING.md matrix: move orchestrator to hermes-osa (always-on VPS); debby is intermittent 2026-06-19 22:50:16 +02:00
CLAWDIE-HERMES-FREEBSD-INTEGRATION.md matrix: move orchestrator to hermes-osa (always-on VPS); debby is intermittent 2026-06-19 22:50:16 +02:00
CONNECT-HERMES-SOUL.md docs: match layered-soul docs to its populated state 2026-06-14 02:12:41 +02:00
HIVE-ONBOARDING.md docs(supply-chain): first-party skill repo + mother as paid tier 2026-06-20 17:22:58 +02:00
HOST-MATRIX.md docs(supply-chain): first-party skill repo + mother as paid tier 2026-06-20 17:22:58 +02:00
MCP-INTEGRATION.md security(docs): mask Tailscale IPs + bot handles behind fleet.env 2026-06-19 18:19:32 +02:00
MIGRATION-MANIFEST.md docs(migration): add Claude review-lane verification notes 2026-06-17 20:29:47 +02:00
TOOLCHAIN.md chore: install Go 1.24.4 on debby — toolchain baseline complete 2026-06-17 16:35:22 +02:00