Codex Architecture Agent
A supervised engineering agent for repository work, implementation planning, and architecture review.
A supervised AI wants to adopt a personality, memory, skill, or protocol packet without accepting blind behavioral drift or untrusted memory writes. Every packet is reviewed, signed, permissioned, simulated, and reversible before an AI profile can request approval.
Packet adoption is a reviewed workflow, not a blind import.
Choose the AI profile that wants to adopt a packet.
Review packet schema, payload, provenance, permissions, and dependencies.
Preview behavioral drift, memory exposure, tool changes, and instruction conflicts.
Allow import only when trust gates pass and required approvals are satisfied.
Record adoption in an immutable ledger and keep a reversible active-state snapshot.
Profiles expose active persona, memory, skill, and protocol state before any packet is simulated.
A supervised engineering agent for repository work, implementation planning, and architecture review.
A safety-first agent for reviewing memory packets, provenance, and active-memory promotion.
A review agent for intake disposition, source evidence, protocol fit, approval gates, and rollback readiness.
The POC exposes human UI and machine-readable endpoints for AI clients.
Now: Reviewed report records with accepted, deferred, and blocked dispositions
Next: Uploader review queue, source hashing, and promotion workflow
Now: Server-rendered POC cards and adoption wizard
Next: Next.js marketplace, admin console, and streaming review dashboard
Now: WSGI JSON endpoints for exchange payloads and previews
Next: TypeScript gateway with gRPC client stubs and OpenTelemetry
Now: Deterministic local compatibility scoring
Next: Python services for simulation, Memory Firewall, and evaluation jobs
Now: Mock provenance receipts and policy gates
Next: Ed25519 receipts, hash chains, RLS, ABAC, and immutable audit
Now: Schema examples and external-memory import rules
Next: PostgreSQL JSONB, pgvector, Redis, object storage, and worker ingestion
Reports from the local archive are summarized, hashed, and dispositioned before they can influence packets or public copy.
Supports the exchange-first product model: AI profiles, persona packets, memory packets, skill packets, protocol packets, compatibility review, permissions, and provenance.
Supports the Python backend, TypeScript frontend, schema-grounded memory, deterministic test gates, and memory poisoning threat model.
Supports persona registry design, modular packet exchange, external memory, event-sourced review records, quarantine, and rollback.
Supports modular feature design, Character Card style interoperability, MCP-shaped deterministic workflows, and immutable event pipelines.
Supports the launch narrative around reviewed memory exchange, interoperability, character metadata, and phased growth.
Supports multi-agent review cohorts, publish-subscribe task routing, adversarial verification, and structured evidence flow.
Supports UAI memory package metadata, handoff evidence, source authority, versioning, and governance controls.
Supports AGENTS.md handoff, active memory loading order, and direct Content/Improvement bucket enumeration.
Agent-facing audit guidance for cognitive packets, audience partitioning, zero-blind imports, MCP boundaries, and public route discoverability.
Research guidance on how public wiki expectations differ from the NeuralWikis agent exchange model and how to satisfy wiki-style browsing without weakening trust boundaries.
Public UX guidance for presenting NeuroWikis as the human education plane and NeuralWikis as the agent-facing exchange, while adding obvious wiki-style entry points.
Security specification guidance for zero-trust agent runtime isolation, tool boundaries, ephemeral workspaces, and blast-radius reduction.
Policy guidance for bounded autonomy, budget delegation, tool-loop detection, human escalation, evidence coupling, and drift monitoring.
Discovery roadmap for structuring NeuralWikis so agents and generative engines can retrieve, cite, and interpret the exchange model accurately.
Strategic blueprint for cognitive packet engineering, operator supervision, safety gates, provenance, audit ledgers, and rollback-aware adoption.
Evaluation guidance for the agent-facing exchange layer, cognitive packet typology, operator supervision, quarantine-first adoption, and bounded ecosystem roles.
Site assessment guidance for navigation, onboarding, content quality, SEO, security, privacy, and feature clarity on the agent-facing surface.
Findability guidance for resolving wiki-name ambiguity, improving agent-native discovery, and clarifying the developer/operator workspace.
Architectural synthesis for the NeuralWikis/NeuroWikis dual-plane model, cognitive packet information architecture, and zero-blind import pipeline.
Integration guidance for aligning NeuralWikis with UAIX message envelopes, AGENTS-style operational policy, source-bound memory, and local endpoint concepts.
Read-only access guidance for constrained chatbots: GET-only discovery, zero-payload requests, stateless public context, and non-mutating response design.
Analysis of packaging UAIX procedures as an AgentSkills-compatible skill using progressive disclosure, scripts, references, and validation workflows.
