Poseidon is a Windows desktop legal decision support system for private document ingestion, Arabic-aware OCR/embedding workflows, semantic search, evidence-constrained legal querying, local AI model operation, runtime diagnostics, and enterprise deployment.
The production entry point is the WPF desktop application installed through the official WiX/Burn pipeline. The API, Worker Service, Management API, and ProvisioningCheck tools support desktop operation, fleet diagnostics, and release validation.
src/Poseidon.Desktop: WPF desktop shell, first-launch provisioning, diagnostics, model health, ingestion UI, and runtime mode control.src/Poseidon.Api: JWT-secured ASP.NET Core API for legal queries, document workflows, and operational endpoints.src/Poseidon.WorkerService: Windows worker host for watched-folder ingestion.src/Poseidon.Management.Api: management plane for signed heartbeat and command workflows.src/Poseidon.ProvisioningCheck: installer/runtime validation executable.src/Poseidon.Domain, Application, Ingestion, Retrieval, Infrastructure, Security: shared layered business, model, storage, retrieval, and trust-boundary services.Full: required LLM and embedding providers are configured, reachable, and integrity-valid.Degraded: explicitly declared deployment mode where local LLM is omitted but embeddings and retrieval remain valid.Recovery: config, model, provider, secret, or integrity validation failed; diagnostics remain available and normal hosted services are prevented from consuming unsafe state.The only authoritative production packaging path is WiX/Burn:
.\installer\build-installer.ps1 -Configuration Release -ModelsPath "C:\Poseidon\Models" -BuildProfile Production
Official artifacts:
installer/output/Poseidon.Installer.msiinstaller/output/Poseidon.Bundle.exeThe installer publishes Desktop and ProvisioningCheck, installs models into [INSTALLDIR]\Models, generates [INSTALLDIR]\appsettings.user.json, writes a deterministic model manifest, validates SHA-256 hashes, and blocks install success when provisioning fails.
Production builds require signed artifacts and secure config. Non-production unsigned/test-model builds are allowed only through explicit flags.
setup.ps1 is a non-destructive readiness script. It validates the local SDK and repository layout; it does not scaffold, overwrite, or mutate the solution.
.\setup.ps1 -Restore -Build -Test -InstallerReadiness
Pinned SDK: see dotnet_version.txt and global.json.
Core local gates:
dotnet restore Poseidon.sln
dotnet build Poseidon.sln -c Release --no-restore
dotnet test tests/Poseidon.UnitTests/Poseidon.UnitTests.csproj -c Release --no-build
.\tests\scripts\Test-RepositoryHygiene.ps1
.\installer\build-installer.ps1 -ModelsPath ".artifacts\installer-models" -BuildProfile NonProduction -AllowTestModels -UnsignedDevelopmentBuild
.\installer\Validate-InstallerArtifacts.ps1 -BuildProfile NonProduction -AllowTestModels -AllowUnsigned
Production security is fail-closed:
See docs/security.md and docs/provisioning.md.
docs/deployment.md: enterprise install and operational deployment.docs/installer.md: WiX/Burn packaging contract.docs/provisioning.md: first-launch, machine config, model manifest, and recovery behavior.docs/security.md: authentication, DPAPI secret storage, signing, and management-plane security.deploy/qa/Launch-Issue-Runbook.md: launch diagnostics and support workflow.C#
92.1%
PowerShell
7.9%
Poseidon is a Windows desktop legal decision support system for private document ingestion, Arabic-aware OCR/embedding workflows, semantic search, evidence-constrained legal querying, local AI model operation, runtime diagnostics, and enterprise deployment.
The production entry point is the WPF desktop application installed through the official WiX/Burn pipeline. The API, Worker Service, Management API, and ProvisioningCheck tools support desktop operation, fleet diagnostics, and release validation.
src/Poseidon.Desktop: WPF desktop shell, first-launch provisioning, diagnostics, model health, ingestion UI, and runtime mode control.src/Poseidon.Api: JWT-secured ASP.NET Core API for legal queries, document workflows, and operational endpoints.src/Poseidon.WorkerService: Windows worker host for watched-folder ingestion.src/Poseidon.Management.Api: management plane for signed heartbeat and command workflows.src/Poseidon.ProvisioningCheck: installer/runtime validation executable.src/Poseidon.Domain, Application, Ingestion, Retrieval, Infrastructure, Security: shared layered business, model, storage, retrieval, and trust-boundary services.Full: required LLM and embedding providers are configured, reachable, and integrity-valid.Degraded: explicitly declared deployment mode where local LLM is omitted but embeddings and retrieval remain valid.Recovery: config, model, provider, secret, or integrity validation failed; diagnostics remain available and normal hosted services are prevented from consuming unsafe state.The only authoritative production packaging path is WiX/Burn:
.\installer\build-installer.ps1 -Configuration Release -ModelsPath "C:\Poseidon\Models" -BuildProfile Production
Official artifacts:
installer/output/Poseidon.Installer.msiinstaller/output/Poseidon.Bundle.exeThe installer publishes Desktop and ProvisioningCheck, installs models into [INSTALLDIR]\Models, generates [INSTALLDIR]\appsettings.user.json, writes a deterministic model manifest, validates SHA-256 hashes, and blocks install success when provisioning fails.
Production builds require signed artifacts and secure config. Non-production unsigned/test-model builds are allowed only through explicit flags.
setup.ps1 is a non-destructive readiness script. It validates the local SDK and repository layout; it does not scaffold, overwrite, or mutate the solution.
.\setup.ps1 -Restore -Build -Test -InstallerReadiness
Pinned SDK: see dotnet_version.txt and global.json.
Core local gates:
dotnet restore Poseidon.sln
dotnet build Poseidon.sln -c Release --no-restore
dotnet test tests/Poseidon.UnitTests/Poseidon.UnitTests.csproj -c Release --no-build
.\tests\scripts\Test-RepositoryHygiene.ps1
.\installer\build-installer.ps1 -ModelsPath ".artifacts\installer-models" -BuildProfile NonProduction -AllowTestModels -UnsignedDevelopmentBuild
.\installer\Validate-InstallerArtifacts.ps1 -BuildProfile NonProduction -AllowTestModels -AllowUnsigned
Production security is fail-closed:
See docs/security.md and docs/provisioning.md.
docs/deployment.md: enterprise install and operational deployment.docs/installer.md: WiX/Burn packaging contract.docs/provisioning.md: first-launch, machine config, model manifest, and recovery behavior.docs/security.md: authentication, DPAPI secret storage, signing, and management-plane security.deploy/qa/Launch-Issue-Runbook.md: launch diagnostics and support workflow.C#
92.1%
PowerShell
7.9%