Architecture · Current and target

Bounded services. Inspectable decisions.

Bast separates public architectural truth from architectural direction. The current system packages specialized capabilities into independently built runtime services. Configuration-defined agents operate inside those service boundaries; one microservice per agent remains a direction, not a current system claim.

Current operating model

What the implementation supports today.

The current development delivery path builds four named backend images. That count describes deployable images in the inspected pipeline—not every API package, agent, library, or future service.

Validated build path

Platform API

Shared platform and product-facing capabilities packaged behind an independently built service boundary.

Validated build path

Organization services

Organization-scoped services packaged for the current deployment path.

Validated build path

CAT runtime

Configuration-defined specialized agents and orchestration execute inside this runtime boundary.

Validated build path

BastCare summarizer

BastCare processing is built as a bounded backend image supporting the product workflow.

Control path

Five layers connect intent to evidence.

  1. DefineSpecification, policy, ontology, and approved knowledge.
  2. PackageBounded code and agent configuration become build artifacts.
  3. DeployInfrastructure and runtime configuration establish the operating boundary.
  4. ObserveHealth, requests, tests, and content-free operational evidence show behavior.
  5. ExplainClaims point back to evidence, maturity, ownership, and review dates.

Reliability & recovery

Self-healing is a testable sequence.

We reserve the term for a complete loop: detect, remediate within bounds, verify recovery, and roll back or fail safely. The documentation shows which parts are current and which remain target state.

Validated detection

Health and orchestrator recovery

Health checks provide infrastructure-level detection signals. Environment-specific restart or replacement behavior still requires deployment evidence.

Roadmap

Autonomous functional recovery

Application-level detection, bounded remediation, post-recovery verification, and safe rollback must be proven end to end before being described as live.

Configured path

Current Duplo path

Version-controlled deployment configuration continues to reflect DuploCloud where it remains in use; this does not assert every environment is currently healthy.

Target state

Post-Duplo infrastructure

Directly managed cloud infrastructure remains separately labeled until migration and operational verification are complete.

Next

See how the system moves from change to evidence.