Sith implementation roadmap
One Go binary, two faces on one shared engine: a day-0 local fleet client (the adoption wedge) and a day-N governed hub (the durable moat). Full plan: reshape PR #17 · docs/SITH-NOTION.md · docs/EPICS.md · docs/ROADMAP.md · docs/BUILD-SEQUENCE.md (PR #40) · docs/research/USE-CASE-AND-SHAPE.md · docs/research/MARKET-RESEARCH-2026-07.md (PR #45).
The reframing: you earn the right to govern a fleet by first being the tool the engineer already uses to see it. Lead with the read wedge; governance is the moat, not the on-ramp.
Sequencing discipline (never violated): local before hub · read before write · PR before mutation · exec never · prod never auto.
The three wedges (market research July 2026): (a) the adoption wedge — "k9s for your whole fleet", an OSS no-account cross-cluster-by-default local client, a slot still empty in OSS (Aptakube closed+paid, k9s declined ×3, Headlamp per-cluster); (b) the durable moat — governed typed-intent action federation with AI as a governed client; (c) newly evidenced inside the moat — a deterministic, offline, rule-based Investigation Brain (E14) occupying the gap between dumb dashboards and non-deterministic LLM SRE-agents.
Milestones → epics
Phase L — local mode (day 0) · adoption wedge — milestone
Delivered as the ordered, always-green slices of docs/BUILD-SEQUENCE.md:
M0 — falsification (PASSED · ADR-0001 Accepted) — milestone
P1 — read federation — milestone
P2 — first governed write — milestone
P3 — policy federation + MCP write — milestone
Standards-alignment gates (market research §5; standards-alignment label)
These are cross-cutting acceptance gates, not a separate epic:
Capability coverage (owner's list → epic)
Falsification gate holds: E1 onward was gated on E0 (now PASSED). Phase L ships day-0 without OCM.
Sith implementation roadmap
One Go binary, two faces on one shared engine: a day-0 local fleet client (the adoption wedge) and a day-N governed hub (the durable moat). Full plan: reshape PR #17 ·
docs/SITH-NOTION.md·docs/EPICS.md·docs/ROADMAP.md·docs/BUILD-SEQUENCE.md(PR #40) ·docs/research/USE-CASE-AND-SHAPE.md·docs/research/MARKET-RESEARCH-2026-07.md(PR #45).The reframing: you earn the right to govern a fleet by first being the tool the engineer already uses to see it. Lead with the read wedge; governance is the moat, not the on-ramp.
Sequencing discipline (never violated): local before hub · read before write · PR before mutation · exec never · prod never auto.
The three wedges (market research July 2026): (a) the adoption wedge — "k9s for your whole fleet", an OSS no-account cross-cluster-by-default local client, a slot still empty in OSS (Aptakube closed+paid, k9s declined ×3, Headlamp per-cluster); (b) the durable moat — governed typed-intent action federation with AI as a governed client; (c) newly evidenced inside the moat — a deterministic, offline, rule-based Investigation Brain (E14) occupying the gap between dumb dashboards and non-deterministic LLM SRE-agents.
Milestones → epics
Phase L — local mode (day 0) · adoption wedge — milestone
Delivered as the ordered, always-green slices of
docs/BUILD-SEQUENCE.md:fleet.Sourceseam + CI); seeds E9sithCLI/TUI +sith ui) — children Slice 0: Foundation walking-skeleton (repo, CLI, fleet.Source seam, green CI) #47 F2.1 (reshape): Source-abstract fleet model + local-kubeconfig source adapter #38 F11.1: Kubeconfig auto-detect + client-side fan-out #32 F11.2: Cache-first fleet render (CLI + TUI) #33 F11.3: Local web "fleet IDE" (sith ui) #34 F11.5: Per-pod table stakes (logs / exec / port-forward / YAML) #35 F11.6: No-account / no-telemetry / keychain custody #36 F14.5: Local advisory Investigation Brain (R1–R6 over reachable lenses) #48 F11.7: import kubeconfig directories into the local fleet IDE #162 F11.8: native macOS desktop shell for the local fleet IDE #166sith ui) #34 · E11·F11.3 (Slice 4) — local web fleet IDE (sith ui)sith serve --mcp) #37 · E7·F7.1 (Slice 6) — MCP read tools (sith serve --mcp)sith ui, andsith desktop; the E9 deployment epic remains open.M0 — falsification (PASSED · ADR-0001 Accepted) — milestone
P1 — read federation — milestone
P2 — first governed write — milestone
gitops.open-pr; enforce-at-execution F4.5 = CVE-2026-46519 fix)P3 — policy federation + MCP write — milestone
Fast-follow — milestone
Standards-alignment gates (market research §5;
standards-alignmentlabel)These are cross-cutting acceptance gates, not a separate epic:
k8s.cluster.name,k8s.namespace.name,k8s.pod.name,k8s.node.name, stablecontainer.image.repo_digests) → E2 E2: Read federation #20 F2.7.client.authentication.k8s.io/v1) — kubeconfig exec-plugin auth; never persist cloud tokens → E1 E1: Tenancy and identity #19, E11 F11.6: No-account / no-telemetry / keychain custody #36.supply-chain).Capability coverage (owner's list → epic)
Falsification gate holds: E1 onward was gated on E0 (now PASSED). Phase L ships day-0 without OCM.