Constitutional guardrails (CONSTITUTION.md) for agent supervisor
Nessuno ha ancora preso questa issue.
Valutazione
- Difficoltà
- 5/5
- Tempo stimato
- Più di una settimana
- Idoneità per principianti
- 25/100
Direzione di ricerca
Start with the affected crates listed in the issue: terraphim_agent_supervisor, terraphim_types, and terraphim_agent, then inspect the existing rust-embed and zipsign usage. Define the constitution resource, structured validation and signing boundaries, and integration tests for rejected violations. Done means the documented rules are embedded, validated before execution, logged on rejection, and covered by tests.
Scritto dal modello di indicizzazione a partire dal testo della issue.
Descrizione
Summary
Create an immutable set of architectural principles (CONSTITUTION.md) that terraphim agents cannot violate, even when given explicit instructions to do so. Enforced by terraphim_agent_supervisor as a pre-execution validation step.
Motivation
Inspired by Ouroboros BIBLE.md pattern. The agent system crates are incomplete partly because there is no specification of what agents MUST NOT do. A constitution constrains the design space, making it easier to complete the agent layer because boundaries are clear.
Proposed Principles
- Privacy-first: No data leaves the device unless explicitly configured by the user
- Deterministic-first: Prefer Aho-Corasick automata over LLM when deterministic matching suffices
- Type-safe: No
unwrap()in library crates; all errors propagated viaResult - Compile-time checked: Prefer compile-time guarantees over runtime reflection
- Local-first: Offline operation is the default; network is optional
- Auditable: Every agent decision must be traceable to an input and a rule
- Reversible: Agent actions should be reversible where possible; destructive actions require confirmation
Implementation Plan
- Create
CONSTITUTION.mdat repo root with the principles above (editable by maintainers, versioned in git) - Embed as a compile-time resource via
rust-embed(already used interraphim_agentanddesktop) - Add
ConstitutionValidatortoterraphim_agent_supervisor:- Pre-execution hook: check proposed agent action against constitution rules
- Rules encoded as structured checks (not LLM interpretation)
- Violation = action rejected with reason, logged as event
- Cryptographically sign the constitution using existing
zipsigninfrastructure fromterraphim_update - Add integration tests: attempt constitutional violations, verify rejection
Affected Crates
terraphim_agent_supervisor(primary -- add validation)terraphim_types(addConstitutionRuletype)terraphim_agent(embed constitution resource)
Estimated Effort
~2 hours
Part of
Epic #595
- Lingua principale
- Rust
- Stelle
- 62
- Fork
- 5
- Merge medio
- 2h 27m
- PR unite (30g)
- 1
Guida per i contributori
Apri la guida per i contributori
Come iniziare
- Leggi tutta la issue e poi la guida ai contributi del progetto.
- Commenta sulla issue per dire che te ne occupi tu — evita che due persone facciano lo stesso lavoro.
- Fai un fork del repository e lavora su un branch.
- Apri una pull request che faccia riferimento al numero della issue.
Altre issue di terraphim/terraphim-ai
-
Difficoltà 5/5 Più di una settimana Idoneità per principianti 25/100
terraphim/terraphim-ai#885 ·
-
Difficoltà 4/5 3-5 giorni Idoneità per principianti 55/100
terraphim/terraphim-ai#871 ·
-
enhancement
Difficoltà 5/5 Più di una settimana Idoneità per principianti 25/100
terraphim/terraphim-ai#810 · 2 commenti ·
-
enhancement
Difficoltà 5/5 Più di una settimana Idoneità per principianti 35/100
terraphim/terraphim-ai#729 ·
-
enhancement
Difficoltà 5/5 Più di una settimana Idoneità per principianti 35/100
terraphim/terraphim-ai#728 ·
Tutte le issue di terraphim/terraphim-ai
Issue simili
-
Browser (wasm) relay client cannot connect to relays whose URL has a trailing-dot FQDN hostname Aperta
Difficoltà 2/5 1-3 ore Idoneità per principianti 75/100
n0-computer/iroh#4550 ·
-
impl detach for native Aperta
Difficoltà 2/5 1-3 ore Idoneità per principianti 65/100
paritytech/zombienet-sdk#591 ·
-
Difficoltà 2/5 1-3 ore Idoneità per principianti 75/100
farion1231/cc-switch#7638 · 1 commento ·
-
onnx-ir re-exports ModelProto and GraphProto but not NodeProto, AttributeProto and AttributeType Aperta
Difficoltà 2/5 1-3 ore Idoneità per principianti 75/100
-
Difficoltà 2/5 1-3 ore Idoneità per principianti 75/100