Skip to content
Closed
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
71 commits
Select commit Hold shift + click to select a range
3550f88
chore: sync main → Hardened (CodeQL #195 suppression)
POWERFULMOVES Mar 11, 2026
6726c14
Merge main → hardened after PR #865 (supabase unification + integrati…
POWERFULMOVES Mar 11, 2026
44d4482
fix(security): validate service URLs with URL constructor (CodeQL #19…
POWERFULMOVES Mar 11, 2026
c0155a8
fix(smoke): remap supabase-realtime port 4000→4010 + widen grep windo…
POWERFULMOVES Mar 11, 2026
cb2594d
docs(dashboard): post-PR #865 audit status + CodeRabbit follow-up (#869)
POWERFULMOVES Mar 11, 2026
0d8c8c1
fix(ports): complete realtime 4000→4010 migration (registry + smoke t…
POWERFULMOVES Mar 11, 2026
c81b243
fix(ui): align PostgREST port registry + widen Jellyfin smoke codes (…
POWERFULMOVES Mar 11, 2026
c6bc276
chore: sync main → Hardened (PRs #867-#871)
POWERFULMOVES Mar 11, 2026
ef83ca4
fix(security): harden TAC runner — shell injection, error-aware inver…
POWERFULMOVES Mar 11, 2026
41b1110
fix(creds): WGER sentinel instead of unusable random token (#874)
POWERFULMOVES Mar 11, 2026
f3ccb3f
docs(dashboard): refresh post-PRs #867-871 + branch sync (#872)
POWERFULMOVES Mar 11, 2026
909a961
chore: sync main → Hardened (PRs #872-#874)
POWERFULMOVES Mar 12, 2026
6ce215e
docs: add ref/docs/* branch pattern and crosslinks for 14 new documents
hunnibear Mar 12, 2026
26b42ac
fix(supabase): heal Realtime, Pooler, and Analytics stack
hunnibear Mar 12, 2026
9bbdae2
fix(supabase): add Logflare access tokens + fail-fast guard
hunnibear Mar 12, 2026
d4fcd13
fix(ui): migrate auth-helpers-nextjs → @supabase/ssr + fix ports & cache
hunnibear Mar 12, 2026
bc4e4db
docs(agents): add codex traversal and parity entrypoints
hunnibear Mar 12, 2026
ee857ca
docs(ui): surface service runbooks and align health endpoints
hunnibear Mar 12, 2026
a98dd53
fix(runtime): harden channel-monitor bring-up and publish service ports
hunnibear Mar 12, 2026
be03f1b
docs(chit): math pipeline walkthrough, CGP encoding reference, calibr…
POWERFULMOVES Mar 12, 2026
061b6e9
docs(graphiti): protocol reference, agent registry, integration guide…
POWERFULMOVES Mar 12, 2026
f7e1911
docs(evoswarm): add operations guide, AgentGym-RL guide, and paramete…
POWERFULMOVES Mar 12, 2026
fa6e457
docs(tokenism): economic model, developer guide, Cataclysm crosslinks…
POWERFULMOVES Mar 12, 2026
bf6b385
Merge remote-tracking branch 'origin/PMOVES.AI-Edition-Hardened'
hunnibear Mar 12, 2026
f08dfec
chore: sync main → Hardened (PRs #875-#878 doc merge)
POWERFULMOVES Mar 12, 2026
8c5af02
docs(nats): add calibration and credential.rotated subjects to catalog
hunnibear Mar 12, 2026
b9fdcdd
chore: sync main → Hardened (NATS catalog update)
POWERFULMOVES Mar 12, 2026
775aaaf
feat(pmoves-yt): consume authoritative submodule runtime (#883)
POWERFULMOVES Mar 12, 2026
6fd5d74
feat(n8n): default to postgres control plane and track workflows (#882)
POWERFULMOVES Mar 12, 2026
ffc1513
chore: sync Hardened → main (PRs #882, #883 + sync commits)
POWERFULMOVES Mar 12, 2026
330f341
fix: address unresolved CodeRabbit comments from PRs #882/#883
hunnibear Mar 12, 2026
9859330
fix(ci): skip test_rate_limit when PMOVES.YT submodule absent
hunnibear Mar 12, 2026
010e8c8
feat(creator): add notebook-backed youtube control review (#884)
POWERFULMOVES Mar 12, 2026
a3cf777
fix(ci): prevent runner starvation with timeouts and DinD detection (…
POWERFULMOVES Mar 12, 2026
ee83831
chore: sync main → hardened after PR #885
hunnibear Mar 12, 2026
3b9a756
feat(channel-monitor): youtube control actions with human-in-the-loop…
POWERFULMOVES Mar 12, 2026
723b124
chore: sync hardened → main (PR #886)
POWERFULMOVES Mar 12, 2026
ade4248
docs(audit): refresh dashboard for PR #886 youtube control merge
hunnibear Mar 12, 2026
b69210c
fix(smoke): accept Kong URL + resolve container names in Supabase tests
hunnibear Mar 13, 2026
da117fd
feat(github-app): add setup and verification tooling
hunnibear Mar 13, 2026
781b8af
docs(github-app): add integration documentation
hunnibear Mar 13, 2026
518d7c5
feat(github-app): wire credentials to botz-gateway service
hunnibear Mar 13, 2026
dddfac1
