TaifoonTAIFOON
Builders Programme overview
TAIFOON PROTOCOL — MASTER ROADMAP

The roadmap delivers itself.

Every delivery in the Builders Program carries phase, sourcing, OSS class, COE gate, and regulatory mapping. Six feedback edges in the autonomous loop produce inputs for the next tranche of bounties without human triage. Source of truth: builders-program.xml.

Deliveries
30
Shipped
2
Open source
13
Fair-code (TSIL)
9
COE-gated
21

PHASES

Ph.1BUILD
target 2026-09-30

Builders Program GA — bounty board, reviewer fleet, escrow, OSS adapter loop

Ph.2GOVERN
target 2027-03-31

Federated orchestration, data lineage, COE re-certification, EU AI Act audit

Ph.3EVOLVE
target 2027-09-30

Self-extending delivery loop, autonomous skill-library promotion, multi-LOB isolation

Ph.4COMPOUND
target continuous

Steady-state compound: Builders Program funds and extends itself via revenue share

AUTONOMOUS DELIVERY LOOP — THE ROADMAP DELIVERS ITSELF

Six declared edges. Three autonomous, three COE-gated. COE retains kill-switch authority on every loop via the coe_gate flag.

AUTONOMOUS
Anomaly → Fix Bounty
source: anomaly-scanner-agent
generates: delivery type="bounty" category="decoder-gap" tier from severity
SLA 1h
AUTONOMOUS
Protocol Upgrade → Adapter Refresh Bounty
source: protocol-upgrade-detector
generates: delivery type="bounty" category="decoder-refresh" tier="MEDIUM"
AUTONOMOUS
Performance Regression → Optimisation Bounty
source: telemetry-harness
generates: delivery type="bounty" category="optimisation" tier="LOW"
COE-GATED
Common-Pattern → Skill-Library Promotion
source: pattern-miner-agent
generates: delivery type="skill_promotion" — extracted, certified, published
COE-GATED
Inconclusive Verdict → New Reviewer Bounty
source: orchestrator
generates: delivery type="reviewer-agent" tier="PLATFORM"
AUTONOMOUS
Adapter Revenue → Treasury → New Bounty Funding
source: BuildersRegistry.recordRevenueTouch
generates: BountyEscrow.fund() of next-priority bounty per <funding_policy/>

Ph.1 BUILD — 13 DELIVERIES

d-build-bounty-board·OPEN SOURCE
SHIPPED
Bounty board + registry XML

Public bounty board at taifoon.io/builders/bounties. Source: bounties.xml (41 bounties seeded).

evals: 5_data_governance, 8_operational_readinessregs: EU_AI_ACT/Art.13, NIST_AI_RMF/MAP
d-build-reviewer-fleet·OPEN SOURCE· COE
IN_PROGRESS
open-mamba reviewer fleet (orchestrator + 11 reviewers)

Two-of-N concurrence pipeline. Reference reviewers: evm-replay, schema-conformer.

evals: 1_accuracy_quality, 2_security, 6_guardrail_adherenceregs: EU_AI_ACT/Art.14, NIST_AI_RMF/MEASURE, ISO_IEC_42001
d-build-on-chain-registry·OPEN SOURCE· COE
IN_PROGRESS
BuildersRegistry.sol + BountyEscrow.sol

On-chain bounty / submission / verdict / revenue-share registry on Taifoon devnet.

evals: 3_infrastructure_compliance, 7_economic_soundnessregs: EU_AI_ACT/Art.11, NIST_AI_RMF/GOVERN
d-build-protocol-bridge-rest-mcp·FAIR-CODE (TSIL)· COE
OPEN
Protocol Bridge — REST + MCP surface

Solo.io Kgateway exposing Builders Program over REST + MCP. n8n / Vertex / Copilot Studio ready.

evals: 3_infrastructure_compliance, 8_operational_readinessregs: EU_AI_ACT/Art.13, SOC2/Security
d-build-data-access-layer·FAIR-CODE (TSIL)· COE
OPEN
Data Access Layer (per-agent IAM + OPA)

Per-agent permissions in BuildersRegistry certificate; OPA sidecar runtime enforcement; deny-by-default.

evals: 2_security, 3_infrastructure_compliance, 5_data_governanceregs: EU_AI_ACT/Art.15, GDPR/Art.25, NIST_AI_RMF/GOVERN
d-build-ip-protection·ENTERPRISE
OPEN
IP Protection — adapter source + signing keys

AWS KMS encryption for adapter manifests; HSM-backed reviewer signing keys; LOB-scoped S3 policies.

