HydraBrain becomes a first-class HydraCluster machine role. A node assigned the role can be instructed to serve a named local inference workload (initially Lobo on Fluffy), advertise a private authenticated OpenAI-compatible endpoint, report capabilities and health, and be consumed by NimsForest directly or through a Hollow harness.
HydraBrain is infrastructure, not a knowledge system: it does not own prompts, transcripts, memory, RAG, skills, tools, sessions, or organizational knowledge.
node-11da9ea3), Windows 11, RTX 5070 Ti 16 GB, HydraGuard 10.10.100.15.C:\Lobo\app.127.0.0.1:18080./v1/chat/completions have been proven.HydraBrain-Lobo-Test.hydrabrain; Fluffy's persisted roles remain hydrabody, hydravoice, and hydraguard-air.Create a small Go service/CLI that runs beside HydraNode and owns inference workload lifecycle. Initial commands: serve, install, uninstall, status, version, and check-update. Read enrollment from the shared HydraNode config. Keep desired workload configuration separate from runtime-observed status.
The node-local gateway must bind only the HydraGuard mesh address, authenticate every inference request, proxy to a loopback-only runtime, preserve streaming responses, bound request sizes/timeouts, and never log prompt/completion bodies.
hydrabrain to RoleCatalog and add a Windows provisioning recipe.hydrabrain AIService/provider with configurable base URL, model alias, and credential.reasoning_content; a small completion budget may contain reasoning but no visible content.Data plane: OpenAI-compatible /v1/chat/completions, /v1/models, and /health over the private HydraGuard mesh.
Advertised model IDs are stable aliases such as lobo-qwen3.8-27b, never absolute Windows file paths. Discovery returns node ID/name, endpoint, protocol, runtime, models/context, health, GPU capacity, and last-seen timestamp.
0.0.0.0; mesh address only.hydrabrain to a clean compatible Windows HydraCluster node installs and starts the agent idempotently.Central compute leasing/scheduling, knowledge storage, conversation persistence, embeddings/RAG, agent tools/skills, and public anonymous inference.
Implementation slice is complete and published.
Commits / branches:
Published branches:
Verification:
Rollout remains intentionally pending: merge/release the three integration branches, configure server.brain_discovery_token, publish HydraBrain, then perform the documented Fluffy cutover while retaining HydraBrain-Lobo-Test as rollback.
Review PRs opened:
Architecture correction (2026-09-05):\n\n- Closed HydraNode PR #2 as superseded. A new role does not require HydraNode-specific dispatch, templates, or uninstall catalog entries.\n- HydraBrain main 677fafd now owns install/uninstall and its Windows scheduled task / Linux systemd unit.\n- HydraCluster 41d4791 adds checksum-verifying Windows and Linux recipes that invoke the HydraBrain installer through HydraNode's existing generic recipe executor.\n- HydraCluster also clears removed roles' provisioning state generically, so a later re-assignment offers the recipe again.\n- HydraCluster PR #5 was updated: https://github.com/cederikdotcom/hydracluster/pull/5\n- HydraNode PR #2 is closed: https://github.com/cederikdotcom/hydranode/pull/2\n\nValidation: HydraBrain and HydraCluster full tests and vet pass; HydraBrain Windows amd64 and Linux arm64 cross-builds pass. Fluffy remains on the rollback/manual task until the tagged HydraBrain release and HydraCluster PR are deployed.
