tpt-pantheon

Rust

A coherent, self-contained platform built together from day one: one Rust workspace + one storage engine, with two written-down exceptions (Identity in Go, and a thin wasmtime WASM sandbox).

0 stars0 forks0 watchersApache License 2.0

Languages

Rust92.0%Just3.8%Shell2.2%PowerShell2.0%
README

tpt-pantheon

A coherent, self-contained platform designed together from day one — not integrated after the fact. One Rust workspace, one storage engine, with two deliberate, written-down exceptions (Identity, vendored in Go; and the WASM sandbox, a thin wrapper over wasmtime).

See spec.txt for the full design document (Rev. 3) and SPINE.md for the cross-cutting contracts every crate must obey.

Layout

tpt-pantheon/
├── Cargo.toml                  # workspace root (Rust members only)
├── crates/                     # Rust crates (see spec §2)
│   ├── keystone/  telos/  appfront/   # vendored, unrenamed (Layer 1)
│   ├── tpt-pantheon-spine-*    # Layer 0 spine crates (this repo)
│   └── tpt-pantheon-*          # rewritten components, Layer 2–5
├── services/
│   └── identity/               # vendored Go service (NOT a Cargo member)
├── SPINE.md                    # shared contracts + boundary register
├── deny.toml                   # cargo-deny supply-chain config
├── justfile                    # single entry point: cargo + go
└── spec.txt

Build & test

This repo uses just as the single task runner for both the Rust workspace and the Go Identity service:

just build        # cargo build --workspace
just test         # cargo test  --workspace
just build-identity
just test-identity
just deny         # cargo-deny + §5.3 sandbox-boundary check
just ci           # full pipeline (fmt, lint, deny, build, test)

If just is unavailable, the equivalent cargo / go commands are shown in each recipe. CI runs the same recipes on every push/PR (see .github/workflows/ci.yml).

Licensing

Dual-licensed under MIT or Apache-2.0, at your option. Copyright TPT Solutions.

Status

Phased build per todo.md. Layers are gated: a layer does not start until the layer below ships a real, working, tested proof in this monorepo.