{"generated":"2026-09-03T16:09:19.162065+00:00","visibility_model":["PUBLIC","PRIVATE","INTERNAL"],"software":[{"service":"gods-platform-core","name":"Platform Core API","kind":"Python / FastAPI","visibility":"PRIVATE","role":"The governance brain — EVA 6-D engine, SVS sovereignty, the 24/7 Sentinel, oversight, registry and the Merkle audit chain.","public_endpoints":["/health","/version","/admin","/catalog","/hardware","/eva/manifest","/platform/capabilities"],"user_actions":{"admin":["evaluate decisions","register/block models","run·pause·resume Sentinel","resolve oversight","manage tenants & users"],"exec":["evaluate decisions","run Sentinel","resolve oversight","view everything"],"operator":["run portal actions","submit division actions","view own division"],"auditor":["read decisions","verify the audit chain","read conformance"],"viewer":["read-only dashboards"],"client":["view own tenant's systems, decisions & sector compliance"]}},{"service":"gods-udoc-web","name":"UDOC Web","kind":"Static","visibility":"PUBLIC","role":"Public-facing UDOC surface describing the platform and its governance model.","user_actions":{"public":["browse the platform overview"]}},{"service":"gods-udoc-gateway","name":"UDOC SSO Gateway","kind":"Static","visibility":"PUBLIC","role":"Single sign-on entry point that routes a signed-in user to the right console for their role.","user_actions":{"all":["sign in","be routed to the correct console"]}},{"service":"gods-udoc-admin","name":"UDOC Admin Console","kind":"Static","visibility":"PRIVATE","role":"Administrative governance dashboard — decisions, oversight, policy, audit, RBAC and sector tooling.","user_actions":{"admin":["full administrative control"],"exec":["governance operations"]}},{"service":"gods-udoc-operator","name":"UDOC Operator Console","kind":"Static","visibility":"PRIVATE","role":"Sovereign-Operator workspace — live tiles and the authorised actions behind each operator profile.","user_actions":{"operator":["run the actions authorised for their profile"]}},{"service":"gods-udoc-client","name":"UDOC Client Console","kind":"Static","visibility":"PRIVATE","role":"Tenant-facing view — a client's own registered systems, decisions and sector compliance.","user_actions":{"client":["view their own organisation only"]}},{"service":"gods-portals","name":"24 Sovereign-Operator Portals","kind":"Static","visibility":"PRIVATE","role":"The 24 institutional portals (Governance · Operations · People · Business), each enterable with its own controls.","user_actions":{"admin":["enter all portals"],"operator":["enter & control their portal"]}},{"service":"gods-platform-internal","name":"Platform Internal","kind":"Static","visibility":"INTERNAL","role":"Internal G.O.D.S Holdings console spanning the four divisions.","user_actions":{"admin":["internal operations"],"exec":["internal operations"]}},{"service":"gods-db","name":"Governance Database","kind":"PostgreSQL","visibility":"INTERNAL","role":"The live datastore for users, decisions, conformance, oversight and the audit chain.","user_actions":{"system":["bound to platform-core only — no external access"]}}],"hardware":[{"component":"FPGA","name":"FPGA-over-PCIe accelerator","visibility":"PRIVATE","driver":"fpga_pcie","function":"Hardware-accelerated EVA inference and cryptographic offload.","controls":["self-test","bind/unbind"],"production":"real PCIe device; emulated in this deployment"},{"component":"HSM","name":"Hardware Security Module (PKCS#11)","visibility":"PRIVATE","driver":"hsm_pkcs11","function":"Dual-custody signing of the audit Merkle root — the private key never leaves the HSM.","controls":["self-test","sign root"],"production":"real PKCS#11 HSM; emulated in this deployment"},{"component":"TPM","name":"Trusted Platform Module","visibility":"PRIVATE","driver":"tpm","function":"Measured boot and platform attestation for tamper-evidence.","controls":["attest","self-test"],"production":"real TPM; emulated in this deployment"},{"component":"NIC","name":"Sovereignty-inspection NIC","visibility":"PRIVATE","driver":"nic_inspect","function":"Inspects BGP / traceroute / DNSSEC to verify data-path sovereignty — feeds the SVS.","controls":["self-test","path scan"],"production":"real NIC; emulated in this deployment"},{"component":"Cassandra-WORM","name":"Cassandra WORM nodes","visibility":"INTERNAL","driver":"cassandra","function":"Write-once, Merkle-linked audit storage — the immutable evidence chain.","controls":["health","verify chain"],"production":"clustered WORM nodes in production"}],"counts":{"software":9,"hardware":4,"datastore":1}}