システム設計
アーキテクチャが境界を守る仕組み
本番システムは、受け入れるものと同じくらい拒否するものによって定義されます。 分散した道具を検査可能な一つの記録へ替え、Name、出力、承認、案件履歴を本人の権限下に保ちます。
制御プレーン
The Name
NameがIDと所有の錨となり、ドメインとNameplateが全roomを結びます。
Seven connected rooms
Nameplate、Site、Mail、Posts、Assists、Press kit、Dealsの7roomが一つの記録を共有します。
Durable publishing pipeline
永続schedulerとadapterが承認済み内容を配信しreceiptを記録します。
リクエストのライフサイクル
creator-owned Name and workspace
→ draft or imported source material
→ budget and policy check
→ human approval where required
→ durable scheduled job with jittered retry
→ channel adapter result and cryptographic receipt障害モデル
無効予定、AI予算超過、同意欠落、古い版、provider障害、重複配信を明示状態として残します。
検証チェックリスト
- Domain-first ownership: クリエイターがドメイン登録者でNameを移管できます。
- Receipts for effects: すべての配信試行と外部効果が永続receiptを残します。
- Transactional AI budget: AI生成前にtransactional workspace budgetを予約します。
- Truthful capability state: 公開前、preview、local-only、blockedを捏造せず表示します。