terraphim / terraphim/terraphim-ai

Constitutional guardrails (CONSTITUTION.md) for agent supervisor

Offen
#596 0 Kommentare 0 Reaktionen 0 zugewiesene Personen Auf GitHub ansehen

Dieses Issue hat noch niemand übernommen.

architecture enhancement multi-agent
Vorherrschende Sprache
Rust
Sterne
62
Forks
5
Ø Merge
2 Std. 27 Min.
Gemergte PRs (30 T.)
1

Beschreibung

Summary

Create an immutable set of architectural principles (CONSTITUTION.md) that terraphim agents cannot violate, even when given explicit instructions to do so. Enforced by terraphim_agent_supervisor as a pre-execution validation step.

Motivation

Inspired by Ouroboros BIBLE.md pattern. The agent system crates are incomplete partly because there is no specification of what agents MUST NOT do. A constitution constrains the design space, making it easier to complete the agent layer because boundaries are clear.

Proposed Principles

  1. Privacy-first: No data leaves the device unless explicitly configured by the user
  2. Deterministic-first: Prefer Aho-Corasick automata over LLM when deterministic matching suffices
  3. Type-safe: No unwrap() in library crates; all errors propagated via Result
  4. Compile-time checked: Prefer compile-time guarantees over runtime reflection
  5. Local-first: Offline operation is the default; network is optional
  6. Auditable: Every agent decision must be traceable to an input and a rule
  7. Reversible: Agent actions should be reversible where possible; destructive actions require confirmation

Implementation Plan

  1. Create CONSTITUTION.md at repo root with the principles above (editable by maintainers, versioned in git)
  2. Embed as a compile-time resource via rust-embed (already used in terraphim_agent and desktop)
  3. Add ConstitutionValidator to terraphim_agent_supervisor:
    • Pre-execution hook: check proposed agent action against constitution rules
    • Rules encoded as structured checks (not LLM interpretation)
    • Violation = action rejected with reason, logged as event
  4. Cryptographically sign the constitution using existing zipsign infrastructure from terraphim_update
  5. Add integration tests: attempt constitutional violations, verify rejection

Affected Crates

  • terraphim_agent_supervisor (primary -- add validation)
  • terraphim_types (add ConstitutionRule type)
  • terraphim_agent (embed constitution resource)

Estimated Effort

~2 hours

Part of

Epic #595

Beitragsleitfaden

Beitragsleitfaden öffnen

Erste Schritte

  1. Lies das ganze Issue und danach den Beitragsleitfaden des Projekts.
  2. Schreib ins Issue, dass du es übernimmst — das erspart doppelte Arbeit.
  3. Forke das Repository und arbeite in einem Branch.
  4. Öffne einen Pull Request, der die Issue-Nummer nennt.

Rechercherichtung

Start with the affected crates listed in the issue: terraphim_agent_supervisor, terraphim_types, and terraphim_agent, then inspect the existing rust-embed and zipsign usage. Define the constitution resource, structured validation and signing boundaries, and integration tests for rejected violations. Done means the documented rules are embedded, validated before execution, logged on rejection, and covered by tests.

Vom Indexierungsmodell aus dem Issue-Text verfasst.

Bewertung

Tech-Stack
rust
Bereich
ai, backend
Issue-Typ
Feature
Schwierigkeit
5/5
Geschätzter Aufwand
Über eine Woche
Aktivitätsstatus
Veraltet
Klarheit
Größtenteils klar
Anfängerfreundlichkeit
25/100

Neue Issues direkt in Ihr Postfach

Eine kurze Übersicht über anfängerfreundliche GitHub-Issues.