hol-cigar
Health Uyari
- License — License: Apache-2.0
- Description — Repository has a description
- Active repo — Last push 0 days ago
- Low visibility — Only 5 GitHub stars
Code Gecti
- Code scan — Scanned 12 files during light audit, no dangerous patterns found
Permissions Gecti
- Permissions — No dangerous permissions requested
Bu listing icin henuz AI raporu yok.
Open-source context engineering protocol for AI agents: governed retrieval, bounded multi-agent handoffs, MCP, provenance, recoverable effects, and replay.
CIGAR: Context Intelligence Graph Agentic Runtime
![]() |
Give AI agents the right context—and only the authority they need. CIGAR is an open protocol for deterministic context compilation, bounded agent handoffs, governed effects, and replayable evidence. Visit the CIGAR website Install the Python SDK Read the documentation PyPI Package ( hol-cigar)Report an Issue |
|---|
CIGAR makes the decision environment around an AI agent explicit. It sits between source systems
and an agent or model runtime so applications can govern what context is disclosed, constrain
delegated authority, recover external actions, and reproduce the evidence behind a decision.
CIGAR is model-agnostic and developed by HOL. It is not a model, hosted agent
service, autonomous scheduler, or replacement for an application-specific orchestrator.
[!IMPORTANT]
This repository contains two bounded developer previews. The Python 3.14 SDK is published ashol-cigar0.9.1 on PyPI; its import package iscigar_sdk. The broader CIGAR Honey v0.9 runtime (0.9.0-honey.1) remains an unpublished,
unsupported Apple-silicon preview and is not production-qualified, signed, or notarized. See
current status before evaluating either surface.
Install the Python SDK
python -m pip install "hol-cigar==0.9.1"
The SDK exposes all 45 frozen CIGAR v1 operations through synchronous and asynchronous clients.
It provides typed problems, bounded deadlines, safe retry, resumable streams, pagination, fixed
idempotency keys, and local semantic bundle and delta verification.
Python SDK guide ·
PyPI package ·
Package qualification and limitations ·
Security policy
Start here
| If you want to... | Start with |
|---|---|
| Use the published Python SDK developer preview | Install hol-cigar==0.9.1; import it as cigar_sdk. |
| Evaluate the Honey runtime developer preview | Install Honey, then run the offline context quickstart. |
| Understand the security model first | Read Honey security and limitations. |
| Try agent coordination | Follow the two-agent workflow. |
| Try MCP or Claude Code | Follow the MCP and Claude Code guide. |
| Build or contribute from source | Install the versions in support.toml, then run cargo xtask bootstrap. |
For source development, bootstrap validates required tools and generated artifacts. It does not
install software or fetch missing dependencies. Tests are expected to remain hermetic and offline.
cargo xtask bootstrap
cargo xtask test unit
Why CIGAR?
Agent systems routinely assemble context, call tools, hand work to other agents, and retry after
partial failures. Without an explicit runtime contract, those operations are difficult to govern or
reproduce: source text can blur into instruction authority, prompt construction becomes invisible,
tool outcomes are mistaken for certainty, and audit logs omit the context that shaped a decision.
CIGAR makes that decision environment explicit. It sits between source systems and an agent or
model runtime and provides:
- deterministic, provenance-bearing context bundles instead of opaque prompt concatenation;
- policy enforcement before protected content is disclosed;
- recipient-bound handoffs with attenuated authority and typed result merging;
- durable effect intent, authorization, dispatch, reconciliation, and compensation;
- evidence reproduction and no-egress observational replay; and
- content-safe operational signals without storing hidden model reasoning.
What can you evaluate?
| Workflow | What CIGAR demonstrates |
|---|---|
| Governed context compilation | Observe filesystem or Git sources, apply policy and budgets, and produce a stable bundle with a manifest and provenance. |
| Two-agent collaboration | Fork private work, issue a signed and attenuated handoff, accept it once, and merge a typed result against an exact base. |
| Recoverable external actions | Record intent before dispatch, preserve UNKNOWN after ambiguous execution, then reconcile or compensate explicitly. |
| Replay and audit | Reconstruct declared inputs, verify retained evidence, or replay recorded observations without contacting a live provider. |
| Local agent integration | Use the CLI, embedded runtime, local daemon, MCP server, Claude Code adapter, or language SDKs. |
How it works
flowchart LR
S["Filesystem and Git sources"] --> C["Versioned catalog"]
C --> P["Policy and retrieval plan"]
P --> B["Deterministic compiler"]
B --> A["Bundle, manifest, provenance"]
A --> M["Agent or model consumer"]
M --> D["Decision and typed result"]
D --> E["Evidence and replay"]
X["Context spaces and handoffs"] --> B
D --> F["Authorized effects and recovery"]
F --> E
- Observe sources. Filesystem and Git connectors discover content under explicit source
identities, exclusions, lifecycle rules, and integrity metadata. - Plan under policy. A context contract fixes purpose, principal, projects, consistency,
trust constraints, token lanes, compiler profile, and catalog watermark. - Compile deterministically. CIGAR sorts, deduplicates, filters, budgets, materializes, and
hashes selected context into an immutable bundle and manifest. - Coordinate bounded work. Context spaces preserve immutable bases, private overlays,
checkpoints, signed handoffs, typed changes, and explicit conflicts. - Handle actions as effects. External mutation is separated into intent, authorization,
dispatch, observation, reconciliation, and compensation. Ambiguous execution remainsUNKNOWN. - Retain observable evidence. Decisions bind inputs, policy, context, runtime fingerprints,
outputs, effects, observations, and uncertainty without requesting hidden chain-of-thought.
