These documents describe the microVM machine profile implemented by the OpenVMM submodule and the single-container sandbox filesystem and agent architecture built on it. The implementation is the source of truth. Sections explicitly marked Proposed retain production architecture and rationale that are not yet implemented; they are not part of the current machine contract.
- Goals
- Configuration boundary
- Cold boot
- Machine and device ABI
- Sandbox filesystem and agent architecture
- Snapshot and restore
- Snapshot sharing and host storage
- Host attachment model
- Concurrency and trust boundaries
- Validation
- Current limits
- Remaining production work
- Integrated implementation status
- Code ownership map