Living documenthub · seven modules

KAIF Execution Plan

Delivery is organized around seven shippable modules. Each has its own repo, CRDs, charts and evidence, and each contributes to one or more of the Development · Deployment · Evaluation lifecycles. The reader view keeps the three-lifecycle narrative; this page is where the work gets planned.

Working principle. No module is "done" until an agent has flowed through it end-to-end on a real Kubernetes cluster, with evidence captured (manifests, traces, eval reports, KPIs, screenshots).

The seven modules

kaif-platform
DevDeployEval
The technology substrate every other module runs on.

Technology stack mapped to each plane of the detailed architecture. Head-to-head research and comparisons of options per use case. Ships Helm charts, CRDs, GitOps manifests, automations and scripts.

open module plan →
kaif-design
DevEval
Business use case → agentic design proposal, evaluated offline and online.

Owns the design harness — pattern catalogue, model matrix, tool inventory, memory options, orchestration templates, tradeoff scoring — and the online design evaluator that measures those decisions once they run.

open module plan →
kaif-deploy
Deploy
Get an agent safely serving traffic.

Owns operators, packaging, rollout, scaling, routing and the runtime wiring of observability. Enforces (does not author) eval, guardrail and identity policy.

open module plan →
kaif-eval
DevDeployEval
One evaluation spine, four surfaces — design, build, deploy, runtime.

Owns datasets, judges, rubrics, the Eval Gateway API and the storage of every eval result.

open module plan →
kaif-guard
DevDeployEval
All guardrails and policies. Publishes bundles kaif-deploy enforces.

Owns Kyverno/OPA admission policies, OPA request-time authorization, content safety sidecars and runtime detection.

open module plan →
kaif-value
Eval
Value reporting and KPIs. Business-legible dashboards from raw signals.

Turns raw traces, evals and cost signals into exec/product dashboards. Owns the KPI catalogue.

open module plan →
kaif-identity
DevDeploy
AuthN and AuthZ across users, agents, tools and tenants.

Owns workload identity, user identity, per-tool scopes, tenant isolation and secret distribution.

open module plan →

Operating model

Roadmap

PhaseItersFocus
P00kaif-platform foundations: cluster, GitOps, observability, supply chain, registries.
P11–3kaif-identity + kaif-guard baselines; kaif-design offline harness v1; kaif-eval build surface.
P24–6kaif-deploy operators + rollout; kaif-eval deploy-time gates; kaif-guard runtime controls.
P37–9kaif-eval runtime + kaif-design online harness; kaif-value dashboards v1.
P410+Reference agentic SDLC crew exercising every module end-to-end.

Cross-cutting workstreams