evals: 2_securityregs: GDPR/Art.32, SOC2/Confidentiality
d-build-responsible-ai-baseline·FAIR-CODE (TSIL)· COE warning
OPEN
Responsible AI baseline (Credo AI + Bedrock Guardrails + OPA)

Bias detection, explainability, regulatory audit reporting via Credo AI GAIA. Bedrock Guardrails + OPA cover content + policy-as-code only.

evals: 4_regulatory_compliance, 6_guardrail_adherenceregs: EU_AI_ACT/Art.9, NIST_AI_RMF/MEASURE, ISO_IEC_42001, NAIC_MODEL_BULLETIN
d-build-training-data-governance·ENTERPRISE· COE
OPEN
Replay-set + training-data governance

Glue Data Catalog + S3 Object Lock. Each adapter certificate links to the exact replay-set sha256.

evals: 5_data_governance, 4_regulatory_complianceregs: EU_AI_ACT/Art.10, ISO_IEC_42001/Annex_A
d-build-lob-isolation·ENTERPRISE· COE
OPEN
LOB / customer-tenant isolation

VPC per tenant + security groups. Cross-LOB demonstrably blocked at network layer.

evals: 2_security, 3_infrastructure_complianceregs: SOC2/Security, GDPR/Art.32
d-build-bounty-corpus·OPEN SOURCE
IN_PROGRESS
Bounty corpus — 41 seeded bounties

Every protocols.xml gap mapped to a bounty + 2 Surge flagships + Phase 5/6 + 5 dossiers.

evals: 1_accuracy_quality, 7_economic_soundnessregs: EU_AI_ACT/Art.13
d-build-adapter-template·OPEN SOURCE
SHIPPED
Adapter v1 template
evals: 1_accuracy_quality, 5_data_governance
d-build-matrix-live-feed·OPEN SOURCE
OPEN
Matrix Live Feed (SSE) — Phase 5 of protocol coverage roadmap
evals: 8_operational_readiness
d-build-fee-verification·FAIR-CODE (TSIL)· COE
OPEN
Fee Verification — Phase 6 of protocol coverage roadmap
evals: 1_accuracy_quality, 7_economic_soundnessregs: EU_AI_ACT/Art.13

Ph.2 GOVERN — 8 DELIVERIES

d-govern-federated-orchestration·FAIR-CODE (TSIL)· COE
OPEN
Federated orchestration across external agent platforms

Step Functions + EventBridge with Protocol Bridge routing. Palantir AIP POC required.

evals: 3_infrastructure_compliance, 8_operational_readinessregs: NIST_AI_RMF/MANAGE, ISO_IEC_42001
d-govern-data-lineage·OPEN SOURCE
OPEN
Data lineage — OpenLineage + Marquez
evals: 5_data_governanceregs: EU_AI_ACT/Art.10, GDPR/Art.5
d-govern-data-classification·ENTERPRISE· COE
OPEN
Data classification engine
evals: 5_data_governance, 2_securityregs: GDPR/Art.5/25, EU_AI_ACT/Art.10
d-govern-kb-governance·FAIR-CODE (TSIL)· COE
OPEN
KB / replay-set governance
evals: 5_data_governanceregs: EU_AI_ACT/Art.10
d-govern-orchestration-registry·OPEN SOURCE· COE
OPEN
Orchestration registry — approved patterns
evals: 3_infrastructure_compliance, 8_operational_readiness
d-govern-reviewer-recertification·OPEN SOURCE· COE
OPEN
Reviewer agent re-certification cycle

Quarterly re-cert + on-demand triggers from upheld challenges. DynamoDB correction queue → SQS → Training Engine via EventBridge.

evals: 1_accuracy_quality, 2_security, 4_regulatory_compliance, 6_guardrail_adherenceregs: NIST_AI_RMF/MANAGE, ISO_IEC_42001
d-govern-eu-ai-act-audit·ENTERPRISE· COE
OPEN
EU AI Act audit pipeline

Annual technical-documentation generation per Art.11; transparency disclosures per Art.13; human-oversight log per Art.14.

evals: 4_regulatory_complianceregs: EU_AI_ACT/Art.11/13/14/15
d-govern-soc2-type2·ENTERPRISE· COE
OPEN
SOC 2 Type II annual audit
evals: 2_security, 3_infrastructure_compliance, 8_operational_readinessregs: SOC2/Security/Availability/Confidentiality

Ph.3 EVOLVE — 7 DELIVERIES

d-evolve-anomaly-scanner·FAIR-CODE (TSIL)
OPEN
Anomaly scanner agent (loop-1 source)

Detects divergence between adapter output and on-chain ground truth; emits fix_bounty_v1.

