Project Starfish DevlogGitHub
2026-06-16

No more 'my agent deleted my drive'

Governed, reversible deletion and a Custodian bound by hard rules.

Deletion is where agent autonomy turns into regret. So deletion got its own gate. Every delete is impact-assessed first (a deterministic blast radius) and, when allowed, is a soft delete to a recoverable trash, never an unlink.

On top of that sit hard rules that cannot be overridden, even with approval:

And a new crew member to do it accountably: the Custodian, the only agent permitted to run safe, file-level, reversible cleanup, bound by every one of those hard rules. Cleanup is a role with limits, not an exception to them.

Project Starfish · a governance-first, deny-by-default AI ecosystem · Apache-2.0. This devlog is a backdated build journal reconstructed from the project history.