Point One Zero Platform architecturev11 · generated viewSign in to edit
Platform Layers › L1 Experience

L1 Experience

Where this layer sits on the architecture; the client plane band to its right shows the values it reads.

P1Z Platform ArchitectureOne reusable platform, one customization plane, equal partners: the platform is what P1Z builds once; the plane is what makes it a client's own · v2.5P1Z REUSABLE PLATFORMbuilt once, every client runs these same seven layers, unchangedCLIENT CUSTOMIZATION PLANEthe only per-client build, values, never codeLifecycle: PLAN (EA assessment fills the binding) → RUN (operate)1. ExperienceAMBIENT · CONVERSATIONAL · CROSS-CHANNELChatWeb AppDesktopMobile AppVoicePhone / Call CenterEmbedded in ToolsMCP HostsClaude, CopilotOutput & Format Rendererstructures from Knowledge · templates from the PlaneShared UI Coreone core behind every P1Z shell · cross-channelcontinuityChannel Mix & Notificationschannels on/off per client · proactive rulesFeedback Captureedits & rejections → eval storeC1. ExperienceVALUES, NEVER CODEChannel Mixon/off per audienceHouse Templatesbranding & layoutsOutput FormatsTone & LanguageNotification RulesEmbedded Surface Selectionwhich work toolsNORTH-FACING PLATFORM MCP GATEWAY, the whole platform exposed as an MCP SERVER to any host above: agents, use cases and UI resources as tools; allcode and business logic stays server-hosted.Per-tenant endpoint · tenant auth · host allow-list2. SolutionCLIENT-BLIND CODE · CLIENT-AWARE EXECUTIONOrchestratordeterministic, routes, gates, never authorsBusiness Agentsjudgment under guardrails; face the gatesWorkflowsdeterministic multi-stepCopilotshuman-driven assistSkillsone per use case, on demandDomain Rule Libraryimplements what Knowledge declares, computed once, cited everywhereSubagent Workersinternal; bounded summary contractsDetermination rule: any task with a testable right answer is deterministic code. Agents get judgment only, the last resort, not the firstdraft.C2. SolutionVALUES, NEVER CODEUse-Case Activationwhich agents are onOrchestration Modeserial vs parallel per use caseHITL Placementwhere humans reviewCustom Workflow Compositionreusable agents, never new codeOverride & Exception RoutingOverlay Selection3. KnowledgeCLIENT-BLIND · VERSIONED RELEASES ONLYIndustry OntologiesPE today, healthcare next, stable IDsFunctional Ontologiescross-industry: finance ops, legal, reportingP1Z Benchmarkseval outcomes, gate metrics, cycle-time normsPromotion Gateanonymize → aggregate → rights check → human review → versioned releaseCurated Consulting Benchmarksage-old priors as versioned dataC3. KnowledgeVALUES, NEVER CODEOntology Version Pinthe exact release this client readsOverlay Selectione.g., growth equityStage & Gate Name Mappingthe client's languageBenchmark Scope & Data-Rights Clausewhat telemetry may be promoted4. Intelligence (the AI layer)VENDOR-AGNOSTIC · SWAPPABLEModel Routerthe portability boundaryFoundation LLMsSmall Language ModelsEmbeddingsRerankersThis thin layer absorbs model progress, models upgrade, nothing above changes. AGI-readiness is a one-layer swap, not a rebuild.C4. IntelligenceVALUES, NEVER CODEModel Tier PreferenceCost Ceilingsthe router enforces themLatency TargetsApproved-Vendor ListData Sensitivity Boundarywhich classes reach which tier5. IntegrationAGENT TOOL CALLS & API CALLS ENTER HERESouth-Facing MCP Tool Serversplatform acts as MCP CLIENT here, one server per source; permissions onceAPI