chore(github-app): add GH_APP patterns to credential fetcher
hunnibear Mar 13, 2026
a360446
feat(github-app): add credential population helper and deployment guide
hunnibear Mar 13, 2026
31fbde9
feat(github-app): integrate credentials into CHIT secrets management …
hunnibear Mar 13, 2026
81e3e05
fix(workflow): add GitHub App credentials to sync-secrets-local.yml
hunnibear Mar 13, 2026
56d54d4
fix(workflow): add Windows compatibility to sync-secrets-local.yml
hunnibear Mar 13, 2026
f57c27e
fix(workflow): remove setup-python to avoid PowerShell execution policy
hunnibear Mar 13, 2026
8f8bb0d
fix(workflow): correct manifest path for secrets filtering
hunnibear Mar 13, 2026
7922304
fix(workflow): use bash shell with python3 heredoc for cross-platform…
hunnibear Mar 13, 2026
2570120
fix(github-app): security hardening - critical fixes (#887)
POWERFULMOVES Mar 13, 2026
580c2fe
feat(github-app): add comprehensive error handling (#889)
POWERFULMOVES Mar 13, 2026
90a0ac2
test(github-app): comprehensive test coverage (#888)
POWERFULMOVES Mar 13, 2026
557ffc0
docs(github-app): fix documentation inaccuracies (#890)
POWERFULMOVES Mar 13, 2026
29b4859
feat(neo4j): add PMOVES-Neo4j as root-level submodule following supab…
hunnibear Mar 13, 2026
ce0e5a8
feat(neo4j): add credential template, monitoring dashboard, and backu…
hunnibear Mar 13, 2026
91cd37a
feat(neo4j): add Make targets for profile, CONCH pipeline, and backup…
hunnibear Mar 13, 2026
c8f246a
docs(context): add Neo4j service to main context and service catalog
hunnibear Mar 13, 2026
d80bf97
feat(github-automation): add comprehensive GitHub automation suite
hunnibear Mar 13, 2026
7c86e56
feat(mcp): add Hostinger and Cloudflare MCP configuration entries (#892)
POWERFULMOVES Mar 13, 2026
2131d72
feat(chit): add HEADSCALE_URL and HEADSCALE_API_KEY to secrets manife…
POWERFULMOVES Mar 13, 2026
241428e
feat(agents): add DEPLOYER agent form for infrastructure orchestratio…
POWERFULMOVES Mar 13, 2026
a45cfd4
feat(makefile): add Hostinger VPS provisioning targets (#895)
POWERFULMOVES Mar 13, 2026
dd3da9e
feat(cast): add Google Cast TTS integration and LAN device discovery …
POWERFULMOVES Mar 13, 2026
c54e024
docs(network-fabric): add Z890 GPU node Docker Compose override (#897)
POWERFULMOVES Mar 13, 2026
658ed7b
Merge branch 'main' of https://github.com/POWERFULMOVES/PMOVES.AI int…
hunnibear Mar 13, 2026
bc6c3bf
docs(github-automation): add comprehensive documentation for automati…
hunnibear Mar 13, 2026
f489171
feat(github-automation): implement branch strategy integration
hunnibear Mar 13, 2026
d04283a
fix(ci): resolve Makefile syntax errors in promote.mk
hunnibear Mar 13, 2026
07ec9f5
fix(security): bind GitHub automation services to localhost
hunnibear Mar 13, 2026
b37ec86
docs(reviews): add comprehensive PR #901 fix summary
hunnibear Mar 13, 2026
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
The table of contents is too big for display.
Diff view
Diff view
  •  
  •  
  •  
19 changes: 16 additions & 3 deletions .claude/CLAUDE.md
Original file line number Diff line number Diff line change
Expand Up @@ -213,16 +213,29 @@ PMOVES.AI is a **production-ready multi-agent orchestration platform** featuring
- Services: DB (Postgres 17.6.1), GoTrue, PostgREST v14.3, Kong 3.7.1, Realtime v2.72.0, Storage v1.37.1, Studio, imgproxy, pg-meta, Edge Functions, Analytics (Logflare), Vector, Supavisor
- Canonical consumer URL: `http://supabase-kong:8000/rest/v1` (via Kong gateway)
- Standard variable names: `JWT_SECRET`, `ANON_KEY`, `SERVICE_ROLE_KEY` (SUPABASE_* aliases for compat)
n**Neo4j** [Port 7474 HTTP, 7687 Bolt, 2004 Metrics]
- Graph database for knowledge management, CHIT consciousness taxonomy, agent memory
- Profile-based integration: make -C pmoves neo4j-local-up
- API: POST http://localhost:7474/db/neo4j/tx/commit (Cypher transactions)
- Health: GET http://localhost:7474/db/neo4j/health
- **Use for:** Graph queries, relationship traversal, CHIT consciousness taxonomy, agent memory
- **Submodule:** PMOVES-Neo4j (root-level, follows PMOVES-supabase pattern)
- **See:** `PMOVES-Neo4j/CLAUDE.md` for submodule context
- Schema: `pmoves_core`, Archon prompts
- **Use for:** Metadata storage, content records, agent state, auth, connection pooling

