Build an extension
Start from the installed, version-matched authoring kit; inspect, scaffold, validate, build, qualify, and package inert bytes before requesting native admission.
Sourcesauthoring-kitKFX developer surface · alpha-source-projection
KFX packages and Profile Suites add experiences, integrations, services, actions, assessments, and domain semantics through one Core-owned registry and lifecycle authority.
Build against a public extension contract, let Core admit exact content and capabilities, and project one semantic contribution across GUI, TUI, CLI, and Agent hosts.
Choose a reading path
Start from the installed, version-matched authoring kit; inspect, scaffold, validate, build, qualify, and package inert bytes before requesting native admission.
Sourcesauthoring-kitTrace provider-owned semantics through package facets, Core control-plane decisions, admitted contributions, and host-native presentation.
Sourceskfx-contractsurface-parity-adrInspect immutable source, maturity, non-claims, admission inputs, capability grants, Warrants, and receipts before relying on a package.
Sourceslifecycle-adrtrust-admission-adrArchitecture · human and Agent parity
Providers author immutable package or Suite facets. Core discovers and admits their exact graph, intersects capabilities with policy and authorization, owns lifecycle mutations, and emits receipts. GUI, TUI, CLI, and Agent hosts render admitted semantics without becoming authority.
Author and package
Owns extension source, package identity, declared facets, capabilities, and contribution semantics.
Sourceskfx-contractImmutable content closure that may carry one package or a Suite of required and optional members.
Sourceskfx-contractprofile-suite-adrPackage and Suite facets
Host-rendered experience facet with declared entrypoint and capabilities.
Sourceskfx-contractIntegration facet for declared targets and managed Python or Node entrypoints.
Sourceskfx-contractProcess-isolated service facet with explicit runtime, host contract, and capabilities.
Sourceskfx-contractauthoring-kitSurface-neutral intent and operation semantics retained by a Profile Suite.
Sourceskfx-contractsurface-parity-adrPurpose-bound evidence and policy evaluation, not a lifecycle mutation or capability grant.
Sourceskfx-contracttrust-admission-adrDomain semantic closure over members, facts, actions, views, policies, and qualification references.
Sourceskfx-contractprofile-suite-adrKFD and Buildchain trust evidence
Fresh, purpose-bound assessment facts may inform admission but do not authorize mutation or execution.
Sourceskfx-contracttrust-admission-adrVerifier result and provenance roots bind the exact source, dependencies, build plan, toolchain, artifact, and qualification evidence.
Sourceskfx-contracttrust-admission-adrCore registry, admission, capability, lifecycle, and receipts
Indexes providers, extension points, contributions, dependencies, versions, trust, and capability roots.
Sourceskfx-contractnative-registryEvaluates exact package, dependency, KFD, Buildchain, policy, and purpose-bound inputs without mutating lifecycle.
Sourceskfx-contracttrust-admission-adrIntersects declarations with Core and workspace policy, required approvals, exact authorization roots, and Work/Warrant evidence.
Sourceskfx-contracttrust-admission-adrOne fenced Core writer owns plan, authorize, apply, rollback, and history over immutable package roots.
Sourceskfx-contractnative-registrylifecycle-adrApplied or refused outcomes retain exact authority, capability, lifecycle, and evidence dependencies.
Sourceskfx-contractnative-registrylifecycle-adrAdmitted contribution
A Core-resolved contribution plan that preserves provider ownership and exact authority roots.
Sourceskfx-contractsurface-parity-adrGUI, TUI, CLI, and Agent surfaces
Host-native visual projection of the admitted semantic contribution.
Sourcessurface-parity-adrHost-native terminal UI projection of the same admitted semantics.
Sourcessurface-parity-adrHuman command projection over the same Core-owned plan and receipt contract.
Sourcessurface-parity-adrMachine-readable projection over the same contribution, action, authority, and receipt identity.
Sourcessurface-parity-adrprofile-suite-adrCapability map · human and Agent parity
build
Create and qualify inert extension source and artifacts.
Version-matched offline authoring commands and SDK projection; no lifecycle authority is granted.
Status: available-in-installed-product
Sourcesauthoring-kitDependency-free Node webhook starter with synthetic credentials and loopback-only qualification.
Status: reference-starter
Sourcesauthoring-kitconnect
Join external systems through bounded adapters and services.
Declare targets, runtime entrypoints, and least capabilities for an integrated adapter.
Status: contract-defined
Sourceskfx-contractRun process-isolated services under explicit host, network, credential, and lifecycle contracts.
Status: contract-and-reference-defined
Sourceskfx-contractauthoring-kitadd
Contribute product experience and domain semantics without modifying Core.
