| Cockpit navigationTop-level lanes let operators move between missions, agents, review states, settings, and diagnostics. | cockpit | apps/web cockpit | local | Navigation is runtime UI, not a hosted account surface. |
|---|
| Live rosterActive agent and lane posture is visible as structured status instead of background guesswork. | cockpit | apps/web cockpit | local | Roster state is local runtime state when the local install is running. |
|---|
| Mission feedMission rows group lifecycle, review, and validation activity so operators can scan active work. | missions | apps/web cockpit | local | Feeds summarize structured events for the local cockpit. |
|---|
| Battlefield mapThe visual map gives product context for agents, work zones, alerts, and tactical state. | missions | apps/web and demo | preview | The zero-install demo is a guided preview and stays separate from local sessions. |
|---|
| Mission detailA focused mission view keeps objectives, current state, files, and follow-up signals together. | missions | apps/web cockpit | local | Details should stay narrow and avoid exposing secrets or full raw transcripts by default. |
|---|
| ReplayReplay helps revisit a local sequence of events and decisions without implying public replay hosting. | review | apps/web cockpit | local | Replay data is local product state unless an explicit later integration says otherwise. |
|---|
| ApprovalsReview gates keep risky actions and checkpoints visible to the operator before work proceeds. | review | apps/web cockpit | local | Approvals and local tool trust prompts remain under operator control. |
|---|
| File and tool timelinesFile touches and tool activity are grouped as reviewable event context instead of free-form log sprawl. | review | protocol and cockpit | local | Timeline copy must avoid displaying credentials, raw source, or broad local paths. |
|---|
| Prompt lifecyclePrompt start, tool use, completion, and validation markers become lifecycle state for review. | review | hooks and protocol | local | Lifecycle markers do not mean prompt bodies are uploaded by default. |
|---|
| DiagnosticsHealth, validation, and hook status signals help spot broken local setup or missing events. | trust | CLI, server, cockpit | local | Diagnostics should produce explicit failure states rather than silent gaps. |
|---|
| SettingsLocal preferences and reset affordances keep operator control visible. | trust | apps/web cockpit | local | Settings are separate from hosted identity and erasure policy. |
|---|
| Orchestration deckPlanner, builder, and review lanes can be compared so parallel work stays understandable. | orchestration | apps/web cockpit | local | Orchestration visibility does not imply remote execution from the website. |
|---|
| Subagent lineageSubagent handoffs and parent-child work context stay attached to the mission story. | orchestration | protocol and cockpit | local | Lineage is event context, not a promise that every external agent provider is supported. |
|---|
| Outbound adaptersDiscord, Telegram, and generic HTTPS adapters are optional outbound paths. Each adapter sends narrow notifications only when enabled. | adapters | apps/adapters | outbound | Adapters are outbound notifications only, not inbound commands or remote execution. |
|---|
| ExportExport paths support review and handoff without turning the website into hosted storage. | export | local product surface | local | Exports remain local or explicitly operator-directed. |
|---|
| Audit trailBounded event history helps explain what happened, what changed, and where review occurred. | trust | protocol and cockpit | local | Audit wording stays separate from certification and compliance programs. |
|---|