Fluffy live cutover completed (2026-09-05).\n\nLive state:\n- HydraCluster v2.0.110 is running in production. Default recipes are now embedded in the binary; external recipe files are optional overrides.\n- HydraBrain v0.1.0 is published on HydraRelease with verified Windows/Linux assets.\n- fluffy-dumpling-87 (node-11da9ea3) now has the hydrabrain role.\n- Managed task HydraBrain is running; rollback task HydraBrain-Lobo-Test is stopped/Ready and was not deleted.\n- Lobo is owned by HydraBrain and listens only on 127.0.0.1:18080.\n- HydraBrain listens only on 10.10.100.15:18081.\n- Discovery reports ready, stable alias lobo-qwen3.8-27b, 32K context, RTX 5070 Ti, and fresh status.\n\nAcceptance exercised live:\n- anonymous mesh request returned 401;\n- authenticated local completion returned "fluffy managed and healthy";\n- authenticated request from a second HydraGuard node returned "mesh healthy";\n- the temporary credential used in the cross-node exec audit was immediately rotated;\n- discovery disappeared during rotation and returned only after fresh ready status;\n- killing the managed llama-server child caused automatic restart from PID 624 to PID 13896;\n- post-restart completion returned "restart healthy";\n- test prompt/response text was absent from the runtime log.\n\nLive fixes discovered and released:\n- d178378 / v2.0.110 decodes Windows PowerShell byte[] checksum responses.\n- f495d96 embeds default recipes so production deployment needs no manual recipe copy.\n- The new private HydraBrain repo lacked its HydraRelease Actions secret. A restricted one-time bootstrap job published v0.1.0 using the existing authorized pipeline and was removed immediately afterward.\n\nMaster issue remains implementing: this cutover adopts the already reviewed C:\Lobo installation with artifacts: []; clean-node pinned Lobo runtime/model provisioning and the NimsForest provider rollout are still pending.
Hydra infrastructure acceptance is complete and deployed (no PR cutover).
Deployed releases:
2052f88; live-acceptance docs 705d0e2): first-class HydraBrain node panel and role-only reprovision API.79d0be6, 3a5f312, 4b91c50; acceptance docs 85f8d06): bounded admission, health withdrawal/recovery, least-privileged Windows runtime, resumable pinned artifacts, and deterministic state.efed7a0; acceptance docs 0107900): first-class managed-role dispatch plus Linux service/removal support. Fluffy was updated through HydraCluster.Live Fluffy acceptance:
[DONE], and Club's running NimsForest-container inference passed over hydraguard-air with visible content and real usage. Acceptance prompt markers were absent from logs.Consumer contract remains stable: GET /api/v1/hydrabrains, explicit Fluffy alias, OpenAI-compatible /v1/chat/completions, independent discovery/provider credentials, refresh discovery each turn. Capacity is additive. No pending Hydra interface change is required by #264. Private integration details remain in /tmp/tnbc264-hydra-handoff.md; no credentials are included here.
Correction to the prior infrastructure completion note: HydraNode v1.10.40 has been withdrawn. It reintroduced legacy role-specific HydraBrain provisioning alongside the already-correct HydraCluster recipe path, including an incompatible Windows SYSTEM scheduled-task path. The GitHub release is explicitly marked withdrawn and retained only for auditability.
Corrective HydraNode v1.10.41 (a647623, baa7fb2) reverts the v1.10.40 feature and follow-up documentation commits. The v1.10.41 and v1.10.39 source trees are identical. Local tests/vet/build and release run 34021476206 passed; the checksummed release is live as the production latest.
Fleet correction and heartbeat acceptance:
HydraBrain remains exclusively recipe-managed. No consumer/discovery contract changed, and #659 remains done.
Follow-on #664 is complete and linked here: HydraBrainServer v0.1.1 is live at https://hydrabrain.experiencenet.com as an IAMNim-authenticated HydraScale on pi-node-001. It consumes the existing HydraCluster discovery and HydraBrain OpenAI-chat/capabilities contracts without changing them. Live in-scale acceptance finds Fluffy/Lobo and current machine capacity; no credential or mesh endpoint is exposed to the browser. Repo/runbooks: https://github.com/cederikdotcom/hydrabrainserver
Initial scaffold created and pushed: https://github.com/cederikdotcom/hydrabrain at commit
8c34b87. It includes a buildable Go CLI, authenticated allowlisted reverse proxy, strict non-wildcard listener and loopback-upstream validation, upstream credential isolation, request size/time limits, health and capability endpoints, stable model alias configuration, CI, tests, architecture/runbook docs, and a NimsForest integration handoff.go test ./...,go vet ./..., and Windows amd64 cross-build pass. Fluffy still uses the temporaryHydraBrain-Lobo-Testtask; the scaffold has not been deployed there.