evals: 1_accuracy_quality, 8_operational_readiness
d-evolve-protocol-upgrade-detector·OPEN SOURCE
OPEN
Protocol-upgrade detector (loop-2 source)
d-evolve-telemetry-harness·OPEN SOURCE
OPEN
Telemetry harness — adapter perf + regression detection (loop-3 source)
d-evolve-pattern-miner·FAIR-CODE (TSIL)· COE
OPEN
Pattern-miner agent — extracts skill-library candidates (loop-4 source)
d-evolve-skill-library·OPEN SOURCE· COE
OPEN
Skill Library — certified building blocks for next contributor

Common patterns extracted, certified, published. Next adapter starts from certified, tested blocks.

evals: 1_accuracy_quality, 8_operational_readiness
d-evolve-orchestration-library·OPEN SOURCE· COE
OPEN
Orchestration Library — certified delivery patterns
evals: 3_infrastructure_compliance
d-evolve-autonomous-funding·ENTERPRISE· COE
OPEN
Autonomous treasury funding (loop-6)

Quarterly: 20% to high-severity gap closure, 30% FLAGSHIP queue, 30% platform tier, 20% reviewer stake top-up.

Ph.4 COMPOUND — 2 DELIVERIES

d-compound-saas-multi-tenant·ENTERPRISE· COE
PROPOSED
Builders Program as a SaaS — multi-tenant deployment

Plug-in for n8n, Vertex, Copilot Studio, Palantir AIP. Per-tenant LOB isolation, per-tenant treasury, per-tenant reviewer pool.

evals: 2_security, 3_infrastructure_compliance, 8_operational_readinessregs: SOC2/Security/Availability/Confidentiality, ISO_IEC_42001
d-compound-reciprocal-skill-market·FAIR-CODE (TSIL)· COE
PROPOSED
Reciprocal skill market — adapters trade across tenants

An adapter shipped on Tenant A can be licensed by Tenant B. Revenue routes back to original contributor.

LICENSING MATRIX

OPEN SOURCE (12)
  • · d-build-bounty-board (Apache-2.0)
  • · d-build-bounty-corpus (MIT)
  • · d-build-adapter-template (MIT)
  • · d-build-on-chain-registry (MIT)
  • · d-build-reviewer-fleet (Apache-2.0)
  • · d-govern-data-lineage (Apache-2.0)
  • · d-govern-orchestration-registry (Apache-2.0)
  • · d-govern-reviewer-recertification (Apache-2.0)
  • · d-evolve-protocol-upgrade-detector (Apache-2.0)
  • · d-evolve-telemetry-harness (Apache-2.0)
  • · d-evolve-skill-library (Apache-2.0)
  • · d-evolve-orchestration-library (Apache-2.0)
FAIR-CODE (TSIL) (9)
  • · d-build-protocol-bridge-rest-mcp
  • · d-build-data-access-layer
  • · d-build-responsible-ai-baseline
  • · d-build-fee-verification
  • · d-govern-federated-orchestration
  • · d-govern-kb-governance
  • · d-evolve-anomaly-scanner
  • · d-evolve-pattern-miner
  • · d-compound-reciprocal-skill-market
ENTERPRISE-ONLY (8)
  • · d-build-ip-protection
  • · d-build-training-data-governance
  • · d-build-lob-isolation
  • · d-govern-data-classification
  • · d-govern-eu-ai-act-audit
  • · d-govern-soc2-type2
  • · d-evolve-autonomous-funding
  • · d-compound-saas-multi-tenant

SAAS PARTNERS

n8n.ioplanned

n8n community node — exposes 6 actions: list_open_bounties, claim_bounty, submit_adapter, get_verdict, claim_revenue, register_reviewer.

license: n8n Sustainable Use License (compatible with TSUL by design — same fair-code lineage)
Google Vertex AIproposed

Vertex extension; A2A surface (Ph.2)

Microsoft Copilot Studioproposed

Connector catalog entry; Azure-tenant LOB isolation

Palantir Foundry / AIPpoc_required

Protocol Bridge POC connectivity required before Ph.2 GA

Claude / Anthropic MCPshipped

MCP manifest at taifoon.io/.well-known/mcp.json — list_open_bounties, get_bounty, list_reviewers

REGULATORY FRAMEWORKS COVERED

EU_AI_ACTRisk-management, data quality, technical documentation, transparency, human oversight, accuracy
NIST_AI_RMFNIST AI Risk Management Framework 1.0
ISO_IEC_42001AI management system — Annex A controls
NAIC_MODEL_BULLETINUS insurance LOB AI guidance
GDPRPrivacy-by-design, security of processing
SOC2Annual Type II audit