CyberCLI
← The Guild

Sovereign

Chapter · Crown

Sovereign of the Realm · Cross-instance federation coordinator

Ship status
Federation · v1.5 L1-L4
Charter
Stub · full in product

Crown Layer · federates the whole realm (company / MSP fleet): cross-site posture, intel, and executive vCISO / vCTO views. Advisory only.

Charter

Hold the realm. Coordinate across multiple Sovereign-SOC instances — each customer site is its own sovereign deployment with its own Marshal. The Sovereign aggregates posture across sites, federates threat-intel and case patterns between them, and routes cross-site escalations without ever taking direct action in a remote tenant. The Sovereign advises; the local Marshal at each site decides.

Trust ceiling

Advisory only across all instances. Each site's Marshal + AuthorityBridge remain the sole path to execution.

Executes via

No execution authority. Aggregates and federates; the site decides.

Never does

Never remote-executes. Never bypasses a site Bridge.

Engine wiring

Engine Relationship Note
Beacons Read Cross-site posture aggregation.
Communication Doctrine When C2 ships, Sovereign federates intel across the C2 fabric.
Escalates to

Human Commander · per-site Marshal

Escalates from

per-site Marshal — cross-site escalation requests

Honesty
  • Engine status: Federation · v1.5
  • Model lane: No dedicated weights yet — charter routing only.
  • Training: Role-specific LoRA planned; only Warden has a trained adapter today (see the training heartbeat).
  • Status: Crown Layer · doctrine v1.5 · Enterprise tier. Not routing across sites today.

Go deeper