You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Muster is the governed security-operations capability layer for Hermes.
Slack is the human chat interface.
Hermes is the agent harness: sessions, models, context compression, general memory, delegation, cron and Slack delivery.
Muster is the authenticated MCP server and control plane: tenant scope, capabilities, approvals, tool schemas, connector governance, evidence, audit and durable operational state.
Kelpie remains authoritative for formal incident cases.
Muster will not build a competing collaboration UI, Slack gateway, general-purpose model runtime or generic conversational memory system.
Skills guide behavior; the server enforces security.
No model-supplied organisationId, capability, approval or identity is authoritative.
No connector credentials enter Hermes prompts, skills, memory or tool output.
No direct model writes to authoritative business tables.
No arbitrary MCP server or tool registration from chat.
Consequential actions require server-side capability checks, stable idempotency and authoritative approval where policy requires it.
External content remains untrusted evidence.
PostgreSQL remains authoritative; Redis/BullMQ are execution infrastructure.
Mocked, local, deployed and live-verified results must be reported separately.
Retired direction
The previous conversation-first UI, LangGraph runtime, cross-surface conversation and custom Slack-app backlog has been closed as not planned. Closed branches and PRs remain available only for selective salvage of still-relevant governance code.
Product direction
Muster is the governed security-operations capability layer for Hermes.
Muster will not build a competing collaboration UI, Slack gateway, general-purpose model runtime or generic conversational memory system.
Ordered implementation
P0 — prove the product boundary
Exit gate:
P0 — governed operations
P1 — reusable Hermes product
P2 — administration only
Hard boundaries
organisationId, capability, approval or identity is authoritative.Retired direction
The previous conversation-first UI, LangGraph runtime, cross-surface conversation and custom Slack-app backlog has been closed as not planned. Closed branches and PRs remain available only for selective salvage of still-relevant governance code.