Koine is three layers with strict trust boundaries, three entry paths that share one Gateway, and a Prompt Stack that guarantees the AI never writes. This page explains each piece.
One interface, bidirectional, per-dialect drivers. Knows nothing about users, roles, or prompts. Takes a compiled query, returns rows or a write receipt.
The product itself. Every request — chat turn, direct API call, or inbound webhook — passes through this layer once.
Koine Studio for operators. Koine Chat for end users. Or build your own.
Each layer depends only on the one directly below. This is the single most important invariant in Koine — breaking it loses the moat.
Analysts, ministers, partner officers ask in plain EN / FR / PT. Koine composes a four-tier prompt, picks tools from the catalogue, renders the answer with citations and an expandable SQL trace. The AI can propose writes as spec cards; humans execute them elsewhere.
Your dashboard, your mobile app, your internal form. Call POST /api/v1/tools/<slug>/run/ with JSON. Same Gateway, same audit, same RBAC. Writes allowed with the right capability.
Webhook in → tool runs → destination connector receives. Schedule runs. Map fields between Salesforce and your Postgres. Move data across systems with dry-run previews, two-party approval for anything destructive, and a 7-year audit trail.
The Gateway checks auth, capability, rate limit, PII, and path-write-gating on every request regardless of entry. There is no bypass. There is no dev-mode override. Platform admin included.
Sealed. Loaded first. Refusal rules, tool-call protocol, citation schema, write-never. Ships with the Middleware. Tenants cannot edit.
Domain tone, organisation identity, tenant-specific caveats. Edited in Studio per locale, eval-gated on publish.
Formal for a Minister, concise for a field officer. Composes additively with Tenant Voice; conflicts resolved most-restrictive-on-safety.
/terse · /lang fr · /explain. Cosmetic only. Cannot unlock writes, change connectors, or weaken governance. Ever.
Role = scope (event types, states, LGAs, dates, projects) + capabilities (export, write, manage, approve, PII). Union across all active roles.
Read-audit 12 months, write-audit 7 years. Append-only. Every prompt compose, tool run, and approval recorded with caller + approvers.
Three tiers. Tier 1 = reversible small writes. Tier 2 = one admin approves. Tier 3 = two admins. Dry-run tokens mandatory.
Tenants bind connectors in their region. Cross-region is opt-in. Dedicated deploys available for sovereign clients.