**Qdrant** [Port 6333]
- Vector embeddings for semantic search
- Collection: `pmoves_chunks`

**Neo4j** [Port 7474 HTTP, 7687 Bolt]
- Knowledge graph storage
- Entity relationships, graph traversal
**Neo4j** [Port 7474 HTTP, 7687 Bolt, 2004 Metrics]
- Graph database for knowledge management, CHIT consciousness taxonomy, agent memory
- Profile-based integration: make -C pmoves neo4j-local-up
- API: POST http://localhost:7474/db/neo4j/tx/commit (Cypher transactions)
- Health: GET http://localhost:7474/db/neo4j/health
- **Use for:** Graph queries, relationship traversal, CHIT consciousness taxonomy, agent memory
- **Submodule:** PMOVES-Neo4j (root-level, follows PMOVES-supabase pattern)
- **See:** `PMOVES-Neo4j/CLAUDE.md` for submodule context

**Meilisearch** [Port 7700]
- Full-text keyword search
Expand Down
10 changes: 9 additions & 1 deletion .claude/context/credentials-workflow.md
Original file line number Diff line number Diff line change
Expand Up @@ -55,10 +55,18 @@ and available for runtime token minting by services (BoTZ MCP gateway, Archon).
| Purpose | Ephemeral tokens for GHCR, cross-repo ops, MCP GitHub tools |
| Action | `actions/create-github-app-token@v2` |
| Workflows | `build-images.yml`, `integrations-ghcr.yml`, `self-hosted-builds.yml` |
| Local setup | `docs/GITHUB_APP_LOCAL_SETUP.md` |
| Quick start | `make github-app-setup` (automated) |
| Docs | `pmoves/docs/GITHUB_APP_QUICK_START.md`, `pmoves/docs/AGENTS/GITHUB_APP_CREDENTIALS.md` |
| Strategy doc | `pmoves/docs/infrastructure/github-app-strategy.md` |
| Secrets | `GH_APP_ID`, `GH_APP_SEC` (PEM), `GH_APP_CLIENT_ID`, `GH_APP_INSTALLATION_ID` |

