Tachyon Tongs is a digital forensics and security mitigation suite designed for high-integrity environment auditing and response within the Antigravity station.
- Function: Operates as the laboratory for identifying and mitigating security threats within agentic and infrastructure layers.
- Support: Informs the security guidelines implemented in the schwarzschild-assembly.
- Evolution: This project serves as the predecessor to the airlock agentic firewall; it will eventually be integrated or replaced as security protocols mature.
- Research: Houses the initial experiments for the Darwin-Godel-Machine and other autonomous security research strains.
Every architectural decision is mapped directly to a specific vector in the THREAT_MODEL.md.
- π§ Semantic Intent Gating: All tool requests are routed through a Policy Enforcement Point and evaluated by the Singularity Meta-PDP.
- π‘οΈ Live, Self-Updating Threat Model: The substrate's THREAT_MODEL.md is not a static document. It is dynamically augmented by the Pathogen and Sentinel, with each new adversarial discovery mapped to the OWASP-2026-ASI taxonomy.
- π§ Tiered Workload Isolation: High-risk actions run in dynamically generated macOS
sandbox-exec(Seatbelt) profiles. - π Forensic Integrity Gating: Every substrate mutation is cryptographically signed using Ed25519 + ML-DSA-65 hybrid sidecars.
Tachyon Tongs is not just a reactive proxy; it is a self-evolving security organism.
- π¦ Pathogen (Metamorphic Adversarial Reasoning): Every 24 hours, the Pathogen agent executes a deep adversarial sweep. Moving beyond static templates, it now utilizes a Reflector Node to "think" about substrate defenses. It ingests ADRs and blueprints to identify blind spots, synthesizing Goal-Aliased attacks that masquerade as legitimate telemetry to bypass intent-based filters.
- π Sentinel (Autonomous Intelligence Research): The Sentinel performs Karpathy-style "Autoresearch"βnot just searching for CVEs, but autonomously browsing, synthesizing, and mapping novel vulnerabilities into high-signal "Adversarial Guidance" for the Pathogen.
- 𧬠Metamorphic Co-Evolution: This continuous loop between the Sentinel (Discovery) and the Pathogen (Reasoning & Verification) creates a biological-grade immune response that self-hardens the substrate against human-level adversarial logic.
Tachyon Tongs practices forensic security in its own development process. Every mutation is cryptographically signed and hardware-anchored.
- π Hardware-Backed Signing: Root keys live in the Apple Secure Enclave (Touch ID-gated, non-extractable).
- βοΈ Hybrid Post-Quantum Cryptography: Signatures use Ed25519 + ML-DSA-65 (NIST FIPS 204, Level 3).
- βοΈ Forensic ADR Chaining: Every Architecture Decision Record references the hash of its predecessor, anchored to the Merkle root in
MANIFEST.json.
π docs/SDLC.md β The full Secure SDLC reference.
Tachyon Tongs uses a modular, role-based plugin system (ADR-0033). Agents are categorized into three tiers for optimal isolation and flexibility:
- π» Code-Only Agents: Pure Python implementations (e.g.,
engineer,pathogen,guardian). - π Skill-Only Agents: Declarative agents defined by their
SKILL.mdmanifests (e.g., lightweight reconnaissance). - 𧬠Hybrid Agents: Combine complex code logic with declarative skills (e.g.,
sentinel).
The substrate ships with a pre-configured sets of "Immune Cells":
- Sentinel: The autonomous sensory heart.
- Engineer: The surgical auto-patcher.
- Guardian: The high-assurance integrity enforcer.
- Herald: The secure C2 and notification gateway.
- ...and more (see AGENTS.md)
Import 5,700+ skills from the ClawHub ecosystem.
- Safe Import: Automatic translation from Claw formats to Tachyon plugins.
- Quarantine Mode: Imported agents are restricted by the Substrate Firewall until manually graduated.
- Airlock Vetting: Every import undergoes a 5-stage safety check (Translate -> Scan -> Sandbox -> Airlock -> Quarantine).
The Tachyon Tongs filesystem is designed for high-assurance modularity:
βββ admin/ # Administrative Layer (ADMIN.md, ALERT.md, RUN_LOG.md)
βββ agents/ # The Immune Cell Collective (Pathogen, Sentinel, etc.)
βββ daemons/ # macOS LaunchAgent & System Daemon configurations
βββ docs/ # Architecture, ADRs, and API documentation
βββ exploits/ # Master CATALOG.md and raw research payloads.
βββ logs/ # EVOLUTION.md (Forensic architect logs).
βββ tasks/ # Coordination Layer (SYNC_LOG.md, TASKS_*.md)
βββ memory/ # tachyon_state.db (Operational DB) and archive/ (Pruned logs).
βββ policies/ # OPA-Rego policies and Enforcer configurations.
βββ libs/ # Architecture-specific binaries (e.g., liboqs.dylib for PQC).
βββ tests/ # Comprehensive regression suites (Functional & Adversarial).
