Skip to main content

HALF Banner

⚡ HALF — Hermes Agentic Lifecycle Framework

Transform high-level business concepts into production-ready software through autonomous, multi-agent orchestration.

CI CodeQL PyPI License: MIT Python 3.13+ mypy Tests Coverage


What is HALF?

HALF is a modular, open-source framework that enables AI agents to autonomously execute the full software development lifecycle. It implements a 5-phase structured SDLC with built-in quality gates, fail-safe protocols, explicit human checkpoints, and a GUI-first Command Center.

graph LR
    A[Concept] --> B[Phase 1<br/>Discovery & Strategy]
    B -->|Gate G1| C[Phase 2<br/>Development & Coding]
    C -->|Gate G2| D[Phase 3<br/>Quality Assurance]
    D -->|Gate G3| E[Phase 4<br/>Polish & Deployment]
    E -->|Finality Gate| F[Phase 5<br/>Iteration]
    F --> B

Core Principles

  • Agent executes, human directs — Agents handle implementation; humans set intent, review checkpoints, own decisions
  • Gates before progress — Every phase has mandatory quality gates
  • Fail-safe by design — 3-level escalation: step retry → phase retry → human gap report
  • TDD is mandatory — Harness-first: write failing tests before any implementation
  • Codification Imperative — Every manual fix becomes a durable improvement to the agent system
  • No-slop context — Agents earn context through hierarchical RAG, not flat directory dumps

Quick Start

# Install from PyPI (30 seconds)
pip install hermes-half
half version
# → HALF v1.0.0

# Full local setup with GUI + services
git clone https://github.com/iknowkungfubar/Hermes-Agentic-Lifecycle-Framework.git
cd Hermes-Agentic-Lifecycle-Framework
bash scripts/setup.sh
./src-tauri/target/release/half-command-center

The 5 Phases

Phase Objective Agent Skills Human Checkpoint
1: Discovery & Strategy Requirements → Spec → Architecture Discovery, Specification, Architect Review spec + arch
2: Development & Coding TDD implementation with Tri-Phasic Loop Scaffold, Research, Plan, Implement, Simplify
3: Quality Assurance Test completeness + security red-teaming Testing, Security, Integration Review test + security report
4: Polish & Deployment IaC + CI/CD + production readiness Infrastructure, CICD, Launch Finality Gate sign-off
5: Iteration Monitoring + triage + codification Observe, Iterate, Codify

Three Human Checkpoints (non-negotiable)

  1. After Phase 1 — Review spec and architecture before code is written
  2. After Phase 3 — Review test results, security findings, merge confidence
  3. After Phase 4 — Review launch readiness via Finality Gate (cryptographic sign-off)

GUI Command Center

The Tauri 2.0 desktop application provides a 3-pane Command Center:

┌──────────────────┬──────────────────────┬──────────────────┐
│  Swarm Overview   │  PDA Chat + CoT      │  System Resources│
│  (Focalboard      │  Reasoning Graph      │  (Finality Gate, │
│   Kanban)         │  + Agent Mail Logs    │   VRAM, Error    │
│                   │                       │   Budget)        │
│  Live pipeline    │  Commander Agent      │  Locked/Unlocked │
│  Phase status     │  chat interface       │  Sign-off panel  │
│  Active agents    │  Run phases, gates    │  Stalled node    │
│                   │  Generate MRP         │  watchdog        │
└──────────────────┴──────────────────────┴──────────────────┘

Launch: ./src-tauri/target/release/half-command-center

Chat commands: status, help, run phase 2, gate check phase 1, generate mrp, deploy


Architecture

┌─────────────────────────────────────────────────────────────────┐
│                    Command Center (Tauri 2.0 GUI)                │
│  ┌────────────────┐  ┌─────────────────┐  ┌──────────────────┐  │
│  │ Focalboard     │  │ PDA Chat +      │  │ Finality Gate    │  │
│  │ (Kanban)       │  │ Agent Mail      │  │ + Observability  │  │
│  └───────┬────────┘  └────────┬────────┘  └────────┬─────────┘  │
└──────────┼────────────────────┼────────────────────┼────────────┘
           │ HTTP :9721         │ HTTP :9721          │
           ▼                    ▼                      ▼
┌─────────────────────────────────────────────────────────────────┐
│                     HTTP Sidecar (Python)                        │
│   /api/status  /api/chat  /api/gate-check  /api/health          │
│   /api/generate-mrp  /api/approve_deployment  /api/vram         │
└───────────────────────────────┬─────────────────────────────────┘
                                │
┌───────────────────────────────┼─────────────────────────────────┐
│               LangGraph State Machine (5-phase DAG)             │
│   16 Agent Skills + Code-Simplifier + Verification-at-Scale    │
└───────────────────────────────┬─────────────────────────────────┘
                                │
           ┌────────────────────┼────────────────────┐
           ▼                    ▼                    ▼
┌──────────────────┐  ┌──────────────────┐  ┌────────────────────┐
│ Observability    │  │ Execution        │  │ CI/CD (GitHub      │
│ (Prometheus,     │  │ Sandbox (Podman/ │  │ Actions) +         │
│  Grafana)        │  │ Docker)          │  │ Docker Image       │
│  Agent Mail DB   │  │ Git Worktrees    │  │ PyPI Package       │
└──────────────────┘  └──────────────────┘  └────────────────────┘

