Search and contents

Deployment and trust boundaries

Deployment follows trust, resource and recovery boundaries, not the number of domains or pages; logically several platforms, physically a few controlled runtime units at first, extended step by step as security and load require.

In developmentNot availableVerified

What this page covers

This is MYRILUM's target architecture. It does not mean everything on the map is live; whether a capability can be used today is stated in “Current availability”.

Logically several platforms; physically, a few controlled runtime units to begin with. This page states principles only; implementation details are not published.

Deploy by boundary, not by domain

Deployment units are divided by trust level, resource needs and how they recover after a failure, not by how many domains or pages there are. The brand website, the customer application, the staff operations application, and the status page and documentation are separate entry points; the brand website carries only public information and cannot reach customer business data.

Every connection is authenticated

Two components sitting side by side on a diagram does not mean they can reach each other on the network. Databases are never exposed directly to browsers or to arbitrary agents; every call is authenticated and allowed by resource-level permission.

Customer runs, execution and release are isolated

Agents and tools run in restricted execution environments where files, network, processes and keys are kept apart, and work never depends on a web request staying open. Customer tasks cannot read production release credentials, and engineering automation never inherits full access to customer data. Keys and configuration are authorized separately by environment, purpose, service and region.

No premature complexity

At the start, having several platforms is no reason to duplicate accounts, payments and databases, and full microservices, active-active multi-cloud or self-built compute are not the default. Business services are organized by domain boundary and one domain never writes another domain's data directly; splitting happens only once measured load calls for it.

Choices are measured first

Backups go through restore drills and reconciliation; observability looks at technical operation, cost and business events together. Which providers are used, which regions host what, and what the capacity and availability targets are all get measured first; the architecture map does not decide them.

Source

This page follows A26 of the MYRILUM architecture map v2.2. Under the public boundary it publishes principles only and carries no diagram. Related: “Unified experience and domain entry”; “Identity, authorization and access decisions”; “Regions, disaster recovery and exit”.

Was this page helpful?

Sources and maintenance
Region
Global
Version
0.1.0
Publication
Published globally
Document status
Approved · Drafted
Authorization
Public information
Command authority
None
Type
Concept
Audience
Technical leads, Developers, Organization leaders, Integration partners, Agents
Safety class
Informational
Agent tasks
understand_platform_architecture
Owner
Web3Capital Documentation Steward
Last verified
2026-09-23
Review due
2026-10-23
Source commit
6b41cce4496d
Canonical authority
SRC-ARCHITECTURE-ATLAS-V2-2
Content digest
26e1b546d568520f
Stable citation
MYRILUM-DOC-ARCH-026@0.1.0:en#overview

Machine-readableMarkdownMetadataJSON-LDChunks

This documentation grants no execution, release, or production authority.

Sources and maintenance

Region
Global
Version
0.1.0
Publication
Published globally
Document status
Approved · Drafted
Authorization
Public information
Command authority
None
Type
Concept
Audience
Technical leads, Developers, Organization leaders, Integration partners, Agents
Safety class
Informational
Agent tasks
understand_platform_architecture
Owner
Web3Capital Documentation Steward
Last verified
2026-09-23
Review due
2026-10-23
Source commit
6b41cce4496d
Canonical authority
SRC-ARCHITECTURE-ATLAS-V2-2
Content digest
26e1b546d568520f
Stable citation
MYRILUM-DOC-ARCH-026@0.1.0:en#overview

This documentation grants no execution, release, or production authority.