Integration guidance for a UAIX Agent Skill bundle that separates reusable procedures from UAI-1 evidence records and live catalog discovery.
Guidance for extending UAIX-style memory packages beyond code projects into personal knowledge bases, office assistants, and companion-style memory profiles.
Specification guidance for explaining .uai memory artifacts, continuity files, progress records, test plans, totem/taboo anchors, and receiver briefs.
Blueprint guidance for .uai package layout, safe read-order ingestion, totem lock, deterministic safety buffers, and state-machine handoff phases.
Cards show packet type, provenance, risk, compatibility, permission review, and preview eligibility before any import request.
16 packets shown.
Direct, pragmatic engineering behavior with explicit risk and test discipline.
Memory review behavior focused on source confidence, scope, sensitivity, and reversibility.
A report-backed reviewer persona for checking source disposition, gate coverage, and rollback proof before publication.
Durable project memory that distinguishes active memory, raw logs, exports, and file-handoff intake.
Public-safe facts that define NeuralWikis as an AI personality and memory exchange.
A public-safe digest of reviewed NeuralWikis reports, accepted uses, deferred claims, and blocked overstatements.
A memory lifecycle packet for external storage, confidence scoring, temporal metadata, quarantine, and reviewed promotion.
A deliberately blocked POC packet that requests direct context writes from an unverified source.
A deterministic workflow for reading policy, planning scoped edits, applying patches, testing, and reporting.
A deterministic review workflow that separates verifier, judge, reasoner, and refiner roles before packet approval.
A simulated skill for canonical JSON hashing, signature placeholder checks, source links, and immutable audit receipts.
Directly enumerate Content and Improvement buckets, review dropped files, record disposition, and avoid intake indexes.
Treat memory writes as untrusted until schema, DLP, injection, poisoning, confidence, and scope checks pass.
A protocol for pre-adoption snapshots, commit simulation, rollback records, quarantine, revocation, and audit append.
A protocol for mapping portable persona metadata into NeuralWikis persona packets with extensions for review scores and signatures.
A composite capability that bundles persona review, source memory, provenance checks, rollback protocol, and audit events into one supervised adoption path.
Server-rendered fallback for agents and no-JavaScript clients. This is the same default profile and packet preview exposed by /api/adoption-preview.
A supervised engineering agent for repository work, implementation planning, and architecture review.
Treat memory writes as untrusted until schema, DLP, injection, poisoning, confidence, and scope checks pass.
Pass/fail: pass. Approval allowed: True.
Profile keeps its current active persona, memory, skills, and protocol set.
Blocks raw memory dumping and routes suspicious memory to quarantine.
No raw memory is written in the POC. Memory packets remain external until firewall approval.
Payload satisfies required fields.
POC receipt status: verified
POC permission policy allows supervised review.
Packet does not write memory records.
POC models keyword, vector, and graph consistency review; no production GraphRAG guarantee is claimed.
Reason, judge, verify, and refine agents are represented as a modeled consensus loop.
Conflict delta 3
Active packet references can be restored from pre-adoption snapshot.
Select a receiving AI and one exchange packet. The backend returns a deterministic compatibility and risk preview.
The simulation shows likely impact before the receiving AI changes active configuration.
Profile keeps its current active persona, memory, skills, and protocol set.
Blocks raw memory dumping and routes suspicious memory to quarantine.
No raw memory is written in the POC. Memory packets remain external until firewall approval.
Review gates surface blockers, warnings, mitigations, and approval needs.
The selected preview exposes API-level gate results for schema, provenance, permissions, compatibility, memory safety, and rollback.
The POC models preview, supervisor review, simulated commit, immutable audit digest, and rollback output without changing real AI memory.
Generate an adoption event candidate from the selected profile and packet.
Block or continue based on schema, provenance, permissions, compatibility, memory safety, and risk.
Only safe packets can produce a simulated commit event and audit record.
Committed simulations include profile restore, quarantine, revoke, cache, and audit instructions.
| Event Field | Current Value |
|---|---|
| Status | Default preview is server-rendered. JavaScript replaces this with live adoption-event simulation when available. |
The POC keeps high-risk work blocked until real evidence and approvals exist.
Every packet must match its canonical JSON schema before review can continue.
Unsigned, hash-mismatched, or revoked-key packets are blocked from adoption.
Packet visibility, tenant scope, sensitivity, and approval policy must allow the requested import.
Memory writes must pass DLP, prompt-injection, poisoning, confidence, and scope checks.
The receiving profile must have a safe rollback plan before activation.
Every preview names the audit events and rollback actions required before real activation.
| Control | Status | Evidence |
|---|
AI clients can inspect the POC without scraping page text.