Private core · public architecture

Yggdrasil

Private nine-realm local ecosystem with a deliberately non-operational public architecture model.

Overview

Problem

Agent ecosystems become unsafe to explain when documentation accidentally doubles as an operational control surface.

Design

Responsibilities are separated into bounded realms for agents, memory, interfaces, creative generation, tools, evidence and automation.

Outcome

A public mental model for a private system, useful for understanding boundaries without creating a remote control plane.

Verification

The website verifies the disclosure boundary rather than claiming public access to the private implementation.

Multi-agentLocal-firstPersistent memoryAutomationAI systemsOrchestrationMemory

Architecture

  1. bounded realms
  2. operator-facing interfaces
  3. governance
  4. memory and evidence
  5. creative generation
  6. tools
  7. automation
  8. model experimentation
Public architecture diagram for Yggdrasil

Components

component

Asgard

Governance, identity and authority boundaries.

component

Midgard

Operator-facing applications and inspectable interfaces.

component

Jotunheim

Knowledge and evidence boundaries.

component

Muspelheim

Creative-generation responsibility without public datasets or endpoints.

component

Niflheim

Long-lived private persistence and memory.

component

Svartalfheim

Low-level tools and implementation surfaces.

component

Vanaheim

Automation and auxiliary services.

component

Helheim

Controlled model experimentation.

component

Alfheim

Visual and interface expression.

Decisions

active

Separate responsibility by realm

Distinct authority and responsibility boundaries are easier to inspect than one unrestricted agent surface.

active

Publish architecture, not control authority

The public site can explain the system without becoming a route into private execution or memory.

Timeline

  1. Nine-realm public architecture modelmilestone · documented
  2. Private operational coremilestone · bounded
  3. Architecture is public; execution, memory, credentials and source remain private — public_boundaryevidence · 2026-08-11

Experiments

Releases

No project-specific public release record.

Evidence

public_boundary

Architecture is public; execution, memory, credentials and source remain private

Architecture is public; execution, memory, credentials and source remain private

source-contract · checked 2026-08-11 · fresh until 2027-08-11

Boundaries

The website exposes architecture only: no remote execution, memory access, credentials or private clone path.

Open bounded Lab →