Tachyon Tongs implements a high-assurance, defense-in-depth agentic architecture modeled after the autonomic immune system.
- π° Defense in Depth: High-value administrative components (like the Firewall Administrator) are air-gapped from the network.
- π‘ The Herald Proxy: All external communication (Signal) is proxied through the Herald agent.
- π₯ Immune Response: Specialized agents (Sentinel, Sentry, Healer, Engineer) collaborate to detect and remediate threats.
π AGENTIC_ARCHITECTURE.md β Deep dive into the 6-tier taxonomy.
- π The Sentinel: Discovers and signs novel AI exploits into the exploits/CATALOG.md.
- π§ͺ The Sentry: Unified active probing and passive semantic honeypotting for early intrusion detection.
- π‘οΈ The Immunologist: Defensive semantic sentinel monitoring the EventBus to neutralize prompt injection attacks.
- 𧬠The Forge (Synthesizer/Mutator): Adversarial architect generating synthetic zero-day scenarios and stress-testing substrate logic via the Pathogen engine.
- π¦ The Pathogen: Red-team mutation engine for autonomously evolving exploit variants to find bypasses.
- π οΈ The Engineer: Self-synthesizes infrastructure patches and policy mutations.
- βοΈ The Guardian: Performs real-time forensic audits of the architectural substrate.
- π₯ The Healer: Autonomous somatic repair and automated patch coordination.
- π¬ The Herald: Translates alerts into diplomatic dispatches delivered via Signal.
The substrate is pre-loaded with an operational knowledge base of the OWASP Top 10 for Agentic Applications (2026). Each playbook (exploits/ASI*.md) contains:
- Official Descriptions: The industry-standard definition of the threat.
- Expert Synthesis: Adversarial guidance aggregated from Claude, OpenAI, and Grok.
- Adversarial Guides: Actionable synthesis heuristics used by the Pathogen to mutate its attacks.
- Defensive Matrix: Precise mapping to substrate-level mitigations (Sentinel, Guardian, PEP).
Tachyon Tongs follows a tiered evolution path toward fully autonomous security governance:
- π’ HITL (Human-In-The-Loop) - [CURRENT]: Every mutation requires explicit human approval.
- π‘ HOTL (Human-On-The-Loop) - [EVOLVING]: Low-risk patches apply automatically with a veto window.
- π΄ HOOTL (Human-Out-Of-The-Loop) - [VISION]: Full autonomous detection and remediation.
The Event-Horizon Command Bridge provides a NeoVIM-first interface for substrate oversight.
- π§ Local Reasoning: High-assurance offline reasoning via
llama.cppon M5. - π§± Singularity PDP: High-assurance Policy Decision Point for LLM tool-calling.
- π‘ Unified Console: Composable
ttCLI, GPU-accelerated TUI, andtachyon.nvim.
- π ARCHITECTURE.md: Core Daemon and Guardian Triad.
- 𧬠AGENTIC_ARCHITECTURE.md: Deep dive into the autonomic immune system design.
- π§© AGENTS.md: The 6-tier agentic taxonomy and immune collective.
- π― THREAT_MODEL.md: Foundational Live Threat Model.
- π SDLC.md: Secure SDLC and Hardware-Anchored Trust.
- π¦ CLAWS.md: The Claw ecosystem and safe import bridge.
- πΊοΈ ROADMAP.md: Phased evolution roadmap.
- π KEYS.md: Hybrid PQC key taxonomy.
- π» tasks/SYNC_LOG.md: Inverse-chronological record of all agentic breakthroughs.
- π tasks/TASKS_BOOTSTRAP.md: Completed foundation tasks.
- π§Ή tasks/TASKS_CLEANUP.md: Active engineering sprint backlog.
- π‘ tasks/TASKS_ENHANCEMENTS.md: Future strategic additions.
- π ADRs: Complete history of signed Architectural Decision Records.
Tachyon Tongs serves as a laboratory for evaluating promising avenues in published AI security research (e.g., Automated Design of Agentic Systems, The HyperAgent Principle). We conduct autonomous ("auto research") experiments to find the next generation of substrate-level defenses.
- π Experiments Master Index: The central registry of all active and archived autonomous research strains.
- 𧬠Darwin-Gâdel Machine (DGM): A self-referential evolutionary loop that uses a local MLX-native LLM to rewrite its own detection logic in response to synthesized adversarial pressure.
Tachyon Tongs follows a phased evolution model to ensure substrate stability and forensic integrity. We track our progress across three distinct horizons:
- Bootstrap: The "getting off the ground" phase, covering core framework establishment. (See tasks/TASKS_BOOTSTRAP.md)
- Cleanup: The "putting things in order" phase, focusing on refinement and hardening. (See tasks/TASKS_CLEANUP.md)
- Enhancements: The "future-proofing" phase, outlining long-term strategic additions. (See tasks/TASKS_ENHANCEMENTS.md)