Running Services

Service Port Purpose
HTTP Sidecar API :9721 REST API for GUI + chat
Prometheus :9090 Metrics collection
Grafana :3000 Visualization dashboards
Focalboard :8000 Kanban task management
PostgreSQL :5432 Focalboard backing store
Agent Mail DB SQLite inter-agent messaging

Fail-Safe Protocol

escalation:
  level_1: "Step retry (×3)  auto-analyze failure, adjust, retry"
  level_2: "Phase retry (×2)  re-run phase with expanded context"
  level_3: "Human escalation  generate Gap Report, pause pipeline"
circuit_breakers:
  - ">5 test failures  halt phase 2"
  - "CRITICAL security finding  halt phase 3"
  - "coverage drops >5%  warn before proceeding"
error_budget:
  total: "100 points / 30 days"
  thresholds: {warning: "<40%", critical: "<20%", exhausted: "0%"}

Security

CVE Component Mitigation
CVE-2025-67644 LangGraph SQLite Metadata allowlist validates all filter keys
CVE-2026-28277 LangGraph msgpack JSON-safe serialization prevents RCE
  • Execution sandbox (read-only vault mount, network-isolated containers)
  • Dangerous command denylist (rm -rf, dd, mkfs, format)
  • Path traversal protection via pre-execution hooks
  • Secrets detection in CI (gitleaks)
  • Weekly dependency scans via Dependabot
  • Zero-trust agent identity (SPIFFE/SPIRE config) — Coming in v1.x
  • eBPF Grimlock datapath enforcement (kernel-level) — Coming in v1.x

Repository Structure

src/half/                # Package root + CLI entrypoint
├── agents/              # 16 agent skill implementations
├── core/                # Orchestrator, gates, fail-safe, error budget
├── runtime/             # LangGraph graph, checkpointer, nodes
├── state/               # LangGraph security (CVE mitigations)
├── agent_mail/          # Decentralized agent coordination
├── half_voice/          # Speech-to-text and text-to-speech
├── half_focalboard/     # Kanban API client
├── http_sidecar.py      # REST API server (GUI backend)
└── half_sidecar.py      # CLI sidecar (Tauri IPC)

scripts/                 # Setup, genesis, CI integration runner
templates/               # fail-safes.yaml, gap-report.md
references/              # quickstart-execution.md
docker/                  # Dockerfile + docker-compose (FOSS stack)
tests/                   # 875+ tests (unit + integration + infrastructure)
  ├── tdd/               # TDD-style regression tests
  ├── integration/       # Integration tests (sidecar, services)
  ├── infrastructure/    # Infrastructure tests (Podman, ffmpeg, network)
  ├── coverage/          # Subprocess coverage tests
  └── e2e/               # End-to-end pipeline tests

Development

pip install -e ".[dev]"
make lint          # Run ruff linter
make typecheck     # Run mypy type checker
make test          # Run test suite (875+ tests)
make ready         # Full CI pipeline

# Run with coverage
pytest tests/ -q --cov=src/half --cov-report=term-missing

# Start services for integration tests
python -m half.http_sidecar &
pytest tests/integration/ -q

Test Stats

Metric Value
Total tests 875+
Integration tests 160+
Infrastructure tests 25+
Subprocess coverage tests 15
E2E pipeline tests 1
mypy errors 0 (81 files)
Coverage 77% (sys.monitoring)
Skipped (graceful) 13 (Docker/GPU optional)

License

MIT — See LICENSE.

Built by Turin Tech Solutions with Hermes Agent.


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

hermes_half-1.0.1.tar.gz (210.0 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

hermes_half-1.0.1-py3-none-any.whl (206.1 kB view details)

Uploaded Python 3

File details

Details for the file hermes_half-1.0.1.tar.gz.

File metadata

  • Download URL: hermes_half-1.0.1.tar.gz
  • Upload date:
  • Size: 210.0 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/6.2.0 CPython/3.13.14

File hashes

Hashes for hermes_half-1.0.1.tar.gz
Algorithm Hash digest
SHA256 ea2bae5582017eca7c59b818ed8d1469a1779cecb3bf5067db6b256411c447a2
MD5 5756d27e2d3a42ab269e603c838b3de1
BLAKE2b-256 94c08206edf56789cc466982bac37af6bfd924f361107020ac4cbde68e7051a9

See more details on using hashes here.

File details

Details for the file hermes_half-1.0.1-py3-none-any.whl.

File metadata

  • Download URL: hermes_half-1.0.1-py3-none-any.whl
  • Upload date:
  • Size: 206.1 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/6.2.0 CPython/3.13.14

File hashes

Hashes for hermes_half-1.0.1-py3-none-any.whl
Algorithm Hash digest
SHA256 d2f12e38cec0aee5fa6a7c83c356b8788551238bdfc45092a2c58ba417ebf202
MD5 048acc3869e205e1db7a7f0d6f50191b
BLAKE2b-256 ba4092aec0aed05034773f95250e0cf3709aed945cadc14ab00cc23f192811fb

See more details on using hashes here.

Release history Release notifications | RSS feed

This release

1.0.1 This release

2 files

1.0.0

2 files

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page