The public protocol currently defines seven services covering catalog, context, spaces, handoffs,
effects, replay, and operations. See the public API reference for the
operation-level contract.
Honey v0.9 developer preview
Honey is the first bounded CIGAR profile intended for hands-on local evaluation.
Selected scope
- Apple-silicon macOS (
aarch64-apple-darwin); - embedded and local-sidecar deployment modes;
- one local operating-system user with explicit CIGAR agent principals;
- filesystem and Git ingestion;
- a local filesystem reference effect;
- CLI, local daemon, MCP, and Claude Code workflows;
- direct Python and TypeScript packages plus an offline Rust local-registry kit; and
- deterministic workflows that need neither a model provider nor network access.
Explicitly deferred
- Linux, Windows, and Intel macOS release support;
- remote multi-tenancy and shared PostgreSQL/S3 deployment;
- containers, Kubernetes, Homebrew, public npm and crates.io publication, and PyPI publication
outside the separately boundedhol-cigarSDK profile; - HTTPS effects, arbitrary extensions, live-provider replay, and remote OTLP;
- vector retrieval in the selected release profile;
- general benchmark or efficacy claims; and
- production support, Apple signing/notarization, long-duration qualification, and GA guarantees.
The repository contains implementation and design work beyond Honey. Code presence does not imply
that a surface is selected, packaged, qualified, published, or supported by this release profile.
Current status
The checked-in product authority currently declares:
| Property | Value |
|---|---|
| Marketing name | CIGAR Honey v0.9 |
| Version | 0.9.0-honey.1 |
| Context ABI | cigar.context.v1 |
| Release state | developer-preview |
| Target | aarch64-apple-darwin |
| Honey runtime publication | Not published |
| Python SDK publication | hol-cigar 0.9.1 on PyPI |
| Support | Unsupported evaluation software |
| Production qualification | False |
| Signing and notarization | Not included |
The Honey artifact profile defines a closed 13-file candidate inventory with checksum and structural
verification. Final qualification evidence is not complete, so artifact integrity must not be
reported as production qualification.
Machine-readable authorities take precedence over prose:
packaging/product-version.v1.json— version and publication state;packaging/honey/capability-profile.v1.json— selected capabilities and platform;packaging/honey/artifact-matrix.v1.json— exact artifact inventory; andpackaging/honey/release-requirements.v1.json— mandatory gates and prohibited claims.packaging/pypi/release-profile.v1.json— the separatehol-cigar0.9.1 PyPI developer-preview identity and bounded qualification gates.
Progress toward the broader CIGAR v1 design is tracked inIMPLEMENTATION_STATUS.md against prd.md. Those planning
documents do not expand Honey's release claims.
Repository map
| Path | Contents |
|---|---|
crates/ |
Rust protocol, catalog, compiler, policy, space, effects, replay, storage, API, daemon, CLI, MCP, and support crates. |
sdk/ |
Python, TypeScript, Rust, and Go SDK source and contract tests. Go is not selected for Honey packaging. |
adapters/, connectors/ |
Claude Code and source-system integrations. |
spec/, schemas/, proto/ |
Versioned operations, payloads, schemas, and transport contracts. |
conformance/ |
Conformance runners, vectors, and install qualification tools. |
demos/ |
Deterministic Honey context, handoff, effect, replay, and injection-defense scenarios. |
packaging/, scripts/release/ |
Product authority, artifact producers, verifiers, and qualification workflows. |
docs/ |
Guides, API reference, operations, troubleshooting, release verification, and design documentation. |
artifacts/, reports/ |
Implementation and test records; not automatically evidence for a later source revision. |
Documentation
- Documentation index
- Python SDK package on PyPI
- Python SDK guide
- Core concepts
- Honey installation
- Honey offline quickstart
- Handoffs, effects, and replay
- SDK guides
- Operations
- Troubleshooting
- Release verification
- Artifact-oriented Honey README
Security
Honey's authority, integrity, and traceability controls operate inside a single local-user trust
boundary. They are not process isolation between mutually hostile programs running as that user.
Review Honey security and limitations before using CIGAR
with sensitive material.
Report vulnerabilities through the private process in SECURITY.md. Do not publish
private source, prompts, credentials, handoff capsules, transcripts, or diagnostic archives.
Resources
License
CIGAR is licensed under the terms in LICENSE.
Yorumlar (0)
Yorum birakmak icin giris yap.
Yorum birakSonuc bulunamadi
