| Filename | Latest commit message | Latest commit date |
|---|---|---|
The swarm writes agent-configs/<agent> when it creates an agent, before any hive is told to deploy it. setup_proposed authored a second copy of those same bytes locally, so an agent's initial config had two sources of truth, each unaware of the other and free to disagree. It now clones that repo and falls back to the template only when there is nothing there to take. Preferred-source rather than a new-path-only variant because provision_container is the Provision node for the swarm deploy and the approval flow both, and cannot tell them apart. The approval flow creates agent-configs/<agent> only after the first spawn (forge_after_first_spawn), so it finds nothing and lands on the template: the fallback becomes unreachable when hive-level create is removed, rather than becoming something someone has to find and delete. clone, not the neighbouring init+fetch. A failed fetch leaves an empty .git behind, and that .git is exactly the byte setup_proposed reads to decide whether seeding is still needed, so the fallback would have seen a seeded repo. git removes a directory it created when a clone fails. --branch main also makes an empty repo fail cleanly instead of cloning to an unborn HEAD that would look seeded. |
||
| .. | ||
| src | ||
| Cargo.toml | ||
| README.md | ||
hive-c0re
The unprivileged host daemon (runs as hive-core). Owns the sqlite
broker, the approval/reminder/schedule queues, the generic job-DAG
queue, container lifecycle, gateway/forge/matrix provisioning,
per-container stats, and the axum operator dashboard. Largest crate in
the workspace — bin-only, no separate lib.
When to use it
Host-level, cross-container orchestration: spawning/rebuilding/
destroying agent containers, the approval flow, dashboard-visible
state, provisioning per-agent forge/matrix/gateway accounts. Agent-side
behavior (turn loop, MCP tools) lives in hive-agent/hive-agent-mcp
instead — this daemon only talks to agents over the socket wire types
in hive-sh4re.
Shape
Cohesive clusters live in directory submodules, each re-exported at
the crate root (crate::broker::… keeps resolving regardless of which
subdirectory a module actually lives in). One line each — read the
module's own //! doc-comment for real detail, don't expect this file
to track it:
dashboard/— the operator dashboard (containers, approvals, schedules, logs, topology).job_queue/— the job-DAG queue + desired-state reconciliation (docs/coordinator.md).lifecycle/—nixos-containerlifecycle + per-agent config flake generation.stores/— sqlite-backed stores (broker, queues, audit, power).workers/— background sweeps (crash watch, scheduled prompts, auto-update, knowledge sync).agent_config/— per-agent registries (tool groups, capabilities, resource limits, topology).stats/— dashboard metrics aggregation + OTEL export.socket_server/— the unix-socket request server shared by per-agent + manager sockets.forge/— optional Forgejo wiring (docs/forge.md).coordinator.rs— top-level wiring forserve.meta.rs,migrate.rs— the meta flake + schema/state migrations.matrix.rs,gateway_nginx.rs,webhook_secret.rs,priv_client.rs— matrix provisioning, gateway vhosts, webhook secrets, and thehive-privclient respectively.
See the top-level CLAUDE.md/docs/ index for the full reading-path
map.