Add host-rendered experiences while Core retains semantic and authority roots.
Status: contract-defined
Sourceskfx-contractsurface-parity-adrDeclare surface-neutral operations and authorization requirements once.
Status: profile-suite-defined
Sourceskfx-contractprofile-suite-adrEvaluate claims and policy at an exact evidence cut without mutating lifecycle.
Status: purpose-bound
Sourceskfx-contracttrust-admission-adrPackage domain facts, actions, views, policies, qualification, and member closure above domain-neutral Core.
Status: contract-defined
Sourceskfx-contractprofile-suite-adrlifecycle
Move exact content through Core-owned state transitions.
Resolve package closure, registry graph, trust inputs, capability diff, and exact expected roots before mutation.
Status: read-only
Sourceskfx-contractnative-registrylifecycle-adrRecompute exact roots and require purpose-bound capability, approval, Work, and Warrant evidence before side effects.
Status: warrant-required
Sourceskfx-contractlifecycle-adrtrust-admission-adrOne fenced writer advances lifecycle and retains applied or refused history and recovery evidence.
Status: core-authoritative
Sourceskfx-contractnative-registrylifecycle-adrtrust
Bind reliance to exact evidence without collapsing evidence into authority.
Content identity and dependency closure are verified before they can enter Core lifecycle.
Status: required-input
Sourceskfx-contractlifecycle-adrFresh assessment facts can reduce policy-defined friction but cannot mint capability or mutation authority.
Status: admission-input
Sourceskfx-contracttrust-admission-adrBinds source, dependencies, build plan, toolchain, artifact, qualification, issuer, publisher, and verifier roots.
Status: admission-input
Sourceskfx-contracttrust-admission-adrExact authorization and outcome roots are retained across plan, apply, settlement, and recovery.
Status: mutation-boundary
Sourceskfx-contractnative-registrylifecycle-adrsurfaces
Project one admitted semantic contribution through host-native interfaces.
Sandboxed visual host projection; it does not own lifecycle authority.
Status: host-projection
Sourceskfx-contractsurface-parity-adrTerminal UI projection over the same Core descriptor and roots.
Status: host-projection
Sourceskfx-contractsurface-parity-adrHuman command projection over the same plan and receipt identity.
Status: host-projection
Sourceskfx-contractsurface-parity-adrMachine-readable contribution, action, plan, Work/Warrant, and receipt projection.
Status: machine-projection
Sourceskfx-contractsurface-parity-adrprofile-suite-adrImmutable authority
Package, Suite, facet, registry, admission, capability, lifecycle, receipt, and host contract
c40f7a1a4149140558c655fa940d923bcc3c4154
sha256:4c17dddae597d19eb9ead4d3767669e3f8343a3b41cc9deb42c8eb5ff08a514d
Core-owned package discovery, semantic graph, lifecycle, and receipt implementation
c40f7a1a4149140558c655fa940d923bcc3c4154
sha256:98881b2110239f54706b05da88d8a847442b82782a32805aaa6d65faa9b21808
Version-matched offline authoring lifecycle, SDK projection, and webhook starter
c40f7a1a4149140558c655fa940d923bcc3c4154
sha256:567ffd02c294aacd15e9ea8eb0e1d566c5703e9ec1c1fb81fa32bba781f7d346
Immutable package content and Core-owned transactional lifecycle authority
c40f7a1a4149140558c655fa940d923bcc3c4154
sha256:f175aa649773c0bc24b0eabdba24d7e973e3e050523f7467ca87b042b7cd23cc
One semantic contribution projected through GUI, TUI, CLI, and Agent hosts
c40f7a1a4149140558c655fa940d923bcc3c4154
sha256:f0c68bf2c2e80af8465f5247fb8cab9b2e636c8872c9ab7023b3986a758cca1e
KFD facts and exact Buildchain attestations as non-authorizing admission evidence
c40f7a1a4149140558c655fa940d923bcc3c4154
sha256:cca8bdeee7d6e50f4507ada6e4122cfca2b35099c7ba3a9780d9785c55cce912
Agent-first Profile Suites carrying domain semantics over domain-neutral Core
c40f7a1a4149140558c655fa940d923bcc3c4154
sha256:cb4225f9e967d814585bd4b58ccba858147e8df124842d032240e75314431847
Maturity and non-claims
Source boundary: This page is a Site-owned reader synthesis of immutable Kungfu sources. Kungfu owns KFX schemas, commands, admission, capabilities, lifecycle, receipts, and qualification. The Site does not redefine or requalify them.
Adoption boundary: This first surface uses exact Git sources and introduces no unpublished npm dependency. A later upstream-generated KFX Site Bundle may replace this projection after its own protected release and adoption gates.