kings-guard/README.md
tegwick 824fb1b966 Complete KG-WP-0004-T05 and finish the architecture vocabulary sweep
Layer note is v0.7 Staff: propose containment, memory is not a state plane.
§6 audit lists every decision-shaped object; none is a Staff allow/deny.
Document version 0.2.0. KG-IN-0002 residual is closed.

Assistant: grok
Assistant-Session: 01a05ef1-9e5a-70f2-b0ff-0b05d6b38ae9
2026-09-02 10:06:53 +02:00

54 lines
1.8 KiB
Markdown

# kings-guard
Adaptive security contracts and posture-evaluation scaffold for NetKingdom's
immune-architecture work.
**Layer: Staff** (NetKingdom Security Layer Model v0.7). kings-guard publishes
posture and requests bounded response through engine APIs; it never touches
Tooling directly and never renders an authorization decision. It proposes
containment and does not perform it.
## Current slice
This repository now contains four aligned pieces:
- `INTENT.md` / `SCOPE.md` for the repo's stable boundary
- `specs/NetKingdomImmuneArchitecture.md` for the reference architecture
- `specs/ImmuneContracts.md` for the first canonical contract layer
- `src/kings_guard/` plus `tests/` for a minimal posture loop scaffold
The current implementation is intentionally narrow. It does **not** enforce
anything. It provides:
- typed contracts for security genome, phenotype, observation, posture,
signal, effector request, and immune memory entry;
- evidence-class and stream-completeness fields, so silence is a finding and
record richness is not mistaken for a complete stream;
- a posture evaluator that judges one observation and, separately, the stream
it came from;
- a `qonto-assistant` pilot that still has a fixture regression case and can
also consume real events from that service's own AuditLogger.
## Repo layout
- `specs/NetKingdomImmuneArchitecture.md`
- `specs/ImmuneContracts.md`
- `docs/AdjacentSystemBoundary.md`
- `docs/pilots/QontoAssistantPosturePilot.md`
- `src/kings_guard/`
- `tests/`
- `workplans/`
## Dev commands
```bash
# preferred, if make + pip are available
make install-dev
make test
make lint
make run-demo
# direct shell fallback used in minimal environments
python3 -m pytest -q
PYTHONPATH=src python3 -m kings_guard.main --pilot qonto-assistant
```