Runtime / Anatomy / Operational Ecology

Hermes System Architecture

这页只画当前已经在运行、或者明确标注为 planned 的部分。 它不是愿景图,也不是 enterprise platform 图。
This page maps what is actually running — or explicitly marked as planned. It is not a vision board, and it is not an enterprise platform diagram.

single-operatorhuman-governedcron-orchestratedmulti-channel I/Osurvivablecost-aware

System Map

从治理到运行节点的真实链路。

Branko · Human Governance Layer

现实锚点、最终审批、高风险决策、成本与 token 监督。

reality check final approval risk review cost governance
Gateway · Multi-Channel I/O

输入 / 输出 / session continuity 的生命线。

WeChat · inbound / outboundTelegram · inbound / outboundQQ · inbound / outboundEmail · inbound / outbound
Hermes Core · Orchestration / Continuity / Governance
Hermes: active

Memory (Tier 1)

  • MEMORY.md · canonical doctrine
  • USER.md · interaction profile
  • Never auto-deleted
  • Overrides Tier 2 / Tier 3

Memory (Tier 2)

  • ops.md · operational memory
  • Deploy history / details
  • Periodic purge of stale entries
  • Overrides Tier 3

Memory (Tier 3 · Holo)

  • fact_store · associative memory
  • fact_feedback · trust training
  • decay-first retention
  • promotion gate: planned

Execution

  • delegate_task · subagent parallel exec
  • leaf (exec) / orchestrator (dispatch)
  • Kanban dispatcher · multi-worker
  • bubblewrap sandbox + apparmor

Skills

  • bounded operational skill system
  • gatekeeper · dedup + validate
  • weekly dedup cron
  • loaded per-task by trigger

Knowledge

  • agent-knowledge-pack
  • session_search · cross-session
  • search_files · ripgrep
  • Retrieval-only, no authority
Cron Scheduler Layer · Temporal Orchestration

自主心跳、备份、aliveuntil 草稿推送、环境数据采集、职位回复监控、技能去重。

burberry-heartbeat silent heartbeat ping (no_agent)
auto-backup daily backup → telegram
aliveuntil-draft daily draft push
env-data-collect periodic env scrape
job-reply-monitor daily check
weekly-skill-dedup weekly dedup + format
Burberry · Remote Operational Node

半自治运行节点:Hermes Agent + Gateway + QQ Bot 代理链 + systemd / cron / tunnel 组合。

Hermes Agent Gateway QQ relay systemd SSH / Tailscale
Survivability + Cost Governance

Backup / Recovery

auto-backup cron + backup-burberry skill,作为 survivability 基石。

  • encrypted archive
  • delivery validation
  • restore / verify / rollback

Cost / Token Control

心跳偷跑、pricing sync、模型路由和 token 预算都属于运行约束。

  • token usage tracking
  • pricing reconciliation
  • budget alerts

Reality Alignment Matrix

避免把“计划中”写成“已集成”。

Knowledge
distributed toolset, not standalone subsystem
Holo-lite
fact_store + fact_feedback only; promotion gate not implemented
Gateway
separate I/O layer for WeChat / Telegram / QQ / Email
Cron
explicit temporal orchestration layer
Burberry
semi-autonomous remote node with Hermes Agent + Gateway + QQ relay chain
Backup
first-class survivability layer via auto-backup + backup-burberry
Cost / Token
operational constraint, now tracked explicitly

Design Boundary

这页对齐的是当前现实,不是 narrative inflation。

当前系统是 single-operator AI-native operational runtime ecology。 它的核心是治理、通信、cron 持久化、分层记忆、半自治节点与 survivability, 不是 enterprise distributed infra,也不是 autonomous consciousness system。

The current system is a single-operator AI-native operational runtime ecology. Its core is governance, communication, cron persistence, layered memory, semi-autonomous nodes, and survivability — not enterprise distributed infra, and not an autonomous consciousness system.