⚠ Not built. SG/Sentinel is a published design from May 2026 — “this is how I would build it” — not a product. No plans to build it unless somebody funds it. Read the note →
sg-sentinel.sgit.ai / documents / mvp-architecture

SG/Sentinel MVP Implementation Architecture: The sg sentinel Surface, The Three Targets, And The Signal Spine

TypeArch brief (MVP implementation) Versionv0.27.59 Date23 May 2026 AuthorArchitect / Developer agents, directed by the project lead LicenceCC BY 4.0 Sourceraw markdown · view on GitHub

Summary

The shortest path to understanding the system, and the document that carries the governing correction: Layer 1 never acts and never writes — it only decides and signals; Layer 2 is the sole actor and sole I/O owner. A CloudFront Function has no network and no filesystem, so it physically cannot write and by design must not enforce; blocking becomes a logged action with an enforcement side-effect. The brief fixes Schema__Sentinel__Signal as the byte-identical parity spine across three execution targets (local-direct, local-docker, live AWS), scopes the MVP to two use cases on a tiny core of six deterministic rules, places sg sentinel as a top-level peer surface composing the existing sg aws primitives, and makes the three-target parity matrix the definition of done.

Key concepts

Key ideas

On this site

The backbone of the architecture page; the status language on the front page and roadmap follows its acceptance criteria.

Read the document

📄 Original document · v0.27.59 · 23 May 2026 · rendered from the raw markdown (the source of truth)