Agent
A server-side definition that connects an application identity and profile to Kestrel run, stream, resume, session, and subscription methods.
Artifact
A persisted file, dataset, code result, sheet, rendered interface, or other output associated with durable work.
Context revision
The immutable version of Project instructions, files, and selected Knowledge attached to a Kestrel One turn.
Execution Protocol
The shared commands, events, streams, and terminal-result contracts exposed by Local Core and remote runner services.
Local Core
The local Kestrel runtime host used by Desktop, CLI/TUI workflows, and local SDK targets. It manages local configuration, credentials, persistence, and an authenticated Unix socket.
Operator
A person or authorized service responsible for inspecting, steering, stopping, resuming, retrying, recovering, reviewing, or accepting agent work under explicit authority.
Profile
A canonical runtime policy that selects agent behavior, required provider capabilities, tools, recovery rules, evaluation, budgets, memory, and telemetry.
Provider Registry
The versioned authority for provider endpoints, models, declared capabilities, qualification, and readiness.
Provider Capability
A declared and qualified ability that a profile may require before model selection.
Environment
Kestrel One's compute and capability boundary: runtime image, workspace, tools, Apps, MCP services, network policy, credentials, and activity.
Mission Control
The Project authority for work items, execution attempts, evidence, review, and acceptance.
Work Item and Attempt
A work item names an intended result and completion contract. An attempt records execution and linked runs toward that item.
Recovery Decision
An operator-authorized choice from the runtime's policy registry, bound to one pending request by a stable option identifier.
Pending Request
The exact durable interaction a waiting run can accept next.
External Approval and Effect
An approval authorizes one canonical action under a grant; the effect is the separately recorded external change and result.
Memory and Knowledge
Memory is policy-bound, provenance-bearing runtime/application recall. Knowledge is governed Kestrel One material attached to a Project context revision.
Budget and Allocation
A budget owns a spend or usage boundary. An allocation reserves part of it for an authorized subject, provider/model, or operation and follows reserve, commit, release, and reconciliation.
Build Identity
The exact version, source revision, configuration, deployment, and artifact provenance of a running product or service.
Image Digest
An immutable content identity for a worker or runtime image.
Terminal Outcome
The single completed, failed, cancelled, or waiting result that closes an accepted run operation.
Replay
Inspection of persisted run evidence after execution ends, used to explain, compare, recover, or evaluate behavior.
Run
One execution attempt with an identity, events, and a completed, failed, cancelled, or waiting outcome.
Runner service
The network-hosted Kestrel runtime endpoint used by trusted application servers and remote SDK targets. It exposes the same Execution Protocol as Local Core through authenticated HTTP and streaming.
Runtime
The shared execution implementation that advances runs, coordinates model and tool work, persists evidence, and produces terminal results.
Session
A durable local conversation identity connecting related turns, events, recovery state, and evidence. It is not a hosted Project or Environment.
Thread
The hosted product-facing conversation and collaboration history. A Project Thread also retains its context revision and access authority.
Workspace
A local folder and prepared execution context known to Desktop or the CLI. It is distinct from a hosted Environment and from the Project authority that owns coordinated work.