// autonomous software organization / version-controlled workforce & policy
HowlFutureWorks
A human-governed autonomous software organization whose roles, workforce, policies, knowledge, evidence and operating procedures are represented as version-controlled desired state.
This complements the ecosystem-wide principle: INTENT IS NOT AUTHORITY.
SECTION // 01 Overview & Systems of Truth
HFW-MOD-OVERVIEWHowlFutureWorks
Defines organizational desired state: positions, AI workforce identities, staffing lifecycle, organizational policy, institutional knowledge, authority boundaries, organizational runbooks, schemas, continuity, and deployed-workforce reconciliation.
HowlPlane
Coordinates execution: tasks, provider routing, delegation, workflow state, execution, recovery/resume, and evidence flow.
HowlFutureWorks governs the organization. HowlPlane governs execution of work. It is not another HowlPlane.
The organization's systems of truth, as declared in organization.yaml and CHARTER.md:
Git. desired_state_source: git — this repository is the canonical, version-controlled definition of positions, policy and roster.
Live persistent AI members. Grok Bot instances reconciled against workforce/roster.yaml; bot memory is never the source of truth.
HowlBoard. Listed in organization.yaml's work_state_sources as a source of work/execution state.
HowlPlane. Also listed in organization.yaml's work_state_sources; coordinates task routing and execution per CHARTER.md §9.
HowlFrame. policy_enforcement: HowlFrame in organization.yaml.
HowlChangeOps. Referenced in CHARTER.md §9 as the ecosystem's release/change-control component; no direct runtime integration is implemented in this repository.
Assurance (internal position) / HowlProof / CI. This repository's own CI (.github/workflows/validate.yml) runs orgctl.py validate and the test suite on every push.
workforce/ + knowledge/ + adr/ + runbooks/ — curated, evidence-backed and recoverable, not raw chat transcripts.
SECTION // 02 Organization
HFW-MOD-ORGANIZATIONROLE ≠ POSITION ≠ EMPLOYEE INSTANCE
Role
Durable responsibility.
Position
Persistent organizational seat and configuration.
Employee
Replaceable worker instance occupying a position.
HUMAN OWNER
│
┌───────────────┴───────────────┐
│ │
▼ ▼
ENGINEERING MANAGER / ORGANIZER INDEPENDENT AUDITOR
│
┌───────┼────────┬──────────┐
▼ ▼ ▼ ▼
PRODUCT R&D DEV LEAD ASSURANCE
The Independent Auditor reports directly to the Owner (bots/manifest.yaml: staffing_authority: owner, the same protected status as the Engineering Manager) — not to the Engineering Manager. This preserves audit independence: per CHARTER.md §8, "Audit should be read-only wherever practical and should report directly to the Owner rather than to the team being audited."
SECTION // 03 Founding Workforce
HFW-MOD-WORKFORCESix founding persistent positions, per bots/manifest.yaml and CHARTER.md's "persistent roster strategy":
Coordinates organizational reconciliation, staffing, delegation, blockers and health.
Owns WHAT/WHY, problem evidence, priority and acceptance criteria.
Reduces uncertainty through controlled investigation and experiments.
Coordinates implementation and appropriate execution-provider routing.
Coordinates logically separate QA and Security verification.
Independently reconstructs evidence, decisions and process compliance and reports to the Owner.
Execution models such as Claude, Codex, or other providers are not automatically persistent organization members. Positions are staffed by workforce-managed employee instances (workforce/roster.yaml) — a provider is a replaceable executor of a task, not an organizational identity.
SECTION // 04 Governance & Risk
HFW-MOD-GOVERNANCERisk tiers, per policies/risk-tiers.yaml and RISK.md. Risk is attached to the action, not the Bot title.
Read-only research, inventory, status, reporting.
Isolated worktree changes, disposable experiments, generated files.
Branches, pull requests, tests, development CI, issue updates.
Merge, staging/shared mutation, publication, external communications, release promotion.
Production, destructive bulk action, privilege change, secret operations, irreversible data, security-control change, financial or legal commitment.
Invariants:
NO SELF-ESCALATION
"No agent may self-escalate privileges" (AGENTS.md).
ROLE NAME ≠ SECURITY PRINCIPAL
"Role names are not security principals" (AGENTS.md); enforcement comes from HowlFrame, scoped accounts and repository permissions, not titles.
HIGH-RISK ACTIONS FAIL CLOSED
"High-risk actions fail closed when required policy/approval/audit is unavailable" (AGENTS.md); policies/approvals.yaml: fail_closed_if_required_approval_unavailable: true.
APPROVAL BINDS TO THE ACTUAL ACTION
"High-impact approvals bind to the exact action/target/parameters and expire" (AGENTS.md); policies/approvals.yaml requires a new approval when the action materially changes.
SECRETS DO NOT BELONG IN BOT MEMORY
policies/memory.yaml: secrets_in_memory: forbidden. "Never write secrets into prompts, Markdown, YAML, reports, evidence, or Git history" (AGENTS.md).
HUMAN OWNER RETAINS CRITICAL AUTHORITY
"Human Owner retains final strategic and critical authority" (AGENTS.md).
SECTION // 05 Knowledge Continuity
HFW-MOD-KNOWLEDGEconversation
↓
task / context checkpoint
↓
employee continuity
↓
position knowledge
↓
company knowledge
↓
ADR / runbook / policy
WRITE ONCE, RETRIEVE MANY
Conversations are disposable.
Durable lessons are checkpointed before context loss.
Evidence is referenced instead of copied.
Knowledge is promoted upward.
Lower-level duplicates are compacted.
Raw chats are not institutional memory.
Private reasoning / chain-of-thought is not persisted.
Current numeric budgets, per policies/budgets.yaml and organization.yaml (the website is descriptive, not authoritative — read those files for current values):
| Budget | Value | Source field |
|---|---|---|
| Context checkpoint threshold | 75% | policies/budgets.yaml: defaults.context_checkpoint_threshold_percent |
| Checkpoint maximum | 4,000 chars | policies/budgets.yaml: knowledge_artifacts.checkpoint_chars |
| Handoff maximum | 6,000 chars | policies/budgets.yaml: knowledge_artifacts.handoff_chars |
| Position knowledge maximum | 8,000 chars | policies/budgets.yaml: knowledge_artifacts.position_knowledge_file_chars |
| Employee continuity maximum | 24,000 chars | organization.yaml: employee_continuity_budget_chars |
SECTION // 06 Bootstrap
HFW-MOD-BOOTSTRAPGIT DESIRED STATE
↓
ENGINEERING MANAGER / ORGANIZER
↓
LIVE WORKFORCE RECONCILIATION
↓
PRODUCT / R&D / DEV LEAD / ASSURANCE / AUDITOR
↓
VALIDATED AUTONOMOUS ORGANIZATION
python tools/orgctl.py about
python tools/orgctl.py validate
python tools/orgctl.py org-status
python tools/orgctl.py list-bots
python tools/orgctl.py list-workforce
python tools/orgctl.py render-all
python tools/orgctl.py checkpoint bot-devlead-0001 \
--reason context_budget \
--stable "Preserve the durable result, not the conversation." \
--source-ref "adr/example.md"
No secrets are ever written to a checkpoint — orgctl.py checkpoint always records contains_raw_chain_of_thought: false and rejects snapshots that exceed the checkpoint budget.