Keyboard shortcuts

Press ← or → to navigate between chapters

Press S or / to search in the book

Press ? to show this help

Press Esc to hide this help

Alfons

Autonomous cognitive companion deployed for TAČR.

Welcome to the dedicated organizational assistant portal and security documentation for TAČR.

This technical portal provides complete transparency regarding deployment boundaries, communication protocols, privilege isolation, and data protection mechanisms. It is designed for Enterprise CISOs, Information Security Officers, Compliance Auditors, and Workspace Administrators.


Tenant Deployment Profile

The table below summarizes the active configuration, infrastructure isolation tier, and runtime components provisioned for this deployment:

ParameterOperational Value
Client TenantTACR
OrganizationTAČR
Assistant IdentityAlfons
Cloud Project IDalfons-490017
Compute RuntimeDedicated Compute Engine VM (org-assistant, c4d-highcpu-2)
Compute Zoneeurope-west1-b
Support Domaintacr.support.allusio.ai
Support Contactjan.cespivo@tacr-external.cz

Active Component Inventory

This portal reflects only the features and infrastructure components enabled for TACR:

  • Google Chat Connector: Real-time conversational interface, Pub/Sub webhook ingestion, and bot identity isolation.
  • Google Meet & Audio Pipeline: Headless virtual display, PipeWire audio loopback, and streaming speech-to-text.

Core Security Invariants

All components deployed for TACR enforce three non-negotiable security baselines:

  1. NIST SP 800-207 Zero Trust Architecture: Every interaction requires explicit cryptographic verification. The system assumes that software processing external inputs can be compromised. Privilege boundaries prevent lateral movement.
  2. Platform vs. Application Layer Separation: Security boundaries are enforced by cloud identity providers (Google Cloud IAM, OAuth 2.0 gateways) rather than software configurations.
  3. Data Sovereignty and Zero Retraining: Enterprise data, messages, transcripts, and documents are never used to train generalized artificial intelligence models.

Navigate the chapters in the sidebar or use the search bar above to review the architecture and threat evaluations for each system layer.