Gatewayoutbound external API calls; rate limits, retriesConnector Librarypre-built: Egnyte, SharePoint, Airtable, APIsSync EngineSource Catalogsources · access rulesETL, Batch & Streaming TemplatesSchema-Mapping ToolkitDead-letter HandlingMiddleware between everything above and the data below. A missing connector is BUILT into the library and SELECTED on the plane.C5. IntegrationVALUES, NEVER CODESource System SelectionCredentials & OAuth GrantsData ContractsField Mappingsclient schema → taxonomySync Schedules & ModesCustom Connector Selectionfrom the library6. Data & DocumentsPER-TENANT ISOLATION · DATA ENGINEERINGVector DB ServiceDocument Store ServiceData Warehouse ServiceRetrieval APIsIndexing & Taxonomystructures from KnowledgeSystems of RecordERP, CRM, fund adminDocument SourcesVDR, SharePoint, emailUnstructured Datanotes, transcripts, recordingsExternal Data Providersmarket & benchmark feedsTenant stores are reusable templates; dashed boxes are the SOURCE ESTATE they front, reached only through Integration (L5).C6. Data & DocumentsVALUES, NEVER CODETenant Store Instancesthe client's actual dataSource Estate Inventorytheir SoRs, VDRs, warehouses, feedsDocument Taxonomy Mappingtheir docs → the taxonomyData Residency & RegionsRetention & Legal Hold7. Environment (the Harness)BUSINESS-BLIND · SELF-OPTIMIZINGAgent Loop & Run Contractsend state + token budget; over-budget = killGuardrail Mechanics4 locks: instructions < hooks < scopes < gatesSession & Memory Machinerycontext packs, compaction, memory storesObservability & Eval Infracontent-blind traces; eval runners; A/BIdentity & Tenancyservice identities; isolation tests in CICI/CD, ADLC & SSRA Skeletonrepo templates: constitutions, skills, agent defs; sandbox →eval gate → promotion → registry deploySecrets & KMSper-tenant keysSRE & Incident Opsrunbooks, DR, on-callFuture-proofed and model-agnostic by construction. Self-optimizing via the operational loop, every tuning is a versioned config change throughCI; silent drift is a defect.C7. EnvironmentVALUES, NEVER CODETenancy & Account MappingIdentity ProviderEntra / Cognito / OktaToken Budgetsper use caseGate Approver RolesAlerts & Escalation TimersNo code in the plane, values only. Custom logic is a Solution-layeroverlay, SELECTED here.slotsandvaluesKNOWLEDGE LOOP, telemetry & evals, gatedOPERATIONALLOOPlearns how to run -versioned, never silentDeferred and open items are not drawn and never lost: they live on the Decision Register page, with activation triggers.How to read this diagram• Left column: what P1Z builds once and every client reuses. Right column: the values one client fills in. The double-headed connectors between them are that exchange. Samestructure on both sides, only the contents differ.• Two MCP boundaries. The north gateway (between layers 1 and 2) is where hosts like Claude or Copilot connect; all code stays on the server. The south tool servers (layer5) are where agents reach data. Tenant identity is checked at the north, source permissions at the south.• Read top to bottom to follow a request. Build bottom to top; setup starts at layer 7. The knowledge loop promotes gated telemetry into benchmarks. The operational looptunes the harness. The two loops never mix.• Agents live in layer 2 and are reused unchanged; the plane only switches them on and arranges them. No code ever enters the client column.Point One Zero · generated view, scripts/generators/build_p1z_arch.py · v2.4 · seven layers + client plane

