Skip to content
Getting Started

Getting Started

This page walks the DataEx rail from top to bottom. For each page it gives the label, the ?tab= name for a deep link (/?tab=<name>), and the endpoints the page reads. Labels come from flutter/lib/l10n/app_en.arb, order from navGroups in flutter/lib/core/widgets/nav.dart, and endpoints from each screen’s source.

Rail label?tab=What it reads
Model cardsmodelCardsGET /api/models
AgentsagentsGET /api/agents, GET /api/swarm, GET /api/agent-config, GET /api/access, GET /api/guardrails
InferenceinferenceGET /api/models, plus GET /api/agents for its inference.router block
Connectionsconnectionsthe shared ConnectionsService (gRPC-web)
Runnersrunnersthe shared RunnersService (gRPC-web)
Trust › HarnessharnessGET /api/harness
Trust › Guardrails & autonomyguardrailsGET /api/guardrails
Trust › Policy & ReBACpolicyGET /api/access
Trust › Adminadminthe shared AccessService (gRPC-web). Drawn only for an admin of the chosen instance
Trust › Secrets & PKIsecretsGET /api/security
Model & agent auditmodelAgentAudit/api/models, /api/agent-config, /api/guardrails, /api/harness, /api/judgement, /api/judgements
JudgementsjudgementsGET /api/judgement, GET /api/judgements

Old links still land. ?tab=security goes to Secrets & PKI, and ?tab=measures goes to Harness (retiredTabNames in nav.dart).

Model cards

One row per serving tier. Each row joins three sources (models.go): the reviewed card in modelcards.json, what the tier is actually running, and the core-inference-bench ConfigMap when a measurement can be attributed to that tier. A tier is healthy only when it is deployed, is ready, has not just been OOM-killed, and runs the model its card names. More in Models & inference.

Agents

The console’s agent roster (GET /api/agents) is seventeen entries: the thirteen grpc/agents/ binaries plus users, resolver, forger and the core session CLI. Each card carries the agent’s purpose, trigger, delivery (workflow, cli or cronjob), model tier and the gate that arms it. The page also shows each app agent’s live health (/api/swarm), its ini settings and OpenBias rules (/api/agent-config, read from each repo’s HEAD), who may arm agents (/api/access) and the hard guardrails (/api/guardrails). The fleet itself is documented under DevEx › Agent fleet.

Inference

The model router and per-tier usage and quotas. Admission, queue depth and token quotas are not exported by anything today. models.go lists them as unmeasured[] entries that name what would have to exist. See Models & inference.

Connections

This page is where tenant data-source connections are created, edited, tested and rotated. It is the shared org-runink/ui datasources wizard, mounted by datasources_ui.go. Credentials are write-only, and Test is Resolve’s Test run on the connection’s bound runner. See Connections.

Runners

The data-access runners: the built-in Runink managed runner (console) and any self-hosted runners CORE connects out to. These are not CI runners. See Data-access runners.

Trust

  • Harness: the console’s own findings (from /api/measures and /api/compliance), each with only the actions CORE can really take. An admin’s POST to /api/harness/{id}/act runs one.
  • Guardrails & autonomy: an autonomy level of off, hitl or auto for each action class. The default is hitl, and in this build auto is recorded but never executed.
  • Policy & ReBAC: which allowlists are set, how large each is, and your own membership. ReBAC is reported as not wired: the library exists, and no route checks a relation.
  • Admin: the members and seats of the instance chosen on the landing page.
  • Secrets & PKI: the shared mesh CA as distributed to each namespace, with its subject, SHA-256 fingerprint and validity window.

See Trust & access.

Model & agent audit

An assessment page, not the audit log. It reaches one verdict over the six reads listed above: model health against each card, OpenBias coverage per app agent, the autonomy guardrails, the Harness’s open findings and the independent judgements. Its actions go through the paths that already exist. A Harness action stays on Trust › Harness, and the judge agent is started through an existing playbook (PlaybookService.RunNow).

Judgements

The docket of findings that external assessment platforms have submitted, and CORE’s own verdicts on them. See Judgements.

Where to go next

  1. Register a source on Connections.
  2. Explore it on Intelligence › Resolve, so that the datagov agent can assess data quality and PII exposure.
  3. Read the result in Data governance.