Diagrams · 44 pages
Every diagram, in one place
I think in pictures, so a lot of Hangar's design lives here. Each diagram is one page with one idea, drawn with the same tool and the same visual style, and each one is clear about what's built and what's still a plan. They're generated from code in the Hangar repo, so this gallery is always up to date.
Autopilot
How Hangar runs any AI agent workload: planes, shapes, runs, identity, authority, audit and rollout.
Architecture · 01 of 19 · Hangar today
Hangar as it is, and the one new component beside it
Architecture · 02 of 19 · Two planesDurable changes are commits. Ephemeral runs are claims.
Secure paved road · 03 of 19 · The write pathThe durable path: an agent's write is a git write
Matrix · 04 of 19 · Workload shapesAny agent workload is one of six shapes, built from two kinds of thing
Architecture · 05 of 19 · Definition to runFrom a reviewed definition to a disposable run
Architecture · 06 of 19 · Run anatomyWhat a run gets, and the only two ways out
State machine · 07 of 19 · Run lifecycleA run always ends, whether or not anyone is watching
Tree · 08 of 19 · Agent teamsAgent teams: every child is narrower than its parent
Architecture · 09 of 19 · Backend fleetsBackend infrastructure: three fleet classes, one contract
Architecture · 10 of 19 · Model and tool planeTwo gates out of the sandbox: one for tools, one for models
Sequence · 11 of 19 · Identity and credentialsOne call, end to end: identity in, scoped token out, nothing kept
Access matrix · 12 of 19 · Tool tiersWhat each kind of agent may do, and who really does it
Architecture · 13 of 19 · AuthorityEffective authority is the minimum of five inputs, and runtime can only lower it
Flowchart · 14 of 19 · Agent PR guardrailsAn agent PR goes through the same gates, plus two that are about agents
Data flow · 15 of 19 · Flight recorderFlight recorder: reuse the telemetry, add one tamper-evident chain
Process · 16 of 19 · PreflightPreflight: score every agent change against incidents you have already solved
Architecture · 17 of 19 · AI triageAI triage: move Holmes's GitHub access behind Clearance
Deployment · 18 of 19 · Fleet placementWhere it runs: dev gets the write path and the runs, upper gets none
Gantt · 19 of 19 · RolloutRollout: four phases, each closed by a live check before the next begins
Plan
The Hangar family, the roadmap, the Airframe scorecard, the contract and the Skyport demo.
Architecture · 01 of 08 · The family
Hangar with Autopilot: six products and one reference system
Gantt · 02 of 08 · RoadmapTwenty-eight weeks, six milestones, one score to move
Dependency graph · 03 of 08 · OrderWhat blocks what: the critical path in six boxes
Matrix · 04 of 08 · ScorecardThe Airframe scorecard: ten dimensions, measured today
Architecture · 05 of 08 · The contractThe contract: one source, generated artifacts, four consumers
Sequence · 06 of 08 · One sentenceThe parachute sentence, end to end
Matrix · 07 of 08 · Skyport AISkyport gains six AI workloads, one per shape
Sequence · 08 of 08 · Event to teamA delayed flight becomes one draft, and a team, and a human decision
Reference architecture
Reference architecture for agents on a platform: substrate, gateway, identity, observability, autonomy, evaluation.
Architecture · 01 of 10 · Agent substrate
Agent execution substrate: sandboxed, scoped, disposable
Secure paved road · 02 of 10 · Tool gatewayMCP tool gateway: the only road to infrastructure
Sequence · 03 of 10 · Golden path contractGolden path as a contract: discover, invoke, verify
Flowchart · 04 of 10 · CI/CD validation loopCI/CD as a validation loop the agent can retry against
Layer stack · 05 of 10 · Multi-cloud platformOne platform surface across AWS and OCI
Nested · 06 of 10 · Agent identityAgents are identities: each ring narrows the blast radius
Timeline · 07 of 10 · ObservabilityDid the agent do the right thing, and how do we know?
State machine · 08 of 10 · AutonomyAutonomy is earned per alert class, and revocable
Swimlane · 09 of 10 · RemediationAlerts that resolve themselves, or page with a tested hypothesis
Process · 10 of 10 · Evaluating infrastructure agentsEvaluating infrastructure agents: a regression suite, not a vibe
Glidepath
Glidepath's CI/CD architecture: system overview, chaining, multi-cluster, onboarding, deploy versus release.
Architecture · 01 of 07 · System overview