L1 Experience AMBIENT · CONVERSATIONAL · CROSS-CHANNEL

How clients experience everything: conversational UI, voice, embedded in the tools people already work in (email, Excel, deal systems), proactive notifications, with one conversation following the user across channels rather than living in one app.

  • Channels, in the order clients ask for them: chat, web app, desktop, mobile app, voice, phone and call center, embedded in work tools, and MCP hosts
  • Output & format renderer, DETERMINISTIC: an immutable, versioned template merged with approved structured data (structures from Knowledge, house templates from the Plane); corrections land as data updates and the artifact regenerates
  • Channel mix configuration per client
  • MCP hosts (Claude, Copilot, custom apps) are a first-class channel, client-side; just beneath them the NORTH-FACING Platform MCP Gateway exposes the whole platform as an MCP server, so all code stays server-hosted
  • P1Z-built client surfaces (web app, desktop shell, mobile, voice) are thin shells over ONE shared UI core, render tree, streaming message views, conversation state machine; shells hold no business logic and enter through the same north gateway
  • Feedback capture: every edit, rejection and correction routes to the eval store, the richest eval signal there is

Boundary test: nothing rendered here is hardcoded, channels, formats and templates are all plane parameters.

Plane parameters: channels · formats · templates

Client-specific configuration for this layer is specified band by band in Client Delivery, C1 spec: every input with its binding key, generated artifact, and verifying check.

Component reference

Chat (Conversational UI)

The conversational surface where users work with the platform in natural language; the default channel for interactive judgment work.

ImplementationServed to hosts through the north gateway as UI resources; no business logic lives client-side. Activation per audience is the C1 channel_mix value.

Voice

Spoken interaction for hands-busy and mobile moments; the same conversation in a different modality.

ImplementationA channel adapter in front of the same gateway session; enabled through channel_mix. There is no separate logic path for voice.

Phone & Call Center

Telephony as a channel: inbound and outbound calls, interactive voice response, and call-center assist where an operator console surfaces the same platform.

ImplementationA channel adapter: speech in and out at the edge, the same gateway session behind it. Activation, routing and escalation rules are C1 values; no telephony-specific business logic exists anywhere.

Embedded in Work Tools

The assistant surfaced inside the tools people already use: email, spreadsheets, deal systems.

ImplementationEmbedded surfaces are selected through the C1 embedded_surfaces value; every embedded call still enters through the north gateway.

Proactive Notifications

Platform-initiated messages: a report is ready, a gate is waiting, an exception fired.

ImplementationTriggered by workflows and escalation timers. What may be sent, to whom, over which channel is governed by notification_rules (C1); nothing is sent outside those rules.

Cross-Channel Continuity

One conversation that follows the user across channels and devices instead of living in one app.

ImplementationSession and memory machinery (L7) keys the conversation to the person, not the channel; each channel attaches to the same session through the gateway.

MCP Hosts

The applications users sit in: Claude, Copilot, custom apps. Client-side; P1Z serves hosts and never builds them.

ImplementationHosts connect to the per-tenant north endpoint; admission is by host allow-list; identity passthrough carries the person into every downstream permission check. Distinct from the P1Z-built client surface shells: hosts are third-party applications P1Z serves but never builds.

Client Surface Shells

The P1Z-built surfaces: the web app in the browser, the desktop shell (native plus webview), mobile on iOS and Android, and voice as a future surface. Each is a thin shell: it renders and captures, nothing more.

ImplementationShells hold no business logic and no state machine of their own; they compose the shared UI core and speak to the platform only through the north gateway, exactly like a third-party host. A new channel is a new shell, never a new codebase.

Shared UI Core

The one presentation package every P1Z-built shell reuses: the render tree, the streaming message views, and the conversation state machine.

ImplementationBuilt once and versioned as a single package; a new surface is a thin shell over the same core, never a re-implementation. Client-side conversation state lives here and reconciles with the session and memory machinery (L7) through the gateway.

North-Facing Platform MCP Gateway

The platform exposed as an MCP server to any host: agents, use cases and UI resources offered as tools, with all code and business logic staying server-hosted.

ImplementationOne endpoint template, stamped per tenant (setup step 15). Tenant auth, host allow-list, identity passthrough, rate limits and per-host quotas; the tool listing is generated from the registry, never hand-registered.

Output & Format Renderer

The deterministic engine that turns approved structured content into finished deliverables.

ImplementationA pure function of an immutable, versioned template plus approved data. Templates come from C1 house_templates, document structures from Knowledge; no agent ever touches layout, and corrections regenerate the artifact.

Channel Mix Configuration

The per-client record of which channels are switched on, for which audiences.

ImplementationPlane values only (C1); changes land on config deploy with no code path.

Feedback Capture

Every edit, rejection and correction captured as evaluation signal, the richest labeled data the platform receives.

ImplementationRoutes to the eval store with the source data's classification inherited; drives the evals and self-improvement pattern (P5).