**Automated Setup:**
```bash
cd pmoves
make github-app-setup # Uncomment credentials + run secrets-funnel
make github-app-verify # Verify all components
```

**Token hierarchy:**
- **CI:** `actions/create-github-app-token@v2` → ephemeral GitHub App installation token for GHCR
- **Runtime:** Services mint installation tokens from `GH_APP_ID` + `GH_APP_SEC`
Expand Down
20 changes: 9 additions & 11 deletions .claude/context/evoswarm.md
Original file line number Diff line number Diff line change
Expand Up @@ -73,11 +73,8 @@ NVML_ENABLED=true # Enable NVIDIA power monitorin
**`GET /healthz`**
- Health check for Evo Controller

**`GET /swarm/status`**
- Current swarm status, population info, best fitness

**`POST /swarm/force-evolution`**
- Manually trigger evolution cycle (for testing)
**`GET /config`**
- Current runtime configuration (`poll_seconds`, `sample_limit`, namespace, REST wiring)

## Genome Definition

Expand Down Expand Up @@ -332,7 +329,8 @@ CREATE TABLE geometry_swarm_runs (
### Check Controller Status

```bash
curl http://localhost:8113/swarm/status
curl http://localhost:8113/healthz
curl http://localhost:8113/config
```

Response:
Expand Down Expand Up @@ -379,11 +377,11 @@ uvicorn app:app --reload --port 8113
### Testing Evolution

```bash
# Force evolution cycle
curl -X POST http://localhost:8113/swarm/force-evolution
# Check controller liveness
curl http://localhost:8113/healthz

# Check results
curl http://localhost:8113/swarm/status
# Inspect active controller configuration
curl http://localhost:8113/config
```

### Integration Testing
Expand Down Expand Up @@ -428,7 +426,7 @@ Planned EvoSwarm features:
**For Claude Code CLI users:**
- EvoSwarm runs automatically in the background
- Parameter packs are consumed transparently by geometry services
- Monitor evolution via `/swarm/status` endpoint
- Monitor controller health via `/healthz` and runtime settings via `/config`
- Use test namespace for development: `namespace="test"`
- Check CGP metadata to see which pack was used
- Telemetry feeds back to controller automatically
15 changes: 15 additions & 0 deletions .claude/context/geometry-nats-subjects.md
Original file line number Diff line number Diff line change
Expand Up @@ -153,6 +153,13 @@ geometry.<type>.<event>.v1 # Core geometry events
```
- **Subscribers:** publisher-discord, optimization dashboards

### Credential Rotated

**`tokenism.credential.rotated.v1`**
- **Direction:** Published by ToKenism credential manager → Consumed by analytics, security
- **Purpose:** Notification when a ToKenism credential (API key, signing key) is rotated
- **Subscribers:** security dashboards, audit logs

### Geometry Event (Voice)

**`tokenism.geometry.event.v1`**
Expand Down Expand Up @@ -206,6 +213,14 @@ geometry.<type>.<event>.v1 # Core geometry events
- **Note:** Used for real-time geometry updates to connected clients
- **Subscribers:** Hi-RAG v2 WebSocket consumers

### CGP Calibration

**`geometry.cgp.calibration.v1`**
- **Direction:** Published by evo-controller → Consumed by Hi-RAG v2, analytics
- **Purpose:** CGP calibration events from EvoSwarm RL parameter optimization
- **Payload:** Calibration results with updated CGP parameters
- **Subscribers:** Hi-RAG v2, parameter dashboards

### Geometry Event Raw

**`geometry.event.v1`**
Expand Down
Loading
Loading