Local operator path
macOS arm64, Docker 29, PostgreSQL 18, S3-compatible storage, and Redis Streams 8.8.
Evidence-bound disaster recovery
Anasemble reconstructs a lost service component from evidence stored beyond its failure domain, independently certifies the candidate, restores state, and activates only with operator approval.
Current boundary: fail closed by design. Anasemble complements backups and replication; it does not replace them.
The recovery path
The control plane never turns missing evidence, unsupported infrastructure, a timeout, or ambiguous external state into success. Each stage produces an identity-bound receipt for the next.
Authenticate independently retained contracts, traces, policies, and snapshots.
Search a finite typed grammar under explicit time, memory, and candidate budgets.
Use a separate checker and held-out obligations. Any ambiguity becomes refusal.
Restore state, publish an immutable artifact, and stage it inside isolation.
Activate with signed approval, then preserve a sealed acceptance or rollback path.
Architecture
Supported release-candidate profiles
Support exists only where implementation and retained destructive validation agree. Unlisted combinations are never inferred.
Inspect the complete contract ↗macOS arm64, Docker 29, PostgreSQL 18, S3-compatible storage, and Redis Streams 8.8.
Exact Amazon Linux 2023 arm64 and x86_64 profiles with locked Rust 1.97.0 builds.
RDS PostgreSQL 18.3, S3, ElastiCache Redis 7.1, and EKS 1.36 in eu-west-1.
Experimental or refused until its own exact profile has retained evidence.
Refusal is a product result
It does not reconstruct arbitrary software, recover from no information, replace native backups, or silently promote an experimental platform into support.
Inspect the recovery boundary