| FazBrowse GitHub Viewer | Trending | | Home |
| Tools: [Original HTTPS Page] |
Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.
You must be logged in to block users.
Contact GitHub support about this user’s behavior. Learn more about reporting abuse.
Report abuseI'm Bartek Kus, a systems architect from Edmonton, Canada. I work on the trust problem in AI-native software delivery:
AI can write the code. The unsolved problem is trusting what it wrote.
My answer is architecting intent: the human authors the contract, agents do the work, and machinery (not optimism) refuses anything that drifts from the contract. Stop reviewing output; start constraining intent.
Most of this lives under the statecrafting org; the front door is statecraft.ing. Two flagships:
spec-spine: a typed, hash-verifiable authority ledger over a markdown spec corpus. Every spec declares the files, sections, and symbols it owns; a PR-time coupling gate refuses code that drifts from its owning spec. Deterministic to the byte across five platforms; Rust; Apache-2.0. Install from crates.io or npm. It governs itself: its own coupling gate runs against its own spec corpus in CI.
statecraft: the same ideas at platform scale; the governed agentic delivery control plane. Tenants, a factory that stamps applications from a versioned template contract, a fleet plane that operates them on Hetzner k3s, and a governance UI over it all; every substantive change is bound to the spec that authorised it, and a PR-time coupling gate keeps that binding honest. AGPL-3.0. It is itself the first production EnRaHiTu app, so the platform is governed by the same machinery it offers. Built by one person directing a fleet of governed agents, which is rather the point.
And the rest of the stack that turns those two into a working delivery system:
| Project | What it is |
|---|---|
| enrahitu | EnRaHiTu (Encore.ts + rauthy + hiqlite + Turso/libSQL): a self-contained, single-container application core with zero managed-infrastructure dependencies; the template chassis the Statecraft factory stamps. Apache-2.0. |
| statecraft-cli | One binary, two faces: Statecraft's governance verbs as a CLI for humans and an MCP server for agents. Apache-2.0. |
| tenant-emit | Emit-only CLI a stamped app pins to build a signed governance-certificate.json from a finished run directory. Apache-2.0. |
| tenant-tail | Verify-only counterpart: re-checks the factory's run-side paperwork with zero trust in the producer. Offline, identity-free, read-only. Apache-2.0. |
| action-gate · attest-ledger · trust-window · canonical-keysort-json | The extracted primitives: a deterministic decision gate, a tamper-evident signed ledger, a rolling-window trust scorer, and canonical JSON hashing. Apache-2.0. |
How I got here is one problem at three scales: a decade of digital identity (OIDC, SSI, DID) asking "can this person be trusted", platform engineering asking "can this system be trusted", and now governed agent delivery asking "can machine-generated change be trusted".
Rust • TypeScript • Encore.ts • React • Tauri • PostgreSQL • Kubernetes • Helm • Terraform • OpenTelemetry • Claude Code • MCP
➡️ https://bartekus.com ➡️ LinkedIn: /in/bartekus ➡️ Twitter: @bartekus ➡️ Email: bartekus@gmail.com
"The human authors the law; the agents comply with it; the spine makes non-compliance impossible to merge."
Emit-only CLI a stamped app pins to produce its signed governance-certificate.json from a finished run directory. Apache-2.0.
Rust
Verify-only counterpart to tenant-emit: re-checks the factory's run-side paperwork with zero trust in the producer. Offline, identity-free, read-only. Apache-2.0.
Rust
A typed, hash-verifiable ledger of who-owns-what, sitting underneath a codebase so that many agents (or people) can work in parallel without trampling each other.
Rust 12
| Back | FazBrowse Home | New Git URL |