Skip to main content

AI governance framework for secure software delivery

Project description

{ai} engineering

Turn AI-assisted delivery into a governed local workflow — in any repo, any IDE.

PyPI version Python 3.11+ CI Quality Gate Coverage Snyk security License: MIT

54 skills · 9 agents · 6 surfaces · 1 governed flow


ai-eng install, then ai-eng doctor (warnings are advisory), then exploring the .ai-engineering tree plus 54 skills and 9 agents in VS Code, ending with /ai-start in Claude Code

{ai} engineering installs a deterministic governance layer into any repository — specs, decisions, skills, agents, hooks, and an audit trail, all as versioned local files. No hosted control plane. No provider lock-in. Every IDE follows the same rules.

Quickstart

Get a governed repo in under a minute — {ai} engineering is uv-first:

uv tool install ai-engineering   # install the CLI
ai-eng install .                 # add governance to your repo
ai-eng doctor                    # [PASS] hooks, mirrors, manifest, required tools
Prefer pip or pipx?
pipx install ai-engineering
# or
python -m pip install --user ai-engineering

Then open your editor and type /ai-start. Prefer to ease in? Start in observe mode and enforce only what proves useful.

What you get: 54 skills and 9 agents you invoke with /ai-<name> · a spec-driven workflow · automatic checks on every change · versioned local files you own. Update any time with ai-eng update.

The governed workflow

You drive the intent and approve each step; the gates catch the rest — no secrets, broken docs, or untested changes reach a merge.


The governed workflow: /ai-brainstorm agrees the spec, /ai-plan breaks it down, /ai-build or /ai-autopilot implements it, /ai-pr ships a reviewed and merged pull request. You approve each step; automatic checks (clean diff, tests, docs, review) must pass before merge.

The canonical chain is /ai-brainstorm → /ai-plan → /ai-build → /ai-pr. Use it whenever work changes product behavior, framework behavior, security posture, public docs, or release state. /ai-commit stays available for WIP checkpoints; it is not part of the chain.

Your toolkit

Fifty-four skills and nine agents cover the whole delivery loop — and the same commands work in every supported editor.


54 skills and 9 agents grouped by what you do: plan and build, ship safely, design and docs, research and learn. The same commands run in Claude Code, GitHub Copilot, Codex, Antigravity, OpenCode, and Cursor.

Need evidence? /ai-research returns cited findings from local context, the web, and async deep research. And because plans carry ready-to-apply patches, mechanical work routes to a smaller model — routine edits stay cheap.

Supported surfaces

One canonical payload is mirrored, byte-for-byte, into every enabled surface.

Surface Entry point
Claude Code CLAUDE.md
GitHub Copilot .github/copilot-instructions.md
OpenAI Codex AGENTS.md
Antigravity AGENTS.md + .agents/
OpenCode .opencode/
Cursor .cursor/

The ruleset lives in AGENTS.md. Project identity and hard prohibitions live in CONSTITUTION.md. Release history lives in CHANGELOG.md.

Highlights

  • Ship a whole spec in one run/ai-autopilot decomposes it, builds a dependency DAG, runs parallel waves, and converges on a reviewed PR.
  • What you approved is what shipped — a brainstorm hard-gate plus a spec-lifecycle state machine keep every change anchored to the approved spec (Rung 2 SDD — spec and code stay in sync, not just spec-first that drifts).
  • An audit trail you own — every AI action lands in a hash-chained NDJSON log you can verify offline, with no telemetry by default.
  • Every bypass has an owner and an expiry — no # noqa or @ts-ignore; findings are refactored or formally risk-accepted with a severity-based TTL.
  • Every tool call is screened before it runs — a deterministic guard checks each edit, write, and shell command and stops risky ones.
  • AI quality is a tested property — skills are measured with pass@k, and a regression beyond five points blocks the pull request.

Documentation

  • docs/ — architecture, getting started, and the diagram set
  • CONSTITUTION.md — mission, stakeholders, prohibitions
  • CHANGELOG.md — release history and breakage notes

Standing on the shoulders of

{ai} engineering builds on ideas and patterns from these projects:

Project What we learned
Superpowers Brainstorm hard-gate, TDD-for-skills patterns
review-code Handler-as-workflow, parallel specialist agents
dotfiles/ai Agent matrix, SDLC coverage
autoresearch Radical simplicity as a design principle
SpecKit Spec-driven workflow inspiration
Anthropic Skills Frontend-design, skill-creator — absorbed and extended

Contributing

Contributions are welcome. See CONTRIBUTING.md for development setup, code style, testing, and the pull request process. This project follows the Contributor Covenant Code of Conduct.

License

MIT. See LICENSE.

Star history

Contributors

Made with contrib.rocks.

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

ai_engineering-0.12.1.tar.gz (12.7 MB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

ai_engineering-0.12.1-py3-none-any.whl (3.3 MB view details)

Uploaded Python 3

File details

Details for the file ai_engineering-0.12.1.tar.gz.

File metadata

  • Download URL: ai_engineering-0.12.1.tar.gz
  • Upload date:
  • Size: 12.7 MB
  • Tags: Source
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/6.1.0 CPython/3.13.13

File hashes

Hashes for ai_engineering-0.12.1.tar.gz
Algorithm Hash digest
SHA256 ec9a872bd6f7af5cf6ac3e6c37e4a3d52daa8f3cc21badc573524b7b8b82d4bc
MD5 0aeed5e0dfc6d891796b8df9cf340787
BLAKE2b-256 4df9cc4b8f83557257bab72eca637c1745b62b63c303a7f390b6f8d45146d181

See more details on using hashes here.

Provenance

The following attestation bundles were made for ai_engineering-0.12.1.tar.gz:

Publisher: release.yml on arcasilesgroup/ai-engineering

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

File details

Details for the file ai_engineering-0.12.1-py3-none-any.whl.

File metadata

File hashes

Hashes for ai_engineering-0.12.1-py3-none-any.whl
Algorithm Hash digest
SHA256 2f090953870ef823c5cb1192dd22d54e3d0c370c132ef9ee2edd0d503cb2629a
MD5 ee28b4aae62a2ec9c6e599ee46e61a06
BLAKE2b-256 5d19fe6ddc7cebd509e816ba91feb2bdcedbdff16117cbe6f0cdcc60dafe4377

See more details on using hashes here.

Provenance

The following attestation bundles were made for ai_engineering-0.12.1-py3-none-any.whl:

Publisher: release.yml on arcasilesgroup/ai-engineering

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page