Skip to content

DataEx

DataEx is the console category for the people who consume what the platform decides. It covers which models serve, which agents act and within what limits, how the model plane is used, which tenant sources CORE reads and what reads them, what CORE may do and who may do it, and the independent verdicts on findings.

The rail order comes from flutter/lib/core/widgets/nav.dart (navGroups): Model cards · Agents · Inference · Connections · Runners · Trust (Harness, Guardrails & autonomy, Policy & ReBAC, Admin, Secrets & PKI) · Model & agent audit · Judgements.

Three rules that hold across DataEx

  • Reads never dial. No DataEx page load contacts a tenant source. The one path that dials a registered source is Resolve’s action RPCs (Test, Explore, Access patterns, Map estate). They run in the console process, only on an admin’s action. See Resolve.
  • Credentials are write-only. A connection’s credential bundle is stored separately from its record. No read returns it.
  • Unread is never empty. When the console cannot read a source it says so in the body (source:"unavailable", complete:false, an unmeasured[] entry with the reason). It does not report “none”.