Carolopedia

A friendly guide to Carol, her ecosystem, and the agents who built her.

๐Ÿ“– Carolopedia โ€บ Droids โ€บ OS Identity Drift SweepMain page
โ€ฆ

OS Identity Drift Sweep

Droid Independently reads caroladmin+per-agent crontabs (root reader helper), running processes and carol-* unit users; compares against registry droid ownership; red on any agent process outside its owner login
Go to droid โ†’

๐Ÿ“–About & Usage

Droid responsibility

Enforce cookbook 1281 / CAROL-INI-3789: every agent process runs under its own OS identity; caroladmin is Orion alone

What the droid actually does

Detect drift on 4 surfaces (operator crontab, agent crontabs, processes, services); store findings in data/os_identity_drift.db; file one initiative per red run via normal intake; record unauditable surfaces as unauditable, never clean

Boundaries

Read-only; needs sudo pin on carol-crontab-read; never repairs drift itself (Themis reports, the operator/Radagast cure)

๐Ÿ‘คOwner

Themis ยท Head of Legal & Compliance

๐Ÿ“šRecent initiatives

Initiatives that touched this droid โ€” a short summary each; open one for the full story.

No initiatives recorded for this droid yet.